{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,10,20]],"date-time":"2025-10-20T22:42:23Z","timestamp":1761000143006,"version":"build-2065373602"},"publisher-location":"Singapore","reference-count":32,"publisher":"Springer Nature Singapore","isbn-type":[{"type":"print","value":"9789819535361"},{"type":"electronic","value":"9789819535378"}],"license":[{"start":{"date-parts":[[2025,10,20]],"date-time":"2025-10-20T00:00:00Z","timestamp":1760918400000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2025,10,20]],"date-time":"2025-10-20T00:00:00Z","timestamp":1760918400000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2026]]},"DOI":"10.1007\/978-981-95-3537-8_27","type":"book-chapter","created":{"date-parts":[[2025,10,19]],"date-time":"2025-10-19T10:43:59Z","timestamp":1760870639000},"page":"493-510","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":0,"title":["FlowGraphNet: Efficient Malicious Traffic Detection via\u00a0Graph Construction"],"prefix":"10.1007","author":[{"given":"Changsong","family":"Yang","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Han","family":"Wang","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Yueling","family":"Liu","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Yong","family":"Ding","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Hai","family":"Liang","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Zhenyu","family":"Li","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2025,10,20]]},"reference":[{"key":"27_CR1","doi-asserted-by":"publisher","first-page":"19","DOI":"10.1016\/j.comcom.2021.01.021","volume":"170","author":"M Abbasi","year":"2021","unstructured":"Abbasi, M., Shahraki, A., Taherkordi, A.: Deep learning for network traffic monitoring and analysis (ntma): a survey. Comput. Commun. 170, 19\u201341 (2021)","journal-title":"Comput. Commun."},{"key":"27_CR2","doi-asserted-by":"crossref","unstructured":"Abinesh, R., VG, Y., TJ, S., Nandhini, S.: Deep graph convolution neural network based intrusion detection system towards early detection of malicious attacks. In: 2024 8th International Conference on I-SMAC (IoT in Social, Mobile, Analytics and Cloud)(I-SMAC), pp. 549\u2013554. IEEE (2024)","DOI":"10.1109\/I-SMAC61858.2024.10714598"},{"key":"27_CR3","doi-asserted-by":"publisher","first-page":"30907","DOI":"10.1109\/ACCESS.2024.3369906","volume":"12","author":"FR Alzaabi","year":"2024","unstructured":"Alzaabi, F.R., Mehmood, A.: A review of recent advances, challenges, and opportunities in malicious insider threat detection using machine learning methods. IEEE Access 12, 30907\u201330927 (2024)","journal-title":"IEEE Access"},{"issue":"1","key":"27_CR4","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1007\/s42421-023-00086-7","volume":"6","author":"T Azfar","year":"2024","unstructured":"Azfar, T., Li, J., Yu, H., Cheu, R.L., Lv, Y., Ke, R.: Deep learning-based computer vision methods for complex traffic environments perception: a review. Data Sci. Transport. 6(1), 1 (2024)","journal-title":"Data Sci. Transport."},{"key":"27_CR5","doi-asserted-by":"crossref","unstructured":"Baldoni, S., Battisti, F.: Histogram-based network traffic representation for anomaly detection through PCA. Comput. Netw. 111276 (2025)","DOI":"10.1016\/j.comnet.2025.111276"},{"key":"27_CR6","doi-asserted-by":"crossref","unstructured":"Bar, S., Prasad, P., Sayeed, M.S.: Enhancing internet of things intrusion detection using artificial intelligence. Comput. Materials Continua 81(1) (2024)","DOI":"10.32604\/cmc.2024.053861"},{"key":"27_CR7","doi-asserted-by":"crossref","unstructured":"Boonyopakorn, P., Changsan, U.: Malicious traffic detection in DNS over https (doh): Edge prediction with graph convolutional network. In: 2024 International Technical Conference on Circuits\/Systems, Computers, and Communications (ITC-CSCC), pp.\u00a01\u20136. IEEE (2024)","DOI":"10.1109\/ITC-CSCC62988.2024.10628338"},{"key":"27_CR8","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2024.104083","volume":"147","author":"J Chen","year":"2024","unstructured":"Chen, J., Xie, H., Cai, S., Song, L., Geng, B., Guo, W.: GCN-MHSA: A novel malicious traffic detection method based on graph convolutional neural network and multi-head self-attention mechanism. Comput. Secur. 147, 104083 (2024)","journal-title":"Comput. Secur."