{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,10,22]],"date-time":"2025-10-22T10:49:28Z","timestamp":1761130168245,"version":"3.40.3"},"publisher-location":"Cham","reference-count":35,"publisher":"Springer Nature Switzerland","isbn-type":[{"type":"print","value":"9783031555671"},{"type":"electronic","value":"9783031555688"}],"license":[{"start":{"date-parts":[[2024,1,1]],"date-time":"2024-01-01T00:00:00Z","timestamp":1704067200000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2024,1,1]],"date-time":"2024-01-01T00:00:00Z","timestamp":1704067200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2024]]},"DOI":"10.1007\/978-3-031-55568-8_20","type":"book-chapter","created":{"date-parts":[[2024,5,18]],"date-time":"2024-05-18T11:01:56Z","timestamp":1716030116000},"page":"238-249","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":2,"title":["A Comparative Study of\u00a0Novelty Detection Models for\u00a0Zero Day Intrusion Detection in\u00a0Industrial Internet of\u00a0Things"],"prefix":"10.1007","author":[{"given":"Uneneibotejit","family":"Otokwala","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Murshedul","family":"Arifeen","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Andrei","family":"Petrovski","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2024,5,19]]},"reference":[{"key":"20_CR1","unstructured":"What is SCADA? Supervisory Control and Data Acquisition (2018). https:\/\/inductiveautomation.com\/resources\/article\/what-is-scada. https:\/\/inductiveautomation.com\/resources\/article\/what-is-scada"},{"key":"20_CR2","unstructured":"What is a zero-day exploit: Protecting against 0day vulnerabilities: Imperva (2020). https:\/\/www.imperva.com\/learn\/application-security\/zero-day-exploit\/"},{"key":"20_CR3","doi-asserted-by":"publisher","first-page":"6430","DOI":"10.1109\/ACCESS.2021.3140015","volume":"10","author":"N Abdalgawad","year":"2021","unstructured":"Abdalgawad, N., Sajun, A., Kaddoura, Y., Zualkernan, I.A., Aloul, F.: Generative deep learning to detect cyberattacks for the IoT-23 dataset. IEEE Access 10, 6430\u20136441 (2021)","journal-title":"IEEE Access"},{"key":"20_CR4","doi-asserted-by":"crossref","unstructured":"Abri, F., Siami-Namini, S., Khanghah, M.A., Soltani, F.M., Namin, A.S.: Can machine\/deep learning classifiers detect zero-day malware with high accuracy? In: 2019 IEEE International Conference on Big Data (Big Data), pp. 3252\u20133259. IEEE (2019)","DOI":"10.1109\/BigData47090.2019.9006514"},{"key":"20_CR5","series-title":"LNEE","doi-asserted-by":"publisher","first-page":"497","DOI":"10.1007\/978-981-16-8248-3_41","volume-title":"Recent Innovations in Computing","author":"P Anand","year":"2022","unstructured":"Anand, P., Singh, Y., Selwal, A.: Learning-based techniques for assessing zero-day attacks and vulnerabilities in IoT. In: Singh, P.K., Singh, Y., Kolekar, M.H., Kar, A.K., Goncalves, P.J.S. (eds.) Recent Innovations in Computing. LNEE, vol. 832, pp. 497\u2013504. Springer, Singapore (2022). https:\/\/doi.org\/10.1007\/978-981-16-8248-3_41"},{"key":"20_CR6","doi-asserted-by":"crossref","unstructured":"Arifeen, M., Ghosh, T., Islam, R., Ashiquzzaman, A., Yoon, J., Kim, J.: Autoencoder based consensus mechanism for blockchain-enabled industrial internet of things. Internet Things 100575 (2022)","DOI":"10.1016\/j.iot.2022.100575"},{"key":"20_CR7","doi-asserted-by":"crossref","unstructured":"Arifeen, M., Petrovski, A., Petrovski, S.: Automated microsegmentation for lateral movement prevention in industrial internet of things (IIoT). In: 2021 14th International Conference on Security of Information and Networks (SIN), vol.