{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,3,27]],"date-time":"2025-03-27T09:24:00Z","timestamp":1743067440639,"version":"3.40.3"},"publisher-location":"Cham","reference-count":29,"publisher":"Springer International Publishing","isbn-type":[{"type":"print","value":"9783319491509"},{"type":"electronic","value":"9783319491516"}],"license":[{"start":{"date-parts":[[2016,1,1]],"date-time":"2016-01-01T00:00:00Z","timestamp":1451606400000},"content-version":"unspecified","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2016]]},"DOI":"10.1007\/978-3-319-49151-6_4","type":"book-chapter","created":{"date-parts":[[2016,11,4]],"date-time":"2016-11-04T02:09:46Z","timestamp":1478225386000},"page":"48-64","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":8,"title":["A Spark-Based DDoS Attack Detection Model in Cloud Services"],"prefix":"10.1007","author":[{"given":"Jian","family":"Zhang","sequence":"first","affiliation":[]},{"given":"Yawei","family":"Zhang","sequence":"additional","affiliation":[]},{"given":"Pin","family":"Liu","sequence":"additional","affiliation":[]},{"given":"Jianbiao","family":"He","sequence":"additional","affiliation":[]}],"member":"297","published-online":{"date-parts":[[2016,11,5]]},"reference":[{"key":"4_CR1","doi-asserted-by":"publisher","DOI":"10.1145\/1900008.1900152","volume-title":"Cloud Computing: Security Risk Classification","author":"RLQ Sumter","year":"2010","unstructured":"Sumter, R.L.Q.: Cloud Computing: Security Risk Classification. ACMSE, Oxford (2010)"},{"key":"4_CR2","doi-asserted-by":"crossref","unstructured":"Jansen, W., et al.: Cloud hooks: security and privacy issues in cloud computing. In: 44th Hawaii International Conference on System Sciences (HICSS), pp. 1\u201310. IEEE (2011)","DOI":"10.1109\/HICSS.2011.103"},{"issue":"C","key":"4_CR3","doi-asserted-by":"publisher","first-page":"147","DOI":"10.1016\/j.jnca.2016.01.001","volume":"67","author":"O Osanaiye","year":"2016","unstructured":"Osanaiye, O., Choo, K.K.R., Dlodlo, M.: Distributed denial of service (DDoS) resilience in cloud. J. Netw. Comput. Appl. 67(C), 147\u2013165 (2016)","journal-title":"J. Netw. Comput. Appl."},{"key":"4_CR4","unstructured":"Bhuyan, M.H., Kashyap, H.J., Bhattacharyya, D.K., Kalita, J.K.: Detecting distributed denial of service attacks: methods, tools and future directions. Comput. J. bxt031 (2014)"},{"key":"4_CR5","unstructured":"Patel, K.: Security survey for cloud computing: threats & existing IDS\/IPS techniques. In: 24th International Conference on Control, Communication and Computer Technology, pp. 88\u201392. IEEE (2013)"},{"issue":"4","key":"4_CR6","doi-asserted-by":"publisher","first-page":"2046","DOI":"10.1109\/SURV.2013.031413.00127","volume":"15","author":"ST Zargar","year":"2013","unstructured":"Zargar, S.T., Joshi, J., Tipper, D.: A survey of defense mechanisms against distributed denial of service (DDoS) flooding attacks. IEEE Commun. Surv. Tutorials 15(4), 2046\u20132069 (2013)","journal-title":"IEEE Commun. Surv. Tutorials"},{"key":"4_CR7","doi-asserted-by":"crossref","unstructured":"Gupta, S., Kumar, P., Abraham, A.: A profile based network intrusion detection and prevention system for securing cloud environment. Int. J. Distrib. Sens. Netw. 2013 (2013)","DOI":"10.1155\/2013\/364575"},{"issue":"1","key":"4_CR8","first-page":"9","volume":"1","author":"F Yi","year":"2011","unstructured":"Yi, F., Yu, S., Zhou, W., Hai, J., Bonti, A.: Source-based filtering scheme against DDoS attacks. Int. J. Database Theory Appl. 1(1), 9\u201320 (2011)","journal-title":"Int. J. Database Theory Appl."