{"id":"https://openalex.org/W4411870475","doi":"https://doi.org/10.1016/j.cose.2025.104576","title":"Behind the scenes of attack graphs: Vulnerable network generator for in-depth experimental evaluation of attack graph scalability","display_name":"Behind the scenes of attack graphs: Vulnerable network generator for in-depth experimental evaluation of attack graph scalability","publication_year":2025,"publication_date":"2025-07-01","ids":{"openalex":"https://openalex.org/W4411870475","doi":"https://doi.org/10.1016/j.cose.2025.104576"},"language":"en","primary_location":{"id":"doi:10.1016/j.cose.2025.104576","is_oa":true,"landing_page_url":"https://doi.org/10.1016/j.cose.2025.104576","pdf_url":null,"source":{"id":"https://openalex.org/S12529635","display_name":"Computers & Security","issn_l":"0167-4048","issn":["0167-4048","1872-6208"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320990","host_organization_name":"Elsevier BV","host_organization_lineage":["https://openalex.org/P4310320990"],"host_organization_lineage_names":["Elsevier BV"],"type":"journal"},"license":"cc-by-nc-nd","license_id":"https://openalex.org/licenses/cc-by-nc-nd","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Computers &amp; Security","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"hybrid","oa_url":"https://doi.org/10.1016/j.cose.2025.104576","any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5101415855","display_name":"A. Palma","orcid":"https://orcid.org/0000-0002-9104-9904"},"institutions":[{"id":"https://openalex.org/I861853513","display_name":"Sapienza University of Rome","ror":"https://ror.org/02be6w209","country_code":"IT","type":"education","lineage":["https://openalex.org/I861853513"]}],"countries":["IT"],"is_corresponding":true,"raw_author_name":"Alessandro Palma","raw_affiliation_strings":["Department of Computer, Control, and Management Engineering \u201cAntonio Ruberti\u201d, Sapienza University of Rome, Via Ariosto 25, Rome, 00185, Italy"],"raw_orcid":"https://orcid.org/0000-0002-9104-9904","affiliations":[{"raw_affiliation_string":"Department of Computer, Control, and Management Engineering \u201cAntonio Ruberti\u201d, Sapienza University of Rome, Via Ariosto 25, Rome, 00185, Italy","institution_ids":["https://openalex.org/I861853513"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5059692428","display_name":"Silvia Bonomi","orcid":"https://orcid.org/0000-0001-9928-5357"},"institutions":[{"id":"https://openalex.org/I861853513","display_name":"Sapienza University of Rome","ror":"https://ror.org/02be6w209","country_code":"IT","type":"education","lineage":["https://openalex.org/I861853513"]}],"countries":["IT"],"is_corresponding":false,"raw_author_name":"Silvia Bonomi","raw_affiliation_strings":["Department of Computer, Control, and Management Engineering \u201cAntonio Ruberti\u201d, Sapienza University of Rome, Via Ariosto 25, Rome, 00185, Italy"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Department of Computer, Control, and Management Engineering \u201cAntonio Ruberti\u201d, Sapienza University of Rome, Via Ariosto 25, Rome, 00185, Italy","institution_ids":["https://openalex.org/I861853513"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":2,"corresponding_author_ids":["https://openalex.org/A5101415855"],"corresponding_institution_ids":["https://openalex.org/I861853513"],"apc_list":{"value":3190,"currency":"USD","value_usd":3190},"apc_paid":{"value":3190,"currency":"USD","value_usd":3190},"fwci":11.6204,"has_fulltext":false,"cited_by_count":4,"citation_normalized_percentile":{"value":0.98167125,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":96,"max":98},"biblio":{"volume":"157","issue":null,"first_page":"104576","last_page":"104576"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10734","display_name":"Information and Cyber Security","score":0.9991999864578247,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10734","display_name":"Information and Cyber Security","score":0.9991999864578247,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":0.9958999752998352,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9954000115394592,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7585116624832153},{"id":"https://openalex.org/keywords/scalability","display_name":"Scalability","score":0.7222365140914917},{"id":"https://openalex.org/keywords/generator","display_name":"Generator (circuit theory)","score":0.5790584683418274},{"id":"https://openalex.org/keywords/graph","display_name":"Graph","score":0.47151103615760803},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.4644347131252289},{"id":"https://openalex.org/keywords/attack-patterns","display_name":"Attack patterns","score":0.4227392077445984},{"id":"https://openalex.org/keywords/network-security","display_name":"Network security","score":0.42156484723091125},{"id":"https://openalex.org/keywords/theoretical-computer-science","display_name":"Theoretical computer science","score":0.37149083614349365},{"id":"https://openalex.org/keywords/computer-network","display_name":"Computer