{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,3]],"date-time":"2026-07-03T21:28:33Z","timestamp":1783114113913,"version":"3.54.6"},"reference-count":53,"publisher":"Springer Science and Business Media LLC","issue":"6","license":[{"start":{"date-parts":[[2023,7,17]],"date-time":"2023-07-17T00:00:00Z","timestamp":1689552000000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0"},{"start":{"date-parts":[[2023,7,17]],"date-time":"2023-07-17T00:00:00Z","timestamp":1689552000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0"}],"funder":[{"name":"Carsten Maple"},{"name":"Carsten Maple"},{"name":"Carsten Maple"},{"name":"Carsten Maple"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["Int. J. Inf. Secur."],"published-print":{"date-parts":[[2023,12]]},"abstract":"<jats:title>Abstract<\/jats:title><jats:p>The increasing demand for communication between networked devices connected either through an intranet or the internet increases the need for a reliable and accurate network defense mechanism. Network intrusion detection systems (NIDSs), which are used to detect malicious or anomalous network traffic, are an integral part of network defense. This research aims to address some of the issues faced by anomaly-based network intrusion detection systems. In this research, we first identify some limitations of the legacy NIDS datasets, including a recent CICIDS2017 dataset, which lead us to develop our novel dataset, CIPMAIDS2023-1. Then, we propose a stacking-based ensemble approach that outperforms the overall state of the art for NIDS. Various attack scenarios were implemented along with benign user traffic on the network topology created using graphical network simulator-3 (GNS-3). Key flow features are extracted using<jats:italic>cicflowmeter<\/jats:italic>for each attack and are evaluated to analyze their behavior. Several different machine learning approaches are applied to the features extracted from the traffic data, and their performance is compared. The results show that the stacking-based ensemble approach is the most promising and achieves the highest weighted F1-score of 98.24%.<\/jats:p>","DOI":"10.1007\/s10207-023-00718-7","type":"journal-article","created":{"date-parts":[[2023,7,17]],"date-time":"2023-07-17T18:02:22Z","timestamp":1689616942000},"page":"1781-1798","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":47,"title":["Effective network intrusion detection using stacking-based ensemble approach"],"prefix":"10.1007","volume":"22","author":[{"given":"Muhammad","family":"Ali","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Mansoor-ul-","family":"Haque","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Muhammad Hanif","family":"Durad","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Anila","family":"Usman","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Syed Muhammad","family":"Mohsin","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Hana","family":"Mujlid","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Carsten","family":"Maple","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2023,7,17]]},"reference":[{"key":"718_CR1","doi-asserted-by":"publisher","unstructured":"Scarfone, K., Mell, P.: Guide to intrusion detection and prevention systems (idps), special publication (nist sp). National Institute of Standards and Technology, Gaithersburg (2007). https:\/\/doi.org\/10.6028\/NIST.SP.800-94","DOI":"10.6028\/NIST.SP.800-94"},{"key":"718_CR2","doi-asserted-by":"publisher","first-page":"6197","DOI":"10.1002\/CPE.6197","volume":"33","author":"NV Patil","year":"2021","unstructured":"Patil, N.V., Krishna, C.R., Kumar, K.: Distributed frameworks for detecting distributed denial of service attacks: a comprehensive review, challenges and future directions. Concurr. Comput. Pract. Exp. 33, 6197 (2021). https:\/\/doi.org\/10.1002\/CPE.6197","journal-title":"Concurr. Comput. Pract. Exp."