{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,5,9]],"date-time":"2025-05-09T16:10:00Z","timestamp":1746807000850,"version":"3.40.5"},"publisher-location":"Cham","reference-count":25,"publisher":"Springer International Publishing","isbn-type":[{"type":"print","value":"9783030925703"},{"type":"electronic","value":"9783030925710"}],"license":[{"start":{"date-parts":[[2021,1,1]],"date-time":"2021-01-01T00:00:00Z","timestamp":1609459200000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springer.com\/tdm"},{"start":{"date-parts":[[2021,1,1]],"date-time":"2021-01-01T00:00:00Z","timestamp":1609459200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2021]]},"DOI":"10.1007\/978-3-030-92571-0_2","type":"book-chapter","created":{"date-parts":[[2021,12,14]],"date-time":"2021-12-14T13:56:06Z","timestamp":1639490166000},"page":"26-37","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":2,"title":["WiP: Slow Rate HTTP Attack Detection with\u00a0Behavioral Parameters"],"prefix":"10.1007","author":[{"given":"Shaurya","family":"Sood","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Manash","family":"Saikia","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Neminath","family":"Hubballi","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2021,12,10]]},"reference":[{"key":"2_CR1","unstructured":"Akamai. https:\/\/www.akamai.com\/us\/en\/products\/security\/kona-ddos-defender.jsp. Accessed 25 July 2021"},{"key":"2_CR2","doi-asserted-by":"crossref","unstructured":"Aqil, A., et al.: Detection of stealthy TCP-based dos attacks. In: MILCOM 2015\u20132015 IEEE Military Communications Conference, pp. 348\u2013353 (2015)","DOI":"10.1109\/MILCOM.2015.7357467"},{"key":"2_CR3","unstructured":"Calvert, C., Kemp, C., Khoshgoftaar, T.M., Najafabadi, M.M.: Detecting slow http post dos attacks using NetFlow features. In: FLAIRS 2019: Proceedings of the Thirty-Second International Florida Artificial Intelligence Research Society Conference, pp. 387\u2013390 (2019)"},{"key":"2_CR4","unstructured":"Cao, X.: Model Selection Based on Expected Squared Hellinger Distance. Colorado State University (2007)"},{"key":"2_CR5","unstructured":"CLOUDFLARE. https:\/\/www.cloudflare.com\/en-in\/learning\/ddos\/application-layer-ddos-attack\/. Accessed 25 July 2021"},{"key":"2_CR6","unstructured":"Core: (2019). https:\/\/httpd.apache.org\/docs\/2.4\/mod\/core.html. Accessed 8 Aug 2021"},{"key":"2_CR7","unstructured":"CURL. https:\/\/curl.se\/docs\/httpscripting.html. Accessed 25 July 2021"},{"key":"2_CR8","doi-asserted-by":"crossref","unstructured":"Dantas, Y.G., Nigam, V., Fonseca, I.E.: A selective defense for application layer DDoS attacks. In: JISIC 2014: Proceedings of the IEEE Joint Intelligence and Security Informatics Conference, pp. 75\u201382 (2014)","DOI":"10.1109\/JISIC.2014.21"},{"key":"2_CR9","doi-asserted-by":"crossref","unstructured":"Eid, M.S.A., Aida, H.: Secure double-layered defense against HTTP-DDoS attacks. In: COMPSAC 2017: Proceedings of the 41st Annual Computer Software and Applications Conference, vol. 2, pp. 572\u2013577 (2017)","DOI":"10.1109\/COMPSAC.2017.207"},{"key":"2_CR10","doi-asserted-by":"crossref","unstructured":"EID, M.S.A., Aida, H.: Trustworthy DDoS defense: design, proof of concept implementation and testing. IEICE Trans. Inf. Syst. D(8), 1738\u20131750 (2017)","DOI":"10.1587\/transinf.2016ICP0024"},{"issue":"3","key":"2_CR11","doi-asserted-by":"publisher","first-page":"730","DOI":"10.1109\/TIFS.2016.2632071","volume":"12","author":"D Golait","year":"2017","unstructured":"Golait, D., Hubballi, N.: Detecting anomalous behavior in VoIP systems: a discrete event system modeling. IEEE Trans. Inf. Forensics Secur. 12(3), 730\u2013745 (2017)","journal-title":"IEEE Trans. Inf. Forensics Secur."},{"key":"2_CR12","doi-asserted-by":"crossref","unstructured":"Hubballi, N., Tripathi, N.: A closer look into DHCP starvation attack in wireless networks. Comput. Secur. 65(C), 387\u2013404 (2017)","DOI":"10.1016\/j.cose.2016.10.002"},{"key":"2_CR13","unstructured":"IMPERVA. https:\/\/www.imperva.com\/learn\/ddos\/dns-flood\/. Accessed 08 Aug 2021"},{"key":"2_CR14","doi-asserted-by":"crossref","unstructured":"Jia, Q., Wang, H., Fleck, D., Li, F., Stavrou, A., Powell, W.: Catch me if you can: a cloud-enabled DDoS defense. In: DSN 2014: Proceedings of the 44th Annual IEEE\/IFIP International Conference on Dependable Systems and Networks, pp. 264\u2013275 (2014)","DOI":"10.1109\/DSN.2014.35"},{"key":"2_CR15","unstructured":"Apache JMeter. https:\/\/jmeter.apache.org\/. Accessed 25 July 2021"},{"key":"2_CR16","doi-asserted-by":"crossref","unstructured":"Lukaseder, T., Hunt, A., Stehle, C., Wagner, D., Van Der Heijden, R., Kargl, F.: An extensible host-agnostic framework for SDN-assisted DDoS-mitigation. In: LCN 2017: Proceedings of the 42nd Conference on Local Computer Networks, pp. 619\u2013622 (2017)","DOI":"10.1109\/LCN.2017.103"},{"key":"2_CR17","unstructured":"mod_antiloris (2013). https:\/\/sourceforge.net\/projects\/mod-antiloris\/. Accessed 8 Aug 2021"},{"key":"2_CR18","unstructured":"mod_limitipconn (2002). http:\/\/dominia.org\/djao\/limitipconn.html. Accessed 8 Aug 2021"},{"key":"2_CR19","unstructured":"mod_reqtimeout (2019). https:\/\/httpd.apache.org\/docs\/trunk\/mod\/mod_reqtimeout.html. Accessed 8 Aug 2021"},{"key":"2_CR20","unstructured":"Radware. https:\/\/www.radware.com\/security\/ddos-knowledge-center\/ddos-attack-types\/common-ddos-attack-tools\/. Accessed 25 July 2021"},{"issue":"C","key":"2_CR21","doi-asserted-by":"publisher","first-page":"255","DOI":"10.1016\/j.cose.2017.09.009","volume":"72","author":"N Tripathi","year":"2018","unstructured":"Tripathi, N., Hubballi, N.: Slow rate denial of service attacks against HTTP\/2 and detection. Comput. Secur. 