{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,1,19]],"date-time":"2026-01-19T10:59:08Z","timestamp":1768820348613,"version":"3.49.0"},"reference-count":34,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","issue":"4","license":[{"start":{"date-parts":[[2023,7,1]],"date-time":"2023-07-01T00:00:00Z","timestamp":1688169600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2023,7,1]],"date-time":"2023-07-01T00:00:00Z","timestamp":1688169600000},"content-version":"am","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2023,7,1]],"date-time":"2023-07-01T00:00:00Z","timestamp":1688169600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2023,7,1]],"date-time":"2023-07-01T00:00:00Z","timestamp":1688169600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"DOI":"10.13039\/501100008982","name":"National Science Foundation","doi-asserted-by":"publisher","award":["0644434"],"award-info":[{"award-number":["0644434"]}],"id":[{"id":"10.13039\/501100008982","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Trans. Dependable and Secure Comput."],"published-print":{"date-parts":[[2023,7,1]]},"DOI":"10.1109\/tdsc.2022.3194127","type":"journal-article","created":{"date-parts":[[2022,8,5]],"date-time":"2022-08-05T00:26:59Z","timestamp":1659659219000},"page":"3051-3063","source":"Crossref","is-referenced-by-count":3,"title":["On the Detection of Smart, Self-Propagating Internet Worms"],"prefix":"10.1109","volume":"20","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-5308-5672","authenticated-orcid":false,"given":"Jun","family":"Li","sequence":"first","affiliation":[{"name":"Department of Computer and Information Science, University of Oregon, Eugene, OR, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-2018-1406","authenticated-orcid":false,"given":"Devkishen","family":"Sisodia","sequence":"additional","affiliation":[{"name":"Department of Computer and Information Science, University of Oregon, Eugene, OR, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-0719-099X","authenticated-orcid":false,"given":"Shad","family":"Stafford","sequence":"additional","affiliation":[{"name":"Palo Alto Software, Eugene, OR, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref13","year":"2016"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-540-30143-1_4"},{"key":"ref34","first-page":"1093","article-title":"Understanding the mirai botnet","author":"antonakakis","year":"2017","journal-title":"Proc Usenix Secur Symp"},{"key":"ref15","first-page":"149","article-title":"How to own the internet in your spare time","author":"staniford","year":"2002","journal-title":"Proc Usenix Secur Symp"},{"key":"ref14","year":"2016"},{"key":"ref31","article-title":"WAND WITS: Auckland-IV trace data","year":"2001"},{"key":"ref30","article-title":"GLOWS: A high fidelity worm simulator","author":"stafford","year":"2006"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-540-73614-1_11"},{"key":"ref33","article-title":"Umass trace repository","year":"2008"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-540-74320-0_15"},{"key":"ref32","article-title":"LBNL\/ICSI enterprise tracing project","year":"2005"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1109\/COMST.2008.4483668"},{"key":"ref1","article-title":"State of IoT 2021","author":"sinha","year":"2021"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1145\/1102120.1102152"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1145\/1102120.1102150"},{"key":"ref19","first-page":"19","article-title":"Autograph: Toward automated, distributed worm signature detection","author":"kim","year":"2004","journal-title":"Proc Usenix Secur Symp"},{"key":"ref18","first-page":"3","article-title":"Dynamic taint analysis for automatic detection, analysis, and signature generation of exploits on commodity software","author":"newsome","year":"2005","journal-title":"Proc Symp Network and Distributed System Security"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-15512-3_3"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2020.102151"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1145\/2420950.2420969"},{"key":"ref25","article-title":"BotMiner: Clustering analysis of network traffic for protocol- and structure-independent botnet detection","author":"gu","year":"2008","journal-title":"Proc Usenix Secur Symp"},{"key":"ref20","first-page":"4","article-title":"Automated worm fingerprinting","author":"singh","year":"2004","journal-title":"Proc Symp Oper Syst Des Implementation"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2020.3023434"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1109\/ICNP.2007.4375847"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.1155\/2019\/8469410"},{"key":"ref27","first-page":"29","article-title":"Machine learning DDoS detection for consumer IoT devices","author":"doshi","year":"2018","journal-title":"Proc Secur Privacy Workshops"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2019.00013"},{"key":"ref8","first-page":"136","article-title":"Worm detection, early warning and response based on local victim information","author":"gu","year":"2004","journal-title":"Proc Comput Secur Appl Conf"},{"key":"ref7","first-page":"3505","article-title":"The circle of life: A large-scale study of the IoT malware lifecycle","author":"alrawi","year":"2021","journal-title":"Proc Usenix Secur Symp"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1109\/DSN.2006.6"},{"key":"ref4","article-title":"A decade of hacking","author":"cimpanu","year":"2019"},{"key":"ref3","article-title":"Why some computer viruses refuse to die","author":"ward","year":"2018"},{"key":"ref6","article-title":"NETSCOUT threat intelligence report: DDoS in a time of pandemic","author":"hummel","year":"2021"},{"key":"ref5","article-title":"A decade of malware","author":"cimpanu","year":"2019"}],"container-title":["IEEE Transactions on Dependable and Secure Computing"],"original-title":[],"link":[{"URL":"https:\/\/ieeexplore.ieee.org\/ielam\/8858\/10177761\/9846892-aam.pdf","content-type":"application\/pdf","content-version":"am","intended-application":"syndication"},{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/8858\/10177761\/09846892.pdf?arnumber=9846892","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2023,8,1]],"date-time":"2023-08-01T18:35:09Z","timestamp":1690914909000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/9846892\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2023,7,1]]},"references-count":34,"journal-issue":{"issue":"4"},"URL":"https:\/\/doi.org\/10.1109\/tdsc.2022.3194127","relation":{},"ISSN":["1545-5971","1941-0018","2160-9209"],"issn-type":[{"value":"1545-5971","type":"print"},{"value":"1941-0018","type":"electronic"},{"value":"2160-9209","type":"electronic"}],"subject":[],"published":{"date-parts":[[2023,7,1]]}}}