{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,1]],"date-time":"2026-07-01T23:47:05Z","timestamp":1782949625371,"version":"3.54.5"},"reference-count":53,"publisher":"Wiley","issue":"1","license":[{"start":{"date-parts":[[2023,8,14]],"date-time":"2023-08-14T00:00:00Z","timestamp":1691971200000},"content-version":"vor","delay-in-days":225,"URL":"http:\/\/creativecommons.org\/licenses\/by\/4.0\/"}],"funder":[{"DOI":"10.13039\/501100012166","name":"National Key Research and Development Program of China","doi-asserted-by":"publisher","award":["2021YFB3100500"],"award-info":[{"award-number":["2021YFB3100500"]}],"id":[{"id":"10.13039\/501100012166","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["61902265"],"award-info":[{"award-number":["61902265"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":["onlinelibrary.wiley.com"],"crossmark-restriction":true},"short-container-title":["International Journal of Intelligent Systems"],"published-print":{"date-parts":[[2023,1]]},"abstract":"<jats:p>As the complexity of cyberattacks continues to increase, multistage combination attacks have become the primary method of attack. Attackers plan and organize a series of attack steps, using various attack tools to achieve specific goals. Extracting knowledge about these tools is of great significance for both defense and tracing of attacks. We have noticed that there is a wealth of security tool\u2010related knowledge within the open\u2010source community, but research in this area is limited. It is challenging to achieve large\u2010scale automated security tool information extraction. To address this, we propose automated knowledge graph construction architecture, named SecTKG, for open\u2010source security tools. Our approach involves designing a security tool ontology model to describe tools, users, and relationships, which guides the extraction of security tool knowledge. In addition, we develop advanced entity recognition and classification methods, ensuring efficient and accurate knowledge extraction. As far as we know, this work is the first to construct the large\u2010scale security tool knowledge graph, containing 4 million entities and 10 million relationships. Furthermore, we investigate the tendencies and particularities of security tools based on the SecTKG and developed a security tool influence\u2010measuring application. The research fills a gap in the field of automated security tools\u2019 knowledge extraction and provides a foundation for future research and practical applications.<\/jats:p>","DOI":"10.1155\/2023\/4464974","type":"journal-article","created":{"date-parts":[[2023,8,14]],"date-time":"2023-08-14T23:50:09Z","timestamp":1692057009000},"update-policy":"https:\/\/doi.org\/10.1002\/crossmark_policy","source":"Crossref","is-referenced-by-count":7,"title":["SecTKG: A Knowledge Graph for Open\u2010Source Security Tools"],"prefix":"10.1155","volume":"2023","author":[{"ORCID":"https:\/\/orcid.org\/0009-0008-6150-2633","authenticated-orcid":false,"given":"Siqi","family":"Sun","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-5871-946X","authenticated-orcid":false,"given":"Cheng","family":"Huang","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Tiejun","family":"Wu","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-2923-7963","authenticated-orcid":false,"given":"Yi","family":"Shen","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"311","published-online":{"date-parts":[[2023,8,14]]},"reference":[{"key":"e_1_2_12_1_2","unstructured":"Splunk The state of security 2022 https:\/\/www.splunk.com\/en_us\/newsroom\/press-releases\/2022\/state-of-security-2022-report-reveals-increase-in-cyberattacks-while-security-talent-remains-scarce.html."},{"key":"e_1_2_12_2_2","doi-asserted-by":"publisher","DOI":"10.1016\/s1361-3723(01)03014-7"},{"key":"e_1_2_12_3_2","doi-asserted-by":"publisher","DOI":"10.1007\/s13278-021-00758-8"},{"key":"e_1_2_12_4_2","unstructured":"AcarY. StranskyC. WermkeD. MazurekM. L. andFahlS. Security developer studies with GitHub users: exploring a convenience sample Proceedings of the Thirteenth Symposium on Usable Privacy and Security (SOUPS 2017) July 2017 Santa Clara CA USA 81\u201395."