{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,2,21]],"date-time":"2025-02-21T23:29:28Z","timestamp":1740180568866,"version":"3.37.3"},"reference-count":37,"publisher":"Springer Science and Business Media LLC","issue":"1","license":[{"start":{"date-parts":[[2018,10,11]],"date-time":"2018-10-11T00:00:00Z","timestamp":1539216000000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0"},{"start":{"date-parts":[[2018,10,11]],"date-time":"2018-10-11T00:00:00Z","timestamp":1539216000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0"}],"funder":[{"DOI":"10.13039\/100000001","name":"National Science Foundation","doi-asserted-by":"publisher","award":["1223477"],"award-info":[{"award-number":["1223477"]}],"id":[{"id":"10.13039\/100000001","id-type":"DOI","asserted-by":"publisher"}]},{"name":"National Science Foundation","award":["1223495"],"award-info":[{"award-number":["1223495"]}]},{"name":"National Science Foundation","award":["1527141"],"award-info":[{"award-number":["1527141"]}]},{"name":"National Science Foundation","award":["1618493"],"award-info":[{"award-number":["1618493"]}]}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["Cybersecur"],"published-print":{"date-parts":[[2018,12]]},"DOI":"10.1186\/s42400-018-0015-6","type":"journal-article","created":{"date-parts":[[2018,10,11]],"date-time":"2018-10-11T13:51:53Z","timestamp":1539265913000},"update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":5,"title":["Cloud repository as a malicious service: challenge, identification and implication"],"prefix":"10.1186","volume":"1","author":[{"given":"Xiaojing","family":"Liao","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Sumayah","family":"Alrwais","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Kan","family":"Yuan","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Luyi","family":"Xing","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"XiaoFeng","family":"Wang","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Shuang","family":"Hao","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Raheem","family":"Beyah","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2018,10,11]]},"reference":[{"key":"15_CR1","doi-asserted-by":"crossref","unstructured":"Hao, Shuang, et al. (2013) Understanding the domain registration behavior of spammers. Proceedings of the 2013 conference on Internet measurement conference. ACM","DOI":"10.1145\/2504730.2504753"},{"key":"15_CR2","volume-title":"Proceedings of the 23rd USENIX security symposium","author":"S Alrwais","year":"2014","unstructured":"Alrwais S, Yuan K, Alowaisheq E, Li Z, Wang X (2014) Understanding the dark side of domain parking. In: Proceedings of the 23rd USENIX security symposium"},{"key":"15_CR3","unstructured":"Bishop CM (2006) Pattern recognition and machine learning. springer"},{"key":"15_CR4","doi-asserted-by":"crossref","unstructured":"Borgolte K, Kruegel C, Vigna G (2013) Delta: automatic identification of unknown web-based infection campaigns. In: Proceedings of the 2013 ACM SIGSAC conference on Computer & communications security, ACM, pp 109\u2013120","DOI":"10.1145\/2508859.2516725"},{"key":"15_CR5","unstructured":"Buckets n.d.. https:\/\/cloud.google.com\/storage\/docs\/json_api\/v1\/buckets . Accessed Aug 2018. [On- line]"},{"key":"15_CR6","unstructured":"BuiltWith. Builtwith. http:\/\/builtwith.com\/ , 2015. Accessed Aug 2018. [Online]"},{"key":"15_CR7","unstructured":"Clean-MX. Clean mx realtime database. http:\/\/support.clean-mx.de\/clean-mx\/viruses.php , 2015. Accessed Aug 2018. [Online]"},{"key":"15_CR8","volume-title":"Proceedings of Kdd workshop on data cleaning and object consolidation","author":"W Cohen","year":"2003","unstructured":"Cohen W, Ravikumar P, Fienberg S (2003) A comparison of string metrics for matching names and records. In: Proceedings of Kdd workshop on data cleaning and object consolidation"},{"key":"15_CR9","unstructured":"C. Crawl. Common crawl. https:\/\/commoncrawl.org\/ , 2015. Accessed Aug 2018. [Online]"},{"key":"15_CR10","unstructured":"damballa. Dgas in the hands of cyber-criminals:examining the state of the art in malware evasion techniques. https:\/\/www.damballa.com\/downloads\/r_pubs\/WP_DGAs-in-the-Hands-of-Cyber-Criminals.pdf ; 2015. Accessed Aug 2018. [Online]"},{"key":"15_CR11","doi-asserted-by":"crossref","unstructured":"Der