{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,5]],"date-time":"2026-06-05T02:11:40Z","timestamp":1780625500111,"version":"3.54.1"},"publisher-location":"Berlin, Heidelberg","reference-count":40,"publisher":"Springer Berlin Heidelberg","isbn-type":[{"value":"9783662449653","type":"print"},{"value":"9783662449660","type":"electronic"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2014]]},"DOI":"10.1007\/978-3-662-44966-0_37","type":"book-chapter","created":{"date-parts":[[2014,8,27]],"date-time":"2014-08-27T11:41:36Z","timestamp":1409139696000},"page":"379-390","source":"Crossref","is-referenced-by-count":11,"title":["Attack Graph Generation, Visualization and Analysis: Issues and Challenges"],"prefix":"10.1007","author":[{"given":"Ghanshyam S.","family":"Bopche","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Babu M.","family":"Mehtre","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","reference":[{"key":"37_CR1","unstructured":"RedSeal Networks, http:\/\/www.redsealnetworks.com\/"},{"key":"37_CR2","unstructured":"Skybox Security, http:\/\/www.skyboxsecurity.com\/"},{"key":"37_CR3","unstructured":"Ou, X., Govindavajhala, S., Appel, A.: MulVAL: A Logic-based Network Security Analyzer. In: 14th USENIX Security Symposium, Baltimore, Maryland, U.S.A. (August 2005)"},{"key":"37_CR4","unstructured":"Jha, S., Sheyner, O., Wing, J.: Two Formal Analysis of Attack Graphs. In: Proc. of the 15th IEEE Workshop on Computer Security Foundations (CSFW 2002). IEEE Computer Society, Washington, DC (2002)"},{"issue":"2","key":"37_CR5","doi-asserted-by":"publisher","first-page":"369","DOI":"10.1007\/s10489-010-0266-8","volume":"36","author":"N. Ghosh","year":"2012","unstructured":"Ghosh, N., Ghosh, S.K.: A planner-based approach to generate and analyze minimal attack graph. Applied Intelligence\u00a036(2), 369\u2013390 (2012)","journal-title":"Applied Intelligence"},{"key":"37_CR6","unstructured":"Schuppenies, R.: Automatic Extraction of Vulnerability Information for Attack Graphs. Master Thesis, Potsdam (March 2009)"},{"key":"37_CR7","unstructured":"Long, T.: Attack Graph Compression. Master Thesis, Concordia University, Montreal, Canada, USA (March 2009)"},{"key":"37_CR8","unstructured":"Kap, G., Ali, D.: Statistical Analysis of Computer Network Security, KTH Royal Institute of Technology, Sweden (October 2013)"},{"key":"37_CR9","doi-asserted-by":"crossref","unstructured":"Phillips, C., Swiler, L.: A graph-based system for network-vulnerability analysis. In: Proc. of the 1998 Workshop on New Security Paradigms (NSPW 1998), Charlottesville, Virginia, USA, pp. 71\u201379 (September 1998)","DOI":"10.1145\/310889.310919"},{"key":"37_CR10","doi-asserted-by":"crossref","unstructured":"Swiler, L., Phillips, C., Ellis, D., Chakerian, S.: Computer attack graph generation tool. In: DARPA Information Survivability Conference and Exposition II (DISCEX 2001), vol.\u00a02, pp. 307\u2013321 (2001)","DOI":"10.1109\/DISCEX.2001.932182"},{"key":"37_CR11","first-page":"156","volume-title":"Proc. of the IEEE Symposium on Security and Privacy (S&P 2000)","author":"R.W. Ritchey","year":"2000","unstructured":"Ritchey, R.W., Ammann, P.: Using Model Checking to Analyze Network Vulnerabilities. In: Proc. of the IEEE Symposium on Security and Privacy (S&P 2000), pp. 156\u2013165. IEEE Press, New York (2000)"},{"key":"37_CR12","doi-asserted-by":"publisher","first-page":"273","DOI":"10.1109\/SECPRI.2002.1004377","volume-title":"Proc. of