},{"key":"718_CR3","doi-asserted-by":"publisher","first-page":"25","DOI":"10.1016\/J.COMNET.2017.03.018","volume":"121","author":"HH Jazi","year":"2017","unstructured":"Jazi, H.H., Gonzalez, H., Stakhanova, N., Ghorbani, A.A.: Detecting http-based application layer dos attacks on web servers in the presence of sampling. Comput. Netw. 121, 25\u201336 (2017). https:\/\/doi.org\/10.1016\/J.COMNET.2017.03.018","journal-title":"Comput. Netw."},{"key":"718_CR4","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1186\/S40537-020-00346-1","volume":"7","author":"KA Jallad","year":"2020","unstructured":"Jallad, K.A., Aljnidi, M., Desouki, M.S.: Anomaly detection optimization using big data and deep learning to reduce false-positive. J. Big Data 7, 1\u201312 (2020). https:\/\/doi.org\/10.1186\/S40537-020-00346-1","journal-title":"J. Big Data"},{"key":"718_CR5","doi-asserted-by":"publisher","first-page":"108076","DOI":"10.1016\/j.comnet.2021.108076","volume":"192","author":"N Gupta","year":"2021","unstructured":"Gupta, N., Jindal, V., Bedi, P.: Lio-ids: handling class imbalance using lstm and improved one-vs-one technique in intrusion detection system. Comput. Netw. 192, 108076 (2021)","journal-title":"Comput. Netw."},{"key":"718_CR6","doi-asserted-by":"publisher","first-page":"2287","DOI":"10.1007\/S11277-019-06986-8","volume":"111","author":"A Verma","year":"2020","unstructured":"Verma, A., Ranga, V.: Machine learning based intrusion detection systems for iot applications. Wirel. Pers. Commun. 111, 2287\u20132310 (2020). https:\/\/doi.org\/10.1007\/S11277-019-06986-8","journal-title":"Wirel. Pers. Commun."},{"key":"718_CR7","doi-asserted-by":"publisher","first-page":"107390","DOI":"10.1016\/j.comnet.2020.107390","volume":"180","author":"\u00d6 Kasim","year":"2020","unstructured":"Kasim, \u00d6.: An efficient and robust deep learning based network anomaly detection against distributed denial of service attacks. Comput. Netw. 180, 107390 (2020)","journal-title":"Comput. Netw."},{"key":"718_CR8","doi-asserted-by":"publisher","unstructured":"Sharafaldin, I., Lashkari, A.H., Ghorbani, A.A.: Toward generating a new intrusion detection dataset and intrusion traffic characterization. In: ICISSP 2018\u2014Proceedings of the 4th International Conference on Information Systems Security and Privacy 2018-Janua, 108\u2013116 (2018). https:\/\/doi.org\/10.5220\/0006639801080116","DOI":"10.5220\/0006639801080116"},{"key":"718_CR9","first-page":"172","volume":"977","author":"I Sharafaldin","year":"2019","unstructured":"Sharafaldin, I., Lashkari, A.H., Ghorbani, A.A.: A detailed analysis of the cicids2017 data set. Commun. Comput. Inf. Sci. 977, 172\u2013188 (2019)","journal-title":"Commun. Comput. Inf. Sci."},{"key":"718_CR10","doi-asserted-by":"publisher","first-page":"22","DOI":"10.1016\/0167-4048(87)90122-2","volume":"6","author":"F Cohen","year":"1987","unstructured":"Cohen, F.: Computer viruses: Theory and experiments. Comput. Secur. 6, 22\u201335 (1987). https:\/\/doi.org\/10.1016\/0167-4048(87)90122-2","journal-title":"Comput. Secur."},{"key":"718_CR11","doi-asserted-by":"publisher","first-page":"313","DOI":"10.1016\/J.COMCOM.2020.02.069","volume":"154","author":"Z Ullah","year":"2020","unstructured":"Ullah, Z., Al-Turjman, F., Mostarda, L., Gagliardi, R.: Applications of artificial intelligence and machine learning in smart cities. Comput. Commun. 