{"id":"https://openalex.org/W4388835106","doi":"https://doi.org/10.1007/s44196-023-00369-5","title":"APT Attack Detection Based on Graph Convolutional Neural Networks","display_name":"APT Attack Detection Based on Graph Convolutional Neural Networks","publication_year":2023,"publication_date":"2023-11-20","ids":{"openalex":"https://openalex.org/W4388835106","doi":"https://doi.org/10.1007/s44196-023-00369-5"},"language":"en","primary_location":{"id":"doi:10.1007/s44196-023-00369-5","is_oa":true,"landing_page_url":"https://doi.org/10.1007/s44196-023-00369-5","pdf_url":"https://link.springer.com/content/pdf/10.1007/s44196-023-00369-5.pdf","source":{"id":"https://openalex.org/S190680769","display_name":"International Journal of Computational Intelligence Systems","issn_l":"1875-6883","issn":["1875-6883","1875-6891"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310319965","host_organization_name":"Springer Nature","host_organization_lineage":["https://openalex.org/P4310319965"],"host_organization_lineage_names":["Springer Nature"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"International Journal of Computational Intelligence Systems","raw_type":"journal-article"},"type":"article","indexed_in":["crossref","doaj"],"open_access":{"is_oa":true,"oa_status":"gold","oa_url":"https://link.springer.com/content/pdf/10.1007/s44196-023-00369-5.pdf","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5012436506","display_name":"Weiwu Ren","orcid":"https://orcid.org/0000-0002-3787-636X"},"institutions":[{"id":"https://openalex.org/I106645853","display_name":"Changchun University of Science and Technology","ror":"https://ror.org/007mntk44","country_code":"CN","type":"education","lineage":["https://openalex.org/I106645853"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Weiwu Ren","raw_affiliation_strings":["School of Computer Science and Technology, Changchun University of Science and Technology, Changchun, 130000, Jilin, China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"School of Computer Science and Technology, Changchun University of Science and Technology, Changchun, 130000, Jilin, China","institution_ids":["https://openalex.org/I106645853"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5068399513","display_name":"Xintong Song","orcid":null},"institutions":[{"id":"https://openalex.org/I106645853","display_name":"Changchun University of Science and Technology","ror":"https://ror.org/007mntk44","country_code":"CN","type":"education","lineage":["https://openalex.org/I106645853"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Xintong Song","raw_affiliation_strings":["School of Computer Science and Technology, Changchun University of Science and Technology, Changchun, 130000, Jilin, China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"School of Computer Science and Technology, Changchun University of Science and Technology, Changchun, 130000, Jilin, China","institution_ids":["https://openalex.org/I106645853"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5003746498","display_name":"Hong Yu","orcid":"https://orcid.org/0000-0003-0667-8413"},"institutions":[{"id":"https://openalex.org/I4210087772","display_name":"National Computer Network Emergency Response Technical Team/Coordination Center of Chinar","ror":"https://ror.org/00247dh76","country_code":"CN","type":"nonprofit","lineage":["https://openalex.org/I4210087772"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Yu Hong","raw_affiliation_strings":["Jilin Branch, National Computer Network Emergency Response Center, Changchun, 130000, Jilin, China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Jilin Branch, National Computer Network Emergency Response Center, Changchun, 130000, Jilin, China","institution_ids":["https://openalex.org/I4210087772"]}]},{"author_position":"middle","author":{"id":null,"display_name":"Ying Lei","orcid":null},"institutions":[{"id":"https://openalex.org/I106645853","display_name":"Changchun University of Science and Technology","ror":"https://ror.org/007mntk44","country_code":"CN","type":"education","lineage":["https://openalex.org/I106645853"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Ying Lei","raw_affiliation_strings":["School of