{"id":"https://openalex.org/W4415624679","doi":"https://doi.org/10.1109/rtsi64020.2025.11212450","title":"NLP-based automated scoring of OT misconfigurations via CWE and CVSS mapping","display_name":"NLP-based automated scoring of OT misconfigurations via CWE and CVSS mapping","publication_year":2025,"publication_date":"2025-08-24","ids":{"openalex":"https://openalex.org/W4415624679","doi":"https://doi.org/10.1109/rtsi64020.2025.11212450"},"language":null,"primary_location":{"id":"doi:10.1109/rtsi64020.2025.11212450","is_oa":false,"landing_page_url":"https://doi.org/10.1109/rtsi64020.2025.11212450","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2025 IEEE 9th Forum on Research and Technologies for Society and Industry (RTSI)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5080511465","display_name":"Maria Teresa Todaro","orcid":"https://orcid.org/0000-0001-6471-0843"},"institutions":[{"id":"https://openalex.org/I177477856","display_name":"Politecnico di Torino","ror":"https://ror.org/00bgk9508","country_code":"IT","type":"education","lineage":["https://openalex.org/I177477856"]}],"countries":["IT"],"is_corresponding":false,"raw_author_name":"Mario Todaro","raw_affiliation_strings":["Politecnico di Torino,Torino,Italy"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Politecnico di Torino,Torino,Italy","institution_ids":["https://openalex.org/I177477856"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5116420611","display_name":"Alberto Salvatore Colletto","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Alberto Salvatore Colletto","raw_affiliation_strings":["AlphaWaves S.r.l.,Torino,Italy"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"AlphaWaves S.r.l.,Torino,Italy","institution_ids":[]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5010200992","display_name":"Alessio Viticchi\u00e9","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Alessio Viticchi\u00e9","raw_affiliation_strings":["AlphaWaves S.r.l.,Torino,Italy"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"AlphaWaves S.r.l.,Torino,Italy","institution_ids":[]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5046819248","display_name":"Alessandro Aliberti","orcid":"https://orcid.org/0000-0001-8828-608X"},"institutions":[{"id":"https://openalex.org/I177477856","display_name":"Politecnico di Torino","ror":"https://ror.org/00bgk9508","country_code":"IT","type":"education","lineage":["https://openalex.org/I177477856"]}],"countries":["IT"],"is_corresponding":false,"raw_author_name":"Alessandro Aliberti","raw_affiliation_strings":["Politecnico di Torino,Torino,Italy"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Politecnico di Torino,Torino,Italy","institution_ids":["https://openalex.org/I177477856"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":4,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":{"value":0.4145577,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":"65","last_page":"70"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10734","display_name":"Information and Cyber Security","score":0.41280001401901245,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10734","display_name":"Information and Cyber Security","score":0.41280001401901245,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12127","display_name":"Software System Performance and Reliability","score":0.08160000294446945,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11357","display_name":"Risk and Safety Analysis","score":0.08100000023841858,"subfield":{"id":"https://openalex.org/subfields/1804","display_name":"Statistics, Probability and Uncertainty"},"field":{"id":"https://openalex.org/fields/18","display_name":"Decision Sciences"},"domain":{"id":"https://openalex.org/domains/2","display_name":"Social Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/cosine-similarity","display_name":"Cosine similarity","score":0.5576000213623047},{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness (evolution)","score":0.5376999974250793},{"id":"https://openalex.org/keywords/embedding","display_name":"Embedding","score":0.4334000051021576},{"id":"https://openalex.org/keywords/pairwise-comparison","display_name":"Pairwise comparison","score":0.3874000012874603},{"id":"https://openalex.org/keywords/visualization","display_name":"Visualization","score":0.3458999991416931},{"id":"https://openalex.org/keywords/automation","display_name":"Automation","score":0.33559998869895935},{"id":"https://openalex.org/keywords/vulnerability","display_name":"Vulnerability (computing)","score":0.303600013256073},{"id":"https://openalex.org/keywords/voting","display_name":"Voting","score":0.29589998722076416},{"id":"https://openalex.org/keywords/similarity","display_name":"Similarity (geometry)","score":0.28870001435279846}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8794000148773193},{"id":"https://openalex.org/C2780762811","wikidata":"https://www.wikidata.org/wiki/Q1784941","display_name":"Cosine similarity","level":3,"score":0.5576000213623047},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.5376999974250793},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.4625000059604645},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.4481000006198883},{"id":"https://openalex.org/C41608201","wikidata":"https://www.wikidata.org/wiki/Q980509","display_name":"Embedding","level":2,"score":0.4334000051021576},{"id":"https://openalex.org/C184898388","wikidata":"https://www.wikidata.org/wiki/Q1435712","display_name":"Pairwise