{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,2]],"date-time":"2026-07-02T22:49:34Z","timestamp":1783032574888,"version":"3.54.6"},"reference-count":37,"publisher":"Springer Science and Business Media LLC","issue":"2","license":[{"start":{"date-parts":[[2022,1,17]],"date-time":"2022-01-17T00:00:00Z","timestamp":1642377600000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springer.com\/tdm"},{"start":{"date-parts":[[2022,1,17]],"date-time":"2022-01-17T00:00:00Z","timestamp":1642377600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springer.com\/tdm"}],"funder":[{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["U20A20174"],"award-info":[{"award-number":["U20A20174"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["61772189"],"award-info":[{"award-number":["61772189"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["61772191"],"award-info":[{"award-number":["61772191"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["Cluster Comput"],"published-print":{"date-parts":[[2022,4]]},"DOI":"10.1007\/s10586-022-03537-y","type":"journal-article","created":{"date-parts":[[2022,1,17]],"date-time":"2022-01-17T10:03:42Z","timestamp":1642413822000},"page":"1373-1392","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":7,"title":["A novel LDoS attack detection method based on reconstruction anomaly"],"prefix":"10.1007","volume":"25","author":[{"given":"Dan","family":"Tang","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-8443-0467","authenticated-orcid":false,"given":"Yudong","family":"Yan","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Rui","family":"Dai","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Zheng","family":"Qin","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Jingwen","family":"Chen","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Dongshuo","family":"Zhang","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2022,1,17]]},"reference":[{"issue":"2","key":"3537_CR1","first-page":"1","volume":"112","author":"N Agrawal","year":"2020","unstructured":"Agrawal, N., Tapaswi, S.: Detection of low-rate cloud DDoS attacks in frequency domain using fast Hartley transform. Wirel. Pers. Commun. 112(2), 1\u201328 (2020)","journal-title":"Wirel. Pers. Commun."},{"key":"3537_CR2","unstructured":"An, J., Cho, S.: Variational autoencoder based anomaly detection using reconstruction probability. In: Special Lecture on IE, vol. 2(1) (2015)"},{"key":"3537_CR3","doi-asserted-by":"publisher","first-page":"501","DOI":"10.1007\/s10586-020-03133-y","volume":"24","author":"S Badotra","year":"2021","unstructured":"Badotra, S., Panda, S.N.: Snort based early DDoS detection system using Opendaylight and open networking operating system in software defined networking. Clust. Comput. 24, 501\u2013513 (2021)","journal-title":"Clust. Comput."},{"key":"3537_CR4","doi-asserted-by":"publisher","first-page":"234","DOI":"10.1016\/j.comnet.2019.01.007","volume":"150","author":"E Cambiaso","year":"2019","unstructured":"Cambiaso, E., Chiola, G., Aiello, M.: Introducing the slowdrop attack. Comput. Netw. 150, 234\u2013249 (2019)","journal-title":"Comput. Netw."},{"key":"3537_CR5","unstructured":"Cao, J., Li, Q., Xie, R., Sun, K., Gu, G., Xu, M., Yang, Y.: The crosspath attack: disrupting the SDN control channel via shared links. In: 28th USENIX Security Symposium (USENIX Security 19), pp. 19\u201336 (2019a)"},{"key":"3537_CR6","unstructured":"Cao, Y., Han, L., Zhao, X., Pan, X.: AccFlow: defending against the low-rate TCP DoS attack in wireless sensor networks (2019b). arXiv preprint arXiv:190306394"},{"key":"3537_CR7","doi-asserted-by":"publisher","first-page":"32853","DOI":"10.1109\/ACCESS.2019.2903816","volume":"7","author":"H Chen","year":"2019","unstructured":"Chen, H., Meng, C., Shan, Z., Fu, Z., Bhargava, B.K.: A novel low-rate denial of service attack detection approach in Zigbee wireless sensor network by combining Hilbert\u2013Huang transformation