{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,3]],"date-time":"2026-06-03T23:35:31Z","timestamp":1780529731348,"version":"3.54.1"},"reference-count":61,"publisher":"Springer Science and Business Media LLC","issue":"1","license":[{"start":{"date-parts":[[2024,5,27]],"date-time":"2024-05-27T00:00:00Z","timestamp":1716768000000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0"},{"start":{"date-parts":[[2024,5,27]],"date-time":"2024-05-27T00:00:00Z","timestamp":1716768000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0"}],"funder":[{"name":"The Ministry of Higher Education Malaysia's Fundamental Research Grant Scheme","award":["FRGS\/1\/2021\/ICT07\/USM\/03\/1"],"award-info":[{"award-number":["FRGS\/1\/2021\/ICT07\/USM\/03\/1"]}]},{"name":"The Ministry of Higher Education Malaysia's Fundamental Research Grant Scheme","award":["FRGS\/1\/2021\/ICT07\/USM\/03\/1"],"award-info":[{"award-number":["FRGS\/1\/2021\/ICT07\/USM\/03\/1"]}]}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["EURASIP J. on Info. Security"],"abstract":"<jats:title>Abstract<\/jats:title><jats:p>The orientation of emerging technologies on the Internet is moving toward decentralisation. Botnets have always been one of the biggest threats to Internet security, and botmasters have adopted the robust concept of decentralisation to develop and improve peer-to-peer botnet tactics. This makes the botnets cleverer and more artful, although bots under the same botnet have symmetrical behaviour, which is what makes them detectable. However, the literature indicates that the last decade has lacked research that explores new behavioural characteristics that could be used to identify peer-to-peer botnets. For the abovementioned reasons, in this study, we propose new two methods to detect peer-to-peer botnets: first, we explored a new set of behavioural characteristics based on network traffic flow analyses that allow network administrators to more easily recognise a botnet\u2019s presence, and second, we developed a new anomaly detection approach by adopting machine-learning and deep-learning techniques that have not yet been leveraged to detect peer-to-peer botnets using only the five-tuple static indicators as selected features. The experimental analyses revealed new and important behavioural characteristics that can be used to identify peer-to-peer botnets, whereas the experimental results for the detection approach showed a high detection accuracy of 99.99% with no false alarms.<\/jats:p>\n                <jats:p><jats:bold>Graphical Abstract<\/jats:bold><\/jats:p>","DOI":"10.1186\/s13635-024-00169-0","type":"journal-article","created":{"date-parts":[[2024,5,27]],"date-time":"2024-05-27T08:01:53Z","timestamp":1716796913000},"update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":9,"title":["Peer-to-peer botnets: exploring behavioural characteristics and machine\/deep learning-based detection"],"prefix":"10.1186","volume":"2024","author":[{"given":"Arkan Hammoodi Hasan","family":"Kabla","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Achmad Husni","family":"Thamrin","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Mohammed","family":"Anbar","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Selvakumar","family":"Manickam","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Shankar","family":"Karuppayah","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2024,5,27]]},"reference":[{"key":"169_CR1","doi-asserted-by":"publisher","unstructured":"D.T. Son, N.T.K. Tram, P.M. Hieu, Deep learning techniques to detect botnet. J. Sci. Technol. Inf. Secur.