{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,4,13]],"date-time":"2026-04-13T20:35:30Z","timestamp":1776112530144,"version":"3.50.1"},"reference-count":38,"publisher":"Springer Science and Business Media LLC","issue":"2","license":[{"start":{"date-parts":[[2023,7,24]],"date-time":"2023-07-24T00:00:00Z","timestamp":1690156800000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2023,7,24]],"date-time":"2023-07-24T00:00:00Z","timestamp":1690156800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"funder":[{"DOI":"10.13039\/501100019550","name":"Scheme for Promotion of Academic and Research Collaboration","doi-asserted-by":"crossref","award":["SPARC\/2018-2019\/P448"],"award-info":[{"award-number":["SPARC\/2018-2019\/P448"]}],"id":[{"id":"10.13039\/501100019550","id-type":"DOI","asserted-by":"crossref"}]},{"DOI":"10.13039\/501100019550","name":"Scheme for Promotion of Academic and Research Collaboration","doi-asserted-by":"crossref","award":["SPARC\/2018-2019\/P448"],"award-info":[{"award-number":["SPARC\/2018-2019\/P448"]}],"id":[{"id":"10.13039\/501100019550","id-type":"DOI","asserted-by":"crossref"}]}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["J Supercomput"],"published-print":{"date-parts":[[2024,1]]},"DOI":"10.1007\/s11227-023-05453-3","type":"journal-article","created":{"date-parts":[[2023,7,24]],"date-time":"2023-07-24T12:02:31Z","timestamp":1690200151000},"page":"1788-1817","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":6,"title":["SlowTrack: detecting slow rate Denial of Service attacks against HTTP with behavioral parameters"],"prefix":"10.1007","volume":"80","author":[{"given":"Shaurya","family":"Sood","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Neminath","family":"Hubballi","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2023,7,24]]},"reference":[{"key":"5453_CR1","first-page":"103196","volume":"67","author":"R Ahmad","year":"2022","unstructured":"Ahmad R, Alsmadi I, Alhamdani W, Tawalbeh L (2022) A deep learning ensemble approach to detecting unknown network attacks. J Inf Secur Appl 67:103196","journal-title":"J Inf Secur Appl"},{"key":"5453_CR2","unstructured":"Akamai. https:\/\/www.akamai.com\/us\/en\/products\/security\/kona-ddos-defender.jsp.(accessed on 25-07-2021)"},{"key":"5453_CR3","doi-asserted-by":"crossref","unstructured":"Aqil A, Atya AOF, Jaeger T, Krishnamurthy SV, Levitt K, McDaniel PD, Rowe J, Swami A (2015) Detection of stealthy TCP-based dos attacks. In: MILCOM 2015 - 2015 IEEE Military Communications Conference, pp 348\u2013353","DOI":"10.1109\/MILCOM.2015.7357467"},{"key":"5453_CR4","doi-asserted-by":"crossref","unstructured":"Barbhuiya FA, Shiva R, Ratti R, Hubballi N, Biswas S, Sur A, Nandi S, Ramachandran V (2011) An active host-based detection mechanism for ARP-related attacks. In: Advances in Networks and Communications, pp 1\u201312","DOI":"10.1007\/978-3-642-17878-8_44"},{"key":"5453_CR5","doi-asserted-by":"crossref","unstructured":"Black S, Kim Y (2022) An overview on detection and prevention of application layer DDoS attacks. In: 2022 IEEE 12th Annual Computing and Communication Workshop and Conference (CCWC), pp 0791\u20130800","DOI":"10.1109\/CCWC54503.2022.9720741"},{"key":"5453_CR6","unstructured":"Calvert C, Kemp C, Khoshgoftaar TM, Najafabadi MM (2019) Detecting slow http post dos attacks using netflow features. In: FLAIRS\u201919: Proceedings of the Thirty-Second International Florida