Fetching the paper…
Reading the bibliography…
The number of disclosed vulnerabilities has been steadily increasing over the years.
Verification of forecasts expressed in terms of probability
Glenn W Brier et al · 1950
Earlier work this paper cites.
A study of cross-validation and bootstrap for accuracy estimation and model selection. In Ijcai , Vol. 14. Montreal, Canada, 1137–1145
Ron Kohavi et al · 1995
Earlier work this paper cites.
A comparative study on feature selection in text categorization. In Icml , Vol. 97. Citeseer, 35
Yiming Yang and Jan O Pedersen. 1997 · 1997
Earlier work this paper cites.
Black Hat: The Microsoft Exploitability Index: More Vulnerability Madness
DarkReading 2008 · 2008
Earlier work this paper cites.
Beyond Heuristics: Learning to Classify Vulnerabilities and Predict Exploits. In Proceedings of the 16th ACM SIGKDD International Conference on Knowledge Discovery and Data Mining . 105–114
Mehran Bozorgi, Lawrence K Saul, Stefan Savage, and Geoffrey M Voelker. 2010 · 2010
Earlier work this paper cites.
Automatic keyword extraction from individual documents
Stuart Rose, Dave Engel, Nick Cramer, and Wendy Cowley. 2010 · 2010
Earlier work this paper cites.
A preliminary analysis of vulnerability scores for attacks in wild: The EKITS and SYN datasets. In Proceedings of the 2012 ACM Workshop on Building Analysis Datasets and Gathering Experience Returns for Security . 17–24
Luca Allodi and Fabio Massacci. 2012b · 2012
Earlier work this paper cites.
Exploitability/Priority Index Rating Systems (Approaches, Value, and Limitations)
C Eiram. 2013 · 2013
Earlier work this paper cites.
Comparing vulnerability severity and exploits using case-control studies
Luca Allodi and Fabio Massacci. 2014 · 2014
Earlier work this paper cites.
Predicting Cyber Vulnerability Exploits with Machine Learning.. In SCAI . 48–57
Michel Edkrantz and Alan Said. 2015 · 2015
Earlier work this paper cites.
Vulnerability Disclosure in the Age of Social Media: Exploiting Twitter for Predicting { \{ Real-World } \} Exploits. In 24th USENIX Security Symposium (USENIX Security 15) . 1041–1056
Carl Sabottke, Octavian Suciu, and Tudor Dumitraș. 2015 · 2015
Earlier work this paper cites.
Comparing and evaluating CVSS base metrics and microsoft rating system. In 2015 IEEE International Conference on Software Quality, Reliability and Security . IEEE, 252–261
Awad A Younis and Yashwant K Malaiya. 2015 · 2015
Earlier work this paper cites.
XGBoost: A scalable tree boosting system. In ACM SIGKDD International Conference on Knowledge Discovery and Data Mining . ACM, 785–794
Tianqi Chen and Carlos Guestrin. 2016 · 2016
Earlier work this paper cites.
Proactive Identification of Exploits in the Wild Through Vulnerability Mentions Online. In 2017 International Conference on Cyber Conflict (CyCon US) . IEEE, 82–88
Mohammed Almukaynizi, Eric Nunes, Krishna Dharaiya, Manoj Senguttuvan, Jana Shakarian, and Paulo Shakarian. 2017 · 2017
Earlier work this paper cites.
Predicting Exploitation of Disclosed Software Vulnerabilities Using Open-source Data. In Proceedings of the 3rd ACM on International Workshop on Security and Privacy Analytics . 45–53
Benjamin L Bullough, Anna K Yanchenko, Christopher L Smith, and Joseph R Zipkin. 2017 · 2017
Cited alongside, same era.
A unified approach to interpreting model predictions. In Advances in neural information processing systems . 4765–4774
Scott M Lundberg and Su-In Lee. 2017 · 2017
Cited alongside, same era.
Attention is all you need
Ashish Vaswani, Noam Shazeer, Niki Parmar, Jakob Uszkoreit, Llion Jones, Aidan N Gomez, Łukasz Kaiser, and Illia Polosukhin. 2017 · 2017
Cited alongside, same era.
Adversarial attacks and defences: A survey
Anirban Chakraborty, Manaar Alam, Vishal Dey, Anupam Chattopadhyay, and Debdeep Mukhopadhyay. 2018 · 2018
Cited alongside, same era.
Data modelling for predicting exploits. In Nordic Conference on Secure IT Systems . Springer, 336–351
What Is VPR and How Is It Different from CVSS?
Tenable 2020 · 2020
Later among the works it cites.