\u00a01, pp.\u00a01\u20136. IEEE (2021)","DOI":"10.1109\/SIN54109.2021.9699232"},{"key":"20_CR8","doi-asserted-by":"publisher","unstructured":"Belyadi, H., Haghighat, A.: Chapter 4 - Unsupervised machine learning: clustering algorithms. In: Belyadi, H., Haghighat, A. (eds.) Machine Learning Guide for Oil and Gas Using Python, pp. 125\u2013168. Gulf Professional Publishing (2021). https:\/\/doi.org\/10.1016\/B978-0-12-821929-4.00002-0. https:\/\/www.sciencedirect.com\/science\/article\/pii\/B9780128219294000020","DOI":"10.1016\/B978-0-12-821929-4.00002-0"},{"key":"20_CR9","doi-asserted-by":"crossref","unstructured":"Bilge, L., Dumitra\u015f, T.: Before we knew it: an empirical study of zero-day attacks in the real world. In: Proceedings of the 2012 ACM Conference on Computer and Communications Security, pp. 833\u2013844 (2012)","DOI":"10.1145\/2382196.2382284"},{"key":"20_CR10","doi-asserted-by":"publisher","DOI":"10.1016\/j.comnet.2020.107391","volume":"180","author":"A Blaise","year":"2020","unstructured":"Blaise, A., Bouet, M., Conan, V., Secci, S.: Detection of zero-day attacks: an unsupervised port-based approach. Comput. Netw. 180, 107391 (2020)","journal-title":"Comput. Netw."},{"key":"20_CR11","doi-asserted-by":"crossref","unstructured":"Boser, B.E., Guyon, I.M., Vapnik, V.N.: A training algorithm for optimal margin classifiers. In: Proceedings of the Fifth Annual Workshop on Computational Learning Theory, pp. 144\u2013152 (1992)","DOI":"10.1145\/130385.130401"},{"key":"20_CR12","doi-asserted-by":"crossref","unstructured":"Breunig, M.M., Kriegel, H.P., Ng, R.T., Sander, J.: LOF: identifying density-based local outliers. In: Proceedings of the 2000 ACM SIGMOD International Conference on Management of Data, pp. 93\u2013104 (2000)","DOI":"10.1145\/342009.335388"},{"issue":"1","key":"20_CR13","first-page":"1","volume":"5","author":"C Campbell","year":"2011","unstructured":"Campbell, C., Ying, Y.: Learning with support vector machines. Synth. Lect. Artif. Intell. Mach. Learn. 5(1), 1\u201395 (2011)","journal-title":"Synth. Lect. Artif. Intell. Mach. Learn."},{"key":"20_CR14","unstructured":"Chapman, C.: Network Performance and Security: Testing and Analyzing Using Open Source and Low-Cost Tools. Syngress (2016)"},{"key":"20_CR15","doi-asserted-by":"publisher","DOI":"10.1007\/978-1-4842-2896-8","volume-title":"Demystifying Internet of Things Security: Successful IoT Device\/Edge and Platform Security Deployment","author":"S Cheruvu","year":"2020","unstructured":"Cheruvu, S., Kumar, A., Smith, N., Wheeler, D.M.: Demystifying Internet of Things Security: Successful IoT Device\/Edge and Platform Security Deployment. Springer, Cham (2020). https:\/\/doi.org\/10.1007\/978-1-4842-2896-8"},{"issue":"10","key":"20_CR16","doi-asserted-by":"publisher","first-page":"1684","DOI":"10.3390\/electronics9101684","volume":"9","author":"H Hindy","year":"2020","unstructured":"Hindy, H., Atkinson, R., Tachtatzis, C., Colin, J.N., Bayne, E., Bellekens, X.: Utilising deep learning techniques for effective zero-day attack detection. Electronics 9(10), 1684 (2020)","journal-title":"Electronics"},{"key":"20_CR17","doi-asserted-by":"crossref","unstructured":"Liu, F.T., Ting, K.M., Zhou, Z.H.: Isolation forest. In: 2008 Eighth IEEE International Conference on Data Mining, pp. 413\u2013422. IEEE (2008)","DOI":"10.1109\/ICDM.2008.17"},{"key":"20_CR18","unstructured":"Liu, M., Xue, Z., He, X., Chen, J.: Scads: a scalable approach using spark in cloud for host-based intrusion detection system with system calls. arXiv preprint arXiv:2109.11821 (2021)"},{"key":"20_CR19","first-page":"15","volume":"30","author":"LA Maglaras","year":"2016","unstructured":"Maglaras, L.A., Jiang, J., Cruz, T.J.: Combining ensemble methods and social network metrics for improving accuracy of OCSVM on intrusion detection in SCADA systems. J. Inf. Secur. Appl. 30, 15\u201326 (2016)","journal-title":"J. Inf. Secur. Appl."