{"title":"Vulnerability trends in web servers and browsers","authors":"M. Raunak, R. Kuhn, Richard M. Kogut, R. Kacker","doi":"10.1145/3384217.3384227","DOIUrl":null,"url":null,"abstract":"In previous work we have looked at trends in vulnerabilities due to ordinary programming errors [2, 3]. This analysis focuses on two of the most widely used types of software in today's internet, web browsers and web servers. In addition to reports of vulnerabilities, we were able to consider market share to infer some information about the impact of vulnerabilities. The key questions we sought to address are: (1) What is the trend in vulnerabilities for these components, and the magnitude of their impact on users? (2) Are web browsers and servers becoming more secure over time as vulnerabilities are discovered and programmers become more experienced? (3) How do trends vary by vulnerability type?","PeriodicalId":205173,"journal":{"name":"Proceedings of the 7th Symposium on Hot Topics in the Science of Security","volume":"94 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2020-09-21","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"1","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"Proceedings of the 7th Symposium on Hot Topics in the Science of Security","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1145/3384217.3384227","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 1
Abstract
In previous work we have looked at trends in vulnerabilities due to ordinary programming errors [2, 3]. This analysis focuses on two of the most widely used types of software in today's internet, web browsers and web servers. In addition to reports of vulnerabilities, we were able to consider market share to infer some information about the impact of vulnerabilities. The key questions we sought to address are: (1) What is the trend in vulnerabilities for these components, and the magnitude of their impact on users? (2) Are web browsers and servers becoming more secure over time as vulnerabilities are discovered and programmers become more experienced? (3) How do trends vary by vulnerability type?