{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,4,16]],"date-time":"2026-04-16T16:46:40Z","timestamp":1776358000100,"version":"3.51.2"},"publisher-location":"Berlin, Heidelberg","reference-count":20,"publisher":"Springer Berlin Heidelberg","isbn-type":[{"value":"9783642196430","type":"print"},{"value":"9783642196447","type":"electronic"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2011]]},"DOI":"10.1007\/978-3-642-19644-7_38","type":"book-chapter","created":{"date-parts":[[2011,3,6]],"date-time":"2011-03-06T13:07:52Z","timestamp":1299416872000},"page":"357-366","source":"Crossref","is-referenced-by-count":31,"title":["A Review of SCADA Anomaly Detection Systems"],"prefix":"10.1007","author":[{"given":"I\u00f1aki","family":"Garitano","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Roberto","family":"Uribeetxeberria","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Urko","family":"Zurutuza","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","reference":[{"key":"38_CR1","unstructured":"McMillan, R.: Siemens: Stuxnet worm hit industrial systems (2010), http:\/\/www.computerworld.com\/s\/article\/print\/9185419\/Siemens_Stuxnet_worm_hit_industrial_systems?taxonomyName=Network+Security&taxonomyId=142 (accessed September 14, 2010)"},{"key":"38_CR2","unstructured":"Richmond, R.:Malware hits computerized industrial equipment (2010), http:\/\/bits.blogs.nytimes.com\/2010\/09\/24\/malware-hits-omputerized-industrial-equipment\/?ref=middleeast (accessed September 24, 2010)"},{"key":"38_CR3","doi-asserted-by":"crossref","unstructured":"Christiansson, H., Luiijf, E.: Creating a European SCADA Security Testbed. Critical Infrastructure Protection, 237-247 (2007)","DOI":"10.1007\/978-0-387-75462-8_17"},{"key":"38_CR4","doi-asserted-by":"crossref","unstructured":"Byres, E., Creery, A.: Industrial cybersecurity for power system and SCADA networks. In: Petroleum and Chemical Industry Conference, 303-309 (2005)","DOI":"10.1109\/PCICON.2005.1524567"},{"key":"38_CR5","doi-asserted-by":"crossref","unstructured":"Barbosa, R., Pras, A.: Intrusion Detection in SCADA Networks. Mechanisms for Autonomous Management of Networks and Services. 163-166 (2010)","DOI":"10.1007\/978-3-642-13986-4_23"},{"key":"38_CR6","doi-asserted-by":"crossref","unstructured":"D\u2019Antonio, S., Oliviero, F., Setola, R.: High-speed intrusion detection in support of critical infrastructure protection. Critical Information Infrastructures Security, 222\u2013234 (2006)","DOI":"10.1007\/11962977_18"},{"key":"38_CR7","doi-asserted-by":"crossref","unstructured":"Barbara, D., Wu, N., Jajodia, S.: Detecting novel network intrusions using bayes estimators. In: First SIAM Conference on Data Mining (2001)","DOI":"10.1137\/1.9781611972719.28"},{"key":"38_CR8","unstructured":"Lane, T., Brodley, C.: An application of machine learning to anomaly detection. In: Proceedings of the 20th National Information Systems Security Conference, pp. 366\u2013377 (1997)"},{"key":"38_CR9","unstructured":"Valdes, A., Cheung, S., Lindqvist, U., et al.: Securing Current and Future Process Control Systems. In: International Federation for Information Processing Digital Library, pp. 99\u2013115 (2007)"},{"key":"38_CR10","unstructured":"Valdes, A., Cheung, S., Dutertre, B., et al.: Using model-based intrusion detection for SCADA networks. In: Proceedings of the SCADA Security Scientific Symposium (2006)"},{"key":"38_CR11","unstructured":"Salvi, D., Mazzariello, C., Oliviero, F., D\u2019Antonio, S.: A Distributed multi-purpose IP flow monitor. In: 3\u00b0 International Workshop on Internet Performance, Simulation, Monitoring and Measurement IPS-MoMe 9 (2005)"},{"key":"38_CR12","doi-asserted-by":"crossref","unstructured":"Rrushi, J., Campbell, R.: Detecting Cyber Attacks On Nuclear Power Plants. Critical Infrastructure Protection, 41\u201354 (2009)","DOI":"10.1007\/978-0-387-88523-0_4"},{"key":"38_CR13","doi-asserted-by":"crossref","unstructured":"D\u00fcssel, P., Gehl, C., Laskov, P., et al.: Cyber-Critical Infrastructure Protection Using Real-time Payload-based Anomaly Detection. Critical Information Infrastructures Security, 85\u201397 (2010)","DOI":"10.1007\/978-3-642-14379-3_8"},{"key":"38_CR14","unstructured":"Lawrence Berkeley National Laboratory Bro intrusion detection system (2010), http:\/\/www.bro-ids.org (accessed September 17, 2010)"},{"key":"38_CR15","doi-asserted-by":"crossref","unstructured":"Papa, M., Gonzalez, J.: Passive Scanning in Modbus Networks. International Federation for Information Processing Digital Library, 175\u2013187 (2007)","DOI":"10.1007\/978-0-387-75462-8_13"},{"key":"38_CR16","doi-asserted-by":"crossref","unstructured":"Cucurull, J., Asplund, M., Nadjm-Tehrani, S.: Anomaly detection and mitigation for disaster area networks. Recent Advances in Intrusion Detection, 339\u2013359 (2010)","DOI":"10.1007\/978-3-642-15512-3_18"},{"key":"38_CR17","unstructured":"Porras, P.A., Neumann, P.G.: EMERALD: Event monitoring enabling responses to anomalous live disturbances. In: Proceedings of the 20th National Information Systems Security Conference, pp. 353\u2013365 (1997)"},{"key":"38_CR18","doi-asserted-by":"crossref","unstructured":"Bigham, J., Gamez, D., Lu, N.: Safeguarding SCADA systems with anomaly detection. Computer Network Security, 171\u2013182 (2003)","DOI":"10.1007\/978-3-540-45215-7_14"},{"key":"38_CR19","unstructured":"Yang, D., Usynin, A., Hines, J.W.: Anomaly-based intrusion detection for SCADA systems. In: 5th Intl. Topical Meeting on Nuclear Plant Instrumentation, Control and Human Machine Interface Technologies, pp. 12\u201316 (2005)"},{"key":"38_CR20","doi-asserted-by":"crossref","unstructured":"Valdes, A., Cheung, S.: Communication pattern anomaly detection in process control systems. In: IEEE Conference on Technologies for Homeland Security, pp. 22\u201329 (2009)","DOI":"10.1109\/THS.2009.5168010"}],"container-title":["Advances in Intelligent and Soft Computing","Soft Computing Models in Industrial and Environmental Applications, 6th International Conference SOCO 2011"],"original-title":[],"link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-642-19644-7_38.pdf","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,3,3]],"date-time":"2025-03-03T14:30:41Z","timestamp":1741012241000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-642-19644-7_38"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2011]]},"ISBN":["9783642196430","9783642196447"],"references-count":20,"URL":"https:\/\/doi.org\/10.1007\/978-3-642-19644-7_38","relation":{},"ISSN":["1867-5662","1867-5670"],"issn-type":[{"value":"1867-5662","type":"print"},{"value":"1867-5670","type":"electronic"}],"subject":[],"published":{"date-parts":[[2011]]}}}