the IEEE Symposium on Security and Privacy (S&P 2002)","author":"O. Sheyner","year":"2002","unstructured":"Sheyner, O., Haines, J., Jha, S., Lippmann, R., Wing, J.M.: Automated generation and analysis of attack graphs. In: Proc. of the IEEE Symposium on Security and Privacy (S&P 2002), pp. 273\u2013284. IEEE Press, Oakland (2002)"},{"key":"37_CR13","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"344","DOI":"10.1007\/978-3-540-30101-1_17","volume-title":"Formal Methods for Components and Objects","author":"O. Sheyner","year":"2004","unstructured":"Sheyner, O., Wing, J.: Tools for Generating and Analyzing Attack Graphs. In: de Boer, F.S., Bonsangue, M.M., Graf, S., de Roever, W.-P. (eds.) FMCO 2003. LNCS, vol.\u00a03188, pp. 344\u2013371. Springer, Heidelberg (2004)"},{"key":"37_CR14","unstructured":"Sheyner, O.: Scenario Graphs and Attack Graphs. Ph.D. Thesis, Carneige Mellon University (CMU), Pittsburgh, USA (2004)"},{"key":"37_CR15","doi-asserted-by":"crossref","unstructured":"Ammann, P., Wijesekera, D., Kaushik, S.: Scalable, graph-based network vulnerability analysis. In: Proc. of the 9th ACM Conference on Computer and ommunications Security (CCS 2002), Washington, DC, USA, pp. 217\u2013224 (November 2002)","DOI":"10.1145\/586139.586140"},{"key":"37_CR16","doi-asserted-by":"crossref","unstructured":"Noel, S., Jajodia, S., O\u2019Berry, B., Jacobs, M.: Efficient Minimum-cost Network Hardening via Exploit Dependency Graphs. In: Proc. of the 19th Annual Computer Security Applications Conference (ACSAC 2003), Las Vegas, NV, USA, pp. 86\u201395 (December 2003)","DOI":"10.1109\/CSAC.2003.1254313"},{"key":"37_CR17","doi-asserted-by":"crossref","unstructured":"Jajodia, S., Noel, S., O\u2019Berry, B.: Topological Analysis of Network Attack Vulnerability. In: Managing Cyber Threats: Issues, Approaches, and Challenges, pp. 247\u2013266. Springer US (2005)","DOI":"10.1007\/0-387-24230-9_9"},{"key":"37_CR18","doi-asserted-by":"crossref","unstructured":"Lippmann, R., Ingols, K.W.: An annotated review of past papers on attack graphs. Project Report ESC-TR-2005-054, MIT Lincoln Laboratory (March 2005)","DOI":"10.21236\/ADA431826"},{"key":"37_CR19","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"119","DOI":"10.1007\/11805588_9","volume-title":"Data and Applications Security XX","author":"L. Wang","year":"2006","unstructured":"Wang, L., Yao, C., Singhal, A., Jajodia, S.: Interactive Analysis of Attack Graphs Using Relational Queries. In: Damiani, E., Liu, P. (eds.) Data and Applications Security 2006. LNCS, vol.\u00a04127, pp. 119\u2013132. Springer, Heidelberg (2006)"},{"key":"37_CR20","doi-asserted-by":"crossref","unstructured":"Ou, X., Boyer, W.F., McQueen, M.A.: A scalable approach to attack graph generation. In: Proc. of the 13th ACM Conference on Computer and Communications Security (CCS 2006), Alexandria, Virginia, USA, pp. 336\u2013345 (November 2006)","DOI":"10.1145\/1180405.1180446"},{"key":"37_CR21","doi-asserted-by":"crossref","unstructured":"Ingols, K.W., Lippmann, R., Piwowarski, K.: Practical Attack Graph Generation for Network Defense. In: Proc. of the 22nd Annual Computer Security Applications Conference (ACSAC 2006), Washington, DC, USA, pp. 121\u2013130 (December 2006)","DOI":"10.1109\/ACSAC.2006.39"},{"key":"37_CR22","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"127","DOI":"10.1007\/11856214_7","volume-title":"Recent Advances in Intrusion Detection","author":"V. Mehta","year":"2006","unstructured":"Mehta, V., Bartzis, C., Zhu, H., Clarke, E., Wing, J.: Ranking Attack Graphs. In: Zamboni, D., Kruegel, C. (eds.) RAID 2006. LNCS, vol.