{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,3,26]],"date-time":"2025-03-26T04:49:33Z","timestamp":1742964573671,"version":"3.40.3"},"publisher-location":"Singapore","reference-count":32,"publisher":"Springer Nature Singapore","isbn-type":[{"type":"print","value":"9789819723867"},{"type":"electronic","value":"9789819723874"}],"license":[{"start":{"date-parts":[[2024,1,1]],"date-time":"2024-01-01T00:00:00Z","timestamp":1704067200000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2024,1,1]],"date-time":"2024-01-01T00:00:00Z","timestamp":1704067200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2024]]},"DOI":"10.1007\/978-981-97-2387-4_31","type":"book-chapter","created":{"date-parts":[[2024,4,27]],"date-time":"2024-04-27T18:02:02Z","timestamp":1714240922000},"page":"464-476","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":1,"title":["A Study on\u00a0Historical Behaviour Enabled Insider Threat Prediction"],"prefix":"10.1007","author":[{"ORCID":"https:\/\/orcid.org\/0009-0007-0517-173X","authenticated-orcid":false,"given":"Fan","family":"Xiao","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-2833-9228","authenticated-orcid":false,"given":"Wei","family":"Hong","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-0269-2624","authenticated-orcid":false,"given":"Jiao","family":"Yin","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-8465-0996","authenticated-orcid":false,"given":"Hua","family":"Wang","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-0221-6361","authenticated-orcid":false,"given":"Jinli","family":"Cao","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-5094-5980","authenticated-orcid":false,"given":"Yanchun","family":"Zhang","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2024,4,28]]},"reference":[{"key":"31_CR1","doi-asserted-by":"crossref","unstructured":"Breiman, L.: Classification and regression trees. Routledge (2017)","DOI":"10.1201\/9781315139470"},{"key":"31_CR2","unstructured":"Center, C.N.I.T.: Common sense guide to mitigating insider threats. Carnegie Mellon University, 7th edn. (2022)"},{"issue":"3","key":"31_CR3","doi-asserted-by":"publisher","first-page":"660","DOI":"10.1109\/TCSS.2018.2857473","volume":"5","author":"P Chattopadhyay","year":"2018","unstructured":"Chattopadhyay, P., Wang, L., Tan, Y.P.: Scenario-based insider threat detection from cyber activities. IEEE Trans. Comput. Soc. Syst. 5(3), 660\u2013675 (2018)","journal-title":"IEEE Trans. Comput. Soc. Syst."},{"key":"31_CR4","series-title":"Communications in Computer and Information Science","doi-asserted-by":"publisher","first-page":"93","DOI":"10.1007\/978-981-16-8143-1_9","volume-title":"Web and Big Data. APWeb-WAIM 2021 International Workshops","author":"D Cui","year":"2021","unstructured":"Cui, D., Piao, Y.: A study on the privacy threat analysis of PHI-code. In: Gao, Y., Liu, A., Tao, X., Chen, J. (eds.) APWeb-WAIM 2021. CCIS, vol. 1505, pp. 93\u2013104. Springer, Singapore (2021). https:\/\/doi.org\/10.1007\/978-981-16-8143-1_9"},{"issue":"2","key":"31_CR5","doi-asserted-by":"publisher","first-page":"561","DOI":"10.1007\/s11280-022-01056-9","volume":"26","author":"J Duan","year":"2023","unstructured":"Duan, J., Zhang, P.F., Qiu, R., Huang, Z.: Long short-term enhanced memory for sequential recommendation. World Wide Web 26(2), 561\u2013583 (2023)","journal-title":"World Wide Web"},{"issue":"1","key":"31_CR6","doi-asserted-by":"publisher","first-page":"119","DOI":"10.1006\/jcss.1997.1504","volume":"55","author":"Y Freund","year":"1997","unstructured":"Freund, Y., Schapire, R.E.: A decision-theoretic generalization of on-line learning and an application to boosting. J. Comput. Syst. Sci. 55(1), 119\u2013139 (1997)","journal-title":"J. Comput. Syst. Sci."},{"key":"31_CR7","doi-asserted-by":"crossref","unstructured":"Gamachchi, A., Boztas, S.: Insider threat detection through attributed graph clustering. In: 2017 IEEE Trustcom\/BigDataSE\/ICESS, pp. 112\u2013119. IEEE (2017)","DOI":"10.1109\/Trustcom\/BigDataSE\/ICESS.2017.227"},{"issue":"6","key":"31_CR8","doi-asserted-by":"publisher","first-page":"749","DOI":"10.1287\/mnsc.48.6.749.193","volume":"48","author":"R Garfinkel","year":"2002","unstructured":"Garfinkel, R., Gopal, R., Goes, P.: Privacy protection of binary confidential data against deterministic, stochastic, and insider threat. Manage. Sci. 48(6), 749\u2013764 (2002)","journal-title":"Manage. Sci."