Change search
CiteExportLink to record
Permanent link

Direct link
Cite
Citation style
  • apa
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • Other style
More styles
Language
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Other locale
More languages
Output format
  • html
  • text
  • asciidoc
  • rtf
Coverage-based vulnerability discovery modeling to optimize disclosure time using multiattribute approach
Amity Institute of Information Technology, Amity University, Noida, India.
Amity Centre for Interdisciplinary Research, Amity University, Noida, India.
Luleå University of Technology, Department of Civil, Environmental and Natural Resources Engineering, Operation, Maintenance and Acoustics.ORCID iD: 0000-0001-8111-6918
2019 (English)In: Quality and Reliability Engineering International, ISSN 0748-8017, E-ISSN 1099-1638, Vol. 35, no 1, p. 62-73Article in journal (Refereed) Published
Abstract [en]

Software vulnerabilities trend over time has been proposed by various researchers and academicians in recent years. But none of them have considered operational coverage function in vulnerability discovery modeling. In this research paper, we have proposed a generalized statistical model that determines the relationship between operational coverage function and the number of expected vulnerabilities. During the operational phase, possible vulnerable sites are covered and vulnerabilities present at a particular site are discovered with some probability. We have assumed that the proposed model follows the nonhomogeneous Poisson process properties; thus, different distributions are used to formulate the model. The numerical illustration shows that the proposed model performs better and has the good fitness to the Google Chrome data. The second focus of this research paper is to evaluate the total cost incurred by the developer after software release and to identify the optimal vulnerability disclosure time through multiobjective utility function. The proposed vulnerability discovery helps in optimization. The optimal time problem depends on the combined effect of cost, risk, and effort.

Place, publisher, year, edition, pages
John Wiley & Sons, 2019. Vol. 35, no 1, p. 62-73
Keywords [en]
multiattribute utility theory (MAUT), operational coverage, operational effort, optimization, vulnerability discovery model
National Category
Other Civil Engineering
Research subject
Operation and Maintenance
Identifiers
URN: urn:nbn:se:ltu:diva-71123DOI: 10.1002/qre.2380ISI: 000458675300005Scopus ID: 2-s2.0-85053695158OAI: oai:DiVA.org:ltu-71123DiVA, id: diva2:1253676
Note

Validerad;2019;Nivå 2;2019-01-25 (johcin)

Available from: 2018-10-05 Created: 2018-10-05 Last updated: 2021-10-15Bibliographically approved

Open Access in DiVA

No full text in DiVA

Other links

Publisher's full textScopus

Authority records

Kumar, Uday

Search in DiVA

By author/editor
Kumar, Uday
By organisation
Operation, Maintenance and Acoustics
In the same journal
Quality and Reliability Engineering International
Other Civil Engineering

Search outside of DiVA

GoogleGoogle Scholar

doi
urn-nbn

Altmetric score

doi
urn-nbn
Total: 104 hits
CiteExportLink to record
Permanent link

Direct link
Cite
Citation style
  • apa
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • Other style
More styles
Language
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Other locale
More languages
Output format
  • html
  • text
  • asciidoc
  • rtf