{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,5,28]],"date-time":"2025-05-28T19:40:01Z","timestamp":1748461201898,"version":"3.41.0"},"publisher-location":"Berlin, Heidelberg","reference-count":15,"publisher":"Springer Berlin Heidelberg","isbn-type":[{"type":"print","value":"9783662474006"},{"type":"electronic","value":"9783662474013"}],"license":[{"start":{"date-parts":[[2015,1,1]],"date-time":"2015-01-01T00:00:00Z","timestamp":1420070400000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2015,1,1]],"date-time":"2015-01-01T00:00:00Z","timestamp":1420070400000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2015]]},"DOI":"10.1007\/978-3-662-47401-3_45","type":"book-chapter","created":{"date-parts":[[2015,6,19]],"date-time":"2015-06-19T08:27:04Z","timestamp":1434702424000},"page":"342-349","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":2,"title":["Find Behaviors of Network Evasion and Protocol Obfuscation Using Traffic Measurement"],"prefix":"10.1007","author":[{"given":"Quan","family":"Bai","sequence":"first","affiliation":[]},{"given":"Gang","family":"Xiong","sequence":"additional","affiliation":[]},{"given":"Yong","family":"Zhao","sequence":"additional","affiliation":[]}],"member":"297","published-online":{"date-parts":[[2015,6,20]]},"reference":[{"issue":"12","key":"45_CR1","doi-asserted-by":"publisher","first-page":"11","DOI":"10.1016\/S1353-4858(97)88551-0","volume":"1997","author":"F Cohen","year":"1997","unstructured":"Cohen, F.: Managing network security\u2014Part 14: 50 ways to defeat your intrusion detection system. Netw. Secur. 1997(12), 11\u201314 (1997)","journal-title":"Netw. Secur."},{"key":"45_CR2","unstructured":"Vidal, J.M., Castro, J.D.M., Orozco, A.L.S., et al.: Evolutions of evasion techniques against network intrusion detection systems. In: ICIT 2013 The 6th International conference on Information Technology (2013)"},{"key":"45_CR3","unstructured":"Khan, H., Khayam, S.A., Rajarajan, M., et al.: Wirespeed, privacy-preserving P2P traffic detection on commodity switches. (under submission, 2013)"},{"key":"45_CR4","doi-asserted-by":"crossref","unstructured":"Puangpronpitag, S., Chuachan, T., Pawara, P.: Classifying peer-to-peer traffic using protocol hierarchy. In: 2014 International Conference on Computer and Information Sciences (ICCOINS), pp. 1\u20136. IEEE (2014)","DOI":"10.1109\/ICCOINS.2014.6868391"},{"issue":"3","key":"45_CR5","doi-asserted-by":"publisher","first-page":"140","DOI":"10.1016\/j.istr.2005.07.003","volume":"10","author":"B Hernacki","year":"2005","unstructured":"Hernacki, B., Bennett, J., Hoagland, J.: An overview of network evasion methods. Inf. Secur. Tech. Rep. 10(3), 140\u2013149 (2005)","journal-title":"Inf. Secur. Tech. Rep."},{"key":"45_CR6","unstructured":"Rostami-Hesarsorkh, S., Jacobsen, M.: Detecting encrypted tunneling traffic: U.S. Patent 8,856,910, 2014 October 7"},{"key":"45_CR7","unstructured":"Winter, P.: Enhancing Censorship Resistance in the Tor Anonymity Network (2014)"},{"key":"45_CR8","unstructured":"Ptacek, T.H., Newsham, T.N.: Insertion, evasion, and denial of service: eluding network intrusion detection. Technical report, Secure Networks, January 1998"},{"key":"45_CR9","doi-asserted-by":"crossref","unstructured":"Vigna, G., Robertson, W., Balzarotti, D.: Testing network-based intrusion detection signatures using mutant exploits. In: Proceedings of the 11th ACM Conference on Computer and Communications Security, pp. 21\u201330. ACM (2004)","DOI":"10.1145\/1030083.1030088"},{"key":"45_CR10","unstructured":"Roelker, D.J.: HTTP IDS evasions revisited. Sourcefire Inc. (2003)"},{"issue":"4","key":"45_CR11","doi-asserted-by":"publisher","first-page":"37","DOI":"10.1145\/1282427.1282386","volume":"37","author":"D Bonfiglio","year":"2007","unstructured":"Bonfiglio, D., Mellia, M., Meo, M., et al.: Revealing skype traffic: when randomness plays with you. ACM SIGCOMM Comput. Commun. Rev. 37(4), 37\u201348 (2007). ACM","journal-title":"ACM SIGCOMM Comput. Commun. Rev."},{"key":"45_CR12","unstructured":"Hjelmvik, E., John, W.: Breaking and improving protocol obfuscation. Technical report 123751, Chalmers University of Technology (2010)"},{"key":"45_CR13","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"373","DOI":"10.1007\/978-3-642-13193-6_32","volume-title":"Experimental Algorithms","author":"R Bar - Yanai","year":"2010","unstructured":"Bar - Yanai, R., Langberg, M., Peleg, D., Roditty, L.: Realtime classification for encrypted traffic. In: Festa, P. (ed.) SEA 2010. LNCS, vol. 6049, pp. 373\u2013385. Springer, Heidelberg (2010)"},{"key":"45_CR14","first-page":"494","volume":"2012","author":"KP Dyer","year":"2012","unstructured":"Dyer, K.P., Coull, S.E., Ristenpart, T., et al.: Format-transforming encryption: more than meets the DPI. IACR Cryptology ePrint Arch. 2012, 494 (2012)","journal-title":"IACR Cryptology ePrint Arch."},{"key":"45_CR15","doi-asserted-by":"crossref","unstructured":"Moghaddam, H.M., Li, B., Derakhshani, M., et al.: SkypeMorph: protocol obfuscation for Tor bridges. In: Proceedings of the 2012 ACM Conference on Computer and Communications Security, pp. 97\u2013108. ACM (2012)","DOI":"10.1145\/2382196.2382210"}],"container-title":["Communications in Computer and Information Science","Trustworthy Computing and Services"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-662-47401-3_45","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,5,28]],"date-time":"2025-05-28T19:05:48Z","timestamp":1748459148000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-662-47401-3_45"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2015]]},"ISBN":["9783662474006","9783662474013"],"references-count":15,"URL":"https:\/\/doi.org\/10.1007\/978-3-662-47401-3_45","relation":{},"ISSN":["1865-0929","1865-0937"],"issn-type":[{"type":"print","value":"1865-0929"},{"type":"electronic","value":"1865-0937"}],"subject":[],"published":{"date-parts":[[2015]]},"assertion":[{"value":"20 June 2015","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}}]}}