{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,6,19]],"date-time":"2025-06-19T04:26:15Z","timestamp":1750307175030,"version":"3.41.0"},"reference-count":4,"publisher":"Association for Computing Machinery (ACM)","issue":"3","license":[{"start":{"date-parts":[[2011,11,29]],"date-time":"2011-11-29T00:00:00Z","timestamp":1322524800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":["SIGMOBILE Mob. Comput. Commun. Rev."],"published-print":{"date-parts":[[2011,11,29]]},"abstract":"<jats:p>New approaches for detecting attack traces in network traffic are needed for handheld devices that commonly own limited resources, but multiple, heterogeneous network interfaces. In this paper, we report on early results for statistical traffic analysis based on the Shannon Entropy. Unlike previous work, our time-frequency analysis extracts the non-stationary properties of entropy signals. From this context-adaptive technique, we obtain a clear signature of binary instructions and can also detect embedded shellcode.<\/jats:p>","DOI":"10.1145\/2073290.2073303","type":"journal-article","created":{"date-parts":[[2011,12,6]],"date-time":"2011-12-06T19:05:23Z","timestamp":1323198323000},"page":"47-48","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":2,"title":["WiSec 2011 poster"],"prefix":"10.1145","volume":"15","author":[{"given":"Thomas C.","family":"Schmidt","sequence":"first","affiliation":[{"name":"Department Informatik, Hamburg University of Applied Sciences, Hamburg, Germany"}]},{"given":"Matthias","family":"W\u00e4hlisch","sequence":"additional","affiliation":[{"name":"Institut f\u00fcr Informatik, Freie Universit\u00e4t Berlin, Berlin, Germany"}]},{"given":"Benjamin","family":"Jochheim","sequence":"additional","affiliation":[{"name":"Department Informatik, Hamburg University of Applied Sciences, Hamburg, Germany"}]},{"given":"Michael","family":"Gr\u00f6ning","sequence":"additional","affiliation":[{"name":"Department Informatik, Hamburg University of Applied Sciences, Hamburg, Germany"}]}],"member":"320","published-online":{"date-parts":[[2011,11,29]]},"reference":[{"key":"e_1_2_1_1_1","doi-asserted-by":"publisher","DOI":"10.1145\/1734583.1734595"},{"key":"e_1_2_1_2_1","doi-asserted-by":"publisher","DOI":"10.1109\/MSP.2007.48"},{"key":"e_1_2_1_3_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.diin.2010.05.002"},{"issue":"3","key":"e_1_2_1_4_1","first-page":"379","article-title":"A mathematical theory of communication","volume":"27","author":"Shannon C. E.","year":"1948","journal-title":"Journal"}],"container-title":["ACM SIGMOBILE Mobile Computing and Communications Review"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/2073290.2073303","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/2073290.2073303","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,18]],"date-time":"2025-06-18T09:54:50Z","timestamp":1750240490000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/2073290.2073303"}},"subtitle":["context-adaptive entropy analysis as a lightweight detector of zero-day shellcode on mobiles"],"short-title":[],"issued":{"date-parts":[[2011,11,29]]},"references-count":4,"journal-issue":{"issue":"3","published-print":{"date-parts":[[2011,11,29]]}},"alternative-id":["10.1145\/2073290.2073303"],"URL":"https:\/\/doi.org\/10.1145\/2073290.2073303","relation":{},"ISSN":["1559-1662","1931-1222"],"issn-type":[{"type":"print","value":"1559-1662"},{"type":"electronic","value":"1931-1222"}],"subject":[],"published":{"date-parts":[[2011,11,29]]},"assertion":[{"value":"2011-11-29","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}