A growing number of software vulnerabilities have been identified in recent years; these vulnerabilities continue to grow as computer security approaches advance. Given the prevalence of software in our daily lives, everyone who uses software-related devices and services should be aware of software security ideas. Any ignorance in security while developing software or an application can lead to severe problems like loss of personal or business information. Gadgets like smartphones, tablets, computers, and even servers are vulnerable to attack from many directions. A sound glitch mechanism can play a crucial role in lowering the risk of such losses. Numerous security tools and techniques are developed and offered by IT companies to secure the system from cyber-attacks. The risk of cyber-attacks can be reduced by adopting vulnerability scoring systems like VRSS, CVSS, etc. A single security mistake while developing software for the equipment invites attackers to perform malicious activities like stealing important business information, money laundering, social engineering attacks, etc. Although there is a wide variety of software vulnerabilities, it is important to know the different types of vulnerabilities in order to reduce the possibility of attacks. Unfortunately, not every vulnerability can always be found by testing and human code reviews. Vulnerabilities by themselves can affect your software's security and performance. This paper provides an advanced methodology (AVRSM) to secure systems from online cyber-attacks. An improved base score formula with two new metrics, i.e. System Environment and Vulnerability Category, is used to provide a better vulnerability score. The results of this study are retrieved using an Excel-based calculator, and the initial base score of the vulnerabilities is compared.

错误:搜索内容不能为空,请输入英文关键词
错误:关键词超出字数限制,请精简
高级检索

AVRSM—Advanced Vulnerability Rating and Scoring Methodology to Secure Systems from Online Cyber-Attacks

  • Gagandeep Chawla

摘要

A growing number of software vulnerabilities have been identified in recent years; these vulnerabilities continue to grow as computer security approaches advance. Given the prevalence of software in our daily lives, everyone who uses software-related devices and services should be aware of software security ideas. Any ignorance in security while developing software or an application can lead to severe problems like loss of personal or business information. Gadgets like smartphones, tablets, computers, and even servers are vulnerable to attack from many directions. A sound glitch mechanism can play a crucial role in lowering the risk of such losses. Numerous security tools and techniques are developed and offered by IT companies to secure the system from cyber-attacks. The risk of cyber-attacks can be reduced by adopting vulnerability scoring systems like VRSS, CVSS, etc. A single security mistake while developing software for the equipment invites attackers to perform malicious activities like stealing important business information, money laundering, social engineering attacks, etc. Although there is a wide variety of software vulnerabilities, it is important to know the different types of vulnerabilities in order to reduce the possibility of attacks. Unfortunately, not every vulnerability can always be found by testing and human code reviews. Vulnerabilities by themselves can affect your software's security and performance. This paper provides an advanced methodology (AVRSM) to secure systems from online cyber-attacks. An improved base score formula with two new metrics, i.e. System Environment and Vulnerability Category, is used to provide a better vulnerability score. The results of this study are retrieved using an Excel-based calculator, and the initial base score of the vulnerabilities is compared.