Research & Development World

  • Home Page
  • Topics
    • Aerospace
    • Archeology
    • Automotive
    • Biotech
    • Chemistry
    • Environment
    • Energy
    • Life Science
    • Material Science
    • R&D Market Pulse
    • R&D Management
    • Physics
  • Technology
    • 3D Printing
    • A.I./Robotics
    • Battery Technology
    • Imaging
    • Nanotechnology
    • Semiconductors
  • Controlled Environments
    • Cleanrooms
    • Graphene
    • Lasers
    • Regulations/Standards
    • Sensors
  • Scientific Computing
    • Big Data
    • HPC/Supercomputing
    • Informatics
    • Security
    • Software
  • R&D 100 Awards
    • ENTER NOW
    • 2020 Winners
    • Winner Archive
    • R&D 100 Conference
  • Resources
    • Digital Issues
    • Podcasts
    • Subscribe
  • 2021 Funding Forecast
  • COVID-19

R&D winner of the day: LAVA: Large-Scale Vulnerability Addition

By Heather Hall | December 9, 2020

Work on automating software vulnerability discovery has long been hampered by a shortage of ground truth corpora with which to evaluate tools and techniques. This lack of ground truth prevents authors and users of tools from being able to measure fundamental quantities such as the miss and false alarm rates of bug-finding systems.

Large-scale Automated Vulnerability Addition (LAVA), developed by MIT Lincoln Laboratory, is a novel system based on dynamic taint analysis that is capable of producing ground truth corpora by quickly and automatically injecting large numbers of realistic bugs into program source code. Every LAVA bug is accompanied by an input that triggers it, whereas normal inputs are extremely unlikely to do so. LAVA-generated vulnerabilities are synthetic but still realistic, as they are embedded deep within programs and triggered by real inputs. LAVA forms the basis of an approach for generating large ground truth vulnerability corpora on demand, enabling rigorous tool evaluation and providing a high-quality target for tool developers.

Comments

  1. Keith Erwood says

    December 16, 2020 at 7:04 pm

    This is a future area of technology to watch. Along with the potential for Automated threat detection and prevention.

    Thanks for sharing the information.

    Reply

Tell Us What You Think! Cancel reply

Related Articles Read More >

Sandia’s HADES is focus of Episode 4 of R&D 100 – The Podcast
R&D 100 winner of the day: CURENT Large Scale Testbed (LTB)
R&D 100 winner of the day: Regional Energy Deployment System 2.0
R&D 100 winner of the day: Electric Thermal Energy Storage – Key Element for the Energy Transition

Need R&D World news in a minute?

We Deliver!
R&D World Enewsletters get you caught up on all the mission critical news you need in research and development. Sign up today.
Enews Signup
Tweets by @RandDWorld

R&D World Digital Issues

February 2020 issue

Browse the most current issue of R&D World and back issues in an easy to use high quality format. Clip, share and download with the leading R& magazine today.

Research & Development World
  • Subscribe to R&D World Magazine
  • Enews Sign Up
  • Contact Us
  • Drug Discovery & Development
  • Pharmaceutical Processing
  • 2021 Global Funding Forecast

Copyright © 2021 WTWH Media LLC. All Rights Reserved. The material on this site may not be reproduced, distributed, transmitted, cached or otherwise used, except with the prior written permission of WTWH Media
Privacy Policy | Advertising | About Us

Search R&D World

  • Home Page
  • Topics
    • Aerospace
    • Archeology
    • Automotive
    • Biotech
    • Chemistry
    • Environment
    • Energy
    • Life Science
    • Material Science
    • R&D Market Pulse
    • R&D Management
    • Physics
  • Technology
    • 3D Printing
    • A.I./Robotics
    • Battery Technology
    • Imaging
    • Nanotechnology
    • Semiconductors
  • Controlled Environments
    • Cleanrooms
    • Graphene
    • Lasers
    • Regulations/Standards
    • Sensors
  • Scientific Computing
    • Big Data
    • HPC/Supercomputing
    • Informatics
    • Security
    • Software
  • R&D 100 Awards
    • ENTER NOW
    • 2020 Winners
    • Winner Archive
    • R&D 100 Conference
  • Resources
    • Digital Issues
    • Podcasts
    • Subscribe
  • 2021 Funding Forecast
  • COVID-19