{"id":"https://openalex.org/W4402813511","doi":"https://doi.org/10.1109/csr61664.2024.10679417","title":"Harnessing TI Feeds for Exploitation Detection","display_name":"Harnessing TI Feeds for Exploitation Detection","publication_year":2024,"publication_date":"2024-09-02","ids":{"openalex":"https://openalex.org/W4402813511","doi":"https://doi.org/10.1109/csr61664.2024.10679417"},"language":"en","primary_location":{"id":"doi:10.1109/csr61664.2024.10679417","is_oa":false,"landing_page_url":"https://doi.org/10.1109/csr61664.2024.10679417","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2024 IEEE International Conference on Cyber Security and Resilience (CSR)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5114233368","display_name":"Kajal Patel","orcid":null},"institutions":[{"id":"https://openalex.org/I84218800","display_name":"University of California, Davis","ror":"https://ror.org/05rrcem69","country_code":"US","type":"education","lineage":["https://openalex.org/I84218800"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"Kajal Patel","raw_affiliation_strings":["University of California,Davis"],"affiliations":[{"raw_affiliation_string":"University of California,Davis","institution_ids":["https://openalex.org/I84218800"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5011499718","display_name":"Zubair Shafiq","orcid":"https://orcid.org/0000-0002-4500-9354"},"institutions":[{"id":"https://openalex.org/I84218800","display_name":"University of California, Davis","ror":"https://ror.org/05rrcem69","country_code":"US","type":"education","lineage":["https://openalex.org/I84218800"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Zubair Shafiq","raw_affiliation_strings":["University of California,Davis"],"affiliations":[{"raw_affiliation_string":"University of California,Davis","institution_ids":["https://openalex.org/I84218800"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5085633170","display_name":"Mateus Nogueira","orcid":"https://orcid.org/0000-0001-8851-8987"},"institutions":[{"id":"https://openalex.org/I122140584","display_name":"Universidade Federal do Rio de Janeiro","ror":"https://ror.org/03490as77","country_code":"BR","type":"education","lineage":["https://openalex.org/I122140584"]}],"countries":["BR"],"is_corresponding":false,"raw_author_name":"Mateus Nogueira","raw_affiliation_strings":["Federal University of Rio de Janeiro"],"affiliations":[{"raw_affiliation_string":"Federal University of Rio de Janeiro","institution_ids":["https://openalex.org/I122140584"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5034604991","display_name":"Daniel Sadoc Menasch\u00e9","orcid":"https://orcid.org/0000-0002-8953-4003"},"institutions":[{"id":"https://openalex.org/I122140584","display_name":"Universidade Federal do Rio de Janeiro","ror":"https://ror.org/03490as77","country_code":"BR","type":"education","lineage":["https://openalex.org/I122140584"]}],"countries":["BR"],"is_corresponding":false,"raw_author_name":"Daniel Menasch\u00e9","raw_affiliation_strings":["Federal University of Rio de Janeiro"],"affiliations":[{"raw_affiliation_string":"Federal University of Rio de Janeiro","institution_ids":["https://openalex.org/I122140584"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5052990469","display_name":"Enrico Lovat","orcid":null},"institutions":[{"id":"https://openalex.org/I4210137693","display_name":"Siemens (United States)","ror":"https://ror.org/04axb7e79","country_code":"US","type":"company","lineage":["https://openalex.org/I1325886976","https://openalex.org/I4210137693"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Enrico Lovat","raw_affiliation_strings":["Siemens Corporation,Princeton"],"affiliations":[{"raw_affiliation_string":"Siemens Corporation,Princeton","institution_ids":["https://openalex.org/I4210137693"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5107549145","display_name":"Taimur Kashif","orcid":null},"institutions":[{"id":"https://openalex.org/I84218800","display_name":"University of California, Davis","ror":"https://ror.org/05rrcem69","country_code":"US","type":"education","lineage":["https://openalex.org/I84218800"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Taimur Kashif","raw_affiliation_strings":["University of California,Davis"],"affiliations":[{"raw_affiliation_string":"University of California,Davis","institution_ids":["https://openalex.org/I84218800"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5092705458","display_name":"Ashton Woiwood","orcid":null},"institutions":[{"id":"https://openalex.org/I126307644","display_name":"University of Iowa","ror":"https://ror.org/036jqmy94","country_code":"US","type":"education","lineage":["https://openalex.org/I126307644"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Ashton