{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,6,1]],"date-time":"2025-06-01T17:40:09Z","timestamp":1748799609889,"version":"3.41.0"},"publisher-location":"Cham","reference-count":20,"publisher":"Springer International Publishing","isbn-type":[{"type":"print","value":"9783319298139"},{"type":"electronic","value":"9783319298146"}],"license":[{"start":{"date-parts":[[2016,1,1]],"date-time":"2016-01-01T00:00:00Z","timestamp":1451606400000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springer.com\/tdm"},{"start":{"date-parts":[[2016,1,1]],"date-time":"2016-01-01T00:00:00Z","timestamp":1451606400000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2016]]},"DOI":"10.1007\/978-3-319-29814-6_25","type":"book-chapter","created":{"date-parts":[[2016,3,7]],"date-time":"2016-03-07T09:04:46Z","timestamp":1457341486000},"page":"303-310","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":0,"title":["An Improved NPCUSUM Method with Adaptive Sliding Window to Detect DDoS Attacks"],"prefix":"10.1007","author":[{"given":"Degang","family":"Sun","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Kun","family":"Yang","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Weiqing","family":"Huang","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Yan","family":"Wang","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Bo","family":"Hu","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2016,3,5]]},"reference":[{"key":"25_CR1","unstructured":"Neustar.biz (2014). http:\/\/www.neustar.biz\/resources\/whitepapers\/ddos-protection\/2014-annual-ddos-attacks-and-impact-report.pdf"},{"key":"25_CR2","unstructured":"Kaspersky Report, Statistics on botnet-assisted DDoS attacks in Q1 2015"},{"key":"25_CR3","unstructured":"Cloudflare.com (2013). http:\/\/blog.cloudflare.com\/the-ddos-that-knocked-spamhaus\/-offline-and-ho\/"},{"issue":"4","key":"25_CR4","doi-asserted-by":"publisher","first-page":"537","DOI":"10.1093\/comjnl\/bxt031","volume":"57","author":"MH Bhuyan","year":"2014","unstructured":"Bhuyan, M.H., et al.: Detecting distributed denial of service attacks: methods, tools and future directions. Comput. J. 57(4), 537\u2013556 (2014)","journal-title":"Comput. J."},{"key":"25_CR5","unstructured":"Prasad, K.M., Reddy, A.R.M., Rao, K.V.: DoS and DDoS attacks: defense, detection and traceback mechanisms-a survey. Global. J. Comput. Sci. Technol. 14(7) (2014)"},{"key":"25_CR6","doi-asserted-by":"crossref","unstructured":"Murtaza, S.S., Khreich, W., Hamou-Lhadj, A., et al.: A host-based anomaly detectionapproach by representing system calls as states of kernel modules. In: 2013 IEEE 24th International Symposium on Software Reliability Engineering (ISSRE), pp. 431\u2013440. IEEE (2013)","DOI":"10.1109\/ISSRE.2013.6698896"},{"key":"25_CR7","unstructured":"Forrest, S., Hofmeyr, S., Somayaji, A., et al.: A sense of self for unix processes. In: 1996 IEEE Symposium on Security and Privacy, pp. 120\u2013128. IEEE (1996)"},{"key":"25_CR8","doi-asserted-by":"crossref","unstructured":"Feinstein, L., Schnackenberg, D., Balupari, R., Kindred, D.: Statistical approaches to DDoS attack detection and response. In: Proceedings of DARPA Information Survivability Conference and Exposition, vol. 1, pp. 303\u2013314. IEEE, April 2003","DOI":"10.1109\/DISCEX.2003.1194894"},{"key":"25_CR9","doi-asserted-by":"crossref","unstructured":"No, G., Ra, I.: Adaptive DDoS detector design using fast entropy computation method. In: 2011 Fifth International Conference on Innovative Mobile and Internet Services in Ubiquitous Computing (IMIS), pp. 86\u201393. IEEE (2011)","DOI":"10.1109\/IMIS.2011.82"},{"key":"25_CR10","first-page":"015","volume":"3","author":"XH Zhao","year":"2013","unstructured":"Zhao, X.H., Xia, J.B., Guo, W.W., Du, H.H.: Detection DDoS attacks based on multi-dimensional entropy. J. Air Force Eng. Univ. (Natural Science Edition) 3, 015 (2013)","journal-title":"J. Air Force Eng. Univ. (Natural Science Edition)"},{"key":"25_CR11","unstructured":"Conditional Entropy. https:\/\/en.wikipedia.org\/wiki\/Conditional_entropy"},{"key":"25_CR12","doi-asserted-by":"publisher","DOI":"10.1002\/0471200611","volume-title":"Elements of Information Theory","author":"TM Cover","year":"1991","unstructured":"Cover, T.M., Thomas, J.A.: Elements of Information Theory, 1st edn. Wiley, New York (1991). ISBN 0-471-06259-6","edition":"1"},{"issue":"4","key":"25_CR13","doi-asserted-by":"publisher","first-page":"2367","DOI":"10.3390\/e17042367","volume":"17","author":"P Bereziski","year":"2015","unstructured":"Bereziski, P., et al.: An entropy-based network anomaly detection method. Entropy 17(4), 2367\u20132408 (2015)","journal-title":"Entropy"},{"issue":"4","key":"25_CR14","doi-asserted-by":"publisher","first-page":"346","DOI":"10.1007\/s12083-012-0173-3","volume":"7","author":"T Thapngam","year":"2014","unstructured":"Thapngam, T., Yu, S., Zhou, W., Makki, S.K.: Distributed Denial of Service (DDoS) detection by traffic pattern analysis. Peer-to-Peer Networking Appl. 7(4), 346\u2013358 (2014)","journal-title":"Peer-to-Peer Networking Appl."},{"key":"25_CR15","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1016\/j.patrec.2014.07.019","volume":"51","author":"MH Bhuyan","year":"2015","unstructured":"Bhuyan, M.H., Bhattacharyya, D.K., Kalita, J.K.: An empirical evaluation of information metrics for low-rate and high-rate DDoS attack detection. Pattern Recogn. Lett. 51, 1\u20137 (2015)","journal-title":"Pattern Recogn. Lett."},{"key":"25_CR16","doi-asserted-by":"publisher","unstructured":"Page, E.S.: Continuous Inspection Scheme. Biometrika 41 (1\/2): 100C115(1954). doi:10.1093\/biomet\/41.1-2.100.JSTOR2333009","DOI":"10.1093\/biomet\/41.1-2.100.JSTOR2333009"},{"key":"25_CR17","volume-title":"Detection of Abrupt Changes: Theory and Application","author":"M Bassevilleand","year":"1993","unstructured":"Bassevilleand, M., Nikiforov, I.V.: Detection of Abrupt Changes: Theory and Application. Prentice-Hall Inc., Upper Saddle River (1993)"},{"key":"25_CR18","unstructured":"Cisco. http:\/\/www.cisco.com\/c\/en\/us\/tech\/quality-of-service-qos\/netflow\/index.html"},{"issue":"4","key":"25_CR19","doi-asserted-by":"publisher","first-page":"28","DOI":"10.1109\/COMST.2014.2321898","volume":"16","author":"R Hofstede","year":"2014","unstructured":"Hofstede, R., Celeda, P.: Flow monitoring explained: from packet capture to data analysis with NetFlow and IPFIX. IEEE Commun. Surv. Tutorials (IEEE Communications Society) 16(4), 28 (2014). doi:10.1109\/COMST.2014.2321898","journal-title":"IEEE Commun. Surv. Tutorials (IEEE Communications Society)"},{"key":"25_CR20","unstructured":"Darpa2000. http:\/\/www.ll.mit.edu\/IST\/id\/data\/2000\/LLS_DDOS_1.0.html"}],"container-title":["Lecture Notes in Computer Science","Information and Communications Security"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-319-29814-6_25","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,1]],"date-time":"2025-06-01T17:20:38Z","timestamp":1748798438000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-319-29814-6_25"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2016]]},"ISBN":["9783319298139","9783319298146"],"references-count":20,"URL":"https:\/\/doi.org\/10.1007\/978-3-319-29814-6_25","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2016]]},"assertion":[{"value":"5 March 2016","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"This content has been made available to all.","name":"free","label":"Free to read"}]}}