{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,12,16]],"date-time":"2025-12-16T12:31:22Z","timestamp":1765888282488,"version":"3.41.0"},"publisher-location":"New York, NY, USA","reference-count":26,"publisher":"ACM","license":[{"start":{"date-parts":[[2020,2,5]],"date-time":"2020-02-05T00:00:00Z","timestamp":1580860800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"funder":[{"name":"Bundesministerium f\u00fcr Bildung und Forschung","award":["16KIS0526"],"award-info":[{"award-number":["16KIS0526"]}]},{"DOI":"10.13039\/501100001659","name":"Deutsche Forschungsgemeinschaft","doi-asserted-by":"publisher","award":["LE 3382\/2-3, SA 465\/49-3"],"award-info":[{"award-number":["LE 3382\/2-3, SA 465\/49-3"]}],"id":[{"id":"10.13039\/501100001659","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2020,2,5]]},"DOI":"10.1145\/3377024.3377026","type":"proceedings-article","created":{"date-parts":[[2020,2,6]],"date-time":"2020-02-06T17:20:12Z","timestamp":1581009612000},"page":"1-9","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":7,"title":["Using variability modeling to support security evaluations"],"prefix":"10.1145","author":[{"given":"Andy","family":"Kenner","sequence":"first","affiliation":[{"name":"METOP GmbH Magdeburg, Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Stephan","family":"Dassow","sequence":"additional","affiliation":[{"name":"METOP GmbH, Magdeburg, Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Christian","family":"Lausberger","sequence":"additional","affiliation":[{"name":"METOP GmbH, Magdeburg, Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Jacob","family":"Kr\u00fcger","sequence":"additional","affiliation":[{"name":"Otto-von-Guericke University, Magdeburg, Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Thomas","family":"Leich","sequence":"additional","affiliation":[{"name":"Harz University &amp; METOP GmbH, Wernigerode &amp; Magdeburg, Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2020,2,6]]},"reference":[{"volume-title":"Feature-Oriented Software Product Lines","author":"Apel Sven","key":"e_1_3_2_1_1_1","unstructured":"Sven Apel , Don Batory , Christian K\u00e4stner , and Gunter Saake . 2016. Feature-Oriented Software Product Lines . Springer . Sven Apel, Don Batory, Christian K\u00e4stner, and Gunter Saake. 2016. Feature-Oriented Software Product Lines. Springer."},{"key":"e_1_3_2_1_2_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.infsof.2014.03.005"},{"key":"e_1_3_2_1_3_1","volume-title":"Automated Reasoning on Feature Models. In International Conference on Advanced Information Systems Engineering (CAiSE). Springer, 491--503","author":"Benavides David","year":"2005","unstructured":"David Benavides , Pablo Trinidad , and Antonio Ruiz-Cort\u00e9s . 2005 . Automated Reasoning on Feature Models. In International Conference on Advanced Information Systems Engineering (CAiSE). Springer, 491--503 . David Benavides, Pablo Trinidad, and Antonio Ruiz-Cort\u00e9s. 2005. Automated Reasoning on Feature Models. In International Conference on Advanced Information Systems Engineering (CAiSE). Springer, 491--503."},{"key":"e_1_3_2_1_4_1","doi-asserted-by":"publisher","DOI":"10.1109\/MCC.2014.51"},{"key":"e_1_3_2_1_5_1","doi-asserted-by":"publisher","DOI":"10.1145\/1924421.1924451"},{"key":"e_1_3_2_1_6_1","doi-asserted-by":"publisher","DOI":"10.1145\/2110147.2110167"},{"key":"e_1_3_2_1_7_1","volume-title":"International Symposium on Secure Software Engineering (SSSE). IEEE, 13--15","author":"Halfond William G","year":"2006","unstructured":"William G Halfond , Jeremy Viegas , and Alessandro Orso . 