{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2024,7,13]],"date-time":"2024-07-13T00:21:27Z","timestamp":1720830087465},"reference-count":58,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","license":[{"start":{"date-parts":[[2024,1,1]],"date-time":"2024-01-01T00:00:00Z","timestamp":1704067200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0\/legalcode"}],"funder":[{"name":"European Union\u2019s Horizon Europe Research and Innovation Program through the Synthetic Generation of Hematological Data Over Federated Computing Frameworks (SYNTHEMA) Project","award":["101095530"]},{"name":"U.K. Research and Innovation (UKRI) and UKRI Trustworthy Autonomous Systems Hub","award":["EP\/V00784X\/1"]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Access"],"published-print":{"date-parts":[[2024]]},"DOI":"10.1109\/access.2024.3404264","type":"journal-article","created":{"date-parts":[[2024,5,22]],"date-time":"2024-05-22T17:42:36Z","timestamp":1716399756000},"page":"82482-82505","source":"Crossref","is-referenced-by-count":0,"title":["Automated Knowledge-Based Cybersecurity Risk Assessment of Cyber-Physical Systems"],"prefix":"10.1109","volume":"12","author":[{"ORCID":"http:\/\/orcid.org\/0000-0002-7901-0839","authenticated-orcid":false,"given":"Stephen C.","family":"Phillips","sequence":"first","affiliation":[{"name":"IT Innovation Centre, University of Southampton, Southampton, U.K."}]},{"ORCID":"http:\/\/orcid.org\/0000-0002-9937-1762","authenticated-orcid":false,"given":"Steve","family":"Taylor","sequence":"additional","affiliation":[{"name":"IT Innovation Centre, University of Southampton, Southampton, U.K."}]},{"ORCID":"http:\/\/orcid.org\/0000-0002-9281-6095","authenticated-orcid":false,"given":"Michael","family":"Boniface","sequence":"additional","affiliation":[{"name":"IT Innovation Centre, University of Southampton, Southampton, U.K."}]},{"ORCID":"http:\/\/orcid.org\/0000-0003-0428-3194","authenticated-orcid":false,"given":"Stefano","family":"Modafferi","sequence":"additional","affiliation":[{"name":"IT Innovation Centre, University of Southampton, Southampton, U.K."}]},{"ORCID":"http:\/\/orcid.org\/0000-0003-1485-7024","authenticated-orcid":false,"given":"Mike","family":"Surridge","sequence":"additional","affiliation":[{"name":"IT Innovation Centre, University of Southampton, Southampton, U.K."}]}],"member":"263","reference":[{"key":"ref1","volume-title":"CVE","year":"2023"},{"key":"ref2","volume-title":"Spyderisk","year":"2023"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.3403\/30209826u"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.3403\/30440304"},{"key":"ref5","volume-title":"ENISA","year":"2023"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1007\/s10207-017-0382-0"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.6028\/nist.sp.800-30r1"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.21236\/ada634134"},{"key":"ref9","volume-title":"STRIDE","year":"2023"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1109\/eurospw51379.2020.00047"},{"key":"ref11","volume-title":"Measuring and Managing Information Risk: A Fair Approach","author":"Freund","year":"2015"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-12323-8"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1201\/EBK1439839560"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.3403\/30192065u"},{"key":"ref15","volume-title":"NIST Cybersecurity Framework","year":"2023"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1145\/1533057.1533084"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-031-17995-2_26"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-12544-7_16"},{"key":"ref19","first-page":"101","article-title":"Towards the ontology of ISO\/IEC 27005: 2011 risk management standard","volume-title":"Proc. Int. Symp. Hum. Aspects Inf. Secur. Assurance","author":"Agrawal"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1016\/j.procs.2019.09.447"},{"key":"ref21","article-title":"Toward a knowledge graph of cybersecurity