{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,3,20]],"date-time":"2026-03-20T16:28:30Z","timestamp":1774024110870,"version":"3.50.1"},"publisher-location":"Singapore","reference-count":24,"publisher":"Springer Singapore","isbn-type":[{"value":"9789811358258","type":"print"},{"value":"9789811358265","type":"electronic"}],"license":[{"start":{"date-parts":[[2019,1,1]],"date-time":"2019-01-01T00:00:00Z","timestamp":1546300800000},"content-version":"tdm","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2019]]},"DOI":"10.1007\/978-981-13-5826-5_54","type":"book-chapter","created":{"date-parts":[[2019,1,24]],"date-time":"2019-01-24T05:07:57Z","timestamp":1548306477000},"page":"687-694","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":4,"title":["Bidirectional LSTM Models for DGA Classification"],"prefix":"10.1007","author":[{"given":"Giuseppe","family":"Attardi","sequence":"first","affiliation":[]},{"given":"Daniele","family":"Sartiano","sequence":"additional","affiliation":[]}],"member":"297","published-online":{"date-parts":[[2019,1,24]]},"reference":[{"key":"54_CR1","first-page":"34","volume":"17","author":"J Stewart","year":"2004","unstructured":"Stewart, J.: Bobax Trojan analysis. SecureWork 17, 34 (2004)","journal-title":"SecureWork"},{"issue":"1","key":"54_CR2","doi-asserted-by":"publisher","first-page":"64","DOI":"10.1109\/MSP.2010.144","volume":"9","author":"B Stone-Gross","year":"2011","unstructured":"Stone-Gross, B., Cova, M., Gilbert, B., Kemmerer, R., Kruegel, C., Vigna, G.: Analysis of a botnet takeover. IEEE Secur. Priv. 9(1), 64\u201372 (2011)","journal-title":"IEEE Secur. Priv."},{"key":"54_CR3","unstructured":"Royal, P.: Analysis of the kraken botnet. Damballa 9 (2008)"},{"key":"54_CR4","first-page":"7","volume":"9","author":"PA Porras","year":"2009","unstructured":"Porras, P.A., Sa\u00efdi, H., Yegneswaran, V.: A foray into Conficker\u2019s logic and rendezvous points. LEET 9, 7 (2009)","journal-title":"LEET"},{"key":"54_CR5","unstructured":"Shevchenko, S.: Srizbi domain generator calculator (2008)"},{"key":"54_CR6","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1007\/978-3-319-11379-1_1","volume-title":"Research in Attacks, Intrusions and Defenses","author":"M K\u00fchrer","year":"2014","unstructured":"K\u00fchrer, M., Rossow, C., Holz, T.: Paint it black: evaluating the effectiveness of malware blacklists. In: Stavrou, A., Bos, H., Portokalidis, G. (eds.) RAID 2014. LNCS, vol. 8688, pp. 1\u201321. Springer, Cham (2014). \n                  https:\/\/doi.org\/10.1007\/978-3-319-11379-1_1"},{"key":"54_CR7","doi-asserted-by":"crossref","unstructured":"Yadav, S., Reddy, A.K.K., Reddy, A.L., Ranjan, S.: Detecting algorithmically generated malicious domain names. In: Proceedings of the 10th ACM SIGCOMM Conference on Internet Measurement, pp. 48\u201361. ACM (2010)","DOI":"10.1145\/1879141.1879148"},{"key":"54_CR8","unstructured":"Antonakakis, M., et al.: From throw-away traffic to bots: detecting the rise of DGA-based malware. In: USENIX Security Symposium, vol. 12 (2012)"},{"key":"54_CR9","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"192","DOI":"10.1007\/978-3-319-08509-8_11","volume-title":"Detection of Intrusions and Malware, and Vulnerability Assessment","author":"S Schiavoni","year":"2014","unstructured":"Schiavoni, S., Maggi, F., Cavallaro, L., Zanero, S.: Phoenix: DGA-based botnet tracking and intelligence. In: Dietrich, S. (ed.) DIMVA 2014. LNCS, vol. 8550, pp. 192\u2013211. Springer, Cham (2014). \n                  https:\/\/doi.org\/10.1007\/978-3-319-08509-8_11"},{"key":"54_CR10","doi-asserted-by":"crossref","unstructured":"Grill, M., Nikolaev, I., Valeros, V., Rehak, M.: Detecting DGA malware using NetFlow. In: 2015 IFIP\/IEEE International Symposium on Integrated Network Management (IM), pp. 1304\u20131309. IEEE (2015)","DOI":"10.1109\/INM.2015.7140486"},{"key":"54_CR11","unstructured":"Woodbridge, J., Anderson, H.S., Ahuja, A., Grant, D.: Predicting domain generation algorithms with long short-term memory networks. arXiv preprint \n                  arXiv:1611.00791\n                  \n                 (2016)"},{"key":"54_CR12","unstructured":"Lison, P., Mavroeidis, V.: Automatic detection of malware-generated domains with recurrent neural