{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,3,11]],"date-time":"2026-03-11T02:29:11Z","timestamp":1773196151009,"version":"3.50.1"},"reference-count":46,"publisher":"IEEE","license":[{"start":{"date-parts":[[2025,12,8]],"date-time":"2025-12-08T00:00:00Z","timestamp":1765152000000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2025,12,8]],"date-time":"2025-12-08T00:00:00Z","timestamp":1765152000000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2025,12,8]]},"DOI":"10.1109\/acsacw69556.2025.00011","type":"proceedings-article","created":{"date-parts":[[2026,3,9]],"date-time":"2026-03-09T19:56:13Z","timestamp":1773086173000},"page":"39-53","source":"Crossref","is-referenced-by-count":0,"title":["Robust Vulnerability Estimation in Industrial Firmware via Incomplete Knowledge Graph Similarity"],"prefix":"10.1109","author":[{"given":"Wei","family":"Wang","sequence":"first","affiliation":[{"name":"R&#x0026;D Group Hitachi, Ltd.,Systems Innovation Center,Yokohama,Japan"}]},{"given":"Mitsuharu","family":"Tai","sequence":"additional","affiliation":[{"name":"R&#x0026;D Group Hitachi, Ltd.,Systems Innovation Center,Yokohama,Japan"}]},{"given":"Shota","family":"Fujii","sequence":"additional","affiliation":[{"name":"R&#x0026;D Group Hitachi, Ltd.,Systems Innovation Center,Yokohama,Japan"}]},{"given":"Hiroki","family":"Yamazaki","sequence":"additional","affiliation":[{"name":"R&#x0026;D Group Hitachi, Ltd.,Systems Innovation Center,Yokohama,Japan"}]},{"given":"Eriko","family":"Ando","sequence":"additional","affiliation":[{"name":"R&#x0026;D Group Hitachi, Ltd.,Systems Innovation Center,Yokohama,Japan"}]}],"member":"263","reference":[{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1145\/2897845.2897900"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2014.23229"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1109\/msp.2004.111"},{"key":"ref4","article-title":"Finding security vulnerabilities in Java applications with static analysis","volume-title":"Proceedings of the 14th USENIX Security Symposium (USENIX Security \u201905)","author":"Livshits"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1145\/3597503.3623347"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1109\/msec.2023.3302956"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1145\/3672608.3707940"},{"key":"ref8","article-title":"Framing software component transparency","year":"2024"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1145\/3664476.3669975"},{"key":"ref10","article-title":"Software security in supply chains: Software bill of materials (SBOM)","year":"2022"},{"key":"ref11","first-page":"95","article-title":"A large-scale analysis of the security of embedded firmwares","volume-title":"Proceedings of the 23rd USENIX Security Symposium (USENIX Security \u201914)","author":"Costin"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1145\/1920261.1920276"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1016\/j.knosys.2020.106529"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1016\/j.jss.2022.111283"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1016\/j.ins.2020.11.053"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1007\/s11280-018-0578-x"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1145\/3580596"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1145\/2976749.2978428"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1145\/2408776.2408795"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1145\/3429444"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1109\/icmla.2018.00120"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1145\/2980983.2908126"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.1145\/2810103.2813604"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.1109\/access.2020.3039234"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.1016\/j.eng.2018.01.004"},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1109\/tvcg.2021.3114863"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1145\/3671005"},{"key":"ref33","article-title":"Using program knowledge graph to uncover software vulnerabilities","author":"Xie","year":"2023"},{"key":"ref34","doi-asserted-by":"publisher","DOI":"10.1109\/msn50589.2020.00126"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1109\/tifs.2020.3044773"},{"key":"ref36","doi-asserted-by":"publisher","DOI":"10.2197\/ipsjjip.31.842"},{"key":"ref37","doi-asserted-by":"publisher","DOI":"10.1145\/3708522"},{"key":"ref38","doi-asserted-by":"publisher","DOI":"10.1145\/3658644.3690298"},{"key":"ref39","doi-asserted-by":"publisher","DOI":"10.1145\/3650212.3680371"},{"key":"ref40","article-title":"DeepCode AI Fix: Fixing security vulnerabilities with large language models","author":"Berabi"},{"key":"ref41","doi-asserted-by":"publisher","DOI":"10.1145\/3649825"},{"key":"ref42","doi-asserted-by":"publisher","DOI":"10.1145\/3576915.3623175"},{"key":"ref43","doi-asserted-by":"publisher","DOI":"10.1109\/spw63631.2024.00014"},{"key":"ref44","doi-asserted-by":"publisher","DOI":"10.1145\/3564625.3567985"},{"key":"ref45","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-22110-1_37"},{"key":"ref46","doi-asserted-by":"publisher","DOI":"10.1145\/3133956.3134018"},{"key":"ref47","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-22038-9_15"},{"key":"ref48","article-title":"Graph edit distance"},{"key":"ref54","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2018.23158"},{"key":"ref55","doi-asserted-by":"publisher","DOI":"10.1145\/3664476.3670915"},{"key":"ref56","doi-asserted-by":"publisher","DOI":"10.1109\/bigcom61073.2023.00015"}],"event":{"name":"2025 Annual Computer Security Applications Conference Workshops (ACSAC Workshops)","location":"Honolulu, HI, USA","start":{"date-parts":[[2025,12,8]]},"end":{"date-parts":[[2025,12,9]]}},"container-title":["2025 Annual Computer Security Applications Conference Workshops (ACSAC Workshops)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/11417955\/11417996\/11418039.pdf?arnumber=11418039","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,3,10]],"date-time":"2026-03-10T05:40:45Z","timestamp":1773121245000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/11418039\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,12,8]]},"references-count":46,"URL":"https:\/\/doi.org\/10.1109\/acsacw69556.2025.00011","relation":{},"subject":[],"published":{"date-parts":[[2025,12,8]]}}}