72(C), 255\u2013272 (2018)","journal-title":"Comput. Secur."},{"issue":"4","key":"2_CR22","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1145\/3448291","volume":"54","author":"N Tripathi","year":"2021","unstructured":"Tripathi, N., Hubballi, N.: Application layer denial-of-service attacks and defense mechanisms: a survey. ACM Comput. Surv. 54(4), 1\u201333 (2021)","journal-title":"ACM Comput. Surv."},{"key":"2_CR23","doi-asserted-by":"publisher","first-page":"102","DOI":"10.1016\/j.cose.2020.102135","volume":"102","author":"N Tripathi","year":"2021","unstructured":"Tripathi, N., Hubballi, N.: Preventing time synchronization in NTP broadcast mode. Comput. Secur. 102, 102\u2013135 (2021)","journal-title":"Comput. Secur."},{"key":"2_CR24","unstructured":"Tshark. https:\/\/tshark.dev\/setup\/install\/. Accessed 8 Aug 2021"},{"key":"2_CR25","doi-asserted-by":"publisher","first-page":"24694","DOI":"10.1109\/ACCESS.2018.2831284","volume":"6","author":"D Yin","year":"2018","unstructured":"Yin, D., Zhang, L., Yang, K.: A DDoS attack detection and mitigation with software-defined internet of things framework. IEEE Access 6, 24694\u201324705 (2018)","journal-title":"IEEE Access"}],"container-title":["Lecture Notes in Computer Science","Information Systems Security"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-030-92571-0_2","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2021,12,14]],"date-time":"2021-12-14T13:57:36Z","timestamp":1639490256000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-030-92571-0_2"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2021]]},"ISBN":["9783030925703","9783030925710"],"references-count":25,"URL":"https:\/\/doi.org\/10.1007\/978-3-030-92571-0_2","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2021]]},"assertion":[{"value":"10 December 2021","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"ICISS","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"International Conference on Information Systems Security","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Patna","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"India","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2021","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"16 December 2021","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"20 December 2021","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"17","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"iciss2021","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"https:\/\/www.iitp.ac.in\/~iciss2021\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Single-blind","order":1,"name":"type","label":"Type","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"Microsoft CMT","order":2,"name":"conference_management_system","label":"Conference Management System","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"48","order":3,"name":"number_of_submissions_sent_for_review","label":"Number of Submissions Sent for Review","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"9","order":4,"name":"number_of_full_papers_accepted","label":"Number of Full Papers Accepted","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"2","order":5,"name":"number_of_short_papers_accepted","label":"Number of Short Papers Accepted","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"19% - The value is computed by the equation \"Number of Full Papers Accepted \/ Number of Submissions Sent for Review * 100\" and then rounded to a whole number.","order":6,"name":"acceptance_rate_of_full_papers","label":"Acceptance Rate of Full Papers","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"3","order":7,"name":"average_number_of_reviews_per_paper","label":"Average Number of Reviews per Paper","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"3","order":8,"name":"average_number_of_papers_per_reviewer","label":"Average Number of Papers per Reviewer","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"Yes","order":9,"name":"external_reviewers_involved","label":"External Reviewers Involved","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"4 works in progress papers were also accepted. 65 papers were received in total, but 17 papers were rejected by the PC chairs without sending for review.","order":10,"name":"additional_info_on_review_process","label":"Additional Info on Review Process","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}}]}}