{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,5,31]],"date-time":"2025-05-31T17:10:04Z","timestamp":1748711404157,"version":"3.41.0"},"publisher-location":"Cham","reference-count":32,"publisher":"Springer International Publishing","isbn-type":[{"type":"print","value":"9783319238012"},{"type":"electronic","value":"9783319238029"}],"license":[{"start":{"date-parts":[[2015,1,1]],"date-time":"2015-01-01T00:00:00Z","timestamp":1420070400000},"content-version":"unspecified","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2015]]},"DOI":"10.1007\/978-3-319-23802-9_10","type":"book-chapter","created":{"date-parts":[[2015,12,1]],"date-time":"2015-12-01T12:24:43Z","timestamp":1448972683000},"page":"93-109","source":"Crossref","is-referenced-by-count":1,"title":["A New Anomaly Detection Method Based on\u00a0IGTE and IGFE"],"prefix":"10.1007","author":[{"given":"Ziyu","family":"Wang","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Jiahai","family":"Yang","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Fuliang","family":"Li","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2015,11,19]]},"reference":[{"key":"10_CR1","series-title":"Advances in Intelligent Systems and Computing","doi-asserted-by":"publisher","first-page":"301","DOI":"10.1007\/978-3-642-32384-3_36","volume-title":"Image Processing and Communications Challenges 4","author":"T Andrysiak","year":"2013","unstructured":"Andrysiak, T., Saganowski, \u0141., Chora\u015b, M.: DDoS attacks detection by means of greedy algorithms. In: Chora\u015b, R.S. (ed.) Image Processing and Communications Challenges 4. AISC, vol. 184, pp. 301\u2013308. Springer, Heidelberg (2013)"},{"key":"10_CR2","doi-asserted-by":"crossref","unstructured":"Barford, P., Kline, J., Plonka, D., Ron, A.: A signal analysis of network traffic anomalies. In: Proceedings of the 2nd ACM SIGCOMM Workshop on Internet Measurment, pp. 71\u201382. ACM (2002)","DOI":"10.1145\/637209.637210"},{"key":"10_CR3","unstructured":"The r project for statistical computing. http:\/\/www.r-project.org\/"},{"key":"10_CR4","unstructured":"Cisco systems netflow services export version 9. http:\/\/www.rfc-base.org\/rfc-3954.html"},{"key":"10_CR5","doi-asserted-by":"crossref","unstructured":"Brauckhoff, D., Salamatian, K., May, M.: Applying pca for traffic anomaly detection: Problems and solutions. In: INFOCOM 2009, pp. 2866\u20132870. IEEE (2009)","DOI":"10.1109\/INFCOM.2009.5062248"},{"key":"10_CR6","volume-title":"Statistical Inference","author":"G Casella","year":"1990","unstructured":"Casella, G., Berger, R.L.: Statistical Inference. Duxbury Press, Belmont (1990)"},{"key":"10_CR7","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"291","DOI":"10.1007\/978-3-642-39065-4_36","volume-title":"Advances in Neural Networks \u2013 ISNN 2013","author":"F Cong","year":"2013","unstructured":"Cong, F., Hautakangas, H., Nieminen, J., Mazhelis, O., Perttunen, M., Riekki, J., Ristaniemi, T.: Applying wavelet packet decomposition and one-class support vector machine on vehicle acceleration traces for road anomaly detection. In: Guo, C., Hou, Z.-G., Zeng, Z. (eds.) ISNN 2013, Part I. LNCS, vol. 7951, pp. 291\u2013299. Springer, Heidelberg (2013)"},{"issue":"8","key":"10_CR8","doi-asserted-by":"publisher","first-page":"861","DOI":"10.1016\/j.patrec.2005.10.010","volume":"27","author":"T Fawcett","year":"2006","unstructured":"Fawcett, T.: An introduction to ROC analysis. Pattern Recogn. Lett. 27(8), 861\u2013874 (2006)","journal-title":"Pattern Recogn. Lett."},{"key":"10_CR9","doi-asserted-by":"crossref","unstructured":"Guzman, J., Poblete, B.: On-line relevant anomaly detection in the twitter stream: an efficient bursty keyword detection model. In: Proceedings of the ACM SIGKDD Workshop on Outlier Detection and Description, pp. 31\u201339. ACM (2013)","DOI":"10.1145\/2500853.2500860"},{"key":"10_CR10","doi-asserted-by":"crossref","unstructured":"Jamshed, M.A., Lee, J., Moon, S., Yun, I., Kim, D., Lee, S., Yi, Y., Park, K.: Kargus: a highly-scalable software-based intrusion detection system. In: Proceedings of the 2012 ACM Conference on Computer and Communications Security, pp. 317\u2013328. ACM (2012)","DOI":"10.1145\/2382196.2382232"},{"key":"10_CR11","doi-asserted-by":"crossref","unstructured":"Jiang, D., Zhang, P., Xu, Z., Yao, C., Qin, W.: A wavelet-based detection approach to traffic anomalies. In: 2011 Seventh International Conference on Computational Intelligence and Security (CIS), pp. 993\u2013997. IEEE (2011)","DOI":"10.1109\/CIS.2011.222"},{"key":"10_CR12","doi-asserted-by":"crossref","unstructured":"Jiang, H., Zhang, G., Xie, G., Salamatian, K., Mathy, L.: Scalable high-performance parallel design for network intrusion detection systems on many-core processors. In: Proceedings of the Ninth ACM\/IEEE Symposium on Architectures for Networking and Communications Systems, pp. 137\u2013146. IEEE Press (2013)","DOI":"10.1109\/ANCS.2013.6665196"},{"key":"10_CR13","doi-asserted-by":"crossref","unstructured":"Kuzmanovic, A., Knightly, E.W.: Low-rate tcp-targeted denial of service attacks: the shrew vs. the mice and elephants. In: Proceedings of the 2003 Conference on Applications, Technologies, Architectures, and Protocols for Computer Communications, pp. 75\u201386 (2003)","DOI":"10.1145\/863965.863966"},{"key":"10_CR14","doi-asserted-by":"publisher","first-page":"219","DOI":"10.1145\/1030194.1015492","volume":"34","author":"A Lakhina","year":"2004","unstructured":"Lakhina, A., Crovella, M., Diot, C.: Diagnosing network-wide traffic anomalies. ACM SIGCOMM Comput. Commun. Rev. 34, 219\u2013230 (2004). ACM","journal-title":"ACM SIGCOMM Comput. Commun. Rev."},{"key":"10_CR15","doi-asserted-by":"publisher","first-page":"217","DOI":"10.1145\/1090191.1080118","volume":"35","author":"A Lakhina","year":"2005","unstructured":"Lakhina, A., Crovella, M., Diot, C.: Mining anomalies using traffic feature distributions. ACM SIGCOMM Comput. Commun. Rev. 35, 217\u2013228 (2005). ACM","journal-title":"ACM SIGCOMM Comput. Commun. Rev."},{"issue":"7","key":"10_CR16","doi-asserted-by":"publisher","first-page":"737","DOI":"10.1016\/j.cose.2010.05.002","volume":"29","author":"F Palmieri","year":"2010","unstructured":"Palmieri, F., Fiore, U.: Network anomaly detection through nonlinear analysis. Comput. Secur. 29(7), 737\u2013755 (2010)","journal-title":"Comput. Secur."},{"issue":"23","key":"10_CR17","doi-asserted-by":"publisher","first-page":"2435","DOI":"10.1016\/S1389-1286(99)00112-7","volume":"31","author":"V Paxson","year":"1999","unstructured":"Paxson, V.: Bro: a system for detecting network intruders in real-time. Comput. Netw. 31(23), 2435\u20132463 (1999)","journal-title":"Comput. Netw."},{"key":"10_CR18","doi-asserted-by":"publisher","first-page":"109","DOI":"10.1145\/1269899.1254895","volume":"35","author":"H Ringberg","year":"2007","unstructured":"Ringberg, H., Soule, A., Rexford, J., Diot, C.: Sensitivity of PCA for traffic anomaly detection. ACM SIGMETRICS Perform. Eval. Rev. 35, 109\u2013120 (2007). ACM","journal-title":"ACM SIGMETRICS Perform. Eval. Rev."},{"key":"10_CR19","unstructured":"Roesch, M., et al.: Snort: Lightweight intrusion detection for networks. In: LISA, pp. 229\u2013238 (1999)"},{"key":"10_CR20","doi-asserted-by":"crossref","unstructured":"Ross, S.M.: Introductory statistics. Academic Press (2010)","DOI":"10.1016\/B978-0-12-374388-6.50002-7"},{"key":"10_CR21","doi-asserted-by":"crossref","unstructured":"Rubinstein, B.I., Nelson, B., Huang, L., Joseph, A.D., Lau, S.h., Rao, S., Taft, N., Tygar, J.: Antidote: understanding and defending against poisoning of anomaly detectors. In: Proceedings of the 9th ACM SIGCOMM Conference on Internet Measurement Conference, pp. 1\u201314. ACM (2009)","DOI":"10.1145\/1644893.1644895"},{"issue":"4","key":"10_CR22","doi-asserted-by":"publisher","first-page":"267","DOI":"10.1145\/1851275.1851215","volume":"40","author":"F Silveira","year":"2010","unstructured":"Silveira, F., Diot, C., Taft, N., Govindan, R.: Astute: detecting a different class of traffic anomalies. ACM SIGCOMM Comput. Commun. Rev. 40(4), 267\u2013278 (2010)","journal-title":"ACM SIGCOMM Comput. Commun. Rev."},{"issue":"4","key":"10_CR23","doi-asserted-by":"publisher","first-page":"494","DOI":"10.1109\/TDSC.2011.14","volume":"8","author":"F Simmross-Wattenberg","year":"2011","unstructured":"Simmross-Wattenberg, F., Asensio-Perez, J.I., Casaseca-de-la Higuera, P., Martin-Fernandez, M., Dimitriadis, I.A., Alberola-L\u00f3pez, C.: Anomaly detection in network traffic based on statistical inference and alpha-stable modeling. IEEE Trans. Dependable Secure Comput. 