{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,10,24]],"date-time":"2025-10-24T19:19:09Z","timestamp":1761333549917,"version":"build-2065373602"},"publisher-location":"Cham","reference-count":30,"publisher":"Springer Nature Switzerland","isbn-type":[{"type":"print","value":"9783032018229"},{"type":"electronic","value":"9783032018236"}],"license":[{"start":{"date-parts":[[2025,10,25]],"date-time":"2025-10-25T00:00:00Z","timestamp":1761350400000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2025,10,25]],"date-time":"2025-10-25T00:00:00Z","timestamp":1761350400000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2026]]},"DOI":"10.1007\/978-3-032-01823-6_1","type":"book-chapter","created":{"date-parts":[[2025,10,24]],"date-time":"2025-10-24T19:14:44Z","timestamp":1761333284000},"page":"3-22","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":0,"title":["TIRE: Advancing Threat Intelligence Relation Extraction with\u00a0a\u00a0Novel Data-Centric Framework"],"prefix":"10.1007","author":[{"ORCID":"https:\/\/orcid.org\/0009-0008-8024-7631","authenticated-orcid":false,"given":"Inoussa","family":"Mouiche","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-5506-5261","authenticated-orcid":false,"given":"Sherif","family":"Saad","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2025,10,25]]},"reference":[{"key":"1_CR1","unstructured":"Bridges, R.A., Jones, C.L., Iannacone, M.D., Goodall, J.R.: Automatic labeling for entity extraction in cyber security. In: The Third ASE International Conference on Cyber Security 2014 (2014)"},{"key":"1_CR2","doi-asserted-by":"publisher","unstructured":"Aghaei, E., Niu, X., Shadid, W., Al-Shaer, E.: SecureBERT: a domain-specific language model for cybersecurity. Secur. Priv. Commun. Netw. 462 (2023). https:\/\/doi.org\/10.1109\/TrustCom50675.2020.00083","DOI":"10.1109\/TrustCom50675.2020.00083"},{"key":"1_CR3","unstructured":"Hugging Face. https:\/\/huggingface.co\/ehsanaghaei\/SecureBERT_Plu. Accessed 25 Feb 2025"},{"key":"1_CR4","unstructured":"Syed, Z., Padia, A., Finin, T., Mathews, L., Joshi, A.: UCO: a unified cybersecurity ontology. In: Proceedings of the AAAI Workshop on Artificial Intelligence for Cyber Security, pp. 195\u2013202. AAAI Press (2016)"},{"key":"1_CR5","doi-asserted-by":"publisher","unstructured":"Arikkat, D.R., Vinod, P., KA, R.R., Nicolazzo, S., Nocera, A., Conti, M.: Relation extraction techniques in cyber threat intelligence. In: Rapp, A., Di Caro, L., Meziane, F., Sugumaran, V. (eds.) Natural Language Processing and Information Systems. NLDB 2024. LNCS, vol. 14762. Springer, Cham (2024). https:\/\/doi.org\/10.1007\/978-3-031-70239-6_24","DOI":"10.1007\/978-3-031-70239-6_24"},{"key":"1_CR6","doi-asserted-by":"publisher","unstructured":"Ahmed, K., Khurshid, S., K., Hina, S.: CyberEntRel: joint extraction of cyber entities and relations using deep learning. Comput. Secur. 136 (2024). https:\/\/doi.org\/10.1016\/j.cose.2023.103579","DOI":"10.1016\/j.cose.2023.103579"},{"key":"1_CR7","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"447","DOI":"10.1007\/978-3-030-86890-1_25","volume-title":"Information and Communications Security","author":"Y Guo","year":"2021","unstructured":"Guo, Y., et al.: CyberRel: joint entity and relation extraction for cybersecurity concepts. In: Gao, D., Li, Q., Guan, X., Liao, X. (eds.) ICICS 2021. LNCS, vol. 12918, pp. 447\u2013463. Springer, Cham (2021). https:\/\/doi.org\/10.1007\/978-3-030-86890-1_25"},{"key":"1_CR8","doi-asserted-by":"publisher","unstructured":"Mouiche, I., Saad, S.: Entity and relation extractions for threat intelligence knowledge graphs. Comput. Secur. 148 (2025). https:\/\/doi.org\/10.1016\/j.cose.2024.104120","DOI":"10.1016\/j.cose.2024.104120"},{"key":"1_CR9","unstructured":"OASIS OPEN. https:\/\/docs.oasis-open.org\/cti\/stix\/v2.1\/cs02\/stix-v2.1-cs02.html. Accessed 10 Feb 2025"},{"key":"1_CR10","doi-asserted-by":"publisher","unstructured":"Zuo, J., Gao, Y., Li, X., Yuan, J.: An end-to-end entity and relation joint extraction model for cyber threat intelligence. In: 2022 the 7th International Conference on Big Data Analytics (ICBDA), Guangzhou, China, pp. 204\u2013209. IEEE (2022). https:\/\/doi.org\/10.1109\/ICBDA55095.2022.9760342","DOI":"10.1109\/ICBDA55095.2022.9760342"},{"key":"1_CR11","unstructured":"Wang, X., Liu, Z., Liu, J.: Information extraction of cybersecurity concepts: an LSTM approach. Comput. Secur. 