network","score":0.32985493540763855},{"id":"https://openalex.org/keywords/database","display_name":"Database","score":0.07930216193199158}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7585116624832153},{"id":"https://openalex.org/C48044578","wikidata":"https://www.wikidata.org/wiki/Q727490","display_name":"Scalability","level":2,"score":0.7222365140914917},{"id":"https://openalex.org/C2780992000","wikidata":"https://www.wikidata.org/wiki/Q17016113","display_name":"Generator (circuit theory)","level":3,"score":0.5790584683418274},{"id":"https://openalex.org/C132525143","wikidata":"https://www.wikidata.org/wiki/Q141488","display_name":"Graph","level":2,"score":0.47151103615760803},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.4644347131252289},{"id":"https://openalex.org/C2780741293","wikidata":"https://www.wikidata.org/wiki/Q4818019","display_name":"Attack patterns","level":3,"score":0.4227392077445984},{"id":"https://openalex.org/C182590292","wikidata":"https://www.wikidata.org/wiki/Q989632","display_name":"Network security","level":2,"score":0.42156484723091125},{"id":"https://openalex.org/C80444323","wikidata":"https://www.wikidata.org/wiki/Q2878974","display_name":"Theoretical computer science","level":1,"score":0.37149083614349365},{"id":"https://openalex.org/C31258907","wikidata":"https://www.wikidata.org/wiki/Q1301371","display_name":"Computer network","level":1,"score":0.32985493540763855},{"id":"https://openalex.org/C77088390","wikidata":"https://www.wikidata.org/wiki/Q8513","display_name":"Database","level":1,"score":0.07930216193199158},{"id":"https://openalex.org/C163258240","wikidata":"https://www.wikidata.org/wiki/Q25342","display_name":"Power (physics)","level":2,"score":0.0},{"id":"https://openalex.org/C62520636","wikidata":"https://www.wikidata.org/wiki/Q944","display_name":"Quantum mechanics","level":1,"score":0.0},{"id":"https://openalex.org/C35525427","wikidata":"https://www.wikidata.org/wiki/Q745881","display_name":"Intrusion detection system","level":2,"score":0.0},{"id":"https://openalex.org/C121332964","wikidata":"https://www.wikidata.org/wiki/Q413","display_name":"Physics","level":0,"score":0.0}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1016/j.cose.2025.104576","is_oa":true,"landing_page_url":"https://doi.org/10.1016/j.cose.2025.104576","pdf_url":null,"source":{"id":"https://openalex.org/S12529635","display_name":"Computers & Security","issn_l":"0167-4048","issn":["0167-4048","1872-6208"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320990","host_organization_name":"Elsevier BV","host_organization_lineage":["https://openalex.org/P4310320990"],"host_organization_lineage_names":["Elsevier BV"],"type":"journal"},"license":"cc-by-nc-nd","license_id":"https://openalex.org/licenses/cc-by-nc-nd","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Computers &amp; Security","raw_type":"journal-article"},{"id":"pmh:oai:iris.uniroma1.it:11573/1745491","is_oa":false,"landing_page_url":"https://hdl.handle.net/11573/1745491","pdf_url":null,"source":{"id":"https://openalex.org/S4377196107","display_name":"IRIS Research product catalog (Sapienza University of Rome)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"info:eu-repo/semantics/article"}],"best_oa_location":{"id":"doi:10.1016/j.cose.2025.104576","is_oa":true,"landing_page_url":"https://doi.org/10.1016/j.cose.2025.104576","pdf_url":null,"source":{"id":"https://openalex.org/S12529635","display_name":"Computers & Security","issn_l":"0167-4048","issn":["0167-4048","1872-6208"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320990","host_organization_name":"Elsevier BV","host_organization_lineage":["https://openalex.org/P4310320990"],"host_organization_lineage_names":["Elsevier BV"],"type":"journal"},"license":"cc-by-nc-nd","license_id":"https://openalex.org/licenses/cc-by-nc-nd","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Computers &amp; Security","raw_type":"journal-article"},"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/10","display_name":"Reduced inequalities","score":0.41999998688697815}],"awards":[],"funders":[{"id":"https://openalex.org/F4320320300","display_name":"European Commission","ror":"https://ror.org/00k4n6c32"}],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":77,"referenced_works":["https://openalex.org/W1967570846","https://openalex.org/W1990653630","https://openalex.org/W1995561370","https://openalex.org/W2027018590","https://openalex.org/W2027264060","https://openalex.org/W2057462363","https://openalex.org/W2096361430","https://openalex.org/W2118404561","https://openalex.org/W2143122640","https://openalex.org/W2153580689","https://openalex.org/W2303212871","https://openalex.org/W2317787581","https://openalex.org/W2515955240","https://openalex.org/W2539955859","https://openalex.org/W2604458029","https://openalex.org/W2622921428","https://openalex.org/W2742428107","https://openalex.org/W2792581684","https://openalex.org/W2938555005","https://openalex.org/W2942615718","