Top Score on the Wrong Exam: On Benchmarking in Machine Learning for Vulnerability Detection
According to our survey of the machine learning for vulnerability detection (ML4VD) literature published in the top Software Engineering conferences, every paper in the past 5 years defines ML4VD as a binary classification problem: Given a function, does it contain a security flaw? ...