Matches in SemOpenAlex for { <https://semopenalex.org/work/W2022203852> ?p ?o ?g. }
Showing items 1 to 67 of
67
with 100 items per page.
- W2022203852 abstract "Context: Reporters of security vulnerabilities possess rich information about the security engineering process. Goal: We performed an empirical study on reporters of buffer overflow vulnerabilities to understand the methods and tools used during the discovery. Method: We ran the study in the form of an email questionnaire with open ended questions. The participants were reporters featured in the SecurityFocus repository during two six-month periods; we collected 58 responses. Results: We found that in spite of many apparent choices, reporters follow similar approaches. Most reporters typically use fuzzing, but their fuzzing tools are created ad hoc; they use a few debugging tools to analyze the crash introduced by a fuzzer; and static analysis tools are rarely used. We also found a serious problem in the vulnerability reporting process. Most reporters, especially the experienced ones, favor full-disclosure and do not collaborate with the vendors of vulnerable software. They think that the public disclosure, sometimes supported by a detailed exploit, will put pressure on vendors to fix the vulnerabilities. But, in practice, the vulnerabilities not reported to vendors are less likely to be fixed. Conclusions: The results are valuable for beginners exploring how to detect and report buffer overflows and for tool vendors and researchers exploring how to automate and fix the process." @default.
- W2022203852 created "2016-06-24" @default.
- W2022203852 creator A5035163200 @default.
- W2022203852 creator A5060527236 @default.
- W2022203852 date "2014-09-18" @default.
- W2022203852 modified "2023-09-24" @default.
- W2022203852 title "Discovering buffer overflow vulnerabilities in the wild" @default.
- W2022203852 cites W1541063262 @default.
- W2022203852 cites W1554355587 @default.
- W2022203852 cites W1948712562 @default.
- W2022203852 cites W1979820341 @default.
- W2022203852 cites W1998029707 @default.
- W2022203852 cites W2004685423 @default.
- W2022203852 cites W2008626182 @default.
- W2022203852 cites W2078283664 @default.
- W2022203852 cites W2078393527 @default.
- W2022203852 cites W2100196534 @default.
- W2022203852 cites W2119871945 @default.
- W2022203852 cites W2126513985 @default.
- W2022203852 cites W2135599336 @default.
- W2022203852 cites W2156444395 @default.
- W2022203852 doi "https://doi.org/10.1145/2652524.2652533" @default.
- W2022203852 hasPublicationYear "2014" @default.
- W2022203852 type Work @default.
- W2022203852 sameAs 2022203852 @default.
- W2022203852 citedByCount "17" @default.
- W2022203852 countsByYear W20222038522014 @default.
- W2022203852 countsByYear W20222038522015 @default.
- W2022203852 countsByYear W20222038522016 @default.
- W2022203852 countsByYear W20222038522017 @default.
- W2022203852 countsByYear W20222038522018 @default.
- W2022203852 countsByYear W20222038522019 @default.
- W2022203852 countsByYear W20222038522020 @default.
- W2022203852 countsByYear W20222038522021 @default.
- W2022203852 countsByYear W20222038522023 @default.
- W2022203852 crossrefType "proceedings-article" @default.
- W2022203852 hasAuthorship W2022203852A5035163200 @default.
- W2022203852 hasAuthorship W2022203852A5060527236 @default.
- W2022203852 hasConcept C145018004 @default.
- W2022203852 hasConcept C31258907 @default.
- W2022203852 hasConcept C38652104 @default.
- W2022203852 hasConcept C40842320 @default.
- W2022203852 hasConcept C41008148 @default.
- W2022203852 hasConcept C76155785 @default.
- W2022203852 hasConceptScore W2022203852C145018004 @default.
- W2022203852 hasConceptScore W2022203852C31258907 @default.
- W2022203852 hasConceptScore W2022203852C38652104 @default.
- W2022203852 hasConceptScore W2022203852C40842320 @default.
- W2022203852 hasConceptScore W2022203852C41008148 @default.
- W2022203852 hasConceptScore W2022203852C76155785 @default.
- W2022203852 hasLocation W20222038521 @default.
- W2022203852 hasOpenAccess W2022203852 @default.
- W2022203852 hasPrimaryLocation W20222038521 @default.
- W2022203852 hasRelatedWork W2188694736 @default.
- W2022203852 hasRelatedWork W2312607385 @default.
- W2022203852 hasRelatedWork W2362655350 @default.
- W2022203852 hasRelatedWork W2366360185 @default.
- W2022203852 hasRelatedWork W2366890065 @default.
- W2022203852 hasRelatedWork W2373025652 @default.
- W2022203852 hasRelatedWork W2375285095 @default.
- W2022203852 hasRelatedWork W2990955621 @default.
- W2022203852 hasRelatedWork W3016045526 @default.
- W2022203852 hasRelatedWork W3203672746 @default.
- W2022203852 isParatext "false" @default.
- W2022203852 isRetracted "false" @default.
- W2022203852 magId "2022203852" @default.
- W2022203852 workType "article" @default.