{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,10,27]],"date-time":"2025-10-27T20:28:57Z","timestamp":1761596937027,"version":"3.32.0"},"publisher-location":"Berlin, Heidelberg","reference-count":19,"publisher":"Springer Berlin Heidelberg","isbn-type":[{"type":"print","value":"9783540308492"},{"type":"electronic","value":"9783540322986"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2005]]},"DOI":"10.1007\/11599371_9","type":"book-chapter","created":{"date-parts":[[2005,11,23]],"date-time":"2005-11-23T09:56:37Z","timestamp":1132739797000},"page":"96-109","source":"Crossref","is-referenced-by-count":14,"title":["A New Unsupervised Anomaly Detection Framework for Detecting Network Attacks in Real-Time"],"prefix":"10.1007","author":[{"given":"Wei","family":"Lu","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Issa","family":"Traore","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","reference":[{"key":"9_CR1","unstructured":"Anderson, J.P.: Computer Security Threat Monitoring and Surveillance. Technical Report, James P. Anderson Co., Fort Washington, Pennsylvania (1980)"},{"key":"9_CR2","doi-asserted-by":"publisher","first-page":"186","DOI":"10.1145\/357830.357849","volume":"3","author":"S. Axelsson","year":"2000","unstructured":"Axelsson, S.: The Base-Rate Fallacy and the Difficulty of Intrusion Detection. ACM Transactions on Information and System Security (TISSEC)\u00a03, 186\u2013201 (2000)","journal-title":"ACM Transactions on Information and System Security (TISSEC)"},{"key":"9_CR3","doi-asserted-by":"crossref","first-page":"1","DOI":"10.1111\/j.2517-6161.1977.tb01600.x","volume":"39","author":"A.P. Dempster","year":"1977","unstructured":"Dempster, A.P., Laird, N.M., Rubin, D.B.: Maximum Likelihood from Incomplete Data via the EM Algorithm (with discussion). Journal of the Royal Statistical Society B\u00a039, 1\u201338 (1977)","journal-title":"Journal of the Royal Statistical Society B"},{"key":"9_CR4","doi-asserted-by":"publisher","first-page":"222","DOI":"10.1109\/TSE.1987.232894","volume":"2","author":"D.E. Denning","year":"1987","unstructured":"Denning, D.E.: An Intrusion Detection Model. IEEE Transactions on Software Engineering\u00a02, 222\u2013232 (1987)","journal-title":"IEEE Transactions on Software Engineering"},{"key":"9_CR5","unstructured":"Eskin, E.: Anomaly Detection over Noisy Data using Learned Probability Distributions. In: Proceedings of 17th International Conference on Machine Learning, pp. 255\u2013262 (2000)"},{"key":"9_CR6","volume-title":"On Application of Data Mining in Computer Security","author":"E. Eskin","year":"2002","unstructured":"Eskin, E., Arnold, A., Prerau, M., Portnoy, L., Stolfo, S.: A Geometric Framework for Unsupervised Anomaly Detection: Detecting Intrusions in Unlabeled Data. In: On Application of Data Mining in Computer Security. Kluwer Academic Publisher, Dordrecht (2002)"},{"key":"9_CR7","unstructured":"Fluxay, http:\/\/www.netxeyes.com"},{"key":"9_CR8","unstructured":"Frank, J.: Artificial Intelligence and Intrusion Detection: Current and Future Directions. In: Proceedings of the 17th National Computer Security Conference, pp. 11\u201321 (1994)"},{"key":"9_CR9","doi-asserted-by":"crossref","unstructured":"Forrest, S., Hofmeyr, S.A., Longstaff, T.A.: A Sense of Self for Unix Processes. In: Proceedings of 1996 IEEE Symposium on Security and Privacy, pp. 120\u2013128 (1996)","DOI":"10.1109\/SECPRI.1996.502675"},{"issue":"3","key":"9_CR10","doi-asserted-by":"publisher","first-page":"235","DOI":"10.1016\/0167-4048(93)90110-Q","volume":"12","author":"J. Hochberg","year":"1993","unstructured":"Hochberg, J., Jackson, K., Stallings, C., McClary, J.F., DuBois, D., Ford, J.: NADIR: An Automated System for Detecting Network Intrusion and Misuse. Computers & Security\u00a012(3), 235\u2013248 (1993)","journal-title":"Computers & Security"},{"key":"9_CR11","unstructured":"Kendall, K.: A Database of Computer Attacks for the Evaluation of Intrusion Detection Systems. Master\u2019s Thesis, Massachusetts Institute of Technology (1998)"},{"key":"9_CR12","unstructured":"Lunt, T., Jagannathan, R., Lee, R., Listgarten, S., Edwards, D., Neumann, P., Javitz, H., Valdes, A.: IDES: The Enhanced Prototype, A Real-time Intrusion Detection System. Technical Report, SRI Project 4185-010, Computer Science Laboratory, CA (1988)"},{"key":"9_CR13","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"145","DOI":"10.1007\/3-540-39945-3_10","volume-title":"Recent Advances in Intrusion Detection","author":"J. McHugh","year":"2000","unstructured":"McHugh, J.: The 1998 Lincoln Lab IDS Evaluation - A Critique. In: Debar, H., M\u00e9, L., Wu, S.F. (eds.) RAID 2000. LNCS, vol.\u00a01907, pp. 145\u2013161. Springer, Heidelberg (2000)"},{"key":"9_CR14","unstructured":"Portnoy, L., Eskin, E., Stolfo, S.: Intrusion Detection with Unlabeled Data using Clustering. In: Proceedings of ACM CSS Workshop on Data Mining Applied to Security (2001)"},{"key":"9_CR15","doi-asserted-by":"crossref","DOI":"10.1017\/CBO9780511812651","volume-title":"Pattern Recognition and Neural Networks","author":"B.D. Ripley","year":"1996","unstructured":"Ripley, B.D.: Pattern Recognition and Neural Networks. Cambridge University Press, Cambridge (1996)"},{"key":"9_CR16","volume-title":"Measurement Theory","author":"F.S. Roberts","year":"1979","unstructured":"Roberts, F.S.: Measurement Theory. Addison-Wesley Publishing Company, Reading (1979)"},{"key":"9_CR17","doi-asserted-by":"crossref","unstructured":"Smaha, S.E.: Haystack: An Intrusion Detection System. In: Proceedings of the IEEE Fourth Aerospace Computer Security Applications Conference, pp. 37\u201344 (1988)","DOI":"10.1109\/ACSAC.1988.113412"},{"key":"9_CR18","volume-title":"Statistical Analysis of Finite Mixture Distributions","author":"D. Titterington","year":"1985","unstructured":"Titterington, D., Smith, A., Makov, U.: Statistical Analysis of Finite Mixture Distributions. John Wiley & Sons, New York (1985)"},{"key":"9_CR19","unstructured":"X-scan, http:\/\/www.xfocus.org"}],"container-title":["Lecture Notes in Computer Science","Cryptology and Network Security"],"original-title":[],"link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/11599371_9.pdf","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,1,5]],"date-time":"2025-01-05T21:54:09Z","timestamp":1736114049000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/11599371_9"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2005]]},"ISBN":["9783540308492","9783540322986"],"references-count":19,"URL":"https:\/\/doi.org\/10.1007\/11599371_9","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2005]]}}}