154, 313\u2013323 (2020). https:\/\/doi.org\/10.1016\/J.COMCOM.2020.02.069","journal-title":"Comput. Commun."},{"key":"718_CR12","doi-asserted-by":"publisher","first-page":"189","DOI":"10.1007\/978-3-319-02931-3_23","volume":"247","author":"K Sravani","year":"2014","unstructured":"Sravani, K., Srinivasu, P.: Comparative study of machine learning algorithm for intrusion detection system. Adv. Intell. Syst. Comput. 247, 189\u2013196 (2014). https:\/\/doi.org\/10.1007\/978-3-319-02931-3_23","journal-title":"Adv. Intell. Syst. Comput."},{"key":"718_CR13","doi-asserted-by":"publisher","unstructured":"Sahu, S.K., Sarangi, S., Jena, S.K.: A detail analysis on intrusion detection datasets. In: Souvenir of the 2014 IEEE International Advance Computing Conference, IACC 2014, 1348\u20131353 (2014). https:\/\/doi.org\/10.1109\/IADCC.2014.6779523","DOI":"10.1109\/IADCC.2014.6779523"},{"key":"718_CR14","doi-asserted-by":"publisher","first-page":"1646","DOI":"10.1109\/COMST.2020.2988293","volume":"22","author":"MA Al-Garadi","year":"2020","unstructured":"Al-Garadi, M.A., Mohamed, A., Al-Ali, A.K., Du, X., Ali, I., Guizani, M.: A survey of machine and deep learning methods for internet of things (iot) security. IEEE Commun. Surv. Tutor. 22, 1646\u20131685 (2020). https:\/\/doi.org\/10.1109\/COMST.2020.2988293","journal-title":"IEEE Commun. Surv. Tutor."},{"key":"718_CR15","doi-asserted-by":"publisher","first-page":"107840","DOI":"10.1016\/J.COMNET.2021.107840","volume":"188","author":"IF Kilincer","year":"2021","unstructured":"Kilincer, I.F., Ertam, F., Sengur, A.: Machine learning methods for cyber security intrusion detection: datasets and comparative study. Comput. Netw. 188, 107840 (2021). https:\/\/doi.org\/10.1016\/J.COMNET.2021.107840","journal-title":"Comput. Netw."},{"key":"718_CR16","doi-asserted-by":"publisher","DOI":"10.3390\/APP9204396","author":"H Liu","year":"2019","unstructured":"Liu, H., Lang, B.: Machine learning and deep learning methods for intrusion detection systems: a survey. Appl. Sci. (2019). https:\/\/doi.org\/10.3390\/APP9204396","journal-title":"Appl. Sci."},{"key":"718_CR17","doi-asserted-by":"publisher","first-page":"110992","DOI":"10.1016\/j.rser.2021.110992","volume":"144","author":"S Aslam","year":"2021","unstructured":"Aslam, S., Herodotou, H., Mohsin, S.M., Javaid, N., Ashraf, N., Aslam, S.: A survey on deep learning methods for power load and renewable energy forecasting in smart microgrids. Renew. Sustain. Energy Rev. 144, 110992 (2021)","journal-title":"Renew. Sustain. Energy Rev."},{"key":"718_CR18","unstructured":"Shah, S.N., Singh, M.P.: Signature-based network intrusion detection system using snort and winpcap\u2014ijert. Int. J. Eng. Res. Technol. (IJERT) 01"},{"issue":"3","key":"718_CR19","doi-asserted-by":"publisher","first-page":"1761","DOI":"10.1007\/s10586-020-03222-y","volume":"24","author":"S Krishnaveni","year":"2021","unstructured":"Krishnaveni, S., Sivamohan, S., Sridhar, S.S., Prabakaran, S.: Efficient feature selection and classification through ensemble method for network intrusion detection on cloud computing. Clust. Comput. 24(3), 1761\u20131779 (2021). https:\/\/doi.org\/10.1007\/s10586-020-03222-y","journal-title":"Clust. Comput."