{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,3,26]],"date-time":"2025-03-26T12:03:59Z","timestamp":1742990639592,"version":"3.40.3"},"publisher-location":"Cham","reference-count":36,"publisher":"Springer International Publishing","isbn-type":[{"type":"print","value":"9783030180744"},{"type":"electronic","value":"9783030180751"}],"license":[{"start":{"date-parts":[[2019,1,1]],"date-time":"2019-01-01T00:00:00Z","timestamp":1546300800000},"content-version":"tdm","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2019]]},"DOI":"10.1007\/978-3-030-18075-1_5","type":"book-chapter","created":{"date-parts":[[2019,5,30]],"date-time":"2019-05-30T06:02:34Z","timestamp":1559196154000},"page":"83-96","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":3,"title":["Countering the IoT-Powered Volumetric Cyberattacks with Next-Generation Cyber-Firewall: Seddulbahir"],"prefix":"10.1007","author":[{"given":"Arif","family":"Sari","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2019,5,31]]},"reference":[{"issue":"25","key":"5_CR1","first-page":"18","volume":"181","author":"S Benqdara","year":"2018","unstructured":"Benqdara S (2018) Anomaly intrusion detection system based on unlabeled data. Int J Comput Appl 181(25):18\u201326","journal-title":"Int J Comput Appl"},{"issue":"2","key":"5_CR2","doi-asserted-by":"publisher","first-page":"235","DOI":"10.1016\/j.comnet.2004.08.014","volume":"48","author":"Dimitris Gavrilis","year":"2005","unstructured":"Gavrilis D, Dermatas E (2005) Real-time detection of distributed denial-of-service attacks using RBF networks and statistical features. Comput Netw 48(2):235\u2013245. ISSN 1389-1286. https:\/\/doi.org\/10.1016\/j.comnet.2004.08.014","journal-title":"Computer Networks"},{"key":"5_CR3","doi-asserted-by":"publisher","unstructured":"Eskin E (2000) Anomaly detection over noisy data using learned probability distribu-tions. In Proceedings of the seventeenth international conference on machine learning (ICML-2000), June 29\u2013July 2, 2000, Stanford University. Kaufmann, San Francisco, pp 255\u2013262. https:\/\/doi.org\/10.7916\/D8C53SKF","DOI":"10.7916\/D8C53SKF"},{"issue":"14","key":"5_CR4","doi-asserted-by":"publisher","first-page":"2476","DOI":"10.1016\/j.comnet.2009.05.003","volume":"53","author":"A Este","year":"2009","unstructured":"Este A, Gringoli F, Salgarelli L (2009) Support vector machines traffic classifi-cation. Comput Netw 53(14):2476\u20132490. https:\/\/doi.org\/10.1016\/j.comnet.2009.05.003","journal-title":"Comput Netw"},{"key":"5_CR5","unstructured":"Paliwal S, Gupta R (2012) Denial-of-Service, Probing & Remote to User (R2L) attack detection using genetic algorithm. Int J Comput Appl (0975\u20138887), 60(19):57\u201362"},{"key":"5_CR6","doi-asserted-by":"publisher","first-page":"221","DOI":"10.1016\/j.automatica.2016.09.040","volume":"75","author":"Yuanqing Wu","year":"2017","unstructured":"Wu Y, Meng X, Xie L, Lu R, Su H, Wu Z-G (2017) An input-based triggering approach to leader-following problems. Automatica 75(5), 221\u2013228. ISSN 0005-1098. https:\/\/doi.org\/10.1016\/j.automatica.2016.09.040","journal-title":"Automatica"},{"issue":"4","key":"5_CR7","doi-asserted-by":"publisher","first-page":"1386","DOI":"10.1109\/TCSI.2017.2748971","volume":"65","author":"Yuanqing Wu","year":"2018","unstructured":"Wu Y, Lu R (2017) Event-Based control for network systems via integral quadratic constraints. In: IEEE Trans Circuits Syst I: Regul Pap 65(4), 1386\u20131394 (2018). https:\/\/doi.org\/10.1109\/TCSI.2017.2748971","journal-title":"IEEE Transactions on Circuits and Systems I: Regular