{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,3,28]],"date-time":"2025-03-28T05:30:10Z","timestamp":1743139810537,"version":"3.40.3"},"publisher-location":"Cham","reference-count":18,"publisher":"Springer International Publishing","isbn-type":[{"type":"print","value":"9783319491479"},{"type":"electronic","value":"9783319491486"}],"license":[{"start":{"date-parts":[[2016,1,1]],"date-time":"2016-01-01T00:00:00Z","timestamp":1451606400000},"content-version":"tdm","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2016]]},"DOI":"10.1007\/978-3-319-49148-6_32","type":"book-chapter","created":{"date-parts":[[2016,11,9]],"date-time":"2016-11-09T09:50:38Z","timestamp":1478685038000},"page":"383-391","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":5,"title":["Modeling Attack Process of Advanced Persistent Threat"],"prefix":"10.1007","author":[{"given":"Weina","family":"Niu","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Xiaosong","family":"Zhan","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Kenli","family":"Li","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Guowu","family":"Yang","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Ruidong","family":"Chen","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2016,11,10]]},"reference":[{"key":"32_CR1","doi-asserted-by":"crossref","unstructured":"Li, F., Lai, A., Ddl, D.: Evidence of advanced persistent threat: a case study of malware for political espionage. In: 2011 6th International Conference on Malicious and Unwanted Software (MALWARE), pp. 102\u2013109. IEEE (2011)","DOI":"10.1109\/MALWARE.2011.6112333"},{"key":"32_CR2","series-title":"Communications in Computer and Information Science","doi-asserted-by":"publisher","first-page":"144","DOI":"10.1007\/978-3-642-35264-5_21","volume-title":"Computer Applications for Security, Control and System Engineering","author":"I Jeun","year":"2012","unstructured":"Jeun, I., Lee, Y., Won, D.: A practical study on advanced persistent threats. In: Kim, T., Stoica, A., Fang, W., Vasilakos, T., Villalba, J.G., Arnett, K.P., Khan, M.H., Kang, B.-H. (eds.) Computer Applications for Security, Control and System Engineering. CCIS, vol. 339, pp. 144\u2013152. Springer, Heidelberg (2012)"},{"key":"32_CR3","unstructured":"Ask, M., Bondarenko, P., Rekdal, J.E., Nordb\u00f8, A., Bloemerus, P., Piatkivskyi, D.: Advanced persistent threat (APT) beyond the hype, Project report in IMT4582 NetworN security at GjoviN University College. Springer (2013)"},{"key":"32_CR4","unstructured":"Cloppert, M.: Security intelligence: Introduction (pt 1), SANS Digital Forensics and Incident Response Blog (2009)"},{"key":"32_CR5","unstructured":"Furlani, C.: Managing information security risk: organization, mission, and information system view (2011)"},{"issue":"12","key":"32_CR6","first-page":"21","volume":"24","author":"B Schneier","year":"1999","unstructured":"Schneier, B.: Attack trees. Dr. Dobbs J. 24(12), 21\u201329 (1999)","journal-title":"Dr. Dobbs J."},{"key":"32_CR7","doi-asserted-by":"crossref","unstructured":"Jajodia, S., Noel, S., OBerry, B.: Topological analysis of network attack vulnerability. In: Kumar, V., Srivastava, J., Lazarevic, A. (eds.) Managing Cyber Threats, pp. 247\u2013266. Springer, Heidelberg (2005)","DOI":"10.1007\/0-387-24230-9_9"},{"key":"32_CR8","doi-asserted-by":"crossref","unstructured":"McDermott, J.P.: Attack net penetration testing. In: Proceedings of the 2000 Workshop on New Security Paradigms, pp. 15\u201321. ACM (2001)","DOI":"10.1145\/366173.366183"},{"key":"32_CR9","doi-asserted-by":"crossref","unstructured":"Liu, Q.H., Wang, W., Tang, M., Zhang, H.F.: Impacts of complex behavioral responses on asymmetric interacting spreading dynamics in multiplex networks. Sci. Rep. 6 (2016)","DOI":"10.1038\/srep25617"},{"key":"32_CR10","doi-asserted-by":"crossref","unstructured":"Giura, P., Wang, W.: A context-based detection framework for advanced persistent threats. In: 2012 International Conference on Cyber Security (CyberSecurity), pp. 69\u201374. IEEE (2012)","DOI":"10.1109\/CyberSecurity.2012.16"},{"key":"32_CR11","doi-asserted-by":"publisher","first-page":"1297","DOI":"10.1007\/978-3-319-01766-2_147","volume-title":"Computer Engineering and Networking","author":"W Zhao","year":"2014","unstructured":"Zhao, W., Wang, P., Zhang, F.: Extended petri net-based advanced persistent threat analysis model. In: Wong, W.E., Zhu, T. (eds.) Computer Engineering and Networking, pp. 1297\u20131305. Springer, Heidelberg (2014)"},{"key":"32_CR12","doi-asserted-by":"crossref","unstructured":"Bhatt, P., Yano, E.T., Gustavsson, P.: Towards a framework to detect multi-stage advanced persistent threats attacks. In: 2014 IEEE 8th International Symposium on Service Oriented System Engineering (SOSE), pp. 390\u2013395. IEEE (2014)","DOI":"10.1109\/SOSE.2014.53"},{"key":"32_CR13","unstructured":"Ioannou, G., Louvieris, P., Clewley, N., Powell, G.: A Markov multi-phase transferable belief model: an application for predicting data exfiltration APTs. In: 2013 16th International Conference on Information Fusion (FUSION), pp. 842\u2013849. IEEE (2013)"},{"key":"32_CR14","doi-asserted-by":"crossref","unstructured":"Fang, X., Zhai, L., Jia, Z., Bai, W.: A game model for predicting the attack path of APT. In: 2014 IEEE 12th International Conference on Dependable, Autonomic and Secure Computing (DASC), pp. 491\u2013495. IEEE (2014)","DOI":"10.1109\/DASC.2014.94"},{"key":"32_CR15","first-page":"80","volume":"1","author":"EM Hutchins","year":"2011","unstructured":"Hutchins, E.M., Cloppert, M.J., Amin, R.M.: Intelligence-driven computer network defense informed by analysis of adversary campaigns and intrusion kill chains. Lead. Issues Inf. Warfare Secur. Res. 1, 80 (2011)","journal-title":"Lead. Issues Inf. Warfare Secur. Res."},{"key":"32_CR16","doi-asserted-by":"publisher","first-page":"231","DOI":"10.1007\/978-3-642-01284-6_11","volume-title":"Adaptive Networks","author":"B Skyrms","year":"2009","unstructured":"Skyrms, B., Pemantle, R.: A dynamic model of social network formation. In: Gross, T., Sayama, H. (eds.) Adaptive Networks, pp. 231\u2013251. Springer, Heidelberg (2009)"},{"issue":"6","key":"32_CR17","doi-asserted-by":"publisher","first-page":"066112","DOI":"10.1103\/PhysRevE.64.066112","volume":"64","author":"RM May","year":"2001","unstructured":"May, R.M., Lloyd, A.L.: Infection dynamics on scale-free networks. Phys. Rev. E 64(6), 066112 (2001)","journal-title":"Phys. Rev. E"},{"key":"32_CR18","unstructured":"Kurtz, G.: Operation \u201caurora\u201d hit google, others, vol. 80 (2010). http:\/\/siblog.mcafee.com\/cto\/operation-%E2"}],"container-title":["Lecture Notes in Computer Science","Security, Privacy, and Anonymity in Computation, Communication, and Storage"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-319-49148-6_32","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,3,7]],"date-time":"2024-03-07T16:53:41Z","timestamp":1709830421000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-319-49148-6_32"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2016]]},"ISBN":["9783319491479","9783319491486"],"references-count":18,"URL":"https:\/\/doi.org\/10.1007\/978-3-319-49148-6_32","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2016]]},"assertion":[{"value":"10 November 2016","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"SpaCCS","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"International Conference on Security, Privacy and Anonymity in Computation, Communication and Storage","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Zhangjiajie","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"China","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2016","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"16 November 2016","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"18 November 2016","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"9","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"spaccs2016","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"http:\/\/trust.csu.edu.cn\/conference\/SpaCCS2016\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}