},{"key":"e_1_2_12_5_2","doi-asserted-by":"crossref","unstructured":"KaksonenR. J\u00e4rvenp\u00e4\u00e4T. PajukangasJ. MahaleanM. andR\u00f6ningJ. 100 popular open-source infosec tools Proceedings of the IFIP International Conference on ICT Systems Security and Privacy Protection June 2021 Oslo Norway Springer 181\u2013195.","DOI":"10.1007\/978-3-030-78120-0_12"},{"key":"e_1_2_12_6_2","doi-asserted-by":"crossref","unstructured":"PerlH. DechandS. SmithM. ArpD. YamaguchiF. RieckK. FahlS. andAcarY. Vccfinder: finding potential vulnerabilities in open-source projects to assist code audits Proceedings of the 22nd ACM SIGSAC Conference on Computer and Communications Security October 2015 Denver Colorado USA 426\u2013437.","DOI":"10.1145\/2810103.2813604"},{"key":"e_1_2_12_7_2","doi-asserted-by":"crossref","unstructured":"MeliM. McNieceM. R. andReavesB. How bad can it git? characterizing secret leakage in public github repositories Proceedings of the NDSS Symposium 2023 March 2019 San Diego CA USA NDSS.","DOI":"10.14722\/ndss.2019.23418"},{"key":"e_1_2_12_8_2","unstructured":"RokonM. O. F. IslamR. DarkiA. PapalexakisE. E. andFaloutsosM. SourceFinder: finding malware Source-Code from publicly available repositories in GitHub Proceedings of the 23rd International Symposium on Research in Attacks Intrusions and Defenses (RAID 2020) October 2020 San Sebastian Spain 149\u2013163."},{"key":"e_1_2_12_9_2","unstructured":"AlphaSeclab awesome-security-collection https:\/\/github.com\/alphaSeclab\/awesome-security-collection."},{"key":"e_1_2_12_10_2","unstructured":"Kali Kali tools https:\/\/www.kali.org\/tools\/all-tools\/."},{"key":"e_1_2_12_11_2","doi-asserted-by":"crossref","unstructured":"GuoY. LiuZ. HuangC. LiuJ. JingW. WangZ. andWangY. Cyberrel: joint entity and relation extraction for cybersecurity concepts Proceedings of the International Conference on Information and Communications Security November 2021 Chongqing China Springer 447\u2013463.","DOI":"10.1007\/978-3-030-86890-1_25"},{"key":"e_1_2_12_12_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.knosys.2021.107524"},{"key":"e_1_2_12_13_2","doi-asserted-by":"crossref","unstructured":"LiZ. ZengJ. ChenY. andLiangZ. Attackg: constructing technique knowledge graph from cyber threat intelligence reports Proceedings of the Computer Security\u2013ESORICS 2022: 27th European Symposium on Research in Computer Security September 2022 Copenhagen Denmark 589\u2013609.","DOI":"10.1007\/978-3-031-17140-6_29"},{"key":"e_1_2_12_14_2","doi-asserted-by":"publisher","DOI":"10.1109\/tkde.2022.3175719"},{"key":"e_1_2_12_15_2","doi-asserted-by":"crossref","unstructured":"UndercofferJ. JoshiA. andPinkstonJ. Modeling computer attacks: an ontology for intrusion detection Proceedings of the International Workshop on Recent Advances in Intrusion Detection September 2003 Pittsburgh PA USA Springer 113\u2013135.","DOI":"10.1007\/978-3-540-45248-5_7"},{"key":"e_1_2_12_16_2","doi-asserted-by":"crossref","unstructured":"IannaconeM. BohnS. NakamuraG. GerthJ. HufferK. BridgesR. FerragutE. andGoodallJ. Developing an ontology for cyber security knowledge graphs Proceedings of the 10th Annual Cyber and Information Security Research Conference April 2015 Oak Ridge TN USA 1\u20134.","DOI":"10.1145\/2746266.2746278"},{"key":"e_1_2_12_17_2","unstructured":"SyedZ. PadiaA. FininT. MathewsL. andJoshiA. Uco: a unified cybersecurity ontology Proceedings of the Workshops at the thirtieth AAAI conference on artificial intelligence February 2016 Phoenix Arizona."},{"key":"e_1_2_12_18_2","doi-asserted-by":"crossref","unstructured":"PingleA. PiplaiA. MittalS. JoshiA. HoltJ. andZakR. Relext: relation extraction using deep learning approaches for cybersecurity knowledge graph improvement Proceedings of the 2019 IEEE\/ACM International Conference on Advances in Social Networks Analysis and Mining August 2019 Vancouver British Columbia Canada 879\u2013886.","DOI":"10.1145\/3341161.3343519"},{"key":"e_1_2_12_19_2","doi-asserted-by":"crossref","unstructured":"CosentinoV. IzquierdoJ. L. C. andCabotJ. Findings from github: methods datasets and limitations Proceedings of the 2016 ieee\/acm 13th working conference on mining software repositories (msr) May 2016 Austin TX USA IEEE.","DOI":"10.1145\/2901739.2901776"},{"key":"e_1_2_12_20_2","unstructured":"UnruhT. ShastryB. SkoruppaM. MaggiF. RieckK. SeifertJ.