{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,10,28]],"date-time":"2025-10-28T03:07:27Z","timestamp":1761620847608},"reference-count":35,"publisher":"Elsevier BV","issue":"4","license":[{"start":{"date-parts":[[2003,4,1]],"date-time":"2003-04-01T00:00:00Z","timestamp":1049155200000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.elsevier.com\/tdm\/userlicense\/1.0\/"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["Information Security Technical Report"],"published-print":{"date-parts":[[2003,4]]},"DOI":"10.1016\/s1363-4127(03)00006-2","type":"journal-article","created":{"date-parts":[[2004,1,2]],"date-time":"2004-01-02T10:29:21Z","timestamp":1073039361000},"page":"45-55","source":"Crossref","is-referenced-by-count":7,"title":["Measuring vulnerabilities and their exploitation cycle"],"prefix":"10.1016","volume":"8","author":[{"given":"Evangelos","family":"Morakis","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Stylianos","family":"Vidalis","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Andrew","family":"Blyth","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"78","reference":[{"issue":"22","key":"10.1016\/S1363-4127(03)00006-2_BIB1","doi-asserted-by":"crossref","first-page":"217","DOI":"10.1145\/586110.586140","article-title":"Scalable, Graph-Based Network Vulnerability Analysis","volume":"18","author":"Ammann","year":"2002","journal-title":"Computer & Communication Security"},{"issue":"3","key":"10.1016\/S1363-4127(03)00006-2_BIB2","doi-asserted-by":"crossref","first-page":"9","DOI":"10.1016\/S1361-3723(01)03014-7","article-title":"Hacking Techniques","volume":"2001","author":"Barber","year":"2001","journal-title":"Computer Fraud & Security 2001"},{"key":"10.1016\/S1363-4127(03)00006-2_BIB3","series-title":"Object-oriented Systems Analysis and Design Using UML","first-page":"61","author":"Bennett","year":"1999"},{"issue":"6","key":"10.1016\/S1363-4127(03)00006-2_BIB4","doi-asserted-by":"crossref","first-page":"475","DOI":"10.1016\/S0167-4048(01)00604-6","article-title":"Organised Crime Goes Cyber","volume":"20","author":"Bequai","year":"2001","journal-title":"Computers & Security"},{"key":"10.1016\/S1363-4127(03)00006-2_BIB5","series-title":"Information Assurance: Computer Communications & Networks","doi-asserted-by":"crossref","DOI":"10.1007\/978-1-4471-3706-1","author":"Blyth","year":"2001"},{"key":"10.1016\/S1363-4127(03)00006-2_BIB6","series-title":"Computer Security","author":"Carroll","year":"1996"},{"key":"10.1016\/S1363-4127(03)00006-2_BIB8","unstructured":"COPS (2002)Computer Oracle & Password System. 2002. ftp.cert.org\/pub\/tools\/cops"},{"key":"10.1016\/S1363-4127(03)00006-2_BIB9","series-title":"Object\u2013Oriented Systems Analysis: A Model-Driven Approach","first-page":"1","author":"Embley","year":"1992"},{"issue":"8","key":"10.1016\/S1363-4127(03)00006-2_BIB10","doi-asserted-by":"crossref","first-page":"9","DOI":"10.1016\/S1361-3723(00)08020-9","article-title":"Information Security Assessment: Procedures & Methodology","volume":"2000","author":"Forte","year":"2000","journal-title":"Computer Fraud & Security"},{"key":"10.1016\/S1363-4127(03)00006-2_BIB11","series-title":"Algebraic Graph Theory","author":"Godsil","year":"2001"},{"issue":"4","key":"10.1016\/S1363-4127(03)00006-2_BIB13","doi-asserted-by":"crossref","first-page":"16","DOI":"10.1016\/S1361-3723(97)86611-0","article-title":"Hacking: motivation & deterence, part 1","volume":"1998","author":"Hoath","year":"1998","journal-title":"Computer Fraud & Security"},{"key":"10.1016\/S1363-4127(03)00006-2_BIB15","series-title":"Enterprise Security: Protecting Information Assets","author":"Kabay","year":"1996"},{"key":"10.1016\/S1363-4127(03)00006-2_BIB19","series-title":"The Millicent Protocols for Electronic Commerce","author":"Manasse","year":"1995"},{"key":"10.1016\/S1363-4127(03)00006-2_BIB20","first-page":"171","volume":"31","author":"Merris","year":"2001"},{"key":"10.1016\/S1363-4127(03)00006-2_BIB21","series-title":"Attack Modeling for Information Security and Survivability","first-page":"1","author":"Moore","year":"2001"},{"key":"10.1016\/S1363-4127(03)00006-2_BIB22","first-page":"235","article-title":"A framework for representing and analysing cyber attacks using object oriented hierarchy