https://openalex.org/W2944521607","https://openalex.org/W2963654300","https://openalex.org/W2987085812","https://openalex.org/W3039344911","https://openalex.org/W3086625638","https://openalex.org/W3107090477","https://openalex.org/W3133465684","https://openalex.org/W3134018028","https://openalex.org/W3201894803","https://openalex.org/W3205744052","https://openalex.org/W3209943551","https://openalex.org/W3216009065","https://openalex.org/W4200046080","https://openalex.org/W4206266728","https://openalex.org/W4210450212","https://openalex.org/W4210667830","https://openalex.org/W4229020733","https://openalex.org/W4239789016","https://openalex.org/W4249702666","https://openalex.org/W4313256807","https://openalex.org/W4316661052","https://openalex.org/W4327522784","https://openalex.org/W4381747950","https://openalex.org/W4382199140","https://openalex.org/W4399177367","https://openalex.org/W4405298930","https://openalex.org/W4409804852","https://openalex.org/W6642954648","https://openalex.org/W6674608563","https://openalex.org/W6674999077","https://openalex.org/W6697991998","https://openalex.org/W6738166879","https://openalex.org/W6742242725","https://openalex.org/W6744135741","https://openalex.org/W6745589736","https://openalex.org/W6754637745","https://openalex.org/W6775141952","https://openalex.org/W6776066315","https://openalex.org/W6780655063","https://openalex.org/W6781062783","https://openalex.org/W6801448119","https://openalex.org/W6802024908","https://openalex.org/W6803974822","https://openalex.org/W6804137068","https://openalex.org/W6804216893","https://openalex.org/W6806851137","https://openalex.org/W6809970141","https://openalex.org/W6811438893","https://openalex.org/W6838815903","https://openalex.org/W6848320043","https://openalex.org/W6850069384","https://openalex.org/W6851027052","https://openalex.org/W6855575961","https://openalex.org/W6860565264","https://openalex.org/W6871192820","https://openalex.org/W6871727107","https://openalex.org/W6879866257"],"related_works":["https://openalex.org/W2389214306","https://openalex.org/W2965083567","https://openalex.org/W4235240664","https://openalex.org/W1838576100","https://openalex.org/W78267021","https://openalex.org/W2358069691","https://openalex.org/W4367591269","https://openalex.org/W4281398169","https://openalex.org/W2992161509","https://openalex.org/W3027216454"],"abstract_inverted_index":{"An":[0],"Attack":[1,198,205],"Graph":[2,199,206],"represents":[3],"potential":[4],"paths":[5],"for":[6,22,34],"attackers":[7],"to":[8,18,27,132,145],"compromise":[9],"a":[10,43,110],"computer":[11],"network":[12,58,140],"and":[13,89,99,121,141,158,173,180,195],"security":[14],"analysts":[15],"use":[16],"it":[17],"pinpoint":[19],"vulnerable":[20,114,189],"areas":[21],"cyber":[23,90],"risk":[24,91],"assessment.":[25],"Due":[26],"their":[28,40,66],"combinatorial":[29],"complexity,":[30],"designing":[31],"scalable":[32],"algorithms":[33,207],"generating":[35],"these":[36],"graphs":[37,120],"without":[38],"sacrificing":[39],"accuracy":[41],"remains":[42],"challenge.":[44],"Previous":[45],"research":[46],"focused":[47],"on":[48,208],"improving":[49],"scalability,":[50],"but":[51],"evaluations":[52],"often":[53],"overlooked":[54],"key":[55],"parameters":[56,170],"beyond":[57],"size,":[59],"thus":[60],"raising":[61],"the":[62,73,77,82,101,126,146,156,168],"natural":[63],"question":[64],"of":[65,72,79,104,113,128,155,161,187,197,204],"application":[67],"in":[68,86,93],"real-world":[69],"settings.":[70],"One":[71],"main":[74],"causes":[75],"is":[76],"lack":[78],"data":[80],"that":[81],"cybersecurity":[83],"community":[84],"faces":[85],"different":[87],"areas,":[88],"assessment":[92],"particular.":[94],"To":[95],"address":[96],"this":[97],"problem":[98],"support":[100],"comprehensive":[102],"evaluation":[103,154,194],"attack":[105,134,162],"graph":[106,135],"algorithms,":[107],"we":[108,149,174],"introduce":[109],"dataset":[111],"generator":[112,186],"networks,":[115],"which":[116],"includes":[117],"realistic":[118,188],"reachability":[119],"vulnerability":[122,142],"inventories.":[123],"This":[124],"enables":[125],"design":[127],"an":[129,151],"analytical":[130],"framework":[131],"assess":[133],"scalability":[136,200],"comprehensively,":[137],"considering":[138],"diverse":[139],"dimensions.":[143],"According":[144],"proposed":[147],"framework,":[148],"perform":[150],"in-depth":[152],"experimental":[153,193],"time":[157],"space":[159],"complexities":[160],"graphs,":[163],"offering":[164],"novel":[165],"insights":[166],"into":[167],"critical":[169],"affecting":[171],"them,":[172],"extensively":[175],"discuss":[176],"how":[177],"they":[178],"inform":[179],"benefit":[181],"future":[182],"approaches.":[183],"\u2022":[184,191,202],"Dataset":[185],"networks.":[190,210],"In-depth":[192],"analysis":[196],"issues.":[201],"Application":[203],"real":[209]},"counts_by_year":[{"year":2026,"cited_by_count":1},{"year":2025,"cited_by_count":3}],"updated_date":"2026-02-06T02:01:19.302388","created_date":"2025-07-02T00:00:00"}
