A4 Vertaisarvioitu artikkeli konferenssijulkaisussa
Classifying Web Exploits with Topic Modeling
Tekijät: Jukka Ruohonen
Toimittaja: A Min Tjoa, Roland R. Wagner
Konferenssin vakiintunut nimi: International Workshop on Database and Expert Systems Applications
Julkaisuvuosi: 2017
Kokoomateoksen nimi: Proceedings of the 28th International Workshop on Database and Expert Systems Applications (DEXA), 2017
Aloitussivu: 93
Lopetussivu: 97
Sivujen määrä: 5
ISBN: 978-1-5386-2207-0
eISBN: 978-1-5386-1051-0
ISSN: 1529-4188
DOI: https://doi.org/10.1109/DEXA.2017.35
Verkko-osoite: http://ieeexplore.ieee.org/document/8049693/
Rinnakkaistallenteen osoite: https://arxiv.org/abs/1710.05561
This short empirical paper investigates how well topic modeling and database meta-data characteristics can classify web and other proof-of-concept (PoC) exploits for publicly disclosed software vulnerabilities. By using a dataset comprised of over 36 thousand PoC exploits, near a 0.9 accuracy rate is obtained in the empirical experiment. Text mining and topic modeling are a significant boost factor behind this classification performance. In addition to these empirical results, the paper contributes to the research tradition of enhancing software vulnerability information with text mining, providing also a few scholarly observations about the potential for semi-automatic classification of exploits in the existing tracking infrastructures.
Ladattava julkaisu This is an electronic reprint of the original article. |