144 (2024)"},{"key":"1_CR12","doi-asserted-by":"crossref","unstructured":"Zhou, P., et al.: Attention-based bidirectional long short-term memory networks for relation classification. In: Proceedings of the 54th Annual Meeting of the Association for Computational Linguistics, Association for Computational Linguistics, Berlin, Germany, pp. 207\u2013212 (2016)","DOI":"10.18653\/v1\/P16-2034"},{"key":"1_CR13","unstructured":"Shen, Y., Huang, X.: Attention-based convolutional neural network for semantic relation extraction. In: Proceedings of COLING 2016, the 26th International Conference on Computational Linguistics: Technical Papers, The COLING 2016 Organizing Committee, Osaka, Japan, pp. 2526\u20132536 (2016)"},{"key":"1_CR14","unstructured":"Schuster, S., Manning, C., D.: Enhanced English universal dependencies: an improved representation for natural language understanding tasks. In: Proceedings of the Tenth International Conference on Language Resources and Evaluation (LREC 2016), ELRA, Portoro\u017e, Slovenia, pp. 2371\u20132378 (2016)"},{"key":"1_CR15","doi-asserted-by":"publisher","unstructured":"Kiavash, S., Rigel, G., Venkatakrishnan, V.N.: Extractor: extracting attack behavior from threat reports. In: IEEE EuroS &P, Vienna, Austria, pp. 598\u2013615. IEEE (2021). https:\/\/doi.org\/10.1109\/EuroSP51992.2021.00046","DOI":"10.1109\/EuroSP51992.2021.00046"},{"key":"1_CR16","doi-asserted-by":"crossref","unstructured":"Gao, P., et al.: Enabling efficient cyber threat hunting with cyber threat intelligence. In: 2021 IEEE 37th International Conference on Data Engineering (ICDE), San Sebastian, pp. 193\u2013204. IEEE (2021)","DOI":"10.1109\/ICDE51399.2021.00024"},{"key":"1_CR17","doi-asserted-by":"crossref","unstructured":"Gasmi, H., Laval, J., Bouras, A.: Information extraction of cybersecurity concepts: an LSTM approach. Appl. Sci. 9 (2019)","DOI":"10.3390\/app9193945"},{"key":"1_CR18","unstructured":"Zhao, J., Yan, Q., Liu, X., Li, B., Zuo, G.: Cyber threat intelligence modeling based on heterogeneous graph convolutional network. In: Proceedings of the 23rd International Symposium on Research in Attacks, Intrusions and Defenses (RAID 2020), USENIX, San Sebastian, pp. 241\u2013256 (2020)"},{"key":"1_CR19","doi-asserted-by":"crossref","unstructured":"Pingle, A., Piplai, A., Mittal, S., Joshi, A., Holt, J., Zak, R.: RelExt: relation extraction using deep learning approaches for cybersecurity knowledge graph improvement. In: ASONAM 2019: Proceedings of the 2019 IEEE\/ACM International Conference on Advances in Social Networks Analysis and Mining, Vancouver, British Columbia, Canada, vol. 2, pp. 879\u2013886. ACM (2020)","DOI":"10.1145\/3341161.3343519"},{"key":"1_CR20","doi-asserted-by":"crossref","unstructured":"Jo, H., Lee, Y., Shin, S.: Vulcan: automatic extraction and analysis of cyber threat intelligence from unstructured text. Comput. Secur. 120 (2022)","DOI":"10.1016\/j.cose.2022.102763"},{"key":"1_CR21","doi-asserted-by":"crossref","unstructured":"Marchiori, F., Conti, M., Verde, V.: STIXnet: a novel and modular solution for extracting all STIX objects in CTI reports. In: ARES 23: Proceedings of the 18th International Conference on Availability, Reliability and Security, Benevento, Italy, vol. 2, pp. 1\u201311. ACM (2023)","DOI":"10.1145\/3600160.3600182"},{"key":"1_CR22","doi-asserted-by":"publisher","DOI":"10.1155\/2022\/8477260","author":"Y Li","year":"2022","unstructured":"Li, Y., Guo, Y., Fang, C., Liu, Y., Chen, Q.: A novel threat intelligence information extraction system combining multiple models. Secur. Commun. Netw. (2022). https:\/\/doi.org\/10.1155\/2022\/8477260","journal-title":"Secur. Commun. Netw."},{"key":"1_CR23","doi-asserted-by":"publisher","unstructured":"Sarhan, I., Spruit, M.: Open-CyKG: an open cyber threat intelligence knowledge graph. Knowl.