|
|
secure environment via prediction of software vulnerabilities-severity
|
|
|
|
|
نویسنده
|
aghaee meybodi e. s. ,ghasemzadeh m.
|
منبع
|
iranica journal of energy and environment - 2019 - دوره : 10 - شماره : 2 - صفحه:159 -164
|
چکیده
|
Prediction of software vulnerabilities-severity is of particular importance. its most important application is that managers can first deal with the most dangerous vulnerabilities when they have limited resources. this research shows how we can use the former patterns of software vulnerabilities-severity along with machine learning methods to predict the vulnerabilities severity of that software in the future. in this regard, we used the svm, decision trees (dt), random forests (rf), k nearest neighbors (knn), bagging and adaboost algorithms along with the already reported vulnerabilities of google android applications, apple safari and the flash player. the experimental results showed that the bagging algorithm can predict google android vulnerability with accuracy of 78.21% and f1measure equal to 77%, the vulnerability of the flash player software with accuracy of 82.37% and f1-measure equal to 87.73% and predict the vulnerability severity of the apple safari with accuracy of 70.58% and f1-measure equal to 70%. the novelty of this research is introduction of a new method for prediction of software vulnerabilities severity.
|
کلیدواژه
|
machine learning ,pattern recognition ,prediction ,vulnerability severity
|
آدرس
|
yazd university, engineering campus, computer engineering group, iran, yazd university, engineering campus, computer engineering group, iran
|
پست الکترونیکی
|
m.ghasemzadeh@yazd.ac.ir
|
|
|
|
|
|
|
|
|
|
|
|
Authors
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|