},{"issue":"5","key":"27_CR9","doi-asserted-by":"publisher","first-page":"679","DOI":"10.3390\/electronics11050679","volume":"11","author":"A Ferriyan","year":"2022","unstructured":"Ferriyan, A., Thamrin, A.H., Takeda, K., Murai, J.: Encrypted malicious traffic detection based on word2vec. Electronics 11(5), 679 (2022)","journal-title":"Electronics"},{"issue":"1","key":"27_CR10","doi-asserted-by":"publisher","first-page":"452","DOI":"10.1109\/TNET.2022.3195871","volume":"31","author":"C Fu","year":"2022","unstructured":"Fu, C., Li, Q., Shen, M., Xu, K.: Frequency domain feature based robust malicious traffic detection. IEEE\/ACM Trans. Network. 31(1), 452\u2013467 (2022)","journal-title":"IEEE\/ACM Trans. Network."},{"key":"27_CR11","doi-asserted-by":"publisher","first-page":"100","DOI":"10.1016\/j.cose.2014.05.011","volume":"45","author":"S Garc\u00eda","year":"2014","unstructured":"Garc\u00eda, S., Grill, M., Stiborek, J., Zunino, A.: An empirical comparison of botnet detection methods. Comput. Secur. 45, 100\u2013123 (2014)","journal-title":"Comput. Secur."},{"key":"27_CR12","doi-asserted-by":"crossref","unstructured":"Golubev, S., Novikova, E.: Image-based intrusion detection in network traffic. In: International Symposium on Intelligent and Distributed Computing, pp. 51\u201360. Springer (2022)","DOI":"10.1007\/978-3-031-29104-3_6"},{"issue":"8","key":"27_CR13","doi-asserted-by":"publisher","first-page":"8547","DOI":"10.1007\/s10462-022-10381-4","volume":"56","author":"D Levshun","year":"2023","unstructured":"Levshun, D., Kotenko, I.: A survey on artificial intelligence techniques for security event correlation: models, challenges, and opportunities. Artif. Intell. Rev. 56(8), 8547\u20138590 (2023)","journal-title":"Artif. Intell. Rev."},{"key":"27_CR14","doi-asserted-by":"publisher","DOI":"10.1016\/j.compeleceng.2024.109581","volume":"119","author":"R Liu","year":"2024","unstructured":"Liu, R., Shi, J., Chen, X., Lu, C.: Network anomaly detection and security defense technology based on machine learning: a review. Comput. Electr. Eng. 119, 109581 (2024)","journal-title":"Comput. Electr. Eng."},{"key":"27_CR15","doi-asserted-by":"crossref","unstructured":"Liu, X., Peng, H., Zheng, N., Yang, Y., Hu, H., Yuan, Y.: Efficientvit: memory efficient vision transformer with cascaded group attention. In: Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition (CVPR), pp. 14420\u201314430 (2023)","DOI":"10.1109\/CVPR52729.2023.01386"},{"key":"27_CR16","doi-asserted-by":"crossref","unstructured":"Liu, Y., Chen, Y., Zhang, H., Zhou, Q., Zhou, X.: Research on malicious traffic detection based on word embedding algorithms and neural networks. In: 2023 IEEE Intl Conf on Dependable, Autonomic and Secure Computing, Intl Conf on Pervasive Intelligence and Computing, Intl Conf on Cloud and Big Data Computing, Intl Conf on Cyber Science and Technology Congress (DASC\/PiCom\/CBDCom\/CyberSciTech), pp. 0978\u20130984. IEEE (2023)","DOI":"10.1109\/DASC\/PiCom\/CBDCom\/Cy59711.2023.10361291"},{"key":"27_CR17","unstructured":"Lu, Y.: USTC-TFC2016 dataset (2016). https:\/\/github.com\/yungshenglu\/USTC-TFC2016. Accessed: 2024-11-27, Mozilla Public License 2.0"},{"key":"27_CR18","unstructured":"Lu, Y.: USTC-TK2016 dataset (2016). https:\/\/github.com\/yungshenglu\/USTC-TFC2016. Accessed: 2024-11-27, Mozilla Public License 2.0"},{"key":"27_CR19","doi-asserted-by":"crossref","unstructured":"Luo, Y., Chen, X., Ge, N., Feng, W., Lu, J.: Transformer-based malicious traffic detection for internet of things. In: ICC 2022-IEEE International Conference on Communications, pp. 4187\u20134192. IEEE (2022)","DOI":"10.1109\/ICC45855.2022.9838882"},{"issue":"1","key":"27_CR20","first-page":"1","volume":"190","author":"MAI Mallick","year":"2024","unstructured":"Mallick, M.A.I., Nath, R.: Navigating the cyber security landscape: a comprehensive review of cyber-attacks, emerging trends, and recent developments. World Sci. News 190(1), 1\u201369 (2024)","journal-title":"World Sci. News"},{"key":"27_CR21","unstructured":"MapleIDS: Mapleids dataset (2025). https:\/\/maple.nefu.edu.cn\/, accessed: 2025-04-12"},{"issue":"4","key":"27_CR22","doi-asserted-by":"publisher","DOI":"10.1002\/ett.4897","volume":"35","author":"A Nag","year":"2024","unstructured":"Nag, A., et al.: Exploring the applications and security threats of internet of thing in the cloud computing paradigm: a comprehensive study on the cloud of things. Trans. Emerg. Telecommun. Technol. 35(4), e4897 (2024)","journal-title":"Trans. Emerg. Telecommun. Technol."},{"issue":"3","key":"27_CR23","first-page":"13","volume":"10","author":"S Rawat","year":"2023","unstructured":"Rawat, S.: Navigating the cybersecurity landscape: current trends and emerging threats. J. Adv. Res. Libr. Inform. Sci. 10(3), 13\u201319 (2023)","journal-title":"J. Adv. Res. Libr. Inform. Sci."