{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,8]],"date-time":"2026-07-08T21:53:01Z","timestamp":1783547581994,"version":"3.55.0"},"publisher-location":"Cham","reference-count":31,"publisher":"Springer International Publishing","isbn-type":[{"value":"9783319926230","type":"print"},{"value":"9783319926247","type":"electronic"}],"license":[{"start":{"date-parts":[[2018,1,1]],"date-time":"2018-01-01T00:00:00Z","timestamp":1514764800000},"content-version":"unspecified","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2018]]},"DOI":"10.1007\/978-3-319-92624-7_5","type":"book-chapter","created":{"date-parts":[[2018,9,4]],"date-time":"2018-09-04T06:46:11Z","timestamp":1536043571000},"page":"101-130","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":9,"title":["AI- and Metrics-Based Vulnerability-Centric Cyber Security Assessment and Countermeasure Selection"],"prefix":"10.1007","author":[{"given":"Igor","family":"Kotenko","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Elena","family":"Doynikova","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Andrey","family":"Chechulin","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Andrey","family":"Fedorchenko","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2018,9,5]]},"reference":[{"key":"5_CR1","doi-asserted-by":"crossref","unstructured":"Waltermire D, Quinn S, Scarfone K, Halbardier A (2011) The technical specification for the security content automation protocol (SCAP): vol. 27 Scap version 1.2. (2011)","DOI":"10.6028\/NIST.SP.800-126r2"},{"key":"5_CR2","unstructured":"First: common vulnerability scoring system SIG. https:\/\/www.first.org\/cvss (2018). Accessed 27 Feb 2018"},{"key":"5_CR3","unstructured":"Mitre: common vulnerabilities and exposures. https:\/\/cve.mitre.org\/data\/downloads\/index.html (2018). Accessed 27 Feb 2018"},{"key":"5_CR4","unstructured":"Mitre: common attack pattern enumeration and classification (2018). https:\/\/capec.mitre.org\/ . Accessed 27 Feb 2018"},{"key":"5_CR5","unstructured":"CWE: common weakness enumeration (2018). https:\/\/cwe.mitre.org\/ . Accessed 27 Feb 2018"},{"key":"5_CR6","unstructured":"NIST: national vulnerability database (2018). https:\/\/nvd.nist.gov\/ . Accessed 27 Feb 2018"},{"key":"5_CR7","unstructured":"Exploit-DB: offensive security\u2019s exploit database archive (2018). https:\/\/www.exploit-db.com\/ . Accessed 27 Feb 2018"},{"key":"5_CR8","doi-asserted-by":"crossref","unstructured":"Fedorchenko A, Kotenko I, Chechulin A (2015) Design of integrated vulnerabilities database for computer networks security analysis. In: 2015 23rd Euromicro international conference on parallel, distributed and network-based processing (PDP). IEEE, New York (2015), pp 559\u2013566","DOI":"10.1109\/PDP.2015.38"},{"key":"5_CR9","unstructured":"Fedorchenko A, Kotenko IV, Chechulin A (2015) Integrated repository of security information for network security evaluation. JoWUA 6(2):41\u201357"},{"key":"5_CR10","unstructured":"NIST: official common platform enumeration (CPE) dictionary (2018). https:\/\/nvd.nist.gov\/cpe.cfm . Accessed 27 Feb 2018"},{"key":"5_CR11","unstructured":"Choattrition J (2018) OSVDB: everything is vulnerable. https:\/\/blog.osvdb.org\/ . Accessed 27 Feb 2018"},{"key":"5_CR12","unstructured":"IBM: Introducing IBM X-force malware analysis on cloud (2018). https:\/\/www.ibm.com\/security\/xforce . Accessed 27 Feb 2018"},{"key":"5_CR13","unstructured":"SecurityFocus: vulnerabilities (2018). http:\/\/www.securityfocus.com\/ . Accessed 27 Feb 2018"},{"key":"5_CR14","unstructured":"ICASI: the common vulnerability reporting framework (CVRF) (2018). http:\/\/www.icasi.org\/cvrf\/ . Accessed 27 Feb 2018"},{"key":"5_CR15","unstructured":"NIST: common configuration enumeration (CCE) details (2018). https:\/\/nvd.nist.gov\/cce\/index.cfm . Accessed 27 Feb 2018"},{"key":"5_CR16","volume-title":"Intrusion detection and correlation: challenges and solutions","author":"C Kruegel","year":"2004","unstructured":"Kruegel C, Valeur F, Vigna G (2004) Intrusion detection and correlation: challenges and solutions. Springer, USA"},{"key":"5_CR17","first-page":"270","volume-title":"2017 9th IEEE international conference on intelligent data acquisition and advanced computing systems: technology and applications (IDAACS)","author":"A Fedorchenko","year":"2017","unstructured":"Fedorchenko A, Kotenko I, El Baz D (2017) Correlation of security events based on the analysis of structures of event types. 