Computer Science and Technology, Changchun University of Science and Technology, Changchun, 130000, Jilin, China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"School of Computer Science and Technology, Changchun University of Science and Technology, Changchun, 130000, Jilin, China","institution_ids":["https://openalex.org/I106645853"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5085623206","display_name":"Jinyu Yao","orcid":"https://orcid.org/0000-0002-9047-6648"},"institutions":[{"id":"https://openalex.org/I106645853","display_name":"Changchun University of Science and Technology","ror":"https://ror.org/007mntk44","country_code":"CN","type":"education","lineage":["https://openalex.org/I106645853"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Jinyu Yao","raw_affiliation_strings":["School of Computer Science and Technology, Changchun University of Science and Technology, Changchun, 130000, Jilin, China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"School of Computer Science and Technology, Changchun University of Science and Technology, Changchun, 130000, Jilin, China","institution_ids":["https://openalex.org/I106645853"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5061135078","display_name":"Yazhou Du","orcid":null},"institutions":[{"id":"https://openalex.org/I106645853","display_name":"Changchun University of Science and Technology","ror":"https://ror.org/007mntk44","country_code":"CN","type":"education","lineage":["https://openalex.org/I106645853"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yazhou Du","raw_affiliation_strings":["School of Computer Science and Technology, Changchun University of Science and Technology, Changchun, 130000, Jilin, China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"School of Computer Science and Technology, Changchun University of Science and Technology, Changchun, 130000, Jilin, China","institution_ids":["https://openalex.org/I106645853"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5100431492","display_name":"Wenjuan Li","orcid":"https://orcid.org/0000-0002-3833-2794"},"institutions":[{"id":"https://openalex.org/I106645853","display_name":"Changchun University of Science and Technology","ror":"https://ror.org/007mntk44","country_code":"CN","type":"education","lineage":["https://openalex.org/I106645853"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Wenjuan Li","raw_affiliation_strings":["School of Computer Science and Technology, Changchun University of Science and Technology, Changchun, 130000, Jilin, China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"School of Computer Science and Technology, Changchun University of Science and Technology, Changchun, 130000, Jilin, China","institution_ids":["https://openalex.org/I106645853"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":7,"corresponding_author_ids":["https://openalex.org/A5003746498"],"corresponding_institution_ids":["https://openalex.org/I4210087772"],"apc_list":{"value":1390,"currency":"GBP","value_usd":1704},"apc_paid":{"value":1390,"currency":"GBP","value_usd":1704},"fwci":5.1862,"has_fulltext":true,"cited_by_count":27,"citation_normalized_percentile":{"value":0.95955921,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":98,"max":100},"biblio":{"volume":"16","issue":"1","first_page":null,"last_page":null},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T12127","display_name":"Software System Performance and Reliability","score":0.9983999729156494,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T12127","display_name":"Software System Performance and Reliability","score":0.9983999729156494,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":0.9983000159263611,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10734","display_name":"Information and Cyber Security","score":0.9848999977111816,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8227005004882812},{"id":"https://openalex.org/keywords/graph","display_name":"Graph","score":0.5922359824180603},{"id":"https://openalex.org/keywords/convolutional-neural-network","display_name":"Convolutional neural network","score":0.5909703373908997},{"id":"https://openalex.org/keywords/vulnerability","display_name":"Vulnerability (computing)","score":0.4838765859603882},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.48197001218795776},{"id":"https://openalex.org/keywords/knowledge-graph","display_name":"Knowledge graph","score":0.46067556738853455},{"id":"https://openalex.org/keywords/construct","display_name":"Construct (python library)","score":0.41209086775779724},{"id":"https://openalex.org/keywords/software","display_name":"Software","score":0.4112955927848816},{"id":"https://openalex.org/keywords/data-mining","display_name":"Data mining","score":0.3893832564353943},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.36973902583122253},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.3644424080848694},{"id":"https://openalex.org/keywords/theoretical-computer-science","display_name":"Theoretical computer science","score":0.26223158836364746},{"id":"https://openalex.org/keywords/computer-network","display_name":"Computer network","score":0.07174044847488403}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8227005004882812},{"id":"https://openalex.org/C132525143","wikidata":"https://www.wikidata.org/wiki/Q141488","display_name":"Graph","level":2,"score":0.5922359824180603},{"id":"https://openalex.org/C81363708","wikidata":"https://www.wikidata.org/wiki/Q17084460","display_name":"Convolutional neural network","level":2,"score":0.5909703373908997},{"id":"https://openalex.org/C95713431","wikidata":"https://www.wikidata.org/wiki/Q631425","display_name":"Vulnerability (computing)","level":2,"score":0.4838765859603882},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.48197001218795776},{"id":"https://openalex.org/C2987255567","wikidata":"https://www.wikidata.org/wiki/Q33002955","display_name":"Knowledge graph","level":2,"score":0.46067556738853455},{"id":"https://openalex.org/C2780801425","wikidata":"https://www.wikidata.org/wiki/Q5164392","display_name":"Construct (python library)","level":2,"score":0.41209086775779724},{"id":"https://openalex.org/C2777904410","wikidata":"https://www.wikidata.org/wiki/Q7397","display_name":"Software","level":2,"score":0.4112955927848816},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.3893832564353943},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.36973902583122253},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.3644424080848694},{"id":"https://openalex.org/C80444323","wikidata":"https://www.wikidata.org/wiki/Q2878974","display_name":"Theoretical computer science","level":1,"score":0.26223158836364746},{"id":"https://openalex.org/C31258907","wikidata":"https://www.wikidata.org/wiki/Q1301371","display_name":"Computer network","level":1,"score":0.07174044847488403},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.0}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1007/s44196-023-00369-5","is_oa":true,"landing_page_url":"https://doi.org/10.1007/s44196-023-00369-5","pdf_url":"https://link.springer.com/content/pdf/10.1007/s44196-023-00369-5.pdf","source":{"id":"https://openalex.org/S190680769","display_name":"International Journal of Computational Intelligence Systems","issn_l":"1875-6883","issn":["1875-6883","1875-6891"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310319965","host_organization_name":"Springer Nature","host_organization_lineage":["https://openalex.org/P4310319965"],"host_organization_lineage_names":["Springer Nature"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"International Journal of Computational Intelligence Systems","raw_type":"journal-article"},{"id":"pmh:oai:doaj.org/article:bcc654bc721b47c0bdd54c5afbbe16a0","is_oa":true,"landing_page_url":"https://doaj.org/article/bcc654bc721b47c0bdd54c5afbbe16a0","pdf_url":null,"source":{"id":"https://openalex.org/S4306401280","display_name":"DOAJ (DOAJ: Directory of Open Access Journals)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by-sa","license_id":"https://openalex.org/licenses/cc-by-sa","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"International Journal of Computational Intelligence Systems, Vol 16, Iss 1, Pp 1-14 (2023)","raw_type":"article"}],"best_oa_location":{"id":"doi:10.1007/s44196-023-00369-5","is_oa":true,"landing_page_url":"https://doi.org/10.1007/s44196-023-00369-5","pdf_url":"https://link.springer.com/content/pdf/10.1007/s44196-023-00369-5.pdf","source":{"id":"https://openalex.org/S190680769","display_name":"International