trees","author":"Morakis","year":"2003","journal-title":"Proceedings of the Second European Conference in Information Warfare, UK"},{"key":"10.1016\/S1363-4127(03)00006-2_BIB23","series-title":"Computer Related Risks","author":"Nuemann","year":"1995"},{"key":"10.1016\/S1363-4127(03)00006-2_BIB24","series-title":"Electronic Payment Systems","author":"O'Mahony","year":"1997"},{"key":"10.1016\/S1363-4127(03)00006-2_BIB25","series-title":"Security in Computing","author":"Pfleeger","year":"1997"},{"issue":"6","key":"10.1016\/S1363-4127(03)00006-2_BIB26","doi-asserted-by":"crossref","first-page":"8","DOI":"10.1016\/S1361-3723(96)90287-0","article-title":"New perspective on computer hackers","volume":"1996","author":"Rees","year":"1996","journal-title":"Computer Fraud & Security"},{"key":"10.1016\/S1363-4127(03)00006-2_BIB27","series-title":"Hacking Exposed: network security secrets & solutions","author":"Scambray","year":"2001"},{"key":"10.1016\/S1363-4127(03)00006-2_BIB28","series-title":"Commonsense Computer Security: your practical guide_to information protection","author":"Smith","year":"1993"},{"key":"10.1016\/S1363-4127(03)00006-2_BIB29","series-title":"Network Security Essentials","author":"Stalling","year":"2000"},{"key":"10.1016\/S1363-4127(03)00006-2_BIB30","series-title":"Secure Computing: threats & safeguards","author":"Summers","year":"1977"},{"key":"10.1016\/S1363-4127(03)00006-2_BIB31","series-title":"The Concise Oxford Dictionary","author":"Sykes","year":"1981"},{"key":"10.1016\/S1363-4127(03)00006-2_BIB32","unstructured":"SystemScanner (2002). Internet Security System: System Scanner, 2002. www.iss.net"},{"key":"10.1016\/S1363-4127(03)00006-2_BIB33","series-title":"TAMMPS: a threat assessment model for micro-payment systems","first-page":"1","author":"Vidalis","year":"2001"},{"key":"10.1016\/S1363-4127(03)00006-2_BIB34","first-page":"329","article-title":"Using Vulnerability Trees for Decision Making in Threat Assessment","author":"Vidalis","year":"2003","journal-title":"Proceedings of the Second European Conference in Information Warfare, UK"},{"key":"10.1016\/S1363-4127(03)00006-2_BIB35","unstructured":"W3C (1999). Common Markup for micropayment per-fee-links, MIT, INRIA, Keio: 1-33. www.w3.org\/TR\/1999\/WD-Micropayment-Markup-19990825\/."},{"key":"10.1016\/S1363-4127(03)00006-2_BIB7","series-title":"Object-Oriented Analysis","author":"Coad","year":"1991"},{"issue":"5","key":"10.1016\/S1363-4127(03)00006-2_BIB12","doi-asserted-by":"crossref","first-page":"364","DOI":"10.1016\/S0167-4048(01)00503-X","article-title":"Cyberthreats: Perceptions, Reality and Protection","volume":"20","author":"Hinde","year":"2001","journal-title":"Computers & Security"},{"key":"10.1016\/S1363-4127(03)00006-2_BIB14","series-title":"Computer Crime: a crime fighters handbook","author":"Icove","year":"1995"},{"key":"10.1016\/S1363-4127(03)00006-2_BIB16","series-title":"Decisions with Multiple Objectives","author":"Keeney","year":"1993"},{"key":"10.1016\/S1363-4127(03)00006-2_BIB17","series-title":"Safety Critical Computer Systems","author":"Storey","year":"1996"},{"key":"10.1016\/S1363-4127(03)00006-2_BIB18","series-title":"Safeware: system safety & computers","author":"Leveson","year":"1995"}],"container-title":["Information Security Technical Report"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/api.elsevier.com\/content\/article\/PII:S1363412703000062?httpAccept=text\/xml","content-type":"text\/xml","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/api.elsevier.com\/content\/article\/PII:S1363412703000062?httpAccept=text\/plain","content-type":"text\/plain","content-version":"vor","intended-application":"text-mining"}],"deposited":{"date-parts":[[2023,4,27]],"date-time":"2023-04-27T18:06:20Z","timestamp":1682618780000},"score":1,"resource":{"primary":{"URL":"https:\/\/linkinghub.elsevier.com\/retrieve\/pii\/S1363412703000062"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2003,4]]},"references-count":35,"journal-issue":{"issue":"4","published-print":{"date-parts":[[2003,4]]}},"alternative-id":["S1363412703000062"],"URL":"https:\/\/doi.org\/10.1016\/s1363-4127(03)00006-2","relation":{},"ISSN":["1363-4127"],"issn-type":[{"value":"1363-4127","type":"print"}],"subject":[],"published":{"date-parts":[[2003,4]]}}}