Artificial Intelligence Research Society Conference, pp 387\u2013390"},{"key":"5453_CR7","volume-title":"Model selection based on expected squared Hellinger distance","author":"X Cao","year":"2007","unstructured":"Cao X (2007) Model selection based on expected squared Hellinger distance. Colorado State University, Fort Collins"},{"key":"5453_CR8","unstructured":"CLOUDFLARE. https:\/\/blog.cloudflare.com\/ddos-attack-trends-for-2021-q3\/. (accessed on 31-12-2021)"},{"key":"5453_CR9","unstructured":"Core (2019) https:\/\/httpd.apache.org\/docs\/2.4\/mod\/core.html.(accessed on 8-8-2021)"},{"key":"5453_CR10","doi-asserted-by":"crossref","unstructured":"Dantas YG, Nigam V, Fonseca IE (2014) A selective defense for application layer DDoS attacks. In: JISIC\u201914: Proceedings of the IEEE Joint Intelligence and Security Informatics Conference, pp 75\u201382","DOI":"10.1109\/JISIC.2014.21"},{"key":"5453_CR11","doi-asserted-by":"crossref","unstructured":"Eid MSA, Aida H (2017) Secure double-layered defense against http-DDoS attacks. In: COMPSAC\u201917: Proceedings of the 41st Annual Computer Software and Applications Conference, vol\u00a02, pp 572\u2013577","DOI":"10.1109\/COMPSAC.2017.207"},{"issue":"8","key":"5453_CR12","doi-asserted-by":"publisher","first-page":"1738","DOI":"10.1587\/transinf.2016ICP0024","volume":"D","author":"MSA Eid","year":"2017","unstructured":"Eid MSA, Aida H (2017) Trustworthy DDoS defense: design, proof of concept implementation and testing. IEICE Trans Inf Syst D(8):1738\u20131750","journal-title":"IEICE Trans Inf Syst"},{"issue":"12","key":"5453_CR13","doi-asserted-by":"publisher","first-page":"544","DOI":"10.3390\/info11120544","volume":"11","author":"VD Faria","year":"2020","unstructured":"Faria VD, Silva CA, Vieira GD, Mascarenhas DM (2020) SDToW: a slowloris detecting tool for WMNs. Information 11(12):544","journal-title":"Information"},{"key":"5453_CR14","doi-asserted-by":"crossref","unstructured":"Gogoi B, Ahmed T (2022) Http low and slow DoS attack detection using LSTM based deep learning. In: 2022 IEEE 19th India Council International Conference (INDICON), pp 1\u20136","DOI":"10.1109\/INDICON56171.2022.10039772"},{"issue":"3","key":"5453_CR15","doi-asserted-by":"publisher","first-page":"730","DOI":"10.1109\/TIFS.2016.2632071","volume":"12","author":"D Golait","year":"2017","unstructured":"Golait D, Hubballi N (2017) Detecting anomalous behavior in VoIP systems: a siscrete event system modeling. IEEE Trans Inf Forensics Secur 12(3):730\u2013745","journal-title":"IEEE Trans Inf Forensics Secur"},{"key":"5453_CR16","doi-asserted-by":"crossref","unstructured":"Hirakawa T, Ogura K, Bista BB, Takata T (2016) A defense method against distributed slow http dos attack. In: NBiS\u201916: Proceedings of the 19th International Conference on Network-Based Information Systems, pp 152\u2013158","DOI":"10.1109\/NBiS.2016.58"},{"key":"5453_CR17","doi-asserted-by":"crossref","unstructured":"Hubballi N, Biswas S, Nandi S (2010) Layered higher order n-grams for hardening payload based anomaly intrusion detection. In: ARES\u201910: Proceedings of the International Conference on Availability, Reliability and Security, pp 321\u2013326","DOI":"10.1109\/ARES.2010.31"},{"issue":"1","key":"5453_CR18","doi-asserted-by":"publisher","first-page":"119","DOI":"10.1016\/j.isatra.2010.08.003","volume":"50","author":"N Hubballi","year":"2011","unstructured":"Hubballi N, Biswas