{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,1]],"date-time":"2026-07-01T17:49:01Z","timestamp":1782928141933,"version":"3.54.5"},"reference-count":119,"publisher":"Springer Science and Business Media LLC","issue":"6","license":[{"start":{"date-parts":[[2026,7,1]],"date-time":"2026-07-01T00:00:00Z","timestamp":1782864000000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2026,7,1]],"date-time":"2026-07-01T00:00:00Z","timestamp":1782864000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["SN COMPUT. SCI."],"DOI":"10.1007\/s42979-026-05202-2","type":"journal-article","created":{"date-parts":[[2026,7,1]],"date-time":"2026-07-01T17:12:05Z","timestamp":1782925925000},"update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":0,"title":["Domain Knowledge Management for Automated Threat Defense: Methods, Challenges, and Opportunities"],"prefix":"10.1007","volume":"7","author":[{"given":"Md Mohaiminul","family":"Islam","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-1241-6391","authenticated-orcid":false,"given":"Euclides Carlos Pinto","family":"Neto","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Shahrear","family":"Iqbal","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Scott","family":"Buffett","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Madeena","family":"Sultana","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Adrian","family":"Taylor","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2026,7,1]]},"reference":[{"key":"5202_CR1","doi-asserted-by":"publisher","unstructured":"Tirumala SS, Valluri MR, Babu G. A survey on cybersecurity awareness concerns, practices and conceptual measures. In: 2019 international conference on computer communication and informatics (ICCCI) 2019, pp. 1\u20136. https:\/\/doi.org\/10.1109\/ICCCI.2019.8821951.","DOI":"10.1109\/ICCCI.2019.8821951"},{"issue":"1","key":"5202_CR2","doi-asserted-by":"publisher","first-page":"23","DOI":"10.1016\/j.clsr.2009.11.008","volume":"26","author":"RH Weber","year":"2010","unstructured":"Weber RH. Internet of things-new security and privacy challenges. Comput Law Secur Rev. 2010;26(1):23\u201330.","journal-title":"Comput Law Secur Rev"},{"key":"5202_CR3","unstructured":"Goutam RK. Cybersecurity Fundamentals: understand the role of cybersecurity, its importance and modern techniques used by cybersecurity professionals. BPB Publications; 2021. (English Edition)."},{"key":"5202_CR4","unstructured":"Rundle J. The ai effect: Amazon sees nearly 1 billion cyber threats a day. The Wall Street Journal 2021. Accessed: 2025-04-02."},{"key":"5202_CR5","unstructured":"Calderon R. The benefits of artificial intelligence in cybersecurity. La Salle University Digital Commons; 2019."},{"issue":"1","key":"5202_CR6","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1007\/s10207-025-00987-4","volume":"24","author":"S Khanzadeh","year":"2025","unstructured":"Khanzadeh S, Neto ECP, Iqbal S, Alalfi M, Buffett S. An exploratory study on domain knowledge infusion in deep learning for automated threat defense. Int J Inf Secur. 2025;24(1):1\u201319.","journal-title":"Int J Inf Secur"},{"issue":"2","key":"5202_CR7","doi-asserted-by":"publisher","first-page":"1615","DOI":"10.30574\/wjarr.2024.23.2.2494","volume":"23","author":"RH Chowdhury","year":"2024","unstructured":"Chowdhury RH, Prince NU, Abdullah SM, Mim L. The role of predictive analytics in cybersecurity: detecting and preventing threats. World J Adv Res Rev. 2024;23(2):1615\u201323.","journal-title":"World J Adv Res Rev"},{"key":"5202_CR8","unstructured":"Kursuncu U, Gaur M, Sheth A. Knowledge infused learning (k-il): Towards deep incorporation of knowledge in deep learning. 2019. arXiv preprint. arXiv:1912.00512."},{"issue":"11","key":"5202_CR9","doi-asserted-by":"publisher","first-page":"12387","DOI":"10.1007\/s10462-023-10448-w","volume":"56","author":"AD Garcez","year":"2023","unstructured":"Garcez AD, Lamb LC. Neurosymbolic ai: The 3rd wave. Artif Intell Rev. 2023;56(11):12387\u2013406.","journal-title":"Artif Intell Rev"},{"issue":"15","key":"5202_CR10","doi-asserted-by":"publisher","first-page":"2287","DOI":"10.3390\/electronics11152287","volume":"11","author":"K Liu","year":"2022","unstructured":"Liu K, Wang F, Ding Z, Liang S, Yu Z, Zhou Y. Recent progress of using knowledge graph for cybersecurity. Electronics. 2022;11(15):2287. https:\/\/doi.org\/10.3390\/electronics11152287.","journal-title":"Electronics"},{"key":"5202_CR11","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2023.103524","volume":"136","author":"X Zhao","year":"2024","unstructured":"Zhao X, Jiang R, Han Y, Li A, Peng Z. A survey on cybersecurity knowledge graph construction. Comput Secur. 