Journal of Computational Intelligence Systems","issn_l":"1875-6883","issn":["1875-6883","1875-6891"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310319965","host_organization_name":"Springer Nature","host_organization_lineage":["https://openalex.org/P4310319965"],"host_organization_lineage_names":["Springer Nature"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"International Journal of Computational Intelligence Systems","raw_type":"journal-article"},"sustainable_development_goals":[{"display_name":"Peace, Justice and strong institutions","score":0.6100000143051147,"id":"https://metadata.un.org/sdg/16"}],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":true},"content_urls":{"pdf":"https://content.openalex.org/works/W4388835106.pdf"},"referenced_works_count":21,"referenced_works":["https://openalex.org/W1999489595","https://openalex.org/W2609517807","https://openalex.org/W2767094836","https://openalex.org/W2790557990","https://openalex.org/W2891432086","https://openalex.org/W2962703433","https://openalex.org/W2982518168","https://openalex.org/W2988790801","https://openalex.org/W2990619902","https://openalex.org/W2998038410","https://openalex.org/W3002573977","https://openalex.org/W3005127313","https://openalex.org/W3009144758","https://openalex.org/W3034336180","https://openalex.org/W3092093850","https://openalex.org/W3105266672","https://openalex.org/W4221061701","https://openalex.org/W4308112317","https://openalex.org/W4313402926","https://openalex.org/W4315651978","https://openalex.org/W4384821286"],"related_works":["https://openalex.org/W2366107444","https://openalex.org/W4388145910","https://openalex.org/W1976205134","https://openalex.org/W2381570729","https://openalex.org/W4248336175","https://openalex.org/W3009369890","https://openalex.org/W2031260042","https://openalex.org/W2391445434","https://openalex.org/W4312490297","https://openalex.org/W2062212388"],"abstract_inverted_index":{"Abstract":[0],"Advanced":[1],"persistent":[2],"threat":[3,77],"(APT)":[4],"attacks":[5,35,62],"are":[6,118],"malicious":[7],"and":[8,23,66,83,92,98,116],"targeted":[9],"forms":[10],"of":[11,21,85,103,148],"cyberattacks":[12],"that":[13,144],"pose":[14],"significant":[15],"challenges":[16],"to":[17,29,52,59,94,120,159,166],"the":[18,81,131,135,145,149,160],"information":[19],"security":[20,87],"governments":[22],"enterprises.":[24],"Traditional":[25],"detection":[26,43,146,173],"methods":[27],"struggle":[28],"extract":[30,70],"long-term":[31],"relationships":[32,72,84],"within":[33],"these":[34],"effectively.":[36],"This":[37,107,163],"paper":[38],"proposes":[39],"an":[40],"APT":[41,76,104,126,171],"attack":[42,67,105,127,172],"model":[44],"based":[45,63],"on":[46,64,134],"graph":[47,102,109,122],"convolutional":[48],"neural":[49],"networks":[50],"(GCNs)":[51],"address":[53],"this":[54,139],"issue.":[55],"The":[56,141],"aim":[57],"is":[58,110],"detect":[60],"known":[61],"vulnerabilities":[65],"contexts.":[68],"We":[69,129],"organization-vulnerability":[71],"from":[73,89],"publicly":[74],"available":[75],"intelligence,":[78],"along":[79],"with":[80],"names":[82],"software":[86],"entities":[88],"CVE,":[90],"CWE,":[91],"CAPEC,":[93],"generate":[95],"triple":[96],"data":[97],"construct":[99],"a":[100,113],"knowledge":[101,108],"behaviors.":[106],"transformed":[111],"into":[112],"homogeneous":[114],"graph,":[115],"GCNs":[117],"employed":[119],"process":[121],"features,":[123],"enabling":[124],"effective":[125,168],"detection.":[128],"evaluate":[130],"proposed":[132],"method":[133,151],"dataset":[136],"constructed":[137],"in":[138,169],"paper.":[140],"results":[142],"show":[143],"accuracy":[147],"GCN":[150],"reaches":[152],"95.9%,":[153],"improving":[154],"by":[155],"approximately":[156],"2.1%":[157],"compared":[158],"GraphSage":[161],"method.":[162],"approach":[164],"proves":[165],"be":[167],"real-world":[170],"scenarios.":[174]},"counts_by_year":[{"year":2026,"cited_by_count":3},{"year":2025,"cited_by_count":19},{"year":2024,"cited_by_count":5}],"updated_date":"2026-05-21T06:26:12.895304","created_date":"2025-10-10T00:00:00"}
