{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,4,23]],"date-time":"2025-04-23T04:20:53Z","timestamp":1745382053847,"version":"3.40.4"},"publisher-location":"Berlin, Heidelberg","reference-count":15,"publisher":"Springer Berlin Heidelberg","isbn-type":[{"type":"print","value":"9783642353611"},{"type":"electronic","value":"9783642353628"}],"license":[{"start":{"date-parts":[[2012,1,1]],"date-time":"2012-01-01T00:00:00Z","timestamp":1325376000000},"content-version":"tdm","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2012]]},"DOI":"10.1007\/978-3-642-35362-8_17","type":"book-chapter","created":{"date-parts":[[2012,11,30]],"date-time":"2012-11-30T03:55:47Z","timestamp":1354247747000},"page":"212-226","source":"Crossref","is-referenced-by-count":3,"title":["Collaborative Behavior Visualization and Its Detection by Observing Darknet Traffic"],"prefix":"10.1007","author":[{"given":"Satoru","family":"Akimoto","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Yoshiaki","family":"Hori","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Kouichi","family":"Sakurai","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","reference":[{"key":"17_CR1","doi-asserted-by":"crossref","unstructured":"Bailey, M., Cooke, E., Jahanian, F., Xu, Y., Karir, M.: A Survey of Botnet Technology and Defenses. In: Proc. Cybersecurity Applications & Technology Conference for Homeland Security, Washington, DC, USA, pp. 299\u2013304 (March 2009)","DOI":"10.1109\/CATCH.2009.40"},{"key":"17_CR2","unstructured":"Mcafee Co., http:\/\/www.mcafee.com"},{"key":"17_CR3","unstructured":"Symantec Co., http:\/\/www.symantec.com"},{"key":"17_CR4","doi-asserted-by":"crossref","unstructured":"Guirguis, M., Bestavros, A., Matta, I.: On the Impact of Low-Rate Attacks. In: IEEE International Conference and Communications, vol.\u00a05, pp. 2316\u20132321 (June 2006)","DOI":"10.1109\/ICC.2006.255115"},{"issue":"5","key":"17_CR5","doi-asserted-by":"publisher","first-page":"1396","DOI":"10.1109\/TNET.2011.2109009","volume":"19","author":"J. Treurniet","year":"2011","unstructured":"Treurniet, J.: A Network Activity Classification Schema and Its Application to Scan Detection. IEEE\/ACM Transactions on Networking\u00a019(5), 1396\u20131404 (2011)","journal-title":"IEEE\/ACM Transactions on Networking"},{"issue":"2","key":"17_CR6","doi-asserted-by":"publisher","first-page":"426","DOI":"10.1109\/TIFS.2011.2107320","volume":"6","author":"Y. Xiang","year":"2011","unstructured":"Xiang, Y., Li, K., Zhou, W.: Low-Rate DDoS Attacks Detection and Traceback by Using New Information Metrics. IEEE Transactions on Information Forensics and Security\u00a06(2), 426\u2013437 (2011)","journal-title":"IEEE Transactions on Information Forensics and Security"},{"key":"17_CR7","unstructured":"Kim, M.-S., Kang, H.-J., Hong, S.-C., Chung, S.-H., Hong, J.W.: A Flow-based Method for Abnormal Network Traffic Detection. In: IEEE\/IFIP Network Operations and Management Symposium 2004 (2004)"},{"key":"17_CR8","doi-asserted-by":"crossref","unstructured":"Eto, M., Inoue, D., Song, J., Nakazato, J., Ohtaka, K., Nakao, K.: Nicter: A Large-Scale Network Incident Analysis System. In: Proc. First Workshop on Building Analysis Datasets and Gathering Experience Returns for Security, pp. 37\u201345 (2011)","DOI":"10.1145\/1978672.1978677"},{"key":"17_CR9","unstructured":"Kanlayasiri, U., Sanguanpong, S., Jaratmanachot, W.: A Rule-based Approach for Port Scanning Detection. In: Proc. 23rd Electrical Engineering Conference, Thailand, pp. 148\u2013153 (2000)"},{"key":"17_CR10","doi-asserted-by":"crossref","unstructured":"Needham, R.M.: Denial of Service. In: Proc. 1st ACM Conference on Computer and Communications Security, Fairfax, Virginia, pp. 151\u2013153 (November 1993)","DOI":"10.1145\/168588.168607"},{"issue":"2","key":"17_CR11","doi-asserted-by":"publisher","first-page":"115","DOI":"10.1145\/1132026.1132027","volume":"24","author":"D. Moore","year":"2006","unstructured":"Moore, D., Shannon, C., Brown, D., Voelker, G.M., Savage, S.: Inferring Internet Denial-of-Service Activity. ACM Transactions on Computer Systems\u00a024(2), 115\u2013139 (2006)","journal-title":"ACM Transactions on Computer Systems"},{"key":"17_CR12","doi-asserted-by":"crossref","unstructured":"Cooke, E., Bailey, M., Mao, Z.M., Watson, D., Jahanian, F., McPherson, D.: Toward Understanding Distributed Blackhole Placement. In: Proc. ACM CCS Workshop on Rapid Malcode, pp. 54\u201364. ACM Press (October 2004)","DOI":"10.1145\/1029618.1029627"},{"key":"17_CR13","doi-asserted-by":"crossref","unstructured":"Feily, M., Shahrestani, A.: A Survey of Botnet and Botnet Detection. In: Proc. Third International Conference on Emerging Security Information, Systems and Technologies (June 2009)","DOI":"10.1109\/SECURWARE.2009.48"},{"key":"17_CR14","doi-asserted-by":"crossref","unstructured":"Choi, H., Lee, H., Lee, H., Kim, H.: Botnet Detection by Monitoring Group Activities in DNS Traffic. In: Proc. 7th IEEE International Conference on Computer and Information Technology, pp. 715\u2013720 (2007)","DOI":"10.1109\/CIT.2007.90"},{"key":"17_CR15","doi-asserted-by":"crossref","unstructured":"Rajab, M.A., Zarfoss, J., Monrose, F., Terzis, A.: A Multifaceted Approach to Understanding the Botnet Phenomenon. In: Proc. 6th ACM SIGCOMM Conference on Internet Measurement, pp. 41\u201342 (2006)","DOI":"10.1145\/1177080.1177086"}],"container-title":["Lecture Notes in Computer Science","Cyberspace Safety and Security"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-642-35362-8_17","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,4,23]],"date-time":"2025-04-23T00:18:09Z","timestamp":1745367489000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-642-35362-8_17"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2012]]},"ISBN":["9783642353611","9783642353628"],"references-count":15,"URL":"https:\/\/doi.org\/10.1007\/978-3-642-35362-8_17","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2012]]}}}