{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,3,20]],"date-time":"2026-03-20T16:11:32Z","timestamp":1774023092674,"version":"3.50.1"},"reference-count":43,"publisher":"Springer Science and Business Media LLC","issue":"1","license":[{"start":{"date-parts":[[2020,9,2]],"date-time":"2020-09-02T00:00:00Z","timestamp":1599004800000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springer.com\/tdm"},{"start":{"date-parts":[[2020,9,2]],"date-time":"2020-09-02T00:00:00Z","timestamp":1599004800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springer.com\/tdm"}],"funder":[{"DOI":"10.13039\/501100000038","name":"Natural Sciences and Engineering Research Council of Canada","doi-asserted-by":"crossref","id":[{"id":"10.13039\/501100000038","id-type":"DOI","asserted-by":"crossref"}]}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["Cluster Comput"],"published-print":{"date-parts":[[2021,3]]},"DOI":"10.1007\/s10586-020-03153-8","type":"journal-article","created":{"date-parts":[[2020,9,2]],"date-time":"2020-09-02T12:02:39Z","timestamp":1599048159000},"page":"17-35","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":28,"title":["TempoCode-IoT: temporal codebook-based encoding of flow features for intrusion detection in Internet of Things"],"prefix":"10.1007","volume":"24","author":[{"ORCID":"https:\/\/orcid.org\/0000-0001-6233-598X","authenticated-orcid":false,"given":"Abdul Jabbar","family":"Siddiqui","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Azzedine","family":"Boukerche","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2020,9,2]]},"reference":[{"key":"3153_CR1","doi-asserted-by":"publisher","first-page":"111","DOI":"10.1016\/j.comnet.2018.07.025","volume":"144","author":"T Aldwairi","year":"2018","unstructured":"Aldwairi, T., Perera, D., Novotny, M.A.: An evaluation of the performance of restricted boltzmann machines as a model for anomaly network intrusion detection. Comput. Netw. 144, 111\u2013119 (2018)","journal-title":"Comput. Netw."},{"key":"3153_CR2","doi-asserted-by":"crossref","unstructured":"Almi\u2019ani, M., Ghazleh, A.A., Al-Rahayfeh, A., Razaque, A.: Intelligent intrusion detection system using clustered self organized map. In: 2018 Fifth international conference on software defined systems (SDS), pp. 138\u2013144 (2018)","DOI":"10.1109\/SDS.2018.8370435"},{"key":"3153_CR3","doi-asserted-by":"crossref","unstructured":"Aloqaily, M., Otoum, S., Ridhawi, I.A., Jararweh, Y.: An intrusion detection system for connected vehicles in smart cities. Ad Hoc Networks 90, 101842 (2019). Recent advances on security and privacy in Intelligent Transportation Systems","DOI":"10.1016\/j.adhoc.2019.02.001"},{"key":"3153_CR4","doi-asserted-by":"publisher","unstructured":"Arthur, D., Vassilvitskii, S.: How slow is the k-means method? In: Proceedings of the twenty-second annual symposium on computational geometry, SCG \u201906, p. 144-153. Association for Computing Machinery, New York, NY, USA (2006). https:\/\/doi.org\/10.1145\/1137856.1137880","DOI":"10.1145\/1137856.1137880"},{"key":"3153_CR5","doi-asserted-by":"crossref","unstructured":"Atli, B.G., Miche, Y., Jung, A.: Network intrusion detection using flow statistics. In: 2018 IEEE Statistical Signal Processing Workshop (SSP), pp. 70\u201374 (2018)","DOI":"10.1109\/SSP.2018.8450709"},{"key":"3153_CR6","first-page":"39","volume-title":"Support Vector Machines for Classification","author":"M Awad","year":"2015","unstructured":"Awad, M., Khanna, R.: Support Vector Machines for Classification, pp. 39\u201366. Apress, Berkeley, CA (2015)"},{"key":"3153_CR7","doi-asserted-by":"crossref","unstructured":"Bottou, L., Chapelle, O., DeCoste, D., Weston, J.: Support Vector Machine Solvers, pp. 1\u201327 (2007)","DOI":"10.7551\/mitpress\/7496.003.0003"},{"key":"3153_CR8","volume-title":"Handbook of Bioinspired Algorithms and Applications","author":"A Boukerche","year":"2005","unstructured":"Boukerche, A., Juc\u00e1, K.R.L., Notare, M.S.M.A., Sobral, J.B.M.: Biological inspired based intrusion detection models for mobile telecommunication systems. In: Olariu, S., Zomaya, A.Y. (eds.) Handbook of Bioinspired Algorithms and Applications. Chapman and Hall\/CRC, New York (2005)"},{"issue":"5\u20136","key":"3153_CR9","doi-asserted-by":"publisher","first-page":"629","DOI":"10.1016\/j.parco.2003.12.008","volume":"30","author":"A Boukerche","year":"2004","unstructured":"Boukerche, A., Juc\u00e1, K.R.L., Sobral, JaB, Annoni\u00a0Notare, M.S.M.: An artificial immune based intrusion detection model for computer and telecommunication systems. Parallel Comput 30(5\u20136), 629\u2013646 (2004)","journal-title":"Parallel Comput"},{"issue":"13","key":"3153_CR10","doi-asserted-by":"publisher","first-page":"2649","DOI":"10.1016\/j.comcom.2007.03.008","volume":"30","author":"A Boukerche","year":"2007","unstructured":"Boukerche, A., Machado, R.B., Juc\u00e1, K.R.L., Sobral, JaBM, Notare, M.S.M.A.: An agent based and biological inspired real-time intrusion detection and security model for computer network operations. Comput. Commun. 30(13), 2649\u20132660 (2007)","journal-title":"Comput. Commun."},{"issue":"2","key":"3153_CR11","first-page":"123","volume":"24","author":"L Breiman","year":"1996","unstructured":"Breiman, L.: Bagging predictors. Mach. Learn. 24(2), 123\u2013140 (1996)","journal-title":"Mach. Learn."},{"issue":"2","key":"3153_CR12","doi-asserted-by":"publisher","first-page":"121","DOI":"10.1023\/A:1009715923555","volume":"2","author":"CJC Burges","year":"1998","unstructured":"Burges, C.J.C.: A tutorial on support vector machines for pattern recognition. Data Min. Knowl. Discov. 2(2), 121\u2013167 (1998)","journal-title":"Data Min. Knowl. Discov."},{"key":"3153_CR13","unstructured":"Csurka, G., Dance, C.R., Fan, L., Willamowski, J., Bray, C.: Visual Categorization with bags of keypoints. In: Workshop on statistical learning in computer vision, ECCV, pp. 1\u201322 (2004)"},{"key":"3153_CR14","unstructured":"Gil, G.D., Lashkari, A.H., Mamun, M., Ghorbani, A.A.: Characterization of encrypted and vpn traffic using time-related features. In: 2nd International conference on information systems security and privacy (ICISSP 2016), pp. 407\u2013414 (2016)"},{"key":"3153_CR15","doi-asserted-by":"crossref","unstructured":"Ioannou, C., Vassiliou, V.: An intrusion detection system for constrained wsn and iot nodes based on binary logistic regression. In: Proceedings of the 21st ACM international conference on modeling, analysis and simulation of wireless and mobile systems, MSWIM \u201918, p. 259-263. Association for Computing Machinery, New York, NY, USA (2018)","DOI":"10.1145\/3242102.3242145"},{"key":"3153_CR16","unstructured":"Kaspersky: Kaspersky lab ddos intelligence quarterly report: amplification attacks and old botnets make a comeback (2018). \u201chttps:\/\/www.kaspersky.com\/about\/press-releases\/2018-amplification-attacks-and-old-botnets\u201d. Accessed 29 October 2018"},{"key":"3153_CR17","doi-asserted-by":"crossref","unstructured":"Lee, W., Rezapour, A., Tzeng, W.: Monsieur poirot: detecting botnets using re-identification algorithm and nontrivial feature selection technique. In: 2018 IEEE international conference on communications (ICC), pp. 1\u20136 (2018)","DOI":"10.1109\/ICC.2018.8422081"},{"key":"3153_CR18","doi-asserted-by":"publisher","first-page":"13","DOI":"10.1016\/j.knosys.2015.01.009","volume":"78","author":"WC Lin","year":"2015","unstructured":"Lin, W.C., Ke, S.W., Tsai, C.F.: Cann: an intrusion detection system based on combining cluster centers and nearest neighbors. Knowl.