Papers"},{"key":"5_CR8","doi-asserted-by":"publisher","first-page":"183","DOI":"10.1016\/j.automatica.2016.10.020","volume":"76","author":"Yuanqing Wu","year":"2017","unstructured":"Wu Y, Lu, R, Shi, P, Su H, Wu Z-G (2017) Adaptive output synchronization of heterogeneous network with an uncertain leader. Automatica 76(5):183\u2013192. ISSN 0005-1098. https:\/\/doi.org\/10.1016\/j.automatica.2016.10.020","journal-title":"Automatica"},{"issue":"1","key":"5_CR9","doi-asserted-by":"publisher","first-page":"14","DOI":"10.1080\/23742917.2018.1476956","volume":"2","author":"Arif Sari","year":"2018","unstructured":"Sari Arif (2018) Countrywide virtual siege in the new era of cyberwarfare: remedies from the. J Cyber Secur Technol 2(1):14\u201336. https:\/\/doi.org\/10.1080\/23742917.2018.1476956","journal-title":"J Cyber Secur Technol"},{"key":"5_CR10","doi-asserted-by":"publisher","first-page":"128","DOI":"10.1016\/j.compeleceng.2018.11.008","volume":"73","author":"Arif Sari","year":"2019","unstructured":"Sari A (2019) Turkish national to mitigate countrywide. Comput Electr Eng 73:128-144. ISSN 0045-7906. https:\/\/doi.org\/10.1016\/j.compeleceng.2018.11.008","journal-title":"Computers & Electrical Engineering"},{"key":"5_CR11","unstructured":"Lua.org. (2018) The Programming Language Lua. http:\/\/www.lua.org\/. Accessed 24 Dec 2018"},{"key":"5_CR12","unstructured":"Tcpdump.org. (2018) TCPDUMP\/LIBPCAP public repository. https:\/\/www.tcpdump.org\/. Accessed 24 Dec 2018"},{"key":"5_CR13","unstructured":"Netfilter.org (2018) netfilter\/iptables project homepage\u2014The netfilter.org \u201clibnetfilter_queue\u201d project. Netfilter.org. https:\/\/netfilter.org\/projects\/libnetfilter_queue\/. Accessed 24 Dec 2018"},{"key":"5_CR14","unstructured":"Rizzo L (2012) Netmap: a novel framework for fast packet I\/O. In Proceedings of the 2012 USENIX conference on annual technical conference, 13-15 June 2012, Boston, MA, pp. 9\u20139 https:\/\/dl.acm.org\/citation.cfm?id=2342830"},{"issue":"12","key":"5_CR15","doi-asserted-by":"publisher","first-page":"510","DOI":"10.4236\/ijcns.2015.812046","volume":"8","author":"M Akkaya","year":"2015","unstructured":"Akkaya M, Agdelen Z, Haydar A, Sari A (2015) Resolution of relationship be-tween organizational performance and human resource management through nonlinear modeling. Int J Commun Netw Syst Sci 8(12):510\u2013522. https:\/\/doi.org\/10.4236\/ijcns.2015.812046","journal-title":"Int J Commun Netw Syst Sci"},{"issue":"8","key":"5_CR16","doi-asserted-by":"publisher","first-page":"719","DOI":"10.1016\/j.cose.2011.08.004","volume":"30","author":"Kim-Kwang Raymond Choo","year":"2011","unstructured":"Choo K-KR (2011) The cyber threat landscape: challenges and future research directions. Comput Secur 30(8):719-731. ISSN 0167-4048, DOI:https:\/\/doi.org\/10.1016\/j.cose.2011.08.004","journal-title":"Computers & Security"},{"key":"5_CR17","doi-asserted-by":"crossref","unstructured":"Debar H (2007) The intrusion detection message exchange format (IDMEF). Experimental network working group. RFC 4765, The IETF Trust","DOI":"10.17487\/rfc4765"},{"key":"5_CR18","unstructured":"Kibana: Explore, Visualize, Discover Data | Elastic. In: Elastic.co. https:\/\/www.elastic.co\/products\/kibana. Accessed 24 Dec 2018"},{"key":"5_CR19","unstructured":"Elasticsearch: RESTful, distributed search & analytics | elastic. In: Elastic.co. https:\/\/www.elastic.co\/products\/elasticsearch. Accessed 24 Dec 2018"},{"key":"5_CR20","doi-asserted-by":"publisher","first-page":"2","DOI":"10.1016\/j.cose.2013.04.007","volume":"39","author":"David Zhao","year":"2013","unstructured":"Zhao