{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,2,10]],"date-time":"2026-02-10T16:59:34Z","timestamp":1770742774697,"version":"3.49.0"},"publisher-location":"Cham","reference-count":31,"publisher":"Springer Nature Switzerland","isbn-type":[{"value":"9783031651748","type":"print"},{"value":"9783031651755","type":"electronic"}],"license":[{"start":{"date-parts":[[2024,1,1]],"date-time":"2024-01-01T00:00:00Z","timestamp":1704067200000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2024,1,1]],"date-time":"2024-01-01T00:00:00Z","timestamp":1704067200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2024]]},"DOI":"10.1007\/978-3-031-65175-5_19","type":"book-chapter","created":{"date-parts":[[2024,7,25]],"date-time":"2024-07-25T14:43:01Z","timestamp":1721918581000},"page":"264-278","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":2,"title":["Malicious Insider Threat Detection Using Sentiment Analysis of\u00a0Social Media Topics"],"prefix":"10.1007","author":[{"given":"Matt","family":"Kenny","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-3392-9970","authenticated-orcid":false,"given":"Nikolaos","family":"Pitropakis","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-9164-7672","authenticated-orcid":false,"given":"Sarwar","family":"Sayeed","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-9817-003X","authenticated-orcid":false,"given":"Christos","family":"Chrysoulas","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-8819-5831","authenticated-orcid":false,"given":"Alexios","family":"Mylonas","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2024,7,26]]},"reference":[{"key":"19_CR1","doi-asserted-by":"publisher","first-page":"40626","DOI":"10.1109\/ACCESS.2018.2857450","volume":"6","author":"A Almehmadi","year":"2018","unstructured":"Almehmadi, A.: Micromovement behavior as an intention detection measurement for preventing insider threats. IEEE Access 6, 40626\u201340637 (2018)","journal-title":"IEEE Access"},{"issue":"2","key":"19_CR2","first-page":"46","volume":"4","author":"DW Ariani","year":"2013","unstructured":"Ariani, D.W.: The relationship between employee engagement, organizational citizenship behavior, and counterproductive work behavior. Int. J. Bus. Adm. 4(2), 46 (2013)","journal-title":"Int. J. Bus. Adm."},{"key":"19_CR3","doi-asserted-by":"crossref","unstructured":"Bishop, M., Gates, C.: Defining the insider threat. In: Proceedings of the 4th Annual Workshop on Cyber Security and Information Intelligence Research: Developing Strategies to Meet the Cyber Security and Information Intelligence Challenges Ahead, pp.\u00a01\u20133 (2008)","DOI":"10.1145\/1413140.1413158"},{"key":"19_CR4","unstructured":"CERT: 2010 Cybersecurity Watch Survey: Cybercrime Increasing Faster Than Some Company Defenses (2010). https:\/\/resources.sei.cmu.edu\/asset_files\/News\/2010_100_001_53454.pdf"},{"key":"19_CR5","unstructured":"EU-Parliament: Eu guidelines on ethics in artificial intelligence: Context and implementation (2019). https:\/\/www.europarl.europa.eu\/RegData\/etudes\/BRIE\/2019\/640163\/EPRS_BRI(2019)640163_EN.pdf"},{"key":"19_CR6","doi-asserted-by":"publisher","unstructured":"Gallagher, M., Pitropakis, N., Chrysoulas, C., Papadopoulos, P., Mylonas, A., Katsikas, S.: Investigating machine learning attacks on financial time series models. Comput. Secur. 123, 102933 (2022). https:\/\/doi.org\/10.1016\/j.cose.2022.102933, https:\/\/www.sciencedirect.com\/science\/article\/pii\/S016740482200325X","DOI":"10.1016\/j.cose.2022.102933"},{"issue":"3","key":"19_CR7","doi-asserted-by":"publisher","first-page":"450","DOI":"10.1177\/1369148117710799","volume":"19","author":"M Goodwin","year":"2017","unstructured":"Goodwin, M., Milazzo, C.: Taking back control? Investigating the role of immigration in the 2016 vote for Brexit. Br. J. Polit. Int. Relat. 19(3), 450\u2013464 (2017)","journal-title":"Br. J. Polit. Int. Relat."