{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,21]],"date-time":"2026-06-21T00:50:04Z","timestamp":1782003004141,"version":"3.54.5"},"publisher-location":"Cham","reference-count":22,"publisher":"Springer International Publishing","isbn-type":[{"value":"9783031087509","type":"print"},{"value":"9783031087516","type":"electronic"}],"license":[{"start":{"date-parts":[[2022,1,1]],"date-time":"2022-01-01T00:00:00Z","timestamp":1640995200000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2022,1,1]],"date-time":"2022-01-01T00:00:00Z","timestamp":1640995200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2022]]},"DOI":"10.1007\/978-3-031-08751-6_31","type":"book-chapter","created":{"date-parts":[[2022,6,21]],"date-time":"2022-06-21T02:03:15Z","timestamp":1655776995000},"page":"431-444","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":0,"title":["HNOP: Attack Traffic Detection Based on\u00a0Hierarchical Node Hopping Features of\u00a0Packets"],"prefix":"10.1007","author":[{"given":"Jinbu","family":"Geng","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Zhenyu","family":"Cheng","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Zhicheng","family":"Liu","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Shuhao","family":"Li","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Rui","family":"Qin","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2022,6,15]]},"reference":[{"key":"31_CR1","unstructured":"Akamai 2020 state of the internet\/security. https:\/\/www.akamai.com\/content\/dam\/site\/en\/documents\/state-of-the-internet\/soti-security-financial-services-hostile-takeover-attempts-report-2020.pdf. Accessed 21 Oct 2021"},{"key":"31_CR2","unstructured":"https:\/\/en.wikipedia.org\/wiki\/Occam%27s_razor. Accessed 21 Oct 2021"},{"key":"31_CR3","doi-asserted-by":"publisher","first-page":"291","DOI":"10.1016\/j.cose.2019.06.013","volume":"86","author":"Z Chiba","year":"2019","unstructured":"Chiba, Z., Abghour, N., Moussaid, K., Rida, M., et al.: Intelligent approach to build a deep neural network based ids for cloud environment using combination of machine learning algorithms. Comput. Secur. 86, 291\u2013317 (2019)","journal-title":"Comput. Secur."},{"key":"31_CR4","doi-asserted-by":"crossref","unstructured":"Dong, B., Wang, X.: Comparison deep learning method to traditional methods using for network intrusion detection. In: 2016 8th IEEE International Conference on Communication Software and Networks (ICCSN), pp. 581\u2013585. IEEE (2016)","DOI":"10.1109\/ICCSN.2016.7586590"},{"key":"31_CR5","doi-asserted-by":"crossref","unstructured":"Geng, J., Li, S., Zhang, Y., Liu, Z., Cheng, Z.: LIFH: learning interactive features from http payload using image reconstruction. In: ICC 2021-IEEE International Conference on Communications, pp. 1\u20136. IEEE (2021)","DOI":"10.1109\/ICC42927.2021.9500842"},{"key":"31_CR6","doi-asserted-by":"publisher","first-page":"179","DOI":"10.1016\/j.cose.2019.03.013","volume":"84","author":"A Gezer","year":"2019","unstructured":"Gezer, A., Warner, G., Wilson, C., Shrestha, P.: A flow-based approach for trickbot banking trojan detection. Comput. Secur. 84, 179\u2013192 (2019)","journal-title":"Comput. Secur."},{"key":"31_CR7","doi-asserted-by":"crossref","unstructured":"Girshick, R.: Fast R-CNN. In: Proceedings of the IEEE International Conference on Computer Vision, pp. 1440\u20131448 (2015)","DOI":"10.1109\/ICCV.2015.169"},{"issue":"2","key":"31_CR8","doi-asserted-by":"publisher","first-page":"109","DOI":"10.1049\/iet-ifs.2018.5186","volume":"13","author":"W Han","year":"2019","unstructured":"Han, W., Xue, J., Yan, H.: Detecting anomalous traffic in the controlled network based on cross entropy and support vector machine. IET Inf. Secur. 13(2), 109\u2013116 (2019)","journal-title":"IET Inf. Secur."},{"key":"31_CR9","doi-asserted-by":"publisher","first-page":"303","DOI":"10.1016\/j.future.2017.01.029","volume":"79","author":"E Kabir","year":"2018","unstructured":"Kabir, E., Hu, J., Wang, H., Zhuo, G.: A novel statistical technique for intrusion detection systems. Futur. Gener. Comput. Syst. 79, 303\u2013318 (2018)","journal-title":"Futur. Gener. Comput. Syst."},{"key":"31_CR10","doi-asserted-by":"crossref","unstructured":"Le, A., Markopoulou, A., Faloutsos, M.: Phishdef: URL names say it all. In: 2011 Proceedings IEEE INFOCOM, pp. 191\u2013195. IEEE (2011)","DOI":"10.1109\/INFCOM.2011.5934995"},{"key":"31_CR11","doi-asserted-by":"crossref","unstructured":"Liu, T., Qi, A., Hou, Y., Chang, X.: Method for network anomaly detection based on bayesian statistical model with time slicing. In: 2008 7th World Congress on Intelligent Control and Automation, pp. 3359\u20133362 (2008)","DOI":"10.1109\/WCICA.2008.4593458"},{"key":"31_CR12","unstructured":"Moore, A., Zuev, D., Crogan, M.: Discriminators for use in flow-based classification. Technical report (2013)"},{"key":"31_CR13","doi-asserted-by":"crossref","unstructured":"Patil, P., Rane, R., Bhalekar, M.: Detecting spam and phishing mails using SVM and obfuscation URL detection algorithm. In: 2017 International Conference on Inventive Systems and Control (ICISC), pp. 1\u20134. IEEE (2017)","DOI":"10.1109\/ICISC.2017.8068633"},{"key":"31_CR14","doi-asserted-by":"publisher","first-page":"1125","DOI":"10.1109\/TNSM.2021.3075503","volume":"18","author":"C Pontes","year":"2021","unstructured":"Pontes, C., Souza, M., Gondim, J., Bishop, M., Marotta, M.: A new method for flow-based network intrusion detection using the inverse Potts model. IEEE Trans. Network Serv. Manage. 18, 1125\u20131136 (2021)","journal-title":"IEEE Trans. Network Serv. Manage."