Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Secure .gov websites use HTTPS
A lock ( ) or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.

NIST IR 8151 (Initial Public Draft)

Dramatically Reducing Software Vulnerabilities: Report to the White House Office of Science and Technology Policy

Date Published: October 2016
Comments Due: October 18, 2016 (public comment period is CLOSED)
Email Questions to: paul.black@nist.gov

Author(s)

Paul Black (NIST), Mark Badger (NIST), Barbara Guttman (NIST), Elizabeth Fong (NIST)

Announcement

NIST invites comments on Draft NIST Internal Report (NISTIR) 8151, Dramatically Reducing Software Vulnerabilities -- Report to the White House Office of Science and Technology Policy. The call for a dramatic reduction in software vulnerability is heard from numerous sources, recently from the February 2016 Federal Cybersecurity Research and Development Strategic Plan.  The plan defines goals for reducing vulnerabilities in the near, mid and long term.  This report addresses the first mid-term goal.

Abstract

Keywords

metrics; software assurance; security vulnerabilities; Measurement; reduce software vulnerability
Control Families

None selected

Documentation

Publication:
Draft NISTIR 8151 (pdf)

Supplemental Material:
None available

Document History:
10/04/16: IR 8151 (Draft)
11/30/16: IR 8151 (Final)

Topics

Security and Privacy

assurance, threats, vulnerability management

Technologies

software & firmware