},{"key":"19_CR8","doi-asserted-by":"crossref","unstructured":"Greitzer, F.L., Kangas, L.J., Noonan, C.F., Dalton, A.C., Hohimer, R.E.: Identifying at-risk employees: modeling psychosocial precursors of potential insider threats. In: 2012 45th Hawaii International Conference on System Sciences, pp. 2392\u20132401. IEEE (2012)","DOI":"10.1109\/HICSS.2012.309"},{"key":"19_CR9","unstructured":"Gurucul: 2021 insider threat report (2021). https:\/\/gurucul.com\/2021-insider-threat-report"},{"key":"19_CR10","unstructured":"Heuer, R.J., Herbig, K.: The insider espionage threat. Res. Mitigat. Insider Threat Inf. Syst. 2 (2001)"},{"issue":"2","key":"19_CR11","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1145\/3303771","volume":"52","author":"I Homoliak","year":"2019","unstructured":"Homoliak, I., Toffalini, F., Guarnizo, J., Elovici, Y., Ochoa, M.: Insight into insiders and it: a survey of insider threat taxonomies, analysis, modeling, and countermeasures. ACM Comput. Surv. (CSUR) 52(2), 1\u201340 (2019)","journal-title":"ACM Comput. Surv. (CSUR)"},{"key":"19_CR12","unstructured":"Iyengar, R., Morrow, A.: Elon musk says twitter deal can\u2019t happen until bot account dispute is resolved (2022). https:\/\/edition.cnn.com\/2022\/05\/16\/tech\/elon-musk-twitter-spam-bots-parag\/index.html"},{"key":"19_CR13","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"26","DOI":"10.1007\/978-3-642-15152-1_3","volume-title":"Trust, Privacy and Security in Digital Business","author":"M Kandias","year":"2010","unstructured":"Kandias, M., Mylonas, A., Virvilis, N., Theoharidou, M., Gritzalis, D.: An insider threat prediction model. In: Katsikas, S., Lopez, J., Soriano, M. (eds.) TrustBus 2010. LNCS, vol. 6264, pp. 26\u201337. Springer, Heidelberg (2010). https:\/\/doi.org\/10.1007\/978-3-642-15152-1_3"},{"key":"19_CR14","doi-asserted-by":"crossref","unstructured":"Kandias, M., Stavrou, V., Bozovic, N., Mitrou, L., Gritzalis, D.: Can we trust this user? Predicting insider\u2019s attitude via YouTube usage profiling. In: 2013 IEEE 10th International Conference on Ubiquitous Intelligence and Computing and 2013 IEEE 10th International Conference on Autonomic and Trusted Computing, pp. 347\u2013354. IEEE (2013)","DOI":"10.1109\/UIC-ATC.2013.12"},{"issue":"1","key":"19_CR15","doi-asserted-by":"publisher","first-page":"62","DOI":"10.1016\/S0167-4048(02)00109-8","volume":"21","author":"GB Magklaras","year":"2001","unstructured":"Magklaras, G.B., Furnell, S.: Insider threat prediction tool: evaluating the probability of it misuse. Comput. Secur. 21(1), 62\u201373 (2001)","journal-title":"Comput. Secur."},{"key":"19_CR16","doi-asserted-by":"crossref","unstructured":"Nguyen, N., Reiher, P., Kuenning, G.H.: Detecting insider threats by monitoring system call activity. In: 2003 IEEE Systems, Man and Cybernetics SocietyInformation Assurance Workshop, pp. 45\u201352. IEEE (2003)","DOI":"10.1109\/SMCSIA.2003.1232400"},{"key":"19_CR17","unstructured":"NLTK Project: NLTK $${:}{:}$$ Natural Language Toolkit (2022). https:\/\/www.nltk.org\/"},{"key":"19_CR18","doi-asserted-by":"crossref","unstructured":"Padayachee, K.: A conceptual opportunity-based framework to mitigate the insider threat. In: 2013 Information Security for South Africa, pp.\u00a01\u20138. IEEE (2013)","DOI":"10.1109\/ISSA.2013.6641060"},{"key":"19_CR19","unstructured":"Partridge, J., Inman, P.: Hybrid working grew in great Britain even as COVID rules eased, data shows (2022). https:\/\/www.theguardian.com\/business\/2022\/may\/23\/hybrid-working-grew-in-great-britain-even-as-covid-rules-eased-data-shows"},{"key":"19_CR20","unstructured":"Pedregosa, F., et al.: Scikit-learn: machine learning in Python. J. Mach. Learn. Res. 12, 2825\u20132830 (2011)"},{"issue":"1","key":"19_CR21","doi-asserted-by":"publisher","first-page":"169","DOI":"10.1109\/TIFS.2009.2039591","volume":"5","author":"SL Pfleeger","year":"2009","unstructured":"Pfleeger, S.L., Predd, J.B., Hunker, J., Bulford, C.: Insiders behaving badly: addressing bad actors and their actions. IEEE Trans. Inf. Forensics Secur. 5(1), 169\u2013179 (2009)","journal-title":"IEEE Trans. Inf. Forensics Secur."},{"issue":"3","key":"19_CR22","doi-asserted-by":"publisher","first-page":"192","DOI":"10.3390\/make2030011","volume":"2","author":"N Pitropakis","year":"2020","unstructured":"Pitropakis, N., Kokot, K., Gkatzia, D., Ludwiniak, R., Mylonas, A., Kandias, M.: Monitoring users\u2019 behavior: anti-immigration speech detection on twitter. Mach. Learn. Knowl. Extract. 2(3), 192\u2013215 (2020)","journal-title":"Mach. Learn. Knowl. Extract."