{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2024,10,23]],"date-time":"2024-10-23T08:48:34Z","timestamp":1729673314617,"version":"3.28.0"},"reference-count":26,"publisher":"IEEE","content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2007,7]]},"DOI":"10.1109\/nas.2007.15","type":"proceedings-article","created":{"date-parts":[[2007,8,8]],"date-time":"2007-08-08T19:12:59Z","timestamp":1186600379000},"page":"91-100","source":"Crossref","is-referenced-by-count":5,"title":["Assessing Attack Threat by the Probability of Following Attacks"],"prefix":"10.1109","author":[{"given":"Zhi-tang","family":"Li","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Jie","family":"Lei","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Li","family":"Wang","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Dong","family":"Li","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref10","first-page":"244","article-title":"Alert correlation for extracting attack strategies","volume":"3","author":"ghorbani","year":"2006","journal-title":"International Journal of Network Security"},{"journal-title":"Correlating ids alerts with vulnerability information technical report","year":"2002","author":"gula","key":"ref11"},{"key":"ref12","article-title":"Tandi: Threat assessment of network data and information. In Muliisensor, Multisource Information Fusion: Ar-chitectures, Algorithms, and Applications 2006","volume":"6242","author":"holsopplea","year":"2006","journal-title":"Proc of SPIE"},{"key":"ref13","article-title":"The work of intrusion detection:rethinking the role of security analyst","author":"john","year":"2004","journal-title":"Proceedings of the Tenth Americas Conference on Information Systems"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1145\/775094.775101"},{"key":"ref15","article-title":"Alert verification: Determining the success of intrusion attempts","author":"kruegel","year":"2004","journal-title":"Work-shop of the Detection of Intrusions and Malware and Vulnerability Assessment (DIMVA 2004)"},{"key":"ref16","first-page":"73","article-title":"Statistical causality analysis of infosec alert data","author":"lee","year":"2003","journal-title":"Proceedings of the International Symposium on the Recent Advances in Intrusion Detection RAID 2003)"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1109\/SECPRI.2002.1004377"},{"key":"ref18","doi-asserted-by":"crossref","first-page":"95","DOI":"10.1007\/3-540-36084-0_6","article-title":"A mission-impact-based approach to infosec alarm correlation","author":"porras","year":"2002","journal-title":"Proceedings of the International Symposium on the Recent Advances in Intrusion Detection RAID 2002)"},{"key":"ref19","article-title":"Snort - lightweight intrusion detection for networks","author":"roesch","year":"1999","journal-title":"Proceedings of the USENIX LISA 1999 Conference"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1109\/ACSAC.2001.991518"},{"key":"ref3","doi-asserted-by":"crossref","first-page":"145","DOI":"10.1007\/11856214_8","article-title":"Using hidden markov models to evaluate the risk of intrusions","author":"andre arnes","year":"2006","journal-title":"Proceedings of the International Symposium on the Recent Advances in Intrusion Detection RAID 2006)"},{"journal-title":"Common Vulnerabilities and Exposures","year":"0","key":"ref6"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1109\/SECPRI.2002.1004372"},{"key":"ref8","article-title":"Fusing a heterogeneous alert stream into scenarios","author":"dain","year":"2001","journal-title":"Proceedings of the 2001 ACM Workshop on Data Mining for Security Applications"},{"journal-title":"Common Vulnerability Scoring System","year":"0","key":"ref7"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1145\/170035.170072"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1016\/S1363-4127(03)00004-9"},{"journal-title":"Bugtraq","year":"0","key":"ref1"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1109\/IWIA.2005.16"},{"journal-title":"Technical Report","article-title":"Internet security threat report: Volume x: September 2006","year":"2007","key":"ref22"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1109\/DSN.2005.18"},{"key":"ref24","doi-asserted-by":"crossref","first-page":"127","DOI":"10.1007\/11856214_7","article-title":"Ranking attack graphs","author":"vaibhav mehta","year":"2006","journal-title":"Proceedings of the International Symposium on the Recent Advances in Intrusion Detection RAID 2006)"},{"key":"ref23","first-page":"1","article-title":"A frame-wor k for the application of association rule mining in large intrusion detection infrastructure","author":"thurimella","year":"2006","journal-title":"Proceedings of the International Symposium on the Recent Advances in Intrusion Detection RAID 2006)"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-540-71549-8_14"},{"key":"ref25","first-page":"79","article-title":"Data mining approaches for intrusion detection","author":"wenke lee","year":"1998","journal-title":"Proceedings of the 7th USENIX Security Symposium"}],"event":{"name":"2007 International Conference on Networking, Architecture, and Storage (NAS 2007)","start":{"date-parts":[[2007,7,29]]},"location":"Guilin, China","end":{"date-parts":[[2007,7,31]]}},"container-title":["2007 International Conference on Networking, Architecture, and Storage (NAS 2007)"],"original-title":[],"link":[{"URL":"https:\/\/2.zoppoz.workers.dev:443\/http\/xplorestaging.ieee.org\/ielx5\/4286392\/4286393\/04286413.pdf?arnumber=4286413","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2017,6,17]],"date-time":"2017-06-17T21:50:23Z","timestamp":1497736223000},"score":1,"resource":{"primary":{"URL":"https:\/\/2.zoppoz.workers.dev:443\/http\/ieeexplore.ieee.org\/document\/4286413\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2007,7]]},"references-count":26,"URL":"https:\/\/2.zoppoz.workers.dev:443\/https\/doi.org\/10.1109\/nas.2007.15","relation":{},"subject":[],"published":{"date-parts":[[2007,7]]}}}