2006 . A Classification of SQL-Injection Attacks and Countermeasures . In International Symposium on Secure Software Engineering (SSSE). IEEE, 13--15 . William G Halfond, Jeremy Viegas, and Alessandro Orso. 2006. A Classification of SQL-Injection Attacks and Countermeasures. In International Symposium on Secure Software Engineering (SSSE). IEEE, 13--15."},{"key":"e_1_3_2_1_8_1","volume-title":"Survey of Non-Functional Requirements Modeling and Verification of Software Product Lines. In International Conference on Research Challenges in Information Science (RCIS). IEEE, 1--6.","author":"Hammani Fatima Z","year":"2014","unstructured":"Fatima Z Hammani . 2014 . Survey of Non-Functional Requirements Modeling and Verification of Software Product Lines. In International Conference on Research Challenges in Information Science (RCIS). IEEE, 1--6. Fatima Z Hammani. 2014. Survey of Non-Functional Requirements Modeling and Verification of Software Product Lines. In International Conference on Research Challenges in Information Science (RCIS). IEEE, 1--6."},{"key":"e_1_3_2_1_9_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.jss.2009.08.023"},{"key":"e_1_3_2_1_10_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICSC.2013.50"},{"key":"e_1_3_2_1_11_1","volume-title":"VULCAN: Vulnerability Assessment Framework for Cloud Computing. In International Conference on Software Security and Reliability (SERE). IEEE, 218--226","author":"Kamongi Patrick","year":"2013","unstructured":"Patrick Kamongi , Srujan Kotikela , Krishna Kavi , Mahadevan Gomathisankaran , and Anoop Singhal . 2013 . VULCAN: Vulnerability Assessment Framework for Cloud Computing. In International Conference on Software Security and Reliability (SERE). IEEE, 218--226 . Patrick Kamongi, Srujan Kotikela, Krishna Kavi, Mahadevan Gomathisankaran, and Anoop Singhal. 2013. VULCAN: Vulnerability Assessment Framework for Cloud Computing. In International Conference on Software Security and Reliability (SERE). IEEE, 218--226."},{"key":"e_1_3_2_1_14_1","doi-asserted-by":"publisher","DOI":"10.1145\/3106195.3106207"},{"volume-title":"Exploit Development, and Vulnerability Research","author":"Maynor David","key":"e_1_3_2_1_15_1","unstructured":"David Maynor . 2011. Metasploit Toolkit for Penetration Testing , Exploit Development, and Vulnerability Research . Elsevier . David Maynor. 2011. Metasploit Toolkit for Penetration Testing, Exploit Development, and Vulnerability Research. Elsevier."},{"key":"e_1_3_2_1_16_1","volume-title":"Software Security: Building Security in","author":"McGraw Gary","year":"2006","unstructured":"Gary McGraw . 2006 . Software Security: Building Security in . Addison-Wesley . Gary McGraw. 2006. Software Security: Building Security in. Addison-Wesley."},{"key":"e_1_3_2_1_17_1","doi-asserted-by":"publisher","DOI":"10.1109\/MSP.2006.145"},{"key":"e_1_3_2_1_19_1","volume-title":"Principles of Feature Modeling. In Joint Meeting on European Software Engineering Conference and Symposium on the Foundations of Software Engineering (ESEC\/FSE). ACM, 62--73","author":"Ne\u0161i\u0107 Damir","year":"2019","unstructured":"Damir Ne\u0161i\u0107 , Jacob Kr\u00fcger , Stefan St\u0103nciulescu , and Thorsten Berger . 2019 . Principles of Feature Modeling. In Joint Meeting on European Software Engineering Conference and Symposium on the Foundations of Software Engineering (ESEC\/FSE). ACM, 62--73 . Damir Ne\u0161i\u0107, Jacob Kr\u00fcger, Stefan St\u0103nciulescu, and Thorsten Berger. 2019. Principles of Feature Modeling. In Joint Meeting on European Software Engineering Conference and Symposium on the Foundations of Software Engineering (ESEC\/FSE). ACM, 62--73."},{"key":"e_1_3_2_1_20_1","doi-asserted-by":"publisher","DOI":"10.4236\/jsea.2013.64A003"},{"key":"e_1_3_2_1_21_1","volume-title":"Comparison of Exact and Approximate Multi-Objective Optimization for Software Product Lines. In International Software Product Line Conference (SPLC). ACM, 92--101","author":"Olaechea Rafael","year":"2014","unstructured":"Rafael Olaechea , Derek Rayside , Jianmei Guo , and Krzysztof Czarnecki . 