ExploitabilityBirthMark: An Early Predictor of the Likelihood of Exploitation


연구 분야: Strategies



학회: International Symposium on Foundations and Practice of Security


초록

In recent years, there has been a steady increase in the number of reported vulnerabilities (CVEs), increasing the workload of organizations trying to update their systems promptly. This underscores the need to prioritize specific critical vulnerabilities over others to effectively prevent cyberattacks. Unfortunately, the current methods available for assessing the exploitability of vulnerabilities have substantial shortcomings. In particular, they often consist in prediction models that encode data that may not be immediately available at the time a vulnerability is first reported. In this paper, we introduce an innovative exploitability prediction method that exclusively uses information accessible at the time of a CVE’s initial publication. Our approach outperforms the most widely used vulnerability exploit prediction algorithms in scenarios where data is subject to the aforementioned limitations.


Author Profile
Kobra Khanmohammadi

Sheridan College Toronto Ontario Canada

Canada
Author Profile
Zakeya Namrud

Université du Quebec en Outaouais Gatineau Quebec Canada

Canada
Author Profile
François Labrèche

Sophos Montreal Quebec Canada

Canada

📄 논문 정보

발행 연도 2025년
인용수 0
출판 국가 Canada
사이트 Springer
좋아요 수 0

연관 논문 목록 (200건)