{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,1,16]],"date-time":"2026-01-16T01:40:53Z","timestamp":1768527653602,"version":"3.49.0"},"publisher-location":"Cham","reference-count":37,"publisher":"Springer Nature Switzerland","isbn-type":[{"value":"9783031893490","type":"print"},{"value":"9783031893506","type":"electronic"}],"license":[{"start":{"date-parts":[[2025,1,1]],"date-time":"2025-01-01T00:00:00Z","timestamp":1735689600000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2025,1,1]],"date-time":"2025-01-01T00:00:00Z","timestamp":1735689600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2025]]},"DOI":"10.1007\/978-3-031-89350-6_32","type":"book-chapter","created":{"date-parts":[[2025,4,25]],"date-time":"2025-04-25T12:09:36Z","timestamp":1745582976000},"page":"509-524","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":2,"title":["Automated Assessment of\u00a0the\u00a0Exploits Using Deep Learning Methods"],"prefix":"10.1007","author":[{"ORCID":"https:\/\/orcid.org\/0000-0001-6707-9153","authenticated-orcid":false,"given":"Elena","family":"Fedorchenko","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Nikita","family":"Busko","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-2923-4954","authenticated-orcid":false,"given":"Evgenia","family":"Novikova","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2025,4,16]]},"reference":[{"key":"32_CR1","unstructured":"Mell, P., Scarfone, K., Romanosky, S.: A complete guide to the Common Vulnerability Scoring System. Version 2.0 (2007)"},{"key":"32_CR2","unstructured":"Vaswani, A., et al.: Attention is all you need. In: Proceedings of the 31st International Conference on Neural Information Processing Systems, pp. 6000\u20136010. Curran Associates Inc., Red Hook (2017)"},{"key":"32_CR3","doi-asserted-by":"crossref","unstructured":"Akram, Z., Majid, M., Habib, S.: A systematic literature review: usage of logistic regression for malware detection. In: Proceedings of the 2021 International Conference on Innovative Computing, Lahore, Pakistan, pp. 1\u20138 (2021)","DOI":"10.1109\/ICIC53490.2021.9693035"},{"key":"32_CR4","doi-asserted-by":"crossref","unstructured":"Ghanem, K., Aparicio-Navarro, F.J., Kyriakopoulos, K.G., Lambotharan, S., Chambers, J.A.: Support vector machine for network intrusion and cyber-attack detection. In: Proceedings of the 2017 Sensor Signal Processing for Defence Conference, London, UK, pp. 1\u20135 (2017)","DOI":"10.1109\/SSPD.2017.8233268"},{"key":"32_CR5","doi-asserted-by":"crossref","unstructured":"Vu, Q.H., Ruta, D., Cen, L.: Gradient boosting decision trees for cyber security threats detection based on network events logs. In: Proceedings of the 2019 IEEE International Conference on Big Data, Los Angeles, CA, USA, pp. 5921\u20135928 (2019)","DOI":"10.1109\/BigData47090.2019.9006061"},{"key":"32_CR6","doi-asserted-by":"crossref","unstructured":"Choubisa, M., Doshi, R., Khatri, N., Kant Hiran, K.: A simple and robust approach of random forest for intrusion detection system in cyber security. In: Proceedings of the 2022 International Conference on IoT and Blockchain Technology, Ranchi, India, pp. 1\u20135 (2022)","DOI":"10.1109\/ICIBT52874.2022.9807766"},{"key":"32_CR7","doi-asserted-by":"publisher","first-page":"119","DOI":"10.1016\/j.protcy.2012.05.017","volume":"4","author":"S Mukherjee","year":"2012","unstructured":"Mukherjee, S., Sharma, N.: Intrusion detection using naive Bayes classifier with feature reduction. Procedia Technol. 4, 119\u2013128 (2012)","journal-title":"Procedia Technol."},{"issue":"1","key":"32_CR8","first-page":"1","volume":"16","author":"P Prajoy","year":"2021","unstructured":"Prajoy, P., Subrato, B., Rubaiyat, M.M., Pinto, P., Utku, K.: Artificial neural network for cybersecurity: a comprehensive review. J. Inf. Assur. Secur. 16(1), 1\u201310 (2021)","journal-title":"J. Inf. Assur. Secur."},{"issue":"1","key":"32_CR9","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1186\/s40537-021-00448-4","volume":"8","author":"FE Laghrissi","year":"2021","unstructured":"Laghrissi, F.E., Douzi, S., Douzi, K., Hssina, B.: Intrusion detection systems using long short-term memory (LSTM). J. Big Data 8(1), 1\u201316 (2021). https:\/\/doi.org\/10.1186\/s40537-021-00448-4","journal-title":"J. Big Data"},{"key":"32_CR10","unstructured":"Shaul, Z., Holzem, C.: Machine learning based source code classification using syntax oriented features. arXiv abs\/1703.07638 (2017)"},{"key":"32_CR11","doi-asserted-by":"publisher","first-page":"49","DOI":"10.1016\/j.future.2020.10.020","volume":"116","author":"R Mateless","year":"2021","unstructured":"Mateless, R., Tsur, O., Moskovitch, R.: Pkg2Vec: hierarchical package embedding for code authorship attribution. Future Gener. Comput. Syst. 116, 49\u201360 (2021)","journal-title":"Future Gener. Comput. Syst."