On hyperparameter optimization of machine learning algorithms: Theory and practice
Li Yang and Abdallah Shami. 2020 · 2020
Later among the works it cites.
Exploitability prediction of software vulnerabilities
Navneet Bhatt, Adarsh Anand, and Venkata SS Yadavalli. 2021 · 2021
Later among the works it cites.
An Improved Vulnerability Exploitation Prediction Model with Novel Cost Function and Custom Trained Word Vector Embedding
Mohammad Shamsul Hoque, Norziana Jamil, Nowshad Amin, and Kwok-Yan Lam. 2021 · 2021
Later among the works it cites.
Exploit Prediction Scoring System (EPSS)
Jay Jacobs, Sasha Romanosky, Benjamin Edwards, Idris Adjerid, and Michael Roytman. 2021 · 2021
Later among the works it cites.
Conversion of CVSS Base Score from 2.0 to 3.1. In 2021 International Conference on Software, Telecommunications and Computer Networks (SoftCOM) . IEEE, 1–3
alphaXiv searches the wider corpus for related work and actual follow-ups.
alphaXiv is searching for related work…
Alexander Reinthal, Eleftherios Lef Filippakis, and Magnus Almgren. 2018 · 2018
Cited alongside, same era.
When does machine learning { \{ FAIL } \} ? generalized transferability for evasion and poisoning attacks. In 27th { \{ USENIX } \} Security Symposium ( { \{ USENIX } \} Security 18) . 1299–1316
Octavian Suciu, Radu Marginean, Yigitcan Kaya, Hal Daume III, and Tudor Dumitras. 2018 · 2018
Cited alongside, same era.
Darkembed: Exploit prediction with neural language models. In Proceedings of the AAAI Conference on Artificial Intelligence , Vol. 32
Nazgol Tavabi, Palash Goyal, Mohammed Almukaynizi, Paulo Shakarian, and Kristina Lerman. 2018 · 2018
Cited alongside, same era.
From patching delays to infection symptoms: Using risk profiles for an early discovery of vulnerabilities exploited in the wild. In 27th USENIX Security Symposium (USENIX Security 18) . 903–918
Chaowei Xiao, Armin Sarabi, Yang Liu, Bo Li, Mingyan Liu, and Tudor Dumitras. 2018 · 2018
Cited alongside, same era.
Risk prioritization by leveraging latent vulnerability features in a contested environment. In Proceedings of the 12th ACM Workshop on Artificial Intelligence and Security . 49–57
Kenneth Alperin, Allan Wollaber, Dennis Ross, Pierre Trepagnier, and Leslie Leonard. 2019 · 2019
Cited alongside, same era.
Using twitter to predict when vulnerabilities will be exploited. In Proceedings of the 25th ACM SIGKDD International Conference on Knowledge Discovery & Data Mining . 3143–3152
Haipeng Chen, Rui Liu, Noseong Park, and VS Subrahmanian. 2019 · 2019
Cited alongside, same era.
A complete guide to the common vulnerability scoring system
FIRST 2019 · 2019
Cited alongside, same era.
FastEmbed: Predicting vulnerability exploitation possibility based on ensemble machine learning algorithm
Yong Fang, Yongcheng Liu, Cheng Huang, and Liang Liu. 2020 · 2020
Cited alongside, same era.
Maciej Nowak, Michał Walkowski, and Sławomir Sujecki. 2021 · 2021
Later among the works it cites.
Why do tree-based models still outperform deep learning on typical tabular data?. In Thirty-sixth Conference on Neural Information Processing Systems Datasets and Benchmarks Track
Leo Grinsztajn, Edouard Oyallon, and Gael Varoquaux. 2022 · 2022
Later among the works it cites.
Prioritization to Prediction Vol 8
Cyentia Institute and Kenna Security. 2022 · 2022
Later among the works it cites.
Expected exploitability: Predicting the development of functional vulnerability exploits. In 31st USENIX Security Symposium (USENIX Security 22) . 377–394
Octavian Suciu, Connor Nelson, Zhuoer Lyu, Tiffany Bao, and Tudor Dumitraș. 2022 · 2022
Later among the works it cites.
Prioritize Vulnerabilities Like an Attacker
Rapid7 2023 · 2023
Closest in time.
Prioritize patching based on risk
Recorded Future 2023 · 2023
Closest in time.
Severity ratings
RedHat 2023 · 2023
Closest in time.
On over-fitting in model selection and subsequent selection bias in performance evaluation
Gavin C Cawley and Nicola LC Talbot. 2010 · 2079
Closest in time.