{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,2]],"date-time":"2026-05-02T08:23:02Z","timestamp":1777710182357,"version":"3.51.4"},"publisher-location":"Cham","reference-count":20,"publisher":"Springer Nature Switzerland","isbn-type":[{"value":"9783031823619","type":"print"},{"value":"9783031823626","type":"electronic"}],"license":[{"start":{"date-parts":[[2025,1,1]],"date-time":"2025-01-01T00:00:00Z","timestamp":1735689600000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2025,1,1]],"date-time":"2025-01-01T00:00:00Z","timestamp":1735689600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2025]]},"DOI":"10.1007\/978-3-031-82362-6_26","type":"book-chapter","created":{"date-parts":[[2025,4,1]],"date-time":"2025-04-01T10:09:10Z","timestamp":1743502150000},"page":"437-456","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":2,"title":["MITRE-Based APT Attack Generation and\u00a0Prediction"],"prefix":"10.1007","author":[{"given":"Yosra","family":"Lakhdhar","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Slim","family":"Rekhis","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Lamia Chaari","family":"Fourati","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2025,4,1]]},"reference":[{"key":"26_CR1","series-title":"LNCS","doi-asserted-by":"publisher","first-page":"243","DOI":"10.1007\/978-3-031-37586-6_15","volume-title":"DBSec 2023","author":"B Abdeen","year":"2023","unstructured":"Abdeen, B., Al-Shaer, E., Singhal, A., Khan, L., Hamlen, K.: SMET: semantic mapping of CVE to ATT &CK and its application to cybersecurity. In: Atluri, V., Ferrara, A.L. (eds.) DBSec 2023. LNCS, vol. 13942, pp. 243\u2013260. Springer, Cham (2023). https:\/\/doi.org\/10.1007\/978-3-031-37586-6_15"},{"issue":"4","key":"26_CR2","doi-asserted-by":"publisher","first-page":"214","DOI":"10.3390\/info15040214","volume":"15","author":"I Branescu","year":"2024","unstructured":"Branescu, I., Grigorescu, O., Dascalu, M.: Automated mapping of common vulnerabilities and exposures to MITRE ATTA &CK tactics. Information 15(4), 214 (2024)","journal-title":"Information"},{"key":"26_CR3","unstructured":"CISA. Stopransomware: Black basta, June 2024. https:\/\/www.cisa.gov\/newsevents\/cybersecurity-advisories\/aa24-131a"},{"issue":"2","key":"26_CR4","first-page":"2933","volume":"13","author":"BV Conga","year":"2022","unstructured":"Conga, B.V., Thanh, N.Q., Phuong, N.D.: A novel framework for APT attack detection based on network traffic. Int. J. Nonlinear Anal. Appl. 13(2), 2933\u20132945 (2022)","journal-title":"Int. J. Nonlinear Anal. Appl."},{"key":"26_CR5","unstructured":"CTID: Attack flow, March 2024. https:\/\/center-for-threat-informed-defense.github.io\/attackflow\/"},{"key":"26_CR6","unstructured":"CTID: Attack flow, April 2024. https:\/\/center-for-threat-informed-defense.github.io\/attackflow\/"},{"key":"26_CR7","unstructured":"CTID: CVE mappings, June 2024. https:\/\/center-for-threat-informeddefense.github.io\/mappings-explorer\/external\/cve\/"},{"key":"26_CR8","unstructured":"MITRE Engenuity: Cybersecurity: Center for threat-informed defense (2024). https:\/\/mitre-engenuity.org\/cybersecurity\/center-for-threat-informed-defense. Accessed 02 June 2024"},{"issue":"9","key":"26_CR9","doi-asserted-by":"publisher","first-page":"314","DOI":"10.3390\/a15090314","volume":"15","author":"O Grigorescu","year":"2022","unstructured":"Grigorescu, O., Nica, A., Dascalu, M., Rughinis, R.: CVE2ATTA &CK: BERT-based mapping of CVEs to MITRE ATT &CK techniques. Algorithms 15(9), 314 (2022)","journal-title":"Algorithms"},{"key":"26_CR10","unstructured":"Hemberg, E., et al.: Linking threat tactics, techniques, and patterns with defensive weaknesses, vulnerabilities and affected platform configurations for cyber hunting. arXiv preprint arXiv:2010.00533 (2020)"},{"key":"26_CR11","unstructured":"Kharat, P.P., Chawan, P.M.: Vulnerability management system. IRJET 9(9) (2021)"},{"key":"26_CR12","doi-asserted-by":"publisher","first-page":"91949","DOI":"10.1109\/ACCESS.2023.3306593","volume":"11","author":"Y Kim","year":"2023","unstructured":"Kim, Y., Lee, I., Kwon, H., Lee, K., Yoon, J.: BAN: predicting apt attack based on bayesian network with MITRE ATTA &CK framework. IEEE Access 11, 91949\u201391968 (2023)","journal-title":"IEEE Access"},{"key":"26_CR13","doi-asserted-by":"crossref","unstructured":"Kuppa, A., Aouad, L., Le-Khac, N.