{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2024,9,4]],"date-time":"2024-09-04T17:52:16Z","timestamp":1725472336034},"publisher-location":"Berlin, Heidelberg","reference-count":22,"publisher":"Springer Berlin Heidelberg","isbn-type":[{"type":"print","value":"9783540491125"},{"type":"electronic","value":"9783540491149"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2006]]},"DOI":"10.1007\/11927587_13","type":"book-chapter","created":{"date-parts":[[2006,11,8]],"date-time":"2006-11-08T05:12:43Z","timestamp":1162962763000},"page":"136-154","source":"Crossref","is-referenced-by-count":3,"title":["Janus: A Two-Sided Analytical Model for Multi-Stage Coordinated Attacks"],"prefix":"10.1007","author":[{"given":"Zonghua","family":"Zhang","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Pin-Han","family":"Ho","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Xiaodong","family":"Lin","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Hong","family":"Shen","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","reference":[{"key":"13_CR1","unstructured":"Aberdeen, D.: A Survey of Approximate Methods for Solving Partially Observable Markov Decision Processes, National ICT Australia Report, Canberra, Australia, December 8 (2003)"},{"key":"13_CR2","doi-asserted-by":"crossref","unstructured":"Braynov, S., Jadiwala, M.: Representation and Analaysis of Coordinated Attacks. In: Proceedings of the 2003 ACM workshop on Formal methods in security engineering, pp. 43\u201351 (2003)","DOI":"10.1145\/1035429.1035434"},{"key":"13_CR3","doi-asserted-by":"crossref","unstructured":"Browne, H.K., Arbaugh, W.A., McHugh, J., Fithen, W.L.: A Trend Analysis of Exploitations. In: Proceedings of 2001 IEEE Symposium on Security and Privacy (S&P 2001), Oakland, California, USA, May 14-16, pp. 214\u2013229 (2001)","DOI":"10.1109\/SECPRI.2001.924300"},{"key":"13_CR4","doi-asserted-by":"crossref","unstructured":"Chen, S., Kalbarczyk, Z., Xu, J., Iyer, R.K.: A Data-Driven Finite State Machine Model for Analyzing Security Vulnerabilities. In: 2003 International Conference on Dependable Systems and Networks (DSN 2003), San Francisco, pp. 605\u2013614 (2003)","DOI":"10.1109\/DSN.2003.1209970"},{"issue":"2-3","key":"13_CR5","first-page":"141","volume":"9","author":"O. Cordon","year":"2002","unstructured":"Cordon, O., Herrera, F., Stutzle, T.: A Review on the Ant Colony Optimization Metaheuristic: Basis, Models and New Trends. Mathware and Soft Computing\u00a09(2-3), 141\u2013175 (2002)","journal-title":"Mathware and Soft Computing"},{"key":"13_CR6","doi-asserted-by":"crossref","unstructured":"Daley, K., Larson, R., Dawkins, J.: A Structural Framework for Modeling Multi-Stage Network Attacks. In: Proceedings of the International Conference on Parallel Processing Workshops (ICPPW 2002), Vancouver, Canada, pp. 5\u201310 (2002)","DOI":"10.1109\/ICPPW.2002.1039705"},{"key":"13_CR7","doi-asserted-by":"publisher","first-page":"29","DOI":"10.1109\/3477.484436","volume":"26","author":"M. Dorigo","year":"1996","unstructured":"Dorigo, M., Maniezzo, V., Colorni, A.: The Ant System: Optimization by a colony of cooperating agents. IEEE Trans. Syst. Man, Cyber. Part B\u00a026, 29\u201341 (1996)","journal-title":"IEEE Trans. Syst. Man, Cyber. Part B"},{"issue":"1","key":"13_CR8","doi-asserted-by":"publisher","first-page":"148","DOI":"10.1109\/TR.2004.824833","volume":"53","author":"O. Patrick Kreidl","year":"2004","unstructured":"Patrick Kreidl, O., Frazier, T.M.: Feedback Control Applied to Survivability: A Host-Based Autonomic Defense System. IEEE Trans. on Reliability\u00a053(1), 148\u2013166 (2004)","journal-title":"IEEE Trans. on Reliability"},{"issue":"2","key":"13_CR9","doi-asserted-by":"publisher","first-page":"63","DOI":"10.1109\/MSP.2005.57","volume":"3","author":"E. Levy","year":"2005","unstructured":"Levy, E.: Worm Propagation and Genetric Attacks. IEEE Security and Privacy\u00a03(2), 63\u201365 (2005)","journal-title":"IEEE Security and Privacy"},{"issue":"1","key":"13_CR10","doi-asserted-by":"publisher","first-page":"78","DOI":"10.1145\/1053283.1053288","volume":"8","author":"P. Liu","year":"2005","unstructured":"Liu, P., Zang, w., Yu, M.: Incentive-Based Modeling and Inference of Attacker Intent, Objectives, and strategies. ACM Transactions on Information and System Security\u00a08(1), 78\u2013118 (2005)","journal-title":"ACM Transactions on Information and System