},{"key":"31_CR9","doi-asserted-by":"crossref","unstructured":"Garg, A., Rahalkar, R., Upadhyaya, S., Kwiat, K.: Profiling users in gui based systems for masquerade detection. In: Proceedings of the 2006 IEEE Workshop on Information Assurance, vol.\u00a02006, pp. 48\u201354 (2006)","DOI":"10.1109\/IAW.2006.1652076"},{"key":"31_CR10","doi-asserted-by":"crossref","unstructured":"Glasser, J., Lindauer, B.: Bridging the gap: a pragmatic approach to generating insider threat data. In: 2013 IEEE Security and Privacy Workshops, pp. 98\u2013104. IEEE (2013)","DOI":"10.1109\/SPW.2013.37"},{"key":"31_CR11","doi-asserted-by":"crossref","unstructured":"Greitzer, F.L., Frincke, D.A.: Combining traditional cyber security audit data with psychosocial data: towards predictive modeling for insider threat mitigation. In: Insider threats in cyber security, pp. 85\u2013113. Springer (2010)","DOI":"10.1007\/978-1-4419-7133-3_5"},{"key":"31_CR12","doi-asserted-by":"crossref","unstructured":"Hastie, T., Tibshirani, R., Friedman, J.H., Friedman, J.H.: The elements of statistical learning: data mining, inference, and prediction, vol.\u00a02. Springer (2009)","DOI":"10.1007\/978-0-387-84858-7"},{"issue":"2","key":"31_CR13","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1145\/3303771","volume":"52","author":"I Homoliak","year":"2019","unstructured":"Homoliak, I., Toffalini, F., Guarnizo, J., Elovici, Y., Ochoa, M.: Insight into insiders and it: a survey of insider threat taxonomies, analysis, modeling, and countermeasures. ACM Comput. Surv. (CSUR) 52(2), 1\u201340 (2019)","journal-title":"ACM Comput. Surv. (CSUR)"},{"key":"31_CR14","doi-asserted-by":"crossref","unstructured":"Hong, W., et al.: Graph intelligence enhanced bi-channel insider threat detection. In: Network and System Security: 16th International Conference, NSS 2022, Denarau Island, Fiji, December 9\u201312, 2022, Proceedings, pp. 86\u2013102. Springer (2022)","DOI":"10.1007\/978-3-031-23020-2_5"},{"key":"31_CR15","doi-asserted-by":"crossref","unstructured":"Jiang, J., et al.: Anomaly detection with graph convolutional networks for insider threat and fraud detection. In: MILCOM 2019-2019 IEEE Military Communications Conference (MILCOM), pp. 109\u2013114. IEEE (2019)","DOI":"10.1109\/MILCOM47813.2019.9020760"},{"key":"31_CR16","doi-asserted-by":"crossref","unstructured":"Liu, F., Wen, Y., Zhang, D., Jiang, X., Xing, X., Meng, D.: Log2vec: A heterogeneous graph embedding based approach for detecting cyber threats within enterprise. In: Proceedings of the 2019 ACM SIGSAC Conference on Computer and Communications Security, pp. 1777\u20131794 (2019)","DOI":"10.1145\/3319535.3363224"},{"key":"31_CR17","unstructured":"Miller, S.: 2017 u.s. state of cybercrime highlights. Carnegie Mellon University\u2019s Software Engineering Institute Blog (Jan 17, 2018 [Online]). http:\/\/insights.sei.cmu.edu\/blog\/2017-us-state-of-cybercrime-highlights\/. Accessed 23 Aug 2022"},{"key":"31_CR18","doi-asserted-by":"crossref","unstructured":"Paul, S., Mishra, S.: Lac: Lstm autoencoder with community for insider threat detection. In: 2020 the 4th International Conference on Big Data Research (ICBDR\u201920), pp. 71\u201377 (2020)","DOI":"10.1145\/3445945.3445958"},{"key":"31_CR19","unstructured":"Salem, M.B., Stolfo, S.J.: Masquerade attack detection using a search-behavior modeling approach. Columbia University, Computer Science Department, Technical Report CUCS-027-09 (2009)"},{"key":"31_CR20","doi-asserted-by":"crossref","unstructured":"Schonlau, M., DuMouchel, W., Ju, W.H., Karr, A.F., Theus, M., Vardi, Y.: Computer intrusion: Detecting masquerades. Statistical science, pp. 58\u201374 (2001)","DOI":"10.1214\/ss\/998929476"},{"key":"31_CR21","unstructured":"Schultz, E., Shumway, R.: Incident response: a strategic guide to handling system and network security breaches. Sams (2001)"},{"key":"31_CR22","doi-asserted-by":"publisher","unstructured":"Shi, Y., Wang, S., Zhao, Q., Li, J.: A hybrid approach of http anomaly detection. In: Web and Big Data: APWeb-WAIM 2017 International Workshops: MWDA, HotSpatial, GDMA, DDC, SDMA, MASS, Beijing, China, July 7-9, 2017, Revised Selected Papers 1, pp. 128\u2013137. Springer (2017). https:\/\/doi.org\/10.1007\/978-3-319-69781-9_13","DOI":"10.1007\/978-3-319-69781-9_13"},{"key":"31_CR23","doi-asserted-by":"crossref","unstructured":"Sun, X., Wang, H., Li, J.: Injecting purpose and trust into data anonymisation. In: Proceedings of the 18th ACM Conference on Information and Knowledge Management, pp. 1541\u20131544 (2009)","DOI":"10.1145\/1645953.1646166"},{"key":"31_CR24","doi-asserted-by":"crossref","unstructured":"Wang, H., Sun, L.: Trust-involved access control in collaborative open social networks. In: 2010 Fourth International Conference on Network and System Security, pp. 239\u2013246. IEEE (2010)","DOI":"10.1109\/NSS.2010.13"},{"issue":"3","key":"31_CR25","first-page":"200","volume":"4","author":"W Wang","year":"2020","unstructured":"Wang, W., Wang, W., Yin, J.: A bilateral filtering based ringing elimination approach for motion-blurred restoration image. Current Optics Photonics 4(3), 200\u2013209 (2020)","journal-title":"Current Optics Photonics"},{"key":"31_CR26","doi-asserted-by":"crossref","unstructured":"Yin, J., Tang, M., Cao, J., You, M., Wang, H.: Cybersecurity applications in software: Data-driven software vulnerability assessment and management. In: Emerging Trends in Cybersecurity Applications, pp. 371\u2013389. Springer (2022)","DOI":"10.1007\/978-3-031-09640-2_17"},{"key":"31_CR27","doi-asserted-by":"crossref","unstructured":"Yin, J., Tang, M., Cao, J., You, M., Wang, H., Alazab, M.: Knowledge-driven cybersecurity intelligence: software vulnerability co-exploitation behaviour discovery. IEEE Trans. Ind. Inform. (2022)","DOI":"10.1109\/TII.2022.3192027"},{"key":"31_CR28","doi-asserted-by":"crossref","unstructured":"Yin, J., You, M., Cao, J., Wang, H., Tang, M., Ge, Y.F.: Data-driven hierarchical neural network modeling for high-pressure feedwater heater group. In: Databases Theory and Applications: 31st Australasian Database Conference, ADC 2020, Melbourne, VIC, Australia, February 3\u20137, 2020, Proceedings 31, pp. 225\u2013233. Springer (2020)","DOI":"10.1007\/978-3-030-39469-1_19"},{"key":"31_CR29","doi-asserted-by":"crossref","unstructured":"You, M., Yin, J., Wang, H., Cao, J., Miao, Y.: A minority class boosted framework for adaptive access control decision-making. In: Web Information Systems Engineering\u2013WISE 2021: 22nd International Conference on Web Information Systems Engineering, WISE 2021, Melbourne, VIC, Australia, October 26\u201329, 2021, Proceedings, Part I 22. pp. 143\u2013157. Springer (2021)","DOI":"10.1007\/978-3-030-90888-1_12"},{"key":"31_CR30","doi-asserted-by":"crossref","unstructured":"You, M., et al.: A knowledge graph empowered online learning framework for access control decision-making. World Wide Web, pp. 1\u201322 (2022)","DOI":"10.1007\/s11280-022-01076-5"},{"key":"31_CR31","doi-asserted-by":"crossref","unstructured":"Yuan, F., Cao, Y., Shang, Y., Liu, Y., Tan, J., Fang, B.: Insider threat detection with deep neural network. In: International Conference on Computational Science, pp. 43\u201354. Springer (2018)","DOI":"10.1007\/978-3-319-93698-7_4"},{"key":"31_CR32","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2021.102221","volume":"104","author":"S Yuan","year":"2021","unstructured":"Yuan, S., Wu, X.: Deep learning for insider threat detection: review, challenges and opportunities. Comput. Secur. 104, 102221 (2021)","journal-title":"Comput. Secur."}],"container-title":["Lecture Notes in Computer Science","Web and Big Data"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-981-97-2387-4_31","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,11,17]],"date-time":"2024-11-17T05:35:58Z","timestamp":1731821758000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-981-97-2387-4_31"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024]]},"ISBN":["9789819723867","9789819723874"],"references-count":32,"URL":"https:\/\/doi.org\/10.1007\/978-981-97-2387-4_31","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2024]]},"assertion":[{"value":"28 April 2024","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"APWeb-WAIM","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Asia-Pacific Web (APWeb) and Web-Age Information Management (WAIM) Joint International Conference on Web and Big Data","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Wuhan","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"China","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2023","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"6 October 2023","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"8 October 2023","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"7","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"apwebwaim2023","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"http:\/\/www.apweb-waim2023.com\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}