{"id":"https://openalex.org/W4382562256","doi":"https://doi.org/10.23919/mipro57284.2023.10159688","title":"A Common Pentest Output Schema for Business Intelligence System Ingestion","display_name":"A Common Pentest Output Schema for Business Intelligence System Ingestion","publication_year":2023,"publication_date":"2023-05-22","ids":{"openalex":"https://openalex.org/W4382562256","doi":"https://doi.org/10.23919/mipro57284.2023.10159688"},"language":"en","primary_location":{"id":"doi:10.23919/mipro57284.2023.10159688","is_oa":false,"landing_page_url":"https://doi.org/10.23919/mipro57284.2023.10159688","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2023 46th MIPRO ICT and Electronics Convention (MIPRO)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5086424946","display_name":"Shivangi Sharma","orcid":null},"institutions":[{"id":"https://openalex.org/I155173764","display_name":"Rochester Institute of Technology","ror":"https://ror.org/00v4yb702","country_code":"US","type":"education","lineage":["https://openalex.org/I155173764"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"Shivangi Sharma","raw_affiliation_strings":["Rochester Institute of Technology,Rochester,NY,14623"],"affiliations":[{"raw_affiliation_string":"Rochester Institute of Technology,Rochester,NY,14623","institution_ids":["https://openalex.org/I155173764"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5021605099","display_name":"Justin Pelletier","orcid":"https://orcid.org/0000-0002-8330-045X"},"institutions":[{"id":"https://openalex.org/I155173764","display_name":"Rochester Institute of Technology","ror":"https://ror.org/00v4yb702","country_code":"US","type":"education","lineage":["https://openalex.org/I155173764"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Justin M. Pelletier","raw_affiliation_strings":["Rochester Institute of Technology,Rochester,NY,14623"],"affiliations":[{"raw_affiliation_string":"Rochester Institute of Technology,Rochester,NY,14623","institution_ids":["https://openalex.org/I155173764"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5002676427","display_name":"Bill Stackpole","orcid":"https://orcid.org/0000-0001-6766-4520"},"institutions":[{"id":"https://openalex.org/I155173764","display_name":"Rochester Institute of Technology","ror":"https://ror.org/00v4yb702","country_code":"US","type":"education","lineage":["https://openalex.org/I155173764"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Bill Stackpole","raw_affiliation_strings":["Rochester Institute of Technology,Rochester,NY,14623"],"affiliations":[{"raw_affiliation_string":"Rochester Institute of Technology,Rochester,NY,14623","institution_ids":["https://openalex.org/I155173764"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":3,"corresponding_author_ids":["https://openalex.org/A5086424946"],"corresponding_institution_ids":["https://openalex.org/I155173764"],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":{"value":0.11696942,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":"1311","last_page":"1316"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10734","display_name":"Information and Cyber Security","score":0.9994999766349792,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10734","display_name":"Information and Cyber Security","score":0.9994999766349792,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10260","display_name":"Software Engineering Research","score":0.998199999332428,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12034","display_name":"Digital and Cyber Forensics","score":0.9955000281333923,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.6884236335754395},{"id":"https://openalex.org/keywords/schema","display_name":"Schema (genetic algorithms)","score":0.5832427740097046},{"id":"https://openalex.org/keywords/business-intelligence","display_name":"Business intelligence","score":0.5474011898040771},{"id":"https://openalex.org/keywords/business-rule","display_name":"Business rule","score":0.4398547410964966},{"id":"https://openalex.org/keywords/risk-analysis","display_name":"Risk analysis (engineering)","score":0.39900752902030945},{"id":"https://openalex.org/keywords/business-process","display_name":"Business process","score":0.38594746589660645},{"id":"https://openalex.org/keywords/knowledge-management","display_name":"Knowledge management","score":0.3768141269683838},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.3536326587200165},{"id":"https://openalex.org/keywords/business","display_name":"Business","score":0.22602781653404236},{"id":"https://openalex.org/keywords/marketing","display_name":"Marketing","score":0.13010582327842712}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6884236335754395},{"id":"https://openalex.org/C52146309","wikidata":"https://www.wikidata.org/wiki/Q7431116","display_name":"Schema (genetic algorithms)","level":2,"score":0.5832427740097046},{"id":"https://openalex.org/C2767350","wikidata":"https://www.wikidata.org/wiki/Q6662173","display_name":"Business intelligence","level":2,"score":0.5474011898040771},{"id":"https://openalex.org/C11066294","wikidata":"https://www.wikidata.org/wiki/Q1518244","display_name":"Business