models. arXiv preprint \n                  arXiv:1709.07102\n                  \n                 (2017)"},{"key":"54_CR13","unstructured":"Generation algorithms. \n                  https:\/\/github.com\/baderj\/domain"},{"key":"54_CR14","unstructured":"http:\/\/osint.bambenekconsulting.com\/feeds\/"},{"key":"54_CR15","unstructured":"https:\/\/data.netlab.360.com\/dga\/"},{"key":"54_CR16","unstructured":"https:\/\/support.alexa.com"},{"key":"54_CR17","unstructured":"https:\/\/umbrella.cisco.com\/blog"},{"key":"54_CR18","series-title":"Studies in Big Data","doi-asserted-by":"publisher","first-page":"113","DOI":"10.1007\/978-981-10-8476-8_6","volume-title":"Big Data in Engineering Applications","author":"R Vinayakumar","year":"2018","unstructured":"Vinayakumar, R., Poornachandran, P., Soman, K.P.: Scalable framework for cyber threat situational awareness based on domain name systems data analysis. In: Roy, S.S., Samui, P., Deo, R., Ntalampiras, S. (eds.) Big Data in Engineering Applications. SBD, vol. 44, pp. 113\u2013142. Springer, Singapore (2018). \n                  https:\/\/doi.org\/10.1007\/978-981-10-8476-8_6"},{"issue":"3","key":"54_CR19","doi-asserted-by":"publisher","first-page":"1355","DOI":"10.3233\/JIFS-169431","volume":"34","author":"R Vinayakumar","year":"2018","unstructured":"Vinayakumar, R., Soman, K., Poornachandran, P.: Detecting malicious domain names using deep learning approaches at scale. J. Intell. Fuzzy Syst. 34(3), 1355 (2018)","journal-title":"J. Intell. Fuzzy Syst."},{"issue":"3","key":"54_CR20","doi-asserted-by":"publisher","first-page":"1265","DOI":"10.3233\/JIFS-169423","volume":"34","author":"R Vinayakumar","year":"2018","unstructured":"Vinayakumar, R., Soman, K., Poornachandran, P., Kumar, S.S.: Evaluating deep learning approaches to characterize and classify the DGAS at scale. J. Intell. Fuzzy Syst. 34(3), 1265\u20131276 (2018)","journal-title":"J. Intell. Fuzzy Syst."},{"key":"54_CR21","unstructured":"Vinayakumar, R., Soman, K., Prabaharan, P., Pradeep, M.: A deep-dive on machine learning for cybersecurity use cases. In: Gupta, B., Sheng, M. (eds.) Machine Learning for Computer and Cyber Security: Principle, Algorithms, and Practices. CRC press, USA (In press)"},{"key":"54_CR22","doi-asserted-by":"crossref","unstructured":"Mohan, V.S., Vinayakumar, R., Soman, K.P., Poornachandran, P.: SPOOF net: syntactic patterns for identification of Ominous Online factors. In: IEEE Symposium (2017)","DOI":"10.1109\/SPW.2018.00041"},{"key":"54_CR23","unstructured":"Chollet, F., et al.: Keras (2015)"},{"key":"54_CR24","unstructured":"Abadi, M., et al.:Tensorflow: a system for large-scale machine learning, vol. 16, pp. 265\u2013283 (2016)"}],"container-title":["Communications in Computer and Information Science","Security in Computing and Communications"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-981-13-5826-5_54","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2019,5,20]],"date-time":"2019-05-20T23:52:44Z","timestamp":1558396364000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-981-13-5826-5_54"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2019]]},"ISBN":["9789811358258","9789811358265"],"references-count":24,"URL":"https:\/\/doi.org\/10.1007\/978-981-13-5826-5_54","relation":{},"ISSN":["1865-0929","1865-0937"],"issn-type":[{"value":"1865-0929","type":"print"},{"value":"1865-0937","type":"electronic"}],"subject":[],"published":{"date-parts":[[2019]]},"assertion":[{"value":"24 January 2019","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"SSCC","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"International Symposium on Security in Computing and Communication","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Bangalore","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"India","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2018","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"19 September 2018","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"22 September 2018","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"6","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"sscc2018","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"http:\/\/www.acn-conference.org\/sscc2018\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}