{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,4]],"date-time":"2026-05-04T11:07:10Z","timestamp":1777892830006,"version":"3.51.4"},"publisher-location":"New York, NY, USA","reference-count":21,"publisher":"ACM","license":[{"start":{"date-parts":[[2023,8,29]],"date-time":"2023-08-29T00:00:00Z","timestamp":1693267200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0\/"}],"funder":[{"name":"The North-South Research Programme, delivered by the Higher Education Authority (HEA) on behalf of the Department of Further and Higher Education, Research Innovation and Science (DFHERIS) and the Shared Island Unit at the Department of the Taoiseach."},{"name":"ERANet-funded project Resili8 from the Austrian Research Promotion Agency (FFG)","award":["895526"],"award-info":[{"award-number":["895526"]}]}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2023,8,29]]},"DOI":"10.1145\/3600160.3600195","type":"proceedings-article","created":{"date-parts":[[2023,8,9]],"date-time":"2023-08-09T22:54:41Z","timestamp":1691621681000},"page":"1-10","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":21,"title":["Digital Twin-Enhanced Incident Response for Cyber-Physical Systems"],"prefix":"10.1145","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-5832-1988","authenticated-orcid":false,"given":"David","family":"Allison","sequence":"first","affiliation":[{"name":"AIT Austrian Institute of Technology GmbH, Austria"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-8990-6751","authenticated-orcid":false,"given":"Paul","family":"Smith","sequence":"additional","affiliation":[{"name":"AIT Austrian Institute of Technology GmbH, Austria"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-1299-2364","authenticated-orcid":false,"given":"Kieran","family":"Mclaughlin","sequence":"additional","affiliation":[{"name":"Queen's University Belfast, United Kingdom"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2023,8,29]]},"reference":[{"key":"e_1_3_2_1_1_1","volume-title":"Digital Twin-Enhanced Methodology for Training Edge-Based Models for Cyber Security Applications. In 2022 IEEE 20th International Conference on Industrial Informatics (INDIN). IEEE","author":"Allison David","year":"2022","unstructured":"David Allison, Paul Smith, and Kieran McLaughlin. 2022. Digital Twin-Enhanced Methodology for Training Edge-Based Models for Cyber Security Applications. In 2022 IEEE 20th International Conference on Industrial Informatics (INDIN). IEEE, Perth, Australia."},{"key":"e_1_3_2_1_2_1","doi-asserted-by":"publisher","DOI":"10.1109\/MetroInd4.0IoT48571.2020.9138264"},{"key":"e_1_3_2_1_3_1","unstructured":"E. Biham S. Bitan Aviad Carmel Alon Dankner Uriel Malin and A. Wool. 2019. Rogue 7 : Rogue Engineering-Station Attacks on S 7 Simatic PLCs."},{"key":"e_1_3_2_1_4_1","doi-asserted-by":"publisher","DOI":"10.3390\/app10134482"},{"key":"e_1_3_2_1_6_1","unstructured":"Incident\u00a0Response Consortium. 2023. Incident Response Playbooks Gallery. https:\/\/www.incidentresponse.org\/playbooks\/"},{"key":"e_1_3_2_1_8_1","volume-title":"Advances in Digital Forensics XVII","author":"Dietz Marietheres","unstructured":"Marietheres Dietz, Ludwig Englbrecht, and G\u00fcnther Pernul. 2021. Enhancing Industrial Control System Forensics using Replication Based Digital Twins. In Advances in Digital Forensics XVII, Gilbert Peterson and Sujeet Shenoi (Eds.). Springer International Publishing, Cham, 21\u201338."},{"key":"e_1_3_2_1_9_1","doi-asserted-by":"publisher","DOI":"10.1109\/MSEC.2019.2961650"},{"key":"e_1_3_2_1_10_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-22479-0_15"},{"key":"e_1_3_2_1_11_1","doi-asserted-by":"publisher","DOI":"10.1145\/3407023.3407039"},{"key":"e_1_3_2_1_12_1","doi-asserted-by":"publisher","DOI":"10.1145\/3264888.3264892"},{"key":"e_1_3_2_1_13_1","doi-asserted-by":"publisher","DOI":"10.1145\/3198458.3198464"},{"key":"e_1_3_2_1_14_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-25312-7_14"},{"key":"e_1_3_2_1_15_1","doi-asserted-by":"publisher","DOI":"10.1109\/ETFA.2019.8869197"},{"key":"e_1_3_2_1_16_1","doi-asserted-by":"publisher","DOI":"10.1145\/3538969.3538975"},{"key":"e_1_3_2_1_17_1","unstructured":"Integrated Adaptive Cyber Defense (IACD). 2017. A Specification for Defining Building and Employing Playbooks to Enable Cybersecurity Integration and Automation. https:\/\/tinyurl.com\/IACDSpec"},{"key":"e_1_3_2_1_21_1","volume-title":"\u201cTRITON","author":"Johnson Blake","year":"2017","unstructured":"Blake Johnson, Dan Caban, Marina Krotofil, Dan Scali, Nathan Brubaker, and Christopher Glyer. 2017. Attackers Deploy New ICS Attack Framework \u201cTRITON\u201d and Cause Operational Disruption to Critical Infrastructure. https:\/\/www.fireeye.com\/blog\/threat-research\/2017\/12\/attackers-deploy-new-ics-attack-framework-triton.html [Online; accessed 2018-05-25]."},{"key":"e_1_3_2_1_24_1","unstructured":"Microsoft Corporation. 2022. Microsoft Incident Response Playbooks. https:\/\/learn.microsoft.com\/en-us\/security\/compass\/incident-response-playbooks"},{"key":"e_1_3_2_1_25_1","doi-asserted-by":"publisher","DOI":"10.1145\/3241036"},{"key":"e_1_3_2_1_26_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.ssci.2014.04.008"},{"key":"e_1_3_2_1_27_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-81242-3_17"},{"key":"e_1_3_2_1_28_1","volume-title":"Countdown to Zero Day: Stuxnet and the Launch of the World\u2019s First Digital Weapon","author":"Zetter Kim","unstructured":"Kim Zetter. 2014. Countdown to Zero Day: Stuxnet and the Launch of the World\u2019s First Digital Weapon. Crown Publishing Group, USA."}],"event":{"name":"ARES 2023: The 18th International Conference on Availability, Reliability and Security","location":"Benevento Italy","acronym":"ARES 2023"},"container-title":["Proceedings of the 18th International Conference on Availability, Reliability and Security"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3600160.3600195","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3600160.3600195","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,17]],"date-time":"2025-06-17T16:36:13Z","timestamp":1750178173000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3600160.3600195"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2023,8,29]]},"references-count":21,"alternative-id":["10.1145\/3600160.3600195","10.1145\/3600160"],"URL":"https:\/\/doi.org\/10.1145\/3600160.3600195","relation":{},"subject":[],"published":{"date-parts":[[2023,8,29]]},"assertion":[{"value":"2023-08-29","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}