},{"key":"718_CR20","doi-asserted-by":"publisher","unstructured":"FabianPedregosa, F.P., Michel, V., OlivierGrisel, O.G., Blondel, M., Prettenhofer, P., Weiss, R., Vanderplas, J., Cournapeau, D., Pedregosa, F., Varoquaux, G., Gramfort, A., Thirion, B., Grisel, O., Dubourg, V., Passos, A., Brucher, M., and\u00c9douardand, M.P., and\u00c9douard Duchesnay, Edouardduchesnay, F.D.: Scikit-learn: Machine learning in python ga\u00ebl varoquaux bertrand thirion vincent dubourg alexandre passos pedregosa, varoquaux, gramfort et al. matthieu perrot. J. Mach. Learn. Res. 12, 2825\u20132830 (2011). https:\/\/doi.org\/10.5555\/1953048","DOI":"10.5555\/1953048"},{"key":"718_CR21","unstructured":"Abadi, M., Barham, P., Chen, J., Chen, Z., Davis, A., Dean, J., Devin, M., Ghemawat, S., Irving, G., Isard, M., et al.: $$\\{$$TensorFlow$$\\}$$: a system for $$\\{$$Large-Scale$$\\}$$ machine learning. In: 12th USENIX Symposium on Operating Systems Design and Implementation (OSDI 16), pp. 265\u2013283 (2016)"},{"key":"718_CR22","unstructured":"Paszke, A., Gross, S., Chintala, S., Chanan, G., Yang, E., DeVito, Z., Lin, Z., Desmaison, A., Antiga, L., Lerer, A.: Automatic differentiation in pytorch (2017)"},{"key":"718_CR23","unstructured":"MATLAB: (R2022a). The MathWorks Inc., Natick, Massachusetts (2022)"},{"key":"718_CR24","doi-asserted-by":"publisher","first-page":"10","DOI":"10.1145\/1656274.1656278","volume":"11","author":"M Hall","year":"2009","unstructured":"Hall, M., Frank, E., Holmes, G., Pfahringer, B., Reutemann, P., Witten, I.H.: The weka data mining software. ACM SIGKDD Explor. Newsl 11, 10\u201318 (2009). https:\/\/doi.org\/10.1145\/1656274.1656278","journal-title":"ACM SIGKDD Explor. Newsl"},{"key":"718_CR25","doi-asserted-by":"publisher","first-page":"99595","DOI":"10.1109\/ACCESS.2021.3095962","volume":"9","author":"T Moulahi","year":"2021","unstructured":"Moulahi, T., Zidi, S., Alabdulatif, A., Atiquzzaman, M.: Comparative performance evaluation of intrusion detection based on machine learning in in-vehicle controller area network bus. IEEE Access 9, 99595\u201399605 (2021). https:\/\/doi.org\/10.1109\/ACCESS.2021.3095962","journal-title":"IEEE Access"},{"key":"718_CR26","doi-asserted-by":"publisher","first-page":"2735","DOI":"10.1007\/S10489-018-01408-X\/TABLES\/16","volume":"49","author":"\u00dcnal \u00c7avu\u015fo\u011flu","year":"2019","unstructured":"\u00c7avu\u015fo\u011flu, \u00dcnal.: A new hybrid approach for intrusion detection using machine learning methods. Appl. Intell. 49, 2735\u20132761 (2019). https:\/\/doi.org\/10.1007\/S10489-018-01408-X\/TABLES\/16","journal-title":"Appl. Intell."},{"key":"718_CR27","doi-asserted-by":"crossref","unstructured":"Van, T., Tran, H.A., Souihi, S., Mellouk, A.: Empirical study for dynamic adaptive video streaming service based on google transport quic protocol. In: 2018 IEEE 43rd Conference on Local Computer Networks (LCN), pp. 343\u2013350 (2018). IEEE","DOI":"10.1109\/LCN.2018.8638062"},{"key":"718_CR28","doi-asserted-by":"publisher","first-page":"14","DOI":"10.1109\/OJCS.2021.3050917","volume":"2","author":"S Ho","year":"2021","unstructured":"Ho, S., Al Jufout, S., Dajani, K., Mozumdar, M.: A novel intrusion detection model for detecting known and innovative cyberattacks using convolutional neural network. IEEE Open J. Comput. Soc. 2, 14\u201325 (2021)","journal-title":"IEEE Open J. Comput. Soc."},{"key":"718_CR29","doi-asserted-by":"publisher","first-page":"95","DOI":"10.1016\/J.ICTE.2018.04.003","volume":"4","author":"A Shenfield","year":"2018","unstructured":"Shenfield, A., Day, D., Ayesh, A.: Intelligent intrusion detection systems using artificial neural networks. ICT Express 4, 95\u201399 (2018). https:\/\/doi.org\/10.1016\/J.ICTE.2018.04.003","journal-title":"ICT Express"},{"key":"718_CR30","doi-asserted-by":"publisher","DOI":"10.17485\/ijst\/2018\/v11i48\/139802","author":"RA Jamadar","year":"2018","unstructured":"Jamadar, R.A.: Network intrusion detection system using machine learning. Indian J. Sci. Technol. (2018). https:\/\/doi.org\/10.17485\/ijst\/2018\/v11i48\/139802","journal-title":"Indian J. Sci. Technol."