{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,10,1]],"date-time":"2025-10-01T15:28:22Z","timestamp":1759332502857,"version":"3.41.0"},"publisher-location":"New York, NY, USA","reference-count":21,"publisher":"ACM","license":[{"start":{"date-parts":[[2020,11,27]],"date-time":"2020-11-27T00:00:00Z","timestamp":1606435200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2020,11,27]]},"DOI":"10.1145\/3442520.3442525","type":"proceedings-article","created":{"date-parts":[[2021,3,13]],"date-time":"2021-03-13T23:09:22Z","timestamp":1615676962000},"page":"14-20","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":3,"title":["Slow Scan Attack Detection Based on Communication Behavior"],"prefix":"10.1145","author":[{"given":"Tomoya","family":"Yamashita","sequence":"first","affiliation":[{"name":"Graduate School of Imformation Science and TechnologyThe University of Tokyo, Japan"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Daisuke","family":"Miyamoto","sequence":"additional","affiliation":[{"name":"Graduate School of Information Science and Technology The University of Tokyo, Japan"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Yuji","family":"Sekiya","sequence":"additional","affiliation":[{"name":"Graduate School of Information Science and Technology The University of Tokyo, Japan"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Hiroshi","family":"Nakamura","sequence":"additional","affiliation":[{"name":"Graduate School of Information Science and Technology The University of Tokyo, Japan"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2021,3,13]]},"reference":[{"key":"e_1_3_2_1_1_1","unstructured":"[n.d.]. MITRE ATT&CK Enterprise Matrix. https:\/\/attack.mitre.org\/matrices\/enterprise\/.  [n.d.]. MITRE ATT&CK Enterprise Matrix. https:\/\/attack.mitre.org\/matrices\/enterprise\/."},{"key":"e_1_3_2_1_2_1","unstructured":"[n.d.]. MITRE PRE-ATT&CK Matrix. https:\/\/attack.mitre.org\/matrices\/pre\/.  [n.d.]. MITRE PRE-ATT&CK Matrix. https:\/\/attack.mitre.org\/matrices\/pre\/."},{"key":"e_1_3_2_1_3_1","unstructured":"[n.d.]. Nmap. https:\/\/nmap.org\/.  [n.d.]. Nmap. https:\/\/nmap.org\/."},{"key":"e_1_3_2_1_4_1","unstructured":"[n.d.]. redis. https:\/\/redis.io\/.  [n.d.]. redis. https:\/\/redis.io\/."},{"key":"e_1_3_2_1_5_1","unstructured":"[n.d.]. Yet another flowmeter. https:\/\/linux.die.net\/man\/1\/yaf.  [n.d.]. Yet another flowmeter. https:\/\/linux.die.net\/man\/1\/yaf."},{"key":"e_1_3_2_1_6_1","volume-title":"Detecting Slow Port Scan Using Fuzzy Rule Interpolation. 2019 2nd International Conference on new Trends in Computing Sciences (ICTCS)","author":"Almseidin Mohammad","year":"2019","unstructured":"Mohammad Almseidin , Mouhammd Al-Kasassbeh , and Szilveszter Kov\u00e1cs . 2019 . Detecting Slow Port Scan Using Fuzzy Rule Interpolation. 2019 2nd International Conference on new Trends in Computing Sciences (ICTCS) (2019), 1\u20136. Mohammad Almseidin, Mouhammd Al-Kasassbeh, and Szilveszter Kov\u00e1cs. 2019. Detecting Slow Port Scan Using Fuzzy Rule Interpolation. 2019 2nd International Conference on new Trends in Computing Sciences (ICTCS) (2019), 1\u20136."},{"key":"#cr-split#-e_1_3_2_1_7_1.1","doi-asserted-by":"crossref","unstructured":"Jari Arkko Michelle Cotton and Leo Vegoda. 2010. IPv4 Address Blocks Reserved for Documentation. RFC 5737. https:\/\/doi.org\/10.17487\/RFC5737 10.17487\/RFC5737","DOI":"10.17487\/rfc5737"},{"key":"#cr-split#-e_1_3_2_1_7_1.2","doi-asserted-by":"crossref","unstructured":"Jari Arkko Michelle Cotton and Leo Vegoda. 2010. IPv4 Address Blocks Reserved for Documentation. RFC 5737. https:\/\/doi.org\/10.17487\/RFC5737","DOI":"10.17487\/rfc5737"},{"key":"e_1_3_2_1_8_1","doi-asserted-by":"publisher","DOI":"10.1109\/ISIAS.2011.6122824"},{"key":"e_1_3_2_1_9_1","doi-asserted-by":"publisher","DOI":"10.1109\/ISCC.2006.142"},{"key":"e_1_3_2_1_10_1","doi-asserted-by":"publisher","DOI":"10.5555\/647593.728888"},{"key":"e_1_3_2_1_11_1","volume-title":"A slow port scan attack detection mechanism based on fuzzy logic and a stepwise","author":"Kim Jaekwang","year":"2008","unstructured":"Jaekwang Kim and Jee-Hyong Lee . 2008. A slow port scan attack detection mechanism based on fuzzy logic and a stepwise p1olicy. 1 \u2013 5. https:\/\/doi.org\/10.1049\/cp: 2008 1126 10.1049\/cp:20081126 Jaekwang Kim and Jee-Hyong Lee. 2008. A slow port scan attack detection mechanism based on fuzzy logic and a stepwise p1olicy. 