BF Process
Irena Bojanova, Inventor/Creator, PI & Lead, NIST Bugs Framework (BF), 2014 – ~~~

The BF Process is presented on Figure 1.

Figure 1. An exemplary Bugs Framework (BF) Process.

The left side of Figure 1 presents an exemplary method for creating and refining a bugs framework taxonomy. //to be added//

The right side presents an exemplary method for creating a bugs framework vulnerability specification. The steps for the creation of BF specifications of software or hardware security vulnerabilities (which would also form a labeled vulnerability dataset, directly usable as input to traditional systems and for training AI models) are as follows. //to be added//


BF PATENT PENDING
U.S. Patent Application No. PCT/US2025/038662 Bugs Framework (BF): A System for Formal Specification of Cybersecurity Weaknesses and Vulnerabilities, Definition of Secure Coding Principles, and Generation of Weakness and Vulnerability Datasets and Vulnerability Classifications. Inventor: Irena Bojanova, NIST.

BF CITATION
Bojanova I (2024) Bugs Framework (BF): Formalizing Cybersecurity Weaknesses and Vulnerabilities. (National Institute of Standards and Technology, Gaithersburg, MD), NIST Special Publication (SP), NIST SP 800-231. https://doi.org/10.6028/NIST.SP.800-231