{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,10,27]],"date-time":"2025-10-27T20:24:53Z","timestamp":1761596693499},"reference-count":23,"publisher":"Elsevier BV","issue":"12","license":[{"start":{"date-parts":[[2001,7,1]],"date-time":"2001-07-01T00:00:00Z","timestamp":993945600000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.elsevier.com\/tdm\/userlicense\/1.0\/"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["Computer Communications"],"published-print":{"date-parts":[[2001,7]]},"DOI":"10.1016\/s0140-3664(00)00364-9","type":"journal-article","created":{"date-parts":[[2002,7,25]],"date-time":"2002-07-25T16:27:39Z","timestamp":1027614459000},"page":"1202-1212","source":"Crossref","is-referenced-by-count":61,"title":["Intrusion detection through learning behavior model"],"prefix":"10.1016","volume":"24","author":[{"given":"B","family":"Balajinath","sequence":"first","affiliation":[]},{"given":"S.V","family":"Raghavan","sequence":"additional","affiliation":[]}],"member":"78","reference":[{"key":"10.1016\/S0140-3664(00)00364-9_BIB1","unstructured":"A.K. Ghosh, A. Schwartzbard, M. Schatz, Learning program behavior for intrusion detection, USENIX Workshop on Intrusion Detection and Network Monitoring, California, USA, April 1999."},{"key":"10.1016\/S0140-3664(00)00364-9_BIB2","unstructured":"B.D. Davison, H. Hirsh, Experiment in UNIX command prediction, Proceedings of the 14th National Conference on Artificial Intelligence, Rhodes Island, USA, July 1997, AAAI Press."},{"key":"10.1016\/S0140-3664(00)00364-9_BIB3","unstructured":"W. Lee, C. Park, S.J. Stolfo, Toward automatic intrusion detection using NFR, USENIX First workshop on Intrusion Detection and Network Monitoring, California, USA, April 1999."},{"issue":"2","key":"10.1016\/S0140-3664(00)00364-9_BIB4","doi-asserted-by":"crossref","first-page":"222","DOI":"10.1109\/TSE.1987.232894","article-title":"An intrusion-detection model","volume":"13","author":"Denning","year":"1987","journal-title":"IEEE Transactions on Software Engineering"},{"key":"10.1016\/S0140-3664(00)00364-9_BIB5","unstructured":"J. Frank, Machine learning and intrusion detection: current and future directions, Proceedings of the 17th National Computer Security Conference, MD, USA, October 1994."},{"key":"10.1016\/S0140-3664(00)00364-9_BIB6","series-title":"Genetic Algorithms in Search, Optimization, and Machine Learning","author":"Goldberg","year":"1999"},{"issue":"12","key":"10.1016\/S0140-3664(00)00364-9_BIB7","doi-asserted-by":"crossref","first-page":"1126","DOI":"10.1016\/S0140-3664(99)00075-4","article-title":"Bandwidth-demand prediction in virtual path in ATM networks using genetic algorithms","volume":"22","author":"Swaminathan","year":"1999","journal-title":"Computer Communication"},{"key":"10.1016\/S0140-3664(00)00364-9_BIB8","doi-asserted-by":"crossref","first-page":"805","DOI":"10.1016\/S1389-1286(98)00017-6","article-title":"Toward a taxonomy of intrusion detection systems","volume":"31","author":"Debar","year":"1999","journal-title":"Computer Networks"},{"key":"10.1016\/S0140-3664(00)00364-9_BIB9","series-title":"Applying Genetic Programming to Intrusion Detection, Technical Report FS-95-01","author":"Crosbie","year":"1995"},{"key":"10.1016\/S0140-3664(00)00364-9_BIB10","series-title":"Intrusion detection in neural networks","author":"Ryan","year":"1998"},{"key":"10.1016\/S0140-3664(00)00364-9_BIB11","doi-asserted-by":"crossref","unstructured":"N. Swaminathan, S.V. Raghavan, Intelligent prefetch in WWW using client behavior characterization, Proceedings of the Eighth International Symposium on Modelling, Analysis and Simulation of Computer and Telecommunication Systems (MASCOT), Sanfrancisco, USA, 2000, pp. 13\u201319.","DOI":"10.1109\/MASCOT.2000.876424"},{"key":"10.1016\/S0140-3664(00)00364-9_BIB12","doi-asserted-by":"crossref","unstructured":"P. Proctor, Audit reduction and misuse detection in heterogeneous environments: framework and applications, 10th Annual Computer Security Applications Conference, Florida, USA, December 