{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,2,26]],"date-time":"2026-02-26T11:07:03Z","timestamp":1772104023779,"version":"3.50.1"},"publisher-location":"Cham","reference-count":20,"publisher":"Springer International Publishing","isbn-type":[{"value":"9783319232003","type":"print"},{"value":"9783319232010","type":"electronic"}],"license":[{"start":{"date-parts":[[2015,1,1]],"date-time":"2015-01-01T00:00:00Z","timestamp":1420070400000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2015,1,1]],"date-time":"2015-01-01T00:00:00Z","timestamp":1420070400000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2015]]},"DOI":"10.1007\/978-3-319-23201-0_22","type":"book-chapter","created":{"date-parts":[[2015,8,27]],"date-time":"2015-08-27T11:57:35Z","timestamp":1440676655000},"page":"197-206","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":11,"title":["Unsupervised Network Anomaly Detection in Real-Time on Big Data"],"prefix":"10.1007","author":[{"given":"Juliette","family":"Dromard","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Gilles","family":"Roudi\u00e8re","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Philippe","family":"Owezarski","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2015,8,28]]},"reference":[{"key":"22_CR1","unstructured":"Apache spark - lightning-fast cluster computing. https:\/\/spark.apache.org\/ (accessed April 29, 2015)"},{"key":"22_CR2","unstructured":"Grid5000. https:\/\/www.grid5000.fr (accessed April 29, 2015)"},{"key":"22_CR3","doi-asserted-by":"crossref","unstructured":"Andrade, G., Ramos, G., Madeira, D., Sachetto, R., Ferreira, R., Rocha, L.: G-dbscan: A GPU accelerated algorithm for density-based clustering. Procedia Computer Science, 369\u2013378 (2013)","DOI":"10.1016\/j.procs.2013.05.200"},{"key":"22_CR4","doi-asserted-by":"crossref","unstructured":"Brauckhoff, D., Tellenbach, B., Wagner, A., May, M., Lakhina, A.: Impact of packet sampling on anomaly detection metrics. In: Proc. of the 6th ACM SIGCOMM Conference on Internet Measurement, pp. 159\u2013164 (2006)","DOI":"10.1145\/1177080.1177101"},{"key":"22_CR5","doi-asserted-by":"crossref","unstructured":"Casas, P., Mazel, J., Owezarski, P.: Unsupervised network intrusion detection systems: Detecting the unknown without knowledge. Computer Communications, 772\u2013783 (2012)","DOI":"10.1016\/j.comcom.2012.01.016"},{"key":"22_CR6","doi-asserted-by":"crossref","unstructured":"Celenk, M., Conley, T., Willis, J., Graham, J.: Anomaly detection and visualization using fisher discriminant clustering of network entropy. In: Third International Conference on Digital Information Management, pp. 216\u2013220, November 2008","DOI":"10.1109\/ICDIM.2008.4746810"},{"key":"22_CR7","doi-asserted-by":"crossref","unstructured":"Dewaele, G., Fukuda, K., Borgnat, P., Abry, P., Cho, K.: Extracting hidden anomalies using sketch and non gaussian multiresolution statistical detection procedures. In: Proc. of the 2007 Workshop on Large Scale Attack Defense, pp. 145\u2013152. ACM (2007)","DOI":"10.1145\/1352664.1352675"},{"key":"22_CR8","unstructured":"Ester, M., peter Kriegel, H., S, J., Xu, X.: A density-based algorithm for discovering clusters in large spatial databases with noise, pp. 226\u2013231. AAAI Press (1996)"},{"key":"22_CR9","unstructured":"Ester, M., Kriegel, H.P., Sander, J., Wimmer, M., Xu, X.: Incremental clustering for mining in a data warehousing environment. In: Proc. of the 24rd International Conference on Very Large Data Bases, pp. 323\u2013333 (1998)"},{"key":"22_CR10","doi-asserted-by":"crossref","unstructured":"Fahad, A., Alshatri, N., Tari, Z., Alamri, A., Khalil, I., Zomaya, A., Foufou, S., Bouras, A.: A survey