-P. andYamaguchiF. Leveraging flawed tutorials for seeding Large-Scale web vulnerability discovery Proceedings of the 11th USENIX Workshop on Offensive Technologies (WOOT 17) June 2017 Vancouver BC USA."},{"key":"e_1_2_12_21_2","doi-asserted-by":"crossref","unstructured":"QianY. ZhangY. ChawlaN. YeY. andZhangC. Malicious repositories detection with adversarial heterogeneous graph contrastive learning Proceedings of the 31st ACM International Conference on Information & Knowledge Management October 2022 Atlanta GA USA 1645\u20131654.","DOI":"10.1145\/3511808.3557384"},{"key":"e_1_2_12_22_2","doi-asserted-by":"crossref","unstructured":"WermkeD. W\u00f6hlerN. KlemmerJ. H. Fourn\u00e9M. AcarY. andFahlS. Committed to trust: a qualitative study on security & trust in open source software projects Proceedings of the 2022 IEEE Symposium on Security and Privacy (SP) May 2022 San Francisco CA USA IEEE 1880\u20131896.","DOI":"10.1109\/SP46214.2022.9833686"},{"key":"e_1_2_12_23_2","doi-asserted-by":"crossref","unstructured":"ZhangX. WangT. YinG. YangC. YuY. andWangH. Devrec: a developer recommendation system for open source repositories Proceedings of the International Conference on Software Reuse May 2017 Salvador Brazil Springer 3\u201311.","DOI":"10.1007\/978-3-319-56856-0_1"},{"key":"e_1_2_12_24_2","doi-asserted-by":"publisher","DOI":"10.1007\/s11280-018-0526-9"},{"key":"e_1_2_12_25_2","doi-asserted-by":"crossref","unstructured":"ZhouT. WangW. andZhaoS. Open source galaxy: heterogeneous information networks in social coding Proceedings of the 2021 IEEE 6th International Conference on Big Data Analytics (ICBDA) March 2021 Xiamen China IEEE 349\u2013355.","DOI":"10.1109\/ICBDA51983.2021.9403169"},{"key":"e_1_2_12_26_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.jnca.2013.08.001"},{"key":"e_1_2_12_27_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.jss.2022.111343"},{"key":"e_1_2_12_28_2","unstructured":"EderJ. S. Knowledge graph based search system 2012 https:\/\/patents.google.com\/patent\/US20120158633A1\/en."},{"key":"e_1_2_12_29_2","first-page":"1","article-title":"Knowledge graphs: opportunities and challenges","author":"Peng C.","year":"2023","journal-title":"Artificial Intelligence Review"},{"key":"e_1_2_12_30_2","unstructured":"Wikipedia Ontology definition from wikipedia 2022 https:\/\/en.wikipedia.org\/wiki\/Ontology."},{"key":"e_1_2_12_31_2","doi-asserted-by":"crossref","unstructured":"YadavT.andRaoA. M. Technical aspects of cyber kill chain Proceedings of the International Symposium on Security in Computing and Communication August 2015 Kochi India Springer 438\u2013452.","DOI":"10.1007\/978-3-319-22915-7_40"},{"key":"e_1_2_12_32_2","unstructured":"StromB. E. ApplebaumA. MillerD. P. NickelsK. C. PenningtonA. G. andThomasC. B. Mitre att&ck: design and philosophy Mitre McLean VI USA Technical report."},{"key":"e_1_2_12_33_2","unstructured":"KaloroumakisP. E.andSmithM. J. Toward a knowledge graph of cybersecurity countermeasures 2021 Mitre McLean VI USA Tech. rep. Technical report."},{"key":"e_1_2_12_34_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.eng.2018.01.004"},{"key":"e_1_2_12_35_2","doi-asserted-by":"publisher","DOI":"10.1109\/tdsc.2022.3233703"},{"key":"e_1_2_12_36_2","doi-asserted-by":"crossref","unstructured":"DessiD. OsborneF. Reforgiato RecuperoD. BuscaldiD. andMottaE. Cs-kg: a large-scale knowledge graph of research entities and claims in computer science Proceedings of the Semantic Web\u2013ISWC 2022: 21st International Semantic Web Conference October 2022 Virtual Event Springer 678\u2013696.","DOI":"10.1007\/978-3-031-19433-7_39"},{"key":"e_1_2_12_37_2","unstructured":"NoyN. F.andMcGuinnessD. L. Ontology development: a guide to creating your first ontology https:\/\/protege.stanford.edu\/publications\/ontology_development\/ontology101.pdf."},{"key":"e_1_2_12_38_2","doi-asserted-by":"publisher","DOI":"10.1162\/neco.1997.9.8.1735"},{"key":"e_1_2_12_39_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.neunet.2005.06.042"},{"key":"e_1_2_12_40_2","unstructured":"ChenY. Convolutional neural network for sentence classification 2015 University of Waterloo Waterloo Canada M.Sc. thesis."