The Center for Education and Research in Information Assurance and Security (CERIAS)

The Center for Education and Research in
Information Assurance and Security (CERIAS)

Pascal Meunier - Purdue University

Students: Spring 2024, unless noted otherwise, sessions will be virtual on Zoom.

Making of the CWE Top-25, 2010 Edition

Mar 10, 2010

Download: Video Icon MP4 Video Size: 444.7MB  
Watch on Youtube Watch on YouTube


For the second time, MITRE's Common Weakness Enumeration project has released a Top-25 list. However, this year's is a much more sophisticated document, created using a systematic and more rigorous approach. It contains several sections and tables as well as profiles, and isn't only a list. I will
explain what the CWE is, what the purpose of the Top-25 is, how it was created,
which problems it faced and which it still faces, how it has been improved
since last year, and how you can use it.

About the Speaker

Pascal Meunier received his B.S. in Physics in 1986 from Laval University, Ph.D. in Biophysics from the University of Québec in 1990, and M.Sc. in computer science from Purdue in 2000. Dr. Meunier has since worked at CERIAS on projects such as the Cassandra system (, vulnerabilities of PDAs in a wireless environment, and vulnerability analysis ( He has been on the board of editors of the CVE at MITRE since 1999, and is adjunct faculty in Norwich University's program for their online Masters in Information Assurance.

Ways to Watch


Watch Now!

Over 500 videos of our weekly seminar and symposia keynotes are available on our YouTube Channel. Also check out Spaf's YouTube Channel. Subscribe today!