2024;136:103524. https:\/\/doi.org\/10.1016\/j.cose.2023.103524 (https:\/\/www.sciencedirect.com\/science\/article\/pii\/S0167404823004340).","journal-title":"Comput Secur"},{"issue":"12","key":"5202_CR12","doi-asserted-by":"publisher","first-page":"2724","DOI":"10.1109\/TKDE.2017.2754499","volume":"29","author":"Q Wang","year":"2017","unstructured":"Wang Q, Mao Z, Wang B, Guo L. Knowledge graph embedding: a survey of approaches and applications. IEEE Trans Knowl Data Eng. 2017;29(12):2724\u201343. https:\/\/doi.org\/10.1109\/TKDE.2017.2754499.","journal-title":"IEEE Trans Knowl Data Eng"},{"issue":"2","key":"5202_CR13","doi-asserted-by":"publisher","first-page":"494","DOI":"10.1109\/TNNLS.2021.3070843","volume":"33","author":"S Ji","year":"2021","unstructured":"Ji S, Pan S, Cambria E, Marttinen P, Philip SY. A survey on knowledge graphs: representation, acquisition, and applications. IEEE Trans Neural Netw Learn Syst. 2021;33(2):494\u2013514.","journal-title":"IEEE Trans Neural Netw Learn Syst"},{"key":"5202_CR14","doi-asserted-by":"publisher","unstructured":"Bordes A, Gabrilovich E. Constructing and mining web-scale knowledge graphs: WWW 2015 Tutorial. In: Proceedings of the 24th international conference on World Wide Web (Association for Computing Machinery, New York, NY, USA, 2015), WWW \u201915 Companion, pp. 1523. https:\/\/doi.org\/10.1145\/2740908.2741993.","DOI":"10.1145\/2740908.2741993"},{"key":"5202_CR15","doi-asserted-by":"publisher","first-page":"489","DOI":"10.3233\/SW-160218","volume":"8","author":"H Paulheim","year":"2017","unstructured":"Paulheim H. Knowledge graph refinement: a survey of approaches and evaluation methods. Semant Web. 2017;8:489\u2013508. https:\/\/doi.org\/10.3233\/SW-160218.","journal-title":"Semant Web"},{"key":"5202_CR16","unstructured":"Hakim SB, Adil M, Velasquez A, Xu S, Song HH. Neuro-symbolic ai for cybersecurity: State of the art, challenges, and opportunities. 2025. arXiv preprint. arXiv:2509.06921."},{"key":"5202_CR17","doi-asserted-by":"crossref","unstructured":"Fieblinger R, Alam MT, Rastogi N. Actionable cyber threat intelligence using knowledge graphs and large language models. In: 2024 IEEE European symposium on security and privacy workshops (EuroS&PW) IEEE, 2024, pp. 100\u2013111.","DOI":"10.1109\/EuroSPW61312.2024.00018"},{"key":"5202_CR18","unstructured":"Wu Z, Tang F, Zhao M, Li Y. Kgv: Integrating large language models with knowledge graphs for cyber threat intelligence credibility assessment. 2024. arXiv preprint. arXiv:2408.08088."},{"issue":"18","key":"5202_CR19","doi-asserted-by":"publisher","first-page":"13369","DOI":"10.3390\/su151813369","volume":"15","author":"MF Safitra","year":"2023","unstructured":"Safitra MF, Lubis M, Fakhrurroja H. Counterattacking cyber threats: a framework for the future of cybersecurity. Sustainability. 2023;15(18):13369.","journal-title":"Sustainability"},{"key":"5202_CR20","doi-asserted-by":"crossref","unstructured":"Wang Y, Zhou Y, Zou X, Miao Q, Wang W. The analysis method of security vulnerability based on the knowledge graph. In: 2020 the 10th international conference on communication and network security 2020, pp. 135\u2013145.","DOI":"10.1145\/3442520.3442535"},{"key":"5202_CR21","doi-asserted-by":"crossref","unstructured":"Piplai A, Ranade P, Kotal A, Mittal S, Narayanan SN, Joshi A. Using knowledge graphs and reinforcement learning for malware analysis. In: 2020 IEEE international conference on big data (Big Data) IEEE, 2020, pp. 2626\u20132633.","DOI":"10.1109\/BigData50022.2020.9378491"},{"issue":"12","key":"5202_CR22","doi-asserted-by":"publisher","first-page":"2724","DOI":"10.1109\/TKDE.2017.2754499","volume":"29","author":"Q Wang","year":"2017","unstructured":"Wang Q, Mao Z, Wang B, Guo L. Knowledge graph embedding: a survey of approaches and applications. IEEE Trans Knowl Data Eng. 2017;29(12):2724\u201343.","journal-title":"IEEE Trans Knowl Data Eng"},{"issue":"6","key":"5202_CR23","doi-asserted-by":"publisher","first-page":"54","DOI":"10.1109\/MIC.2019.2960071","volume":"23","author":"A Sheth","year":"2019","unstructured":"Sheth A, Gaur M, Kursuncu U, Wickramarachchi R. Shades of knowledge-infused learning for enhancing deep learning. IEEE Internet Comput. 2019;23(6):54\u201363.","journal-title":"IEEE Internet Comput"},{"issue":"2","key":"5202_CR24","doi-asserted-by":"publisher","first-page":"92","DOI":"10.1002\/wps.20050","volume":"12","author":"DA Regier","year":"2013","unstructured":"Regier DA, Kuhl EA, Kupfer DJ. The dsm-5: Classification and criteria changes. World Psychiatry. 