{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,1,25]],"date-time":"2026-01-25T05:02:52Z","timestamp":1769317372859,"version":"3.49.0"},"publisher-location":"Cham","reference-count":38,"publisher":"Springer International Publishing","isbn-type":[{"value":"9783030496685","type":"print"},{"value":"9783030496692","type":"electronic"}],"license":[{"start":{"date-parts":[[2020,1,1]],"date-time":"2020-01-01T00:00:00Z","timestamp":1577836800000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2020,1,1]],"date-time":"2020-01-01T00:00:00Z","timestamp":1577836800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2020]]},"DOI":"10.1007\/978-3-030-49669-2_14","type":"book-chapter","created":{"date-parts":[[2020,6,17]],"date-time":"2020-06-17T23:09:17Z","timestamp":1592435357000},"page":"241-260","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":4,"title":["Predictive Analytics to Prevent Voice over IP International Revenue Sharing Fraud"],"prefix":"10.1007","author":[{"given":"Yoram J.","family":"Meijaard","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Bram C. M.","family":"Cappers","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Josh G. M.","family":"Mengerink","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Nicola","family":"Zannone","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2020,6,18]]},"reference":[{"key":"14_CR1","doi-asserted-by":"crossref","unstructured":"Ahmad, S., Purdy, S.: Real-time anomaly detection for streaming analytics. arXiv preprint arXiv:1607.02480 (2016)","DOI":"10.1016\/j.neucom.2017.04.070"},{"key":"14_CR2","unstructured":"Alldrin, N., Smith, A., Turnbull, D.: Clustering with EM and K-means. Technical report, University of San Diego (2003)"},{"key":"14_CR3","unstructured":"Becker, R.A., et al.: Clustering anonymized mobile call detail records to find usage groups. In: Workshop on Pervasive and Urban Applications (2011)"},{"issue":"1","key":"14_CR4","doi-asserted-by":"publisher","first-page":"20","DOI":"10.1198\/TECH.2009.08136","volume":"52","author":"RA Becker","year":"2010","unstructured":"Becker, R.A., Volinsky, C., Wilks, A.R.: Fraud detection in telecommunications: history and lessons learned. Technometrics 52(1), 20\u201333 (2010)","journal-title":"Technometrics"},{"key":"14_CR5","unstructured":"Burge, P., Shawe-Taylor, J., et al.: Detecting cellular fraud using adaptive prototypes. In: AI Approaches to Fraud Detection and Risk Management, pp. 9\u201313 (1997)"},{"key":"14_CR6","unstructured":"Candel, A., Parmar, V., LeDell, E., Arora, A.: Deep learning with H2O. H2O. AI Inc. (2016)"},{"key":"14_CR7","unstructured":"Cappers, B.: Interactive visualization of event logs for cybersecurity. Ph.D. thesis, Technische Universiteit Eindhoven (2018)"},{"issue":"3","key":"14_CR8","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1145\/1541880.1541882","volume":"41","author":"V Chandola","year":"2009","unstructured":"Chandola, V., Banerjee, A., Kumar, V.: Anomaly detection: a survey. ACM Comput. Surv. 41(3), 1\u201358 (2009)","journal-title":"ACM Comput. Surv."},{"issue":"20","key":"14_CR9","doi-asserted-by":"publisher","first-page":"12","DOI":"10.3182\/20130902-3-CN-3020.00044","volume":"46","author":"Z Ding","year":"2013","unstructured":"Ding, Z., Fei, M.: An anomaly detection approach based on isolation forest algorithm for streaming data using sliding window. IFAC Proc. Vol. 46(20), 12\u201317 (2013)","journal-title":"IFAC Proc. Vol."},{"key":"14_CR10","volume-title":"Feature Engineering for Machine Learning and Data Analytics","author":"G Dong","year":"2018","unstructured":"Dong, G., Liu, H.: Feature Engineering for Machine Learning and Data Analytics. CRC Press, Boco Raton (2018)"},{"issue":"7","key":"14_CR11","doi-asserted-by":"publisher","first-page":"research0036.1","DOI":"10.1186\/gb-2002-3-7-research0036","volume":"3","author":"Sandrine Dudoit","year":"2002","unstructured":"Dudoit, S., Fridlyand, J.: A prediction-based resampling method for estimating the number of clusters in a dataset. Genome Biol. 3(7) (2002). https:\/\/doi.org\/10.1186\/gb-2002-3-7-research0036","journal-title":"Genome Biology"},{"key":"14_CR12","doi-asserted-by":"crossref","unstructured":"Elagib, S.B., Hashim, A.