},{"key":"20_CR20","doi-asserted-by":"crossref","unstructured":"McDermott, C.D., Majdani, F., Petrovski, A.V.: Botnet detection in the internet of things using deep learning approaches. In: 2018 International Joint Conference on Neural Networks (IJCNN), pp.\u00a01\u20138. IEEE (2018)","DOI":"10.1109\/IJCNN.2018.8489489"},{"key":"20_CR21","doi-asserted-by":"crossref","unstructured":"Moustafa, N., Slay, J.: UNSW-NB15: a comprehensive data set for network intrusion detection systems (UNSW-NB15 network data set). In: 2015 Military Communications and Information Systems Conference (MilCIS), pp.\u00a01\u20136. IEEE (2015)","DOI":"10.1109\/MilCIS.2015.7348942"},{"key":"20_CR22","doi-asserted-by":"publisher","DOI":"10.1016\/j.aei.2021.101519","volume":"51","author":"JPG de Oliveira","year":"2022","unstructured":"de Oliveira, J.P.G., Bastos-Filho, C.J., Oliveira, S.C.: Non-invasive embedded system hardware\/firmware anomaly detection based on the electric current signature. Adv. Eng. Inform. 51, 101519 (2022)","journal-title":"Adv. Eng. Inform."},{"key":"20_CR23","doi-asserted-by":"crossref","unstructured":"Otokwala, U., Petrovski, A., Kalutarage, H.: Improving intrusion detection through training data augmentation. In: 2021 14th International Conference on Security of Information and Networks (SIN), vol.\u00a01, pp.\u00a01\u20138. IEEE (2021)","DOI":"10.1109\/SIN54109.2021.9699293"},{"key":"20_CR24","doi-asserted-by":"crossref","unstructured":"Popoola, S.I., Ande, R., Adebisi, B., Gui, G., Hammoudeh, M., Jogunola, O.: Federated deep learning for zero-day botnet attack detection in IoT edge devices. IEEE Internet Things J. (2021)","DOI":"10.3390\/electronics10091104"},{"key":"20_CR25","unstructured":"Ranger, S.: Surprise: four zero-days spotted in attacks on researchers\u2019 fake networks (2021). https:\/\/www.zdnet.com\/article\/security-four-zero-day-attacks-spotted-in-attacks-against-honeypot-systems\/"},{"key":"20_CR26","doi-asserted-by":"crossref","unstructured":"Roopak, M., Tian, G.Y., Chambers, J.: An intrusion detection system against DDoS attacks in IoT networks. In: 2020 10th Annual Computing and Communication Workshop and Conference (CCWC), pp. 0562\u20130567. IEEE (2020)","DOI":"10.1109\/CCWC47524.2020.9031206"},{"key":"20_CR27","doi-asserted-by":"crossref","unstructured":"Roshan, K., Zafar, A.: An optimized auto-encoder based approach for detecting zero-day cyber-attacks in computer network. In: 2021 5th International Conference on Information Systems and Computer Networks (ISCON), pp.\u00a01\u20136. IEEE (2021)","DOI":"10.1109\/ISCON52037.2021.9702437"},{"key":"20_CR28","doi-asserted-by":"crossref","unstructured":"Sarhan, M., Layeghy, S., Gallagher, M., Portmann, M.: From zero-shot machine learning to zero-day attack detection. arXiv preprint arXiv:2109.14868 (2021)","DOI":"10.21203\/rs.3.rs-2097775\/v1"},{"issue":"7","key":"20_CR29","doi-asserted-by":"publisher","first-page":"1443","DOI":"10.1162\/089976601750264965","volume":"13","author":"B Sch\u00f6lkopf","year":"2001","unstructured":"Sch\u00f6lkopf, B., Platt, J.C., Shawe-Taylor, J., Smola, A.J., Williamson, R.C.: Estimating the support of a high-dimensional distribution. Neural Comput. 