\u00a01, 85\u201391 (2022). https:\/\/doi.org\/10.54654\/isj.v1i15.846","DOI":"10.54654\/isj.v1i15.846"},{"key":"169_CR2","doi-asserted-by":"publisher","first-page":"1","DOI":"10.3390\/s20164501","volume":"20","author":"KSH Ramos","year":"2020","unstructured":"K.S.H. Ramos, M.A.S. Monge, J.M. Vidal, Benchmark-based reference model for evaluating botnet detection tools driven by traffic-flow analytics. Sensors (Switzerland) 20, 1\u201331 (2020). https:\/\/doi.org\/10.3390\/s20164501","journal-title":"Sensors (Switzerland)"},{"key":"169_CR3","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1371\/journal.pone.0226594","volume":"14","author":"Y Zhong","year":"2019","unstructured":"Y. Zhong, A. Zhou, L. Zhang et al., Dustbot: a duplex and stealthy P2P-based botnet in the Bitcoin network. PLoS ONE 14, 1\u201327 (2019). https:\/\/doi.org\/10.1371\/journal.pone.0226594","journal-title":"PLoS ONE"},{"key":"169_CR4","doi-asserted-by":"publisher","unstructured":"S. Karuppayah, Advanced Monitoring in P2P Botnets. (Singapore, Springer Singapore, 2018), p. XVII, 105. https:\/\/doi.org\/10.1007\/978-981-10-9050-9_7","DOI":"10.1007\/978-981-10-9050-9_7"},{"key":"169_CR5","doi-asserted-by":"publisher","first-page":"1485","DOI":"10.1109\/TIFS.2018.2881657","volume":"14","author":"D Zhuang","year":"2019","unstructured":"D. Zhuang, J. Morris Chang, Enhanced PeerHunter: detecting peer-to-peer botnets through network-flow level community behavior analysis. IEEE Trans. Inf. Forensics Secur. 14, 1485\u20131500 (2019). https:\/\/doi.org\/10.1109\/TIFS.2018.2881657","journal-title":"IEEE Trans. Inf. Forensics Secur."},{"key":"169_CR6","doi-asserted-by":"publisher","unstructured":"Z. Yang, B. Wang, A feature extraction method for P2P botnet detection using graphic symmetry concept. Symmetry (Basel) 11, (2019). https:\/\/doi.org\/10.3390\/sym11030326","DOI":"10.3390\/sym11030326"},{"key":"169_CR7","doi-asserted-by":"publisher","unstructured":"A. Hammoodi Hasan Kabla, M. Anbar, S. Manickam, et al., Monitoring peer-to-peer botnets: requirements, challenges, and future works. Comput. Mater. Contin.\u00a075:3375\u20133398 (2023). https:\/\/doi.org\/10.32604\/cmc.2023.036587","DOI":"10.32604\/cmc.2023.036587"},{"key":"169_CR8","doi-asserted-by":"publisher","first-page":"71632","DOI":"10.1109\/ACCESS.2022.3188637","volume":"10","author":"AHH Kabla","year":"2022","unstructured":"A.H.H. Kabla, M. Anbar, S. Manickam et al., Applicability of intrusion detection system on Ethereum attacks: a comprehensive review. IEEE Access 10, 71632\u201371655 (2022). https:\/\/doi.org\/10.1109\/ACCESS.2022.3188637","journal-title":"IEEE Access"},{"key":"169_CR9","doi-asserted-by":"crossref","unstructured":"R.Di. Pietro, L.V. Mancini, Intrusion Detection Systems, 1st edn. (Boston, Springer US, 2008). https:\/\/doi.org\/10.1007\/978-0-387-77265-3","DOI":"10.1007\/978-0-387-77265-3"},{"key":"169_CR10","doi-asserted-by":"publisher","DOI":"10.1201\/9781003346340","volume-title":"Artificial