Exploitation Concentration Among Edge-Device Vulnerabilities: CVSS Prioritization and Version-Specific EPSS Behavior — data and analysis code
收藏资源简介:
Data and analysis code supporting the article "Exploitation Concentration AmongEdge-Device Vulnerabilities: CVSS Prioritization and Version-Specific EPSSBehavior" (M. Almukaynizi, King Saud University). The study measures where real-world exploitation concentrates across devicetypes, evaluates CVSS and EPSS as rankers of exploited-in-the-wildvulnerabilities, and examines how the association between CISA KEV listing andEPSS score movement differs across EPSS model-version eras. Contents (six files, 22.7 MB): README.md artifact guide and data dictionary SHA256SUMS.txt SHA-256 digest for every file in the deposit inputs.zip source snapshots (cvss-bt enrichment table, KEV extract) derived.zip analysis-ready tables: the curated 1,630-entry KEV catalog, the device-taxonomy keyword map, population segments, historical EPSS scores around catalog addition, per-CVE EPSS trajectories, and a weekly EPSS panel spanning model versions 1 through 5 annotations.zip LLM attack-context annotations for the KEV catalog and the control samples, with prompts, schema, and evaluation output code.zip analysis scripts, requirements.txt, and a reproduction guideAll data sources were collected through June 30, 2026.



