Title :
Using Natural Language Tool to Assist VPRG Automated Extraction from Textual Vulnerability Description
Author :
Le, Ha Thanh ; Loh, Peter Kok Keong
Author_Institution :
CSIT-TL@NTU Comput. Security Lab., Nanyang Technol. Univ., Singapore, Singapore
Abstract :
This paper presents an application of Natural Language Tool (NLT) to support the VPRG extraction of text based vulnerability description. The NLT is used to analyze the text-based vulnerability descriptions to retrieve vulnerability properties and evaluate their relationships. Then, a graph based VPRG model that describes the vulnerability can be established. Finally, with fine-tuning from domain expertise, the VPRG model can be useful for analyzing and evaluating web-based vulnerabilities. This approach is proposed to support automatic VPRG extraction from several online database resources as well as vulnerability analysis.
Keywords :
Internet; graph theory; information retrieval; natural language processing; text analysis; VPRG automated extraction; Web-based vulnerabilities; natural language tool; online database resources; textual vulnerability description; vulnerability properties retrieval; vulnerable property relation graph; Analytical models; Data mining; Databases; Natural language processing; Software; Text processing; VPRG model; Vulnerability description; natural;
Conference_Titel :
Advanced Information Networking and Applications (WAINA), 2011 IEEE Workshops of International Conference on
Conference_Location :
Biopolis
Print_ISBN :
978-1-61284-829-7
Electronic_ISBN :
978-0-7695-4338-3
DOI :
10.1109/WAINA.2011.56