{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,1,11]],"date-time":"2026-01-11T14:30:45Z","timestamp":1768141845755,"version":"3.49.0"},"publisher-location":"New York, NY, USA","reference-count":21,"publisher":"ACM","license":[{"start":{"date-parts":[[2018,5,27]],"date-time":"2018-05-27T00:00:00Z","timestamp":1527379200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"funder":[{"name":"Research Fund KU Leuven"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2018,5,27]]},"DOI":"10.1145\/3183440.3194975","type":"proceedings-article","created":{"date-parts":[[2018,6,18]],"date-time":"2018-06-18T12:28:18Z","timestamp":1529324898000},"page":"290-291","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":3,"title":["Knowledge-enriched security and privacy threat modeling"],"prefix":"10.1145","author":[{"given":"Laurens","family":"Sion","sequence":"first","affiliation":[{"name":"KU Leuven, Heverlee, Belgium"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Koen","family":"Yskout","sequence":"additional","affiliation":[{"name":"KU Leuven, Heverlee, Belgium"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Dimitri","family":"Van Landuyt","sequence":"additional","affiliation":[{"name":"KU Leuven, Heverlee, Belgium"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Wouter","family":"Joosen","sequence":"additional","affiliation":[{"name":"KU Leuven, Heverlee, Belgium"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2018,5,27]]},"reference":[{"key":"e_1_3_2_1_1_1","doi-asserted-by":"crossref","unstructured":"Majed Alshammari and Andrew Simpson. 2016. Towards a Principled Approach for Engineering Privacy by Design. (2016).","DOI":"10.1007\/978-3-319-67280-9_9"},{"key":"e_1_3_2_1_2_1","volume-title":"A Privacy-Aware Conceptual Model for Handling Personal Data","author":"Antignac Thibaud","unstructured":"Thibaud Antignac, Riccardo Scandariato, and Gerardo Schneider. 2016. A Privacy-Aware Conceptual Model for Handling Personal Data. Springer, Cham, 942--957."},{"key":"e_1_3_2_1_3_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-30806-7_4"},{"key":"e_1_3_2_1_4_1","doi-asserted-by":"publisher","DOI":"10.5555\/1102012"},{"key":"e_1_3_2_1_5_1","doi-asserted-by":"publisher","DOI":"10.1007\/s00766-010-0115-7"},{"key":"e_1_3_2_1_6_1","doi-asserted-by":"publisher","DOI":"10.1109\/MSP.2011.47"},{"key":"e_1_3_2_1_7_1","first-page":"119","article-title":"Regulation (EU) 2016\/679 of the European Parliament and of the Council of 27 April 2016","author":"Union European","year":"2016","unstructured":"European Union. 2016. Regulation (EU) 2016\/679 of the European Parliament and of the Council of 27 April 2016. OJ L 119, 04.05.2016, p. 1--88. Official Journal of the European Union 59, L 119 (may 2016), 1--88.","journal-title":"OJ"},{"key":"e_1_3_2_1_8_1","doi-asserted-by":"publisher","unstructured":"Jack Freund and Jack Jones. 2014. Measuring and managing information risk: a FAIR approach. Butterworth-Heinemann.","DOI":"10.5555\/2829021"},{"key":"e_1_3_2_1_9_1","volume-title":"Threat Modeling: Uncover Security Design Flaws Using The STRIDE Approach. MSDN Magazine 6 (nov","author":"Hernan Shawn","year":"2006","unstructured":"Shawn Hernan, Scott Lambert, Tomasz Ostwald, and Adam Shostack. 2006. Threat Modeling: Uncover Security Design Flaws Using The STRIDE Approach. MSDN Magazine 6 (nov 2006)."},{"key":"e_1_3_2_1_10_1","doi-asserted-by":"publisher","DOI":"10.5555\/1202957"},{"key":"e_1_3_2_1_11_1","doi-asserted-by":"publisher","DOI":"10.5555\/1963389"},{"key":"e_1_3_2_1_12_1","unstructured":"Microsoft. 2016. Microsoft Threat Modeling Tool http:\/\/aka.ms\/tmt2016. (2016)."},{"key":"e_1_3_2_1_13_1","volume-title":"Asset-Centric Security Risk Assessment of Software Components. 2nd International Workshop on MILS: Architecture and Assurance for Secure Systems","author":"Rauter Tobias","year":"2016","unstructured":"Tobias Rauter, Nermin Kajtazovic, and Christian Kreiner. 2016. Asset-Centric Security Risk Assessment of Software Components. 2nd International Workshop on MILS: Architecture and Assurance for Secure Systems (2016)."},{"key":"e_1_3_2_1_14_1","unstructured":"Bruce Schneier. 1999. Attack trees. (1999)."},{"key":"e_1_3_2_1_15_1","volume-title":"Modeling Security Workshop. Dept. of Computing, Lancaster University UK.","author":"Shostack Adam","year":"2008","unstructured":"Adam Shostack. 2008. Experiences threat modeling at microsoft. In Modeling Security Workshop. Dept. of Computing, Lancaster University UK."},{"key":"e_1_3_2_1_16_1","doi-asserted-by":"publisher","DOI":"10.1145\/3167132.3167285"},{"key":"e_1_3_2_1_17_1","doi-asserted-by":"publisher","DOI":"10.5555\/983226"},{"key":"e_1_3_2_1_18_1","doi-asserted-by":"publisher","DOI":"10.1109\/MSP.2005.119"},{"key":"e_1_3_2_1_19_1","volume-title":"3rd Workshop On The Security Of Industrial Control Systems & Of Cyber-Physical Systems (CyberICPS","author":"Tuma Katja","year":"2017","unstructured":"Katja Tuma, Riccardo Scandariato, Mathias Widman, and Christian Sandberg. 2017. Towards security threats that matter. In 3rd Workshop On The Security Of Industrial Control Systems & Of Cyber-Physical Systems (CyberICPS 2017)."},{"key":"e_1_3_2_1_20_1","volume-title":"The Trouble With Security Requirements. 25th IEEE International Requirements Engineering Conference","author":"T\u00fcrpe Sven","year":"2017","unstructured":"Sven T\u00fcrpe. 2017. The Trouble With Security Requirements. 25th IEEE International Requirements Engineering Conference (2017)."},{"key":"e_1_3_2_1_22_1","unstructured":"Koen Yskout Thomas Heyman Riccardo Scandariato and Wouter Joosen. 2006. A system of security patterns. (2006)."}],"event":{"name":"ICSE '18: 40th International Conference on Software Engineering","location":"Gothenburg Sweden","acronym":"ICSE '18","sponsor":["SIGSOFT ACM Special Interest Group on Software Engineering","IEEE-CS Computer Society"]},"container-title":["Proceedings of the 40th International Conference on Software Engineering: Companion Proceeedings"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3183440.3194975","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3183440.3194975","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,18]],"date-time":"2025-06-18T01:08:07Z","timestamp":1750208887000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3183440.3194975"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2018,5,27]]},"references-count":21,"alternative-id":["10.1145\/3183440.3194975","10.1145\/3183440"],"URL":"https:\/\/doi.org\/10.1145\/3183440.3194975","relation":{},"subject":[],"published":{"date-parts":[[2018,5,27]]},"assertion":[{"value":"2018-05-27","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}