{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2024,9,5]],"date-time":"2024-09-05T06:39:45Z","timestamp":1725518385358},"reference-count":15,"publisher":"IEEE","content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2007,5]]},"DOI":"10.1109\/inm.2007.374834","type":"proceedings-article","created":{"date-parts":[[2007,6,28]],"date-time":"2007-06-28T15:47:07Z","timestamp":1183045627000},"page":"713-716","source":"Crossref","is-referenced-by-count":0,"title":["Learning attack strategies through mining and correlation of security alarms"],"prefix":"10.1109","author":[{"given":"Wang","family":"Li","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"family":"Li Zhi-tang","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Lei","family":"Jie","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"15","first-page":"188","article-title":"A novel technique of recognizing multi-stage attack behavior","author":"li","year":"2006","journal-title":"International Workshop on Networking Architecture and Storages"},{"year":"2000","author":"lincoln lab","journal-title":"DARPA Intrusion Detection Scenario Specific","key":"13"},{"year":"0","author":"turner","journal-title":"TCPreplay32 tools","key":"14"},{"year":"2004","author":"xinzhou","journal-title":"Discovering novel attack strategies from INFOSEC alerts","key":"11"},{"doi-asserted-by":"publisher","key":"12","DOI":"10.1109\/ICDE.1995.380415"},{"doi-asserted-by":"publisher","key":"3","DOI":"10.1145\/586143.586144"},{"year":"0","key":"2"},{"year":"0","key":"1"},{"doi-asserted-by":"publisher","key":"10","DOI":"10.1007\/0-387-24230-9_4"},{"doi-asserted-by":"publisher","key":"7","DOI":"10.1109\/ACSAC.2001.991517"},{"year":"2003","author":"julisch","journal-title":"Clustering intrusion detection alarms to support root cause analysis","key":"6"},{"doi-asserted-by":"publisher","key":"5","DOI":"10.1007\/978-3-540-30184-4_25"},{"doi-asserted-by":"publisher","key":"4","DOI":"10.1145\/996943.996947"},{"doi-asserted-by":"publisher","key":"9","DOI":"10.1109\/SECPRI.2002.1004377"},{"key":"8","doi-asserted-by":"crossref","DOI":"10.1007\/3-540-45474-8_4","article-title":"Probabilistic alert correlation","author":"valdes","year":"2001","journal-title":"Proceedings of the 4th International Symposium on Recent Advances in Intrusion Detection (RAID)"}],"event":{"name":"2007 10th IFIP\/IEEE International Symposium on Integrated Network Management","start":{"date-parts":[[2007,5,21]]},"location":"Munich, Germany","end":{"date-parts":[[2007,5,25]]}},"container-title":["2007 10th IFIP\/IEEE International Symposium on Integrated Network Management"],"original-title":[],"link":[{"URL":"https:\/\/2.zoppoz.workers.dev:443\/http\/xplorestaging.ieee.org\/ielx5\/4258513\/4258514\/04258586.pdf?arnumber=4258586","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2017,6,17]],"date-time":"2017-06-17T15:28:11Z","timestamp":1497713291000},"score":1,"resource":{"primary":{"URL":"https:\/\/2.zoppoz.workers.dev:443\/http\/ieeexplore.ieee.org\/document\/4258586\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2007,5]]},"references-count":15,"URL":"https:\/\/2.zoppoz.workers.dev:443\/https\/doi.org\/10.1109\/inm.2007.374834","relation":{},"subject":[],"published":{"date-parts":[[2007,5]]}}}