},{"key":"718_CR31","doi-asserted-by":"publisher","unstructured":"Taher, K.A., Jisan, B.M.Y., Rahman, M.M.: Network intrusion detection using supervised machine learning technique with feature selection. In: 1st International Conference on Robotics, Electrical and Signal Processing Techniques, ICREST 2019, 643\u2013646 (2019). https:\/\/doi.org\/10.1109\/ICREST.2019.8644161","DOI":"10.1109\/ICREST.2019.8644161"},{"key":"718_CR32","doi-asserted-by":"publisher","unstructured":"Kanimozhi, V., Jacob, T.P.: Artificial intelligence based network intrusion detection with hyper-parameter optimization tuning on the realistic cyber dataset cse-cic-ids2018 using cloud computing. In: Proceedings of the 2019 IEEE International Conference on Communication and Signal Processing, ICCSP 2019, 33\u201336 (2019). https:\/\/doi.org\/10.1109\/ICCSP.2019.8698029","DOI":"10.1109\/ICCSP.2019.8698029"},{"key":"718_CR33","doi-asserted-by":"publisher","DOI":"10.1155\/2020\/4586875","author":"S Rajagopal","year":"2020","unstructured":"Rajagopal, S., Kundapur, P.P., Hareesha, K.S.: A stacking ensemble for network intrusion detection using heterogeneous datasets. Secur. Commun. Netw. (2020). https:\/\/doi.org\/10.1155\/2020\/4586875","journal-title":"Secur. Commun. Netw."},{"key":"718_CR34","doi-asserted-by":"publisher","first-page":"22351","DOI":"10.1109\/ACCESS.2021.3056614","volume":"9","author":"ZK Maseer","year":"2021","unstructured":"Maseer, Z.K., Yusof, R., Bahaman, N., Mostafa, S.A., Foozy, C.F.M.: Benchmarking of machine learning for anomaly based intrusion detection systems in the cicids2017 dataset. IEEE Access 9, 22351\u201322370 (2021). https:\/\/doi.org\/10.1109\/ACCESS.2021.3056614","journal-title":"IEEE Access"},{"key":"718_CR35","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1186\/S40537-020-00320-X\/TABLES\/6","volume":"7","author":"S Thudumu","year":"2020","unstructured":"Thudumu, S., Branch, P., Jin, J., Singh, J.J.: A comprehensive survey of anomaly detection techniques for high dimensional big data. J. Big Data 7, 1\u201330 (2020). https:\/\/doi.org\/10.1186\/S40537-020-00320-X\/TABLES\/6","journal-title":"J. Big Data"},{"key":"718_CR36","doi-asserted-by":"crossref","unstructured":"Bhati, N.S., Khari, M.: A new intrusion detection scheme using catboost classifier. In: Forthcoming Networks and Sustainability in the IoT Era: First EAI International Conference, FoNeS\u2013IoT 2020, Virtual Event, October 1-2, 2020, Proceedings 1, pp. 169\u2013176. Springer (2021)","DOI":"10.1007\/978-3-030-69431-9_13"},{"issue":"2","key":"718_CR37","doi-asserted-by":"publisher","first-page":"969","DOI":"10.3233\/JIFS-189764","volume":"42","author":"NS Bhati","year":"2022","unstructured":"Bhati, N.S., Khari, M., Malik, H., Chaudhary, G., Srivastava, S.: A new ensemble based approach for intrusion detection system using voting. J. Intell. Fuzzy Syst. 42(2), 969\u2013979 (2022). https:\/\/doi.org\/10.3233\/JIFS-189764","journal-title":"J. Intell. Fuzzy Syst."