13(7), 1443\u20131471 (2001)","journal-title":"Neural Comput."},{"issue":"3","key":"20_CR30","first-page":"829","volume":"13","author":"AAA Sen","year":"2021","unstructured":"Sen, A.A.A., Yamin, M.: Advantages of using fog in IoT applications. Int. J. Inf. Technol. 13(3), 829\u2013837 (2021)","journal-title":"Int. J. Inf. Technol."},{"key":"20_CR31","doi-asserted-by":"crossref","unstructured":"Sharma, V., et al.: A consensus framework for reliability and mitigation of zero-day attacks in IoT. Secur. Commun. Netw. 2017 (2017)","DOI":"10.1155\/2017\/4749085"},{"key":"20_CR32","unstructured":"Soltani, M., Ousat, B., Siavoshani, M.J., Jahangir, A.H.: An adaptable deep learning-based intrusion detection system to zero-day attacks. arXiv preprint arXiv:2108.09199 (2021)"},{"key":"20_CR33","series-title":"Lecture Notes in Computer Science (Lecture Notes in Artificial Intelligence)","doi-asserted-by":"publisher","first-page":"508","DOI":"10.1007\/978-3-030-47358-7_52","volume-title":"Advances in Artificial Intelligence","author":"I Ullah","year":"2020","unstructured":"Ullah, I., Mahmoud, Q.H.: A scheme for generating a dataset for anomalous activity detection in IoT networks. In: Goutte, C., Zhu, X. (eds.) Canadian AI 2020. LNCS (LNAI), vol. 12109, pp. 508\u2013520. Springer, Cham (2020). https:\/\/doi.org\/10.1007\/978-3-030-47358-7_52"},{"key":"20_CR34","doi-asserted-by":"publisher","DOI":"10.1007\/978-1-4757-3264-1","volume-title":"The Nature of Statistical Learning Theory","author":"V Vapnik","year":"1999","unstructured":"Vapnik, V.: The Nature of Statistical Learning Theory. Springer, Cham (1999). https:\/\/doi.org\/10.1007\/978-1-4757-3264-1"},{"issue":"6","key":"20_CR35","doi-asserted-by":"publisher","first-page":"2843","DOI":"10.1109\/TNET.2018.2874896","volume":"26","author":"A Wang","year":"2018","unstructured":"Wang, A., Chang, W., Chen, S., Mohaisen, A.: Delving into internet DDoS attacks by botnets: characterization and analysis. IEEE\/ACM Trans. Netw. 26(6), 2843\u20132855 (2018)","journal-title":"IEEE\/ACM Trans. Netw."}],"container-title":["Advances in Intelligent Systems and Computing","Advances in Computational Intelligence Systems"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-031-55568-8_20","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,5,18]],"date-time":"2024-05-18T11:04:22Z","timestamp":1716030262000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-031-55568-8_20"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024]]},"ISBN":["9783031555671","9783031555688"],"references-count":35,"URL":"https:\/\/doi.org\/10.1007\/978-3-031-55568-8_20","relation":{},"ISSN":["2194-5357","2194-5365"],"issn-type":[{"type":"print","value":"2194-5357"},{"type":"electronic","value":"2194-5365"}],"subject":[],"published":{"date-parts":[[2024]]},"assertion":[{"value":"19 May 2024","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"UKCI","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"UK Workshop on Computational Intelligence","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Sheffield","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"United Kingdom","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2022","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"7 September 2022","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"9 September 2022","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"21","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"ukci2022","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"https:\/\/www.sheffield.ac.uk\/ukci2022","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}