2017 9th IEEE international conference on intelligent data acquisition and advanced computing systems: technology and applications (IDAACS), vol 1. IEEE, New York, pp 270\u2013276"},{"key":"5_CR18","first-page":"159","volume-title":"International symposium on intelligent and distributed computing","author":"I Kotenko","year":"2017","unstructured":"Kotenko I, Chechulin A, Doynikova E, Fedorchenko A (2017) Ontological hybrid storage for security data. International symposium on intelligent and distributed computing. Springer, Berlin, pp 159\u2013171"},{"key":"5_CR19","doi-asserted-by":"crossref","unstructured":"Fedorchenko A, Kotenko I, Doynikova E, Chechulin A (2017) The ontological approach application for construction of the hybrid security repository. In: 2017 XX IEEE international conference on soft computing and measurements (SCM). IEEE, New York (2017), pp 525\u2013528","DOI":"10.1109\/SCM.2017.7970638"},{"issue":"1","key":"5_CR20","doi-asserted-by":"publisher","first-page":"27","DOI":"10.13052\/jcsm2245-1439.312","volume":"3","author":"IV Kotenko","year":"2014","unstructured":"Kotenko IV (2014) Chechulin AA (2014) Fast network attack modelling and security evaluation based on attack graphs. J Cyber Secur Mobil 3(1):27\u201346","journal-title":"J Cyber Secur Mobil"},{"key":"5_CR21","unstructured":"Doynikova EV, Chechulin AA, Kotenko IV (2017) Analytical attack modelling and security assessment based on the common vulnerability scoring system. In: Proceedings of the 20th conference of open innovations association FRUCT, vol 20"},{"key":"5_CR22","unstructured":"ISO: ISO\/IEC 27004:2016: Information technology - security techniques - information security management - monitoring, measurement, analysis and evaluation (2018). https:\/\/www.iso.org\/obp\/ui\/#iso:std:iso-iec:27004:ed-2:v1:en:en . Accessed 27 Feb 2018"},{"key":"5_CR23","doi-asserted-by":"crossref","unstructured":"Singhal A, Ou X (2011) Security risk analysis of enterprise networks using probabilistic attack graphs, Nist inter-agency report","DOI":"10.6028\/NIST.IR.7788"},{"key":"5_CR24","doi-asserted-by":"crossref","unstructured":"Kotenko IV, Doynikova EV (2016) Dynamical calculation of security metrics for countermeasure selection in computer networks. In: Proceedings of the 24th Euromicro international conference on parallel. IEEE Computer Society, Los Alamitos, California, pp 558\u2013565","DOI":"10.1109\/PDP.2016.96"},{"key":"5_CR25","unstructured":"Piliero S (2009) Security Metrics. Establishing unambiguous and logically defensible security metrics (2009). https:\/\/www.certconf.org\/presentations\/2009\/files\/WK-1.pdf . Accessed 27 Feb 2018"},{"key":"5_CR26","doi-asserted-by":"publisher","first-page":"216","DOI":"10.1007\/11909033_20","volume-title":"IFIP international conference on communications and multimedia security","author":"I Kotenko","year":"2006","unstructured":"Kotenko I, Stepashkin M (2006) Attack graph based evaluation of network security. IFIP international conference on communications and multimedia security. Springer, Berlin, pp 216\u2013227"},{"key":"5_CR27","unstructured":"Cheng Y, Deng J, Li J, Deloach S, Singhal A, Ou X (2018) Metrics of security"},{"key":"5_CR28","unstructured":"ISO: ISO\/IEC 27005:2011: information technology - security techniques - information security management - monitoring, measurement, analysis and evaluation (2018). Accessed 27 Feb 2018"},{"issue":"1","key":"5_CR29","doi-asserted-by":"publisher","first-page":"61","DOI":"10.1109\/TDSC.2011.34","volume":"9","author":"N Poolsappasit","year":"2012","unstructured":"Poolsappasit N, Dewri R, Ray I (2012) Dynamic security risk management using bayesian attack graphs. IEEE Trans Depend Sec Comput 9(1):61\u201374","journal-title":"IEEE Trans Depend Sec Comput"},{"key":"5_CR30","doi-asserted-by":"crossref","unstructured":"Frigault M, Wang L, Singhal A, Jajodia S (2008) Measuring network security using dynamic Bayesian network. In: Proceedings of the 4th ACM workshop on quality of protection, ACM, pp 23\u201330","DOI":"10.1145\/1456362.1456368"},{"key":"5_CR31","doi-asserted-by":"publisher","first-page":"346","DOI":"10.1109\/PDP.2017.44","volume-title":"2017 25th Euromicro International conference on parallel, distributed and network-based processing (PDP)","author":"E Doynikova","year":"2017","unstructured":"Doynikova E, Kotenko I (2017) CVSS-based probabilistic risk assessment for cyber situational awareness and countermeasure selection. 2017 25th Euromicro International conference on parallel, distributed and network-based processing (PDP). IEEE, New York, pp 346\u2013353"}],"container-title":["Computer Communications and Networks","Guide to Vulnerability Analysis for Computer Networks and Systems"],"original-title":[],"link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-319-92624-7_5","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2019,10,23]],"date-time":"2019-10-23T11:36:20Z","timestamp":1571830580000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-319-92624-7_5"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2018]]},"ISBN":["9783319926230","9783319926247"],"references-count":31,"URL":"https:\/\/doi.org\/10.1007\/978-3-319-92624-7_5","relation":{},"ISSN":["1617-7975","2197-8433"],"issn-type":[{"value":"1617-7975","type":"print"},{"value":"2197-8433","type":"electronic"}],"subject":[],"published":{"date-parts":[[2018]]}}}