{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,16]],"date-time":"2026-06-16T23:06:09Z","timestamp":1781651169437,"version":"3.54.5"},"publisher-location":"Cham","reference-count":30,"publisher":"Springer International Publishing","isbn-type":[{"value":"9783031103629","type":"print"},{"value":"9783031103636","type":"electronic"}],"license":[{"start":{"date-parts":[[2022,1,1]],"date-time":"2022-01-01T00:00:00Z","timestamp":1640995200000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springer.com\/tdm"},{"start":{"date-parts":[[2022,1,1]],"date-time":"2022-01-01T00:00:00Z","timestamp":1640995200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2022]]},"DOI":"10.1007\/978-3-031-10363-6_19","type":"book-chapter","created":{"date-parts":[[2022,7,1]],"date-time":"2022-07-01T12:20:21Z","timestamp":1656678021000},"page":"274-289","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":7,"title":["Development of\u00a0Monitoring Systems for\u00a0Anomaly Detection Using ASTD Specifications"],"prefix":"10.1007","author":[{"given":"El Jabri","family":"Chaymae","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Frappier","family":"Marc","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Ecarot","family":"Thibaud","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Tardif","family":"Pierre-Martin","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2022,7,3]]},"reference":[{"key":"19_CR1","unstructured":"Home (2022). http:\/\/suricata-ids.org\/"},{"key":"19_CR2","doi-asserted-by":"publisher","first-page":"33789","DOI":"10.1109\/ACCESS.2018.2841987","volume":"6","author":"I Ahmad","year":"2018","unstructured":"Ahmad, I., Basheri, M., Iqbal, M.J., Rahim, A.: Performance comparison of support vector machine, random forest, and extreme learning machine for intrusion detection. IEEE Access 6, 33789\u201333795 (2018). https:\/\/doi.org\/10.1109\/ACCESS.2018.2841987","journal-title":"IEEE Access"},{"key":"19_CR3","doi-asserted-by":"crossref","unstructured":"Bauder, R., Khoshgoftaar, T.: Multivariate anomaly detection in medicare using model residuals and probabilistic programming (2017). https:\/\/aaai.org\/ocs\/index.php\/FLAIRS\/FLAIRS17\/paper\/view\/15429","DOI":"10.1007\/s10742-017-0172-1"},{"key":"19_CR4","doi-asserted-by":"publisher","first-page":"285","DOI":"10.1007\/s11334-008-0064-1","volume":"4","author":"M Frappier","year":"2008","unstructured":"Frappier, M., Gervais, F., Laleau, R., Fraikin, B., St-Denis, R.: Extending statecharts with process algebra operators. Innovations Syst. Softw. Eng. 4, 285\u2013292 (2008). https:\/\/doi.org\/10.1007\/s11334-008-0064-1","journal-title":"Innovations Syst. Softw. Eng."},{"key":"19_CR5","doi-asserted-by":"crossref","unstructured":"Hall\u00e9, S.: Event Stream Processing with BeepBeep 3: Log Crunching and Analysis Made Easy (2018)","DOI":"10.29007\/4cth"},{"issue":"8","key":"19_CR6","doi-asserted-by":"publisher","first-page":"666","DOI":"10.1145\/359576.359585","volume":"21","author":"CAR Hoare","year":"1978","unstructured":"Hoare, C.A.R.: Communicating sequential processes. Commun. ACM 21(8), 666\u2013677 (1978)","journal-title":"Commun. ACM"},{"key":"19_CR7","doi-asserted-by":"crossref","unstructured":"Ihaka, R., Gentleman, R.: R: a language for data analysis and graphics. J. Comput. Graph. Stat. 5(3), 299\u2013314 (1996). http:\/\/www.jstor.org\/stable\/1390807","DOI":"10.1080\/10618600.1996.10474713"},{"key":"19_CR8","doi-asserted-by":"crossref","unstructured":"Kasinathan, P., Pastrone, C., Spirito, M.A., Vinkovits, M.: Denial-of-service detection in 6lowpan based internet of things. In: 2013 IEEE 9th International Conference on Wireless and Mobile Computing, Networking and Communications (WiMob), pp. 600\u2013607 (2013)","DOI":"10.1109\/WiMOB.2013.6673419"},{"key":"19_CR9","doi-asserted-by":"publisher","DOI":"10.1016\/j.sysarc.2020.101876","volume":"113","author":"S Kauffman","year":"2021","unstructured":"Kauffman, S., Dunne, M., Gracioli, G., Khan, W., Benann, N., Fischmeister, S.: Palisade: a framework for anomaly detection in embedded systems. J. Syst. Architect. 113, 101876 (2021)","journal-title":"J. Syst. Architect."