{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,8,29]],"date-time":"2026-08-29T06:44:28Z","timestamp":1787985868001,"version":"build-2784847793"},"reference-count":52,"publisher":"Springer Science and Business Media LLC","issue":"1","license":[{"start":{"date-parts":[[2018,4,13]],"date-time":"2018-04-13T00:00:00Z","timestamp":1523577600000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0"}],"funder":[{"DOI":"10.13039\/501100002790","name":"Canadian Network for Research and Innovation in Machining Technology, Natural Sciences and Engineering Research Council of Canada","doi-asserted-by":"publisher","id":[{"id":"10.13039\/501100002790","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["J Cloud Comp"],"published-print":{"date-parts":[[2018,12]]},"DOI":"10.1186\/s13677-018-0109-4","type":"journal-article","created":{"date-parts":[[2018,4,13]],"date-time":"2018-04-13T09:43:57Z","timestamp":1523612637000},"update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":28,"title":["An SVM-based framework for detecting DoS attacks in virtualized clouds under changing environment"],"prefix":"10.1186","volume":"7","author":[{"given":"Adel","family":"Abusitta","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-9530-7643","authenticated-orcid":false,"given":"Martine","family":"Bellaiche","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Michel","family":"Dagenais","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2018,4,13]]},"reference":[{"key":"109_CR1","unstructured":"Wong Q (1998) Salesforce Pushed Silicon Valley Into the Cloud. http:\/\/www.newsfactor.com . Accessed 11 July 2016."},{"issue":"3","key":"109_CR2","doi-asserted-by":"publisher","first-page":"523","DOI":"10.1109\/TCC.2015.2415794","volume":"5","author":"D Gonzales","year":"2017","unstructured":"Gonzales D, Kaplan JM, Saltzman E, Winkelman Z, Woods D (2017) Cloud-trust\u2013A security assessment model for infrastructure as a service (IaaS) clouds. IEEE Trans Cloud Comput 5(3):523\u2013536.","journal-title":"IEEE Trans Cloud Comput"},{"issue":"1","key":"109_CR3","doi-asserted-by":"publisher","first-page":"42","DOI":"10.1016\/j.jnca.2012.05.003","volume":"36","author":"C Modi","year":"2013","unstructured":"Modi C, Patel D, Borisaniya B, Patel H, Patel A, Rajarajan M (2013) A survey of intrusion detection techniques in cloud. J Netw Comput Appl 36(1):42\u201357.","journal-title":"J Netw Comput Appl"},{"issue":"1","key":"109_CR4","doi-asserted-by":"publisher","first-page":"32","DOI":"10.1109\/MITP.2011.117","volume":"14","author":"H-Y Tsai","year":"2012","unstructured":"Tsai H-Y, Siebenhaar M, Miede A, Huang Y, Steinmetz R (2012) Threat as a service? Virtualization\u2019s impact on cloud security. IT Prof Ma 14(1):32.","journal-title":"IT Prof Ma"},{"key":"109_CR5","doi-asserted-by":"crossref","unstructured":"Shea R, Liu J (2012) Understanding the impact of denial of service attacks on virtual machines In: Proceedings of the 2012 IEEE 20th International Workshop on Quality of Service, 27.. IEEE Press.","DOI":"10.1109\/IWQoS.2012.6245975"},{"key":"109_CR6","doi-asserted-by":"crossref","unstructured":"Gupta S, Kumar P (2013) Vm profile based optimized network attack pattern detection scheme for ddos attacks in cloud In: International Symposium on Security in Computing and Communication, 255\u2013261.. Springer.","DOI":"10.1007\/978-3-642-40576-1_25"},{"key":"109_CR7","doi-asserted-by":"crossref","unstructured":"Masood M, Anwar Z, Raza SA, Hur MA (2013) Edos armor: a cost effective economic denial of sustainability attack mitigation framework for e-commerce applications in cloud environments In: Multi Topic Conference (INMIC), 2013 16th International, 37\u201342.. IEEE.","DOI":"10.1109\/INMIC.2013.6731321"},{"key":"109_CR8","doi-asserted-by":"crossref","unstructured":"Koduru A, Neelakantam T, et