Security"},{"key":"13_CR11","doi-asserted-by":"crossref","unstructured":"Mathew, S., Shah, C., Upadhyaya, S.: An alert Fusion Framework for Situation Awareness of Coordinated Multistage Attacks. In: Proceedings of the Third IEEE International Workshop on Information Assurance (IWIA 2005), College Park, MD, USA, pp. 95\u2013104 (2005)","DOI":"10.1109\/IWIA.2005.3"},{"key":"13_CR12","volume-title":"Internet Denial of Service: Attack and Defense Mechanisms","author":"J. Mirkovic","year":"2005","unstructured":"Mirkovic, J., Dietrich, S., Dittrich, D., Reiher, P.: Internet Denial of Service: Attack and Defense Mechanisms. Prentice Hall, Englewood Cliffs (2005)"},{"issue":"2","key":"13_CR13","doi-asserted-by":"publisher","first-page":"274","DOI":"10.1145\/996943.996947","volume":"7","author":"P. Ning","year":"2004","unstructured":"Ning, P., Cui, Y., Reeves, D.S., Xu, D.: Techniques and Tools for Analyzing Intrusion Alerts. ACM Trans. on Information and System Security\u00a07(2), 274\u2013318 (2004)","journal-title":"ACM Trans. on Information and System Security"},{"key":"13_CR14","doi-asserted-by":"crossref","unstructured":"Phillips, C., Swiler, L.: A graph-based system for network-vulnerability analysis. In: Proceedings of the 1998 Workshop on New Security Paradigms, pp. 71\u201379 (1998)","DOI":"10.1145\/310889.310919"},{"key":"13_CR15","doi-asserted-by":"crossref","unstructured":"Ritchey, R.W., Ammann, P.: Using Model Checking to Analyze Network Vulnerabilities. In: 2000 IEEE Symposium on Security and Privacy (S&P 2000), Oakland, California, USA, May 14-17, pp. 156\u2013165 (2000)","DOI":"10.1109\/SECPRI.2000.848453"},{"key":"13_CR16","unstructured":"Schneier, B.: Attack Tress. Dr. Dobb\u2019s J.\u00a012 (December 1999), \n                    \n                      http:\/\/www.ddj.com\/articles\/1999\/9912"},{"key":"13_CR17","doi-asserted-by":"crossref","unstructured":"Sheyner, O., Haines, J., Jha, S., et al.: Automated Generation and Analysis of Attack Graphs. In: Proceedings of the 2002 IEEE Symposium on Security and Privacy (S&P 2002), Oakland, California, USA, May 12-15, pp. 273\u2013284 (2002)","DOI":"10.1109\/SECPRI.2002.1004377"},{"key":"13_CR18","doi-asserted-by":"crossref","unstructured":"Swiler, L., Phillips, C., Ellis, D., Chakerian, S.: Computer-attack graph generation tool. In: DARPA Information Survivability Conference and Exposition, Anaheim, California, pp. 146\u2013161 (2001)","DOI":"10.1109\/DISCEX.2001.932182"},{"issue":"3","key":"13_CR19","doi-asserted-by":"publisher","first-page":"146","DOI":"10.1109\/TDSC.2004.21","volume":"1","author":"F. Valeur","year":"2004","unstructured":"Valeur, F., Vigna, G., Kruegel, C., et al.: A Comprehensive Approach to Intrusion Detection Alert Correlation. IEEE Trans. on Dependable and Secure Computing\u00a01(3), 146\u2013169 (2004)","journal-title":"IEEE Trans. on Dependable and Secure Computing"},{"key":"13_CR20","doi-asserted-by":"crossref","unstructured":"Weaver, N., Paxson, V., Staniford, S., Cunningham, R.: A taxonomy of computer worms. In: Proceedings of the 2003 ACM CCS workshop on Rapid Malcode (WORM 2003), Washington. DC, USA, pp. 11\u201318 (2003)","DOI":"10.1145\/948187.948190"},{"key":"13_CR21","unstructured":"Xie, Y., Sekar, V., Maltz, D.A., Reiter, M.K., Zhang, H.: Worm Origin Identification Using Random Moonwalks. In: Proceedings of 2005 IEEE Symposium on Security and Privacy (S&P 2005), Oakland, CA, May 2005, pp. 242\u2013256 (2005)"},{"key":"13_CR22","doi-asserted-by":"crossref","unstructured":"Zhang, Z., Shen, H.: Constructing Multi-Layered Boundary to Defend Against Intrusive Anomalies: An Autonomic Detection Coordinator. In: Proceedings of the 2005 International Conference on Dependable Systems and Networks (DSN 2005), Yokohama, Japan, June 2005, pp. 118\u2013127 (2005)","DOI":"10.1109\/DSN.2005.30"}],"container-title":["Lecture Notes in Computer Science","Information Security and Cryptology \u2013 ICISC 2006"],"original-title":[],"link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/11927587_13.pdf","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2021,4,27]],"date-time":"2021-04-27T07:46:45Z","timestamp":1619509605000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/11927587_13"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2006]]},"ISBN":["9783540491125","9783540491149"],"references-count":22,"URL":"https:\/\/doi.org\/10.1007\/11927587_13","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2006]]}}}