|
1 | 1 | # Acknowledgements |
2 | 2 |
|
3 | | -The authors would first like to acknowledge the valuable contributions of previous authors who have worked on earlier versions |
4 | | -of this report: Art Manion, Madison Oliver, and Deana Shick. |
| 3 | +The SSVC team would first like to acknowledge the valuable contributions of |
| 4 | +previous authors who have worked on earlier versions of SSVC: Eric Hatleback, |
| 5 | +Bon Jin Koo, Art Manion, Madison Oliver, Deana Shick, and Jonathan Spring. |
5 | 6 |
|
6 | | -The authors thank the [contributors](https://github.com/CERTCC/SSVC/graphs/contributors) to the |
7 | | -[SSVC project](https://github.com/CERTCC/SSVC) on Github as well as the following individuals for helpful comments on |
8 | | -prior drafts (listed in alphabetical order): |
| 7 | +SSVC began as a series of papers before we created this site. Earlier versions |
| 8 | +were written by: |
| 9 | +[1] J. M. Spring, E. Hatleback, A. D. Householder, A. Manion, and D. Shick, |
| 10 | +"Towards Improving CVSS," Software Engineering Institute, Carnegie Mellon |
| 11 | +University, Dec. 2018. [Online]. Available: [https://github.com/CERTCC/SSVC/blob/main/pdfs/2018_019_001_538372.pdf](https://github.com/CERTCC/SSVC/blob/main/pdfs/2018_019_001_538372.pdf) |
| 12 | +[2] J. M. Spring, E. Hatleback, A. D. Householder, A. Manion, and D. Shick, |
| 13 | +"Prioritizing Vulnerability Response: a Stakeholder-Specific Vulnerability |
| 14 | +Categorization," Software Engineering Institute, Carnegie Mellon University, |
| 15 | +Nov. 2019. [Online]. Available: [https://github.com/CERTCC/SSVC/blob/main/pdfs/2019_019_001_636391.pdf](https://github.com/CERTCC/SSVC/blob/main/pdfs/2019_019_001_636391.pdf) |
| 16 | +[3] J. M. Spring, E. Hatleback, A. D. Householder, A. Manion, and D. Shick, |
| 17 | +"Prioritizing Vulnerability Response: a Stakeholder-Specific Vulnerability |
| 18 | +Categorization (Version 1.1)," Software Engineering Institute, Carnegie Mellon |
| 19 | +University, Dec. 2020. [Online]. Available: [https://github.com/CERTCC/SSVC/blob/main/pdfs/weis20-final6.pdf](https://github.com/CERTCC/SSVC/blob/main/pdfs/weis20-final6.pdf) |
| 20 | +[4] J. M. Spring, A. D. Householder, E. Hatleback, A. Manion, M. Oliver, |
| 21 | +V. Sarvepalli, L. Tyzenhaus, and C. Yarbrough, |
| 22 | +"Prioritizing Vulnerability Response: a Stakeholder-Specific Vulnerability |
| 23 | +Categorization (Version 2.0)," Software Engineering Institute, Carnegie Mellon |
| 24 | +University, Apr. 2021. [Online]. Available: [https://github.com/CERTCC/SSVC/blob/main/pdfs/2021_019_001_653461.pdf](https://github.com/CERTCC/SSVC/blob/main/pdfs/2021_019_001_653461.pdf) |
| 25 | +[5] J. M. Spring, E. Hatleback, A. D. Householder, V. Sarvepalli, L. Tyzenhaus, |
| 26 | +and C. Yarbrough, "Prioritizing Vulnerability Response: a Stakeholder-Specific |
| 27 | +Vulnerability Categorization (SSVC) version 2.1.0-edb6c97," Software |
| 28 | +Engineering Institute, Carnegie Mellon University, Sep. 2023. [Online]. |
| 29 | +Available: [https://github.com/CERTCC/SSVC/blob/main/pdfs/ssvc_2_1_draft.pdf](https://github.com/CERTCC/SSVC/blob/main/pdfs/ssvc_2_1_draft.pdf) |
| 30 | + |
| 31 | +The SSVC team thanks the [contributors](https://github.com/CERTCC/SSVC/graphs/contributors) |
| 32 | +to the [SSVC project](https://github.com/CERTCC/SSVC) on GitHub as well as the |
| 33 | +following individuals for helpful comments on earlier versions (listed in |
| 34 | +alphabetical order): |
9 | 35 | Muhammad Akbar, |
10 | 36 | Will Dormann, |
11 | 37 | Manish Gaur, |
12 | 38 | Ralph Langer, |
13 | | -David Oxley |
| 39 | +David Oxley, |
14 | 40 | Dale Peterson, |
| 41 | +Bernhard Reiter, |
| 42 | +Thomas Schmidt, |
15 | 43 | Jeroen van der Ham, |
16 | 44 | Michel van Eeten, |
17 | 45 | and Sounil Yu. |
18 | 46 |
|
19 | | -The authors also thank those others too numerous to name individually who provided comments and feedback, including: |
| 47 | +The SSVC team also thanks those others too numerous to name individually who |
| 48 | +provided comments and feedback, including: |
20 | 49 | Attendees at S4, Miami FL 2020; |
21 | 50 | Attendees at A Conference on Defense (ACoD), Austin TX 2020; |
22 | 51 | Anonymous WEIS reviewers; |
23 | 52 | Various staff members and analysts at CERT/CC, CISA, McAfee, and VMWare; |
24 | 53 | FIRST CVSS SIG and EPSS SIG members; |
| 54 | +OASIS CSAF TC; |
25 | 55 | and others who wish to remain anonymous. |
0 commit comments