},{"key":"718_CR38","doi-asserted-by":"publisher","unstructured":"Bhati, N.S., Khari, M.: An ensemble model for network intrusion detection using adaboost, random forest and logistic regression. In: Applications of Artificial Intelligence and Machine Learning: Select Proceedings of ICAAAIML 2021, pp. 777\u2013789. Springer (2022). https:\/\/doi.org\/10.1007\/978-3-319-10840-7_32","DOI":"10.1007\/978-3-319-10840-7_32"},{"issue":"Supp02","key":"718_CR39","doi-asserted-by":"publisher","first-page":"65","DOI":"10.1142\/S0218488520400140","volume":"28","author":"NS Bhati","year":"2020","unstructured":"Bhati, N.S., Khari, M., Garc\u00eda-D\u00edaz, V., Verd\u00fa, E.: A review on intrusion detection systems and techniques. Internat. J. Uncertain. Fuzziness Knowl. Based Syst. 28(Supp02), 65\u201391 (2020). https:\/\/doi.org\/10.1142\/S0218488520400140","journal-title":"Internat. J. Uncertain. Fuzziness Knowl. Based Syst."},{"key":"718_CR40","doi-asserted-by":"publisher","DOI":"10.1016\/j.jisa.2019.102419","volume":"50","author":"MA Ferrag","year":"2020","unstructured":"Ferrag, M.A., Maglaras, L., Moschoyiannis, S., Janicke, H.: Deep learning for cyber security intrusion detection: approaches, datasets, and comparative study. J. Inf. Secur. Appl. 50, 102419 (2020). https:\/\/doi.org\/10.1016\/j.jisa.2019.102419","journal-title":"J. Inf. Secur. Appl."},{"key":"718_CR41","doi-asserted-by":"publisher","DOI":"10.1186\/s42400-019-0038-7","author":"A Khraisat","year":"2019","unstructured":"Khraisat, A., Gondal, I., Vamplew, P., Kamruzzaman, J.: Survey of intrusion detection systems: techniques, datasets and challenges. Cybersecurity (2019). https:\/\/doi.org\/10.1186\/s42400-019-0038-7","journal-title":"Cybersecurity"},{"key":"718_CR42","doi-asserted-by":"publisher","first-page":"41","DOI":"10.1109\/MC.2018.2888764","volume":"52","author":"K Siddique","year":"2019","unstructured":"Siddique, K., Akhtar, Z., Khan, F.A., Kim, Y.: Kdd cup 99 data sets: a perspective on the role of data sets in network intrusion detection research. Computer 52, 41\u201351 (2019)","journal-title":"Computer"},{"key":"718_CR43","doi-asserted-by":"publisher","first-page":"104650","DOI":"10.1109\/ACCESS.2020.3000179","volume":"8","author":"H Hindy","year":"2020","unstructured":"Hindy, H., Brosset, D., Bayne, E., Seeam, A.K., Tachtatzis, C., Atkinson, R., Bellekens, X.: A taxonomy of network threats and the effect of current datasets on intrusion detection systems. IEEE Access 8, 104650\u2013104675 (2020). https:\/\/doi.org\/10.1109\/ACCESS.2020.3000179","journal-title":"IEEE Access"},{"key":"718_CR44","doi-asserted-by":"publisher","DOI":"10.3390\/app11177868","author":"A Ferriyan","year":"2021","unstructured":"Ferriyan, A., Thamrin, A.H., Takeda, K., Murai, J.: Generating network intrusion detection dataset based on real and encrypted synthetic attack traffic. Appl. Sci. (2021). https:\/\/doi.org\/10.3390\/app11177868","journal-title":"Appl. Sci."},{"key":"718_CR45","doi-asserted-by":"publisher","unstructured":"Sarhan, M., Layeghy, S., Moustafa, N., Portmann, M.: Netflow datasets for machine learning-based network intrusion detection systems. In: Lecture Notes of the Institute for Computer Sciences, Social-Informatics and Telecommunications Engineering, LNICST 371 LNICST, 117\u2013135 (2021). https:\/\/doi.org\/10.1007\/978-3-030-72802-1_9","DOI":"10.1007\/978-3-030-72802-1_9"},{"key":"718_CR46","doi-asserted-by":"publisher","unstructured":"Tong, V., Tran, H.A., Souihi, S., Mellouk, A.: Empirical study for dynamic adaptive video streaming service based on google transport quic protocol. In: Proceedings\u2014Conference on Local Computer Networks, LCN 2018-October, 343\u2013350 (2019). https:\/\/doi.org\/10.1109\/LCN.2018.8638062","DOI":"10.1109\/LCN.2018.8638062"},{"key":"718_CR47","doi-asserted-by":"publisher","first-page":"357","DOI":"10.1007\/S11036-021-01843-0\/FIGURES\/4","volume":"27","author":"M Sarhan","year":"2022","unstructured":"Sarhan, M., Layeghy, S., Portmann, M.: Towards a standard feature set for network intrusion detection system datasets. Mobile Netw. Appl. 27, 357\u2013370 (2022). https:\/\/doi.org\/10.1007\/S11036-021-01843-0\/FIGURES\/4","journal-title":"Mobile Netw. Appl."