{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,5,13]],"date-time":"2025-05-13T17:29:33Z","timestamp":1747157373401,"version":"3.40.3"},"publisher-location":"Cham","reference-count":15,"publisher":"Springer International Publishing","isbn-type":[{"type":"print","value":"9783319694702"},{"type":"electronic","value":"9783319694719"}],"license":[{"start":{"date-parts":[[2017,1,1]],"date-time":"2017-01-01T00:00:00Z","timestamp":1483228800000},"content-version":"unspecified","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2017]]},"DOI":"10.1007\/978-3-319-69471-9_41","type":"book-chapter","created":{"date-parts":[[2017,10,20]],"date-time":"2017-10-20T10:03:44Z","timestamp":1508493824000},"page":"523-530","source":"Crossref","is-referenced-by-count":18,"title":["KGBIAC: Knowledge Graph Based Intelligent Alert Correlation Framework"],"prefix":"10.1007","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-8476-3181","authenticated-orcid":false,"given":"Wei","family":"Wang","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Rong","family":"Jiang","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Yan","family":"Jia","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Aiping","family":"Li","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Yi","family":"Chen","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2017,10,21]]},"reference":[{"issue":"1","key":"41_CR1","doi-asserted-by":"crossref","first-page":"16","DOI":"10.1016\/j.jnca.2012.09.004","volume":"36","author":"H Liao","year":"2013","unstructured":"Liao, H., Lin, C., Lin, Y.: Intrusion detection system: a comprehensive review. J. Network Comput. Appl. 36(1), 16\u201324 (2013)","journal-title":"J. Network Comput. Appl."},{"issue":"3","key":"41_CR2","doi-asserted-by":"crossref","first-page":"146","DOI":"10.1109\/TDSC.2004.21","volume":"1","author":"F Valeur","year":"2004","unstructured":"Valeur, F., Vigna, G., Kruegel, C., Kemmerer, R.A.: Comprehensive approach to intrusion detection alert correlation. IEEE Trans. Dependable Secure Comput. 1(3), 146\u2013169 (2004)","journal-title":"IEEE Trans. Dependable Secure Comput."},{"issue":"12\u201313","key":"41_CR3","doi-asserted-by":"crossref","first-page":"1288","DOI":"10.1080\/00140130600612762","volume":"49","author":"NA Stanton","year":"2006","unstructured":"Stanton, N.A., Stewart, R., Harris, D., Houghton, R.J., Baber, C., McMaster, R., Salmon, P., Hoyle, G., Walker, G., Young, M.S., et al.: Distributed situation awareness in dynamic systems: theoretical development and application of an ergonomics methodology. Ergonomics 49(12\u201313), 1288\u20131311 (2006)","journal-title":"Ergonomics"},{"issue":"7","key":"41_CR4","doi-asserted-by":"crossref","first-page":"4349","DOI":"10.1016\/j.asoc.2010.12.004","volume":"11","author":"HT Elshoush","year":"2011","unstructured":"Elshoush, H.T., Osman, I.M.: Alert correlation in collaborative intelligent intrusion detection systems\u0142a survey. Appl. Soft Comput. 11(7), 4349\u20134365 (2011)","journal-title":"Appl. Soft Comput."},{"issue":"3","key":"41_CR5","doi-asserted-by":"crossref","first-page":"495","DOI":"10.3724\/SP.J.1001.2011.03751","volume":"22","author":"Y Zhang","year":"2011","unstructured":"Zhang, Y., Tan, X.-B., Cui, X.-L., Xi, H.-S.: Network security situation awareness approach based on Markov game model. J. Software 22(3), 495\u2013508 (2011)","journal-title":"J. Software"},{"doi-asserted-by":"crossref","unstructured":"Zhuang, X., Xiao, D., Liu, X., Zhang, Y.: Applying data fusion in collaborative alerts correlation. In: International Symposium on Computer Science and Computational Technology, ISCSCT 2008, vol. 2, pp. 124\u2013127. IEEE (2008)","key":"41_CR6","DOI":"10.1109\/ISCSCT.2008.38"},{"issue":"5","key":"41_CR7","doi-asserted-by":"crossref","first-page":"554","DOI":"10.1007\/s12204-013-1439-5","volume":"18","author":"J-B Gao","year":"2013","unstructured":"Gao, J.