Severity prediction of software vulnerabilities using convolutional neural networks

被引:0
|
作者
Saklani, Santosh [1 ]
Kalia, Anshul [1 ]
机构
[1] Himachal Pradesh Univ, Dept Comp Sci, Shimla, India
关键词
Machine learning; Natural language processing; Convolutional neural network (CNN); Software vulnerability; Common vulnerability scoring system (CVSS);
D O I
10.1108/ICS-10-2024-0265
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
PurposeThe continuous influx of software vulnerabilities poses a significant challenge to organizations, necessitating effective resource allocation for threat mitigation. A key factor in this process is assessing the severity of vulnerabilities to prioritize which issues require immediate attention. This paper aims to automate the prediction of common vulnerability scoring system (CVSS) metrics from textual descriptions of vulnerabilities, reducing the reliance on manual expert analysis.Design/methodology/approachThis study applies machine learning and natural language processing techniques, particularly convolutional neural networks (CNNs), to predict CVSS base metrics such as attack vectors, attack complexity and required privileges. The CNN models are trained on vulnerability descriptions and evaluated for their accuracy in predicting these metrics, which are then used to compute overall severity base scores.FindingsThe CNN models demonstrated high accuracy in predicting CVSS base metrics from textual descriptions. The predicted severity base scores closely align with those provided by human experts, showing the model's potential to streamline the vulnerability assessment process.Practical implicationsAutomating CVSS metric prediction could significantly reduce the time and effort required for vulnerability severity assessment. This would enable security teams to quickly identify and prioritize critical vulnerabilities, improving response times in cybersecurity management.Originality/valueThis research provides an innovative approach to vulnerability management by automating CVSS metric prediction, reducing the need for manual expert analysis and therefore accelerating security assessments.
引用
收藏
页数:18
相关论文
共 50 条
  • [41] Envy Prediction from Users' Photos using Convolutional Neural Networks
    Raiaan, Mohaimenul Azam Khan
    Al Mamun, Abdullah
    Islam, Md. Adnanul
    Ali, Mohammed Eunus
    Mukta, Md. Saddam Hossain
    2023 INTERNATIONAL CONFERENCE ON COMPUTER, ELECTRICAL & COMMUNICATION ENGINEERING, ICCECE, 2023,
  • [42] Stock Market Trend Prediction Using Recurrent Convolutional Neural Networks
    Xu, Bo
    Zhang, Dongyu
    Zhang, Shaowu
    Li, Hengchao
    Lin, Hongfei
    NATURAL LANGUAGE PROCESSING AND CHINESE COMPUTING, NLPCC 2018, PT II, 2018, 11109 : 166 - 177
  • [43] Prediction of Centromere Location in Human Chromosome Using Convolutional Neural Networks
    Vatres, Ajdin
    Pojski, Naris
    Kadric, Edin
    TEM JOURNAL-TECHNOLOGY EDUCATION MANAGEMENT INFORMATICS, 2023, 12 (03): : 1242 - 1251
  • [44] Prediction of permeability of porous media using optimized convolutional neural networks
    Ramos, Eliaquim M.
    Borges, Marcio R.
    Giraldi, Gilson A.
    Schulze, Bruno
    Bernardo, Felipe
    COMPUTATIONAL GEOSCIENCES, 2023, 27 (01) : 1 - 34
  • [45] Path Loss Prediction in Urban Areas using Convolutional Neural Networks
    Rafie, Irfan Farhan Mohamad
    Lim, Soo Yong
    Chung, Michael Jenn Hwan
    2022 IEEE INTERNATIONAL RF AND MICROWAVE CONFERENCE, RFM, 2022,
  • [46] Network Prediction with Traffic Gradient Classification using Convolutional Neural Networks
    Ko, Taejin
    Raza, Syed M.
    Dang Thien Binh
    Kim, Moonseong
    Choo, Hyunseung
    PROCEEDINGS OF THE 2020 14TH INTERNATIONAL CONFERENCE ON UBIQUITOUS INFORMATION MANAGEMENT AND COMMUNICATION (IMCOM), 2020,
  • [47] Prediction of Geopolymer Concrete Compressive Strength Using Convolutional Neural Networks
    Ramujee, Kolli
    Sadula, Pooja
    Madhu, Golla
    Kautish, Sandeep
    Almazyad, Abdulaziz S.
    Xiong, Guojiang
    Mohamed, Ali Wagdy
    CMES-COMPUTER MODELING IN ENGINEERING & SCIENCES, 2024, 139 (02): : 1455 - 1486
  • [48] Prediction of adverse drug reactions using drug convolutional neural networks
    Mantripragada, Anjani Sankar
    Teja, Sai Phani
    Katasani, Rohith Reddy
    Joshi, Pratik
    Masilamani, V
    Ramesh, Raj
    JOURNAL OF BIOINFORMATICS AND COMPUTATIONAL BIOLOGY, 2021, 19 (01)
  • [49] Prediction of activity cliffs on the basis of images using convolutional neural networks
    Iqbal, Javed
    Vogt, Martin
    Bajorath, Juergen
    JOURNAL OF COMPUTER-AIDED MOLECULAR DESIGN, 2021, 35 (12) : 1157 - 1164
  • [50] Prediction and factors of Seoul apartment price using convolutional neural networks
    Lee, Hyunjae
    Son, Donghui
    Kim, Sujin
    Oh, Sein
    Kim, Jaejik
    KOREAN JOURNAL OF APPLIED STATISTICS, 2020, 33 (05) : 603 - 614