intelligence for intrusion detection systems, 1st Editio","author":"M Swarnkar","year":"2023","unstructured":"M. Swarnkar, S.S. Rajput, Artificial intelligence for intrusion detection systems, 1st Editio (Chapman and Hall\/CRC, Boca Raton, 2023)"},{"key":"169_CR11","doi-asserted-by":"publisher","first-page":"2483","DOI":"10.3390\/sym14122483","volume":"14","author":"AHH Kabla","year":"2022","unstructured":"A.H.H. Kabla, A.H. Thamrin, M. Anbar et al., PeerAmbush: multi-layer perceptron to detect peer-to-peer botnet. Symmetry (Basel) 14, 2483 (2022). https:\/\/doi.org\/10.3390\/sym14122483","journal-title":"Symmetry (Basel)"},{"key":"169_CR12","doi-asserted-by":"publisher","first-page":"991","DOI":"10.1007\/s00521-016-2564-5","volume":"29","author":"M Alauthaman","year":"2018","unstructured":"M. Alauthaman, N. Aslam, L. Zhang et al., A P2P botnet detection scheme based on decision tree and adaptive multilayer neural networks. Neural Comput. Appl. 29, 991\u20131004 (2018). https:\/\/doi.org\/10.1007\/s00521-016-2564-5","journal-title":"Neural Comput. Appl."},{"key":"169_CR13","doi-asserted-by":"publisher","DOI":"10.1007\/s12652-022-04437-0","author":"AH Hasan","year":"2022","unstructured":"A.H. Hasan, M. Anbar, T.A. Alamiedy, Deep learning approach for detecting router advertisement flooding-based DDoS attacks. J. Ambient. Intell. Humaniz. Comput. (2022). https:\/\/doi.org\/10.1007\/s12652-022-04437-0","journal-title":"J. Ambient. Intell. Humaniz. Comput."},{"key":"169_CR14","doi-asserted-by":"publisher","first-page":"15037","DOI":"10.1109\/ACCESS.2024.3357661","volume":"12","author":"M Luqman","year":"2024","unstructured":"M. Luqman, M. Faheem, W.Y. Ramay et al., Utilizing ensemble learning for detecting multi-modal fake news. IEEE Access 12, 15037\u201315049 (2024). https:\/\/doi.org\/10.1109\/ACCESS.2024.3357661","journal-title":"IEEE Access"},{"key":"169_CR15","doi-asserted-by":"publisher","unstructured":"Bibi M, Hussain Qaisar Z, Aslam N, et al., TL-PBot: Twitter bot profile detection using transfer learning based on DNN model. Eng Reports 1\u201325 (2024). https:\/\/doi.org\/10.1002\/eng2.12838","DOI":"10.1002\/eng2.12838"},{"key":"169_CR16","doi-asserted-by":"crossref","unstructured":"T.A. Al-Amiedy, M. Anbar, B. Belaton, A.H.H. Kabla, I.H. Hasbullah, Z.R. Alashhab, A Systematic Literature Review on Machine and Deep Learning Approaches for Detecting Attacks in RPL-Based 6LoWPAN of Internet of Things. Sensors. 22(9):3400 (2022). https:\/\/doi.org\/10.3390\/s22093400","DOI":"10.3390\/s22093400"},{"key":"169_CR17","doi-asserted-by":"publisher","unstructured":"J.S. Lee, H.C. Jeong, J.H. Park, et al., The activity analysis of malicious http-based botnets using degree of periodic repeatability. Proc - 2008 Int. Conf. Secur. Technol. SecTech.