YoVDO

Predicting Exploitability - Forecasts for Vulnerability Management

Offered By: RSA Conference via YouTube

Tags

RSA Conference Courses Data Science Courses Cybersecurity Courses Machine Learning Courses Predictive Analytics Courses Vulnerability Management Courses

Course Description

Overview

Explore predictive models for vulnerability management in this 42-minute RSA Conference talk. Learn how to forecast which vulnerabilities are likely to be exploited using open-source data and machine learning. Discover the speaker's 90% accurate model for predicting exploitability on the day a vulnerability is released. Gain insights into evaluating machine learning models in the context of vulnerabilities and exploits, selecting appropriate models, and asking the right questions. Witness live forecasts and understand the future of data-driven security. Delve into topics such as CVSS, positive predictive value of remediation, and the role of AWS ML in vulnerability prediction. Examine various models, including the "Highly Likely" and "Most Likely" approaches, and understand how to measure their performance. Explore the importance of patches, affected software, and vulnerability prevalence in predicting exploitability. Gain valuable takeaways on leveraging machine learning for more effective vulnerability management and staying ahead of fast-moving attackers.

Syllabus

RSAConference 2018
3 Types of Data-Driven
THE PROBLEM
Retrospective Model: CVSS
Real-Time - The Data
Positive Predictive Value of Remediating
FUTURE OF DATA PAST
EXPLOITABILITY
Learning Machine Learning
The Future
Enter: AWS ML
All Models
Predictive - The Expectations
Baseline
LMGTFY
Moar Simple?
Measuring Performance
Patches
Affected Software
Words!
Vulnerability Prevalence
Model 6: "Highly Likely"
Future Work
Takeaways
Machine Learning = ROBOT Unicorns + Rainbows
The Takeaway
Putting It All Together
Model 6: "Most Likely"
Attackers Are Fast


Taught by

RSA Conference

Related Courses

Master Mathematical Cryptography 2020: Crack Any Code
Udemy
Cryptography from Scratch| Master Cryptography in Java
Udemy
Information Security in Python
Udemy
Cryptography
Caleb Curry via YouTube
Linux for Programmers - Public-Private Key Authentication (RSA) and FTP
Tech with Tim via YouTube