},{"key":"27_CR24","doi-asserted-by":"publisher","DOI":"10.1016\/j.engappai.2024.109143","volume":"137","author":"MA Shyaa","year":"2024","unstructured":"Shyaa, M.A., Ibrahim, N.F., Zainol, Z., Abdullah, R., Anbar, M., Alzubaidi, L.: Evolving cybersecurity frontiers: a comprehensive survey on concept drift and feature dynamics aware machine and deep learning in intrusion detection systems. Eng. Appl. Artif. Intell. 137, 109143 (2024)","journal-title":"Eng. Appl. Artif. Intell."},{"key":"27_CR25","doi-asserted-by":"crossref","unstructured":"Wall, D.S.: Cybercrime: The transformation of crime in the information age. John Wiley & Sons (2024)","DOI":"10.2139\/ssrn.4707509"},{"key":"27_CR26","doi-asserted-by":"crossref","unstructured":"Wang, L.H., Dai, Q., Du, T., Chen, L.f.: Lightweight intrusion detection model based on CNN and knowledge distillation. Appl. Soft Comput. 165, 112118 (2024)","DOI":"10.1016\/j.asoc.2024.112118"},{"issue":"8","key":"27_CR27","doi-asserted-by":"publisher","first-page":"2305","DOI":"10.1109\/JSAC.2021.3087243","volume":"39","author":"Y Wang","year":"2021","unstructured":"Wang, Y., Gui, G., Gacanin, H., Ohtsuki, T., Dobre, O.A., Poor, H.V.: An efficient specific emitter identification method based on complex-valued neural networks and network compression. IEEE J. Sel. Areas Commun. 39(8), 2305\u20132317 (2021)","journal-title":"IEEE J. Sel. Areas Commun."},{"key":"27_CR28","doi-asserted-by":"crossref","unstructured":"Xu, J., et al.: A cascaded broad learning network embedded image features for malware traffic classification. IEEE Transactions on Cognitive Communications and Networking (2024)","DOI":"10.1109\/TCCN.2024.3522143"},{"issue":"1","key":"27_CR29","first-page":"9960822","volume":"2021","author":"H Yang","year":"2021","unstructured":"Yang, H., He, Q., Liu, Z., Zhang, Q.: Malicious encryption traffic detection based on NLP. Secur. Commun. Netw. 2021(1), 9960822 (2021)","journal-title":"Secur. Commun. Netw."},{"key":"27_CR30","volume-title":"HGNN-etc: Higher-order graph neural network based on chronological relationships for encrypted traffic classification","author":"R Yu","year":"2024","unstructured":"Yu, R., Guo, X., Zhang, P., Zhang, K.: HGNN-etc: Higher-order graph neural network based on chronological relationships for encrypted traffic classification. Materials & Continua, Computers (2024)"},{"issue":"1","key":"27_CR31","doi-asserted-by":"publisher","first-page":"890","DOI":"10.1109\/TVCG.2021.3114865","volume":"28","author":"Y Zhao","year":"2021","unstructured":"Zhao, Y., Wang, Y., Zhang, J., Fu, C.W., Xu, M., Moritz, D.: Kd-box: Line-segment-based kd-tree for interactive exploration of large-scale time-series data. IEEE Trans. Visual Comput. Graphics 28(1), 890\u2013900 (2021)","journal-title":"IEEE Trans. Visual Comput. Graphics"},{"key":"27_CR32","doi-asserted-by":"crossref","unstructured":"Zhong, M., Lin, M., Zhang, C., Xu, Z.: A survey on graph neural networks for intrusion detection systems: Methods, trends and challenges. Comput. Secur. 103821 (2024)","DOI":"10.1016\/j.cose.2024.103821"}],"container-title":["Lecture Notes in Computer Science","Information and Communications Security"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-981-95-3537-8_27","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,10,20]],"date-time":"2025-10-20T22:03:29Z","timestamp":1760997809000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-981-95-3537-8_27"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,10,20]]},"ISBN":["9789819535361","9789819535378"],"references-count":32,"URL":"https:\/\/doi.org\/10.1007\/978-981-95-3537-8_27","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2025,10,20]]},"assertion":[{"value":"20 October 2025","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"ICICS","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"International Conference on Information and Communications Security","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Nanjing","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"China","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2025","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"29 October 2025","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"31 October 2025","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"27","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"icics2025","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"https:\/\/www.icics2025.org\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}