\u00a02008, 83\u201386 (2008). https:\/\/doi.org\/10.1109\/SecTech.2008.52","DOI":"10.1109\/SecTech.2008.52"},{"key":"169_CR18","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1007\/978-0-387-68768-1_1","volume":"36","author":"WT Strayer","year":"2008","unstructured":"W.T. Strayer, D. Lapsely, R. Walsh, C. Livadas, Botnet detection based on network behavior. Adv Inf Secur 36, 1\u201324 (2008). https:\/\/doi.org\/10.1007\/978-0-387-68768-1_1","journal-title":"Adv Inf Secur"},{"key":"169_CR19","doi-asserted-by":"publisher","unstructured":"W. Lu, M. Tavallaee, A.A. Ghorbani, Automatic discovery of botnet communities on large-scale communication networks. Proc 4th Int Symp ACM Symp Information, Comput Commun Secur ASIACCS\u201909 1\u201310 (2009) . https:\/\/doi.org\/10.1145\/1533057.1533062","DOI":"10.1145\/1533057.1533062"},{"key":"169_CR20","doi-asserted-by":"publisher","unstructured":"G. Kirubavathi Venkatesh, R. Anitha Nadarajan, HTTP botnet detection using adaptive learning rate multilayer feed-forward neural network. Lect Notes Comput Sci (including Subser Lect Notes Artif Intell Lect Notes Bioinformatics) 7322 LNCS:38\u201348 (2012). https:\/\/doi.org\/10.1007\/978-3-642-30955-7_5","DOI":"10.1007\/978-3-642-30955-7_5"},{"key":"169_CR21","unstructured":"G. Gu, R. Perdisci, J. Zhang, W. Lee, BotMiner: Clustering Analysis of Network Traffic for Protocol- and Structure-Independent Botnet Detection. USENIX Security Symposium. (2008)"},{"key":"169_CR22","doi-asserted-by":"publisher","unstructured":"B. Wang, Z. Li, D. Li, et al., Modeling connections behavior for web-based bots detection. 2010 2nd Int Conf E-bus Inf Syst Secur EBISS2010 141\u2013144 (2010). https:\/\/doi.org\/10.1109\/EBISS.2010.5473532","DOI":"10.1109\/EBISS.2010.5473532"},{"key":"169_CR23","doi-asserted-by":"publisher","first-page":"201","DOI":"10.1109\/ISCI.2013.6612403","volume":"2013","author":"M Eslahi","year":"2013","unstructured":"M. Eslahi, H. Hashim, N.M. Tahir, An efficient false alarm reduction approach in HTTP-based botnet detection. IEEE Symp Comput Informatics, Isc 2013, 201\u2013205 (2013). https:\/\/doi.org\/10.1109\/ISCI.2013.6612403","journal-title":"IEEE Symp Comput Informatics, Isc"},{"key":"169_CR24","unstructured":"D. Jang, K. Cho, M. Kim, et al., Evasion technique and detection of malicious botnet. In: IEEE Conf. Publ (2010). https:\/\/ieeexplore.ieee.org\/document\/5678101. Accessed 30 Oct 2022"},{"key":"169_CR25","doi-asserted-by":"publisher","first-page":"975","DOI":"10.5120\/11164-6289","volume":"66","author":"A AlAwadi Hasan","year":"2013","unstructured":"A. AlAwadi Hasan, B. Belaton, Multi-phase IRC botnet and botnet behavior detection model. Int. J. Comput. Appl. 66, 975\u20138887 (2013). https:\/\/doi.org\/10.5120\/11164-6289","journal-title":"Int. J. Comput. Appl."},{"key":"169_CR26","doi-asserted-by":"publisher","unstructured":"M.R. Rostami, M. Eslahi, B. Shanmugam, Z. Ismail,\u00a0 Botnet evolution: network traffic indicators. Proc - 2014 Int Symp Biometrics Secur Technol ISBAST 2014 274\u2013279 (2015). https:\/\/doi.org\/10.1109\/ISBAST.2014.7013134","DOI":"10.1109\/ISBAST.2014.7013134"},{"key":"169_CR27","first-page":"2901","volume":"98","author":"M Alauthman","year":"2020","unstructured":"M. Alauthman, P2P bot detection using deep learning with traffic reduction schema. J. Theor. Appl. Inf. Technol. 98, 2901\u20132912 (2020)","journal-title":"J. Theor. Appl. Inf. Technol."