2013;12(2):92\u20138.","journal-title":"World Psychiatry"},{"issue":"4","key":"5202_CR25","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1145\/3199674","volume":"51","author":"K Huang","year":"2018","unstructured":"Huang K, Siegel M, Madnick S. Systematically understanding the cyber attack business: a survey. ACM Comput Surv (CSUR). 2018;51(4):1\u201336.","journal-title":"ACM Comput Surv (CSUR)"},{"key":"5202_CR26","doi-asserted-by":"crossref","unstructured":"Donevski M, Zia T. A survey of anomaly and automation from a cybersecurity perspective. In: 2018 IEEE Globecom Workshops (GC Wkshps) IEEE, 2018, pp. 1\u20136.","DOI":"10.1109\/GLOCOMW.2018.8644456"},{"key":"5202_CR27","unstructured":"Diogenes Y, Ozkaya E. Cybersecurity-attack and defense strategies: infrastructure security with red team and blue team tactics. Packt Publishing Ltd; 2018."},{"key":"5202_CR28","unstructured":"Strom BE, Applebaum A, Miller DP, Nickels KC, Pennington AG, Thomas CB. In Technical report (The MITRE Corporation), 2018."},{"key":"5202_CR29","doi-asserted-by":"publisher","unstructured":"Lim S, Muis AO, Lu W, Ong C. MalwareTextDB: a database for annotated malware articles. 2017. pp. 1557\u201367. https:\/\/doi.org\/10.18653\/v1\/P17-1143.","DOI":"10.18653\/v1\/P17-1143"},{"key":"5202_CR30","doi-asserted-by":"publisher","unstructured":"Zhang B, Zhu W, Xue Z. Mining privilege escalation paths for network vulnerability analysis. In: Fourth international conference on fuzzy systems and knowledge discovery (FSKD 2007), vol.\u00a04 2007, pp. 56\u201360. https:\/\/doi.org\/10.1109\/FSKD.2007.406.","DOI":"10.1109\/FSKD.2007.406"},{"key":"5202_CR31","doi-asserted-by":"publisher","unstructured":"Gao P, Shao F, Liu X, Xiao X, Qin Z, Xu F, Mittal P, Kulkarni SR, Song D. Enabling efficient cyber threat hunting with cyber threat intelligence. In: 2021 IEEE 37th international conference on data engineering (ICDE) 2021, pp. 193\u2013204. https:\/\/doi.org\/10.1109\/ICDE51399.2021.00024.","DOI":"10.1109\/ICDE51399.2021.00024"},{"key":"5202_CR32","unstructured":"SENKI. Open source threat intelligence feeds - senki_2020 (2020). https:\/\/www.senki.org\/operators-security-%20toolkit\/open-source-threat-intelligence-feeds\/."},{"key":"5202_CR33","doi-asserted-by":"crossref","unstructured":"NIST. Cybersecurity framework. https:\/\/www.nist.gov\/cyberframework (2024).","DOI":"10.6028\/NIST.SP.1312.ipd"},{"key":"5202_CR34","doi-asserted-by":"publisher","unstructured":"Brown G, Carlyle M, Salmeron J, Wood K. Analyzing the vulnerability of critical infrastructure to attack and planning defenses. Emerging theory, methods, and applications 2005. https:\/\/doi.org\/10.1287\/educ.1053.0018.","DOI":"10.1287\/educ.1053.0018"},{"key":"5202_CR35","doi-asserted-by":"crossref","unstructured":"Garrido JS, Dold D, Frank J. Machine learning on knowledge graphs for context-aware security monitoring. In: 2021 IEEE international conference on cyber security and resilience (CSR) IEEE, 2021, pp. 55\u201360.","DOI":"10.1109\/CSR51186.2021.9527927"},{"key":"5202_CR36","doi-asserted-by":"publisher","unstructured":"Ioannou M, Stavrou E, Bada M. Cybersecurity Culture in Computer Security Incident Response Teams: Investigating difficulties in communication and coordination. In: 2019 international conference on cyber security and protection of digital services (Cyber Security) 2019, pp. 1\u20134. https:\/\/doi.org\/10.1109\/CyberSecPODS.2019.8885240.","DOI":"10.1109\/CyberSecPODS.2019.8885240"},{"issue":"3","key":"5202_CR37","doi-asserted-by":"publisher","first-page":"2476","DOI":"10.1109\/TSG.2019.2956161","volume":"11","author":"F Wei","year":"2020","unstructured":"Wei F, Wan Z, He H. Cyber-attack recovery strategy for smart grid based on deep reinforcement learning. IEEE Trans Smart Grid. 2020;11(3):2476\u201386. https:\/\/doi.org\/10.1109\/TSG.2019.2956161.","journal-title":"IEEE Trans Smart Grid"},{"key":"5202_CR38","unstructured":"Undercoffer J, Joshi A, Finin TW, Pinkston J. A target-centric ontology for intrusion detection. In: International joint conference on artificial intelligence 2003. https:\/\/api.semanticscholar.org\/CorpusID:9996295."},{"key":"5202_CR39","doi-asserted-by":"crossref","unstructured":"Allen J, Christie A, Fithen W, McHugh J, Pickel J, Stoner E. State of the practice of intrusion detection technologies. Tech. Rep. CMU\/SEI-99-TR-028 2000. https:\/\/insights.sei.cmu.edu\/library\/state-of-the-practice-of-intrusion-detection-technologies\/. Accessed: 2024-Jan-29.","DOI":"10.21236\/ADA375846"},{"issue":"4","key":"5202_CR40","doi-asserted-by":"publisher","first-page":"262","DOI":"10.1145\/382912.382923","volume":"3","author":"J McHugh","year":"2000","unstructured":"McHugh J. Testing intrusion detection systems: a critique of the 1998 and 1999 darpa intrusion detection system evaluations as performed by lincoln laboratory. ACM Trans Inf Syst Secur. 