and trust evaluation. IEEE Access 7, 32853\u201332866 (2019)","journal-title":"IEEE Access"},{"key":"3537_CR8","doi-asserted-by":"crossref","unstructured":"Chen, Y., Hwang, K., Kwok, Y.K.: Filtering of shrew DDoS attacks in frequency domain. In: The IEEE Conference on Local Computer Networks 30th Anniversary (LCN\u201905) l, p. 8. IEEE (2005)","DOI":"10.1109\/LCN.2005.70"},{"key":"3537_CR9","doi-asserted-by":"publisher","first-page":"80","DOI":"10.1016\/j.comnet.2018.02.029","volume":"136","author":"Z Chen","year":"2018","unstructured":"Chen, Z., Yeo, C.K., Lee, B.S., Lau, C.T.: Power spectrum entropy based detection and mitigation of low-rate DoS attacks. Comput. Netw. 136, 80\u201394 (2018)","journal-title":"Comput. Netw."},{"key":"3537_CR10","doi-asserted-by":"publisher","first-page":"209","DOI":"10.1016\/j.jnca.2018.10.011","volume":"125","author":"S Deng","year":"2019","unstructured":"Deng, S., Gao, X., Lu, Z., Li, Z., Gao, X.: DoS vulnerabilities and mitigation strategies in software-defined networks. J. Netw. Comput. Appl. 125, 209\u2013219 (2019)","journal-title":"J. Netw. Comput. Appl."},{"key":"3537_CR11","doi-asserted-by":"crossref","unstructured":"Gong, D., Liu, L., Le, V., Saha, B., Mansour, M.R., Venkatesh, S., van den Hengel, A.: Memorizing normality to detect anomaly: memory-augmented deep autoencoder for unsupervised anomaly detection. In: Proceedings of the IEEE International Conference on Computer Vision, pp. 1705\u20131714 (2019)","DOI":"10.1109\/ICCV.2019.00179"},{"key":"3537_CR12","unstructured":"Guirguis, M., Bestavros, A., Matta, I.: Exploiting the transients of adaptation for ROQ attacks on Internet resources. In: Proceedings of the 12th IEEE International Conference on Network Protocols, 2004. ICNP 2004, pp. 184\u2013195. IEEE (2004)"},{"issue":"4","key":"3537_CR13","first-page":"930","volume":"20","author":"YX He","year":"2009","unstructured":"He, Y.X., Cao, Q., Liu, T., Han, Y., Xiong, Q.: A low-rate DoS detection method based on feature extraction using wavelet transform. J. Softw. 20(4), 930\u2013941 (2009)","journal-title":"J. Softw."},{"key":"3537_CR14","doi-asserted-by":"crossref","unstructured":"Kieu, T., Yang, B., Guo, C., Jensen, C.S.: Outlier detection for time series with recurrent autoencoder ensembles. In: 28th International Joint Conference on Artificial Intelligence (2019)","DOI":"10.24963\/ijcai.2019\/378"},{"key":"3537_CR15","doi-asserted-by":"crossref","unstructured":"Liu, H., Kim, M.S.: Real-time detection of stealthy DDoS attacks using time-series decomposition. In: 2010 IEEE International Conference on Communications, pp. 1\u20136. IEEE (2010)","DOI":"10.1109\/ICC.2010.5501975"},{"key":"3537_CR16","unstructured":"Luo, X., Chang, R.K.: On a new class of pulsing denial-of-service attacks and the defense. In: NDSS (2005)"},{"key":"3537_CR17","doi-asserted-by":"publisher","first-page":"107792","DOI":"10.1016\/j.comnet.2020.107792","volume":"186","author":"Rios V de Miranda","year":"2021","unstructured":"de Miranda, Rios V., In\u00e1cio, P.R., Magoni, D., Freire, M.M.: Detection of reduction-of-quality DDoS attacks using fuzzy logic and machine learning algorithms. Comput. Netw. 186, 107792 (2021)","journal-title":"Comput. Netw."},{"key":"3537_CR18","doi-asserted-by":"crossref","unstructured":"Nguyen, T.N., Meunier, J.: Anomaly detection in video sequence with appearance-motion correspondence. In: Proceedings of the IEEE International Conference on Computer Vision, pp. 1273\u20131283 (2019)","DOI":"10.1109\/ICCV.2019.00136"},{"issue":"1","key":"3537_CR19","doi-asserted-by":"publisher","first-page":"423","DOI":"10.1007\/s10586-018-2181-4","volume":"22","author":"R Rajendran","year":"2019","unstructured":"Rajendran, R., Kumar, S.S., Palanichamy, Y., Arputharaj, K.: Detection of DoS attacks in cloud networks using intelligent rule based classification system. Clust. Comput. 22(1), 423\u2013434 (2019)","journal-title":"Clust. Comput."