-H.A., Olanrewaju, R.: CDR analysis using big data technology. In: International Conference on Computing, Control, Networking, Electronics and Embedded Systems Engineering, pp. 467\u2013471. IEEE (2015)","DOI":"10.1109\/ICCNEEE.2015.7381414"},{"key":"14_CR13","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1007\/978-3-319-66402-6_1","volume-title":"Computer Security \u2013 ESORICS 2017","author":"S Etalle","year":"2017","unstructured":"Etalle, S.: From intrusion detection to software design. In: Foley, S.N., Gollmann, D., Snekkenes, E. (eds.) ESORICS 2017. LNCS, vol. 10492, pp. 1\u201310. Springer, Cham (2017). https:\/\/doi.org\/10.1007\/978-3-319-66402-6_1"},{"key":"14_CR14","series-title":"Lecture Notes in Computer Science (Lecture Notes in Artificial Intelligence)","doi-asserted-by":"publisher","first-page":"526","DOI":"10.1007\/11790853_41","volume-title":"Advances in Data Mining. Applications in Medicine, Web Mining, Marketing, Image and Signal Mining","author":"P Ferreira","year":"2006","unstructured":"Ferreira, P., Alves, R., Belo, O., Cortes\u00e3o, L.: Establishing fraud detection patterns based on signatures. In: Perner, P. (ed.) ICDM 2006. LNCS (LNAI), vol. 4065, pp. 526\u2013538. Springer, Heidelberg (2006). https:\/\/doi.org\/10.1007\/11790853_41"},{"key":"14_CR15","unstructured":"FGSServices: Are you at risk from Toll Fraud? (2017). https:\/\/fgsservices.co.uk\/fgs-telecoms\/systems\/systems\/toll-fraud\/"},{"key":"14_CR16","volume-title":"There\u2019s No Such Thing as a Free Lunch","author":"M Friedman","year":"1975","unstructured":"Friedman, M.: There\u2019s No Such Thing as a Free Lunch. Open Court LaSalle, Peru (1975)"},{"key":"14_CR17","unstructured":"Gibson, C.: Europol Cyber Fraud Intelligence 2019 Report (2019). https:\/\/www.europol.europa.eu\/sites\/default\/files\/documents\/cytel_fraud_intelligence_notification.pdf"},{"issue":"1","key":"14_CR18","doi-asserted-by":"publisher","first-page":"29","DOI":"10.1148\/radiology.143.1.7063747","volume":"143","author":"JA Hanley","year":"1982","unstructured":"Hanley, J.A., McNeil, B.J.: The meaning and use of the area under a receiver operating characteristic (ROC) curve. Radiology 143(1), 29\u201336 (1982)","journal-title":"Radiology"},{"key":"14_CR19","unstructured":"Ighneiwa, I., Mohamed, H.: Bypass fraud detection: artificial intelligence approach. arXiv preprint arXiv:1711.04627 (2017)"},{"key":"14_CR20","doi-asserted-by":"crossref","unstructured":"Indyk, P., Motwani, R.: Approximate nearest neighbors: towards removing the curse of dimensionality. In: Symposium on Theory of Computing, pp. 604\u2013613. ACM (1998)","DOI":"10.1145\/276698.276876"},{"key":"14_CR21","unstructured":"Integrated Solutions: Every business needs to know toll fraud and VoIP (2015). http:\/\/www.integratedcom.net\/every-business-needs-know-toll-fraud-voip\/"},{"key":"14_CR22","doi-asserted-by":"crossref","unstructured":"Kou, Y., Lu, C.-T., Sirwongwattana, S., Huang, Y.