Visible to the public Predicting the Difficulty of Compromise through How Attackers Discover VulnerabilitiesConflict Detection Enabled

PI(s), Co-PI(s), Researchers:

PI: Andrew Meneely; Co-PI: Laurie Williams; Researchers: Ben Meyers and Nasif Imtiaz

HARD PROBLEM(S) ADDRESSED
This refers to Hard Problems, released November 2012.

  • Metrics

PUBLICATIONS
Papers were written as a result of your research from the current quarter only.

  • None

KEY HIGHLIGHTS
Each effort should submit one or two specific highlights. Each item should include a paragraph or two along with a citation if available. Write as if for the general reader of IEEE S&P.
The purpose of the highlights is to give our immediate sponsors a body of evidence that the funding they are providing (in the framework of the SoS lablet model) is delivering results that "more than justify" the investment they are making.

  • We expanded our analysis of the CPTC 2019 data. We have partly preprocessed and curated the CPTC 2020 data so that it is ready for analysis.
  • We are investigating open-source package releases that contain security fixes from three aspects: timing, change complexity, and documentation.

COMMUNITY ENGAGEMENT

  • None.

EDUCATIONAL ADVANCES:

  • None.