Matches in SemOpenAlex for { <https://semopenalex.org/work/W2895200039> ?p ?o ?g. }
Showing items 1 to 69 of
69
with 100 items per page.
- W2895200039 abstract "Managing security risks is one of the major challenges in modern information systems. Threats often come via the World Wide Web and are therefore difficult to predict. Thus, attackers can always be a step ahead of us and reactive approach based on known security incidents is not sufficient. A much higher security level can be achieved by active detection and neutralization of software vulnerabilities. When a large number of vulnerabilities are present in the system, they have to be prioritized for removal according to their severity. With a proactive approach, where we foresee which vulnerabilities will be more likely exploited in practice, the highest level of security can be assured. A widely used prioritization policy based upon a CVSS (Common Vulnerability Scoring System) score is frequently criticised for bad effectiveness. The main reason is that the CVSS score alone is not a good predictor of vulnerability exploitation in the wild. One of the key challenges in this area is therefore to identify the indicators of exploitation. Since the exploitation of vulnerability is basically a human threat, it is reasonable to take into account the characteristics of typical attackers. We propose several methods for setting priorities that take this into account. Methods have to be compared according to their effectiveness in risk mitigation. To this end, we have developed a valuation model that allows such comparisons. Proposed methods, which take into account human threats, were compared with the most popular existing methods. In the experiment we used vulnerability data from publicly available databases. Experimental results show that methods which take into account the characteristics of attackers are generally more effective than existing methods. The effectiveness was also confirmed in some real cases of information systems in practice." @default.
- W2895200039 created "2018-10-12" @default.
- W2895200039 creator A5038896911 @default.
- W2895200039 date "2018-09-28" @default.
- W2895200039 modified "2023-09-24" @default.
- W2895200039 title "Proactive risk management in information systems" @default.
- W2895200039 hasPublicationYear "2018" @default.
- W2895200039 type Work @default.
- W2895200039 sameAs 2895200039 @default.
- W2895200039 citedByCount "0" @default.
- W2895200039 crossrefType "dissertation" @default.
- W2895200039 hasAuthorship W2895200039A5038896911 @default.
- W2895200039 hasConcept C10138342 @default.
- W2895200039 hasConcept C112930515 @default.
- W2895200039 hasConcept C137176749 @default.
- W2895200039 hasConcept C144133560 @default.
- W2895200039 hasConcept C15744967 @default.
- W2895200039 hasConcept C167063184 @default.
- W2895200039 hasConcept C172776598 @default.
- W2895200039 hasConcept C195094911 @default.
- W2895200039 hasConcept C26517878 @default.
- W2895200039 hasConcept C2777615720 @default.
- W2895200039 hasConcept C32896092 @default.
- W2895200039 hasConcept C38652104 @default.
- W2895200039 hasConcept C41008148 @default.
- W2895200039 hasConcept C542102704 @default.
- W2895200039 hasConcept C95713431 @default.
- W2895200039 hasConceptScore W2895200039C10138342 @default.
- W2895200039 hasConceptScore W2895200039C112930515 @default.
- W2895200039 hasConceptScore W2895200039C137176749 @default.
- W2895200039 hasConceptScore W2895200039C144133560 @default.
- W2895200039 hasConceptScore W2895200039C15744967 @default.
- W2895200039 hasConceptScore W2895200039C167063184 @default.
- W2895200039 hasConceptScore W2895200039C172776598 @default.
- W2895200039 hasConceptScore W2895200039C195094911 @default.
- W2895200039 hasConceptScore W2895200039C26517878 @default.
- W2895200039 hasConceptScore W2895200039C2777615720 @default.
- W2895200039 hasConceptScore W2895200039C32896092 @default.
- W2895200039 hasConceptScore W2895200039C38652104 @default.
- W2895200039 hasConceptScore W2895200039C41008148 @default.
- W2895200039 hasConceptScore W2895200039C542102704 @default.
- W2895200039 hasConceptScore W2895200039C95713431 @default.
- W2895200039 hasLocation W28952000391 @default.
- W2895200039 hasOpenAccess W2895200039 @default.
- W2895200039 hasPrimaryLocation W28952000391 @default.
- W2895200039 hasRelatedWork W1828122918 @default.
- W2895200039 hasRelatedWork W2071336830 @default.
- W2895200039 hasRelatedWork W2248383566 @default.
- W2895200039 hasRelatedWork W2284638843 @default.
- W2895200039 hasRelatedWork W2462116092 @default.
- W2895200039 hasRelatedWork W2484992010 @default.
- W2895200039 hasRelatedWork W2551014890 @default.
- W2895200039 hasRelatedWork W2765999687 @default.
- W2895200039 hasRelatedWork W2766183857 @default.
- W2895200039 hasRelatedWork W2786312610 @default.
- W2895200039 hasRelatedWork W2793146503 @default.
- W2895200039 hasRelatedWork W2794960187 @default.
- W2895200039 hasRelatedWork W2800109782 @default.
- W2895200039 hasRelatedWork W2804589146 @default.
- W2895200039 hasRelatedWork W2887075533 @default.
- W2895200039 hasRelatedWork W2967263059 @default.
- W2895200039 hasRelatedWork W3043354127 @default.
- W2895200039 hasRelatedWork W3117726775 @default.
- W2895200039 hasRelatedWork W3129874546 @default.
- W2895200039 hasRelatedWork W3177643266 @default.
- W2895200039 isParatext "false" @default.
- W2895200039 isRetracted "false" @default.
- W2895200039 magId "2895200039" @default.
- W2895200039 workType "dissertation" @default.