countermeasures","author":"Kaloroumakis","year":"2021"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1145\/3569458"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.3390\/s21051691"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1109\/msec.2021.3125229"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1007\/s11219-023-09634-4"},{"key":"ref26","volume-title":"Trike","year":"2023"},{"key":"ref27","volume-title":"Microsoft Threat Modeling Tool","year":"2023"},{"key":"ref28","volume-title":"OWASP Threat Dragon","year":"2023"},{"key":"ref29","volume-title":"IriusRisk","year":"2023"},{"key":"ref30","volume-title":"ThreatModeler","year":"2023"},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1109\/access.2022.3219063"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1109\/dasc\/picom\/cbdcom\/cy59711.2023.10361456"},{"key":"ref33","doi-asserted-by":"publisher","DOI":"10.3390\/fi13020030"},{"key":"ref34","doi-asserted-by":"publisher","DOI":"10.3390\/s21165493"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1155\/2014\/805856"},{"key":"ref36","article-title":"A set of semantic data flow diagrams and its security analysis based on ontologies and knowledge graphs","author":"Brazhuk","year":"2023","journal-title":"arXiv:2303.11198"},{"key":"ref37","doi-asserted-by":"publisher","DOI":"10.1109\/CSR51186.2021.9527937"},{"key":"ref38","doi-asserted-by":"publisher","DOI":"10.1109\/TSMC.2019.2915940"},{"key":"ref39","doi-asserted-by":"publisher","DOI":"10.1109\/SECPRI.2002.1004377"},{"issue":"3","key":"ref40","article-title":"SERSCIS-Ont: Evaluation of a formal metric model using airport collaborative decision making","volume":"4","author":"Surridge","year":"2012","journal-title":"Int. J. Adv. Intell. Syst."},{"key":"ref41","doi-asserted-by":"publisher","DOI":"10.1109\/ARES.2013.20"},{"key":"ref42","doi-asserted-by":"publisher","DOI":"10.1145\/3229616.3229621"},{"key":"ref43","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-32213-7_14"},{"key":"ref44","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-77392-2_22"},{"key":"ref45","first-page":"266","article-title":"Cybersecurity for SMEs: Introducing the human element into socio-technical cybersecurity risk assessment","volume-title":"Proc. 16th Int. Joint Conf. Comput. Vis., Imag. Comput. Graph. Theory Appl.","author":"Boletsis"},{"key":"ref46","volume-title":"German Federal Office for Security in Information Technology (BSI), IT Grundschutz Manual","year":"2004"},{"key":"ref47","volume-title":"Spyderisk System Modeller","year":"2023"},{"key":"ref48","volume-title":"Keycloak","year":"2023"},{"key":"ref49","volume-title":"Spyderisk System Modeller Documentation","year":"2023"},{"key":"ref50","volume-title":"Spyderisk Network Knowledgebase","year":"2023"},{"key":"ref51","volume-title":"Spyderisk Network Knowledgebase Documentation","year":"2023"},{"key":"ref52","doi-asserted-by":"publisher","DOI":"10.2307\/258792"},{"key":"ref53","volume-title":"Alert: Apache Log4j Vulnerabilities","year":"2023"},{"key":"ref54","volume-title":"Common Vulnerability Scoring System","year":"2023"},{"key":"ref55","doi-asserted-by":"publisher","DOI":"10.3403\/30202344"},{"key":"ref56","volume-title":"ICS CP\/PE (Cyber-to-Physical or Process Effects) Case Study Paper German Steel Mill Cyber Attack","year":"2023"},{"key":"ref57","doi-asserted-by":"publisher","DOI":"10.1016\/j.cosrev.2019.100219"},{"key":"ref58","volume-title":"Spyderisk Attack Graph Tool","author":"Phillips","year":"2023"}],"container-title":["IEEE Access"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/6287639\/10380310\/10536896.pdf?arnumber=10536896","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,7,12]],"date-time":"2024-07-12T17:42:09Z","timestamp":1720806129000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/10536896\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024]]},"references-count":58,"URL":"https:\/\/doi.org\/10.1109\/access.2024.3404264","relation":{},"ISSN":["2169-3536"],"issn-type":[{"value":"2169-3536","type":"electronic"}],"subject":[],"published":{"date-parts":[[2024]]}}}