Matches in SemOpenAlex for { <https://semopenalex.org/work/W2884293495> ?p ?o ?g. }
- W2884293495 abstract "Testing is the most widely employed method to find vulnerabilities in real-world software programs. Compositional analysis, based on symbolic execution, is an automated testing method to find vulnerabilities in medium- to large-scale programs consisting of many interacting components. However, existing compositional analysis frameworks do not assess the severity of reported vulnerabilities. In this paper, we present a framework to analyze vulnerabilities discovered by an existing compositional analysis tool and assign CVSS3 (Common Vulnerability Scoring System v3.0) scores to them, based on various heuristics such as interaction with related components, ease of reachability, complexity of design and likelihood of accepting unsanitized input. By analyzing vulnerabilities reported with CVSS3 scores in the past, we train simple machine learning models. By presenting our interactive framework to developers of popular open-source software and other security experts, we gather feedback on our trained models and further improve the features to increase the accuracy of our predictions. By providing qualitative (based on community feedback) and quantitative (based on prediction accuracy) evidence from 21 open-source programs, we show that our severity prediction framework can effectively assist developers with assessing vulnerabilities." @default.
- W2884293495 created "2018-08-03" @default.
- W2884293495 creator A5002011805 @default.
- W2884293495 creator A5019346488 @default.
- W2884293495 creator A5038593290 @default.
- W2884293495 creator A5063496418 @default.
- W2884293495 date "2018-09-03" @default.
- W2884293495 modified "2023-10-16" @default.
- W2884293495 title "Automatically assessing vulnerabilities discovered by compositional analysis" @default.
- W2884293495 cites W116894366 @default.
- W2884293495 cites W150078352 @default.
- W2884293495 cites W1550549614 @default.
- W2884293495 cites W1973375765 @default.
- W2884293495 cites W1983758807 @default.
- W2884293495 cites W1998147510 @default.
- W2884293495 cites W2032348489 @default.
- W2884293495 cites W2082314767 @default.
- W2884293495 cites W2098337300 @default.
- W2884293495 cites W2101512909 @default.
- W2884293495 cites W2105300539 @default.
- W2884293495 cites W2107147876 @default.
- W2884293495 cites W2114500473 @default.
- W2884293495 cites W2135250985 @default.
- W2884293495 cites W2149656257 @default.
- W2884293495 cites W2160517961 @default.
- W2884293495 cites W2161286953 @default.
- W2884293495 cites W2162142914 @default.
- W2884293495 cites W2193749560 @default.
- W2884293495 cites W2294287296 @default.
- W2884293495 cites W2509308811 @default.
- W2884293495 cites W2514084604 @default.
- W2884293495 cites W2765999687 @default.
- W2884293495 cites W384698140 @default.
- W2884293495 cites W4234542549 @default.
- W2884293495 doi "https://doi.org/10.1145/3243127.3243130" @default.
- W2884293495 hasPublicationYear "2018" @default.
- W2884293495 type Work @default.
- W2884293495 sameAs 2884293495 @default.
- W2884293495 citedByCount "7" @default.
- W2884293495 countsByYear W28842934952019 @default.
- W2884293495 countsByYear W28842934952020 @default.
- W2884293495 countsByYear W28842934952021 @default.
- W2884293495 countsByYear W28842934952022 @default.
- W2884293495 countsByYear W28842934952023 @default.
- W2884293495 crossrefType "proceedings-article" @default.
- W2884293495 hasAuthorship W2884293495A5002011805 @default.
- W2884293495 hasAuthorship W2884293495A5019346488 @default.
- W2884293495 hasAuthorship W2884293495A5038593290 @default.
- W2884293495 hasAuthorship W2884293495A5063496418 @default.
- W2884293495 hasBestOaLocation W28842934952 @default.
- W2884293495 hasConcept C1009929 @default.
- W2884293495 hasConcept C111919701 @default.
- W2884293495 hasConcept C115903868 @default.
- W2884293495 hasConcept C119857082 @default.
- W2884293495 hasConcept C124101348 @default.
- W2884293495 hasConcept C127705205 @default.
- W2884293495 hasConcept C136643341 @default.
- W2884293495 hasConcept C199360897 @default.
- W2884293495 hasConcept C22680326 @default.
- W2884293495 hasConcept C2777904410 @default.
- W2884293495 hasConcept C29983905 @default.
- W2884293495 hasConcept C38652104 @default.
- W2884293495 hasConcept C41008148 @default.
- W2884293495 hasConcept C527648132 @default.
- W2884293495 hasConcept C62913178 @default.
- W2884293495 hasConcept C80444323 @default.
- W2884293495 hasConcept C95713431 @default.
- W2884293495 hasConcept C97686452 @default.
- W2884293495 hasConceptScore W2884293495C1009929 @default.
- W2884293495 hasConceptScore W2884293495C111919701 @default.
- W2884293495 hasConceptScore W2884293495C115903868 @default.
- W2884293495 hasConceptScore W2884293495C119857082 @default.
- W2884293495 hasConceptScore W2884293495C124101348 @default.
- W2884293495 hasConceptScore W2884293495C127705205 @default.
- W2884293495 hasConceptScore W2884293495C136643341 @default.
- W2884293495 hasConceptScore W2884293495C199360897 @default.
- W2884293495 hasConceptScore W2884293495C22680326 @default.
- W2884293495 hasConceptScore W2884293495C2777904410 @default.
- W2884293495 hasConceptScore W2884293495C29983905 @default.
- W2884293495 hasConceptScore W2884293495C38652104 @default.
- W2884293495 hasConceptScore W2884293495C41008148 @default.
- W2884293495 hasConceptScore W2884293495C527648132 @default.
- W2884293495 hasConceptScore W2884293495C62913178 @default.
- W2884293495 hasConceptScore W2884293495C80444323 @default.
- W2884293495 hasConceptScore W2884293495C95713431 @default.
- W2884293495 hasConceptScore W2884293495C97686452 @default.
- W2884293495 hasLocation W28842934951 @default.
- W2884293495 hasLocation W28842934952 @default.
- W2884293495 hasOpenAccess W2884293495 @default.
- W2884293495 hasPrimaryLocation W28842934951 @default.
- W2884293495 hasRelatedWork W1981466760 @default.
- W2884293495 hasRelatedWork W2007984522 @default.
- W2884293495 hasRelatedWork W2135328446 @default.
- W2884293495 hasRelatedWork W2242428984 @default.
- W2884293495 hasRelatedWork W2380031640 @default.
- W2884293495 hasRelatedWork W2383958993 @default.
- W2884293495 hasRelatedWork W2392272505 @default.
- W2884293495 hasRelatedWork W2765514145 @default.
- W2884293495 hasRelatedWork W2892115998 @default.
- W2884293495 hasRelatedWork W2949297114 @default.