D, Traore I, Sayed B, Lu W, Saad S, Ghorbani A, Garant D (2013) Botnet detection based on traffic behaviour analysis and flow intervals. Comput Secur 39, Part A:2\u201316. ISSN 0167-4048. https:\/\/doi.org\/10.1016\/j.cose.2013.04.007","journal-title":"Computers & Security"},{"key":"5_CR21","doi-asserted-by":"publisher","unstructured":"Zander S, Nguyen T, Armitage G (2005) Automated traffic classification and application identification. In: The IEEE conference on local computer networks 30th anniversary (LCN\u201905), Sydney, NSW, pp. 250\u2013257. https:\/\/doi.org\/10.1109\/lcn.2005.35","DOI":"10.1109\/lcn.2005.35"},{"issue":"2","key":"5_CR22","doi-asserted-by":"publisher","first-page":"107","DOI":"10.1049\/iet-ifs.2017.0430","volume":"12","author":"Abdurrahman Pekta\u015f","year":"2018","unstructured":"Pekta\u015f A, Acarman T (2017) Malware classification based on API calls and behaviour analysis. IET Inf Secur (2017). ISSN 1751-8709. https:\/\/doi.org\/10.1049\/iet-ifs.2017.0430","journal-title":"IET Information Security"},{"issue":"4","key":"5_CR23","doi-asserted-by":"publisher","first-page":"639","DOI":"10.3233\/JCS-2010-0410","volume":"19","author":"Konrad Rieck","year":"2011","unstructured":"Rieck K, Trinius P, Willems C, Holz T (2011) Automatic analysis behavior. J Comput Secur 19(4), 639\u2013668. https:\/\/doi.org\/10.3233\/JCS-2010-0410","journal-title":"Journal of Computer Security"},{"key":"5_CR24","doi-asserted-by":"publisher","unstructured":"Saad S, Traor\u00e9 I, Ghorbani AA, Sayed B, Zhao D, Lu W, Felix J, Hakimian P (2011). Detecting P2P botnets through network behavior analysis. In: 2011 Ninth annual international conference on privacy, security and trust, pp. 174\u2013180. https:\/\/doi.org\/10.1109\/PST.2011.5971980","DOI":"10.1109\/PST.2011.5971980"},{"key":"5_CR25","doi-asserted-by":"publisher","unstructured":"Nogueira A, Salvador P, Blessa F (2010) A botnet detection system based on neural networks. In: 2010 Fifth international conference on digital telecommunications, Athens, TBD, Greece, pp. 57\u201362. https:\/\/doi.org\/10.1109\/ICDT.2010.19","DOI":"10.1109\/ICDT.2010.19"},{"key":"5_CR26","doi-asserted-by":"publisher","unstructured":"Chen CM, Ou YH, Tsai YC (2010) Web botnet detection based on flow infor-mation. In: 2010 International computer symposium (ICS2010), Tainan, pp 381-384. https:\/\/doi.org\/10.1109\/COMPSYM.2010.5685482","DOI":"10.1109\/COMPSYM.2010.5685482"},{"key":"5_CR27","doi-asserted-by":"publisher","first-page":"38","DOI":"10.1007\/978-3-642-30955-7_5","volume-title":"Information Security Theory and Practice. Security, Privacy and Trust in Computing Systems and Ambient Intelligent Ecosystems","author":"G. Kirubavathi Venkatesh","year":"2012","unstructured":"Venkatesh GK, Nadarajan RA (2012) HTTP Botnet detection using adaptive learning rate multilayer feed-forward neural network. In: Askoxylakis I, P\u00f6hls HC, Posegga J (eds) Information security theory and practice. Security, privacy and trust in computing systems and ambient intelligent ecosystems. WISTP 2012. Lecture notes in computer science, vol 7322. Springer, Berlin, Heidelberg, pp 38\u201348. https:\/\/doi.org\/10.1007\/978-3-642-30955-7_5"},{"key":"5_CR28","doi-asserted-by":"publisher","unstructured":"Wang B, Li Z, Li D, Liu F Chen H (2010) Modelling connections behaviour for web-based bots detection. In: 2010 2nd International conference on E-business and information system security, Wuhan, pp. 1\u20134. https:\/\/doi.org\/10.1109\/EBISS.2010.5473532","DOI":"10.1109\/EBISS.2010.5473532"},{"key":"5_CR29","doi-asserted-by":"publisher","unstructured":"Sawaya