{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,4,23]],"date-time":"2025-04-23T05:27:43Z","timestamp":1745386063608},"publisher-location":"Berlin, Heidelberg","reference-count":30,"publisher":"Springer Berlin Heidelberg","isbn-type":[{"type":"print","value":"9783540317784"},{"type":"electronic","value":"9783540317791"}],"license":[{"start":{"date-parts":[[2006,1,1]],"date-time":"2006-01-01T00:00:00Z","timestamp":1136073600000},"content-version":"tdm","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2006]]},"DOI":"10.1007\/11663812_6","type":"book-chapter","created":{"date-parts":[[2006,1,20]],"date-time":"2006-01-20T07:57:08Z","timestamp":1137743828000},"page":"102-123","source":"Crossref","is-referenced-by-count":20,"title":["Towards Software-Based Signature Detection for Intrusion Prevention on the Network Card"],"prefix":"10.1007","author":[{"given":"H.","family":"Bos","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Kaiming","family":"Huang","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","reference":[{"unstructured":"Moore, D., Paxson, V., Savage, S., Shannon, C., Staniford, S., Weaver, N.: The spread of the Sapphire\/Slammer worm, technical report. Technical report, CAIDA (2003), \n                    \n                      http:\/\/www.caida.org\/outreach\/papers\/2003\/sapphire\/","key":"6_CR1"},{"unstructured":"Bellovin, S.M.: Distributed firewalls. Usenix;login. Special issue on Security, 37\u201339 (1999)","key":"6_CR2"},{"key":"6_CR3","doi-asserted-by":"publisher","first-page":"190","DOI":"10.1145\/352600.353052","volume-title":"CCS 2000: Proceedings of the 7th ACM conference on Computer and communications security","author":"S. Ioannidis","year":"2000","unstructured":"Ioannidis, S., Keromytis, A.D., Bellovin, S.M., Smith, J.M.: Implementing a distributed firewall. In: CCS 2000: Proceedings of the 7th ACM conference on Computer and communications security, pp. 190\u2013199. ACM Press, New York (2000)"},{"doi-asserted-by":"crossref","unstructured":"Clark, C., Lee, W., Schimmel, D., Contis, D., Kon\u00e9, M., Thomas, A.: A hardware platform for network intrusion detection and prevention. In: Third Workshop on Network Processors and Applications, Madrid, Spain (2004)","key":"6_CR4","DOI":"10.1016\/B978-012088476-6\/50007-1"},{"unstructured":"Toelle, J., Niggemann, O.: Supporting intrusion detection by graph clustering and graph drawing. In: Proc. RAID 2000, Toulouse, France (2000)","key":"6_CR5"},{"doi-asserted-by":"crossref","unstructured":"Barford, P., Kline, J., Plonka, D., Ron, A.: A signal analysis of network traffic anomalies. In: SIGCOMM Internet Measurement Workshop, Miami, FLA (2003)","key":"6_CR6","DOI":"10.1145\/637209.637210"},{"doi-asserted-by":"crossref","unstructured":"Krishnamurthy, B., Sen, S., Zhang, Y., Chen, Y.: Sketch-based change detection: Methods, evaluation, and applications. In: SIGCOMM Internet Measurement Workshop, Miami, FLA (2003)","key":"6_CR7","DOI":"10.1145\/948205.948236"},{"doi-asserted-by":"crossref","unstructured":"Yegneswaran, V., Barford, P., Ullrich, J.: Internet intrusions: Global characteristics and prevalence. In: Proc. of ACM SIGMETRICS (2003)","key":"6_CR8","DOI":"10.1145\/781027.781045"},{"doi-asserted-by":"crossref","unstructured":"Estan, C., Savage, S., Varghese, G.: Automatically inferring patterns of resource consumption in network traffic. In: Proc. of SIGCOMM 2003 (2003)","key":"6_CR9","DOI":"10.1145\/863955.863972"},{"key":"6_CR10","doi-asserted-by":"publisher","first-page":"333","DOI":"10.1145\/360825.360855","volume":"18","author":"A.V. Aho","year":"1975","unstructured":"Aho, A.V., Corasick, M.J.: Efficient string matching: an aid to bibliographic search. Communications of the ACM\u00a018, 333\u2013340 (1975)","journal-title":"Communications of the ACM"},{"issue":"23-24","key":"6_CR11","doi-asserted-by":"publisher","first-page":"2435","DOI":"10.1016\/S1389-1286(99)00112-7","volume":"31","author":"V. Paxson","year":"1999","unstructured":"Paxson, V.: Bro: A system for detecting network intruders in real-time. Computer Networks\u00a031(23-24), 2435\u20132463 (1999)","journal-title":"Computer Networks"},{"unstructured":"Jung, J., Paxson, V., Berger, A.W., Balakrishnan, H.: Fast Portscan Detection Using Sequential Hypothesis Testing. In: IEEE SP 2004, Oakland, CA (2004)","key":"6_CR12"},{"doi-asserted-by":"crossref","unstructured":"Kompella, R.R., Singh, S., Varghese, G.: On scalable attack detection in the network. In: SIGCOMM Internet measurement conference, pp. 187\u2013200 (2004)","key":"6_CR13","DOI":"10.1145\/1028788.1028812"},{"unstructured":"Roesch, M.: Snort: Lightweight intrusion detection for networks. In: Proceedings of the 1999 USENIX LISA Systems Adminstration Conference (1999)","key":"6_CR14"},{"unstructured":"Shalaby, N., Peterson, L., Bavier, A., Gottlieb, Y., Karlin, S., Nakao, A., Qie, X., Spalink, T., Wawrzoniak, M.: Extensible routers for active networks. In: DANCE 2002 (2002)","key":"6_CR15"},{"doi-asserted-by":"crossref","unstructured":"Charitakis, I., Pnevmatikatos, D., Markatos, E., Anagnostakis, K.: S2I: a tool for automatic rule match compilation for the IXP network processor. In: SCOPES 2003, pp. 226\u2013239 (2003)","key":"6_CR16","DOI":"10.1007\/978-3-540-39920-9_16"},{"unstructured":"Mogul, J.: TCP offload is a bad idea whose time has come. In: Proc. of HotOS IX, Lihue, Hawaii, USA (2003)","key":"6_CR17"},{"unstructured":"Tuck, N., Sherwood, T., Calder, B., Varghese, G.: Deterministic memory-efficient string matching algorithms for intrusion detection. In: Proceedings of IEEE Infocom, Hong Kong, China (2004)","key":"6_CR18"},{"unstructured":"Malan, R., Watson, D., Jahanian, F., Howell, P.: Transport and application protocol scrubbing. In: Infocom 2000, Tel-Aviv, Israel (2000)","key":"6_CR19"},{"unstructured":"Handley, M., Paxson, V., Kreibich, C.: Network intrusion detection: Evasion, traffic normalization, and end-to-end protocol semantics. In: USENIX-Sec 2001, Washington, DC, USA (2001)","key":"6_CR20"},{"unstructured":"Johnson, E.J., Kunze, A.R.: IXP1200 Programming. Intel Press (2002)","key":"6_CR21"},{"doi-asserted-by":"crossref","unstructured":"Debar, H., Dacier, M., Wepsi, A.: A revised taxonomy for intrusion-detection systems. Technical report, IBM Research, Zurich (1999)","key":"6_CR22","DOI":"10.1016\/S1389-1286(98)00017-6"},{"unstructured":"Smaha, S.E.: Haystack: An intrusion detection system. In: IEEE Fourth Aerospace Computer Security Applications Conference, Orlando, FL, USA (1988)","key":"6_CR23"},{"unstructured":"Cheung, S., Crawford, R., Dilger, M., Frank, J., Hoagland, J., Levitt, K., Rowe, J., Staniford, S., Yip, R., Zerkle, D.: The design of GrIDS: A graph-based intrusion detection system. Technical Report CSE-99-2, UC Davis (1999)","key":"6_CR24"},{"unstructured":"Cisco: Cisco secure intrusion detection system version 2.2.0 (netranger) (2002)","key":"6_CR25"},{"unstructured":"Farmer, D., Venema, W.: Improving the security of your site by breaking into it. Technical report, Internet White Paper (1993), \n                    \n                      http:\/\/www.fish.com\/security\/","key":"6_CR26"},{"unstructured":"Moore, D., Shannon, C., Voelker, G., Savage, S.: Internet quarantine: Requirements for containing self-propagating code. In: Infocom, San Francisco, CA (2003)","key":"6_CR27"},{"unstructured":"Ptacek, T.H., Newsham, T.N.: Insertion, evasion, and denial of service: Eluding network intrusion detection. Technical report, Secure Networks Inc. (1998)","key":"6_CR28"},{"key":"6_CR29","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"252","DOI":"10.1007\/3-540-36084-0_14","volume-title":"Recent Advances in Intrusion Detection","author":"W. Lee","year":"2002","unstructured":"Lee, W., Cabrera, J.B.D., Thomas, A., Balwalli, N., Saluja, S., Zhang, Y.: Performance adaptation in real-time intrusion detection systems. In: Wespi, A., Vigna, G., Deri, L. (eds.) RAID 2002. LNCS, vol.\u00a02516, p. 252. Springer, Heidelberg (2002)"},{"unstructured":"Kerschbaum, F., Spafford, E.H., Zamboni, D.: Using embedded sensors for detecting network attack. Technical report, Purdue University (2000)","key":"6_CR30"}],"container-title":["Lecture Notes in Computer Science","Recent Advances in Intrusion Detection"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/11663812_6","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2019,5,19]],"date-time":"2019-05-19T14:16:52Z","timestamp":1558275412000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/11663812_6"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2006]]},"ISBN":["9783540317784","9783540317791"],"references-count":30,"URL":"https:\/\/doi.org\/10.1007\/11663812_6","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2006]]}}}