},{"issue":"1","key":"3537_CR20","doi-asserted-by":"publisher","first-page":"6","DOI":"10.1186\/s13673-020-0210-9","volume":"10","author":"D Tang","year":"2020","unstructured":"Tang, D., Dai, R., Tang, L., Li, X.: Low-rate DoS attack detection based on two-step cluster analysis and UTR analysis. Hum. Centric Comput. Inf. Sci. 10(1), 6 (2020)","journal-title":"Hum. Centric Comput. Inf. Sci."},{"key":"3537_CR21","doi-asserted-by":"publisher","first-page":"102145","DOI":"10.1016\/j.adhoc.2020.102145","volume":"102","author":"D Tang","year":"2020","unstructured":"Tang, D., Man, J., Tang, L., Feng, Y., Yang, Q.: WEDMS: an advanced mean shift clustering algorithm for LDoS attacks detection. Ad Hoc Netw. 102, 102145 (2020)","journal-title":"Ad Hoc Netw."},{"key":"3537_CR22","doi-asserted-by":"publisher","first-page":"347","DOI":"10.1016\/j.future.2019.12.034","volume":"106","author":"D Tang","year":"2020","unstructured":"Tang, D., Tang, L., Dai, R., Chen, J., Li, X., Rodrigues, J.J.: MF-Adaboost: LDoS attack detection based on multi-features and improved Adaboost. Future Gener. Comput. Syst. 106, 347\u2013359 (2020)","journal-title":"Future Gener. Comput. Syst."},{"issue":"1","key":"3537_CR23","doi-asserted-by":"publisher","first-page":"428","DOI":"10.1109\/JSAC.2021.3126053","volume":"40","author":"D Tang","year":"2021","unstructured":"Tang, D., Yan, Y., Zhang, S., Chen, J., Qin, Z.: Performance and features: mitigating the low-rate TCP-targeted DoS attack via SDN. IEEE J. Sel. Areas Commun. 40(1), 428\u2013444 (2021)","journal-title":"IEEE J. Sel. Areas Commun."},{"issue":"4","key":"3537_CR24","first-page":"1","volume":"24","author":"P Verma","year":"2021","unstructured":"Verma, P., Tapaswi, S., Godfrey, W.W.: A request aware module using CS-IDR to reduce VM level collateral damages caused by DDoS attack in cloud environment. Clust. Comput. 24(4), 1\u201317 (2021)","journal-title":"Clust. Comput."},{"issue":"5","key":"3537_CR25","doi-asserted-by":"publisher","first-page":"559","DOI":"10.1109\/TDSC.2015.2443807","volume":"13","author":"Z Wu","year":"2015","unstructured":"Wu, Z., Zhang, L., Yue, M.: Low-rate DoS attacks detection based on network multifractal. IEEE Trans. Depend. Secure Comput. 13(5), 559\u2013567 (2015)","journal-title":"IEEE Trans. Depend. Secure Comput."},{"issue":"6","key":"3537_CR26","doi-asserted-by":"publisher","first-page":"98","DOI":"10.1109\/CC.2017.7961367","volume":"14","author":"Z Wu","year":"2017","unstructured":"Wu, Z., Wang, M., Yan, C., Yue, M.: Low-rate DoS attack flows filtering based on frequency spectral analysis. China Commun. 14(6), 98\u2013112 (2017)","journal-title":"China Commun."},{"key":"3537_CR27","doi-asserted-by":"publisher","first-page":"64","DOI":"10.1016\/j.comnet.2019.01.031","volume":"152","author":"Z Wu","year":"2019","unstructured":"Wu, Z., Pan, Q., Yue, M., Liu, L.: Sequence alignment detection of TCP-targeted synchronous low-rate DoS attacks. Comput. Netw. 152, 64\u201377 (2019)","journal-title":"Comput. Netw."},{"issue":"3","key":"3537_CR28","doi-asserted-by":"publisher","first-page":"1222","DOI":"10.1109\/TNET.2018.2819507","volume":"26","author":"K Xie","year":"2018","unstructured":"Xie, K., Li, X., Wang, X., Cao, J., Xie, G., Wen, J., Zhang, D., Qin, Z.: On-line anomaly detection with high accuracy. IEEE\/ACM Trans. Netw. 26(3), 1222\u20131235 (2018)","journal-title":"IEEE\/ACM Trans. Netw."},{"key":"3537_CR29","doi-asserted-by":"crossref","unstructured":"Xu, H., Chen, W., Zhao, N., Li, Z., Bu, J., Li, Z., Liu, Y., Zhao, Y., Pei, D., Feng, Y., et al.: (2018) Unsupervised anomaly detection via variational auto-encoder for seasonal KPIs in web applications. In: Proceedings of the World Wide Web Conference, pp. 187\u2013196 (2018)","DOI":"10.1145\/3178876.3185996"},{"key":"3537_CR30","doi-asserted-by":"publisher","first-page":"312","DOI":"10.1016\/j.ins.2018.04.082","volume":"454","author":"H Yuan","year":"2018","unstructured":"Yuan, H., Xia, Y.: Resilient strategy design for cyber\u2013physical system under DoS attack over a multi-channel framework. Inf. Sci. 454, 312\u2013327 (2018)","journal-title":"Inf. Sci."