VLDB 2026 Research / reviewers in the wild / expert
Jinchang Hu
dblp:131/9659
· DBLP profile ↗
3ranked-venue papers
2as first author
3since 2021 · last 2024
0000-0002-1483-8854ORCID · corroborated
Domains — the database's venue-derived domains; a paper can count in several
Software engineering, systems software and programming languages · 2 · 1 first-author · 2 since 2021Security and privacy · 1 · 1 first-author · 1 since 2021
| Year | Publication | Venue | Position |
|---|---|---|---|
| 2024 | Empirical Analysis of Vulnerabilities Life Cycle in Golang EcosystemabstractOpen-source software (OSS) greatly facilitates program development for developers. However, the high number of vulnerabilities in open-source software is a major concern, including in Golang, a relatively new programming language. In contrast to other commonly used OSS package managers, Golang presents a distinctive feature whereby commits are prevalently used as dependency versions prior to their integration into official releases. This attribute can prove advantageous to users, as patch commits can be implemented in a timely manner before the releases. However, Golang employs a decentralized mechanism for managing dependencies, whereby dependencies are upheld and distributed in separate repositories. This approach can result in delays in the dissemination of patches and unresolved vulnerabilities. Jinchang Hu, Lyuye Zhang, Sen Yang 0018, Yang Liu 0003 |
ICSE | 1 |
| 2021 | Unit Crowdsourcing Software Testing of Go ProgramabstractCrowdsourcing software testing is a software testing model rising in recent years. Although many black box testing modes have achieved good results in crowdsourcing environment, few people try to migrate white box software testing to crowd-sourcing environment. Firstly, this paper analyzes the problems of white box testing in crowdsourcing environment, that is, the contradiction between the sensitivity of intellectual property rights and the insecurity of crowdsourcing environment. Then we focus on the design of the go language unit crowdsourcing test task package. From the perspective of code security and meeting the test conditions, a go language unit crowdsourcing test task package division method based on static analysis is designed. Finally, the possible attack model in the unit crowd test scenario is assumed, and the risk resistance of our task package division method is analyzed. Run Luo, Meijuan Wang, Jinchang Hu, Jinhu Du |
QRS | 4 |
| 2021 | A Detection Approach for Vulnerability Exploiter Based on the Features of the ExploiterabstractWith the wide application of software system, software vulnerability has become a major risk in computer security. The on-time detection and proper repair for possible software vulnerabilities are of great importance in maintaining system security and decreasing system crashes. The Control Flow Integrity (CFI) can be used to detect the exploit by some researchers. In this paper, we propose an improved Control Flow Graph with Jump (JCFG) based on CFI and develop a novel Vulnerability Exploit Detection Method based on JCFG (JCFG-VEDM). The detection method of the exploit program is realized based on the analysis results of the exploit program. Then the JCFG is addressed through combining the features of the exploit program and the jump instruction. Finally, we implement JCFG-VEDM and conduct the experiments to verify the effectiveness of the proposed method. The experimental results show that the proposed detection method (JCFG-VEDM) is feasible and effective. Jinchang Hu, Jinfu Chen 0001, Sher Ali, Bo Liu 0048, Chi Zhang 0046 |
Secur. Commun. Networks | 1 |