},{"key":"169_CR28","doi-asserted-by":"publisher","unstructured":"R. Lohiya, A. Thakkar, Intrusion Detection Using Deep Neural Network with AntiRectifier Layer. In: Thampi, S.M., Lloret Mauri, J., Fernando, X., Boppana, R., Geetha, S., Sikora, A. (eds) Applied Soft Computing and Communication Networks. Lecture Notes in Networks and Systems, vol 187. (Singapore, Springer, 2021). https:\/\/doi.org\/10.1007\/978-981-33-6173-7_7","DOI":"10.1007\/978-981-33-6173-7_7"},{"key":"169_CR29","doi-asserted-by":"publisher","unstructured":"A. Jaiswal, S. Tarar, Real-Time Biometric System for Security and Surveillance Using Face Recognition. In: Singh, M., Gupta, P., Tyagi, V., Flusser, J., \u00d6ren, T., Valentino, G. (eds) Advances in Computing and Data Sciences. ICACDS 2020. Communications in Computer and Information Science, vol 1244. (Singapore. Springer, 2020). https:\/\/doi.org\/10.1007\/978-981-15-6634-9_27","DOI":"10.1007\/978-981-15-6634-9_27"},{"key":"169_CR30","doi-asserted-by":"publisher","unstructured":"Z. Pei, G. Gan, Research on p2p botnet traffic identification technology based on neural network. IOP Conf Ser Earth Environ Sci 428 (2020). https:\/\/doi.org\/10.1088\/1755-1315\/428\/1\/012011","DOI":"10.1088\/1755-1315\/428\/1\/012011"},{"key":"169_CR31","doi-asserted-by":"publisher","first-page":"194","DOI":"10.1016\/j.jisa.2014.03.002","volume":"19","author":"B Rahbarinia","year":"2014","unstructured":"B. Rahbarinia, R. Perdisci, A. Lanzi, K. Li, PeerRush: mining for unwanted P2P traffic. J Inf Secur Appl 19, 194\u2013208 (2014). https:\/\/doi.org\/10.1016\/j.jisa.2014.03.002","journal-title":"J Inf Secur Appl"},{"key":"169_CR32","doi-asserted-by":"publisher","unstructured":"Priyanka, M. Dave,\u00a0 PeerFox: detecting parasite P2P botnets in their waiting stage. Proc 2015 Int Conf Signal Process Comput Control ISPCC 2015 350\u2013355 (2016). https:\/\/doi.org\/10.1109\/ISPCC.2015.7375054","DOI":"10.1109\/ISPCC.2015.7375054"},{"key":"169_CR33","doi-asserted-by":"publisher","first-page":"320","DOI":"10.1007\/s12083-012-0150-x","volume":"7","author":"H Jiang","year":"2014","unstructured":"H. Jiang, X. Shao, Detecting P2P botnets by discovering flow dependency in C&C traffic. Peer-to-Peer Netw. Appl.\u00a07, 320\u2013331 (2014). https:\/\/doi.org\/10.1007\/s12083-012-0150-x","journal-title":"Peer-to-Peer Netw Appl"},{"key":"169_CR34","doi-asserted-by":"publisher","unstructured":"W.H. Liao, C.C. Chang, Peer to peer botnet detection using data mining scheme. Int. Conf. Internet. Technol. Appl. ITAP 2010 - Proc 0\u20133 (2010). https:\/\/doi.org\/10.1109\/ITAPP.2010.5566407","DOI":"10.1109\/ITAPP.2010.5566407"},{"key":"169_CR35","doi-asserted-by":"publisher","unstructured":"D. Zhao, I. Traore, P2P botnet detection through malicious fast flux network identification. Proc - 2012 7th Int Conf P2P, Parallel, Grid, Cloud Internet Comput 3PGCIC 2012 170\u2013175 (2012). https:\/\/doi.org\/10.1109\/3PGCIC.2012.48","DOI":"10.1109\/3PGCIC.2012.48"},{"key":"169_CR36","doi-asserted-by":"publisher","unstructured":"C. Yin, Towards accurate node-based detection of P2P botnets. Sci. World. J.