May 15, 2024, 4:11 a.m. | Miguel Santana, Vinicius V. Cogo, Alan Oliveira de S\'a

cs.CR updates on

arXiv:2405.08539v1 Announce Type: new
Abstract: Background: Timely prioritising and remediating vulnerabilities are paramount in the dynamic cybersecurity field, and one of the most widely used vulnerability scoring systems (CVSS) does not address the increasing likelihood of emerging an exploit code. Aims: We present SecScore, an innovative vulnerability severity score that enhances CVSS Threat metric group with statistical models from empirical evidences of real-world exploit codes. Method: SecScore adjusts the traditional CVSS score using an explainable and empirical method that more …

