A novel approach to continuous CVE analysis on enterprise operating systems for system vulnerability assessment

dc.authorscopusid57447093900
dc.authorscopusid57201743399
dc.authorscopusid57447588400
dc.authorscopusid57203142239
dc.authorscopusid56469924100
dc.contributor.authorKocaman, Yusuf
dc.contributor.authorGönen, Serkan
dc.contributor.authorBarişkan, Mehmet Ali
dc.contributor.authorKaracayilmaz, Gökçe
dc.contributor.authorYilmaz, Ercan Nurcan
dc.date.accessioned2024-09-11T19:58:38Z
dc.date.available2024-09-11T19:58:38Z
dc.date.issued2022
dc.departmentİstanbul Gelişim Üniversitesien_US
dc.description.abstractAdvances in information and technology have provided great opportunities and conveniences for human life. However, with this process, attackers have switched to cyberspace due to various factors such as anonymity, easy attack tools, and non-deterrent penalties. For this reason, various methods have been developed to protect systems from cyber-attacks. One of the most important methods is the continuity-based vulnerability analysis of the systems and the network created by the systems, even for emerging threats. In this study, the current and comprehensive list of vulnerabilities created by combining the data obtained from different CVE sources is compared with the packages on the operating system. In this way, it is possible to obtain information about the system’s current openness status and take precautions. The analyzes have been carried out on Ubuntu operating system; however, the study can be adapted to other operating systems and larger systems by following the implementation phases of the proposed method. © 2022, The Author(s), under exclusive licence to Bharati Vidyapeeth's Institute of Computer Applications and Management.en_US
dc.identifier.doi10.1007/s41870-021-00840-6
dc.identifier.endpage1443en_US
dc.identifier.issn2511-2104en_US
dc.identifier.issue3en_US
dc.identifier.scopus2-s2.0-85124413361en_US
dc.identifier.scopusqualityQ2en_US
dc.identifier.startpage1433en_US
dc.identifier.urihttps://doi.org/10.1007/s41870-021-00840-6
dc.identifier.urihttps://hdl.handle.net/11363/8535
dc.identifier.volume14en_US
dc.indekslendigikaynakScopusen_US
dc.language.isoenen_US
dc.publisherSpringer Science and Business Media B.V.en_US
dc.relation.ispartofInternational Journal of Information Technology (Singapore)en_US
dc.relation.publicationcategoryMakale - Uluslararası Hakemli Dergi - Kurum Öğretim Elemanıen_US
dc.rightsinfo:eu-repo/semantics/closedAccessen_US
dc.snmz20240903_Gen_US
dc.subjectCVE; Cyber security; Security analysis; Vulnerability assessment; Vulnerability databaseen_US
dc.titleA novel approach to continuous CVE analysis on enterprise operating systems for system vulnerability assessmenten_US
dc.typeArticleen_US

Dosyalar