\u00a02014, (2014). https:\/\/doi.org\/10.1155\/2014\/425491","DOI":"10.1155\/2014\/425491"},{"key":"169_CR37","doi-asserted-by":"publisher","unstructured":"T. Yamanoue, A botnet detecting infrastructure using a beneficial botnet. Proc ACM SIGUCCS User Serv Conf 35\u201342 (2018). https:\/\/doi.org\/10.1145\/3235715.3235728","DOI":"10.1145\/3235715.3235728"},{"key":"169_CR38","doi-asserted-by":"publisher","unstructured":"B. Rahbarinia, R. Perdisci, A. Lanzi, K Li, PeerRush: mining for unwanted P2P traffic. Lect. Notes. Comput. Sci. (including Subser Lect Notes Artif Intell Lect Notes Bioinformatics) 7967 LNCS:62\u201382 (2013). https:\/\/doi.org\/10.1007\/978-3-642-39235-1_4","DOI":"10.1007\/978-3-642-39235-1_4"},{"key":"169_CR39","doi-asserted-by":"publisher","unstructured":"S. Garg, A.K. Singh, A.K. Sarje, S.K. Peddoju, Behaviour analysis of machine learning algorithms for detecting P2P botnets. 2013 15th Int Conf Adv Comput Technol ICACT 2013 0\u20133 (2013). https:\/\/doi.org\/10.1109\/ICACT.2013.6710523","DOI":"10.1109\/ICACT.2013.6710523"},{"key":"169_CR40","doi-asserted-by":"publisher","unstructured":"M. Kuhn, K. Johnson, Feature Engineering and Selection: A Practical Approach for Predictive Models, 1st edn. Chapman and Hall\/CRC. (2019). https:\/\/doi.org\/10.1201\/9781315108230","DOI":"10.1201\/9781315108230"},{"key":"169_CR41","doi-asserted-by":"publisher","unstructured":"S. Karuppayah, A. Jaisan,\u00a0DCNDS project dataset - P2P botnet detection using enhanced peer hunter.\u00a0(2021).\u00a0https:\/\/doi.org\/10.5281\/ZENODO.5554851","DOI":"10.5281\/ZENODO.5554851"},{"key":"169_CR42","unstructured":"CTU University, The CTU-13 dataset. (2013). https:\/\/www.stratosphereips.org\/datasets-ctu13. Accessed 12 Oct 2022"},{"key":"169_CR43","doi-asserted-by":"publisher","unstructured":"P. Szumelda, N. Orzechowski, M. Rawski, A. Janicki, VHS-22-a very heterogeneous set of network traffic data for threat detection. ACM Int Conf Proceeding Ser 72\u201378 (2022). https:\/\/doi.org\/10.1145\/3528580.3532843","DOI":"10.1145\/3528580.3532843"},{"key":"169_CR44","unstructured":"M. Ach\u00e9,\u00a0 MTA-KDD-19 | Kaggle. (2019). https:\/\/www.kaggle.com\/datasets\/mathurinache\/mtakdd19. Accessed 12 Oct 2022"},{"key":"169_CR45","unstructured":"P. Berba, TrendMicro CTF Wildcard 400 | Kaggle. (2019). https:\/\/www.kaggle.com\/datasets\/hawkcurry\/2019-trendmicro-ctf-wildcard-400. Accessed 12 Oct 2022"},{"key":"169_CR46","doi-asserted-by":"publisher","first-page":"28","DOI":"10.9790\/0661-16552833","volume":"16","author":"N Kaur","year":"2014","unstructured":"N. Kaur, S. Behal, P2P-BDS: peer-2-peer botnet detection system. IOSR J Comput Eng 16, 28\u201333 (2014). https:\/\/doi.org\/10.9790\/0661-16552833","journal-title":"IOSR J Comput Eng"},{"key":"169_CR47","doi-asserted-by":"publisher","first-page":"35","DOI":"10.9790\/0661-16443542","volume":"16","author":"A Joshi","year":"2014","unstructured":"A. Joshi, M.S. Chaudhary, Study of P2P botnet. IOSR J Comput Eng 16, 35\u201342 (2014)","journal-title":"IOSR J Comput Eng"},{"key":"169_CR48","unstructured":"S. Saad, I. Traore, Ghorbani et al., IMPACT - ISOT botnet dataset. (2011). https:\/\/www.impactcybertrust.org\/dataset_view?idDataset=1281. Accessed 12 Oct 2022"},{"key":"169_CR49","doi-asserted-by":"publisher","first-page":"174","DOI":"10.1109\/PST.2011.5971980","volume":"2011","author":"S Saad","year":"2011","unstructured":"S. Saad, I. Traore, A. Ghorbani et al., Detecting P2P botnets through network behavior analysis and machine learning. 