of clustering algorithms for big data: Taxonomy and empirical analysis. IEEE Transactions on Emerging Topics in Computing, 267\u2013279, September 2014","DOI":"10.1109\/TETC.2014.2330519"},{"key":"22_CR11","doi-asserted-by":"crossref","unstructured":"Fontugne, R., Mazel, J., Fukuda, K.: Hashdoop: a mapreduce framework for network anomaly detection. In: INFOCOM WKSHPS, pp. 494\u2013499, April 2014","DOI":"10.1109\/INFCOMW.2014.6849281"},{"key":"22_CR12","doi-asserted-by":"crossref","unstructured":"Fontugne, R., Fukuda, K.: A hough-transform-based anomaly detector with an adaptive time interval. SIGAPP Appl. Comput. Rev., 41\u201351 (2011)","DOI":"10.1145\/2034594.2034598"},{"key":"22_CR13","doi-asserted-by":"crossref","unstructured":"Gu, Y., McCallum, A., Towsley, D.: Detecting anomalies in network traffic using maximum entropy estimation. In: Proc. of the 5th ACM SIGCOMM Conference on Internet Measurement, pp. 32\u201332 (2005)","DOI":"10.1145\/1330107.1330148"},{"key":"22_CR14","doi-asserted-by":"crossref","unstructured":"Kanda, Y., Fukuda, K., Sugawara, T.: Evaluation of anomaly detection based on sketch and pca. In: GLOBECOM 2010, pp. 1\u20135. IEEE (2010)","DOI":"10.1109\/GLOCOM.2010.5683878"},{"key":"22_CR15","doi-asserted-by":"crossref","unstructured":"Kriegel, H.P., Kroger, P., Zimek, A.: Clustering high-dimensional data: A survey on subspace clustering, pattern-based clustering, and correlation clustering. ACM Trans. Knowl. Discov. Data (2009)","DOI":"10.1145\/1497577.1497578"},{"key":"22_CR16","doi-asserted-by":"crossref","unstructured":"Lakhina, A., Crovella, M., Diot, C.: Diagnosing network-wide traffic anomalies. In: Proc. of ACM SIGCOMM 2004, pp. 219\u2013230, Auguest 2004","DOI":"10.1145\/1030194.1015492"},{"key":"22_CR17","doi-asserted-by":"crossref","unstructured":"Patcha, A., Park, J.M.: An overview of anomaly detection techniques: Existing solutions and latest technological trends. Comput. Netw., 3448\u20133470 (2007)","DOI":"10.1016\/j.comnet.2007.02.001"},{"key":"22_CR18","unstructured":"Portnoy, L., Eskin, E., Stolfo, S.: Intrusion detection with unlabeled data using clustering. In: Proc. of ACM CSS Workshop on Data Mining Applied to Security, pp. 5\u20138 (2001)"},{"key":"22_CR19","doi-asserted-by":"crossref","unstructured":"Wei, X., Huang, H., Tian, S.: A grid-based clustering algorithm for network anomaly detection. In: The First International Symposium on Data, Privacy, and E-Commerce, ISDPE 2007, pp. 104\u2013106, November 2007","DOI":"10.1109\/ISDPE.2007.110"},{"key":"22_CR20","doi-asserted-by":"crossref","unstructured":"Xin, R.S., Rosen, J., Zaharia, M., Franklin, M.J., Shenker, S., Stoica, I.: Shark: SQL and rich analytics at scale. In: Proc. of the 2013 ACM SIGMOD International Conference on Management of Data, pp. 13\u201324 (2013)","DOI":"10.21236\/ADA570737"}],"container-title":["Communications in Computer and Information Science","New Trends in Databases and Information Systems"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-319-23201-0_22","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2023,2,21]],"date-time":"2023-02-21T06:28:21Z","timestamp":1676960901000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-319-23201-0_22"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2015]]},"ISBN":["9783319232003","9783319232010"],"references-count":20,"URL":"https:\/\/doi.org\/10.1007\/978-3-319-23201-0_22","relation":{},"ISSN":["1865-0929","1865-0937"],"issn-type":[{"value":"1865-0929","type":"print"},{"value":"1865-0937","type":"electronic"}],"subject":[],"published":{"date-parts":[[2015]]},"assertion":[{"value":"28 August 2015","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}}]}}