S, Roopa S, Ratti R, Nandi S (2011) Lan attack detection using discrete event systems. ISA Trans 50(1):119\u2013130","journal-title":"ISA Trans"},{"issue":"C","key":"5453_CR19","doi-asserted-by":"publisher","first-page":"387","DOI":"10.1016\/j.cose.2016.10.002","volume":"65","author":"N Hubballi","year":"2017","unstructured":"Hubballi N, Tripathi N (2017) A closer look into DHCP starvation attack in wireless networks. Comput Secur 65(C):387\u2013404","journal-title":"Comput Secur"},{"key":"5453_CR20","first-page":"32","volume":"35","author":"N Hubballi","year":"2017","unstructured":"Hubballi N, Tripathi N (2017) An event based technique for detecting spoofed IP packets. J Inf Secur Appl 35:32\u201343","journal-title":"J Inf Secur Appl"},{"key":"5453_CR21","unstructured":"IMPERVA.https:\/\/www.imperva.com\/learn\/ddos\/dns-flood\/.(accessed on 08-08-2021)"},{"key":"5453_CR22","doi-asserted-by":"crossref","unstructured":"Jia Q, Wang H, Fleck D, Li F, Stavrou A, Powell W (2014) Catch me if you can: a cloud-enabled DDoS defense. In: DSN\u201914: Proceedings of the 44th Annual IEEE\/IFIP International Conference on Dependable Systems and Networks, pp 264\u2013275","DOI":"10.1109\/DSN.2014.35"},{"key":"5453_CR23","unstructured":"A. JMeter. https:\/\/jmeter.apache.org\/.(accessed on 25-07-2021)"},{"key":"5453_CR24","doi-asserted-by":"crossref","unstructured":"Kumari W, McPherson D (2009). Remote triggered black hole filtering with unicast reverse path forwarding (uRPF) (RFC 5635)","DOI":"10.17487\/rfc5635"},{"key":"5453_CR25","unstructured":"Linux K. https:\/\/www.kali.org\/.(accessed on 01-01-2022)"},{"key":"5453_CR26","doi-asserted-by":"crossref","unstructured":"Lukaseder T, Hunt A, Stehle C, Wagner D, Van Der\u00a0Heijden R, Kargl F (2017) An extensible host-agnostic framework for SDN-assisted DDoS-mitigation. In: LCN\u201917: Proceedings of the 42nd Conference on Local Computer Networks, pp 619\u2013622","DOI":"10.1109\/LCN.2017.103"},{"key":"5453_CR27","unstructured":"mod_antiloris (2013) https:\/\/sourceforge.net\/projects\/mod-antiloris\/.(accessed on 8-8-2021)"},{"key":"5453_CR28","unstructured":"mod_limitipconn (2002) http:\/\/dominia.org\/djao\/limitipconn.html. (accessed on 8-8-2021)"},{"key":"5453_CR29","unstructured":"mod_reqtimeout (2019) https:\/\/httpd.apache.org\/docs\/trunk\/mod\/mod_reqtimeout.html.(accessed on 8-8-2022)https:\/\/httpd.apache.org\/docs\/trunk\/mod\/mod_reqtimeout.html.(accessed on 8-8-2022)"},{"key":"5453_CR30","doi-asserted-by":"crossref","unstructured":"Orozco-Fonseca D, Ulate-Caballero BA (2021) Virtual machine rotation for mitigation of a slowloris attack. In: JoCICI\u201921: Proceedings of the IEEE V Jornadas Costarricenses de Investigaci\u00f3n en Computaci\u00f3n e Inform\u00e1tica (JoCICI), pp 1\u20135","DOI":"10.1109\/JoCICI54528.2021.9794349"},{"key":"5453_CR31","doi-asserted-by":"crossref","unstructured":"Shaik TA, Kataoka K (2021) capsAEUL: Slow http DoS attack detection using autoencoders through unsupervised learning. In: AINTEC \u201921: Proceedings of the Asian Internet Engineering Conference, pp 49\u201355. Association for Computing Machinery","DOI":"10.1145\/3497777.3498550"},{"key":"5453_CR32","doi-asserted-by":"crossref","unstructured":"Sikora M, Gerlich T, Malina L (2019) On detection and mitigation of slow rate denial of service attacks. In: 2019 11th International Congress on Ultra Modern Telecommunications and Control Systems and