2000;3(4):262\u201394. https:\/\/doi.org\/10.1145\/382912.382923.","journal-title":"ACM Trans Inf Syst Secur"},{"key":"5202_CR41","doi-asserted-by":"publisher","unstructured":"Landwehr CE, Bull AR, McDermott JP, Choi WS. A taxonomy of computer program security flaws. ACM Computing Surveys - CSUR 1993;26. https:\/\/doi.org\/10.1145\/185403.185412.","DOI":"10.1145\/185403.185412"},{"key":"5202_CR42","doi-asserted-by":"publisher","unstructured":"Can O, Unalir M, Sezer E, Bursa O, Erdogdu B. An ontology based approach for host intrusion detection systems 2017, pp. 80\u201386. https:\/\/doi.org\/10.1007\/978-3-319-70863-8_8.","DOI":"10.1007\/978-3-319-70863-8_8"},{"key":"5202_CR43","unstructured":"OSQuery. Sql powered operating system instrumentation, monitoring, and analytics framework, 2024. https:\/\/osquery.io\/."},{"key":"5202_CR44","unstructured":"Broadcom. Symantec security center (2024). https:\/\/www.broadcom.com\/support\/security-center."},{"key":"5202_CR45","unstructured":"Noy N. Ontology development 101: a guide to creating your first ontology 2001. https:\/\/api.semanticscholar.org\/CorpusID:500106."},{"key":"5202_CR46","doi-asserted-by":"publisher","first-page":"198","DOI":"10.1007\/978-3-030-30796-7_13","volume-title":"The semantic web - ISWC 2019","author":"E Kiesling","year":"2019","unstructured":"Kiesling E, Ekelhart A, Kurniawan K, Ekaputra F. The SEPSES knowledge graph: an integrated resource for cybersecurity. In: Ghidini C, Hartig O, Maleshkova M, Sv\u00e1tek V, Cruz I, Hogan A, et al., editors. The semantic web - ISWC 2019. Cham: Springer International Publishing; 2019. p. 198\u2013214."},{"key":"5202_CR47","first-page":"91","volume":"6","author":"J Chen","year":"2020","unstructured":"Chen J. Ddos attack detection based on knowledge graph. J Inf Secur Res. 2020;6:91\u20136.","journal-title":"J Inf Secur Res"},{"key":"5202_CR48","first-page":"17","volume":"37","author":"L Feiyang","year":"2021","unstructured":"Feiyang L, Kun L, Fei S, Chunhua Z. Distributed ddos attacks malicious behavior knowledge base construction. Telecommun Sci. 2021;37:17\u201332.","journal-title":"Telecommun Sci"},{"key":"5202_CR49","first-page":"12910","volume":"34","author":"Y Zhang","year":"2020","unstructured":"Zhang Y, Wang X, Xu Z, Yu Q, Yuille A, Xu D. When radiology report generation meets knowledge graph. Proc AAAI Conf Artif Intell. 2020;34:12910\u20137.","journal-title":"Proc AAAI Conf Artif Intell"},{"key":"5202_CR50","first-page":"16266","volume":"34","author":"F Liu","year":"2021","unstructured":"Liu F, You C, Wu X, Ge S, Sun X, et al. Auto-encoding knowledge graph for unsupervised medical report generation. Adv Neural Inf Process Syst. 2021;34:16266\u201379.","journal-title":"Adv Neural Inf Process Syst"},{"key":"5202_CR51","doi-asserted-by":"crossref","unstructured":"Fensel D, \u015eim\u015fek U, Angele K, Huaman E, K\u00e4rle E, Panasiuk O, Toma I, Umbrich J, Wahler A. Knowledge graphs. Springer International Publishing, 2020.","DOI":"10.1007\/978-3-030-37439-6"},{"key":"5202_CR52","doi-asserted-by":"crossref","unstructured":"Weikum G, Dong L, Razniewski S, Suchanek F. Machine knowledge: creation and curation of comprehensive knowledge bases. 2021.","DOI":"10.1561\/1900000064"},{"key":"5202_CR53","unstructured":"Simsek U, Angele K, K\u00e4rle E, Opdenplatz J, Sommer D, Umbrich J, Fensel D. Knowledge graph lifecycle: building and maintaining knowledge graphs. In: Second international workshop on knowledge graph construction 2021. https:\/\/openreview.net\/forum?id=GumxKk-3fV-."},{"key":"5202_CR54","doi-asserted-by":"publisher","first-page":"300","DOI":"10.1007\/978-3-030-04834-1_16","volume-title":"A review of graph approaches to network security analytics","author":"S Noel","year":"2018","unstructured":"Noel S. A review of graph approaches to network security analytics. Cham: Springer International Publishing; 2018. p. 300\u201323. https:\/\/doi.org\/10.1007\/978-3-030-04834-1_16."},{"key":"5202_CR55","doi-asserted-by":"publisher","unstructured":"Iannacone M, Bohn S, Nakamura G, Gerth J, Huffer K, Bridges R, Ferragut E, Goodall J. Developing an ontology for cyber security knowledge graphs. In: Proceedings of the 10th annual cyber and information security research conference association for computing machinery, New York, NY, USA, 2015, CISR \u201915. https:\/\/doi.org\/10.1145\/2746266.2746278.","DOI":"10.1145\/2746266.2746278"},{"key":"5202_CR56","unstructured":"Syed Z, Padia A, Finin TW, Mathews ML, Joshi A. UCO: A unified cybersecurity ontology. In: AAAI Workshop: artificial intelligence for cyber security 2016. https:\/\/api.semanticscholar.org\/CorpusID:6896947."