al (2013) Detection of economic denial of sustainability using time spent on a web page in cloud In: Cloud Computing in Emerging Markets (CCEM), 2013 IEEE International Conference On, 1\u20134.. IEEE.","DOI":"10.1109\/CCEM.2013.6684433"},{"key":"109_CR9","doi-asserted-by":"crossref","unstructured":"Kwon H, Kim T, Yu SJ, Kim HK (2011) Self-similarity based lightweight intrusion detection method for cloud computing In: Asian Conference on Intelligent Information and Database Systems, 353\u2013362.. Springer.","DOI":"10.1007\/978-3-642-20042-7_36"},{"key":"109_CR10","unstructured":"(2016) Control Groups Resource Management. https:\/\/libvirt.org\/cgroups.html . Accessed 6 July 2016."},{"key":"109_CR11","unstructured":"Navratil M, Dolezelova M, Ondrejka P, Majorainova E, Prpic M, Landmann R, Silas D (2016) Managing System Resources on Red Hat Enterprise Linux 6. https:\/\/access.redhat.com\/documentation\/en-US\/Red_Hat_Enterprise_Linux\/6\/html-single\/Resource_Management_Guide\/ . Accessed 6 July 2016."},{"issue":"1","key":"109_CR12","doi-asserted-by":"publisher","first-page":"169","DOI":"10.1016\/S0925-2312(03)00431-4","volume":"55","author":"D Meyer","year":"2003","unstructured":"Meyer D, Leisch F, Hornik K (2003) The support vector machine under test. Neurocomputing 55(1):169\u2013186.","journal-title":"Neurocomputing"},{"issue":"1","key":"109_CR13","doi-asserted-by":"publisher","first-page":"70","DOI":"10.15837\/ijccc.2013.1.170","volume":"8","author":"AM Lonea","year":"2013","unstructured":"Lonea AM, Popescu DE, Tianfield H (2013) Detecting ddos attacks in cloud computing environment. Int J Comput Commun Control 8(1):70\u201378.","journal-title":"Int J Comput Commun Control"},{"issue":"1","key":"109_CR14","doi-asserted-by":"publisher","first-page":"80","DOI":"10.1109\/TCC.2014.2325045","volume":"3","author":"M Ficco","year":"2015","unstructured":"Ficco M, Rak M (2015) Stealthy denial of service strategy in cloud computing. IEEE Trans Cloud Comput 3(1):80\u201394.","journal-title":"IEEE Trans Cloud Comput"},{"issue":"5","key":"109_CR15","doi-asserted-by":"publisher","first-page":"1113","DOI":"10.1002\/cpe.3061","volume":"26","author":"F Palmieri","year":"2014","unstructured":"Palmieri F, Fiore U, Castiglione A (2014) A distributed approach to network anomaly detection based on independent component analysis. Concurrency Comput Pract Experience 26(5):1113\u20131129.","journal-title":"Concurrency Comput Pract Experience"},{"issue":"9","key":"109_CR16","doi-asserted-by":"publisher","first-page":"1697","DOI":"10.1007\/s00500-014-1250-8","volume":"18","author":"J Choi","year":"2014","unstructured":"Choi J, Choi C, Ko B, Kim P (2014) A method of ddos attack detection using http packet pattern and rule engine in cloud computing environment. Soft Comput 18(9):1697\u20131703.","journal-title":"Soft Comput"},{"issue":"3","key":"109_CR17","doi-asserted-by":"crossref","first-page":"71","DOI":"10.2478\/cait-2014-0034","volume":"14","author":"N Jeyanthi","year":"2014","unstructured":"Jeyanthi N, Mogankumar P (2014) A virtual firewall mechanism using army nodes to protect cloud infrastructure from ddos attacks. Cybernet Inform Technol 14(3):71\u201385.","journal-title":"Cybernet Inform Technol"},{"issue":"1","key":"109_CR18","doi-asserted-by":"crossref","first-page":"46","DOI":"10.2478\/cait-2013-0005","volume":"13","author":"N Jeyanthi","year":"2013","unstructured":"Jeyanthi N, Iyengar N (2013) Escape-on-sight: an efficient and scalable mechanism for escaping ddos attacks in cloud computing environment. Cybernet Inform Technol 13(1):46\u201360.","journal-title":"Cybernet Inform Technol"},{"key":"109_CR19","doi-asserted-by":"crossref","unstructured":"Chonka A, Abawajy J (2012) Detecting and mitigating HX-DoS attacks against cloud web services In: Network-Based Information Systems (NBiS), 2012 15th International Conference on, 429\u2013434.. IEEE.","DOI":"10.1109\/NBiS.2012.146"},{"issue":"4","key":"109_CR20","doi-asserted-by":"publisher","first-page":"1097","DOI":"10.1016\/j.jnca.2010.06.004","volume":"34","author":"A Chonka","year":"2011","unstructured":"Chonka A, Xiang Y, Zhou W, Bonti A (2011) Cloud security defence to protect cloud computing against http-dos and xml-dos attacks. J Netw Comput Appl 34(4):1097\u20131107.","journal-title":"J Netw Comput Appl"},{"issue":"3","key":"109_CR21","doi-asserted-by":"publisher","first-page":"1635","DOI":"10.1007\/s11277-013-1443-y","volume":"75","author":"OA Wahab","year":"2014","unstructured":"Wahab OA, Otrok H, Mourad A (2014) A dempster\u2013shafer based tit-for-tat strategy to regulate the cooperation in vanet using qos-olsr protocol. Wirel Pers Commun 75(3):1635\u20131667.","journal-title":"Wirel Pers Commun"},{"issue":"4","key":"109_CR22","doi-asserted-by":"publisher","first-page":"236","DOI":"10.1504\/IJGUC.2014.065384","volume":"5","author":"NCSN Iyengar","year":"2014","unstructured":"Iyengar NCSN, Ganapathy G, Mogan Kumar P, Abraham A (2014) A multilevel thrust filtration defending mechanism against ddos attacks in cloud computing environment. Int J Grid Utility Comput 5(4):236\u2013248.","journal-title":"Int J Grid Utility Comput"},{"issue":"3","key":"109_CR23","first-page":"107","volume":"8","author":"S Teng","year":"2014","unstructured":"Teng S, Zheng C, Zhu H, Liu D, Zhang W (2014) A cooperative intrusion detection model for cloud computing networks. Int J Secur Appl 8(3):107\u2013118.","journal-title":"Int J Secur Appl"},{"key":"109_CR24","doi-asserted-by":"crossref","unstructured":"Man ND, Huh E-N (2012) A collaborative intrusion detection system framework for cloud computing In: Proceedings of the International Conference on IT Convergence and Security 2011, 91\u2013109.. Springer.","DOI":"10.1007\/978-94-007-2911-7_8"},{"issue":"4","key":"109_CR25","first-page":"699","volume":"18","author":"D Singh","year":"2016","unstructured":"Singh D, Patel D, Borisaniya B, Modi C (2016) Collaborative ids framework for cloud. Int J Netw Secur 18(4):699\u2013709.","journal-title":"Int J Netw Secur"},{"key":"109_CR26","doi-asserted-by":"publisher","unstructured":"Ghribi S (2016) Distributed and cooperative intrusion detection in cloud networks In: Proceedings of the Doctoral Symposium of the 17th International Middleware Conference, 7.. ACM. https:\/\/doi.org\/10.1145\/3009925.3009932 .","DOI":"10.1145\/3009925.3009932"},{"key":"109_CR27","doi-asserted-by":"publisher","first-page":"1200","DOI":"10.1016\/j.procs.2016.04.249","volume":"83","author":"Z Chiba","year":"2016","unstructured":"Chiba Z, Abghour N, Moussaid K, Rida M, et al (2016) A cooperative and hybrid network intrusion detection framework in cloud computing based on snort and optimized back propagation neural network. Procedia Comput Sci 83:1200\u20131206.","journal-title":"Procedia Comput Sci"},{"key":"109_CR28","doi-asserted-by":"crossref","unstructured":"Wahab OA, Bentahar J, Otrok H, Mourad A (2017) I know you are watching me: Stackelberg-based adaptive intrusion detection strategy for insider attacks in the cloud In: IEEE International Conference on Web Services (ICWS), 728\u2013735.. IEEE.","DOI":"10.1109\/ICWS.2017.88"},{"key":"109_CR29","unstructured":"Wahab OA, Bentahar J, Otrok H, Mourad A (2017) Optimal load distribution for the detection of vm-based ddos attacks in the cloud. IEEE Trans Serv Comput."