},{"key":"32_CR12","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2020.101775","volume":"93","author":"S Sebastio","year":"2020","unstructured":"Sebastio, S., et al.: Optimizing symbolic execution for malware behavior classification. Comput. Secur. 93, 101775 (2020)","journal-title":"Comput. Secur."},{"key":"32_CR13","doi-asserted-by":"publisher","DOI":"10.1016\/j.adhoc.2020.102154","volume":"105","author":"H Naeem","year":"2020","unstructured":"Naeem, H., et al.: Malware detection in industrial internet of things based on hybrid image visualization and deep learning model. Ad Hoc Netw. 105, 102154 (2020)","journal-title":"Ad Hoc Netw."},{"key":"32_CR14","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2021.102417","volume":"110","author":"H Sun","year":"2021","unstructured":"Sun, H., et al.: VDSimilar: vulnerability detection based on code similarity of vulnerabilities and patches. Comput. Secur. 110, 102417 (2021)","journal-title":"Comput. Secur."},{"key":"32_CR15","doi-asserted-by":"publisher","DOI":"10.1016\/j.adhoc.2021.102591","volume":"122","author":"Z Moti","year":"2021","unstructured":"Moti, Z., et al.: Generative adversarial network to detect unseen Internet of Things malware. Ad Hoc Netw. 122, 102591 (2021)","journal-title":"Ad Hoc Netw."},{"key":"32_CR16","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2022.103015","volume":"124","author":"Z Liu","year":"2023","unstructured":"Liu, Z., Fang, Y., Huang, C., Xu, Y.: MFXSS: an effective XSS vulnerability detection method in JavaScript based on multi-feature model. Comput. Secur. 124, 103015 (2023)","journal-title":"Comput. Secur."},{"key":"32_CR17","doi-asserted-by":"publisher","DOI":"10.1016\/j.infsof.2020.106289","volume":"123","author":"J Tian","year":"2020","unstructured":"Tian, J., Xing, W., Li, Z.: BVDetector: a program slice-based binary code vulnerability intelligent detection system. Inf. Softw. Technol. 123, 106289 (2020)","journal-title":"Inf. Softw. Technol."},{"key":"32_CR18","unstructured":"Kalouptsoglou, I., Siavvas, M., Ampatzoglou, A., Kehagias, D., Chatzigeorgiou, A.: Vulnerability classification on source code using text mining and deep learning technique. In: Proceedings of the QRS\u201924, pp. 1\u201312 (2017, accepted for printing)"},{"key":"32_CR19","doi-asserted-by":"publisher","first-page":"84","DOI":"10.1016\/j.jss.2019.06.001","volume":"156","author":"ER Russo","year":"2019","unstructured":"Russo, E.R., Di Sorbo, A., Visaggio, C.A., Canfora, G.: Summarizing vulnerabilities\u2019 descriptions to support experts during vulnerability assessment activities. J. Syst. Softw. 156, 84\u201399 (2019)","journal-title":"J. Syst. Softw."},{"key":"32_CR20","doi-asserted-by":"crossref","unstructured":"K$$\\ddot{u}$$hn, P., Relke, D.N., Reuter, C.: Common vulnerability scoring system prediction based on open source intelligence information sources. Comput. Secur. 131 (2023)","DOI":"10.1016\/j.cose.2023.103286"},{"key":"32_CR21","doi-asserted-by":"crossref","unstructured":"Feng, Z., Guo, D., Kim, J., Liu, S.: CodeBERT: a pre-trained model for programming and natural languages. Adv. in Nat. Lang. Proc. 1\u201312 (2020)","DOI":"10.18653\/v1\/2020.findings-emnlp.139"},{"key":"32_CR22","unstructured":"Devlin, J., Chang, M.-W., Lee, K., Toutanova, K.: BERT: pre-training of deep bidirectional transformers for language understanding. J. Mach. Learn. Res. 1\u201310 (2019)"},{"key":"32_CR23","unstructured":"Loshchilov, I., Hutter, F.: BDecoupled weight decay regularization. In: Proceedings of the International Conference on Learning Representations, pp. 1\u201318 (2017)"},{"key":"32_CR24","doi-asserted-by":"crossref","unstructured":"Jacobs, J., Romanosky, S., Adjerid, I., Baker, W.: Improving vulnerability remediation through better exploit prediction. J. Cybersecur. 