首页> 外文会议>ICT systems security and privacy protection >The Tweet Advantage: An Empirical Analysis of 0-Day Vulnerability Information Shared on Twitter
【24h】

The Tweet Advantage: An Empirical Analysis of 0-Day Vulnerability Information Shared on Twitter

机译:Tweet优势:在Twitter上共享的0天漏洞信息的实证分析

获取原文
获取原文并翻译 | 示例

摘要

In the last couple of years, the number of software vulnerabilities and corresponding incidents increased significantly. In order to stay up-to-date about these new emerging threats, organizations have demonstrated an increased willingness to exchange information and knowledge about vulnerabilities, threats, incidents and countermeasures. Apart from dedicated sharing platforms or databases, information on vulnerabilities is frequently shared on Twitter and other social media platforms. So far, little is known about the obtainable time advantage of vulnerability information shared on social media platforms. To close this gap, we identified 709,880 relevant Tweets and subsequently analyzed them. We found that information with high relevance for affected organizations is shared on Twitter often long before any official announcement or patch has been made available by vendors. Twitter is used as a crowdsourcing platform by security experts aggregating vulnerability information and referencing a multitude of public available webpages in their Tweets. Vulnerability information shared on Twitter can improve organizations reaction to newly discovered vulnerabilities and therefore help mitigating threats.
机译:在最近几年中,软件漏洞和相应事件的数量大大增加。为了及时了解这些新出现的威胁,组织显示出越来越愿意交换有关漏洞,威胁,事件和对策的信息和知识。除了专用的共享平台或数据库之外,有关漏洞的信息还经常在Twitter和其他社交媒体平台上共享。到目前为止,对于在社交媒体平台上共享的漏洞信息可获得的时间优势知之甚少。为了缩小这一差距,我们确定了709,880条相关推文,并对其进行了分析。我们发现,与受影响的组织高度相关的信息通常在供应商提供任何正式公告或补丁之前很久就已在Twitter上共享。安全专家将Twitter用作众包平台,以汇总漏洞信息并在其推文中引用大量公共可用网页。在Twitter上共享的漏洞信息可以提高组织对新发现的漏洞的反应,从而有助于缓解威胁。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号