{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,3,27]],"date-time":"2025-03-27T14:36:29Z","timestamp":1743086189202,"version":"3.40.3"},"publisher-location":"Cham","reference-count":32,"publisher":"Springer International Publishing","isbn-type":[{"type":"print","value":"9783031063640"},{"type":"electronic","value":"9783031063657"}],"license":[{"start":{"date-parts":[[2022,1,1]],"date-time":"2022-01-01T00:00:00Z","timestamp":1640995200000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springer.com\/tdm"},{"start":{"date-parts":[[2022,1,1]],"date-time":"2022-01-01T00:00:00Z","timestamp":1640995200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2022]]},"DOI":"10.1007\/978-3-031-06365-7_5","type":"book-chapter","created":{"date-parts":[[2022,6,3]],"date-time":"2022-06-03T07:04:08Z","timestamp":1654239848000},"page":"72-92","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":0,"title":["Find My IoT Device \u2013 An Efficient and\u00a0Effective Approximate Matching Algorithm to\u00a0Identify IoT Traffic Flows"],"prefix":"10.1007","author":[{"given":"Thomas","family":"G\u00f6bel","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Frieder","family":"Uhlig","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Harald","family":"Baier","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2022,6,4]]},"reference":[{"key":"5_CR1","doi-asserted-by":"crossref","unstructured":"Aksoy, A., Gunes, M.H.: Automated IoT device identification using network traffic. In: Proceedings of the IEEE International Conference on Communications (ICC), Shanghai, China, pp. 1\u20137 (2019)","DOI":"10.1109\/ICC.2019.8761559"},{"key":"5_CR2","doi-asserted-by":"crossref","unstructured":"Aksoy, A.: Network traffic fingerprinting using machine learning and evolutionary computing automated IoT device identification using network traffic. Ph.D. thesis, University of Nevada (2019)","DOI":"10.1109\/ICC.2019.8761559"},{"key":"5_CR3","doi-asserted-by":"crossref","unstructured":"Bai, L., Yao, L., Kanhere, S.S., Wang, X., Yang, Z.: Automatic device classification from network traffic streams of internet of things. In: 2018 IEEE 43rd Conference on Local Computer Networks (LCN), pp. 1\u20139. IEEE, October 2018","DOI":"10.1109\/LCN.2018.8638232"},{"key":"5_CR4","doi-asserted-by":"publisher","unstructured":"Bezerra, V.H., da Costa, V.G.T., Barbon Junior, S., Miani, R.S., Zarpel\u00e3o, B.B.: IoTDS: a one-class classification approach to detect botnets in internet of things devices. Sensors 19, 3188 (2019). https:\/\/doi.org\/10.3390\/s19143188","DOI":"10.3390\/s19143188"},{"issue":"S1","key":"5_CR5","doi-asserted-by":"publisher","first-page":"18","DOI":"10.1016\/j.diin.2014.03.003","volume":"11","author":"P Bjelland","year":"2014","unstructured":"Bjelland, P., Franke, K., Arnes, A.: Practical use of approximate hash-based matching in digital investigations. Digit. Investig. 11(S1), 18\u201326 (2014)","journal-title":"Digit. Investig."},{"key":"5_CR6","series-title":"Lecture Notes of the Institute for Computer Sciences, Social Informatics and Telecommunications Engineering","doi-asserted-by":"publisher","first-page":"167","DOI":"10.1007\/978-3-642-39891-9_11","volume-title":"Digital Forensics and Cyber Crime","author":"F Breitinger","year":"2013","unstructured":"Breitinger, F., Baier, H.: Similarity preserving hashing: eligible properties and a new algorithm. In: Rogers, M., Seigfried-Spellar, K.C. (eds.) ICDF2C 2012. LNICST, vol. 114, pp. 167\u2013182. Springer, Heidelberg (2013). https:\/\/doi.org\/10.1007\/978-3-642-39891-9_11"},{"issue":"2","key":"5_CR7","first-page":"23","volume":"9","author":"F Breitinger","year":"2014","unstructured":"Breitinger, F., Baggili, I.: File detection on network traffic using approximate matching. J. Digit. Forensics Secur. Law 9(2), 23\u201336 (2014)","journal-title":"J. Digit. Forensics Secur. Law"},{"key":"5_CR8","doi-asserted-by":"publisher","unstructured":"Charyyev, B., Gunes, M.H.: Locality-sensitive IoT network traffic fingerprinting for device identification. IEEE Internet Things J. 8(3), 1272\u20131281 (2021). https:\/\/doi.org\/10.1109\/JIOT.2020.3035087","DOI":"10.1109\/JIOT.2020.3035087"},{"key":"5_CR9","doi-asserted-by":"publisher","unstructured":"Charyyev, B., Gunes, M.H.: IoT traffic flow identification using locality sensitive hashes. In: ICC 2020\u20132020 IEEE International Conference on Communications (ICC), pp. 1\u20136 (2020). https:\/\/doi.org\/10.1109\/ICC40277.2020.9148743","DOI":"10.1109\/ICC40277.2020.9148743"},{"key":"5_CR10","doi-asserted-by":"crossref","unstructured":"Dong, S., Li, Z., Tang, D., Chen, J., Sun, M., Zhang, K.: Your smart home can\u2019t keep a secret: towards automated fingerprinting of IoT traffic with neural networks. arXiv preprint arXiv:1909.00104 (2019)","DOI":"10.1145\/3320269.3384732"},{"key":"5_CR11","doi-asserted-by":"publisher","unstructured":"Fan, B., Andersen, D.G., Kaminsky, M., Mitzenmacher, M.D.: Cuckoo filter: practically better than bloom. In: Proceedings of the 10th ACM International on Conference on emerging Networking Experiments and Technologies (CoNEXT 2014), pp. 75\u201388. Association for Computing Machinery, New York (2014). https:\/\/doi.org\/10.1145\/2674005.2674994","DOI":"10.1145\/2674005.2674994"},{"key":"5_CR12","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-88381-2","volume-title":"Advances in Digital Forensics XVII","author":"T G\u00f6bel","year":"2021","unstructured":"G\u00f6bel, T., Uhlig, F., Baier, H.: Empirical evaluation of network traffic analysis using approximate matching algorithms. In: Peterson, G., Shenoi, S. (eds.) Advances in Digital Forensics XVII. Springer, Cham (2021). https:\/\/doi.org\/10.1007\/978-3-030-88381-2"},{"key":"5_CR13","series-title":"Lecture Notes of the Institute for Computer Sciences, Social Informatics and Telecommunications Engineering","doi-asserted-by":"publisher","first-page":"39","DOI":"10.1007\/978-3-319-25512-5_4","volume-title":"Digital Forensics and Cyber Crime","author":"V Gupta","year":"2015","unstructured":"Gupta, V., Breitinger, F.: How cuckoo filter can improve existing approximate matching techniques. In: James, J.I., Breitinger, F. (eds.) ICDF2C 2015. LNICST, vol. 157, pp. 39\u201352. Springer, Cham (2015). https:\/\/doi.org\/10.1007\/978-3-319-25512-5_4"},{"key":"5_CR14","doi-asserted-by":"publisher","unstructured":"Hossain, M.M., Fotouhi, M., Hasan, R.: Towards an analysis of security issues, challenges, and open problems in the internet of things. In: 2015 IEEE World Congress on Services, pp. 21\u201328 (2015). https:\/\/doi.org\/10.1109\/SERVICES.2015.12","DOI":"10.1109\/SERVICES.2015.12"},{"key":"5_CR15","doi-asserted-by":"crossref","unstructured":"Kornblum, J.: Identifying almost identical files using context triggered piecewise hashing. In: Proceedings of the Sixth Annual Digital Forensic Research Workshop, vol. 3, pp. 91\u201397 (2006)","DOI":"10.1016\/j.diin.2006.06.015"},{"key":"5_CR16","doi-asserted-by":"publisher","first-page":"12","DOI":"10.1016\/j.diin.2019.01.027","volume":"28","author":"L Liebler","year":"2019","unstructured":"Liebler, L., Baier, H.: Towards exact and inexact approximate matching of executable binaries. Digit. Investig. 28, 12\u201321 (2019)","journal-title":"Digit. Investig."},{"key":"5_CR17","series-title":"Lecture Notes of the Institute for Computer Sciences, Social Informatics and Telecommunications Engineering","doi-asserted-by":"publisher","first-page":"144","DOI":"10.1007\/978-3-319-73697-6_11","volume-title":"Digital Forensics and Cyber Crime","author":"D Lillis","year":"2018","unstructured":"Lillis, D., Breitinger, F., Scanlon, M.: Expediting MRSH-v2 approximate matching with hierarchical bloom filter trees. In: Matou\u0161ek, P., Schmiedecker, M. (eds.) ICDF2C 2017. LNICST, vol. 216, pp. 144\u2013157. Springer, Cham (2018). https:\/\/doi.org\/10.1007\/978-3-319-73697-6_11"},{"key":"5_CR18","doi-asserted-by":"publisher","unstructured":"Marzano, A., et al.: The evolution of Bashlite and Mirai IoT botnets. In: IEEE Symposium on Computers and Communications (ISCC) 2018, pp. 00813\u201300818 (2018). https:\/\/doi.org\/10.1109\/ISCC.2018.8538636","DOI":"10.1109\/ISCC.2018.8538636"},{"key":"5_CR19","doi-asserted-by":"crossref","unstructured":"Oliver, J., Cheng, C., Chen, Y.: TLSH - a locality sensitive hash. In: Proceedings of the Fourth Cybercrime and Trustworthy Computing Workshop, pp. 7\u201313 (2013)","DOI":"10.1109\/CTC.2013.9"},{"key":"5_CR20","doi-asserted-by":"crossref","unstructured":"Miettinen, M., Marchal, S., Hafeez, I., Asokan, N., Sadeghi, A., Tarkoma, S.: IoT SENTINEL: automated device-type identification for security enforcement in IoT. In: Proceedings of the IEEE 37th International Conference on Distributed Computing Systems Workshops (ICDCS), pp. 2177\u20132184 (2017)","DOI":"10.1109\/ICDCS.2017.283"},{"issue":"7","key":"5_CR21","doi-asserted-by":"publisher","first-page":"80","DOI":"10.1109\/MC.2017.201","volume":"50","author":"C Kolias","year":"2017","unstructured":"Kolias, C., Kambourakis, G., Stavrou, A., Voas, J.: DDoS in the IoT: Mirai and other botnets. Computer 50(7), 80\u201384 (2017)","journal-title":"Computer"},{"key":"5_CR22","doi-asserted-by":"crossref","unstructured":"Lee, A., Atkison, T.: A comparison of fuzzy hashes: evaluation, guidelines, and future suggestions. In: Proceedings of the SouthEast Conference, pp. 18\u201325 (2017)","DOI":"10.1145\/3077286.3077289"},{"key":"5_CR23","doi-asserted-by":"publisher","unstructured":"Meidan, Y., et al.: N-BaIoT-network-based detection of IoT botnet attacks using deep autoencoders. IEEE Perv. Comput. 17(3), 12\u201322 (2018). https:\/\/doi.org\/10.1109\/MPRV.2018.03367731","DOI":"10.1109\/MPRV.2018.03367731"},{"key":"5_CR24","doi-asserted-by":"crossref","unstructured":"Pagani, F., Dell\u2019Amico, M., Balzarotti, D.: Beyond precision and recall: understanding uses (and misuses) of similarity hashes in binary analysis. In: Proceedings of the Eighth ACM Conference on Data and Application Security and Privacy, pp. 354\u2013365. ACM (2018)","DOI":"10.1145\/3176258.3176306"},{"key":"5_CR25","doi-asserted-by":"publisher","unstructured":"Ren, J., Dubois, D.J., Choffnes, D., Mandalari, A.M., Kolcun, R., Haddadi, H.: Information exposure from consumer IoT devices: a multidimensional, network-informed measurement approach. In: Proceedings of the Internet Measurement Conference (IMC 2019), pp. 267\u2013279. Association for Computing Machinery, New York (2019). https:\/\/doi.org\/10.1145\/3355369.3355577","DOI":"10.1145\/3355369.3355577"},{"key":"5_CR26","doi-asserted-by":"publisher","first-page":"105","DOI":"10.1016\/j.diin.2007.06.011","volume":"4","author":"V Roussev","year":"2007","unstructured":"Roussev, V., Richard, G.G., Marziale, L.: Multi-resolution similarity hashing. Digit. Investig. 4, 105\u2013113 (2007)","journal-title":"Digit. Investig."},{"key":"5_CR27","series-title":"IFIP Advances in Information and Communication Technology","doi-asserted-by":"publisher","first-page":"207","DOI":"10.1007\/978-3-642-15506-2_15","volume-title":"Advances in Digital Forensics VI","author":"V Roussev","year":"2010","unstructured":"Roussev, V.: Data fingerprinting with similarity digests. In: Chow, K.-P., Shenoi, S. (eds.) DigitalForensics 2010. IAICT, vol. 337, pp. 207\u2013226. Springer, Heidelberg (2010). https:\/\/doi.org\/10.1007\/978-3-642-15506-2_15"},{"key":"5_CR28","doi-asserted-by":"publisher","first-page":"34","DOI":"10.1016\/j.diin.2011.05.005","volume":"8","author":"V Roussev","year":"2011","unstructured":"Roussev, V.: An evaluation of forensic similarity hashes. Digit. Investig. 8, 34\u201341 (2011)","journal-title":"Digit. Investig."},{"issue":"8","key":"5_CR29","doi-asserted-by":"publisher","first-page":"1745","DOI":"10.1109\/TMC.2018.2866249","volume":"18","author":"A Sivanathan","year":"2018","unstructured":"Sivanathan, A., et al.: Classifying IoT devices in smart environments using network traffic characteristics. IEEE Trans. Mob. Comput. 18(8), 1745\u20131759 (2018)","journal-title":"IEEE Trans. Mob. Comput."