6(1) (2020)","DOI":"10.1093\/cybsec\/tyaa015"},{"key":"32_CR25","unstructured":"Householder, A.D., Chrabaszcz, J., Novelly, T., Warren, D., Spring, J.M.: Historical analysis of exploit availability timelines. In: 13th USENIX Workshop on Cyber Security Experimentation and Test (CSET 2020). USENIX Association (2020)"},{"key":"32_CR26","unstructured":"Jacobs, J., Romanosky, S., Edwards, B., Roytman, M., Adjerid, I.: Exploit prediction scoring system (EPSS). In: Workshop on the Economics of Information Security, Boston, MA (2019)"},{"key":"32_CR27","doi-asserted-by":"crossref","unstructured":"Edkrantz, M., Truv\u00e9, S., Said, A.: Predicting vulnerability exploits in the wild. In: International Conference on Cyber Security and Cloud Computing, pp. 513\u2013514. IEEE (2015)","DOI":"10.1109\/CSCloud.2015.56"},{"key":"32_CR28","doi-asserted-by":"crossref","unstructured":"Fang, Y., Liu, Y., Huang, C., Liu, L.: Fastembed: predicting vulnerability exploitation possibility based on ensemble machine learning algorithm. PLoS One 15(2) (2020)","DOI":"10.1371\/journal.pone.0228439"},{"key":"32_CR29","unstructured":"Sabottke, C., Suciu, O., Dumitras, T.: Vulnerability disclosure in the age of social media: exploiting twitter for predicting real-world exploits. In: USENIX Security, pp. 1041\u20131056. USENIX Association, Washington, D.C. (2015)"},{"key":"32_CR30","unstructured":"EPSS. https:\/\/www.first.org\/epss\/. Accessed 07 Sept 2024"},{"key":"32_CR31","doi-asserted-by":"crossref","unstructured":"Jacobs, J., Romanosky, S., Suciu, O., Edwards, B., Sarabi, A.: Enhancing Vulner ability Prioritization: Data-Driven Exploit Predictions with Community-Driven Insights (2023). https:\/\/arxiv.org\/abs\/2302.14172","DOI":"10.1109\/EuroSPW59978.2023.00027"},{"key":"32_CR32","doi-asserted-by":"crossref","unstructured":"Alperin, K., Wollaber, A., Ross, D., Trepagnier, P., Leonard, L.: Risk prioritization by leveraging latent vulnerability features in a contested environment. In: Proceedings of the 12th ACM Workshop on Artificial Intelligence and Security, pp. 49\u201357 (2019)","DOI":"10.1145\/3338501.3357365"},{"key":"32_CR33","doi-asserted-by":"crossref","unstructured":"Bhatt, N., Anand, A., SS Yadavalli, V.: Exploitability prediction of software vulnerabilities. Qual. Reliab. Eng. Int. 37(2), 648\u2013663 (2021)","DOI":"10.1002\/qre.2754"},{"key":"32_CR34","unstructured":"Suciu, O., Nelson, C., Lyu, Z., Bao, T., Dumitras, T.: Expected exploitability: predicting the development of functional vulnerability exploits. In: 31st USENIX Security Symposium (USENIX Security 2022), pp. 377\u2013394 (2022)"},{"key":"32_CR35","doi-asserted-by":"crossref","unstructured":"Tavabi, N., Goyal, P., Almukaynizi, M., Shakarian, P., Lerman, K.: Darkembed: exploit prediction with neural language models. In: Proceedings of the AAAI Conference on Artificial Intelligence, vol. 32 (2018)","DOI":"10.1609\/aaai.v32i1.11428"},{"key":"32_CR36","unstructured":"Xiao, C., Sarabi, A., Liu, Y., Li, B., Liu, M., Dumitras, T.: From patching delays to infection symptoms: using risk profiles for an early discovery of vulnerabilities exploited in the wild. In: 27th USENIX Security Symposium, pp. 903\u2013918 (2018)"},{"key":"32_CR37","doi-asserted-by":"crossref","unstructured":"Allodi, L., Massacci, F.: Comparing vulnerability severity and exploits using case-control studies. ACM Trans. Inf. Syst. Secur. 17(1), Article 1 (2014)","DOI":"10.1145\/2630069"}],"container-title":["Lecture Notes in Computer Science","Risks and Security of Internet and Systems"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-031-89350-6_32","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,4,25]],"date-time":"2025-04-25T12:10:19Z","timestamp":1745583019000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-031-89350-6_32"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025]]},"ISBN":["9783031893490","9783031893506"],"references-count":37,"URL":"https:\/\/doi.org\/10.1007\/978-3-031-89350-6_32","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"value":"0302-9743","type":"print"},{"value":"1611-3349","type":"electronic"}],"subject":[],"published":{"date-parts":[[2025]]},"assertion":[{"value":"16 April 2025","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"The authors have no competing interests to declare that\u00a0are relevant to the content of this article.","order":1,"name":"Ethics","group":{"name":"EthicsHeading","label":"Disclosure of Interests"}},{"value":"CRiSIS","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"International Conference on Risks and Security of Internet and Systems","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Aix-en-Provence","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"France","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2024","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"26 November 2024","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"28 November 2024","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"crisis2024","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}