A RAkEL-based methodology to estimate software vulnerability characteristics & score - an application to EU project ECHO


연구 분야: Strategies



학회: Multimedia Tools and Applications


초록

Software vulnerabilities constitute a critical threat for cybersecurity analysts in the contemporary society, since the successfully exploited vulnerabilities could harm any system in terms of Confidentiality, Integrity and Availability. Similarly, the characterization of vulnerabilities and the assessment of vulnerability risk is a crucial task for cybersecurity managers regarding the resource management. However, the proliferation of software vulnerabilities causes problems related to the response time of the security experts. For this reason, a methodology based on RAndom k-labELsets (RAkEL) is proposed in this paper in order to estimate software vulnerability characteristics and score from the vulnerability technical description. The proposed methodology aims to a) improve an existing multi-target methodology and b) be integrated in a Cyber Threat Intelligence (CTI) information sharing system. The results, in a dataset containing more than 130000 vulnerabilities, clearly proved that the proposed methodology could improve the existing methodology regarding the estimation of vulnerability characteristics and score.


Author Profile
Georgios Aivatoglou

Information Technologies Institute Centre for Research and Technology Hellas Thessaloniki Greece

Andorra
Author Profile
Mike Anastasiadis

Information Technologies Institute Centre for Research and Technology Hellas Thessaloniki Greece

Andorra
Author Profile
Georgios Spanos

Information Technologies Institute Centre for Research and Technology Hellas Thessaloniki Greece

Andorra

📄 논문 정보

발행 연도 2021년
인용수 0
출판 국가 Greece, Andorra
사이트 Springer
좋아요 수 0

연관 논문 목록 (506건)