FIELD: computer equipment.
SUBSTANCE: method of determining potential threats to information security based on information on vulnerabilities of software comprises steps of obtaining a list of known vulnerabilities and threats; creating artificial neural networks (ANN) to determine the possibility of realizing threats; obtaining a set of training vulnerability samples for each ANN; generating the generated ANN by using the obtained samples; obtaining list of vulnerabilities detected in IS; features of each vulnerability detected in the AN are sent to the input of each created ANN and a list of potential threats, ranked as per the implementation probability, is obtained.
EFFECT: technical result consists in reduction of complexity and labor intensity of process of formation of list of potential threats.
1 cl, 2 dwg
Authors
Dates
2019-11-07—Published
2019-03-19—Filed