},{"key":"5202_CR57","doi-asserted-by":"crossref","unstructured":"Gr\u00e9gio ARA, Bonacin R, Nabuco O, Afonso VM, de\u00a0Geus PL, Jino M. Ontology for malware behavior: a core model proposal. In: 2014 IEEE 23rd International WETICE Conference 2014, pp. 453\u2013458 . https:\/\/api.semanticscholar.org\/CorpusID:5984175.","DOI":"10.1109\/WETICE.2014.72"},{"key":"5202_CR58","doi-asserted-by":"crossref","unstructured":"Ding Y, Wu R, Zhang X. Ontology-based knowledge representation for malware individuals and families. Comput Secur. 2019;87. https:\/\/api.semanticscholar.org\/CorpusID:261366486.","DOI":"10.1016\/j.cose.2019.101574"},{"issue":"11","key":"5202_CR59","first-page":"112","volume":"56","author":"J Gao","year":"2020","unstructured":"Gao J, Wang A. Research on ontology-based network threat intelligence analysis technology. Comput Eng Appl. 2020;56(11):112.","journal-title":"Comput Eng Appl"},{"key":"5202_CR60","doi-asserted-by":"crossref","unstructured":"Simmonds AJ, Sandilands P, van Ekert L. An ontology for network security attacks. In: Asian applied computing conference 2004. https:\/\/api.semanticscholar.org\/CorpusID:2204780.","DOI":"10.1007\/978-3-540-30176-9_41"},{"issue":"5","key":"5202_CR61","doi-asserted-by":"publisher","first-page":"929","DOI":"10.7544\/issn1000-1239.2019.20190012","volume":"56","author":"W Shuo","year":"2019","unstructured":"Shuo W, Jianhua W, Guangming T, Qingqi P, Yuchen Z, Xiaohu L. Intelligent and efficient method for optimal penetration path generation. J Comput Res Dev. 2019;56(5):929\u201341. https:\/\/doi.org\/10.7544\/issn1000-1239.2019.20190012 (https:\/\/crad.ict.ac.cn\/en\/article\/doi\/10.7544\/issn1000-1239.2019.20190012).","journal-title":"J Comput Res Dev"},{"issue":"4","key":"5202_CR62","doi-asserted-by":"publisher","first-page":"455","DOI":"10.1007\/s10257-011-0173-5","volume":"10","author":"JA Wang","year":"2012","unstructured":"Wang JA, Guo M, Wang H, Zhou L. Measuring and ranking attacks based on vulnerability analysis. Inf Syst E-Bus Manag. 2012;10(4):455\u201390. https:\/\/doi.org\/10.1007\/s10257-011-0173-5.","journal-title":"Inf Syst E-Bus Manag"},{"key":"5202_CR63","doi-asserted-by":"publisher","first-page":"554","DOI":"10.1007\/s12204-013-1439-5","volume":"18","author":"J Gao","year":"2013","unstructured":"Gao J, Zhang B, Chen X, Luo Z. Ontology-based model of network and computer attacks for security assessment. J Shanghai Jiaotong Univ (Sci). 2013;18:554\u201362. https:\/\/doi.org\/10.1007\/s12204-013-1439-5.","journal-title":"J Shanghai Jiaotong Univ (Sci)"},{"key":"5202_CR64","doi-asserted-by":"publisher","unstructured":"Qin S, Chow K. Automatic analysis and reasoning based on vulnerability knowledge graph 2019, pp. 3\u201319. https:\/\/doi.org\/10.1007\/978-981-15-1922-2_1.","DOI":"10.1007\/978-981-15-1922-2_1"},{"key":"5202_CR65","doi-asserted-by":"publisher","unstructured":"Hooi E, Zainal A, Maarof M, Kassim M. TAGraph: knowledge graph of threat actor 2019, pp. 76\u201380. https:\/\/doi.org\/10.1109\/ICoCSec47621.2019.8970979.","DOI":"10.1109\/ICoCSec47621.2019.8970979"},{"key":"5202_CR66","doi-asserted-by":"publisher","first-page":"376","DOI":"10.1007\/978-3-319-46523-4_23","volume-title":"The semantic web - ISWC 2016","author":"M Kr\u00f6tzsch","year":"2016","unstructured":"Kr\u00f6tzsch M, Thost V. Ontologies for knowledge graphs: breaking the rules. In: Groth P, Simperl E, Gray A, Sabou M, Kr\u00f6tzsch M, Lecue F, et al., editors. The semantic web - ISWC 2016. Cham: Springer International Publishing; 2016. p. 376\u201392."},{"key":"5202_CR67","doi-asserted-by":"publisher","unstructured":"Rastogi N, Dutta S, Christian R, Zaki M, Gittens A, Aggarwal C. Information prediction using knowledge graphs for contextual malware threat intelligence. 2021. https:\/\/doi.org\/10.13140\/RG.2.2.12526.54083. arXiv preprint. arXiv:2102.05571.","DOI":"10.13140\/RG.2.2.12526.54083"},{"issue":"3","key":"5202_CR68","first-page":"32","volume":"3","author":"LW Zhang","year":"2021","unstructured":"Zhang LW. An intelligent security operation technology system framework aisecops. Front Data Comput Dev. 2021;3(3):32. https:\/\/doi.org\/10.11871\/jfdc.issn.2096-742X.2021.03.004 (http:\/\/www.jfdc.cnic.cn\/CN\/abstract\/article_134.shtml).","journal-title":"Front Data Comput Dev"},{"key":"5202_CR69","unstructured":"CVEProject. Github - cveproject\/cvelist: Pilot program for cve submission through github. cve record submission via pilot prs ending 6\/30\/2023; 2025. https:\/\/github.com\/CVEProject\/cvelist."