-Based Syst. 78, 13\u201321 (2015)","journal-title":"Knowl.-Based Syst."},{"key":"3153_CR19","unstructured":"Machado, R.B., Boukerche, A., Sobral, J.B.M., Juc\u00e1, K.R.L., Notare, M.S.M.A.: A hybrid artificial immune and mobile agent intrusion detection based model for computer network operations. In: 19th International parallel and distributed processing symposium (IPDPS 2005), CD-ROM \/ Abstracts Proceedings, 4-8 April 2005, Denver, CO, USA. IEEE Computer Society (2005)"},{"key":"3153_CR20","doi-asserted-by":"publisher","first-page":"59657","DOI":"10.1109\/ACCESS.2018.2875045","volume":"6","author":"N Marir","year":"2018","unstructured":"Marir, N., Wang, H., Feng, G., Li, B., Jia, M.: Distributed abnormal behavior detection approach based on deep belief network and ensemble svm using spark. IEEE Access 6, 59657\u201359671 (2018)","journal-title":"IEEE Access"},{"issue":"3","key":"3153_CR21","doi-asserted-by":"publisher","first-page":"12","DOI":"10.1109\/MPRV.2018.03367731","volume":"17","author":"Y Meidan","year":"2018","unstructured":"Meidan, Y., Bohadana, M., Mathov, Y., Mirsky, Y., Shabtai, A., Breitenbacher, D., Elovici, Y.: N-baiot: network-based detection of iot botnet attacks using deep autoencoders. IEEE Pervasive Comput. 17(3), 12\u201322 (2018)","journal-title":"IEEE Pervasive Comput."},{"key":"3153_CR22","unstructured":"Micro, T.: Ddos\u2014security news\u2014trend micro usa. https:\/\/www.trendmicro.com\/vinfo\/us\/security\/news\/ddos"},{"key":"3153_CR23","doi-asserted-by":"crossref","unstructured":"Mirsky, Y., Doitshman, T., Elovici, Y., Shabtai, A.: Kitsune: an ensemble of autoencoders for online network intrusion detection. In: 25th Annual network and distributed system security symposium, NDSS 2018, San Diego, California, USA, February 18-21, 2018 (2018)","DOI":"10.14722\/ndss.2018.23204"},{"key":"3153_CR24","doi-asserted-by":"publisher","DOI":"10.1109\/JIOT.2018.2871719","author":"N Moustafa","year":"2018","unstructured":"Moustafa, N., Turnbull, B., Choo, K.R.: An ensemble intrusion detection technique based on proposed statistical flow features for protecting network traffic of internet of things. IEEE Internet Things J. (2018). https:\/\/doi.org\/10.1109\/JIOT.2018.2871719","journal-title":"IEEE Internet Things J."},{"key":"3153_CR25","doi-asserted-by":"crossref","unstructured":"N\u00f5mm, S., Bahsi, H.: Unsupervised anomaly based botnet detection in iot networks. In: 2018 17th IEEE international conference on machine learning and applications (ICMLA), pp. 1048\u20131053 (2018)","DOI":"10.1109\/ICMLA.2018.00171"},{"issue":"4","key":"3153_CR26","doi-asserted-by":"publisher","first-page":"2171","DOI":"10.1016\/j.asoc.2012.12.013","volume":"13","author":"L Nanni","year":"2013","unstructured":"Nanni, L., Lumini, A.: Heterogeneous bag-of-features for object\/scene recognition. Appl. Soft Comput. 13(4), 2171\u20132178 (2013)","journal-title":"Appl. Soft Comput."