2011 9th Annu Int Conf Privacy. Secur Trust PST 2011, 174\u2013180 (2011). https:\/\/doi.org\/10.1109\/PST.2011.5971980","journal-title":"Secur Trust PST"},{"key":"169_CR50","doi-asserted-by":"publisher","unstructured":"P. Narang, S. Ray, C. Hota, V. Venkatakrishnan,\u00a0 PeerShark: detecting peer-to-peer botnets by tracking conversations. Proc - IEEE Symp Secur Priv 2014-Janua:108\u2013115. (2014). https:\/\/doi.org\/10.1109\/SPW.2014.25","DOI":"10.1109\/SPW.2014.25"},{"key":"169_CR51","doi-asserted-by":"publisher","DOI":"10.5772\/48804","author":"E Alparslan","year":"2012","unstructured":"E. Alparslan, A. Karahoca, D. Karahoc, BotNet detection: enhancing analysis by using data mining techniques. Adv Data Min Knowl Discov Appl (2012). https:\/\/doi.org\/10.5772\/48804","journal-title":"Adv Data Min Knowl Discov Appl"},{"key":"169_CR52","doi-asserted-by":"publisher","unstructured":"A.H.H. Kabla, M. Anbar, S. Hamouda, et al., Machine and deep learning techniques for detecting Internet Protocol version six attacks\u202f: a review. Int J Electr Comput Eng 13:5617\u20135631. (2023). https:\/\/doi.org\/10.11591\/ijece.v13i5.pp5617-5631","DOI":"10.11591\/ijece.v13i5.pp5617-5631"},{"key":"169_CR53","doi-asserted-by":"publisher","unstructured":"A. Karahoca, (ed.), Advances in Data Mining Knowledge Discovery and Applications. InTech. (2012). https:\/\/doi.org\/10.5772\/3349","DOI":"10.5772\/3349"},{"key":"169_CR54","doi-asserted-by":"publisher","unstructured":"D.Y. Mahmood, M.A. Hussein. AnalyzingNB, DT and NBTree intrusion detection algorithms. J Zankoy Sulaimani - Part A 16:69\u201376 (2014). https:\/\/doi.org\/10.17656\/JZS.10285","DOI":"10.17656\/JZS.10285"},{"key":"169_CR55","doi-asserted-by":"publisher","first-page":"244","DOI":"10.1504\/IJCAET.2018.090534","volume":"10","author":"S Mishra","year":"2018","unstructured":"S. Mishra, H.K. Tripathy, B.K. Mishra, Implementation of biologically motivated optimisation approach for tumour categorisation. Int J Comput Aided Eng Technol 10, 244\u2013256 (2018). https:\/\/doi.org\/10.1504\/IJCAET.2018.090534","journal-title":"Int J Comput Aided Eng Technol"},{"key":"169_CR56","doi-asserted-by":"publisher","first-page":"118043","DOI":"10.1109\/ACCESS.2022.3220780","volume":"10","author":"AHH Kabla","year":"2022","unstructured":"A.H.H. Kabla, M. Anbar, S. Manickam, S. Karuppayah, Eth-PSD: a machine learning-based phishing scam detection approach in Ethereum. IEEE Access 10, 118043\u2013118057 (2022). https:\/\/doi.org\/10.1109\/ACCESS.2022.3220780","journal-title":"IEEE Access"},{"key":"169_CR57","doi-asserted-by":"publisher","first-page":"45280","DOI":"10.1109\/ACCESS.2022.3169580","volume":"10","author":"P Radanliev","year":"2022","unstructured":"P. Radanliev, D. De Roure, C. Maple, O. Santos, Forecasts on future evolution of artificial intelligence and intelligent systems. IEEE Access 10, 45280\u201345288 (2022). https:\/\/doi.org\/10.1109\/ACCESS.2022.3169580","journal-title":"IEEE Access"},{"key":"169_CR58","doi-asserted-by":"publisher","first-page":"747","DOI":"10.1007\/s12530-022-09431-7","volume":"13","author":"P Radanliev","year":"2022","unstructured":"P. Radanliev, D. De Roure, C. Maple, U. Ani, Super-forecasting the \u2018technological singularity\u2019 risks from artificial intelligence. Evol. Syst. 13, 747\u2013757 (2022). https:\/\/doi.org\/10.1007\/s12530-022-09431-7","journal-title":"Evol. Syst."