},{"key":"5202_CR70","unstructured":"MITRE. Common weakness enumeration (cwe), 2025. https:\/\/cwe.mitre.org\/."},{"key":"5202_CR71","unstructured":"MITRE. Common attack pattern enumeration and classification (capec), 2025. https:\/\/capec.mitre.org\/about\/index.html."},{"key":"5202_CR72","unstructured":"NIST. National vulnerability database, 2025. https:\/\/nvd.nist.gov\/."},{"key":"5202_CR73","unstructured":"Aptnotes. Aptnotes data, 2024. https:\/\/github.com\/aptnotes\/data."},{"key":"5202_CR74","unstructured":"NIST. National software reference library (nsrl), 2022. https:\/\/www.nist.gov\/itl\/ssd\/software-quality-group\/national-software-reference-library-nsrl\/about-nsrl."},{"key":"5202_CR75","unstructured":"NLPAI-Lab. Cti reports dataset, 2020. http:\/\/github.com\/nlpai-lab\/CTI-reports-dataset."},{"key":"5202_CR76","doi-asserted-by":"crossref","unstructured":"Gao P, Liu X, Choi E, Ma S, Yang X, Ji Z, et al. Threatkg: A threat knowledge graph for automated open-source cyber threat intelligence gathering and management. 2022.","DOI":"10.1145\/3689217.3690613"},{"key":"5202_CR77","unstructured":"Outman A. Datasets, 2019. https:\/\/ieee-dataport.org\/datasets."},{"key":"5202_CR78","doi-asserted-by":"publisher","first-page":"211691","DOI":"10.1109\/ACCESS.2020.3039234","volume":"8","author":"A Piplai","year":"2020","unstructured":"Piplai A, Mittal S, Joshi A, Finin T, Holt J, Zak R. Creating cybersecurity knowledge graphs from malware after action reports. IEEE Access. 2020;8:211691\u2013703.","journal-title":"IEEE Access"},{"key":"5202_CR79","unstructured":"Microsoft. Security bulletin | microsoft security response center, 2015. https:\/\/msrc-blog.microsoft.com\/tag\/security-bulletin\/."},{"key":"5202_CR80","unstructured":"Adobe. Adobe product security incident response team, 2025. https:\/\/helpx.adobe.com\/security.html."},{"key":"5202_CR81","unstructured":"FEMA. After action report - fema - emi, 2025. https:\/\/search.usa.gov\/search?affiliate=netc&query=after+action+report&commit=Search."},{"key":"5202_CR82","unstructured":"Kaspersky. Kaspersky apt intelligence reporting, 2022. https:\/\/usa.kaspersky.com\/enterprise-security\/apt-intelligence-reporting."},{"key":"5202_CR83","unstructured":"STIX. Structured threat information expression (stix) - project documentation, 2025. https:\/\/stixproject.github.io\/documentation\/."},{"issue":"C","key":"5202_CR84","doi-asserted-by":"publisher","DOI":"10.1016\/j.knosys.2021.107524","volume":"233","author":"I Sarhan","year":"2021","unstructured":"Sarhan I, Spruit M. Open-cykg: an open cyber threat intelligence knowledge graph. Know-Based Syst. 2021;233(C):107524. https:\/\/doi.org\/10.1016\/j.knosys.2021.107524.","journal-title":"Know-Based Syst"},{"key":"5202_CR85","doi-asserted-by":"publisher","first-page":"2341","DOI":"10.1007\/s13042-020-01122-6","volume":"11","author":"G Kim","year":"2020","unstructured":"Kim G, Lee C, Jo J, Lim H. Automatic extraction of named entities of cyber threats using a deep bi-lstm-crf network. Int J Mach Learn Cybern. 2020;11:2341\u201355.","journal-title":"Int J Mach Learn Cybern"},{"key":"5202_CR86","unstructured":"NLTK. Python natural language toolkit, 2024. https:\/\/www.nltk.org\/."},{"key":"5202_CR87","unstructured":"PDFMiner. Python pdf parser and analyzer, 2016. https:\/\/euske.github.io\/pdfminer\/."},{"key":"5202_CR88","unstructured":"Stenetorp P, Pyysalo S, Topi\u0107 G, Ohta T, Ananiadou S, Tsujii J. BRAT: a web-based tool for NLP-assisted text annotation. In: Proceedings of the demonstrations at the 13th conference of the European chapter of the association for computational linguistics (Association for Computational Linguistics), USA, 2012, EACL \u201912, pp. 102-107."},{"key":"5202_CR89","doi-asserted-by":"crossref","unstructured":"Lample G, Ballesteros M, Subramanian S, Kawakami K, Dyer C. Neural architectures for named entity recognition. 2016.","DOI":"10.18653\/v1\/N16-1030"},{"key":"5202_CR90","unstructured":"Mikolov T, Sutskever I, Chen K, Corrado G, Dean J. Distributed representations of words and phrases and their compositionality. 2013."},{"key":"5202_CR91","unstructured":"L.A.P. LAP. Github: The linux audit project 2025. https:\/\/github.com\/linux-audit."},{"key":"5202_CR92","unstructured":"Karl-Bridge-Microsoft. Event tracing - win32 apps, 2021. https:\/\/learn.microsoft.com\/en-us\/windows\/win32\/etw\/event-tracing-portal."},{"key":"5202_CR93","unstructured":"Buescher A. Ioc parser: Tool to extract indicators of compromise from security reports in pdf format 2017. https:\/\/github.com\/armbues\/ioc_parser."