Y, Kubota A, Miyake Y (2011) Detection of attackers in services using anomalous host behaviour based on traffic flow statistics. In: 2011 IEEE\/IPSJ international symposium on applications and the internet, Munich, Bavaria, pp 353\u2013359. https:\/\/doi.org\/10.1109\/SAINT.2011.68","DOI":"10.1109\/SAINT.2011.68"},{"key":"5_CR30","doi-asserted-by":"publisher","unstructured":"Garc\u00eda S, Zunino A, Campo M (2012) Botnet behavior detection using network synchronism. In: Kabiri P (ed) Privacy, intrusion detection and response: technologies for protecting networks, IGI Global, Hershey, PA, pp 122\u2013144. https:\/\/doi.org\/10.4018\/978-1-60960-836-1.ch005","DOI":"10.4018\/978-1-60960-836-1.ch005"},{"key":"5_CR31","doi-asserted-by":"publisher","first-page":"159","DOI":"10.1016\/j.procs.2015.08.429","volume":"62","author":"P Clark","year":"2015","unstructured":"Clark P, Agah A (2015) Modeling firewalls for behavior analysis. Procedia Comput Sci 62:159\u2013166. https:\/\/doi.org\/10.1016\/j.procs.2015.08.429","journal-title":"Procedia Comput Sci"},{"key":"5_CR32","doi-asserted-by":"publisher","first-page":"134","DOI":"10.1016\/j.cose.2018.10.002","volume":"80","author":"D Li","year":"2018","unstructured":"Li D, Guo H, Zhou J, Zhou L, Wong J (2018) SCADAWall: a CPI-enabled firewall model for SCADA security. Comput Secur 80:134\u2013154. https:\/\/doi.org\/10.1016\/j.cose.2018.10.002","journal-title":"Comput Secur"},{"key":"5_CR33","unstructured":"Marczak B, Weaver N, Dalek J, Ensafi R, Fifield D, McKune S, Rey A, Scott-Railton J, Deibert R, Paxson V (2018) China\u2019s great cannon. In: The Citizen Lab. https:\/\/citizenlab.org\/2015\/04\/chinas-great-cannon\/. Accessed 24 Dec 2018"},{"issue":"6354","key":"5_CR34","doi-asserted-by":"publisher","first-page":"856","DOI":"10.1126\/science.357.6354.856","volume":"357","author":"Dennis Normile","year":"2017","unstructured":"Normile D (2017) Science suffers as China plugs holes in Great Firewall. Science 357(6354):856\u2013856. https:\/\/doi.org\/10.1126\/science.357.6354.856","journal-title":"Science"},{"key":"5_CR35","doi-asserted-by":"crossref","unstructured":"Wasserstrom J (2018) Censored: distraction and diversion inside China\u2019s great firewall margaret E roberts princeton Oxford: Princeton University Press xii\u2009+\u2009271\u00a0pp. $29.95; \u00a324.95 ISBN 978-0-6911-7886-8. The China Quart 236:1206\u20131208","DOI":"10.1017\/S0305741018001431"},{"issue":"1","key":"5_CR36","doi-asserted-by":"publisher","first-page":"61","DOI":"10.1515\/popets-2015-0005","volume":"2015","author":"Roya Ensafi","year":"2015","unstructured":"Ensafi R, Winter P, Mueen A, Crandall J (2015) Analyzing the great firewall of China over space and time. In: Proceedings on privacy enhancing technologies, vol 2015, No 1, pp 61\u201376. https:\/\/doi.org\/10.1515\/popets-2015-0005","journal-title":"Proceedings on Privacy Enhancing Technologies"}],"container-title":["Security, Privacy and Trust in the IoT Environment"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-030-18075-1_5","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,9,3]],"date-time":"2022-09-03T12:34:48Z","timestamp":1662208488000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-030-18075-1_5"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2019]]},"ISBN":["9783030180744","9783030180751"],"references-count":36,"URL":"https:\/\/doi.org\/10.1007\/978-3-030-18075-1_5","relation":{},"subject":[],"published":{"date-parts":[[2019]]},"assertion":[{"value":"31 May 2019","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}}]}}