{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,9]],"date-time":"2026-05-09T05:47:43Z","timestamp":1778305663537,"version":"3.51.4"},"publisher-location":"Boston, MA","reference-count":16,"publisher":"Springer US","isbn-type":[{"value":"9781461353218","type":"print"},{"value":"9781461509530","type":"electronic"}],"license":[{"start":{"date-parts":[[2002,1,1]],"date-time":"2002-01-01T00:00:00Z","timestamp":1009843200000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2002,1,1]],"date-time":"2002-01-01T00:00:00Z","timestamp":1009843200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2002]]},"DOI":"10.1007\/978-1-4615-0953-0_3","type":"book-chapter","created":{"date-parts":[[2011,6,19]],"date-time":"2011-06-19T21:35:58Z","timestamp":1308519358000},"page":"63-76","source":"Crossref","is-referenced-by-count":8,"title":["An Architecture for Anomaly Detection"],"prefix":"10.1007","author":[{"given":"Daniel","family":"Barbar\u00e1","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Julia","family":"Couto","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Sushil","family":"Jajodia","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Ningning","family":"Wu","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","reference":[{"key":"3_CR1","unstructured":"R. Agrawal, T. Imielinski, and A. Swami. Mining association rules between sets of items in large databases. In Proc. of the ACM SIG-MOD Conference on Management of Data, Washington D.C., May 1993."},{"key":"3_CR2","unstructured":"D. Anderson and T. Frivold and A. Valdes. NIDES: A Summary. In http:\/\/www.sdl.sri.com\/nides\/index5.html"},{"key":"3_CR3","unstructured":"D. Anderson and T. Lunt and H. Javitz and A. Tamaru and A. Valdes. Detecting unusual program behavior using the statistical component of the Next-generation Intrusion Detection Expert System (NIDES). Technical Report, SRI-CSL-95\u201306, Computer Science Laboratory, SRI International, May 1995."},{"key":"3_CR4","volume-title":"Detecting Intrusions by Data Mining. Proceedings of the IEEE SMC Information Assurance Workshop","author":"D Barbar\u00e1","year":"2001","unstructured":"D. Barbar\u00e1 and J. Couto and S. Jajodia and N. Wu. ADAM: Detecting Intrusions by Data Mining. Proceedings of the IEEE SMC Information Assurance Workshop, West Point, NY, 2001."},{"key":"3_CR5","unstructured":"D. Barbar\u00e1 and N. Wu and S. Jajodia. Detecting Novel Network Intrusions Using Bayes Estimators. Proceedings of the First SIAM International Conference on Data Mining, April 2001, Chicago, USA."},{"key":"3_CR6","unstructured":"V. Barnett and T. Lewis. Outliers in Statistical Data. 3rd Edition. Wiley, 1994."},{"key":"3_CR7","unstructured":"Y.M.M. Bishop and S.E. Fienberg. Discrete Multivariate Analysis: Theory and Practice. The MIT Press, 1975."},{"key":"3_CR8","unstructured":"D.E. Denning. An Intrusion Detection Model. In IEEE Transactions on Software Engineering, February 1997, pp. 222\u2013228."},{"key":"3_CR9","unstructured":"K. Ilgun. USTAT: A Real-Time Intrusion Detection System for UNIX. Master Thesis, University of California, Santa Barbara, November 1992."},{"key":"3_CR10","unstructured":"H.S. Javitz and A. Valdes, The SRI IDES Statistical Anomaly Detector. In http:\/\/www.sdl.sri.com\/nides\/index5.htrnl"},{"key":"3_CR11","unstructured":"T.F. Lunt and R Jagannathan. A Prototype Real-Time Intrusion-Detection Expert System. In Proceedings of the IEEE Symposium on Security and Privacy, 1988, pp. 18\u201321."},{"key":"3_CR12","unstructured":"MIT Lincoln Laboratories DARPA Intrusion Evaluation Detection. In http:\/\/www.11.mit.edu\/IST\/ideval\/"},{"key":"3_CR13","volume-title":"Santa Barbara","author":"PA Porras","year":"1992","unstructured":"P.A. Porras. STAT: A State Transition Analysis for Intrusion Detection. Master Thesis, Computer Science Department, University of California, Santa Barbara, 1992."},{"key":"3_CR14","unstructured":"P.A. Porras and P.G. Neumann EMERALD: Event Monitoring Enabling Responses to Anomalous Live Disturbances. In Proceedings of the National Information Systems Security Conference, 1997, pp. 353\u2013365."},{"key":"3_CR15","volume-title":"John Wiley & Sons","author":"HLVanTrees Detection","year":"2001","unstructured":"H.L. Van Trees. Detection, Estimation, and Modulation Theory, Radar-Sonar Signal Processing and Gaussian Signals in Noise. John Wiley & Sons, 2001."},{"key":"3_CR16","unstructured":"G. Vigna and R. Kemmerer. NetStat: A Network-Based Intrusion Detection Approach. In Proceedings of the 14t Annual Information Theory: 50 Years of Discovery Computer Security Application Conference, Dec. 1998."}],"container-title":["Advances in Information Security","Applications of Data Mining in Computer Security"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-1-4615-0953-0_3","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,5,8]],"date-time":"2026-05-08T18:34:09Z","timestamp":1778265249000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-1-4615-0953-0_3"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2002]]},"ISBN":["9781461353218","9781461509530"],"references-count":16,"URL":"https:\/\/doi.org\/10.1007\/978-1-4615-0953-0_3","relation":{},"ISSN":["1568-2633"],"issn-type":[{"value":"1568-2633","type":"print"}],"subject":[],"published":{"date-parts":[[2002]]}}}