\u00a04219, pp. 127\u2013144. Springer, Heidelberg (2006)"},{"key":"37_CR23","doi-asserted-by":"crossref","unstructured":"Malhotra, S., Bhattacharya, S., Ghosh, S.K.: A Vulnerability and Exploit Independent Approach for Attack Path Prediction. In: Proc. of the IEEE 8th International Conference on Computer and Information Technology, Sydney, Australia, pp. 282\u2013287 (July 2008)","DOI":"10.1109\/CIT.2008.Workshops.73"},{"key":"37_CR24","first-page":"981","volume-title":"Proc. of the IEEE Conference on Military Communications","author":"R. Lippmann","year":"2006","unstructured":"Lippmann, R., Ingols, K., Scott, C., Piwowarski, K., Kratkiewicz, K., Artz, M., Cunningham, R.: Validating and restoring defense in depth using attack graphs. In: Proc. of the IEEE Conference on Military Communications, pp. 981\u2013990. IEEE Press, Piscataway (2006)"},{"key":"37_CR25","doi-asserted-by":"crossref","unstructured":"Homer, J., Varikuti, A., Ou, X., McQueen, M.A.: Improving Attack Graph Visualization through Data Reduction and Attack Grouping. In: Proc. of the 5th Int. Work. on Vis. for Comp. Sec. (VizSEC 2008), Cambridge, MA, USA, pp. 68\u201379 (September 2008)","DOI":"10.1007\/978-3-540-85933-8_7"},{"key":"37_CR26","doi-asserted-by":"crossref","unstructured":"Noel, S., Jacobs, M., Kalapa, P., Jajodia, S.: Multiple coordinated views for network attack graphs. In Proc. of IEEE Workshop on Visualization for Computer Security (VizSEC 2005), Minneapolis, USA, pp. 99\u2013106 (October 2005)","DOI":"10.1109\/VIZSEC.2005.1532071"},{"key":"37_CR27","unstructured":"Noel, S., Jajodia, S.: Understanding complex network attack graphs through clustered adjacency matrices. In: 21st Annual Computer Security Application Conference, vol. 10 (December 2005)"},{"key":"37_CR28","doi-asserted-by":"crossref","unstructured":"Noel, S., Jajodia, S.: Managing attack graph complexity through visual hierarchical aggregation. In: Proc. of ACM Workshop on Visualization and Data Mining for Computer Security (VizSEC 2004), GMU, Fairfax, USA, pp. 109\u2013118 (October 2004)","DOI":"10.1145\/1029208.1029225"},{"key":"37_CR29","doi-asserted-by":"crossref","unstructured":"Williams, L., Lippmann, R., Ingols, K.W.: An interactive attack graph cascade and reachability display. In: Proc. of the 2007 Workshop on Visualization for Computer Security (VizSEC 2007), Sacramento, CA, USA, pp. 221\u2013236 (October 2007)","DOI":"10.1007\/978-3-540-78243-8_15"},{"key":"37_CR30","series-title":"CCIS","doi-asserted-by":"publisher","first-page":"239","DOI":"10.1007\/978-3-642-54525-2_22","volume-title":"Recent Trends in Computer Networks and Distributed Systems Security","author":"M.S. Barik","year":"2014","unstructured":"Barik, M.S., Mazumdar, C.: A Graph Data Model for Attack Graph Generation and Analysis. In: Mart\u00ednez P\u00e9rez, G., Thampi, S.M., Ko, R., Shu, L. (eds.) SNDS 2014. CCIS, vol.\u00a0420, pp. 239\u2013250. Springer, Heidelberg (2014)"},{"key":"37_CR31","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"138","DOI":"10.1007\/978-3-642-20754-9_15","volume-title":"Advances in Grid and Pervasive Computing","author":"F. Cheng","year":"2011","unstructured":"Cheng, F., Roschke, S., Meinel, C.: An integrated network scanning tool for attack graph construction. In: Riekki, J., Ylianttila, M., Guo, M. (eds.) GPC 2011. LNCS, vol.