{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,1,21]],"date-time":"2025-01-21T05:12:12Z","timestamp":1737436332413,"version":"3.33.0"},"publisher-location":"Berlin, Heidelberg","reference-count":20,"publisher":"Springer Berlin Heidelberg","isbn-type":[{"type":"print","value":"9783540744085"},{"type":"electronic","value":"9783540744092"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"DOI":"10.1007\/978-3-540-74409-2_8","type":"book-chapter","created":{"date-parts":[[2007,8,17]],"date-time":"2007-08-17T15:57:55Z","timestamp":1187366275000},"page":"54-64","source":"Crossref","is-referenced-by-count":0,"title":["Towards Automatic Assembly of Privacy-Preserved Intrusion Signatures"],"prefix":"10.1007","author":[{"given":"Zhuowei","family":"Li","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Amitabha","family":"Das","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Jianying","family":"Zhou","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","reference":[{"key":"8_CR1","unstructured":"Anderson, J.: Computer security threat monitoring and surveillance. Technical report, James P Anderson Co., Fort Washington, Pennsylvania (April 1980)"},{"key":"8_CR2","unstructured":"Arshad, D., Chan, P.: Identifying outliers via clustering for anomaly detection. Technical Report CS-2003-19, Computer Science Department, Florida Institute of Technology (2003)"},{"key":"8_CR3","unstructured":"Kim, H.-A., Karp, B.: Autograph: Toward automated, distributed worm signature detection. In: USENIX Security Symposium, pp. 271\u2013286 (2004)"},{"issue":"1","key":"8_CR4","doi-asserted-by":"publisher","first-page":"51","DOI":"10.1145\/972374.972384","volume":"34","author":"C. Kreibich","year":"2004","unstructured":"Kreibich, C., Crowcroft, J.: Honeycomb: creating intrusion detection signatures using honeypots. SIGCOMM Comput. Commun. Rev.\u00a034(1), 51\u201356 (2004)","journal-title":"SIGCOMM Comput. Commun. Rev."},{"key":"8_CR5","unstructured":"Li, Z., Das, A.: Visualizing and identifying intrusion context from system calls trace. In: Proceedings of 20th Annual Computer Security Applications Conference (December 2004)"},{"key":"8_CR6","unstructured":"Li, Z., Das, A., Zhou, J.: Theoretical Basis for Intrusion Detection. In: Proceedings of 6th IEEE Information Assurance Workshop (IAW) (June 2005)"},{"key":"8_CR7","unstructured":"libpcap, http:\/\/sourceforge.net\/projects\/libpcap\/"},{"key":"8_CR8","unstructured":"Lincoln, P., Porras, P.A., Shmatikov, V.: Privacy-preserving sharing and correlation of security alerts. In: USENIX Security Symposium, pp. 239\u2013254 (2004)"},{"key":"8_CR9","doi-asserted-by":"crossref","unstructured":"Newsome, J., Karp, B., Song, D.: Polygraph: Automatically generating signatures for polymorphic worms. Proceedings of IEEE S&P, 226\u2013241 (2005)","DOI":"10.1109\/SP.2005.15"},{"key":"8_CR10","unstructured":"Newsome, J., Song, D.: Dynamic taint analysis for automatic detection, analysis, and signature generation of exploits on commodity software. In: Proceedings of the 12th Annual Network and Distributed System Security Symposium (NDSS 2005) (2005)"},{"key":"8_CR11","unstructured":"Ning, P., Xu, D., Healey, C.G., Amant, R.S.: Building attack scenarios through integration of complementary alert correlation method. In: NDSS (2004)"},{"key":"8_CR12","unstructured":"Paxon, V.: Bro: A system for detecting network intruders in real-time. In: Proc. 7th USENIX Security Symposium (1998)"},{"key":"8_CR13","doi-asserted-by":"crossref","unstructured":"Perdisci, R., Dagon, D., Lee, W., Fogla, P., Sharif, M.: Misleadingworm signature generators using deliberate noise injection. Proceedings of the 2006 IEEE S&P, 17\u201331 (2006)","DOI":"10.1109\/SP.2006.26"},{"key":"8_CR14","unstructured":"RealSecure. http:\/\/www.realsecure.com"},{"key":"8_CR15","unstructured":"Roesch, M.: Snort - lightweight intrusion detection for networks. In: Proceedings of USENIX LISA (1999)"},{"key":"8_CR16","unstructured":"Singh, S., Estan, C., Varghese, G., Savage, S.: Automated worm fingerprinting. In: OSDI, pp. 45\u201360 (2004)"},{"key":"8_CR17","unstructured":"Weaver, N.C.: A warhol worm: An internet plague in 15 minutes! (2001), http:\/\/www.cs.berkeley.edu\/~nweaver\/warhol.old.html (as of Feburary 2006)"},{"key":"8_CR18","unstructured":"winpcap, http:\/\/www.winpcap.org\/"},{"key":"8_CR19","series-title":"Lecture Notes in Computer Science","first-page":"537","volume-title":"Advances in Computer Systems Architecture","author":"D. Xu","year":"2005","unstructured":"Xu, D., Ning, P.: Privacy-preserving alert correlation: A concept hierarchy based approach. In: Srikanthan, T., Xue, J., Chang, C.-H. (eds.) ACSAC 2005. LNCS, vol.\u00a03740, pp. 537\u2013546. Springer, Heidelberg (2005)"},{"key":"8_CR20","volume-title":"Proceedings of 2nd IEEE Communications Society\/CreateNet International Conference on Security and Privacy in Communication Networks","author":"D. Xu","year":"2006","unstructured":"Xu, D., Ning, P.: A flexible approach to intrusion alert anonymization and correlation. In: Proceedings of 2nd IEEE Communications Society\/CreateNet International Conference on Security and Privacy in Communication Networks, August 2006, IEEE Computer Society Press, Los Alamitos (2006)"}],"container-title":["Lecture Notes in Computer Science","Trust, Privacy and Security in Digital Business"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-540-74409-2_8.pdf","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,1,20]],"date-time":"2025-01-20T12:36:52Z","timestamp":1737376612000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-540-74409-2_8"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[null]]},"ISBN":["9783540744085","9783540744092"],"references-count":20,"URL":"https:\/\/doi.org\/10.1007\/978-3-540-74409-2_8","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[]}}