},{"key":"169_CR59","doi-asserted-by":"publisher","first-page":"385","DOI":"10.1016\/j.neucom.2015.04.101","volume":"172","author":"A Saied","year":"2016","unstructured":"A. Saied, R.E. Overill, T. Radzik, Detection of known and unknown DDoS attacks using artificial neural networks. Neurocomputing 172, 385\u2013393 (2016). https:\/\/doi.org\/10.1016\/j.neucom.2015.04.101","journal-title":"Neurocomputing"},{"key":"169_CR60","doi-asserted-by":"publisher","unstructured":"RMA Saad, A. Almomani, A. Altaher, et al., ICMPv6 flood attack detection using DENFIS algorithms. Indian. J. Sci. Technol.\u00a07:168\u2013173 (2014). https:\/\/doi.org\/10.17485\/ijst\/2014\/v7i2.5","DOI":"10.17485\/ijst\/2014\/v7i2.5"},{"key":"169_CR61","doi-asserted-by":"publisher","first-page":"502","DOI":"10.1016\/J.COMCOM.2010.04.007","volume":"34","author":"W Lu","year":"2011","unstructured":"W. Lu, G. Rammidi, A.A. Ghorbani, Clustering botnet communication traffic based on n-gram feature selection. Comput. Commun. 34, 502\u2013514 (2011). https:\/\/doi.org\/10.1016\/J.COMCOM.2010.04.007","journal-title":"Comput. Commun."}],"container-title":["EURASIP Journal on Information Security"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1186\/s13635-024-00169-0.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/article\/10.1186\/s13635-024-00169-0\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1186\/s13635-024-00169-0.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,5,27]],"date-time":"2024-05-27T08:02:06Z","timestamp":1716796926000},"score":1,"resource":{"primary":{"URL":"https:\/\/jis-eurasipjournals.springeropen.com\/articles\/10.1186\/s13635-024-00169-0"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024,5,27]]},"references-count":61,"journal-issue":{"issue":"1","published-online":{"date-parts":[[2024,12]]}},"alternative-id":["169"],"URL":"https:\/\/doi.org\/10.1186\/s13635-024-00169-0","relation":{},"ISSN":["2510-523X"],"issn-type":[{"value":"2510-523X","type":"electronic"}],"subject":[],"published":{"date-parts":[[2024,5,27]]},"assertion":[{"value":"21 March 2024","order":1,"name":"received","label":"Received","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"16 May 2024","order":2,"name":"accepted","label":"Accepted","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"27 May 2024","order":3,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}},{"order":1,"name":"Ethics","group":{"name":"EthicsHeading","label":"Declarations"}},{"value":"Not applicable.","order":2,"name":"Ethics","group":{"name":"EthicsHeading","label":"Ethics approval and consent to participate"}},{"value":"The authors give permission for this work to be published in the <i>EURASIP Journal on Information Security<\/i>, and other publications produced by the <i>EURASIP Journal on Information Security<\/i>, in print and online.","order":3,"name":"Ethics","group":{"name":"EthicsHeading","label":"Consent for publication"}},{"value":"The authors declare no competing interests.","order":4,"name":"Ethics","group":{"name":"EthicsHeading","label":"Competing interests"}}],"article-number":"20"}}