},{"key":"5_CR30","unstructured":"Damiani, E., De Capitani di Vimercati, S., Paraboschi, S., Samarati, P.: An open digest-based technique for spam detection. In: Proceedings of the Seventeenth International Conference on Parallel and Distributed Computing Systems, pp. 559\u2013564 (2004)"},{"key":"5_CR31","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1007\/978-3-319-75208-2_1","volume-title":"Smart Card Research and Advanced Applications","author":"O Shwartz","year":"2018","unstructured":"Shwartz, O., Mathov, Y., Bohadana, M., Elovici, Y., Oren, Y.: Opening Pandora\u2019s box: effective techniques for reverse engineering IoT devices. In: Eisenbarth, T., Teglia, Y. (eds.) CARDIS 2017. LNCS, vol. 10728, pp. 1\u201321. Springer, Cham (2018). https:\/\/doi.org\/10.1007\/978-3-319-75208-2_1"},{"key":"5_CR32","doi-asserted-by":"publisher","unstructured":"Wu, T., Breitinger, F., Baggili, I.: IoT ignorance is digital forensics research bliss: a survey to understand IoT forensics definitions, challenges and future research directions. In: Proceedings of the 14th International Conference on Availability, Reliability and Security (ARES 2019), Article 46, pp. 1\u201315. Association for Computing Machinery, New York (2019). https:\/\/doi.org\/10.1145\/3339252.3340504","DOI":"10.1145\/3339252.3340504"}],"container-title":["Lecture Notes of the Institute for Computer Sciences, Social Informatics and Telecommunications Engineering","Digital Forensics and Cyber Crime"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-031-06365-7_5","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,6,3]],"date-time":"2022-06-03T07:05:46Z","timestamp":1654239946000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-031-06365-7_5"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2022]]},"ISBN":["9783031063640","9783031063657"],"references-count":32,"URL":"https:\/\/doi.org\/10.1007\/978-3-031-06365-7_5","relation":{},"ISSN":["1867-8211","1867-822X"],"issn-type":[{"type":"print","value":"1867-8211"},{"type":"electronic","value":"1867-822X"}],"subject":[],"published":{"date-parts":[[2022]]},"assertion":[{"value":"4 June 2022","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"ICDF2C","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"International Conference on Digital Forensics and Cyber Crime","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2021","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"6 December 2021","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"9 December 2021","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"12","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"icdf2c2021","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"https:\/\/icdf2c.eai-conferences.org\/2021\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Double-blind","order":1,"name":"type","label":"Type","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"EAI Confy+","order":2,"name":"conference_management_system","label":"Conference Management System","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"52","order":3,"name":"number_of_submissions_sent_for_review","label":"Number of Submissions Sent for Review","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"22","order":4,"name":"number_of_full_papers_accepted","label":"Number of Full Papers Accepted","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"0","order":5,"name":"number_of_short_papers_accepted","label":"Number of Short Papers Accepted","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"42% - The value is computed by the equation \"Number of Full Papers Accepted \/ Number of Submissions Sent for Review * 100\" and then rounded to a whole number.","order":6,"name":"acceptance_rate_of_full_papers","label":"Acceptance Rate of Full Papers","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"3","order":7,"name":"average_number_of_reviews_per_paper","label":"Average Number of Reviews per Paper","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"5","order":8,"name":"average_number_of_papers_per_reviewer","label":"Average Number of Papers per Reviewer","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"Yes","order":9,"name":"external_reviewers_involved","label":"External Reviewers Involved","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}}]}}