},{"key":"19_CR23","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"136","DOI":"10.1007\/978-3-319-22906-5_11","volume-title":"Trust, Privacy and Security in Digital Business","author":"N Pitropakis","year":"2015","unstructured":"Pitropakis, N., Lambrinoudakis, C., Geneiatakis, D.: Till all are one: towards a unified cloud IDS. In: Fischer-H\u00fcbner, S., Lambrinoudakis, C., Lopez, J. (eds.) TrustBus 2015. LNCS, vol. 9264, pp. 136\u2013149. Springer, Cham (2015). https:\/\/doi.org\/10.1007\/978-3-319-22906-5_11"},{"key":"19_CR24","unstructured":"Ponemon: 2022 cost of insider threats global report (2022). https:\/\/static.poder360.com.br\/2022\/01\/pfpt-us-tr-the-cost-of-insider-threats-ponemon-report.pdf"},{"key":"19_CR25","unstructured":"Python Core Team: tkinter - Python interface to TCL\/TK. Python Software Foundation (2022). https:\/\/wiki.python.org\/moin\/TkInter"},{"key":"19_CR26","unstructured":"Roesslein, J.: Tweepy: Twitter for python! (2022). https:\/\/github.com\/tweepy\/tweepy"},{"issue":"6","key":"19_CR27","doi-asserted-by":"publisher","first-page":"526","DOI":"10.1016\/S0167-4048(02)01009-X","volume":"21","author":"EE Schultz","year":"2002","unstructured":"Schultz, E.E.: A framework for understanding and predicting insider attacks. Comput. Secur. 21(6), 526\u2013531 (2002)","journal-title":"Comput. Secur."},{"issue":"98","key":"19_CR28","first-page":"1","volume":"2","author":"ED Shaw","year":"1998","unstructured":"Shaw, E.D., Ruby, K.G., Post, J.M.: The insider threat to information systems. Secur. Awareness Bull. 2(98), 1\u201310 (1998)","journal-title":"Secur. Awareness Bull."},{"key":"19_CR29","doi-asserted-by":"publisher","first-page":"308","DOI":"10.1016\/j.anucene.2017.11.030","volume":"113","author":"YA Suh","year":"2018","unstructured":"Suh, Y.A., Yim, M.S.: \u201cHigh risk non-initiating insider\u2019\u2019 identification based on EEG analysis for enhancing nuclear security. Ann. Nucl. Energy 113, 308\u2013318 (2018)","journal-title":"Ann. Nucl. Energy"},{"issue":"4","key":"19_CR30","doi-asserted-by":"publisher","first-page":"267","DOI":"10.1037\/lhb0000032","volume":"37","author":"PJ Taylor","year":"2013","unstructured":"Taylor, P.J., et al.: Detecting insider threats through language change. Law Hum Behav. 37(4), 267 (2013)","journal-title":"Law Hum Behav."},{"key":"19_CR31","doi-asserted-by":"crossref","unstructured":"Yerdon, V.A., Lin, J., Wohleber, R.W., Matthews, G., Reinerman-Jones, L., Hancock, P.: Eye-tracking active indicators of insider threats: detecting illicit activity during normal workflow. IEEE Trans. Eng. Manage. (2021)","DOI":"10.1109\/TEM.2021.3059240"}],"container-title":["IFIP Advances in Information and Communication Technology","ICT Systems Security and Privacy Protection"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-031-65175-5_19","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,11,24]],"date-time":"2024-11-24T20:51:42Z","timestamp":1732481502000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-031-65175-5_19"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024]]},"ISBN":["9783031651748","9783031651755"],"references-count":31,"URL":"https:\/\/doi.org\/10.1007\/978-3-031-65175-5_19","relation":{},"ISSN":["1868-4238","1868-422X"],"issn-type":[{"value":"1868-4238","type":"print"},{"value":"1868-422X","type":"electronic"}],"subject":[],"published":{"date-parts":[[2024]]},"assertion":[{"value":"26 July 2024","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"SEC","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"IFIP International Conference on ICT Systems Security and Privacy Protection","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Edinburgh","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"United Kingdom","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2024","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"12 June 2024","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"14 June 2024","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"39","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"sec2024","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"https:\/\/ifipsec2024.co.uk\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}