},{"key":"4_CR9","doi-asserted-by":"crossref","unstructured":"Gupta, B.B., Badve, O.P.: Taxonomy of DoS and DDoS attacks and desirable defense mechanism in a cloud computing environment. In: Neural Computing & Applications, pp. 1\u201328 (2016)","DOI":"10.1007\/s00521-016-2317-5"},{"issue":"7","key":"4_CR10","doi-asserted-by":"publisher","first-page":"1838","DOI":"10.1016\/j.future.2012.12.011","volume":"29","author":"W Dou","year":"2013","unstructured":"Dou, W., Chen, Q., Chen, J.: A confidence-based filtering method for DDoS attack defense in cloud environment. Future Gener. Comput. Syst. 29(7), 1838\u20131850 (2013)","journal-title":"Future Gener. Comput. Syst."},{"key":"4_CR11","unstructured":"Gulshan, S., Kavita, S., Swarnlata, R.: A technical overview dos and DDoS attack. In: Proceeding of International Conference in Computing 2010, pp. 274\u2013282 (2010)"},{"key":"4_CR12","doi-asserted-by":"crossref","unstructured":"Somani, G., Gaur, M.S., Sanghi, D., Conti, M.: DDoS attacks in cloud computing: collateral damage to non-targets. Comput. Netw. (2016)","DOI":"10.1016\/j.comnet.2016.03.022"},{"issue":"8","key":"4_CR13","first-page":"1","volume":"5","author":"M Bogdanoski","year":"2013","unstructured":"Bogdanoski, M., Suminoski, T., Risteski, A.: Analysis of the SYN flood DoS attack. Int. J. Comput. Netw. Inf. Secur. (IJCNIS) 5(8), 1\u201311 (2013)","journal-title":"Int. J. Comput. Netw. Inf. Secur. (IJCNIS)"},{"issue":"3","key":"4_CR14","first-page":"2319","volume":"1","author":"NH Bhandari","year":"2013","unstructured":"Bhandari, N.H.: Survey on DDoS attacks and its detection & defence approaches. Int. J. Sci. Mod. Eng. (IJISME) 1(3), 2319\u20136386 (2013)","journal-title":"Int. J. Sci. Mod. Eng. (IJISME)"},{"key":"4_CR15","doi-asserted-by":"crossref","unstructured":"Tao, Y., Yu, S.: DDoS attack detection at local area networks using information theoretical metrics. In: 12th IEEE International Conference on Trust, Security and Privacy in Computing and Communications (TrustCom), pp. 233\u2013240 (2013)","DOI":"10.1109\/TrustCom.2013.32"},{"issue":"6","key":"4_CR16","doi-asserted-by":"publisher","first-page":"1828","DOI":"10.1109\/TNET.2012.2194508","volume":"20","author":"J Fran\u00e7ois","year":"2012","unstructured":"Fran\u00e7ois, J., Aib, I., Boutaba, R.: Firecol: a collaborative protection network for the detection of flooding DDoS attacks. IEEE\/ACM Trans. Netw. (TON) 20(6), 1828\u20131841 (2012)","journal-title":"IEEE\/ACM Trans. Netw. (TON)"},{"key":"4_CR17","unstructured":"Chouhan, V., Peddoju, S.K.: Packet monitoring approach to prevent DDoS attack in cloud computing. Int. J. Comput. Sci. Electr. Eng. (IJCSEE) 2315\u20134209 (2013)"},{"issue":"1","key":"4_CR18","doi-asserted-by":"publisher","first-page":"198","DOI":"10.1016\/j.mcm.2011.02.025","volume":"55","author":"F Wang","year":"2012","unstructured":"Wang, F., Wang, H., Wang, X., Su, J.: A new multistage approach to detect subtle DDoS attacks. Math. Comput. Model. 55(1), 198\u2013213 (2012)","journal-title":"Math. Comput. Model."},{"key":"4_CR19","doi-asserted-by":"crossref","unstructured":"Bhuyan, M.H., Bhattacharyya, D.K., Kalita, J.K.: An empirical evaluation of information metrics for low-rate and high-rate DDoS attack detection. Pattern Recogn. Lett. Early Access 1\u20137 (2015)","DOI":"10.1016\/j.patrec.2014.07.019"},{"issue":"3","key":"4_CR20","doi-asserted-by":"crossref","first-page":"381","DOI":"10.15388\/Informatica.2013.401","volume":"24","author":"J Choi","year":"2013","unstructured":"Choi, J., Chang, C., Yim, K., Kim, J., Kim, P.: Intelligent reconfigurable method of cloud computing resources for multimedia data delivery. Informatica 24(3), 381\u2013394 (2013)","journal-title":"Informatica"},{"key":"4_CR21","doi-asserted-by":"crossref","unstructured":"Zaharia, M., Das, T., Li, H., Hunter, T., Shenker, S., Stoica, I.: Discretized streams: fault-tolerant streaming computation at scale. In: Proceedings of the Twenty-Fourth ACM Symposium on Operating Systems Principles, pp. 423\u2013438 (2013)","DOI":"10.1145\/2517349.2522737"},{"key":"4_CR22","unstructured":"Chen, W., Wang, J.: Building a cloud computing analysis system for intrusion detection system. In: CloudSlam (2009)"},{"key":"4_CR23","doi-asserted-by":"crossref","unstructured":"Lee, Y., Lee, Y.: Detecting DDoS attacks with hadoop. In: ACM Conext Student Workshop, pp. 1\u20132 (2011)","DOI":"10.1145\/2079327.2079334"},{"key":"4_CR24","unstructured":"Conner, J.: Customizing input file formats for image processing in hadoop. In: Arizona State University Technical report (2009)"},{"issue":"1","key":"4_CR25","doi-asserted-by":"publisher","first-page":"5","DOI":"10.1145\/2427036.2427038","volume":"43","author":"Y Lee","year":"2013","unstructured":"Lee, Y., Lee, Y.: Toward scalable internet traffic measurement and analysis with hadoop. ACM SIGCOMM Comput. Commun. Rev. 43(1), 5\u201313 (2013)","journal-title":"ACM SIGCOMM Comput. Commun. Rev."},{"key":"4_CR26","doi-asserted-by":"crossref","unstructured":"Rettig, L., Khayati, M., Cudre-Mauroux, P., Piorkowski, M.: Online anomaly detection over big data streams. In: IEEE International Conference on Big Data, pp. 1113\u20131122 (2015)","DOI":"10.1109\/BigData.2015.7363865"},{"issue":"11","key":"4_CR27","first-page":"1600","volume":"12","author":"Y Zheng","year":"2013","unstructured":"Zheng, Y., Shroff, N.B., Sinha, P.: A new analytical technique for designing provably efficient MapReduce schedulers. Proc. IEEE INFOCOM 12(11), 1600\u20131608 (2013)","journal-title":"Proc. IEEE INFOCOM"},{"key":"4_CR28","doi-asserted-by":"crossref","unstructured":"Wang, W., Zhu, K., Lei, Y.: Map task scheduling in MapReduce with data locality: throughput and heavy-traffic optimality. In: Proceedings - IEEE INFOCOM, pp. 1609\u20131617 (2013)","DOI":"10.1109\/INFCOM.2013.6566957"},{"key":"4_CR29","doi-asserted-by":"crossref","unstructured":"Jung, J., Krishnamurthy, B., Rabinovich, M.: Flash crowds and denial of service attacks: characterization and implications for CDNs and web sites. In: Proceedings of the 11th International Conference on World Wide Web, pp. 252\u2013262. ACM (2002)","DOI":"10.1145\/511483.511485"}],"container-title":["Lecture Notes in Computer Science","Information Security Practice and Experience"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-319-49151-6_4","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2020,9,27]],"date-time":"2020-09-27T03:45:31Z","timestamp":1601178331000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-319-49151-6_4"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2016]]},"ISBN":["9783319491509","9783319491516"],"references-count":29,"URL":"https:\/\/doi.org\/10.1007\/978-3-319-49151-6_4","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2016]]},"assertion":[{"value":"5 November 2016","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"ISPEC","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"International Conference on Information Security Practice and Experience","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Zhangjiajie","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"China","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2016","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"16 November 2016","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"18 November 2016","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"12","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"ispec2016","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}