rule","level":4,"score":0.4398547410964966},{"id":"https://openalex.org/C112930515","wikidata":"https://www.wikidata.org/wiki/Q4389547","display_name":"Risk analysis (engineering)","level":1,"score":0.39900752902030945},{"id":"https://openalex.org/C85345410","wikidata":"https://www.wikidata.org/wiki/Q851587","display_name":"Business process","level":3,"score":0.38594746589660645},{"id":"https://openalex.org/C56739046","wikidata":"https://www.wikidata.org/wiki/Q192060","display_name":"Knowledge management","level":1,"score":0.3768141269683838},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.3536326587200165},{"id":"https://openalex.org/C144133560","wikidata":"https://www.wikidata.org/wiki/Q4830453","display_name":"Business","level":0,"score":0.22602781653404236},{"id":"https://openalex.org/C162853370","wikidata":"https://www.wikidata.org/wiki/Q39809","display_name":"Marketing","level":1,"score":0.13010582327842712},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.0},{"id":"https://openalex.org/C174998907","wikidata":"https://www.wikidata.org/wiki/Q357662","display_name":"Work in process","level":2,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.23919/mipro57284.2023.10159688","is_oa":false,"landing_page_url":"https://doi.org/10.23919/mipro57284.2023.10159688","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2023 46th MIPRO ICT and Electronics Convention (MIPRO)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"display_name":"Industry, innovation and infrastructure","id":"https://metadata.un.org/sdg/9","score":0.49000000953674316}],"awards":[],"funders":[{"id":"https://openalex.org/F4320307779","display_name":"Roche","ror":"https://ror.org/00by1q217"}],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":21,"referenced_works":["https://openalex.org/W1997646511","https://openalex.org/W2735430671","https://openalex.org/W2934699052","https://openalex.org/W2941315457","https://openalex.org/W2966046554","https://openalex.org/W2980790296","https://openalex.org/W3003250119","https://openalex.org/W3005994840","https://openalex.org/W3020788524","https://openalex.org/W3091373649","https://openalex.org/W3092021814","https://openalex.org/W3093836561","https://openalex.org/W3093842393","https://openalex.org/W3095531924","https://openalex.org/W3127782461","https://openalex.org/W3202871865","https://openalex.org/W3202927067","https://openalex.org/W3213219828","https://openalex.org/W3216519472","https://openalex.org/W4283698685","https://openalex.org/W6773453735"],"related_works":["https://openalex.org/W2048361578","https://openalex.org/W2795864039","https://openalex.org/W2053334530","https://openalex.org/W1543899699","https://openalex.org/W2166546927","https://openalex.org/W2081234480","https://openalex.org/W1672671307","https://openalex.org/W2619089043","https://openalex.org/W2112071224","https://openalex.org/W2024378837"],"abstract_inverted_index":{"Data-driven":[0],"Business":[1,74,94,121],"Intelligence":[2,75,95,122],"process":[3],"improvements":[4],"demand":[5],"proactive":[6],"digital":[7],"vulnerability":[8],"discovery":[9,15],"and":[10,16,26,49,82,86,105,143,178],"exploitation":[11],"enumeration.":[12],"These":[13],"risk":[14,138,172,180],"analyses":[17,177],"practices":[18],"are":[19,79],"commonly":[20],"known":[21],"as":[22,29,39,71],"penetration":[23],"tests":[24],"(pentests),":[25],"have":[27],"emerged":[28],"requirement":[30],"for":[31,110,120],"most":[32],"organizations":[33],"under":[34],"many":[35],"compliance":[36],"regimes":[37],"such":[38],"the":[40,50,57,67,155,168],"global":[41],"Payment":[42],"Card":[43],"Industry":[44],"Data":[45],"Security":[46],"Standard":[47],"(PCI-DSS)":[48],"federal":[51],"Gramm-Leach":[52],"Bliley":[53],"Act":[54],"(GLBA)":[55],"in":[56,113],"United":[58],"States.":[59],"Though":[60],"a":[61,72,107,114,160],"growing":[62],"body":[63],"of":[64,69,136,150,170],"research":[65],"addresses":[66],"utility":[68],"pentests":[70],"valuable":[73],"method,":[76],"pentest":[77,103,161],"outputs":[78],"not":[80],"standardized":[81,108,152],"require":[83],"time-consuming":[84],"generation":[85,112],"ingestion":[87],"before":[88],"they":[89],"can":[90],"provide":[91],"inputs":[92],"to":[93,124,140],"Systems.":[96],"In":[97],"this":[98,129],"study,":[99],"we":[100],"examined":[101],"several":[102],"reports":[104],"propose":[106,127],"schema":[109,153],"output":[111],"common":[115],"format":[116],"that":[117,128],"is":[118],"easy":[119],"Systems":[123],"ingest.":[125],"We":[126],"improvement":[130],"will":[131],"allow":[132],"more":[133],"rapid":[134],"delivery":[135],"accurate":[137],"information":[139,144,173],"executives,":[141],"managers,":[142],"technology":[145],"professionals.":[146],"The":[147],"thirteen":[148],"elements":[149],"our":[151],"represent":[154],"first":[156],"attempt":[157],"at":[158],"building":[159],"dimensional":[162],"model,":[163],"which":[164],"could":[165],"further":[166],"ease":[167],"translation":[169],"cybersecurity":[171],"into":[174],"business":[175],"impact":[176],"organizational":[179],"registers.":[181]},"counts_by_year":[],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
