marfcat submission Wireshark 1.2.0 v. SATE.4
============================================

These select reports are about wireshark-1.2.0 using a small subset
of algorithms. A LOT of bugs were eliminated found in the previous reports.

There are line numbers that were machine-learned from the _train.xml file.
The file is an augmented version of what I've sent to Vadim earlier
that includes most of the additions from Vadim's recent email as well
as my own corrections and ammendments.

The two submitted report-*.xml files are the best ones I've chose
among several. Their precision rate using machine learning techniques
is 92.68% after all the corrections done. All CVEs are reported
unlike in the previous submission. The stats-*.txt file is there
summarizing the evaluation precision. The results are as good as
the training data given; if there are mistakes in the data selection
and annotation XML files, then the results will also have mistakes
accordingly.

The best reports are:

  report-noprepreprawfftcheb-wireshark-1.2.0-train.xml
  report-noprepreprawfftdiff-wireshark-1.2.0-train.xml

The first one validates with both sate2010 schemas, but
the latter has problems with the -E notation.


Log files
---------

The corresponding *.log files are there for references, but contain A LOT
of debug info from the tool. The tool is using thresholding to
reduce the amount of noise going into the reports, but if you
are curious to examine the logs, they are included.

Files:
------

marfcat-nopreprep-raw-fft-cheb.log
marfcat-nopreprep-raw-fft-diff.log
marfcat--super-fast.log (primaily training log)
README.txt
report-noprepreprawfftcheb-wireshark-1.2.0-train.xml
report-noprepreprawfftdiff-wireshark-1.2.0-train.xml
stats--super-fast.txt
wireshark-1.2.0_train.xml

--
Serguei A. Mokhov
mokhov@cse.concordia.ca
