2019-11-26: Summary of "Mentions of Security Vulnerabilities on Reddit, Twitter and GitHub"
Figure 1: The Life-Cycle of a Vulnerability (Source: Horawalavithana) Cyber security attacks can be enabled by the fact that many widely-used applications share open-source libraries. As a result, a vulnerability or software weakness in one of these libraries can have far reaching impact. Once discovered, security experts may announce the vulnerability on a variety of forums, blogs, and social media sites. Cyber-adversaries might also explore these public information channels and private discussion threads on the dark web to identify potential attack targets and ways to exploit them. In their 2019 IEEE/WIC/ACM International Conference on Web Intelligence (WI '19) paper, " Mentions of Security Vulnerabilities on Reddit, Twitter and GitHub ", Sameera Horawalavithana , Abhishek Bhattacharjee , Renhao Liu , Nazim Choudhury , Lawrence O. Hall , and Adriana Iamnitchi present a quantitative analysis of user-generated content related to security vulnerabilities on th