arrow
Return

Vulnerability2Vec: A Graph-Embedding Approach for Enhancing Vulnerability Classification

delete2025-09-01
delete0
delete
OA
AI
C
Choi, Myoung-oh
M
Mincheol Shin
H
Hyonjun Kang
M
Man, Ka Lok
M
Mucheol Kim *
DOI:10.32604/cmes.2025.068723delete
deleteOriginal
deleteOriginal request for help
deleteShare
deleteSave
Abstract

Abstract

En 中文
The escalating complexity and heterogeneity of modern energy systems-particularly in smart grid and distributed energy infrastructures-has intensified the need for intelligent and scalable security vulnerability classification. To address this challenge, we propose Vulnerability2Vec, a graph-embedding-based framework designed to enhance the automated classification of security vulnerabilities that threaten energy system resilience. Vulnerability2Vec converts Common Vulnerabilities and Exposures (CVE) text explanations to semantic graphs, where nodes represent CVE IDs and key terms (nouns, verbs, and adjectives), and edges capture co-occurrence relationships. Then, it embeds the semantic graphs to a low-dimensional vector space with random-walk sampling and skip-gram with negative sampling. It is possible to identify the latent relationships and structural patterns that traditional sparse vector methods fail to capture. Experimental results demonstrate a classification accuracy of up to 80%, significantly outperforming baseline methods. This approach offers a theoretical basis for classifying vulnerability types as structured semantic patterns in complex software systems. The proposed method models the semantic structure of vulnerabilities, providing a theoretical foundation for their classification.
Keywords:
Security vulnerability
graph representation
graph-embedding
deep learning
node classification

Journal

C
CMES-Computer Modeling in Engineering and Sciences
IF:
2.5
Papers:
44
Citations:
4.4K

Organization

No organization information available
Cited Papers

Cited Papers

Network visualization and analysis of gene expression data using BioLayout Express3D
err2009-10-01
err356
PREAI
errTheocharidis, Athanasios; van Dongen, Stjin; Enright, Anton J.; Freeman, Tom C.
errShare
errSave
Summarizing vulnerabilities' descriptions to support experts during vulnerability assessment activities
err2019-10-01
err41
PREAI
errRusso, Ernesto Rosario; Di Sorbo, Andrea; Visaggio, Corrado A.; Canfora, Gerardo
errShare
errSave
Self-Supervised Learning for Recommender Systems: A Survey
err2024-01-01
err75
errOAAI
errYu, Junliang; Yin, Hongzhi; Xia, Xin; Chen, Tong; Li, Jundong; Huang, Zi
errShare
errSave
Automated event extraction of CVE descriptions
err2023-06-01
err8
PREAI
errWei, Ying; Bo, Lili; Sun, Xiaobing; Li, Bin; Zhang, Tao; Tao, Chuanqi
errShare
errSave
errShare
errSave
Graph neural networks: A review of methods and applications
err2020-01-01
err0
errOAAI
errJie Zhou; Ganqu Cui; Shengding Hu; Zhengyan Zhang; Cheng Yang; Zhiyuan Liu; Lifeng Wang; Changcheng Li; Maosong Sun
errShare
errSave
researcher View more