},{"key":"19_CR10","unstructured":"Khakurel, N., Bhagat, N.: Advanced engineering and ICT-convergence 2019 (ICAEIC-2019), p. 22 (2019)"},{"key":"19_CR11","doi-asserted-by":"crossref","unstructured":"L\u00e9tourneau, L.S., El Jabri, C., Frappier, M., Tardif, P.M., L\u00e9pine, G., Boisvert, G.: Statistical approach for cloud security: Microsoft office 365 audit logs case study. In: 2021 51st Annual IEEE\/IFIP International Conference on Dependable Systems and Networks Workshops (DSN-W), pp. 15\u201318. IEEE (2021)","DOI":"10.1109\/DSN-W52860.2021.00014"},{"key":"19_CR12","doi-asserted-by":"publisher","unstructured":"Lifandali, O., Abghour, N.: Deep learning methods applied to intrusion detection: survey, taxonomy and challenges. In: 2021 International Conference on Decision Aid Sciences and Application (DASA), pp. 1035\u20131044 (2021). https:\/\/doi.org\/10.1109\/DASA53625.2021.9682357","DOI":"10.1109\/DASA53625.2021.9682357"},{"issue":"7\u20139","key":"19_CR13","doi-asserted-by":"publisher","first-page":"1561","DOI":"10.1016\/j.neucom.2006.10.146","volume":"70","author":"G Liu","year":"2007","unstructured":"Liu, G., Yi, Z., Yang, S.: Letters: a hierarchical intrusion detection model based on the pca neural networks. Neurocomput. 70(7\u20139), 1561\u20131568 (2007). https:\/\/doi.org\/10.1016\/j.neucom.2006.10.146","journal-title":"Neurocomput."},{"issue":"5","key":"19_CR14","doi-asserted-by":"publisher","first-page":"2471","DOI":"10.1109\/TVT.2008.2010049","volume":"58","author":"H Nakayama","year":"2008","unstructured":"Nakayama, H., Kurosawa, S., Jamalipour, A., Nemoto, Y., Kato, N.: A dynamic anomaly detection scheme for aodv-based mobile ad hoc networks. IEEE Trans. Veh. Technol. 58(5), 2471\u20132481 (2008)","journal-title":"IEEE Trans. Veh. Technol."},{"key":"19_CR15","unstructured":"Neal, R.M.: Speed improvements in pqr: current status and future plans"},{"key":"19_CR16","unstructured":"Nganyewou Tidjon, L.: Mod\u00e9lisation formelle des syst\u00e8mes de d\u00e9tection d\u2019intrusions. Ph.D. thesis, Institut polytechnique de Paris (2020)"},{"issue":"1","key":"19_CR17","first-page":"223","volume":"35","author":"HK Pao","year":"2019","unstructured":"Pao, H.K., Lee, F.R., Lee, Y.J.: Dealing with interleaved event inputs for intrusion detection. J. Inf. Sci. Eng. 35(1), 223\u2013242 (2019)","journal-title":"J. Inf. Sci. Eng."},{"key":"19_CR18","unstructured":"Paxson, V.: Bro: a system for detecting network intruders in real-time. In: Proceedings of the 7th Conference on USENIX Security Symposium - volume 7, p. 3. SSYM 1998, USENIX Association, USA (1998)"},{"key":"19_CR19","doi-asserted-by":"publisher","unstructured":"Raza, S., Wallgren, L., Voigt, T.: Svelte: real-time intrusion detection in the internet of things. Ad Hoc Netw. 11(8), 2661\u20132674 (2013). https:\/\/doi.org\/10.1016\/j.adhoc.2013.04.014. https:\/\/www.sciencedirect.com\/science\/article\/pii\/S1570870513001005","DOI":"10.1016\/j.adhoc.2013.04.014"},{"key":"19_CR20","unstructured":"Roesch, M.: Snort: lightweight intrusion detection for networks. In: LISA (1999)"},{"key":"19_CR21","doi-asserted-by":"crossref","unstructured":"Roudjane, M., Reba\u00efne, D., Khoury, R., Hall\u00e9, S.: Real-time data mining for event streams. In: 2018 IEEE 22nd International Enterprise Distributed Object Computing Conference (EDOC), pp. 123\u2013134. IEEE (2018)","DOI":"10.1109\/EDOC.2018.00025"},{"key":"19_CR22","unstructured":"Sanchez, L. et al.: Smartsantander: the meeting point between future internet research and experimentation and the smart cities. In: 2011 Future Network & Mobile Summit, pp. 1\u20138. IEEE (2011)"},{"issue":"2","key":"19_CR23","doi-asserted-by":"publisher","first-page":"399","DOI":"10.1007\/s10586-018-2835-2","volume":"22","author":"R Sun","year":"2018","unstructured":"Sun, R., Zhang, S., Yin, C., Wang, J., Min, S.: Strategies for data stream mining method applied in anomaly detection. Cluster Comput. 22(2), 399\u2013408 (2018). https:\/\/doi.org\/10.1007\/s10586-018-2835-2","journal-title":"Cluster Comput."},{"key":"19_CR24","doi-asserted-by":"crossref","unstructured":"Szmit, M., Adamus, S., Szmit, A., Buga\u0142a, S.: Implementation of Brutlag\u2019s algorithm in Anomaly detection 3.0. In: 2012 Federated Conference on Computer Science and Information Systems (FedCSIS), pp. 685\u2013691 (2012)","DOI":"10.1155\/2012\/192913"},{"key":"19_CR25","doi-asserted-by":"publisher","first-page":"636","DOI":"10.1016\/j.procs.2020.03.330","volume":"167","author":"A Thakkar","year":"2020","unstructured":"Thakkar, A., Lohiya, R.: A review of the advancement in intrusion detection datasets. Procedia Comput. Sci. 167, 636\u2013645 (2020)","journal-title":"Procedia Comput. Sci."},{"issue":"4","key":"19_CR26","doi-asserted-by":"publisher","first-page":"3211","DOI":"10.1007\/s11831-020-09496-0","volume":"28","author":"A Thakkar","year":"2021","unstructured":"Thakkar, A., Lohiya, R.: A review on machine learning and deep learning perspectives of ids for iot: recent updates, security issues, and challenges. Arch. Comput. Meth. Eng. 28(4), 3211\u20133243 (2021). https:\/\/doi.org\/10.1007\/s11831-020-09496-0","journal-title":"Arch. Comput. Meth. Eng."