},{"issue":"9","key":"109_CR30","doi-asserted-by":"publisher","first-page":"2245","DOI":"10.1109\/TPDS.2013.181","volume":"25","author":"S Yu","year":"2014","unstructured":"Yu S, Tian Y, Guo S, Wu DO (2014) Can we beat ddos attacks in clouds?IEEE Trans Parallel Distributed Syst 25(9):2245\u20132254.","journal-title":"IEEE Trans Parallel Distributed Syst"},{"key":"109_CR31","doi-asserted-by":"crossref","unstructured":"Somani G, Johri A, Taneja M, Pyne U, Gaur M. S, Sanghi D (2015) Darac: Ddos mitigation using ddos aware resource allocation in cloud In: International Conference on Information Systems Security, 263\u2013282.. Springer.","DOI":"10.1007\/978-3-319-26961-0_16"},{"key":"109_CR32","unstructured":"Desnoyers M, Dagenais MR (2006) The lttng tracer: A low impact performance and behavior monitor for gnu\/linux In: OLS (Ottawa Linux Symposium), 209\u2013224.. Citeseer."},{"key":"109_CR33","doi-asserted-by":"publisher","first-page":"6","DOI":"10.1155\/2012\/140368","volume":"2012","author":"N Ezzati-Jivan","year":"2012","unstructured":"Ezzati-Jivan N, Dagenais MR (2012) A stateful approach to generate synthetic events from kernel traces. Adv Softw Eng 2012:6.","journal-title":"Adv Softw Eng"},{"issue":"1","key":"109_CR34","doi-asserted-by":"publisher","first-page":"43","DOI":"10.1145\/2433140.2433151","volume":"47","author":"N Ezzati-Jivan","year":"2013","unstructured":"Ezzati-Jivan N, Dagenais M. R (2013) A framework to compute statistics of system parameters from very large trace files. ACM SIGOPS Oper Syst Rev 47(1):43\u201354.","journal-title":"ACM SIGOPS Oper Syst Rev"},{"key":"109_CR35","unstructured":"Heller KA, Svore KM, Keromytis AD, Stolfo SJ (2003) One class support vector machines for detecting anomalous windows registry accesses In: Proc. of the Workshop on Data Mining for Computer Security. vol. 9."},{"issue":"18","key":"109_CR36","doi-asserted-by":"publisher","first-page":"3799","DOI":"10.1016\/j.ins.2007.03.025","volume":"177","author":"T Shon","year":"2007","unstructured":"Shon T, Moon J (2007) A hybrid machine learning approach to network anomaly detection. Inf Sci 177(18):3799\u20133821.","journal-title":"Inf Sci"},{"key":"109_CR37","doi-asserted-by":"crossref","unstructured":"Wahab OA, Bentahar J, Otrok H, Mourad A (2015) Misbehavior detection framework for community-based cloud computing In: Future Internet of Things and Cloud (FiCloud), 2015 3rd International Conference On, 181\u2013188.. IEEE.","DOI":"10.1109\/FiCloud.2015.94"},{"key":"109_CR38","doi-asserted-by":"publisher","first-page":"40","DOI":"10.1016\/j.eswa.2015.12.006","volume":"50","author":"OA Wahab","year":"2016","unstructured":"Wahab OA, Mourad A, Otrok H, Bentahar J (2016) Ceap: Svm-based intelligent detection model for clustered vehicular ad hoc networks. Expert Syst Appl 50:40\u201354.","journal-title":"Expert Syst Appl"},{"key":"109_CR39","doi-asserted-by":"crossref","unstructured":"Auria L, Moro RA (2008) Support vector machines (svm) as a technique for solvency analysis.","DOI":"10.2139\/ssrn.1424949"},{"issue":"3","key":"109_CR40","doi-asserted-by":"publisher","first-page":"397","DOI":"10.1016\/j.ins.2004.05.008","volume":"172","author":"A Konar","year":"2005","unstructured":"Konar A, Chakraborty UK, Wang PP (2005) Supervised learning on a fuzzy petri net. Inf Sci 172(3):397\u2013416.","journal-title":"Inf Sci"},{"key":"109_CR41","first-page":"243","volume":"2","author":"S Fine","year":"2001","unstructured":"Fine S, Scheinberg K (2001) Efficient svm training using low-rank kernel representations. J Mach Learn Res 2:243\u2013264.","journal-title":"J Mach Learn Res"},{"key":"109_CR42","first-page":"363","volume":"6","author":"IW Tsang","year":"2005","unstructured":"Tsang IW, Kwok JT, Cheung P-M (2005) Core vector machines: Fast svm training on very large data sets. J Mach Learn Res 6:363\u2013392.","journal-title":"J Mach Learn Res"},{"issue":"4","key":"109_CR43","doi-asserted-by":"publisher","first-page":"603","DOI":"10.1109\/TPAMI.2005.77","volume":"27","author":"J-X Dong","year":"2005","unstructured":"Dong J-X, Krzyzak A, Suen CY (2005) Fast svm training algorithm with decomposition on very large data sets. IEEE Trans Pattern Anal Mach Intell 27(4):603\u2013618.","journal-title":"IEEE Trans Pattern Anal Mach Intell"},{"key":"109_CR44","unstructured":"Kandula S, Katabi D, Jacob M, Berger A (2005) Botz-4-sale: Surviving organized ddos attacks that mimic flash crowds In: Proceedings of the 2nd Conference on Symposium on Networked Systems Design & Implementation-Volume 2, 287\u2013300.. USENIX Association."