-B., Zhang, B.-W., Chen, X.-H., Luo, Z.: Ontology-based model of network and computer attacks for security assessment. J. Shanghai Jiaotong Univ. (Science) 18(5), 554\u2013562 (2013)","journal-title":"J. Shanghai Jiaotong Univ. (Science)"},{"key":"41_CR8","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"161","DOI":"10.1007\/978-3-319-05302-8_10","volume-title":"Foundations and Practice of Security","author":"A Sadighian","year":"2014","unstructured":"Sadighian, A., Fernandez, J.M., Lemay, A., Zargar, S.T.: ONTIDS: a highly flexible context-aware and ontology-based alert correlation framework. In: Danger, J.-L., Debbabi, M., Marion, J.-Y., Garcia-Alfaro, J., Zincir Heywood, N. (eds.) FPS-2013. LNCS, vol. 8352, pp. 161\u2013177. Springer, Cham (2014). doi:\n10.1007\/978-3-319-05302-8_10"},{"doi-asserted-by":"crossref","unstructured":"More, S., Matthews, M., Joshi, A., Finin, T.: A knowledge-based approach to intrusion detection modeling. In: 2012 IEEE Symposium on Security and Privacy Workshops (SPW), pp. 75\u201381. IEEE (2012)","key":"41_CR9","DOI":"10.1109\/SPW.2012.26"},{"key":"41_CR10","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"252","DOI":"10.1007\/3-540-36159-6_22","volume-title":"Information and Communications Security","author":"N Carey","year":"2002","unstructured":"Carey, N., Clark, A., Mohay, G.: IDS interoperability and correlation using IDMEF and commodity systems. In: Deng, R., Bao, F., Zhou, J., Qing, S. (eds.) ICICS 2002. LNCS, vol. 2513, pp. 252\u2013264. Springer, Heidelberg (2002). doi:\n10.1007\/3-540-36159-6_22"},{"key":"41_CR11","volume-title":"Data Visualization with D3.js Cookbook","author":"NQ Zhu","year":"2013","unstructured":"Zhu, N.Q.: Data Visualization with D3.js Cookbook. Packt Publishing Ltd., Birmingham (2013)"},{"doi-asserted-by":"crossref","unstructured":"Bollacker, K., Evans, C., Paritosh, P., Sturge, T., Taylor, J.: Freebase: a collaboratively created graph database for structuring human knowledge. In: Proceedings of the 2008 ACM SIGMOD International Conference on Management of Data, pp. 1247\u20131250. ACM (2008)","key":"41_CR12","DOI":"10.1145\/1376616.1376746"},{"issue":"10","key":"41_CR13","doi-asserted-by":"crossref","first-page":"78","DOI":"10.1145\/2629489","volume":"57","author":"D Vrande\u010di\u0107","year":"2014","unstructured":"Vrande\u010di\u0107, D., Kr\u00f6tzsch, M.: Wikidata: a free collaborative knowledgebase. Commun. ACM 57(10), 78\u201385 (2014)","journal-title":"Commun. ACM"},{"doi-asserted-by":"crossref","unstructured":"Auer, S., Bizer, C., Kobilarov, G., Lehmann, J., Cyganiak, R., Ives, Z.: Dbpedia: a nucleus for a web of open data. The semantic web, pp. 722\u2013735 (2007)","key":"41_CR14","DOI":"10.1007\/978-3-540-76298-0_52"},{"unstructured":"Prud, E., Seaborne, A., et al.: SPARQL query language for RDF (2006)","key":"41_CR15"}],"container-title":["Lecture Notes in Computer Science","Cyberspace Safety and Security"],"original-title":[],"link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-319-69471-9_41","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2017,10,23]],"date-time":"2017-10-23T13:12:34Z","timestamp":1508764354000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-319-69471-9_41"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2017]]},"ISBN":["9783319694702","9783319694719"],"references-count":15,"URL":"https:\/\/doi.org\/10.1007\/978-3-319-69471-9_41","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2017]]}}}