{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,5,3]],"date-time":"2025-05-03T18:43:30Z","timestamp":1746297810484},"publisher-location":"Boston, MA","reference-count":13,"publisher":"Springer US","isbn-type":[{"type":"print","value":"9780387849263"},{"type":"electronic","value":"9780387849270"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"DOI":"10.1007\/978-0-387-84927-0_15","type":"book-chapter","created":{"date-parts":[[2008,8,28]],"date-time":"2008-08-28T21:25:29Z","timestamp":1219958729000},"page":"177-189","source":"Crossref","is-referenced-by-count":2,"title":["Detecting Remote Exploits Using Data Mining"],"prefix":"10.1007","author":[{"given":"Mohammad","family":"Masud","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Latifur","family":"Khan","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Bhavani","family":"Thuraisingham","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Xinran","family":"Wang","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Peng","family":"Liu","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Sencun","family":"Zhu","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","reference":[{"key":"15_CR1","doi-asserted-by":"crossref","unstructured":"R. Chinchani and E. Berg, A fast static analysis approach to detect exploit code inside network flows, Proceedings of the Eighth International Symposium on Recent Advances in Intrusion Detection, pp. 284-308, 2005.","DOI":"10.1007\/11663812_15"},{"key":"15_CR2","unstructured":"T. Detristan, T. Ulenspiegel, Y. Malcom and M. von Underduk, Polymorphic shellcode engine using spectrum analysis, Phrack, vol. 11(61),2003."},{"key":"15_CR3","unstructured":"C. Kruegel, W. Robertson, F. Valeur and G. Vigna, Static disassembly of obfuscated binaries, Proceedings of the Thirteenth USENIX Security Symposium, pp. 255-270, 2004."},{"key":"15_CR4","volume-title":"Bro intrusion detection system","author":"Lawrence Berkeley National Laboratory","year":"2007","unstructured":"Lawrence Berkeley National Laboratory, Bro intrusion detection system, Berkeley, California (bro-ids.org), 2007."},{"key":"15_CR5","doi-asserted-by":"crossref","unstructured":"M. Locasto, K. Wang, A. Keromytis and S. Stolfo, FLIPS: Hybrid adaptive intrusion prevention, Proceedings of the Eighth International Symposium on Recent Advances in Intrusion Detection, pp. 82-101, 2005.","DOI":"10.1007\/11663812_5"},{"key":"15_CR6","unstructured":"S. Macaulay, ADMmutate: Polymorphic shellcode engine ( www.ktwo.ca\/security.html ), 2007."},{"key":"15_CR7","unstructured":"Metasploit, The Metasploit Project ( www.metasploit.com )."},{"key":"15_CR8","unstructured":"Snort.org, Snort ( www.snort.org )."},{"key":"15_CR9","doi-asserted-by":"crossref","unstructured":"T. Toth and C. Kruegel, Accurate buffer overflow detection via abstract payload execution, Proceedings of the Fifth International Symposium on Recent Advances in Intrusion Detection, pp. 274- 291,2002.","DOI":"10.1007\/3-540-36084-0_15"},{"key":"15_CR10","doi-asserted-by":"crossref","unstructured":"K. Wang, G. Cretu and S. Stolfo, Anomalous payload-based net- work intrusion detection and signature generation, Proceedings of the Eighth International Symposium on Recent Advances in Intrusion Detection, pp. 227-246, 2005.","DOI":"10.1007\/11663812_12"},{"key":"15_CR11","doi-asserted-by":"crossref","unstructured":"K. Wang and S. Stolfo, Anomalous payload-based network intrusion detection, Proceedings of the Seventh International Symposium on Recent Advances in Intrusion Detection, pp. 203-222, 2004.","DOI":"10.1007\/978-3-540-30143-1_11"},{"key":"15_CR12","unstructured":"X. Wang, C. Pan, P. Liu and S. Zhu. SigFree: A signature-free buffer overflow attack blocker, Proceedings of the Fifteenth USENIX Security Symposium, pp. 225-240, 2006."},{"key":"15_CR13","unstructured":"Weka, Weka 3: Data mining software in Java, University of Waikato, Hamilton, New Zealand ( www.cs.waikato.ac.nz\/ml\/weka )."}],"container-title":["IFIP \u2014 The International Federation for Information Processing","Advances in Digital Forensics IV"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-0-387-84927-0_15.pdf","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2020,11,17]],"date-time":"2020-11-17T22:31:58Z","timestamp":1605652318000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-0-387-84927-0_15"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[null]]},"ISBN":["9780387849263","9780387849270"],"references-count":13,"URL":"https:\/\/doi.org\/10.1007\/978-0-387-84927-0_15","relation":{},"ISSN":["1571-5736"],"issn-type":[{"type":"print","value":"1571-5736"}],"subject":[]}}