Tracking Software Security Topics

Fuente: arXiv
Saved in:
Bibliographic Details
Main Authors: Vu, Phong Minh, Nguyen, Tung Thanh
Format: Preprint
Published: 2024
Subjects:
Online Access:
Tags: Add Tag
No Tags, Be the first to tag this record!
_version_ 1866913520821469184
author Vu, Phong Minh
Nguyen, Tung Thanh
author_facet Vu, Phong Minh
Nguyen, Tung Thanh
contents Software security incidents occur everyday and thousands of software security reports are announced each month. Thus, it is difficult for software security researchers, engineers, and other stakeholders to follow software security topics of their interests in real-time. In this paper, we propose, SOSK, a novel tool for this problem. SOSK allows a user to import a collection of software security reports. It pre-processes and extracts the most important keywords from the textual description of the reports. Based on the similarity of embedding vectors of keywords, SOSK can expand and/or refine a keyword set from a much smaller set of user-provided keywords. Thus, SOSK allows users to define any topic of their interests and retrieve security reports relevant to that topic effectively. Our preliminary evaluation shows that SOSK can expand keywords and retrieve reports relevant to user requests.
format Preprint
id arxiv_https___arxiv_org_abs_2409_18351
institution arXiv
publishDate 2024
record_format arxiv
spellingShingle Tracking Software Security Topics
Vu, Phong Minh
Nguyen, Tung Thanh
Software Engineering
Artificial Intelligence
Cryptography and Security
Information Retrieval
Software security incidents occur everyday and thousands of software security reports are announced each month. Thus, it is difficult for software security researchers, engineers, and other stakeholders to follow software security topics of their interests in real-time. In this paper, we propose, SOSK, a novel tool for this problem. SOSK allows a user to import a collection of software security reports. It pre-processes and extracts the most important keywords from the textual description of the reports. Based on the similarity of embedding vectors of keywords, SOSK can expand and/or refine a keyword set from a much smaller set of user-provided keywords. Thus, SOSK allows users to define any topic of their interests and retrieve security reports relevant to that topic effectively. Our preliminary evaluation shows that SOSK can expand keywords and retrieve reports relevant to user requests.
title Tracking Software Security Topics
topic Software Engineering
Artificial Intelligence
Cryptography and Security
Information Retrieval
url https://arxiv.org/abs/2409.18351