1 \u2013 5. https:\/\/doi.org\/10.1049\/cp:20081126"},{"key":"e_1_3_2_1_12_1","doi-asserted-by":"publisher","DOI":"10.1109\/DSN.2005.18"},{"key":"e_1_3_2_1_13_1","volume-title":"X-means: Extending k-means with efficient estimation of the number of clusters.. In Icml, Vol.\u00a01. 727\u2013734.","author":"Pelleg Dan","year":"2000","unstructured":"Dan Pelleg , Andrew\u00a0 W Moore , 2000 . X-means: Extending k-means with efficient estimation of the number of clusters.. In Icml, Vol.\u00a01. 727\u2013734. Dan Pelleg, Andrew\u00a0W Moore, 2000. X-means: Extending k-means with efficient estimation of the number of clusters.. In Icml, Vol.\u00a01. 727\u2013734."},{"key":"e_1_3_2_1_14_1","volume-title":"Computer Security Symposium 2014 2014","author":"Shimada Ichiro","year":"2014","unstructured":"Ichiro Shimada , Yu Tsuda , Masashi Eto , Daisuke Inoue , 2014 . A Slow-Scan Detection Method for Live Network Environments . Computer Security Symposium 2014 2014 , 2 (2014), 458\u2013465. Ichiro Shimada, Yu Tsuda, Masashi Eto, Daisuke Inoue, 2014. A Slow-Scan Detection Method for Live Network Environments. Computer Security Symposium 2014 2014, 2 (2014), 458\u2013465."},{"key":"e_1_3_2_1_15_1","doi-asserted-by":"publisher","DOI":"10.5555\/597917.597922"},{"key":"e_1_3_2_1_16_1","volume-title":"Proceedings of the 19th national information systems security conference, Vol.\u00a01","author":"Staniford-Chen Stuart","year":"1996","unstructured":"Stuart Staniford-Chen , Steven Cheung , Richard Crawford , Mark Dilger , Jeremy Frank , James Hoagland , Karl Levitt , Christopher Wee , Raymond Yip , and Dan Zerkle . 1996 . GrIDS-a graph based intrusion detection system for large networks . In Proceedings of the 19th national information systems security conference, Vol.\u00a01 . Baltimore, 361\u2013370. Stuart Staniford-Chen, Steven Cheung, Richard Crawford, Mark Dilger, Jeremy Frank, James Hoagland, Karl Levitt, Christopher Wee, Raymond Yip, and Dan Zerkle. 1996. GrIDS-a graph based intrusion detection system for large networks. In Proceedings of the 19th national information systems security conference, Vol.\u00a01. Baltimore, 361\u2013370."},{"key":"e_1_3_2_1_17_1","doi-asserted-by":"publisher","DOI":"10.4236\/ijcns.2011.48062"},{"key":"e_1_3_2_1_18_1","volume-title":"Study on Detection for Randomly Slow Port Scanning. Computer Security Symposium 2012 2012","author":"Takenaka Masahiko","year":"2012","unstructured":"Masahiko Takenaka , Satoru Torii , Satoru Shimizu , 2012 . Study on Detection for Randomly Slow Port Scanning. Computer Security Symposium 2012 2012 , 3 (2012), 736\u2013741. Masahiko Takenaka, Satoru Torii, Satoru Shimizu, 2012. Study on Detection for Randomly Slow Port Scanning. Computer Security Symposium 2012 2012, 3 (2012), 736\u2013741."},{"key":"e_1_3_2_1_19_1","volume-title":"2009 International Conference on Network and Service Security. IEEE, 1\u20135.","author":"Udhayan J","year":"2009","unstructured":"J Udhayan , M\u00a0Muruga Prabu , V\u00a0Aravinda Krishnan , and R Anitha . 2009 . Reconnaissance scan detection heuristics to disrupt the pre-attack information gathering . In 2009 International Conference on Network and Service Security. IEEE, 1\u20135. J Udhayan, M\u00a0Muruga Prabu, V\u00a0Aravinda Krishnan, and R Anitha. 2009. Reconnaissance scan detection heuristics to disrupt the pre-attack information gathering. In 2009 International Conference on Network and Service Security. IEEE, 1\u20135."},{"key":"e_1_3_2_1_20_1","doi-asserted-by":"publisher","DOI":"10.1145\/885651.781045"}],"event":{"name":"ICCNS 2020: 2020 the 10th International Conference on Communication and Network Security","acronym":"ICCNS 2020","location":"Tokyo Japan"},"container-title":["2020 the 10th International Conference on Communication and Network Security"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3442520.3442525","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3442520.3442525","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,17]],"date-time":"2025-06-17T21:24:36Z","timestamp":1750195476000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3442520.3442525"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2020,11,27]]},"references-count":21,"alternative-id":["10.1145\/3442520.3442525","10.1145\/3442520"],"URL":"https:\/\/doi.org\/10.1145\/3442520.3442525","relation":{},"subject":[],"published":{"date-parts":[[2020,11,27]]},"assertion":[{"value":"2021-03-13","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}