{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,1,9]],"date-time":"2026-01-09T17:54:39Z","timestamp":1767981279122,"version":"3.49.0"},"publisher-location":"Cham","reference-count":30,"publisher":"Springer International Publishing","isbn-type":[{"value":"9783319571850","type":"print"},{"value":"9783319571867","type":"electronic"}],"license":[{"start":{"date-parts":[[2017,1,1]],"date-time":"2017-01-01T00:00:00Z","timestamp":1483228800000},"content-version":"unspecified","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2017]]},"DOI":"10.1007\/978-3-319-57186-7_29","type":"book-chapter","created":{"date-parts":[[2017,4,12]],"date-time":"2017-04-12T11:29:15Z","timestamp":1491996555000},"page":"386-401","source":"Crossref","is-referenced-by-count":7,"title":["Know Your Enemy: Stealth Configuration-Information Gathering in SDN"],"prefix":"10.1007","author":[{"given":"Mauro","family":"Conti","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Fabio","family":"De Gaspari","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Luigi V.","family":"Mancini","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2017,4,13]]},"reference":[{"key":"29_CR1","unstructured":"Openflow specification. https:\/\/www.opennetworking.org\/images\/stories\/downloads\/sdn-resources\/onf-specifications\/openflow\/openflow-switch-v1.5.1.pdf . Accessed 03 2016"},{"key":"29_CR2","unstructured":"Pox network controller. https:\/\/github.com\/noxrepo\/pox . Accessed 05 2016"},{"key":"29_CR3","doi-asserted-by":"crossref","first-page":"2","DOI":"10.1109\/TNSM.2004.4623689","volume":"1","author":"ES Al-Shaer","year":"2004","unstructured":"Al-Shaer, E.S., et al.: Modeling and management of firewall policies. IEEE Trans. Netw. Serv. Manage. 1, 2\u201310 (2004)","journal-title":"IEEE Trans. Netw. Serv. Manage."},{"key":"29_CR4","doi-asserted-by":"crossref","unstructured":"Ambrosin, M., et al.: Lineswitch: efficiently managing switch flow in software-defined networking while effectively tackling DoS attacks. In: ACM Symposium on Information, Computer and Communications Security (2015)","DOI":"10.1145\/2714576.2714612"},{"key":"29_CR5","doi-asserted-by":"crossref","unstructured":"Ambrosin, M., et al.: Lineswitch: tackling control plane saturation attacks in software-defined networking. In: IEEE\/ACM Transactions on Networking (2016)","DOI":"10.1109\/TNET.2016.2626287"},{"key":"29_CR6","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"229","DOI":"10.1007\/978-3-319-11599-3_14","volume-title":"Secure IT Systems","author":"M Antikainen","year":"2014","unstructured":"Antikainen, M., Aura, T., S\u00e4rel\u00e4, M.: Spook in your network: attacking an SDN with a compromised openflow switch. In: Bernsmed, K., Fischer-H\u00fcbner, S. (eds.) NordSec 2014. LNCS, vol. 8788, pp. 229\u2013244. Springer, Cham (2014). doi: 10.1007\/978-3-319-11599-3_14"},{"key":"29_CR7","doi-asserted-by":"crossref","unstructured":"Ashfaq, A.B., et al.: A comparative evaluation of anomaly detectors under portscan attacks. In: Symposium on Recent Advances in Intrusion Detection (2008)","DOI":"10.1007\/978-3-540-87403-4_19"},{"key":"29_CR8","doi-asserted-by":"crossref","first-page":"137","DOI":"10.1504\/IJSN.2015.071829","volume":"10","author":"G Ateniese","year":"2015","unstructured":"Ateniese, G., et al.: Hacking smart machines with smarter ones: how to extract meaningful data from machine learning classifiers. Int. J. Secur. Netw. 10, 137\u2013150 (2015)","journal-title":"Int. J. Secur. Netw."},{"key":"29_CR9","doi-asserted-by":"crossref","unstructured":"Benton, K., et al.: Openflow vulnerability assessment. In: ACM SIGCOMM Workshop on Hot Topics in Software Defined Networking (2013)","DOI":"10.1145\/2491185.2491222"},{"key":"29_CR10","doi-asserted-by":"crossref","unstructured":"Braga, R., et al.: Lightweight DDoS flooding attack detection using NOX\/OpenFlow. In: Conference on Local Computer Networks (2010)","DOI":"10.1109\/LCN.2010.5735752"},{"key":"29_CR11","doi-asserted-by":"crossref","first-page":"198","DOI":"10.1109\/TDSC.2013.8","volume":"10","author":"CJ Chung","year":"2013","unstructured":"Chung, C.J., et al.: Nice: network intrusion detection and countermeasure selection in virtual network systems. IEEE Trans. Dependable Secure Comput. 10, 198\u2013211 (2013)","journal-title":"IEEE Trans. Dependable Secure Comput."},{"key":"29_CR12","doi-asserted-by":"crossref","unstructured":"Dhawan, M., et al.: Sphinx: detecting security attacks in software-defined networks. In: Network and Distributed System Security Symposium (2015)","DOI":"10.14722\/ndss.2015.23064"},{"key":"29_CR13","doi-asserted-by":"crossref","first-page":"20","DOI":"10.1109\/MIC.2012.144","volume":"17","author":"D Drutskoy","year":"2013","unstructured":"Drutskoy, D., et al.: Scalable network virtualization in software-defined networks. IEEE Internet Comput. 17, 20\u201327 (2013)","journal-title":"IEEE Internet Comput."