Matches in SemOpenAlex for { <https://semopenalex.org/work/W2408371061> ?p ?o ?g. }
Showing items 1 to 93 of
93
with 100 items per page.
- W2408371061 endingPage "446" @default.
- W2408371061 startingPage "426" @default.
- W2408371061 abstract "The security of deployed and actively used systems is a moving target, influenced by factors not captured in the existing security metrics. For example, the count and severity of vulnerabilities in source code, as well as the corresponding attack surface, are commonly used as measures of a software product’s security. But these measures do not provide a full picture. For instance, some vulnerabilities are never exploited in the wild, partly due to security technologies that make exploiting them difficult. As for attack surface, its effectiveness has not been validated empirically in the deployment environment. We introduce several security metrics derived from field data that help to complete the picture. They include the count of vulnerabilities exploited and the size of the attack surface actually exercised in real-world attacks. By evaluating these metrics on nearly 300 million reports of intrusion-protection telemetry, collected on more than six million hosts, we conduct an empirical study of security in the deployment environment. We find that none of the products in our study have more than 35% of their disclosed vulnerabilities exploited in the wild. Furthermore, the exploitation ratio and the exercised attack surface tend to decrease with newer product releases. We also find that hosts that quickly upgrade to newer product versions tend to have reduced exercised attack-surfaces. The metrics proposed enable a more complete assessment of the security posture of enterprise infrastructure. Additionally, they open up new research directions for improving security by focusing on the vulnerabilities and attacks that have the highest impact in practice." @default.
- W2408371061 created "2016-06-24" @default.
- W2408371061 creator A5033409139 @default.
- W2408371061 creator A5040861793 @default.
- W2408371061 creator A5062404663 @default.
- W2408371061 creator A5090509743 @default.
- W2408371061 date "2014-01-01" @default.
- W2408371061 modified "2023-10-08" @default.
- W2408371061 title "Some Vulnerabilities Are Different Than Others - Studying Vulnerabilities and Attack Surfaces in the Wild." @default.
- W2408371061 cites W1587970460 @default.
- W2408371061 cites W172316423 @default.
- W2408371061 cites W1971733255 @default.
- W2408371061 cites W2043837581 @default.
- W2408371061 cites W2065890363 @default.
- W2408371061 cites W2114712239 @default.
- W2408371061 cites W2129586531 @default.
- W2408371061 cites W2148156428 @default.
- W2408371061 cites W2149764216 @default.
- W2408371061 cites W2154398797 @default.
- W2408371061 cites W2207522377 @default.
- W2408371061 cites W2396161363 @default.
- W2408371061 cites W2402520897 @default.
- W2408371061 cites W2735150897 @default.
- W2408371061 cites W2270639178 @default.
- W2408371061 hasPublicationYear "2014" @default.
- W2408371061 type Work @default.
- W2408371061 sameAs 2408371061 @default.
- W2408371061 citedByCount "3" @default.
- W2408371061 countsByYear W24083710612015 @default.
- W2408371061 countsByYear W24083710612016 @default.
- W2408371061 countsByYear W24083710612020 @default.
- W2408371061 crossrefType "proceedings-article" @default.
- W2408371061 hasAuthorship W2408371061A5033409139 @default.
- W2408371061 hasAuthorship W2408371061A5040861793 @default.
- W2408371061 hasAuthorship W2408371061A5062404663 @default.
- W2408371061 hasAuthorship W2408371061A5090509743 @default.
- W2408371061 hasConcept C105339364 @default.
- W2408371061 hasConcept C111919701 @default.
- W2408371061 hasConcept C131275738 @default.
- W2408371061 hasConcept C22680326 @default.
- W2408371061 hasConcept C2524010 @default.
- W2408371061 hasConcept C2776576444 @default.
- W2408371061 hasConcept C2780615140 @default.
- W2408371061 hasConcept C29983905 @default.
- W2408371061 hasConcept C33923547 @default.
- W2408371061 hasConcept C38652104 @default.
- W2408371061 hasConcept C41008148 @default.
- W2408371061 hasConcept C527648132 @default.
- W2408371061 hasConcept C62913178 @default.
- W2408371061 hasConcept C90673727 @default.
- W2408371061 hasConceptScore W2408371061C105339364 @default.
- W2408371061 hasConceptScore W2408371061C111919701 @default.
- W2408371061 hasConceptScore W2408371061C131275738 @default.
- W2408371061 hasConceptScore W2408371061C22680326 @default.
- W2408371061 hasConceptScore W2408371061C2524010 @default.
- W2408371061 hasConceptScore W2408371061C2776576444 @default.
- W2408371061 hasConceptScore W2408371061C2780615140 @default.
- W2408371061 hasConceptScore W2408371061C29983905 @default.
- W2408371061 hasConceptScore W2408371061C33923547 @default.
- W2408371061 hasConceptScore W2408371061C38652104 @default.
- W2408371061 hasConceptScore W2408371061C41008148 @default.
- W2408371061 hasConceptScore W2408371061C527648132 @default.
- W2408371061 hasConceptScore W2408371061C62913178 @default.
- W2408371061 hasConceptScore W2408371061C90673727 @default.
- W2408371061 hasLocation W24083710611 @default.
- W2408371061 hasOpenAccess W2408371061 @default.
- W2408371061 hasPrimaryLocation W24083710611 @default.
- W2408371061 hasRelatedWork W1638127916 @default.
- W2408371061 hasRelatedWork W16869370 @default.
- W2408371061 hasRelatedWork W1861216818 @default.
- W2408371061 hasRelatedWork W199832099 @default.
- W2408371061 hasRelatedWork W2008653566 @default.
- W2408371061 hasRelatedWork W2065890363 @default.
- W2408371061 hasRelatedWork W2289443514 @default.
- W2408371061 hasRelatedWork W2297096600 @default.
- W2408371061 hasRelatedWork W2396161363 @default.
- W2408371061 hasRelatedWork W2564850588 @default.
- W2408371061 hasRelatedWork W2739647700 @default.
- W2408371061 hasRelatedWork W3027636930 @default.
- W2408371061 hasRelatedWork W3037453570 @default.
- W2408371061 hasRelatedWork W3041847967 @default.
- W2408371061 hasRelatedWork W3089611879 @default.
- W2408371061 hasRelatedWork W3102673518 @default.
- W2408371061 hasRelatedWork W330385240 @default.
- W2408371061 hasRelatedWork W907924111 @default.
- W2408371061 hasRelatedWork W2406043920 @default.
- W2408371061 hasRelatedWork W95507866 @default.
- W2408371061 isParatext "false" @default.
- W2408371061 isRetracted "false" @default.
- W2408371061 magId "2408371061" @default.
- W2408371061 workType "article" @default.