{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,27]],"date-time":"2026-05-27T21:02:08Z","timestamp":1779915728379,"version":"3.53.1"},"publisher-location":"Cham","reference-count":14,"publisher":"Springer International Publishing","isbn-type":[{"value":"9783319998428","type":"print"},{"value":"9783319998435","type":"electronic"}],"license":[{"start":{"date-parts":[[2018,1,1]],"date-time":"2018-01-01T00:00:00Z","timestamp":1514764800000},"content-version":"unspecified","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2018]]},"DOI":"10.1007\/978-3-319-99843-5_5","type":"book-chapter","created":{"date-parts":[[2018,9,8]],"date-time":"2018-09-08T07:15:01Z","timestamp":1536390901000},"page":"48-59","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":20,"title":["Timing-Based Anomaly Detection in SCADA Networks"],"prefix":"10.1007","author":[{"given":"Chih-Yuan","family":"Lin","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Simin","family":"Nadjm-Tehrani","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Mikael","family":"Asplund","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2018,9,9]]},"reference":[{"key":"5_CR1","unstructured":"Bhatia, S., Kush, N., Djamaludin, C., Akane, J., Foo, E.: Practical Modbus flooding attack and detection. In: Proceedings of the Twelfth Australasian Information Security Conference, AISC (2014)"},{"key":"5_CR2","doi-asserted-by":"crossref","unstructured":"Valdes, A., Cheung S.: Communication pattern anomaly detection in process control systems. In: IEEE Conference on Technologies for Homeland Security, HST (2009)","DOI":"10.1109\/THS.2009.5168010"},{"key":"5_CR3","doi-asserted-by":"crossref","unstructured":"Sayegh, N., Elhajj, H.I., Kayssi, A., Chehab, A.: SCADA Intrusion Detection System based on temporal behavior of frequent patterns. In: 17th IEEE Mediterranean Electrotechnical Conference (2014)","DOI":"10.1109\/MELCON.2014.6820573"},{"key":"5_CR4","doi-asserted-by":"crossref","unstructured":"Barbosa, R.R.R., Sadre, R., Pras, A.: A first look into SCADA network traffic. In: IEEE Network Operations and Management Symposium, NOMS (2012)","DOI":"10.1109\/NOMS.2012.6211945"},{"key":"5_CR5","doi-asserted-by":"crossref","unstructured":"Barbosa, R.R.R., Sadre, R., Pras, A.: Towards periodicity based anomaly detection in SCADA networks. In: IEEE Conference on Emerging Technologies & Factory Automation (2012)","DOI":"10.1109\/ETFA.2012.6489745"},{"key":"5_CR6","doi-asserted-by":"crossref","unstructured":"Udd, R., Asplund, M., Nadjm-Tehrani, S., Kazemtabrizi, M., Ekstedt, M.: Exploiting Bro for intrusion detection in a SCADA system. In: Proceedings of the 2nd ACM International Workshop on Cyber-Physical System Security, CPSS (2016)","DOI":"10.1145\/2899015.2899028"},{"key":"5_CR7","doi-asserted-by":"publisher","first-page":"52","DOI":"10.1016\/j.ijcip.2016.02.004","volume":"13","author":"RRR Barbosa","year":"2016","unstructured":"Barbosa, R.R.R., Sadre, R., Pras, A.: Exploiting traffic periodicity in industrial control networks. Int. J. Crit. Infrastruct. Prot. 13, 52\u201362 (2016)","journal-title":"Int. J. Crit. Infrastruct. Prot."},{"key":"5_CR8","doi-asserted-by":"crossref","unstructured":"Yang, Y., McLaughlin, K., Sezer, S., Yuan, Y., Huang, W.: Stateful intrusion detection for IEC 60870-5-104 SCADA security. In: IEEE PES General Meeting (2014)","DOI":"10.1109\/PESGM.2014.6939218"},{"issue":"2","key":"5_CR9","doi-asserted-by":"publisher","first-page":"63","DOI":"10.1016\/j.ijcip.2013.05.001","volume":"6","author":"N Goldenberg","year":"2013","unstructured":"Goldenberg, N., Wool, A.: Accurate modeling of Modbus\/TCP for intrusion detection in SCADA systems. Int. J. Crit. Infrastruct. Prot. 6(2), 63\u20137 (2013)","journal-title":"Int. J. Crit. Infrastruct. Prot."},{"issue":"2","key":"5_CR10","first-page":"4","volume":"9","author":"A Kleinmann","year":"2014","unstructured":"Kleinmann, A., Wool, A.: Accurate modeling of the siemens S7 SCADA protocol for intrusion detection and digital forensic. J. Digit. Forensics Secur. Law 9(2), 4 (2014)","journal-title":"J. Digit. Forensics Secur. Law"},{"key":"5_CR11","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"132","DOI":"10.1007\/978-3-319-33331-1_11","volume-title":"Critical Information Infrastructures Security","author":"A Kleinmann","year":"2016","unstructured":"Kleinmann, A., Wool, A.: A statechart-based anomaly detection model for multi-threaded SCADA systems. In: Rome, E., Theocharidou, M., Wolthusen, S. (eds.) CRITIS 2015. LNCS, vol. 9578, pp. 132\u2013144. Springer, Cham (2016). https:\/\/doi.org\/10.1007\/978-3-319-33331-1_11"},{"key":"5_CR12","doi-asserted-by":"crossref","unstructured":"Kleinmann, A., Wool, A.: Automatic construction of statechart-based anomaly detection models for multi-threaded SCADA via spectral analysis. In: Proceedings of the 2nd ACM Workshop on Cyber-Physical Systems Security and Privacy (2016)","DOI":"10.1145\/2994487.2994490"},{"key":"5_CR13","doi-asserted-by":"crossref","unstructured":"Caselli, M., Zambon, E., Kargl F.: Sequence-aware intrusion detection in industrial control systems. In: Proceedings of the 1st ACM Workshop on Cyber-Physical System Security, CPSS (2015)","DOI":"10.1145\/2732198.2732200"},{"key":"5_CR14","doi-asserted-by":"crossref","unstructured":"Morris, T.H., Gao, W.: Industrial control system cyber attacks. In: Proceedings of the 1st International Symposium for ICS & SCADA Cyber Security Research (2013)","DOI":"10.14236\/ewic\/ICSCSR2013.3"}],"container-title":["Lecture Notes in Computer Science","Critical Information Infrastructures Security"],"original-title":[],"link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-319-99843-5_5","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2019,10,23]],"date-time":"2019-10-23T19:48:01Z","timestamp":1571860081000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-319-99843-5_5"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2018]]},"ISBN":["9783319998428","9783319998435"],"references-count":14,"URL":"https:\/\/doi.org\/10.1007\/978-3-319-99843-5_5","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"value":"0302-9743","type":"print"},{"value":"1611-3349","type":"electronic"}],"subject":[],"published":{"date-parts":[[2018]]}}}