-P.: Survey of fraud detection techniques. In: International Conference on Networking, Sensing and Control, vol. 2, pp. 749\u2013754. IEEE (2004)","DOI":"10.1109\/ICNSC.2004.1297040"},{"key":"14_CR23","unstructured":"K\u00fcbler, S., Massoth, M., Wiens, A., Wiens, T.: Toll fraud detection in voice over IP networks using behavior patterns on unlabeled data. In: International Conference on Networks, pp. 191\u2013197 (2015)"},{"key":"14_CR24","doi-asserted-by":"crossref","unstructured":"Kumar, M., Hanumanthappa, M., Kumar, T.S.: Crime investigation and criminal network analysis using archive call detail records. In: International Conference on Advanced Computing, pp. 46\u201350. IEEE (2017)","DOI":"10.1109\/ICoAC.2017.7951743"},{"key":"14_CR25","doi-asserted-by":"crossref","unstructured":"Liu, F.T., Ting, K.M., Zhou, Z.: Isolation forest. In: International Conference on Data Mining, pp. 413\u2013422. IEEE (2008)","DOI":"10.1109\/ICDM.2008.17"},{"key":"14_CR26","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"256","DOI":"10.1007\/978-3-642-41154-0_19","volume-title":"Web Information Systems Engineering \u2013 WISE 2013","author":"N Modani","year":"2013","unstructured":"Modani, N., Dey, K., Gupta, R., Godbole, S.: CDR analysis based telco churn prediction and customer behavior insights: a case study. In: Lin, X., Manolopoulos, Y., Srivastava, D., Huang, G. (eds.) WISE 2013. LNCS, vol. 8181, pp. 256\u2013269. Springer, Heidelberg (2013). https:\/\/doi.org\/10.1007\/978-3-642-41154-0_19"},{"key":"14_CR27","series-title":"Lecture Notes in Computer Science (Lecture Notes in Artificial Intelligence)","doi-asserted-by":"publisher","first-page":"150","DOI":"10.1007\/978-3-642-38658-9_14","volume-title":"Artificial Intelligence and Soft Computing","author":"D Olszewski","year":"2013","unstructured":"Olszewski, D., Kacprzyk, J., Zadro\u017cny, S.: Employing self-organizing map for fraud detection. In: Rutkowski, L., Korytkowski, M., Scherer, R., Tadeusiewicz, R., Zadeh, L.A., Zurada, J.M. (eds.) ICAISC 2013. LNCS (LNAI), vol. 7894, pp. 150\u2013161. Springer, Heidelberg (2013). https:\/\/doi.org\/10.1007\/978-3-642-38658-9_14"},{"key":"14_CR28","unstructured":"Pelroth, N.: Phone hackers dial and redial to steal billions (2014). https:\/\/www.nytimes.com\/2014\/10\/20\/technology\/dial-and-redial-phone-hackers-stealing-billions-.html"},{"key":"14_CR29","doi-asserted-by":"publisher","DOI":"10.1201\/9781482294569","volume-title":"Business Telecom Systems: A Guide to Choosing the Best Technologies and Services","author":"K Peterson","year":"2000","unstructured":"Peterson, K.: Business Telecom Systems: A Guide to Choosing the Best Technologies and Services. CRC Press, Boco Raton (2000)"},{"issue":"3","key":"14_CR30","first-page":"114","volume":"17","author":"S Phithakkitnukoon","year":"2008","unstructured":"Phithakkitnukoon, S., Dantu, R., Baatarjav, E.-A.: VoIP security-attacks and solutions. Inf. Secur. J.: Glob. Perspect. 17(3), 114\u2013123 (2008)","journal-title":"Inf. Secur. J.: Glob. Perspect."},{"key":"14_CR31","doi-asserted-by":"crossref","unstructured":"Rosenberg, J., et al.: SIP: Session initiation protocol. RFC 3261, IETF (2002)","DOI":"10.17487\/rfc3261"},{"key":"14_CR32","doi-asserted-by":"crossref","unstructured":"Sahin, M., Francillon, A., Gupta, P., Ahamad, M.: Sok: fraud in telephony networks. In: European Symposium on Security and Privacy, pp. 235\u2013250. IEEE (2017)","DOI":"10.1109\/EuroSP.2017.40"},{"key":"14_CR33","unstructured":"Tan, S.C., Ting, K.M., Liu, T.F.: Fast anomaly detection for streaming data. In: International Joint Conference on Artificial Intelligence, pp. 1511\u20131516. AAAI Press (2011)"},{"key":"14_CR34","unstructured":"Tech Advance: Business at risk of toll fraud (2018). https:\/\/techadvance.co.uk\/blog\/2018\/05\/businesses-at-risk-of-toll-fraud\/"},{"key":"14_CR35","doi-asserted-by":"publisher","first-page":"88","DOI":"10.2481\/dsj.007-020","volume":"8","author":"K Wang","year":"2009","unstructured":"Wang, K., Wang, B., Peng, L.: CVAP: validation for cluster analyses. Data Sci. J. 8, 88\u201393 (2009)","journal-title":"Data Sci. J."},{"issue":"1","key":"14_CR36","doi-asserted-by":"publisher","first-page":"69","DOI":"10.1023\/A:1018046501280","volume":"23","author":"G Widmer","year":"1996","unstructured":"Widmer, G., Kubat, M.: Learning in the presence of concept drift and hidden contexts. Mach. Learn. 23(1), 69\u2013101 (1996). https:\/\/doi.org\/10.1023\/A:1018046501280","journal-title":"Mach. Learn."