comparison","level":2,"score":0.3874000012874603},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.35260000824928284},{"id":"https://openalex.org/C36464697","wikidata":"https://www.wikidata.org/wiki/Q451553","display_name":"Visualization","level":2,"score":0.3458999991416931},{"id":"https://openalex.org/C115901376","wikidata":"https://www.wikidata.org/wiki/Q184199","display_name":"Automation","level":2,"score":0.33559998869895935},{"id":"https://openalex.org/C95713431","wikidata":"https://www.wikidata.org/wiki/Q631425","display_name":"Vulnerability (computing)","level":2,"score":0.303600013256073},{"id":"https://openalex.org/C520049643","wikidata":"https://www.wikidata.org/wiki/Q189760","display_name":"Voting","level":3,"score":0.29589998722076416},{"id":"https://openalex.org/C103278499","wikidata":"https://www.wikidata.org/wiki/Q254465","display_name":"Similarity (geometry)","level":3,"score":0.28870001435279846},{"id":"https://openalex.org/C177212765","wikidata":"https://www.wikidata.org/wiki/Q627335","display_name":"Workflow","level":2,"score":0.2849999964237213},{"id":"https://openalex.org/C2777530160","wikidata":"https://www.wikidata.org/wiki/Q41796","display_name":"Sentence","level":2,"score":0.2809000015258789},{"id":"https://openalex.org/C58642233","wikidata":"https://www.wikidata.org/wiki/Q8269924","display_name":"Taxonomy (biology)","level":2,"score":0.2800999879837036},{"id":"https://openalex.org/C12174686","wikidata":"https://www.wikidata.org/wiki/Q1058438","display_name":"Risk assessment","level":2,"score":0.2799000144004822},{"id":"https://openalex.org/C33724603","wikidata":"https://www.wikidata.org/wiki/Q812540","display_name":"Bayesian network","level":2,"score":0.27709999680519104},{"id":"https://openalex.org/C2984538763","wikidata":"https://www.wikidata.org/wiki/Q2260590","display_name":"Scoring system","level":2,"score":0.273499995470047},{"id":"https://openalex.org/C2776321320","wikidata":"https://www.wikidata.org/wiki/Q857525","display_name":"Annotation","level":2,"score":0.27300000190734863},{"id":"https://openalex.org/C130318100","wikidata":"https://www.wikidata.org/wiki/Q2268914","display_name":"Semantic similarity","level":2,"score":0.2728999853134155},{"id":"https://openalex.org/C45374587","wikidata":"https://www.wikidata.org/wiki/Q12525525","display_name":"Computation","level":2,"score":0.271699994802475},{"id":"https://openalex.org/C176217482","wikidata":"https://www.wikidata.org/wiki/Q860554","display_name":"Metric (unit)","level":2,"score":0.27140000462532043},{"id":"https://openalex.org/C3018397939","wikidata":"https://www.wikidata.org/wiki/Q3644502","display_name":"Open source","level":3,"score":0.26429998874664307},{"id":"https://openalex.org/C52001869","wikidata":"https://www.wikidata.org/wiki/Q812530","display_name":"Naive Bayes classifier","level":3,"score":0.2533000111579895},{"id":"https://openalex.org/C2779714256","wikidata":"https://www.wikidata.org/wiki/Q25305062","display_name":"Multiple Models","level":2,"score":0.2524000108242035}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/rtsi64020.2025.11212450","is_oa":false,"landing_page_url":"https://doi.org/10.1109/rtsi64020.2025.11212450","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2025 IEEE 9th Forum on Research and Technologies for Society and Industry (RTSI)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":4,"referenced_works":["https://openalex.org/W2625138983","https://openalex.org/W3165750546","https://openalex.org/W4247444673","https://openalex.org/W4405113119"],"related_works":[],"abstract_inverted_index":{"Misconfigurations":[0],"within":[1],"Operational":[2],"Technology":[3],"(OT)":[4],"environments":[5],"represent":[6],"a":[7,40,133],"significant":[8],"source":[9],"of":[10,24,74,102,125],"cyber":[11],"risk,":[12],"often":[13],"resulting":[14,130],"in":[15],"critical":[16],"disruptions":[17],"to":[18,49,83,108,140],"industrial":[19],"processes.":[20],"However,":[21],"the":[22,50,72,80,123,126],"absence":[23],"standardized":[25],"methodologies":[26],"for":[27,137],"quantifying":[28],"their":[29,92],"impact":[30],"hinders":[31],"effective":[32],"risk":[33,76],"assessment":[34],"and":[35,42,65,87,90,111,142],"prioritization.":[36],"This":[37],"study":[38],"proposes":[39],"novel":[41],"fully":[43],"automated":[44],"framework":[45,70],"that":[46],"maps":[47],"misconfigurations":[48],"Common":[51,85,93],"Weakness":[52],"Enumeration":[53],"(CWE)":[54],"taxonomy":[55],"through":[56],"semantic":[57,112],"similarity":[58,67],"techniques,":[59],"employing":[60],"state-of-the-art":[61],"sentence":[62],"embedding":[63],"models":[64,105],"cosine":[66],"metrics.":[68],"The":[69,129],"enables":[71],"computation":[73],"quantitative":[75],"indicators":[77],"by":[78],"linking":[79],"identified":[81],"CWEs":[82],"associated":[84],"Vulnerabilities":[86],"Exposures":[88],"(CVEs)":[89],"aggregating":[91],"Vulnerability":[94],"Scoring":[95],"System":[96],"(CVSS)":[97],"scores.":[98],"A":[99],"voting":[100],"ensemble":[101],"pre-trained":[103],"language":[104],"is":[106],"introduced":[107],"enhance":[109],"robustness":[110],"accuracy.":[113],"Experimental":[114],"validation":[115],"demonstrates":[116],"improved":[117],"precision":[118],"over":[119],"single-model":[120],"baselines,":[121],"confirming":[122],"efficacy":[124],"proposed":[127],"approach.":[128],"system":[131],"offers":[132],"scalable,":[134],"data-driven":[135],"tool":[136],"OT":[138],"stakeholders":[139],"evaluate":[141],"prioritize":[143],"misconfiguration-related":[144],"cybersecurity":[145],"threats":[146],"systematically.":[147]},"counts_by_year":[],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2025-10-28T00:00:00"}
