论文标题

内容管理系统会影响免费内容网站的安全性吗?相关分析

Do Content Management Systems Impact the Security of Free Content Websites? A Correlation Analysis

论文作者

Alaqdhi, Mohammed, Alabduljabbar, Abdulrahman, Thomas, Kyle, Salem, Saeed, Nyang, DaeHun, Mohaisen, David

论文摘要

本文调查了免费内容网站脆弱性的潜在原因,以解决风险和恶意。组装超过1,500个具有免费和高级内容的网站,我们确定其内容管理系统(CMS)和恶意属性。我们在总计和每类内容(书籍,游戏,电影,音乐和软件)上都使用频率分析,利用未解决的漏洞,总脆弱性,恶意计数和百分位数,以发现CMS {'S}的使用趋势和恶意性及其对这些网站的使用趋势和恶意。此外,我们发现,尽管自定义代码网站数量大量,但CMS {'s}的使用普遍存在,类型和类别之间的趋势各不相同。最后,我们发现即使流行的CMS {'s}中的少数未插入的漏洞也可能是造成严重恶意性的潜在原因。

This paper investigates the potential causes of the vulnerabilities of free content websites to address risks and maliciousness. Assembling more than 1,500 websites with free and premium content, we identify their content management system (CMS) and malicious attributes. We use frequency analysis at both the aggregate and per category of content (books, games, movies, music, and software), utilizing the unpatched vulnerabilities, total vulnerabilities, malicious count, and percentiles to uncover trends and affinities of usage and maliciousness of CMS{'s} and their contribution to those websites. Moreover, we find that, despite the significant number of custom code websites, the use of CMS{'s} is pervasive, with varying trends across types and categories. Finally, we find that even a small number of unpatched vulnerabilities in popular CMS{'s} could be a potential cause for significant maliciousness.

扫码加入交流群

加入微信交流群

微信交流群二维码

扫码加入学术交流群,获取更多资源