-Based Syst. 233 (2021). https:\/\/doi.org\/10.1016\/j.knosys.2021.107524","DOI":"10.1016\/j.knosys.2021.107524"},{"key":"1_CR24","doi-asserted-by":"publisher","first-page":"211691","DOI":"10.1109\/ACCESS.2020.3039234","volume":"8","author":"A Piplai","year":"2020","unstructured":"Piplai, A., Mittal, S., Joshi, A., Finin, T., Holt, J., Zak, R.: Creating cybersecurity knowledge graphs from malware after action reports. IEEE Access 8, 211691\u2013211703 (2020). https:\/\/doi.org\/10.1109\/ACCESS.2020.3039234","journal-title":"IEEE Access"},{"key":"1_CR25","doi-asserted-by":"crossref","unstructured":"Wang, G., Liu, P., Huang, J., Bin, H., Wang, X., Zhu, H.: KnowCTI: knowledge-based cyber threat intelligence entity and relation extraction. Comput. Secur. 141 (2024)","DOI":"10.1016\/j.cose.2024.103824"},{"key":"1_CR26","doi-asserted-by":"publisher","unstructured":"You, Y., Jiang, Z., Zhang, K., Feng, H., Jiang, J., Yang, P.: TiGNet: joint entity and relation triplets extraction for APT campaign threat intelligence. In: 27th International Conference on Computer Supported Cooperative Work in Design (CSCWD), Tianjin, China, pp. 1687\u20131694. IEEE (2024). https:\/\/doi.org\/10.1109\/CSCWD61410.2024.10580395","DOI":"10.1109\/CSCWD61410.2024.10580395"},{"key":"1_CR27","doi-asserted-by":"publisher","unstructured":"Liu, Y., Han, X., Zuo, W., Lv, H., Guo, J.: CTI-JE: a joint extraction framework of entities and relations in unstructured cyber threat intelligence. In: 27th International Conference on Computer Supported Cooperative Work in Design (CSCWD), Tianjin, China, pp. 2728\u20132733. IEEE (2024). https:\/\/doi.org\/10.1109\/CSCWD61410.2024.10580210","DOI":"10.1109\/CSCWD61410.2024.10580210"},{"key":"1_CR28","doi-asserted-by":"crossref","unstructured":"Mouiche, I., Saad, S.: TI-NERmerger: semi-automated framework for integrating NER datasets in cybersecurity. In Proceedings of the 21st International Conference on Security and Cryptography, Dijon, France, vol. 1, pp. 357\u2013370. SciTePress (2024)","DOI":"10.5220\/0012867900003767"},{"key":"1_CR29","doi-asserted-by":"publisher","unstructured":"Mouiche, I., Merbouh, H., Saad, S.: Context-aware Entity-Relation Extraction Pipeline for Threat Intelligence Knowledge Graphs. TechRxiv (2025). https:\/\/doi.org\/10.36227\/techrxiv.173627493.39916970\/v1","DOI":"10.36227\/techrxiv.173627493.39916970\/v1"},{"key":"1_CR30","doi-asserted-by":"publisher","unstructured":"Wang, X. et al.: DNRTI: a large-scale dataset for named entity recognition in threat intelligence. In: 2020 IEEE 19th International Conference on Trust, Security and Privacy in Computing and Communications (TrustCom), Guangzhou, China, pp. 1842\u20131848. IEEE (2020). https:\/\/doi.org\/10.1109\/TrustCom50675.2020.00252","DOI":"10.1109\/TrustCom50675.2020.00252"}],"container-title":["Lecture Notes in Computer Science","Applied Cryptography and Network Security Workshops"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-032-01823-6_1","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,10,24]],"date-time":"2025-10-24T19:14:47Z","timestamp":1761333287000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-032-01823-6_1"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,10,25]]},"ISBN":["9783032018229","9783032018236"],"references-count":30,"URL":"https:\/\/doi.org\/10.1007\/978-3-032-01823-6_1","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2025,10,25]]},"assertion":[{"value":"25 October 2025","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"The authors have no competing interests to declare that are relevant to the content of this article.","order":1,"name":"Ethics","group":{"name":"EthicsHeading","label":"Disclosure of Interests"}},{"value":"ACNS","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"International Conference on Applied Cryptography and Network Security","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Munich","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Germany","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2025","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"23 June 2025","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"26 June 2025","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"23","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"acns2025","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"https:\/\/acns2025.fordaysec.de\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}