},{"issue":"5","key":"3537_CR31","first-page":"2285","volume":"18","author":"M Yue","year":"2019","unstructured":"Yue, M., Wang, M., Wu, Z.: Low-high burst: a double potency varying-RTT based full-buffer shrew attack model. IEEE Trans. Depend. Secure Comput. 18(5), 2285\u20132300 (2019)","journal-title":"IEEE Trans. Depend. Secure Comput."},{"issue":"3","key":"3537_CR32","doi-asserted-by":"publisher","first-page":"285","DOI":"10.1049\/iet-ifs.2018.5097","volume":"13","author":"M Yue","year":"2019","unstructured":"Yue, M., Wu, Z., Wang, J.: Detecting LDoS attack bursts based on queue distribution. IET Inf. Secur. 13(3), 285\u2013292 (2019)","journal-title":"IET Inf. Secur."},{"key":"3537_CR33","doi-asserted-by":"publisher","first-page":"4950","DOI":"10.1109\/TIFS.2021.3117066","volume":"16","author":"M Yue","year":"2021","unstructured":"Yue, M., Li, J., Wu, Z., Wang, M.: High-potency models of LDoS attack against cubic+ red. IEEE Trans. Inf. Forensics Secur. 16, 4950\u20134965 (2021)","journal-title":"IEEE Trans. Inf. Forensics Secur."},{"issue":"4","key":"3537_CR34","doi-asserted-by":"publisher","first-page":"e2993","DOI":"10.1002\/dac.2993","volume":"30","author":"X Zhang","year":"2017","unstructured":"Zhang, X., Wu, Z., Chen, J., Yue, M.: An adaptive KPCA approach for detecting LDoS attack. Int. J. Commun. Syst. 30(4), e2993 (2017)","journal-title":"Int. J. Commun. Syst."},{"issue":"4","key":"3537_CR35","doi-asserted-by":"publisher","first-page":"402","DOI":"10.1016\/j.cose.2012.03.002","volume":"31","author":"W Zhi-Jun","year":"2012","unstructured":"Zhi-Jun, W., Hai-Tao, Z., Ming-Hua, W., Bao-Song, P.: MSABMS-based approach of detecting LDoS attack. Comput. Secur. 31(4), 402\u2013417 (2012)","journal-title":"Comput. Secur."},{"issue":"8","key":"3537_CR36","first-page":"1590","volume":"36","author":"W Zhijun","year":"2008","unstructured":"Zhijun, W., Meng, Y.: Detection of LDDoS attack based on Kalman filtering. Acta Electron. Sin. 36(8), 1590\u20131594 (2008)","journal-title":"Acta Electron. Sin."},{"key":"3537_CR37","doi-asserted-by":"publisher","first-page":"43920","DOI":"10.1109\/ACCESS.2020.2976609","volume":"8","author":"W Zhijun","year":"2020","unstructured":"Zhijun, W., Wenjing, L., Liang, L., Meng, Y.: Low-rate DoS attacks, detection, defense, and challenges: a survey. IEEE Access 8, 43920\u201343943 (2020)","journal-title":"IEEE Access"}],"container-title":["Cluster Computing"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s10586-022-03537-y.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/article\/10.1007\/s10586-022-03537-y\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s10586-022-03537-y.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,9,16]],"date-time":"2024-09-16T13:03:48Z","timestamp":1726491828000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/s10586-022-03537-y"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2022,1,17]]},"references-count":37,"journal-issue":{"issue":"2","published-print":{"date-parts":[[2022,4]]}},"alternative-id":["3537"],"URL":"https:\/\/doi.org\/10.1007\/s10586-022-03537-y","relation":{},"ISSN":["1386-7857","1573-7543"],"issn-type":[{"value":"1386-7857","type":"print"},{"value":"1573-7543","type":"electronic"}],"subject":[],"published":{"date-parts":[[2022,1,17]]},"assertion":[{"value":"9 April 2021","order":1,"name":"received","label":"Received","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"4 January 2022","order":2,"name":"revised","label":"Revised","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"5 January 2022","order":3,"name":"accepted","label":"Accepted","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"17 January 2022","order":4,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}}]}}