{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,4,22]],"date-time":"2026-04-22T19:37:59Z","timestamp":1776886679683,"version":"3.51.2"},"reference-count":27,"publisher":"IEEE","content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2014,4]]},"DOI":"10.1109\/infocom.2014.6848073","type":"proceedings-article","created":{"date-parts":[[2014,7,29]],"date-time":"2014-07-29T15:18:13Z","timestamp":1406647093000},"page":"1393-1401","source":"Crossref","is-referenced-by-count":37,"title":["ProWord: An unsupervised approach to protocol feature word extraction"],"prefix":"10.1109","author":[{"given":"Zhuo","family":"Zhang","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Zhibin","family":"Zhang","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Patrick P. C.","family":"Lee","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Yunjie","family":"Liu","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Gaogang","family":"Xie","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"19","doi-asserted-by":"publisher","DOI":"10.1109\/TNET.2010.2044046"},{"key":"17","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-33338-5_18"},{"key":"18","doi-asserted-by":"publisher","DOI":"10.1109\/ICC.2007.231"},{"key":"15","article-title":"Botsniffer: Detecting botnet command and control channels in network traffic","author":"gu","year":"2008","journal-title":"Proc of NDSS"},{"key":"16","article-title":"Bothunter: Detecting malware infection through ids-driven dialog correlation","author":"gu","year":"2007","journal-title":"Proc of USENIX Security"},{"key":"13","article-title":"Inferring protocol state machine from network traces: A probabilistic approach","author":"wang","year":"2011","journal-title":"Proc of ACNS"},{"key":"14","doi-asserted-by":"publisher","DOI":"10.1109\/ICNP.2012.6459963"},{"key":"11","doi-asserted-by":"publisher","DOI":"10.1016\/j.comnet.2012.10.002"},{"key":"12","doi-asserted-by":"publisher","DOI":"10.1109\/NTMS.2011.5720662"},{"key":"21","doi-asserted-by":"publisher","DOI":"10.1145\/1064212.1064220"},{"key":"20","doi-asserted-by":"publisher","DOI":"10.1145\/1282380.1282386"},{"key":"22","doi-asserted-by":"publisher","DOI":"10.1007\/3-540-44816-0_20"},{"key":"23","doi-asserted-by":"publisher","DOI":"10.1145\/1008992.1009004"},{"key":"24","doi-asserted-by":"publisher","DOI":"10.1016\/B978-155860869-6\/50038-X"},{"key":"25","doi-asserted-by":"publisher","DOI":"10.1038\/sj.jors.2600523"},{"key":"26","year":"0","journal-title":"Bittorrent-delivering the World's Content"},{"key":"27","year":"0","journal-title":"Tong Hua Shun Financial Services Network"},{"key":"3","year":"0","journal-title":"SNORT network intrusion detection system"},{"key":"2","year":"0","journal-title":"Application layer packet classifier for linux"},{"key":"10","doi-asserted-by":"publisher","DOI":"10.1016\/j.comcom.2010.04.007"},{"key":"1","article-title":"Challenges in network application identification","author":"tongaonkar","year":"2012","journal-title":"Proceedings of USENIX LEET'08"},{"key":"7","doi-asserted-by":"publisher","DOI":"10.1109\/MNET.2012.6135854"},{"key":"6","year":"0","journal-title":"The Network Dump Data Displayer and Editor"},{"key":"5","year":"0","journal-title":"Wireshark Network protocol analyzer"},{"key":"4","year":"0","journal-title":"The Bro Network Security Monitor"},{"key":"9","article-title":"Discoverer: Automatic protocol reverse engineering from network traces","author":"cui","year":"2007","journal-title":"Proc of USENIX Security"},{"key":"8","doi-asserted-by":"publisher","DOI":"10.1109\/SURV.2009.090304"}],"event":{"name":"IEEE INFOCOM 2014 - IEEE Conference on Computer Communications","location":"Toronto, ON, Canada","start":{"date-parts":[[2014,4,27]]},"end":{"date-parts":[[2014,5,2]]}},"container-title":["IEEE INFOCOM 2014 - IEEE Conference on Computer Communications"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/6839150\/6847911\/06848073.pdf?arnumber=6848073","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2017,3,23]],"date-time":"2017-03-23T15:56:34Z","timestamp":1490284594000},"score":1,"resource":{"primary":{"URL":"http:\/\/ieeexplore.ieee.org\/document\/6848073\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2014,4]]},"references-count":27,"URL":"https:\/\/doi.org\/10.1109\/infocom.2014.6848073","relation":{},"subject":[],"published":{"date-parts":[[2014,4]]}}}