\u00a06646, pp. 138\u2013147. Springer, Heidelberg (2011)"},{"key":"37_CR32","doi-asserted-by":"crossref","unstructured":"Burns, J., Cheng, A., Gurung, P., Rajagopalan, S., Rao, P., Rosenbluth, D., Surendran, A.V., Martin Jr., D.M.: Automatic management of network security policy. In: Proc. of DARPA Information Survivability Conference & Exposition II, vol.\u00a02, pp. 12\u201326 (2001)","DOI":"10.1109\/DISCEX.2001.932156"},{"key":"37_CR33","doi-asserted-by":"crossref","unstructured":"Noel, S., Jajodia, S.: Metrics Suite for Network Attack Graph Analytics. In: 9th Ann. Cyb. and Info. Sec. Res. Conf. (CISRC), Oak Ridge National Laboratory, Tennessee (April 2014)","DOI":"10.1145\/2602087.2602117"},{"key":"37_CR34","doi-asserted-by":"crossref","unstructured":"Alhomidi, M.A., Reed, M.J.: Attack graphs representations. In: 4th Computer Science and Electronic Engineering Conference (CEEC), pp. 83\u201388 (September 2012)","DOI":"10.1109\/CEEC.2012.6375383"},{"issue":"4","key":"37_CR35","doi-asserted-by":"crossref","first-page":"419","DOI":"10.3233\/JCS-2008-0327","volume":"16","author":"L. Wang","year":"2008","unstructured":"Wang, L., Yao, C., Singhal, S., Jajodia, S.: Implementing interactive analysis of attack graphs using relational databases. Journal of Computer Security\u00a016(4), 419\u2013437 (2008)","journal-title":"Journal of Computer Security"},{"key":"37_CR36","unstructured":"Williams, L.: GARNET: A Graphical Attack Graph and Reachability Network Evaluation Tool. Master Thesis, Massachusetts Institute of Technology (May 2008)"},{"key":"37_CR37","unstructured":"Sawilla, R., Ou, X.: Googling Attack Graphs. Technical Report TM-2007-205, Defense Research and Development Canada (September 2007)"},{"issue":"1-2","key":"37_CR38","doi-asserted-by":"crossref","first-page":"189","DOI":"10.3233\/JCS-2002-101-209","volume":"10","author":"C.R. Ramakrishnan","year":"2002","unstructured":"Ramakrishnan, C.R., Sekar, R.: Model-based analysis of configuration vulnerabilities. Journal of Computer Security\u00a010(1-2), 189\u2013209 (2002)","journal-title":"Journal of Computer Security"},{"key":"37_CR39","doi-asserted-by":"crossref","first-page":"177","DOI":"10.1007\/978-1-5041-2919-0_15","volume-title":"Information Systems Security","author":"M. Dacier","year":"1996","unstructured":"Dacier, M., Deswarte, Y., Ka\u00e2niche, M.: Models and tools for quantitative assessment of operational security. In: Information Systems Security, pp. 177\u2013186. Chapman & Hall, Ltd., London (1996)"},{"key":"37_CR40","unstructured":"Heberlein, T., Bishop, M., Ceesay, E., Danforth, M., Senthilkumar, C., Stallard, T.: A Taxonomy for Comparing Attack-Graph Approaches (July 5, 2014)"}],"container-title":["Communications in Computer and Information Science","Security in Computing and Communications"],"original-title":[],"link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-662-44966-0_37","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,5,4]],"date-time":"2025-05-04T10:50:55Z","timestamp":1746355855000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-662-44966-0_37"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2014]]},"ISBN":["9783662449653","9783662449660"],"references-count":40,"URL":"https:\/\/doi.org\/10.1007\/978-3-662-44966-0_37","relation":{},"ISSN":["1865-0929","1865-0937"],"issn-type":[{"value":"1865-0929","type":"print"},{"value":"1865-0937","type":"electronic"}],"subject":[],"published":{"date-parts":[[2014]]}}}