8(4), 494\u2013509 (2011)","journal-title":"IEEE Trans. Dependable Secure Comput."},{"key":"10_CR24","doi-asserted-by":"crossref","unstructured":"Soldo, F., Metwally, A.: Traffic anomly detection based on the IP size distribution. In: 2012 Proceedings IEEE INFOCOM, pp. 2005\u20132013 (2012)","DOI":"10.1109\/INFCOM.2012.6195581"},{"key":"10_CR25","doi-asserted-by":"crossref","unstructured":"Vasiliadis, G., Polychronakis, M., Ioannidis, S.: Midea: a multi-parallel intrusion detection architecture. In: Proceedings of the 18th ACM Conference on Computer and Communications Security, pp. 297\u2013308. ACM (2011)","DOI":"10.1145\/2046707.2046741"},{"issue":"269","key":"10_CR26","first-page":"1","volume":"2013","author":"W Wang","year":"2013","unstructured":"Wang, W., Lu, D., Zhou, X., Zhang, B., Mu, J.: Statistical wavelet-based anomaly detection in big data with compressive sensing. EURASIP J. Wireless Commun. Networking 2013(269), 1\u20136 (2013)","journal-title":"EURASIP J. Wireless Commun. Networking"},{"key":"10_CR27","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"194","DOI":"10.1007\/978-3-642-24712-5_18","volume-title":"Communications and Multimedia Security","author":"P Winter","year":"2011","unstructured":"Winter, P., Lampesberger, H., Zeilinger, M., Hermann, E.: On detecting abrupt changes in network entropy time series. In: De Decker, B., Lapon, J., Naessens, V., Uhl, A. (eds.) CMS 2011. LNCS, vol. 7025, pp. 194\u2013205. Springer, Heidelberg (2011)"},{"issue":"2","key":"10_CR28","doi-asserted-by":"publisher","first-page":"209","DOI":"10.1260\/1748-3018.7.2.209","volume":"7","author":"J Wu","year":"2013","unstructured":"Wu, J., Cui, Z., Shi, Y., Su, D.: Traffic flow anomaly detection based on wavelet denoising and support vector regression. J. Algorithms Comput. Technol. 7(2), 209\u2013226 (2013)","journal-title":"J. Algorithms Comput. Technol."},{"key":"10_CR29","doi-asserted-by":"crossref","unstructured":"Yaacob, A.H., Tan, I.K., Chien, S.F., Tan, H.K.: Arima based network anomaly detection. In: Second International Conference on Communication Software and Networks. ICCSN 2010, pp. 205\u2013209. IEEE (2010)","DOI":"10.1109\/ICCSN.2010.55"},{"key":"10_CR30","doi-asserted-by":"crossref","unstructured":"Zhang, B., Yang, J., Wu, J., Qin, D., Gao, L.: Mcst: Anomaly detection using feature stability for packet-level traffic. In: 2011 13th Asia-Pacific Network Operations and Management Symposium (APNOMS), pp. 1\u20138. IEEE (2011)","DOI":"10.1109\/APNOMS.2011.6077018"},{"key":"10_CR31","doi-asserted-by":"crossref","unstructured":"Zhang, B., Yang, J., Wu, J., Qin, D., Gao, L.: Pca-subspace method is it good enough for network-wide anomaly detection. In: 2012 IEEE Network Operations and Management Symposium (NOMS), pp. 359\u2013367. IEEE (2012)","DOI":"10.1109\/NOMS.2012.6211919"},{"issue":"10","key":"10_CR32","doi-asserted-by":"publisher","first-page":"1176","DOI":"10.1093\/comjnl\/bxr134","volume":"56","author":"B Zhang","year":"2013","unstructured":"Zhang, B., Yang, J., Wu, J., Wang, Z.: Mbst: detecting packet-level traffic anomalies by feature stability. Comput. J. 56(10), 1176\u20131188 (2013)","journal-title":"Comput. J."}],"container-title":["Lecture Notes of the Institute for Computer Sciences, Social Informatics and Telecommunications Engineering","International Conference on Security and Privacy in Communication Networks"],"original-title":[],"link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-319-23802-9_10","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,5,31]],"date-time":"2025-05-31T16:37:03Z","timestamp":1748709423000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-319-23802-9_10"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2015]]},"ISBN":["9783319238012","9783319238029"],"references-count":32,"URL":"https:\/\/doi.org\/10.1007\/978-3-319-23802-9_10","relation":{},"ISSN":["1867-8211","1867-822X"],"issn-type":[{"type":"print","value":"1867-8211"},{"type":"electronic","value":"1867-822X"}],"subject":[],"published":{"date-parts":[[2015]]}}}