},{"key":"31_CR15","unstructured":"Sahoo, D., Liu, C., Hoi, S.C.: Malicious URL detection using machine learning: a survey. arXiv preprint arXiv:1701.07179 (2017)"},{"key":"31_CR16","doi-asserted-by":"publisher","first-page":"132911","DOI":"10.1109\/ACCESS.2020.3009843","volume":"8","author":"D Stiawan","year":"2020","unstructured":"Stiawan, D., Idris, M.Y.B., Bamhdi, A.M., Budiarto, R., et al.: Cicids-2017 dataset feature analysis with information gain for anomaly detection. IEEE Access 8, 132911\u2013132921 (2020)","journal-title":"IEEE Access"},{"key":"31_CR17","doi-asserted-by":"publisher","first-page":"330","DOI":"10.1016\/j.eswa.2016.07.036","volume":"64","author":"M Swarnkar","year":"2016","unstructured":"Swarnkar, M., Hubballi, N.: OCPAD: One class Naive Bayes classifier for payload based anomaly detection. Expert Syst. Appl. 64, 330\u2013339 (2016)","journal-title":"Expert Syst. Appl."},{"key":"31_CR18","doi-asserted-by":"publisher","first-page":"304","DOI":"10.1016\/j.cose.2018.04.010","volume":"77","author":"R Vijayanand","year":"2018","unstructured":"Vijayanand, R., Devaraj, D., Kannapiran, B.: Intrusion detection system for wireless mesh network using multiple support vector machine classifiers with genetic-algorithm-based feature selection. Comput. Secur. 77, 304\u2013314 (2018)","journal-title":"Comput. Secur."},{"key":"31_CR19","doi-asserted-by":"publisher","first-page":"201728","DOI":"10.1109\/ACCESS.2020.3035967","volume":"8","author":"B Wang","year":"2020","unstructured":"Wang, B., Su, Y., Zhang, M., Nie, J.: A deep hierarchical network for packet-level malicious traffic detection. IEEE Access 8, 201728\u2013201740 (2020)","journal-title":"IEEE Access"},{"key":"31_CR20","doi-asserted-by":"publisher","first-page":"1792","DOI":"10.1109\/ACCESS.2017.2780250","volume":"6","author":"W Wang","year":"2017","unstructured":"Wang, W., et al.: Hast-IDS: learning hierarchical spatial-temporal features using deep neural networks to improve intrusion detection. IEEE Access 6, 1792\u20131806 (2017)","journal-title":"IEEE Access"},{"key":"31_CR21","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2020.101923","volume":"96","author":"J Xie","year":"2020","unstructured":"Xie, J., Li, S., Yun, X., Zhang, Y., Chang, P.: HSTF-model: An http-based trojan detection model via the hierarchical spatio-temporal features of traffics. Comput. Secur. 96, 101923 (2020)","journal-title":"Comput. Secur."},{"key":"31_CR22","doi-asserted-by":"crossref","unstructured":"Zand, A., Vigna, G., Yan, X., Kruegel, C.: Extracting probable command and control signatures for detecting botnets. In: Proceedings of the 29th Annual ACM Symposium on Applied Computing, pp. 1657\u20131662 (2014)","DOI":"10.1145\/2554850.2554896"}],"container-title":["Lecture Notes in Computer Science","Computational Science \u2013 ICCS 2022"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-031-08751-6_31","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,6,21]],"date-time":"2026-06-21T00:12:12Z","timestamp":1782000732000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-031-08751-6_31"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2022]]},"ISBN":["9783031087509","9783031087516"],"references-count":22,"URL":"https:\/\/doi.org\/10.1007\/978-3-031-08751-6_31","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"value":"0302-9743","type":"print"},{"value":"1611-3349","type":"electronic"}],"subject":[],"published":{"date-parts":[[2022]]},"assertion":[{"value":"15 June 2022","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"ICCS","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"International Conference on Computational Science","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"London","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"United Kingdom","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2022","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"21 June 2022","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"23 June 2022","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"22","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"iccs-computsci2022","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"https:\/\/www.iccs-meeting.org\/iccs2022\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Single-blind","order":1,"name":"type","label":"Type","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"EasyChair","order":2,"name":"conference_management_system","label":"Conference Management System","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"474","order":3,"name":"number_of_submissions_sent_for_review","label":"Number of Submissions Sent for Review","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"175","order":4,"name":"number_of_full_papers_accepted","label":"Number of Full Papers Accepted","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"78","order":5,"name":"number_of_short_papers_accepted","label":"Number of Short Papers Accepted","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"37% - The value is computed by the equation \"Number of Full Papers Accepted \/ Number of Submissions Sent for Review * 100\" and then rounded to a whole number.","order":6,"name":"acceptance_rate_of_full_papers","label":"Acceptance Rate of Full Papers","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"2.8","order":7,"name":"average_number_of_reviews_per_paper","label":"Average Number of Reviews per Paper","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"3","order":8,"name":"average_number_of_papers_per_reviewer","label":"Average Number of Papers per Reviewer","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"Yes","order":9,"name":"external_reviewers_involved","label":"External Reviewers Involved","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"This content has been made available to all.","name":"free","label":"Free to read"}]}}