Skip to main navigation Skip to search Skip to main content

Ontology-Driven Framework for Trend Analysis of Vulnerabilities and Impacts in IoT Hardware

  • Charan Bandi
  • , Soheil Salehi
  • , Rakibul Hassan
  • , Sai Manoj
  • , Houman Homayoun
  • , Setareh Rafatirad

Research output: Chapter in Book/Report/Conference proceedingConference contribution

Abstract

The number of publicly known cyber-security vulnerabilities submitted to the National Vulnerability Database (NVD) has increased significantly. However, it is cumbersome to explore useful information from this large corpus of unstructured data to find meaningful trends over time without proper tools. Prior works with this purpose have mainly focused on the software vulnerabilities and fail to provide a storytelling framework that can extract useful information about the relationship and trends within the CVE and CWE databases over time. Additionally, hardware attacks on IoT devices are evolving very rapidly due to the recent proliferation of computing devices in mobile and IoT domains. Thus, herein, we focus on IoT hardware vulnerabilities and develop an Ontology-driven Storytelling Framework (OSF) which aims to identify similar patterns of vulnerabilities over time, to help mitigate the impacts of vulnerabilities or predict and prevent future vulnerabilities.

Original languageEnglish (US)
Title of host publicationProceedings - 2021 IEEE 15th International Conference on Semantic Computing, ICSC 2021
PublisherInstitute of Electrical and Electronics Engineers Inc.
Pages211-214
Number of pages4
ISBN (Electronic)9781728188997
DOIs
StatePublished - Jan 2021
Externally publishedYes
Event15th IEEE International Conference on Semantic Computing, ICSC 2021 - Virtual, Laguna Hills, United States
Duration: Jan 27 2021Jan 29 2021

Publication series

NameProceedings - 2021 IEEE 15th International Conference on Semantic Computing, ICSC 2021

Conference

Conference15th IEEE International Conference on Semantic Computing, ICSC 2021
Country/TerritoryUnited States
CityVirtual, Laguna Hills
Period1/27/211/29/21

Keywords

  • Common Vulnerability and Exposure (CVE)
  • Common Weakness Enumeration (CWE)
  • Hardware Vulnerability
  • Internet of Things (IoT)
  • National Vulnerability Database (NVD)
  • Natural Language Processing (NLP)
  • Ontology Learning

ASJC Scopus subject areas

  • Artificial Intelligence
  • Computer Science Applications
  • Decision Sciences (miscellaneous)

Fingerprint

Dive into the research topics of 'Ontology-Driven Framework for Trend Analysis of Vulnerabilities and Impacts in IoT Hardware'. Together they form a unique fingerprint.

Cite this