2014 . Comparison of Exact and Approximate Multi-Objective Optimization for Software Product Lines. In International Software Product Line Conference (SPLC). ACM, 92--101 . Rafael Olaechea, Derek Rayside, Jianmei Guo, and Krzysztof Czarnecki. 2014. Comparison of Exact and Approximate Multi-Objective Optimization for Software Product Lines. In International Software Product Line Conference (SPLC). ACM, 92--101."},{"volume-title":"Security in Computing","author":"Pfleeger Charles P","key":"e_1_3_2_1_22_1","unstructured":"Charles P Pfleeger and Shari L Pfleeger . 2002. Security in Computing . Prentice Hall . Charles P Pfleeger and Shari L Pfleeger. 2002. Security in Computing. Prentice Hall."},{"key":"e_1_3_2_1_23_1","volume-title":"Generating Randomised Virtualised Scenarios for Ethical Hacking and Computer Security Education: SecGen Implementation and Deployment. In UK Workshop on Cybersecurity Training & Education.","author":"Cliffe Schreuders Z","year":"2015","unstructured":"Z Cliffe Schreuders and Lewis Ardern . 2015 . Generating Randomised Virtualised Scenarios for Ethical Hacking and Computer Security Education: SecGen Implementation and Deployment. In UK Workshop on Cybersecurity Training & Education. Z Cliffe Schreuders and Lewis Ardern. 2015. Generating Randomised Virtualised Scenarios for Ethical Hacking and Computer Security Education: SecGen Implementation and Deployment. In UK Workshop on Cybersecurity Training & Education."},{"key":"e_1_3_2_1_24_1","volume-title":"Reverse Engineering Feature Models. In International Conference on Software Engineering (ICSE). ACM, 461--470","author":"She Steven","year":"2011","unstructured":"Steven She , Rafael Lotufo , Thorsten Berger , Andrzej W\u0105sowski , and Krzysztof Czarnecki . 2011 . Reverse Engineering Feature Models. In International Conference on Software Engineering (ICSE). ACM, 461--470 . Steven She, Rafael Lotufo, Thorsten Berger, Andrzej W\u0105sowski, and Krzysztof Czarnecki. 2011. Reverse Engineering Feature Models. In International Conference on Software Engineering (ICSE). ACM, 461--470."},{"key":"e_1_3_2_1_25_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.infsof.2014.01.012"},{"key":"e_1_3_2_1_26_1","doi-asserted-by":"publisher","DOI":"10.1145\/3302333.3302335"},{"key":"e_1_3_2_1_27_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.infsof.2006.08.001"},{"key":"e_1_3_2_1_28_1","doi-asserted-by":"publisher","DOI":"10.1109\/MSECP.2004.1264860"},{"key":"e_1_3_2_1_29_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-23088-2_15"}],"event":{"name":"VaMoS '20: 14th International Working Conference on Variability Modelling of Software-Intensive Systems","acronym":"VaMoS '20","location":"Magdeburg Germany"},"container-title":["Proceedings of the 14th International Working Conference on Variability Modelling of Software-Intensive Systems"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3377024.3377026","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3377024.3377026","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,17]],"date-time":"2025-06-17T23:23:49Z","timestamp":1750202629000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3377024.3377026"}},"subtitle":["virtualizing the right attack scenarios"],"short-title":[],"issued":{"date-parts":[[2020,2,5]]},"references-count":26,"alternative-id":["10.1145\/3377024.3377026","10.1145\/3377024"],"URL":"https:\/\/doi.org\/10.1145\/3377024.3377026","relation":{},"subject":[],"published":{"date-parts":[[2020,2,5]]},"assertion":[{"value":"2020-02-06","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}