1994, pp. 117\u2013125.","DOI":"10.1109\/CSAC.1994.367315"},{"issue":"3","key":"10.1016\/S0140-3664(00)00364-9_BIB13","doi-asserted-by":"crossref","DOI":"10.1109\/32.372146","article-title":"State transition analysis: a rule based intrusion detection approach","volume":"21","author":"Ilgun","year":"1995","journal-title":"IEEE Transaction on Software Engineering"},{"key":"10.1016\/S0140-3664(00)00364-9_BIB14","unstructured":"W. Lee, S.J. Stolfo, K.W. Mok, A data mining framework for building intrusion detection models, IEEE Symposium on Security and Privacy, Oakland, Canada, May 1999, pp. 120\u2013132."},{"key":"10.1016\/S0140-3664(00)00364-9_BIB15","unstructured":"W. Lee, S.J. Stolfo, P.K. Chan, Learning patterns from UNIX process execution traces for intrusion detection, Proceedings of AAAI Workshop on AI methods in Fraud and Risk Management, Rhodes Island, USA, July 1997, pp. 50\u201356."},{"key":"10.1016\/S0140-3664(00)00364-9_BIB16","unstructured":"W. Lee, S.J. Stolfo, K. Mok, Algorithms for mining system audit data, Fourth International Conference on Knowledge Discovery and Data Mining (KDD98), New York, USA, August 1998, pp. 66\u201372."},{"key":"10.1016\/S0140-3664(00)00364-9_BIB17","doi-asserted-by":"crossref","unstructured":"S.V. Raghavan, R. Kalyanakrishnan. On the classification of interactive user based on user behavior indices. ACM SIGMETRICS, Performance Evaluation Review, Texas, USA, vol. 13(2), 1985, pp. 40\u201348.","DOI":"10.1145\/317786.317809"},{"key":"10.1016\/S0140-3664(00)00364-9_BIB18","unstructured":"T. Lane, C.E. Brodley, An application of machine learning to anomaly detection, 20th National Information Systems Security Conference, MD, USA, October 1997, pp. 366\u2013377."},{"issue":"3","key":"10.1016\/S0140-3664(00)00364-9_BIB19","doi-asserted-by":"crossref","first-page":"295","DOI":"10.1145\/322510.322526","article-title":"Temporal sequence learning and data reduction for anomaly detection","volume":"2","author":"Lane","year":"1999","journal-title":"ACM Transactions on Information and System Security"},{"key":"10.1016\/S0140-3664(00)00364-9_BIB20","unstructured":"U. Lindqvist, P.A. Porras, Detecting computer and network misuse with the production-based expert system tool set, IEEE Symposium on Security and privacy, Oakland, Canada, May 1999."},{"key":"10.1016\/S0140-3664(00)00364-9_BIB21","doi-asserted-by":"crossref","unstructured":"V.N. Padmanabhan, J.C. Moghul. Using predictive prefetching to improve World Wide Web latency. ACM SIGCOMM, Computer Communication Review, vol. 36, 1996, pp. 22\u201336.","DOI":"10.1145\/235160.235164"},{"key":"10.1016\/S0140-3664(00)00364-9_BIB22","unstructured":"Netstalker Intrusion Detection System, available from the company's web site at http:\/\/www.haystack.com."},{"key":"10.1016\/S0140-3664(00)00364-9_BIB23","unstructured":"Net Ranger Intrusion Detection System, available from the company's web site at http:\/\/www.cisco.com\/warp\/public\/cc\/cisco\/mkt\/security\/nranger\/."}],"container-title":["Computer Communications"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/api.elsevier.com\/content\/article\/PII:S0140366400003649?httpAccept=text\/xml","content-type":"text\/xml","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/api.elsevier.com\/content\/article\/PII:S0140366400003649?httpAccept=text\/plain","content-type":"text\/plain","content-version":"vor","intended-application":"text-mining"}],"deposited":{"date-parts":[[2019,4,26]],"date-time":"2019-04-26T01:57:01Z","timestamp":1556243821000},"score":1,"resource":{"primary":{"URL":"https:\/\/linkinghub.elsevier.com\/retrieve\/pii\/S0140366400003649"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2001,7]]},"references-count":23,"journal-issue":{"issue":"12","published-print":{"date-parts":[[2001,7]]}},"alternative-id":["S0140366400003649"],"URL":"https:\/\/doi.org\/10.1016\/s0140-3664(00)00364-9","relation":{},"ISSN":["0140-3664"],"issn-type":[{"value":"0140-3664","type":"print"}],"subject":[],"published":{"date-parts":[[2001,7]]}}}