},{"key":"5202_CR94","doi-asserted-by":"publisher","unstructured":"Zhou W, Xu R, Guan H, Zhao J, Rao Y. Research on Geometry Problem Text Understanding Based on Bidirectional LSTM-CRF. In: 2022 9th international conference on digital home (ICDH) 2022, pp. 121\u2013127. https:\/\/doi.org\/10.1109\/ICDH57206.2022.00026.","DOI":"10.1109\/ICDH57206.2022.00026"},{"key":"5202_CR95","unstructured":"Yao L, Mao C, Luo Y. Kg-bert: Bert for knowledge graph completion. 2019."},{"key":"5202_CR96","doi-asserted-by":"crossref","unstructured":"Graves A. Supervised sequence labelling with recurrent neural networks. In: Studies in Computational Intelligence 2012. https:\/\/api.semanticscholar.org\/CorpusID:2118350.","DOI":"10.1007\/978-3-642-24797-2"},{"key":"5202_CR97","doi-asserted-by":"crossref","unstructured":"Reimers N, Gurevych I. Reporting score distributions makes a difference: Performance study of lstm-networks for sequence tagging. 2017.","DOI":"10.18653\/v1\/D17-1035"},{"key":"5202_CR98","unstructured":"MITRE. Malware attribute enumeration and characterization (maec), 2022. https:\/\/maecproject.github.io\/about-maec\/."},{"key":"5202_CR99","unstructured":"Huaman E. Steps to knowledge graphs quality assessment. 2022."},{"issue":"5","key":"5202_CR100","first-page":"4969","volume":"35","author":"B Xue","year":"2022","unstructured":"Xue B, Zou L. Knowledge graph quality management: a comprehensive survey. IEEE Trans Knowl Data Eng. 2022;35(5):4969\u201388.","journal-title":"IEEE Trans Knowl Data Eng"},{"key":"5202_CR101","doi-asserted-by":"crossref","unstructured":"Chen H, Cao G, Chen J, Ding J. A practical framework for evaluating the quality of knowledge graph. In: Knowledge graph and semantic computing: knowledge computing and language understanding: 4th China conference, CCKS 2019, Hangzhou, China, August 24\u201327, 2019, Revised Selected Papers 4, Springer, 2019, pp. 111\u2013122.","DOI":"10.1007\/978-981-15-1956-7_10"},{"key":"5202_CR102","unstructured":"Bizer C. Quality-driven information filtering- in the context of web-based information systems 2007. https:\/\/api.semanticscholar.org\/CorpusID:60904225."},{"key":"5202_CR103","unstructured":"Naumann F, Rolker C. Assessment methods for information quality criteria. Humboldt-Universitat zu Berlin; 2000."},{"key":"5202_CR104","doi-asserted-by":"publisher","first-page":"63","DOI":"10.3233\/SW-150175","volume":"7","author":"A Zaveri","year":"2015","unstructured":"Zaveri A, Rula A, Maurino A, Pietrobon R, Lehmann J, Auer S. Quality assessment for linked data: a survey. Semant Web. 2015;7:63\u201393. https:\/\/doi.org\/10.3233\/SW-150175.","journal-title":"Semant Web"},{"issue":"1","key":"5202_CR105","doi-asserted-by":"publisher","first-page":"77","DOI":"10.3233\/SW-170275","volume":"9","author":"A Zaveri","year":"2018","unstructured":"Zaveri A, Kontokostas D, Hellmann S, Umbrich J, F\u00e4rber M, Bartscherer F, et al. Linked data quality of dbpedia, freebase, opencyc, wikidata, and yago. Semant Web. 2018;9(1):77\u2013129. https:\/\/doi.org\/10.3233\/SW-170275.","journal-title":"Semant Web"},{"issue":"5","key":"5202_CR106","doi-asserted-by":"publisher","first-page":"4969","DOI":"10.1109\/TKDE.2022.3150080","volume":"35","author":"B Xue","year":"2023","unstructured":"Xue B, Zou L. Knowledge graph quality management: a comprehensive survey. IEEE Trans Knowl Data Eng. 2023;35(5):4969\u201388. https:\/\/doi.org\/10.1109\/TKDE.2022.3150080.","journal-title":"IEEE Trans Knowl Data Eng"},{"issue":"2","key":"5202_CR107","doi-asserted-by":"publisher","first-page":"63","DOI":"10.4018\/ijswis.2014040104","volume":"10","author":"H Paulheim","year":"2014","unstructured":"Paulheim H, Bizer C. Improving the quality of linked data using statistical distributions. Int J Seman Web Inf Syst (IJSWIS). 2014;10(2):63\u201386.","journal-title":"Int J Seman Web Inf Syst (IJSWIS)"},{"key":"5202_CR108","doi-asserted-by":"crossref","unstructured":"Wienand D, Paulheim H. Detecting incorrect numerical data in dbpedia. In: The semantic web: trends and challenges: 11th international conference, ESWC 2014, Anissaras, Crete, Greece, May 25-29, 2014. Proceedings 11 Springer, 2014, pp. 504\u2013518.","DOI":"10.1007\/978-3-319-07443-6_34"},{"key":"5202_CR109","doi-asserted-by":"crossref","unstructured":"Jia S, Xiang Y, Chen X, Wang K. Triple trustworthiness measurement for knowledge graph. In: The World Wide Web Conference 2019, pp. 2865\u20132871.","DOI":"10.1145\/3308558.3313586"},{"key":"5202_CR110","doi-asserted-by":"crossref","unstructured":"West R, Gabrilovich E, Murphy K, Sun S, Gupta R, Lin D. Knowledge base completion via search-based question answering. In: Proceedings of the 23rd international conference on World wide web 2014, pp. 515\u2013526.","DOI":"10.1145\/2566486.2568032"},{"key":"5202_CR111","doi-asserted-by":"crossref","unstructured":"Paulheim H, Bizer C. Type inference on noisy RDF data. In: The Semantic Web\u2013ISWC 2013: 12th international semantic web conference, Sydney, NSW, Australia, October 21-25, 2013, Proceedings, Part I 12 Springer, 2013, pp. 510\u2013525.","DOI":"10.1007\/978-3-642-41335-3_32"},{"key":"5202_CR112","unstructured":"Melo A, Paulheim H. An approach to correction of erroneous links in knowledge graphs. In: CEUR workshop proceedings, vol. 2065 (RWTH Aachen) 2017, pp. 54\u201357."