Workshops (ICUMT), pp 1\u20135","DOI":"10.1109\/ICUMT48472.2019.8970844"},{"key":"5453_CR33","doi-asserted-by":"crossref","unstructured":"Sood S, Saikia M, Hubballi N (2021) Wip: Slow rate http attack detection with behavioral parameters. In: ICISS\u201921: Proceedings of the 17th Conference on Information Systems Security, pp 26\u201337","DOI":"10.1007\/978-3-030-92571-0_2"},{"key":"5453_CR34","volume-title":"Introduction to data mining","author":"P-N Tan","year":"2018","unstructured":"Tan P-N, Steinbach M, Karpatne A, Kumar V (2018) Introduction to data mining, 2nd edn. Pearson, London","edition":"2"},{"issue":"C","key":"5453_CR35","doi-asserted-by":"publisher","first-page":"255","DOI":"10.1016\/j.cose.2017.09.009","volume":"72","author":"N Tripathi","year":"2018","unstructured":"Tripathi N, Hubballi N (2018) Slow rate Denial of service attacks against HTTP\/2 and detection. Comput Secur 72(C):255\u2013272","journal-title":"Comput Secur"},{"key":"5453_CR36","doi-asserted-by":"publisher","first-page":"102","DOI":"10.1016\/j.cose.2020.102135","volume":"102","author":"N Tripathi","year":"2021","unstructured":"Tripathi N, Hubballi N (2021) Preventing time synchronization in NTP broadcast mode. Comput Secur 102:102\u2013135","journal-title":"Comput Secur"},{"key":"5453_CR37","unstructured":"Weka. https:\/\/www.cs.waikato.ac.nz\/ml\/weka\/.(accessed on 31-01-2021)"},{"key":"5453_CR38","doi-asserted-by":"publisher","first-page":"24694","DOI":"10.1109\/ACCESS.2018.2831284","volume":"6","author":"D Yin","year":"2018","unstructured":"Yin D, Zhang L, Yang K (2018) A DDoS attack detection and mitigation with software-defined internet of things framework. IEEE Access 6:24694\u201324705","journal-title":"IEEE Access"}],"container-title":["The Journal of Supercomputing"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s11227-023-05453-3.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/article\/10.1007\/s11227-023-05453-3\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s11227-023-05453-3.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,1,15]],"date-time":"2024-01-15T09:31:56Z","timestamp":1705311116000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/s11227-023-05453-3"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2023,7,24]]},"references-count":38,"journal-issue":{"issue":"2","published-print":{"date-parts":[[2024,1]]}},"alternative-id":["5453"],"URL":"https:\/\/doi.org\/10.1007\/s11227-023-05453-3","relation":{},"ISSN":["0920-8542","1573-0484"],"issn-type":[{"value":"0920-8542","type":"print"},{"value":"1573-0484","type":"electronic"}],"subject":[],"published":{"date-parts":[[2023,7,24]]},"assertion":[{"value":"29 May 2023","order":1,"name":"accepted","label":"Accepted","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"24 July 2023","order":2,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}},{"order":1,"name":"Ethics","group":{"name":"EthicsHeading","label":"Declarations"}},{"value":"Authors do not have any potential conflicts of interest with any one with the material included in this paper.","order":2,"name":"Ethics","group":{"name":"EthicsHeading","label":"Conflict of interest"}},{"value":"In the research work furnished in this paper, there were no human participants and animals involved. All the authors have given consent for publishing this paper.","order":3,"name":"Ethics","group":{"name":"EthicsHeading","label":"Humans or animal participants"}}]}}