{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,8,5]],"date-time":"2026-08-05T05:06:17Z","timestamp":1785906377934,"version":"3.56.0"},"reference-count":28,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","license":[{"start":{"date-parts":[[2021,1,1]],"date-time":"2021-01-01T00:00:00Z","timestamp":1609459200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2021,1,1]],"date-time":"2021-01-01T00:00:00Z","timestamp":1609459200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2021,1,1]],"date-time":"2021-01-01T00:00:00Z","timestamp":1609459200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"DOI":"10.13039\/501100008628","name":"Ministry of Electronics and Information technology","doi-asserted-by":"publisher","id":[{"id":"10.13039\/501100008628","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Trans.Inform.Forensic Secur."],"published-print":{"date-parts":[[2021]]},"DOI":"10.1109\/tifs.2020.3017928","type":"journal-article","created":{"date-parts":[[2020,8,19]],"date-time":"2020-08-19T20:00:50Z","timestamp":1597867250000},"page":"617-626","source":"Crossref","is-referenced-by-count":49,"title":["Modelling Behavioural Dynamics for Asymmetric Application Layer DDoS Detection"],"prefix":"10.1109","volume":"16","author":[{"ORCID":"https:\/\/orcid.org\/0000-0003-3965-0118","authenticated-orcid":false,"given":"Amit","family":"Praseed","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-8359-1330","authenticated-orcid":false,"given":"P. Santhi","family":"Thilagam","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"263","reference":[{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1109\/ICC.2014.6883402"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.4304\/jsw.9.4.985-990"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1109\/HASE.2015.28"},{"key":"ref13","first-page":"393","article-title":"Rampart: Protecting Web applications from CPU-exhaustion denial-of-service attacks","author":"meng","year":"2018","journal-title":"Proc 27th USENIX Security Symp (USENIX Security)"},{"key":"ref14","first-page":"693","article-title":"Detecting asymmetric application-layer denial-of-service attacks in-flight with finelame","author":"demoulin","year":"2019","journal-title":"Proc of USENIX Annual Technical Conf (USENIX)"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1109\/COMST.2018.2870658"},{"key":"ref16","first-page":"99","article-title":"Model-based performance testing of Web services using probabilistic timed automata","author":"abbors","year":"2013","journal-title":"Proc WEBIST"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1109\/CNSI.2011.66"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1145\/2568225.2568234"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1016\/S0304-3975(01)00215-8"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.1109\/ICC.2009.5199191"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2019.2950121"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1109\/ICICICT1.2017.8342626"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1109\/TNET.2008.926503"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1109\/TNET.2008.923716"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1016\/j.cosrev.2017.07.003"},{"key":"ref8","first-page":"1","article-title":"Web DDoS detection schemes based on measuring user&#x2019;s access behavior with large deviation","author":"wang","year":"2011","journal-title":"Proc IEEE Global Telecommun Conf (GLOBECOM)"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1109\/TNET.2008.925628"},{"key":"ref2","year":"2019","journal-title":"Netscout Arbor&#x2019;s 13th Annual Worldwide Infrastructure Security Report"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1016\/j.compeleceng.2012.07.004"},{"key":"ref1","year":"2016","journal-title":"Insurer Defeats Application Layer DDoS"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1145\/1773394.1773400"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1145\/3097983.3098144"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1109\/INM.2011.5990537"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1109\/ICMLA.2014.80"},{"key":"ref23","article-title":"Threshold selection in univariate extreme value analysis","author":"schneider","year":"2019","journal-title":"arXiv 1903 02517"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1109\/IAS.2009.310"},{"key":"ref25","author":"hancock","year":"2017","journal-title":"Batch Updates for Simple Statistics"}],"container-title":["IEEE Transactions on Information Forensics and Security"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/10206\/9151439\/09171310.pdf?arnumber=9171310","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,5,10]],"date-time":"2022-05-10T14:52:42Z","timestamp":1652194362000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/9171310\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2021]]},"references-count":28,"URL":"https:\/\/doi.org\/10.1109\/tifs.2020.3017928","relation":{},"ISSN":["1556-6013","1556-6021"],"issn-type":[{"value":"1556-6013","type":"print"},{"value":"1556-6021","type":"electronic"}],"subject":[],"published":{"date-parts":[[2021]]}}}