Zero Days, Thousands of Nights: The Life & Times of Zero-Day Vulns and Their Exploits

Zero-day vulnerabilities and their exploits are useful in offensive operations as well as in defensive and academic settings.

RAND obtained rare access to a dataset of information about more than 200 zero-day software vulnerabilities and their exploits — many of which are still publicly unknown. We analyzed these data to provide insights about the zero-day vulnerability research and exploit development industry.

By Lillian Ablon

