TY - GEN
T1 - Do Content Management Systems Impact the Security of Free Content Websites?
AU - Alqadhi, Mohamed
AU - Alabduljabbar, Abdulrahman
AU - Thomas, Kyle
AU - Salem, Saeed
AU - Nyang, Dae Hun
AU - Mohaisen, David
N1 - Publisher Copyright:
© 2023, The Author(s), under exclusive license to Springer Nature Switzerland AG.
PY - 2023
Y1 - 2023
N2 - This paper investigates the potential causes of the vulnerabilities of free content websites to address risks and maliciousness. Assembling more than 1,500 websites with free and premium content, we identify their content management system (CMS) and malicious attributes. We use frequency analysis at both the aggregate and per category of content (books, games, movies, music, and software), utilizing the unpatched vulnerabilities, total vulnerabilities, malicious count, and percentiles to uncover trends and affinities of usage and maliciousness of CMS’s and their contribution to those websites. Moreover, we find that, despite the significant number of custom code websites, the use of CMS’s is pervasive, with varying trends across types and categories. Finally, we find that even a small number of unpatched vulnerabilities in popular CMS’s could be a potential cause for significant maliciousness.
AB - This paper investigates the potential causes of the vulnerabilities of free content websites to address risks and maliciousness. Assembling more than 1,500 websites with free and premium content, we identify their content management system (CMS) and malicious attributes. We use frequency analysis at both the aggregate and per category of content (books, games, movies, music, and software), utilizing the unpatched vulnerabilities, total vulnerabilities, malicious count, and percentiles to uncover trends and affinities of usage and maliciousness of CMS’s and their contribution to those websites. Moreover, we find that, despite the significant number of custom code websites, the use of CMS’s is pervasive, with varying trends across types and categories. Finally, we find that even a small number of unpatched vulnerabilities in popular CMS’s could be a potential cause for significant maliciousness.
KW - CMS
KW - Free content websites
KW - Measurement
KW - Web security
UR - http://www.scopus.com/inward/record.url?scp=85151054815&partnerID=8YFLogxK
U2 - 10.1007/978-3-031-26303-3_13
DO - 10.1007/978-3-031-26303-3_13
M3 - Conference contribution
AN - SCOPUS:85151054815
SN - 9783031263026
T3 - Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics)
SP - 141
EP - 154
BT - Computational Data and Social Networks - 11th International Conference, CSoNet 2022, Proceedings
A2 - Dinh, Thang N.
A2 - Li, Minming
PB - Springer Science and Business Media Deutschland GmbH
T2 - 11th International Conference on Computational Data and Social Networks, CSoNet 2022
Y2 - 5 December 2022 through 7 December 2022
ER -