{"id":"https://openalex.org/W2139996922","doi":"https://doi.org/10.1109/ares.2009.108","title":"A Post-Mortem Incident Modeling Method","display_name":"A Post-Mortem Incident Modeling Method","publication_year":2009,"publication_date":"2009-01-01","ids":{"openalex":"https://openalex.org/W2139996922","doi":"https://doi.org/10.1109/ares.2009.108","mag":"2139996922"},"language":"en","primary_location":{"id":"doi:10.1109/ares.2009.108","is_oa":false,"landing_page_url":"https://doi.org/10.1109/ares.2009.108","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2009 International Conference on Availability, Reliability and Security","raw_type":"proceedings-article"},"type":"conference-paper","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5088702404","display_name":"Shanai Ardi","orcid":null},"institutions":[{"id":"https://openalex.org/I102134673","display_name":"Link\u00f6ping University","ror":"https://ror.org/05ynxx418","country_code":"SE","type":"education","lineage":["https://openalex.org/I102134673"]}],"countries":["SE"],"is_corresponding":false,"raw_author_name":"Shanai Ardi","raw_affiliation_strings":["Department of computer and information science, Link\u00f6pings Universitet, Linkoping, Sweden","Dept. of Comput. & Inf. Sci., Linkopings Univ., Linkoping"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Department of computer and information science, Link\u00f6pings Universitet, Linkoping, Sweden","institution_ids":["https://openalex.org/I102134673"]},{"raw_affiliation_string":"Dept. of Comput. & Inf. Sci., Linkopings Univ., Linkoping","institution_ids":["https://openalex.org/I102134673"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5048152442","display_name":"Nahid Shahmehri","orcid":"https://orcid.org/0000-0002-0920-2157"},"institutions":[{"id":"https://openalex.org/I102134673","display_name":"Link\u00f6ping University","ror":"https://ror.org/05ynxx418","country_code":"SE","type":"education","lineage":["https://openalex.org/I102134673"]}],"countries":["SE"],"is_corresponding":false,"raw_author_name":"Nahid Shahmehri","raw_affiliation_strings":["Department of computer and information science, Link\u00f6pings Universitet, Linkoping, Sweden","Dept. of Comput. & Inf. Sci., Linkopings Univ., Linkoping"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Department of computer and information science, Link\u00f6pings Universitet, Linkoping, Sweden","institution_ids":["https://openalex.org/I102134673"]},{"raw_affiliation_string":"Dept. of Comput. & Inf. Sci., Linkopings Univ., Linkoping","institution_ids":["https://openalex.org/I102134673"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":1,"corresponding_author_ids":[],"corresponding_institution_ids":["https://openalex.org/I102134673"],"apc_list":null,"apc_paid":null,"fwci":0.237,"has_fulltext":false,"cited_by_count":3,"citation_normalized_percentile":{"value":0.51883021,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":89,"max":94},"biblio":{"volume":"3","issue":null,"first_page":"1018","last_page":"1023"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T12034","display_name":"Digital and Cyber Forensics","score":0.9995999932289124,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T12034","display_name":"Digital and Cyber Forensics","score":0.9995999932289124,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9980000257492065,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10260","display_name":"Software Engineering Research","score":0.9908000230789185,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/incident-response","display_name":"Incident response","score":0.81526780128479},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.6768496036529541},{"id":"https://openalex.org/keywords/incident-report","display_name":"Incident report","score":0.6670042872428894},{"id":"https://openalex.org/keywords/incident-management","display_name":"Incident management","score":0.6502184867858887},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.3845177888870239}],"concepts":[{"id":"https://openalex.org/C2985105721","wikidata":"https://www.wikidata.org/wiki/Q13479512","display_name":"Incident response","level":2,"score":0.81526780128479},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6768496036529541},{"id":"https://openalex.org/C2909164965","wikidata":"https://www.wikidata.org/wiki/Q6014597","display_name":"Incident report","level":2,"score":0.6670042872428894},{"id":"https://openalex.org/C2780952636","wikidata":"https://www.wikidata.org/wiki/Q13479512","display_name":"Incident management","level":2,"score":0.6502184867858887},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.3845177888870239}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/ares.2009.108","is_oa":false,"landing_page_url":"https://doi.org/10.1109/ares.2009.108","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2009 International Conference on Availability, Reliability and Security","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/16","display_name":"Peace, Justice and strong institutions","score":0.6299999952316284}],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":11,"referenced_works":["https://openalex.org/W1494351124","https://openalex.org/W1989449504","https://openalex.org/W2044942713","https://openalex.org/W2116197614","https://openalex.org/W2141927586","https://openalex.org/W2145376692","https://openalex.org/W2150167430","https://openalex.org/W4239907196","https://openalex.org/W6629614302","https://openalex.org/W6677569782","https://openalex.org/W6681835930"],"related_works":["https://openalex.org/W3204723561","https://openalex.org/W3199928954","https://openalex.org/W4236345345","https://openalex.org/W4251008024","https://openalex.org/W612990953","https://openalex.org/W2088796177","https://openalex.org/W1991606108","https://openalex.org/W3022724426","https://openalex.org/W1561922874","https://openalex.org/W2186643575"],"abstract_inverted_index":{"Incident":[0],"post-mortem":[1,68,137],"analysis":[2,15,69,138],"after":[3],"recovery":[4],"from":[5],"incidents":[6,100,140],"is":[7,23,38,85,101,130],"recommended":[8],"by":[9,141],"most":[10],"incident":[11,21,77,113,142],"response":[12,143],"experts.":[13],"An":[14],"of":[16,33,41,53,75,88,98,106,139],"why":[17],"and":[18,70,114],"how":[19,115],"an":[20,46,76,86,104],"happened":[22],"crucial":[24],"for":[25,44],"determining":[26],"appropriate":[27],"countermeasures":[28],"to":[29,65,71,102,132],"prevent":[30],"the":[31,34,51,67,73,111,122,136],"recurrence":[32,117],"incident.":[35,56],"Currently,":[36],"there":[37],"a":[39,54,62,80],"lack":[40],"structured":[42,63],"methods":[43],"such":[45],"analysis,":[47],"which":[48],"would":[49],"identify":[50],"causes":[52,74],"security":[55,112],"In":[57],"this":[58,128],"paper,":[59],"we":[60],"present":[61],"method":[64,84,125],"perform":[66],"model":[72],"visually":[78],"in":[79,121,127],"graph":[81],"structure.":[82],"This":[83],"extension":[87],"our":[89],"earlier":[90],"work":[91],"on":[92],"modeling":[93,99],"software":[94],"vulnerabilities.":[95],"The":[96,124],"goal":[97],"develop":[103],"understanding":[105],"what":[107],"could":[108],"have":[109],"caused":[110],"its":[116],"can":[118],"be":[119,133],"prevented":[120],"future.":[123],"presented":[126],"paper":[129],"intended":[131],"used":[134],"during":[135],"teams.":[144]},"counts_by_year":[{"year":2020,"cited_by_count":1},{"year":2014,"cited_by_count":1}],"updated_date":"2026-07-29T14:22:42.915294","created_date":"2025-10-10T00:00:00"}