},{"key":"109_CR45","unstructured":"Markus-Go (2015) BoNeSi - the DDoS Botnet Simulator. https:\/\/github.com\/Markus-Go\/bonesi . Accessed 6 July 2016."},{"key":"109_CR46","unstructured":"(2016) Kernel Virtual Machine. http:\/\/www.linux-kvm.org\/page\/Main_Page . Accessed 6 July 2016."},{"key":"109_CR47","unstructured":"(2007) The CAIDA DDoS Attack 2007 Dataset. http:\/\/www.caida.org\/data\/passive\/ddos-20070804_dataset.xml . Accessed 10 July 2016."},{"key":"109_CR48","unstructured":"Arlitt M, Jin T (1998) 1998 World Cup Web Site Access Logs. http:\/\/ita.ee.lbl.gov\/html\/contrib\/WorldCup.html . Accessed 10 July 2016."},{"key":"109_CR49","doi-asserted-by":"publisher","first-page":"95","DOI":"10.1016\/j.cose.2013.11.005","volume":"40","author":"S Bhatia","year":"2014","unstructured":"Bhatia S, Schmidt D, Mohay G, Tickle A (2014) A framework for generating realistic traffic for distributed denial-of-service attacks and flash events. Comput Secur 40:95\u2013107.","journal-title":"Comput Secur"},{"key":"109_CR50","unstructured":"(2016) LTTng Analyses. https:\/\/github.com\/lttng\/lttng-analyses . Accessed 6 July 2016."},{"issue":"1","key":"109_CR51","doi-asserted-by":"publisher","first-page":"66","DOI":"10.1109\/TPAMI.2012.62","volume":"35","author":"S Maji","year":"2013","unstructured":"Maji S, Berg AC, Malik J (2013) Efficient classification for additive kernel svms. IEEE Trans Pattern Anal Mach Intell 35(1):66\u201377.","journal-title":"IEEE Trans Pattern Anal Mach Intell"},{"key":"109_CR52","unstructured":"Kohavi R, Quinlan JR (2002) Data mining tasks and methods: Classification: decision-tree discovery In: Handbook of Data Mining and Knowledge Discovery, 267\u2013276.. Oxford University Press, Inc."}],"container-title":["Journal of Cloud Computing"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1186\/s13677-018-0109-4.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"http:\/\/link.springer.com\/article\/10.1186\/s13677-018-0109-4\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1186\/s13677-018-0109-4.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2019,10,15]],"date-time":"2019-10-15T15:12:29Z","timestamp":1571152349000},"score":1,"resource":{"primary":{"URL":"https:\/\/journalofcloudcomputing.springeropen.com\/articles\/10.1186\/s13677-018-0109-4"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2018,4,13]]},"references-count":52,"journal-issue":{"issue":"1","published-print":{"date-parts":[[2018,12]]}},"alternative-id":["109"],"URL":"https:\/\/doi.org\/10.1186\/s13677-018-0109-4","relation":{},"ISSN":["2192-113X"],"issn-type":[{"value":"2192-113X","type":"electronic"}],"subject":[],"published":{"date-parts":[[2018,4,13]]},"assertion":[{"value":"10 July 2017","order":1,"name":"received","label":"Received","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"19 March 2018","order":2,"name":"accepted","label":"Accepted","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"13 April 2018","order":3,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"The authors declare that they have no competing interests.","order":1,"name":"Ethics","group":{"name":"EthicsHeading","label":"Competing interests"}},{"value":"Springer Nature remains neutral with regard to jurisdictional claims in published maps and institutional affiliations.","order":2,"name":"Ethics","group":{"name":"EthicsHeading","label":"Publisher\u2019s Note"}}],"article-number":"9"}}