},{"key":"19_CR27","series-title":"Advances in Intelligent Systems and Computing","doi-asserted-by":"publisher","first-page":"1397","DOI":"10.1007\/978-3-030-44041-1_118","volume-title":"Advanced Information Networking and Applications","author":"LN Tidjon","year":"2020","unstructured":"Tidjon, L.N., Frappier, M., Mammar, A.: Intrusion detection using ASTDs. In: Barolli, L., Amato, F., Moscato, F., Enokido, T., Takizawa, M. (eds.) AINA 2020. AISC, vol. 1151, pp. 1397\u20131411. Springer, Cham (2020). https:\/\/doi.org\/10.1007\/978-3-030-44041-1_118"},{"key":"19_CR28","unstructured":"Tidjon, L.N.: Formal modeling of intrusion detection systems. Ph.D. thesis, Institut Polytechnique de Paris; Universit\u00e9 de Sherbrooke (Qu\u00e9bec, Canada) (2020)"},{"key":"19_CR29","doi-asserted-by":"crossref","unstructured":"Tidjon, L.N., Frappier, M., Leuschel, M., Mammar, A.: Extended algebraic state-transition diagrams. In: 2018 23rd International Conference on Engineering of Complex Computer Systems (ICECCS), pp. 146\u2013155. IEEE (2018)","DOI":"10.1109\/ICECCS2018.2018.00023"},{"key":"19_CR30","doi-asserted-by":"publisher","first-page":"4362","DOI":"10.1109\/TII.2019.2891261","volume":"15","author":"F Zhang","year":"2019","unstructured":"Zhang, F., Kodituwakku, H.A.D.E., Hines, J.W., Coble, J.B.: Multilayer data-driven cyber-attack detection system for industrial control systems based on network, system, and process data. IEEE Trans. Ind. Inf. 15, 4362\u20134369 (2019)","journal-title":"IEEE Trans. Ind. Inf."}],"container-title":["Lecture Notes in Computer Science","Theoretical Aspects of Software Engineering"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-031-10363-6_19","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,9,28]],"date-time":"2024-09-28T08:09:34Z","timestamp":1727510974000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-031-10363-6_19"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2022]]},"ISBN":["9783031103629","9783031103636"],"references-count":30,"URL":"https:\/\/doi.org\/10.1007\/978-3-031-10363-6_19","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"value":"0302-9743","type":"print"},{"value":"1611-3349","type":"electronic"}],"subject":[],"published":{"date-parts":[[2022]]},"assertion":[{"value":"3 July 2022","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"TASE","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"International Symposium on Theoretical Aspects of Software Engineering","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2022","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"8 July 2022","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"10 July 2022","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"16","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"tase2022","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"https:\/\/www.cs.ubbcluj.ro\/tase2022\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Open","order":1,"name":"type","label":"Type","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"EasyChair","order":2,"name":"conference_management_system","label":"Conference Management System","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"71","order":3,"name":"number_of_submissions_sent_for_review","label":"Number of Submissions Sent for Review","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"21","order":4,"name":"number_of_full_papers_accepted","label":"Number of Full Papers Accepted","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"5","order":5,"name":"number_of_short_papers_accepted","label":"Number of Short Papers Accepted","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"30% - The value is computed by the equation \"Number of Full Papers Accepted \/ Number of Submissions Sent for Review * 100\" and then rounded to a whole number.","order":6,"name":"acceptance_rate_of_full_papers","label":"Acceptance Rate of Full Papers","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"3","order":7,"name":"average_number_of_reviews_per_paper","label":"Average Number of Reviews per Paper","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"4","order":8,"name":"average_number_of_papers_per_reviewer","label":"Average Number of Papers per Reviewer","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"Yes","order":9,"name":"external_reviewers_involved","label":"External Reviewers Involved","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}}]}}