-A.: Linking CVEs to MITRE ATTA &CK techniques. In: Proceedings of the 16th International Conference on Availability, Reliability and Security, pp. 1\u201312 (2021)","DOI":"10.1145\/3465481.3465758"},{"key":"26_CR14","doi-asserted-by":"crossref","unstructured":"Lakhdhar, Y., Rekhis, S.: Machine learning based approach for the automated mapping of discovered vulnerabilities to adversial tactics. In: IEEE Security and Privacy Workshops (SPW), pp. 309\u2013317 (2021)","DOI":"10.1109\/SPW53761.2021.00051"},{"key":"26_CR15","doi-asserted-by":"crossref","unstructured":"Martti, L.: APT cyber-attack modelling: building a general model. In: International Conference on Cyber Warfare and Security, vol. 17, pp. 121\u2013129. Academic Conferences International Limited (2022)","DOI":"10.34190\/iccws.17.1.36"},{"key":"26_CR16","doi-asserted-by":"publisher","unstructured":"Lehto, M.: Cyber-attacks against critical infrastructure. In: Lehto, M., Neittaanm\u00e4ki, P. (eds.) Cyber Security. Computational Methods in Applied Sciences, vol. 56. Springer, Cham (2022). https:\/\/doi.org\/10.1007\/978-3-030-91293-2_1","DOI":"10.1007\/978-3-030-91293-2_1"},{"key":"26_CR17","doi-asserted-by":"publisher","first-page":"184","DOI":"10.1007\/s44196-023-00369-5","volume":"16","author":"W Ren","year":"2023","unstructured":"Ren, W., et al.: APT attack detection based on graph convolutional neural networks. Int. J. Comput. Intell. Syst. 16, 184 (2023)","journal-title":"Int. J. Comput. Intell. Syst."},{"key":"26_CR18","doi-asserted-by":"crossref","unstructured":"Sen, O., Eze, C., Ulbig, A., Monti, A.: On holistic multi-step cyberattack detection via a graph-based correlation approach. In: 2022 IEEE International Conference on Communications, Control, and Computing Technologies for Smart Grids (SmartGridComm), pp. 380\u2013386 (2022)","DOI":"10.1109\/SmartGridComm52983.2022.9961016"},{"key":"26_CR19","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2020.101734","volume":"92","author":"B Stojanovic","year":"2020","unstructured":"Stojanovic, B., Hofer-Schmitz, K., Kleb, U.: Apt datasets and attack modeling for automated detection methods: a review. Comput. Secur. 92, 101734 (2020)","journal-title":"Comput. Secur."},{"issue":"1","key":"26_CR20","doi-asserted-by":"publisher","DOI":"10.1016\/j.heliyon.2021.e05969","volume":"7","author":"M Tatam","year":"2021","unstructured":"Tatam, M., Shanmugam, B., Azam, S., Kannoorpatti, K.: A review of threat modelling approaches for apt-style attacks. Heliyon 7(1), e05969 (2021)","journal-title":"Heliyon"}],"container-title":["Lecture Notes in Computer Science","Computer Security. ESORICS 2024 International Workshops"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-031-82362-6_26","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,9,6]],"date-time":"2025-09-06T10:04:27Z","timestamp":1757153067000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-031-82362-6_26"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025]]},"ISBN":["9783031823619","9783031823626"],"references-count":20,"URL":"https:\/\/doi.org\/10.1007\/978-3-031-82362-6_26","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"value":"0302-9743","type":"print"},{"value":"1611-3349","type":"electronic"}],"subject":[],"published":{"date-parts":[[2025]]},"assertion":[{"value":"1 April 2025","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"ESORICS","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"European Symposium on Research in Computer Security","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Bydgoszcz","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Poland","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2024","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"16 September 2024","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"20 September 2024","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"29","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"esorics2024","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"https:\/\/esorics2024.org","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}