Woiwood","raw_affiliation_strings":["University of Iowa"],"affiliations":[{"raw_affiliation_string":"University of Iowa","institution_ids":["https://openalex.org/I126307644"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5062692288","display_name":"Matheus Martins","orcid":"https://orcid.org/0000-0002-9304-8622"},"institutions":[{"id":"https://openalex.org/I4210137693","display_name":"Siemens (United States)","ror":"https://ror.org/04axb7e79","country_code":"US","type":"company","lineage":["https://openalex.org/I1325886976","https://openalex.org/I4210137693"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Matheus Martins","raw_affiliation_strings":["Siemens Corporation,Princeton"],"affiliations":[{"raw_affiliation_string":"Siemens Corporation,Princeton","institution_ids":["https://openalex.org/I4210137693"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":8,"corresponding_author_ids":["https://openalex.org/A5114233368"],"corresponding_institution_ids":["https://openalex.org/I84218800"],"apc_list":null,"apc_paid":null,"fwci":0.3735,"has_fulltext":false,"cited_by_count":1,"citation_normalized_percentile":{"value":0.56888151,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":91,"max":95},"biblio":{"volume":null,"issue":null,"first_page":"200","last_page":"207"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9951000213623047,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9951000213623047,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":0.9851999878883362,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.5429370999336243}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.5429370999336243}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/csr61664.2024.10679417","is_oa":false,"landing_page_url":"https://doi.org/10.1109/csr61664.2024.10679417","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2024 IEEE International Conference on Cyber Security and Resilience (CSR)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":14,"referenced_works":["https://openalex.org/W2004584049","https://openalex.org/W2087027764","https://openalex.org/W2538865281","https://openalex.org/W2774398706","https://openalex.org/W2890914939","https://openalex.org/W3007418556","https://openalex.org/W3175201754","https://openalex.org/W4234972558","https://openalex.org/W4391092698","https://openalex.org/W6679775712","https://openalex.org/W6684212199","https://openalex.org/W6755207826","https://openalex.org/W6766930077","https://openalex.org/W6781614840"],"related_works":["https://openalex.org/W4391375266","https://openalex.org/W2748952813","https://openalex.org/W2390279801","https://openalex.org/W2358668433","https://openalex.org/W4396701345","https://openalex.org/W2376932109","https://openalex.org/W2001405890","https://openalex.org/W4396696052","https://openalex.org/W2382290278","https://openalex.org/W4395014643"],"abstract_inverted_index":{"Many":[0],"organizations":[1],"rely":[2],"on":[3,146],"Threat":[4],"Intelligence":[5],"(TI)":[6],"feeds":[7,84,137,148],"to":[8,17,27,45,49,67,96,103,113,130],"assess":[9],"the":[10,18,30],"risk":[11,167],"associated":[12],"with":[13],"security":[14,107],"threats.":[15],"Due":[16],"volume":[19],"and":[20,51,90,92,144],"heterogeneity":[21],"of":[22,106,160],"data,":[23],"it":[24,95,127],"is":[25,42,128,155],"prohibitive":[26],"manually":[28],"analyze":[29],"threat":[31,78],"information":[32,54],"available":[33],"in":[34,80,117],"different":[35,119],"loosely":[36,81],"structured":[37,82],"TI":[38,56,73,83,120,136,147],"feeds.":[39,57,74,121],"Thus,":[40],"there":[41],"a":[43,63,98,158],"need":[44],"develop":[46],"automated":[47],"methods":[48],"vet":[50],"extract":[52],"actionable":[53],"from":[55,72,135,150],"To":[58],"this":[59],"end,":[60],"we":[61],"present":[62],"machine":[64,100],"learning":[65,101],"pipeline":[66],"automatically":[68],"detect":[69,104],"vulnerability":[70,166],"exploitation":[71,105,115,133],"We":[75,109],"first":[76],"model":[77],"vocabulary":[79],"using":[85,139],"state-of-the-art":[86],"embedding":[87],"techniques":[88],"(Doc2Vec":[89],"BERT)":[91],"then":[93],"use":[94,110],"train":[97],"supervised":[99],"classifier":[102],"vulnerabilities.":[108],"our":[111],"approach":[112,154],"identify":[114,132],"events":[116,134],"191":[118],"Our":[122,152],"longitudinal":[123],"evaluation":[124],"shows":[125],"that":[126],"able":[129],"accurately":[131],"only":[138],"past":[140],"data":[141],"for":[142,157],"training":[143],"even":[145],"withheld":[149],"training.":[151],"proposed":[153],"useful":[156],"variety":[159],"downstream":[161],"tasks":[162],"such":[163],"as":[164],"data-driven":[165],"assessment.":[168]},"counts_by_year":[{"year":2025,"cited_by_count":1}],"updated_date":"2025-12-22T23:10:17.713674","created_date":"2025-10-10T00:00:00"}