},{"key":"e_1_2_12_41_2","unstructured":"WuY. SchusterM. ChenZ. LeQ. V. NorouziM. MachereyW. KrikunM. CaoY. GaoQ. andMachereyK. Google\u2019s neural machine translation system: bridging the gap between human and machine translation 2016 https:\/\/arxiv.org\/abs\/1609.08144."},{"key":"e_1_2_12_42_2","doi-asserted-by":"crossref","unstructured":"SchusterM.andNakajimaK. Japanese and Korean voice search Proceedings of the 2012 IEEE international conference on acoustics speech and signal processing (ICASSP) March 2012 Kyoto Japan IEEE 5149\u20135152.","DOI":"10.1109\/ICASSP.2012.6289079"},{"key":"e_1_2_12_43_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2020.101867"},{"key":"e_1_2_12_44_2","doi-asserted-by":"crossref","unstructured":"AghaeiE. NiuX. ShadidW. andAl-ShaerE. Securebert: a domain-specific language model for cybersecurity Proceedings of the Security and Privacy in Communication Networks: 18th EAI International Conference SecureComm 2022 October 2022 Virtual Event Springer 39\u201356.","DOI":"10.1007\/978-3-031-25538-0_3"},{"key":"e_1_2_12_45_2","doi-asserted-by":"crossref","unstructured":"OrbinatoV. BarbaraciM. NatellaR. andCotroneoD. Automatic mapping of unstructured cyber threat intelligence: an experimental study:(practical experience report) Proceedings of the 2022 IEEE 33rd International Symposium on Software Reliability Engineering (ISSRE) October 2022 Charlotte NC USA IEEE 181\u2013192.","DOI":"10.1109\/ISSRE55969.2022.00027"},{"key":"e_1_2_12_46_2","unstructured":"Github Jackaduma secbert https:\/\/github.com\/jackaduma\/SecBERT."},{"key":"e_1_2_12_47_2","unstructured":"Youngja Cybersecurity-embeddings word2vec https:\/\/ebiquity.umbc.edu\/resource\/html\/id\/379\/Cybersecurity-embeddings."},{"key":"e_1_2_12_48_2","doi-asserted-by":"publisher","DOI":"10.1155\/2022\/9875199"},{"key":"e_1_2_12_49_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2022.102763"},{"key":"e_1_2_12_50_2","unstructured":"GitHub The 2022 state of the octoverse 2022 https:\/\/octoverse.github.com."},{"key":"e_1_2_12_51_2","unstructured":"Statcounter Operating system market share worldwide 2022 https:\/\/gs.statcounter.com\/os-market-share."},{"key":"e_1_2_12_52_2","unstructured":"AlsopT. Share of the global server market by operating system in 2018 and 2019 2019 https:\/\/www.statista.com\/statistics\/915085\/global-server-share-by-os\/."},{"key":"e_1_2_12_53_2","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-48318-9_3"}],"container-title":["International Journal of Intelligent Systems"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/downloads.hindawi.com\/journals\/ijis\/2023\/4464974.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"http:\/\/downloads.hindawi.com\/journals\/ijis\/2023\/4464974.xml","content-type":"application\/xml","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/onlinelibrary.wiley.com\/doi\/pdf\/10.1155\/2023\/4464974","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,12,31]],"date-time":"2024-12-31T05:38:18Z","timestamp":1735623498000},"score":1,"resource":{"primary":{"URL":"https:\/\/onlinelibrary.wiley.com\/doi\/10.1155\/2023\/4464974"}},"subtitle":[],"editor":[{"given":"Said","family":"El Kafhali","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"editor"}]}],"short-title":[],"issued":{"date-parts":[[2023,1]]},"references-count":53,"journal-issue":{"issue":"1","published-print":{"date-parts":[[2023,1]]}},"alternative-id":["10.1155\/2023\/4464974"],"URL":"https:\/\/doi.org\/10.1155\/2023\/4464974","archive":["Portico"],"relation":{},"ISSN":["0884-8173","1098-111X"],"issn-type":[{"value":"0884-8173","type":"print"},{"value":"1098-111X","type":"electronic"}],"subject":[],"published":{"date-parts":[[2023,1]]},"assertion":[{"value":"2023-01-02","order":0,"name":"received","label":"Received","group":{"name":"publication_history","label":"Publication History"}},{"value":"2023-07-28","order":2,"name":"accepted","label":"Accepted","group":{"name":"publication_history","label":"Publication History"}},{"value":"2023-08-14","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}],"article-number":"4464974"}}