Why Crypto-detectors Fail: A Systematic Evaluation of Cryptographic Misuse Detection Techniques
How well do tools that detect Cryptographic misuse (i.e., Crypto-detectors) work in practice?
We answer this question in our IEEE Symposium on Security and Privacy (A*/top-tier) 2022 paper using a systematic, data-driven mutation framework for evaluating detectors, that reveals significant flaws in popular tools.
1 Minute Video
Please turn on sound!
Key ideas are 👇🏽