},{"key":"14_CR37","unstructured":"Wiens, A., K\u00fcbler, S., Wiens, T., Massoth, M.: Improvement of user profiling, call destination profiling and behavior pattern recognition approaches for telephony toll fraud detection. Int. J. Adv. Secur. 8(1&2) (2015)"},{"key":"14_CR38","unstructured":"Wiens, A., Wiens, T., Massoth, M.: A new unsupervised user profiling approach for detecting toll fraud in VoIP networks. In: Advanced International Conference on Telecommunications, pp. 63\u201369 (2014)"}],"container-title":["Lecture Notes in Computer Science","Data and Applications Security and Privacy XXXIV"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-030-49669-2_14","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,8,7]],"date-time":"2024-08-07T21:19:01Z","timestamp":1723065541000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-030-49669-2_14"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2020]]},"ISBN":["9783030496685","9783030496692"],"references-count":38,"URL":"https:\/\/doi.org\/10.1007\/978-3-030-49669-2_14","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"value":"0302-9743","type":"print"},{"value":"1611-3349","type":"electronic"}],"subject":[],"published":{"date-parts":[[2020]]},"assertion":[{"value":"18 June 2020","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"DBSec","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"IFIP Annual Conference on Data and Applications Security and Privacy","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Regensburg","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Germany","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2020","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"25 June 2020","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"26 June 2020","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"34","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"dbsec2020","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"https:\/\/dbsec2020.ur.de\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Single-blind","order":1,"name":"type","label":"Type","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"EasyChair","order":2,"name":"conference_management_system","label":"Conference Management System","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"39","order":3,"name":"number_of_submissions_sent_for_review","label":"Number of Submissions Sent for Review","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"14","order":4,"name":"number_of_full_papers_accepted","label":"Number of Full Papers Accepted","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"8","order":5,"name":"number_of_short_papers_accepted","label":"Number of Short Papers Accepted","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"36% - The value is computed by the equation \"Number of Full Papers Accepted \/ Number of Submissions Sent for Review * 100\" and then rounded to a whole number.","order":6,"name":"acceptance_rate_of_full_papers","label":"Acceptance Rate of Full Papers","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"3","order":7,"name":"average_number_of_reviews_per_paper","label":"Average Number of Reviews per Paper","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"3","order":8,"name":"average_number_of_papers_per_reviewer","label":"Average Number of Papers per Reviewer","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"Yes","order":9,"name":"external_reviewers_involved","label":"External Reviewers Involved","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"The conference was held virutally due to the COVID-19 pandemic.","order":10,"name":"additional_info_on_review_process","label":"Additional Info on Review Process","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"This content has been made available to all.","name":"free","label":"Free to read"}]}}