{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,4,11]],"date-time":"2025-04-11T04:58:03Z","timestamp":1744347483016,"version":"3.38.0"},"publisher-location":"Berlin, Heidelberg","reference-count":29,"publisher":"Springer Berlin Heidelberg","isbn-type":[{"type":"print","value":"9783642217708"},{"type":"electronic","value":"9783642217715"}],"license":[{"start":{"date-parts":[[2011,1,1]],"date-time":"2011-01-01T00:00:00Z","timestamp":1293840000000},"content-version":"unspecified","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2011]]},"DOI":"10.1007\/978-3-642-21771-5_21","type":"book-chapter","created":{"date-parts":[[2011,7,4]],"date-time":"2011-07-04T06:44:02Z","timestamp":1309761842000},"page":"191-203","source":"Crossref","is-referenced-by-count":3,"title":["DDoS Detection Algorithm Using the Bidirectional Session"],"prefix":"10.1007","author":[{"given":"HeeKyoung","family":"Yi","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"PyungKoo","family":"Park","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Seungwook","family":"Min","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"JaeCheol","family":"Ryou","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","reference":[{"key":"21_CR1","doi-asserted-by":"publisher","first-page":"39","DOI":"10.1145\/997150.997156","volume":"34","author":"J. Mirkovic","year":"2004","unstructured":"Mirkovic, J., Reiher, P.: A Taxonomy of DDoS Attack and DDoS Defense Mechanisms. Computer Communication Review\u00a034, 39\u201353 (2004)","journal-title":"Computer Communication Review"},{"key":"21_CR2","unstructured":"Khan, S., Loo, K.-K., Naeem, T., Khan, M.A.: Denial of Service Attacks and Challenges in Broadband Wireless Networks. IJCSNS International Journal of Computer Science and Network Security\u00a08(7) (July 2008)"},{"key":"21_CR3","unstructured":"Arbor Networks, Worldwide Infrastructure Report, vol.\u00a0V"},{"key":"21_CR4","doi-asserted-by":"crossref","unstructured":"Xie, Y., Yu, S.-Z.: A Large-Scale Hidden Semi-Markov Model for Anomaly Detection on User Browsing Behaviors. IEEE\/ACM Transactions on Networking\u00a017(1) (February 2009)","DOI":"10.1109\/TNET.2008.923716"},{"key":"21_CR5","doi-asserted-by":"crossref","unstructured":"Kuzmanovic, A., Knightly, E.W.: Low-Rate TCP-Targeted Denial of Service Attacks and Counter Strategies. IEEE\/ACM Transactions on Networking\u00a014(4) (August 2006)","DOI":"10.1109\/TNET.2006.880180"},{"key":"21_CR6","doi-asserted-by":"crossref","unstructured":"Dittrich, D., Dietrich, S.: P2P as botnet command and control: a deeper insight. In: 3rd International Conference on Malicious and Unwanted Software, MALWARE 2008 (2008)","DOI":"10.1109\/MALWARE.2008.4690856"},{"key":"21_CR7","doi-asserted-by":"crossref","unstructured":"Yatagai, T., Isohara, T., Sasase, I.: Detection of HTTP-GET ?ood Attack Based on Analysis of Page Access Behavior. In: IEEE Pacific Rim Conference on Communications, Computers and Signal Processing, PacRim 2007 (2007)","DOI":"10.1109\/PACRIM.2007.4313218"},{"issue":"4","key":"21_CR8","doi-asserted-by":"publisher","first-page":"76","DOI":"10.1109\/MSP.2007.98","volume":"5","author":"M. Lesk","year":"2007","unstructured":"Lesk, M., Stytz, R., Trope, L.: The New Front Line: Estonia under Cyberassault. Security & Privacy IEEE\u00a05(4), 76\u201379 (2007)","journal-title":"Security & Privacy IEEE"},{"key":"21_CR9","unstructured":"Network Ingress Filtering: Defeating Denial of Service Attacks which employ IP Source Address Spoofing. RFC 2827 (May 2000)"},{"key":"21_CR10","unstructured":"Wang, H., Zhang, D., Shin, K.G.: Detecting SYN Flooding Attacks. In: Proceedings of the IEEE Infocom, pp.\u00a01530\u20131539 (2002)"},{"key":"21_CR11","unstructured":"Garg, A., Narasimha Reddy, A.L.: Mitigation of DoS attacks through QoS regulation. In: Proceedings of ACM SIGCOMM 2001 (August 2001)"},{"key":"21_CR12","unstructured":"Park, K., Lee, H.: On the effectiveness of probabilistic packet marking for IP traceback under denial of service attack. In: Proc. IEEE INFOCOM 2001, pp.