},{"key":"3153_CR27","doi-asserted-by":"crossref","unstructured":"Nofal, R.A., Tran, N., Garcia, C., Liu, Y., Dezfouli, B.: A comprehensive empirical analysis of tls handshake and record layer on iot platforms. In: Proceedings of the 22nd international ACM conference on modeling, analysis and simulation of wireless and mobile systems, MSWIM \u201919, p. 61-70. Association for Computing Machinery, New York, NY, USA (2019)","DOI":"10.1145\/3345768.3355924"},{"key":"3153_CR28","unstructured":"Osborne, C., Day, Z.: The most interesting internet-connected vehicle hacks on record. https:\/\/www.zdnet.com\/article\/these-are-the-most-interesting-ways-to-hack-internet-connected-vehicles\/"},{"key":"3153_CR29","doi-asserted-by":"crossref","unstructured":"Otoum, S., Kantarci, B., Mouftah, H.: Empowering reinforcement learning on big sensed data for intrusion detection. In: ICC 2019 - 2019 IEEE international conference on communications (ICC), pp. 1\u20137 (2019)","DOI":"10.1109\/ICC.2019.8761575"},{"issue":"2","key":"3153_CR30","doi-asserted-by":"publisher","first-page":"68","DOI":"10.1109\/LNET.2019.2901792","volume":"1","author":"S Otoum","year":"2019","unstructured":"Otoum, S., Kantarci, B., Mouftah, H.T.: On the feasibility of deep learning in sensor network intrusion detection. IEEE Netw. Lett. 1(2), 68\u201371 (2019)","journal-title":"IEEE Netw. Lett."},{"key":"3153_CR31","first-page":"2825","volume":"12","author":"F Pedregosa","year":"2011","unstructured":"Pedregosa, F., Varoquaux, G., Gramfort, A., Michel, V., Thirion, B., Grisel, O., Blondel, M., Prettenhofer, P., Weiss, R., Dubourg, V., Vanderplas, J., Passos, A., Cournapeau, D., Brucher, M., Perrot, M., Duchesnay, E.: Scikit-learn: machine learning in python. J. Mach. Learn. Res. 12, 2825\u20132830 (2011)","journal-title":"J. Mach. Learn. Res."},{"issue":"6","key":"3153_CR32","doi-asserted-by":"publisher","first-page":"4829","DOI":"10.1109\/JIOT.2018.2846040","volume":"5","author":"F Restuccia","year":"2018","unstructured":"Restuccia, F., D\u2019Oro, S., Melodia, T.: Securing the internet of things in the age of machine learning and software-defined networking. IEEE Internet Things J. 5(6), 4829\u20134842 (2018)","journal-title":"IEEE Internet Things J."},{"issue":"6","key":"3153_CR33","doi-asserted-by":"publisher","first-page":"570","DOI":"10.1109\/JIOT.2014.2366120","volume":"1","author":"H Sedjelmaci","year":"2014","unstructured":"Sedjelmaci, H., Senouci, S.M., Abu-Rgheff, M.A.: An efficient and lightweight intrusion detection mechanism for service-oriented vehicular networks. IEEE Internet Things J. 1(6), 570\u2013577 (2014)","journal-title":"IEEE Internet Things J."},{"key":"3153_CR34","doi-asserted-by":"crossref","unstructured":"Sharafaldin, I., Lashkari, A.H., Ghorbani, A.A.: Toward generating a new intrusion detection dataset and intrusion traffic characterization. In: 4th International conference on information systems security and privacy (ICISSP) (2018)","DOI":"10.5220\/0006639801080116"},{"key":"3153_CR35","doi-asserted-by":"publisher","DOI":"10.1109\/JIOT.2018.2877749","author":"S Shasha","year":"2018","unstructured":"Shasha, S., Mahmoud, M., Mannan, M., Youssef, A.: Playing with danger: A taxonomy and evaluation of threats to smart toys. IEEE Internet Things J. (2018). https:\/\/doi.org\/10.1109\/JIOT.2018.2877749","journal-title":"IEEE Internet Things J."},{"key":"3153_CR36","doi-asserted-by":"crossref","unstructured":"Siddiqui, A.J., Boukerche, A.: Encoded flow features for network intrusion detection in internet of things. In: 2020 IEEE 17th annual consumer communications networking conference (CCNC), pp. 1\u20136 (2020)","DOI":"10.1109\/CCNC46108.2020.9045195"},{"key":"3153_CR37","doi-asserted-by":"crossref","unstructured":"Soundar Raja\u00a0James, R.J.P., Albasir, A.A., Naik, K., Zaman, M., Goel, N.: A power signal based dynamic approach to detecting anomalous behavior in wireless devices. In: Proceedings of the 16th ACM international symposium on