},{"key":"718_CR48","unstructured":"GNS3 The software that empowers network professionals. https:\/\/www.gns3.com\/. (accessed: 15\/10\/2022) (2022)"},{"key":"718_CR49","first-page":"2395","volume":"3","author":"KC Patel","year":"2017","unstructured":"Patel, K.C., Sharma, P.: A review paper on pfsense-an open source firewall introducing with different capabilities and customization. IJARIIE 3, 2395\u20134396 (2017)","journal-title":"IJARIIE"},{"key":"718_CR50","doi-asserted-by":"publisher","DOI":"10.1155\/2021\/5363750","author":"T Bakhshi","year":"2021","unstructured":"Bakhshi, T., Ghita, B.: Anomaly detection in encrypted internet traffic using hybrid deep learning. Secur. Commun. Netw. (2021). https:\/\/doi.org\/10.1155\/2021\/5363750","journal-title":"Secur. Commun. Netw."},{"key":"718_CR51","doi-asserted-by":"publisher","first-page":"12018","DOI":"10.1088\/1742-6596\/1192\/1\/012018","volume":"1192","author":"A Yulianto","year":"2019","unstructured":"Yulianto, A., Sukarno, P., Suwastika, N.A.: Improving adaboost-based intrusion detection system (ids) performance on cic ids 2017 dataset. J. Phys: Conf. Ser. 1192, 12018 (2019). https:\/\/doi.org\/10.1088\/1742-6596\/1192\/1\/012018","journal-title":"J. Phys: Conf. Ser."},{"key":"718_CR52","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1007\/s10922-021-09615-7","volume":"30","author":"M Verkerken","year":"2022","unstructured":"Verkerken, M., D\u2019hooge, L., Wauters, T., Volckaert, B., De Turck, F.: Towards model generalization for intrusion detection Unsupervised machine learning techniques. J. Netw. Syst. Manag. 30, 1\u201325 (2022)","journal-title":"J. Netw. Syst. Manag."},{"key":"718_CR53","doi-asserted-by":"publisher","DOI":"10.3390\/s23041846","author":"L Dhooge","year":"2023","unstructured":"Dhooge, L., Verkerken, M., Wauters, T., De Turck, F., Volckaert, B.: Investigating generalized performance of data-constrained supervised machine learning models on novel, related samples in intrusion detection. Sensors (2023). https:\/\/doi.org\/10.3390\/s23041846","journal-title":"Sensors"}],"container-title":["International Journal of Information Security"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s10207-023-00718-7.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/article\/10.1007\/s10207-023-00718-7\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s10207-023-00718-7.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,10,24]],"date-time":"2024-10-24T09:13:04Z","timestamp":1729761184000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/s10207-023-00718-7"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2023,7,17]]},"references-count":53,"journal-issue":{"issue":"6","published-print":{"date-parts":[[2023,12]]}},"alternative-id":["718"],"URL":"https:\/\/doi.org\/10.1007\/s10207-023-00718-7","relation":{},"ISSN":["1615-5262","1615-5270"],"issn-type":[{"value":"1615-5262","type":"print"},{"value":"1615-5270","type":"electronic"}],"subject":[],"published":{"date-parts":[[2023,7,17]]},"assertion":[{"value":"17 July 2023","order":1,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}},{"order":1,"name":"Ethics","group":{"name":"EthicsHeading","label":"Declarations"}},{"value":"The authors declare that they have no known competing financial interests or personal relationships that could have appeared to influence the work reported in this paper.","order":2,"name":"Ethics","group":{"name":"EthicsHeading","label":"Conflict of interest"}}]}}