},{"key":"5202_CR113","doi-asserted-by":"publisher","unstructured":"Shi Z, Matyunin N, Graffi K, Starobinski D. Uncovering product vulnerabilities with threat knowledge graphs. In: 2022 IEEE secure development conference (SecDev) 2022, pp. 84\u201390. https:\/\/doi.org\/10.1109\/SecDev53368.2022.00028.","DOI":"10.1109\/SecDev53368.2022.00028"},{"key":"5202_CR114","unstructured":"Bordes A, Usunier N, Garcia-Duran A, Weston J, Yakhnenko O. Translating embeddings for modeling multi-relational data. In: Burges C, Bottou L, Welling M, Ghahramani Z, Weinberger K., editors. Advances in neural information processing systems, (Curran Associates, Inc., 2013). https:\/\/proceedings.neurips.cc\/paper_files\/paper\/2013\/file\/1cecc7a77928ca8133fa24680a88d2f9-Paper.pdf."},{"key":"5202_CR115","unstructured":"Lin Y, Liu Z, Sun M, Liu Y, Zhu X. Learning entity and relation embeddings for knowledge graph completion. In: Proceedings of the AAAI conference on artificial intelligence 2015;29(1) . https:\/\/doi.org\/10.1609\/aaai.v29i1.9491. https:\/\/ojs.aaai.org\/index.php\/AAAI\/article\/view\/9491."},{"key":"5202_CR116","doi-asserted-by":"publisher","first-page":"2119","DOI":"10.1111\/risa.13309","volume":"39","author":"N Scala","year":"2019","unstructured":"Scala N, Reilly A, Goethals P, Cukier M. Risk and the five hard problems of cybersecurity. Risk Anal. 2019;39:2119\u201326. https:\/\/doi.org\/10.1111\/risa.13309.","journal-title":"Risk Anal"},{"key":"5202_CR117","doi-asserted-by":"crossref","unstructured":"Chen Z, Zhang Z, Li Z, Wang F, Zeng Y, Jin X, et al. Self-improvement programming for temporal knowledge graph question answering. 2024.","DOI":"10.63317\/5aeb65uspozn"},{"key":"5202_CR118","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2024.103999","volume":"145","author":"Y Hu","year":"2024","unstructured":"Hu Y, Zou F, Han J, Sun X, Wang Y. Llm-tikg: Threat intelligence knowledge graph construction utilizing large language model. Comput Secur. 2024;145:103999.","journal-title":"Comput Secur"},{"issue":"3","key":"5202_CR119","doi-asserted-by":"publisher","DOI":"10.1016\/j.ipm.2024.104045","volume":"62","author":"C Mishra","year":"2025","unstructured":"Mishra C, Sarma H, Saravanan M. Pagellm: Incremental approach for updating a security knowledge graph by using page ranking and large language model. Inf Process Manag. 2025;62(3):104045.","journal-title":"Inf Process Manag"}],"container-title":["SN Computer Science"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s42979-026-05202-2.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/article\/10.1007\/s42979-026-05202-2","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s42979-026-05202-2.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,7,1]],"date-time":"2026-07-01T17:13:50Z","timestamp":1782926030000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/s42979-026-05202-2"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2026,7,1]]},"references-count":119,"journal-issue":{"issue":"6","published-online":{"date-parts":[[2026,8]]}},"alternative-id":["5202"],"URL":"https:\/\/doi.org\/10.1007\/s42979-026-05202-2","relation":{},"ISSN":["2661-8907"],"issn-type":[{"value":"2661-8907","type":"electronic"}],"subject":[],"published":{"date-parts":[[2026,7,1]]},"assertion":[{"value":"26 June 2025","order":1,"name":"received","label":"Received","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"18 June 2026","order":2,"name":"accepted","label":"Accepted","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"1 July 2026","order":3,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}},{"order":1,"name":"Ethics","group":{"name":"EthicsHeading","label":"Declarations"}},{"value":"Not applicable.","order":2,"name":"Ethics","group":{"name":"EthicsHeading","label":"Conflict of interest"}},{"value":"Not applicable.","order":3,"name":"Ethics","group":{"name":"EthicsHeading","label":"Research Involving Human and\/or Animals"}},{"value":"Not applicable.","order":4,"name":"Ethics","group":{"name":"EthicsHeading","label":"Informed Consent"}}],"article-number":"623"}}