\u00a0338\u2013347 (2001)"},{"key":"21_CR13","doi-asserted-by":"crossref","unstructured":"Song, D.X., Perrig, A.: Advanced and Authenticated Marking Scheme for IP Traceback. In: Proc. Infocom, vol.\u00a02, pp. 878\u2013886 (2001)","DOI":"10.1109\/INFCOM.2001.916279"},{"key":"21_CR14","doi-asserted-by":"crossref","unstructured":"Jin, C., Wang, H., Shin, K.G.: Hop-Count Filtering: An Effecitve Defense Against Spoofed DDoS Traffic. In: Proceeding of the 10th ACM Conference on Computer and Communications Security, Washington, DC (October 2003)","DOI":"10.1145\/948109.948116"},{"key":"21_CR15","doi-asserted-by":"crossref","unstructured":"Paxson, V.: End-to-End Routing Behavior in the Internet. IEEE\/ACM Transaction on Networking, 601\u2013615","DOI":"10.1109\/90.649563"},{"key":"21_CR16","unstructured":"Specification of Guaranteed Quality of Service. RFC 2212 (September 1997)"},{"key":"21_CR17","unstructured":"Roesch, M.: Snort-Lightweight Intrusion Detection for Networks. In: Proc. of the USENIX LISA 1999 Conf. (November 1999)"},{"key":"21_CR18","unstructured":"Kumar, S., Spafford, E.: A Pattern Matching Model for Misuse Intrusion Detection. In: Proc. of the 17th National Computer Security Conf., pp.\u00a011\u201321 (October 1994)"},{"key":"21_CR19","doi-asserted-by":"crossref","unstructured":"Feinstein, L., Schnackenberg, D., Balupari, R., Kindred, D.: Statistical Approaches to DDoS Attack Detection and Response. In: DARPA Information Survivability Conference and Exposition (DISCEX 2003), (April 22-24, 2003)","DOI":"10.1109\/DISCEX.2003.1194894"},{"key":"21_CR20","unstructured":"BBC News: New \u201ccyber attacks\u201d hit S Korea (2009-07-09)"},{"key":"21_CR21","unstructured":"Internet Protocol. RFC 1349 (1992)"},{"key":"21_CR22","unstructured":"Bellovin, S.M.: ICMP Traceback Messages. Internet Draft draftbellovin-itrace-00.txt (March 2000) (work in progress)"},{"key":"21_CR23","doi-asserted-by":"crossref","unstructured":"Park, K., Lee, H.: On the effectiveness of route-based packet filtering for distributed DoS attack prevention in power-law internets. In: Proceedings of ACM SIGCOMM 2001 (August 2001)","DOI":"10.1145\/383059.383061"},{"key":"21_CR24","unstructured":"IP Router Alert Option. RFC 2113 (1997)"},{"key":"21_CR25","unstructured":"SIP: Session Initiation Protocol. RFC 3261 (2002)"},{"key":"21_CR26","volume-title":"Active router approach to defeating denial-of-service attacks in networks","author":"F.A. El-Moussa","year":"2007","unstructured":"El-Moussa, F.A., Linge, N., Hope, M.: Active router approach to defeating denial-of-service attacks in networks. IEEE, Los Alamitos (2007)"},{"key":"21_CR27","doi-asserted-by":"crossref","unstructured":"Mirkovic, J., Arikan, E., Wei, S., Thomas, R., Fahmy, S., Reiher, P.: Benchmarks for DDoS defense evaluation. In: Military Communications Conference (2006)","DOI":"10.1109\/MILCOM.2006.302006"},{"key":"21_CR28","first-page":"143","volume":"1","author":"M. Li","year":"2009","unstructured":"Li, M., Li, J., Zhao, W.: Experimental study of DDOS attacking of flood type based on NS2. International Journal of Electronics and Computers\u00a01, 143\u2013152 (2009)","journal-title":"International Journal of Electronics and Computers"},{"key":"21_CR29","doi-asserted-by":"crossref","unstructured":"Xie, Y., Yu, S.-Z.: Monitoring the Application-Layer DDoS Attacks for Popular Websites. IEEE\/ACM Transactions on networking\u00a017(1) (February 2009)","DOI":"10.1109\/TNET.2008.925628"}],"container-title":["Communications in Computer and Information Science","Computer Networks"],"original-title":[],"link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-642-21771-5_21","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,3,6]],"date-time":"2025-03-06T21:59:09Z","timestamp":1741298349000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-642-21771-5_21"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2011]]},"ISBN":["9783642217708","9783642217715"],"references-count":29,"URL":"https:\/\/doi.org\/10.1007\/978-3-642-21771-5_21","relation":{},"ISSN":["1865-0929","1865-0937"],"issn-type":[{"type":"print","value":"1865-0929"},{"type":"electronic","value":"1865-0937"}],"subject":[],"published":{"date-parts":[[2011]]}}}