Data · dataset · 2019
Analyzing CVE Database Using Unsupervised Topic Modelling
Listed in BERD@NFDI Data Portal
This paper describes our study of the vulnerability reports in the Common Vulnerability and Exposures (CVE) database by using topic modeling on the description texts of the vulnerabilities.
Description
Prevalent vulnerability types were found, and new trends of vulnerabilities were discovered by studying the 121,716 unique CVE entries that are reported from January 1999 to July 2019. The topics found through topic modeling were mapped to OWASP Top 10 vulnerabilities.
It was found that the OWASP vulnerabilities A2: 2017-Broken Authentication, A4:2017-XML External Entities (XXE), and A5:2017-Broken Access Control increased, yet the vulnerability A7:2017-Cross-Site Scripting (XSS) had a steep decrease over the period of 20 years.
Links
Where it is published
- BERD@NFDI Data Portal record berd-platform.de/records/m0jgn-a2w10 ↗
landing page · from berd platform de
- DOI doi.org/10.1109/csci49370.2019.00019 ↗
DOI / persistent id · from berd platform de
Catalogue records · 1
- InvenioRDM API berd-platform.de/api/records/m0jgn-a2w10 ↗
metadata API · from berd platform de
Topics
- From keywords
- Economics & Finance
Provenance · 1 source records, 6 field assertions
| Source | Key | Last seen | Raw |
|---|---|---|---|
| BERD@NFDI Data Portal | m0jgn-a2w10 | 8 d ago | JSON v1 |
| Field | Assertion | Extractor | Evidence |
|---|---|---|---|
| access_level | source · berd platform de | connector:berd_platform_de@1.0.0 | |
| concepts[field].local:field:economics-finance | mapping · berd platform de | connector:berd_platform_de@1.0.0 | |
| description | source · berd platform de | connector:berd_platform_de@1.0.0 | /metadata/description |
| publication_date | source · berd platform de | connector:berd_platform_de@1.0.0 | |
| title | source · berd platform de | connector:berd_platform_de@1.0.0 | /metadata/title |
| updated_date | source · berd platform de | connector:berd_platform_de@1.0.0 |