mobility management and wireless access, MobiWac\u201918, p. 9-18. Association for Computing Machinery, New York, NY, USA (2018)","DOI":"10.1145\/3265863.3265867"},{"key":"3153_CR38","doi-asserted-by":"publisher","DOI":"10.1007\/978-1-4757-2440-0","volume-title":"The Nature of Statistical Learning Theory","author":"VN Vapnik","year":"1995","unstructured":"Vapnik, V.N.: The Nature of Statistical Learning Theory. Springer, New York (1995)"},{"key":"3153_CR39","doi-asserted-by":"crossref","unstructured":"Venkata\u00a0Abhishek, N., Tandon, A., Lim, T.J., Sikdar, B.: Detecting forwarding misbehavior in clustered iot networks. In: Proceedings of the 14th ACM international symposium on QoS and security for wireless and mobile networks, Q2SWinet\u201918, p. 1-6. Association for Computing Machinery, New York, NY, USA (2018)","DOI":"10.1145\/3267129.3267147"},{"key":"3153_CR40","doi-asserted-by":"publisher","DOI":"10.1109\/JIOT.2018.2873125","author":"H Yao","year":"2018","unstructured":"Yao, H., Fu, D., Zhang, P., Li, M., Liu, Y.: Msml: a novel multi-level semi-supervised machine learning framework for intrusion detection system. IEEE Internet Things J. (2018). https:\/\/doi.org\/10.1109\/JIOT.2018.2873125","journal-title":"IEEE Internet Things J."},{"issue":"1","key":"3153_CR41","doi-asserted-by":"publisher","first-page":"5","DOI":"10.1109\/TIFS.2012.2223675","volume":"8","author":"J Zhang","year":"2013","unstructured":"Zhang, J., Chen, C., Xiang, Y., Zhou, W., Xiang, Y.: Internet traffic classification by aggregating correlated naive bayes predictions. IEEE Trans. Inform. Forensics Sec. 8(1), 5\u201315 (2013)","journal-title":"IEEE Trans. Inform. Forensics Sec."},{"issue":"1","key":"3153_CR42","doi-asserted-by":"publisher","first-page":"201","DOI":"10.1093\/ietisy\/e89-d.1.201","volume":"E89\u2013D","author":"J Zheng","year":"2006","unstructured":"Zheng, J., Hu, M.: An anomaly intrusion detection system based on vector quantization. IEICE Trans. Inf. Syst. E89\u2013D(1), 201\u2013210 (2006)","journal-title":"IEICE Trans. Inf. Syst."},{"key":"3153_CR43","first-page":"270","volume-title":"Ensemble Learning","author":"ZH Zhou","year":"2009","unstructured":"Zhou, Z.H.: Ensemble Learning, pp. 270\u2013273. Springer US, Boston, MA (2009)"}],"container-title":["Cluster Computing"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s10586-020-03153-8.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/article\/10.1007\/s10586-020-03153-8\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s10586-020-03153-8.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2023,10,6]],"date-time":"2023-10-06T19:15:29Z","timestamp":1696619729000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/s10586-020-03153-8"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2020,9,2]]},"references-count":43,"journal-issue":{"issue":"1","published-print":{"date-parts":[[2021,3]]}},"alternative-id":["3153"],"URL":"https:\/\/doi.org\/10.1007\/s10586-020-03153-8","relation":{},"ISSN":["1386-7857","1573-7543"],"issn-type":[{"value":"1386-7857","type":"print"},{"value":"1573-7543","type":"electronic"}],"subject":[],"published":{"date-parts":[[2020,9,2]]},"assertion":[{"value":"18 March 2020","order":1,"name":"received","label":"Received","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"14 June 2020","order":2,"name":"revised","label":"Revised","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"8 July 2020","order":3,"name":"accepted","label":"Accepted","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"2 September 2020","order":4,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}}]}}