},{"key":"29_CR14","doi-asserted-by":"crossref","first-page":"2317","DOI":"10.1109\/COMST.2015.2474118","volume":"17","author":"I Ahmad","year":"2015","unstructured":"Ahmad, I., et al.: Security in software defined networks: a survey. IEEE Commun. Surv. Tutorials 17, 2317\u20132346 (2015)","journal-title":"IEEE Commun. Surv. Tutorials"},{"key":"29_CR15","doi-asserted-by":"crossref","unstructured":"Suh, M., et al.: Building firewall over the software-defined network controller. In: International Conference on Advanced Communication Technology (2014)","DOI":"10.1109\/ICACT.2014.6779061"},{"key":"29_CR16","doi-asserted-by":"crossref","unstructured":"Kloti, R., et al.: OpenFlow: a security analysis. In: IEEE International Conference on Network Protocols (2013)","DOI":"10.1109\/ICNP.2013.6733671"},{"key":"29_CR17","doi-asserted-by":"crossref","first-page":"122","DOI":"10.1016\/j.bjp.2013.10.014","volume":"62","author":"K Giotis","year":"2016","unstructured":"Giotis, K., et al.: Combining OpenFlow and sFlow for an effective and scalable anomaly detection and mitigation mechanism on SDN environments. Comput. Netw. 62, 122\u2013136 (2016)","journal-title":"Comput. Netw."},{"key":"29_CR18","doi-asserted-by":"crossref","unstructured":"Hu, H., et al.: FLOWGUARD: building robust firewalls for software-defined networks. In: Workshop on Hot Topics in Software Defined Networking, HotSDN 2014 (2014)","DOI":"10.1145\/2620728.2620749"},{"key":"29_CR19","doi-asserted-by":"crossref","unstructured":"Jain, S., et al.: B4: experience with a globally-deployed software defined WAN. In: SIGCOMM Computer Communication Review (2013)","DOI":"10.1145\/2486001.2486019"},{"key":"29_CR20","doi-asserted-by":"crossref","unstructured":"Kamisi\u0144ski, A., et al.: FlowMon: detecting malicious switches in software-defined networks. In: Automated Decision Making for Active Cyber Defense (2015)","DOI":"10.1145\/2809826.2809833"},{"key":"29_CR21","doi-asserted-by":"crossref","unstructured":"Kreutz, D., et al.: Towards secure and dependable software-defined networks. In: ACM SIGCOMM Workshop on Hot Topics in Software Defined Networking (2013)","DOI":"10.1145\/2491185.2491199"},{"key":"29_CR22","unstructured":"Mahimkar, A., et al.: Dfence: transparent network-based denial of service mitigation. In: USENIX Conference on Networked Systems Design and Implementation (2007)"},{"key":"29_CR23","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"161","DOI":"10.1007\/978-3-642-23644-0_9","volume-title":"Recent Advances in Intrusion Detection","author":"SA Mehdi","year":"2011","unstructured":"Mehdi, S.A., Khalid, J., Khayam, S.A.: Revisiting traffic anomaly detection using software defined networking. In: Sommer, R., Balzarotti, D., Maier, G. (eds.) RAID 2011. LNCS, vol. 6961, pp. 161\u2013180. Springer, Heidelberg (2011). doi: 10.1007\/978-3-642-23644-0_9"},{"key":"29_CR24","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"59","DOI":"10.1007\/978-3-540-30143-1_4","volume-title":"Recent Advances in Intrusion Detection","author":"SE Schechter","year":"2004","unstructured":"Schechter, S.E., Jung, J., Berger, A.W.: Fast detection of scanning worm infections. In: Jonsson, E., Valdes, A., Almgren, M. (eds.) RAID 2004. LNCS, vol. 3224, pp. 59\u201381. Springer, Heidelberg (2004). doi: 10.1007\/978-3-540-30143-1_4"},{"key":"29_CR25","doi-asserted-by":"crossref","unstructured":"Scott-Hayward, S., et al.: A survey of security in software defined networks. IEEE Commun. Surv. Tutorials (2016)","DOI":"10.1109\/COMST.2015.2453114"},{"key":"29_CR26","doi-asserted-by":"crossref","unstructured":"Shin, S., et al.: AVANT-GUARD: scalable and vigilant switch flow management in software-defined networks. In: ACM Conference on Computer and Communications Security (2013)","DOI":"10.1145\/2508859.2516684"},{"key":"29_CR27","unstructured":"Shin, S., et al.: Fresco: modular composable security services for software-defined networks. In: Network and Distributed System Security Symposium (2013)"},{"key":"29_CR28","doi-asserted-by":"crossref","unstructured":"Sonchack, J., et al.: Timing-based reconnaissance and defense in software-defined networks. In: Annual Conference on Computer Security Applications (2016)","DOI":"10.1145\/2991079.2991081"},{"key":"29_CR29","unstructured":"Twycross, J., et al.: Implementing and testing a virus throttle. In: USENIX Security Symposium (2003)"},{"key":"29_CR30","doi-asserted-by":"crossref","unstructured":"Wang, J., et al.: Towards a security-enhanced firewall application for openflow networks. In: Symposium on Cyberspace Safety and Security, CSS 2013 (2013)","DOI":"10.1007\/978-3-319-03584-0_8"}],"container-title":["Lecture Notes in Computer Science","Green, Pervasive, and Cloud Computing"],"original-title":[],"link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-319-57186-7_29","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2019,9,20]],"date-time":"2019-09-20T20:29:55Z","timestamp":1569011395000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-319-57186-7_29"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2017]]},"ISBN":["9783319571850","9783319571867"],"references-count":30,"URL":"https:\/\/doi.org\/10.1007\/978-3-319-57186-7_29","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"value":"0302-9743","type":"print"},{"value":"1611-3349","type":"electronic"}],"subject":[],"published":{"date-parts":[[2017]]}}}