MF, Saul LK, Savage S, Voelker GM (2014) Knock it off: profiling the online storefronts of counterfeit merchandise. In: Proceedings of the 20th ACM SIGKDD international conference on Knowledge discovery and data mining. ACM, pp 1759\u20131768","DOI":"10.1145\/2623330.2623354"},{"key":"15_CR12","unstructured":"DNSDB. Passivedns. https:\/\/www.dnsdb.info\/ , 2015. Accessed Aug 2018. [Online]"},{"key":"15_CR13","unstructured":"Google. Google hosted libraries. https:\/\/developers.google.com\/speed\/libraries\/?csw=1 , 2015. Accessed Aug 2018. [Online]"},{"key":"15_CR14","unstructured":"Google. Publish website content. https:\/\/developers.google.com\/drive\/web\/publish-site , 2015. Accessed Aug 2018. [Online]"},{"key":"15_CR15","doi-asserted-by":"crossref","unstructured":"Han X, Kheir N, Balzarotti D (2015) The role of cloud services in malicious software: trends and insights. In: DIMVA 2015, 12th Conference on Detection of Intrusions and Malware & Vulnerability Assessment, July 9\u201310, 2015, Milan, Italy, Milan","DOI":"10.1007\/978-3-319-20550-2_10"},{"key":"15_CR16","doi-asserted-by":"crossref","unstructured":"Idziorek J, Tannian M, Jacobson D (2011) Detecting fraudulent use of cloud resources. In: Proc. 3rd ACM workshop on cloud computing security workshop, Chicago","DOI":"10.1145\/2046660.2046676"},{"key":"15_CR17","doi-asserted-by":"crossref","unstructured":"Invernizzi L, Comparetti PM, Benvenuti S, Kruegel C, Cova M, Vigna G (2012) Evilseed: A guided approach to finding malicious web pages. In: Security and Privacy (SP), 2012 IEEE Symposium on. IEEE, pp 428\u2013442","DOI":"10.1109\/SP.2012.33"},{"key":"15_CR18","volume-title":"Proceedings of the Network and Distributed System Security Symposium (NDSS)","author":"L Invernizzi","year":"2014","unstructured":"Invernizzi L, Miskovic S, Torres R, Saha S, Lee S, Mellia M, Kruegel C, Vigna G (2014) Nazca: detecting malware distribution in large-scale networks. In: Proceedings of the Network and Distributed System Security Symposium (NDSS)"},{"key":"15_CR19","doi-asserted-by":"crossref","unstructured":"Li Z, Alrwais S, Wang X, Alowaisheq E (2014) Hunting the red fox online: Understanding and detection of mass redirect-script injections. In: Security and Privacy (SP), 2014 IEEE Symposium on. IEEE, pp 3\u201318","DOI":"10.1109\/SP.2014.8"},{"key":"15_CR20","unstructured":"Li Z, Alrwais S, Xie Y, Yu F, Wang X (2013) Finding the linchpins of the dark web: a study on topologically dedicated hosts on malicious web infrastructures. In: Security and Privacy (SP), 2013 IEEE Symposium on. IEEE, pp 112\u2013126"},{"key":"15_CR21","volume-title":"Proceedings of the International World Wide Web Conference","author":"X Liao","year":"2016","unstructured":"Liao X, Liu C, Mccoy D, Shi E, Beyah R (2016) Characterizing long-tail seo spam on cloud web hosting services. In: Proceedings of the International World Wide Web Conference"},{"key":"15_CR22","doi-asserted-by":"crossref","unstructured":"Moore T, Leontiadis N, Christin N (2011) Fashion crimes: trending-term exploitation on the web. In: Proceedings of the 18th ACM conference on Computer and communications security. ACM, pp 455\u2013466","DOI":"10.1145\/2046707.2046761"},{"key":"15_CR23","unstructured":"Mulazzani M, Schrittwieser S, Leithner M, Huber M Dark Clouds on the Horizon: Using cloud storage as attack vector and online slack space. In: Proc. 20th USENIX security symposium, San Francisco, p 2011"},{"key":"15_CR24","first-page":"1025","volume-title":"24th USENIX Security Symposium (USENIX Security 15)","author":"T Nelms","year":"2015","unstructured":"Nelms T, Perdisci R, Antonakakis M, Ahamad M (2015) Webwitness: Investigating, categorizing, and mitigating malware download paths. In: 24th USENIX Security Symposium (USENIX Security 15). USENIX Association, Washington, D.C., pp 1025\u20131040"},{"key":"15_CR25","doi-asserted-by":"crossref","unstructured":"Ristenpart T, Tromer E, Shacham H, Savage S (2009) Hey, you, get off of my cloud: exploring information leakage in third-party compute clouds. In: Proceedings of the 16th ACM conference on Computer and communications security. ACM, pp 199\u2013212","DOI":"10.1145\/1653662.1653687"},{"key":"15_CR26","unstructured":"Scipy. scipy.cluster.hierarchy.linkage. http:\/\/docs.scipy.org\/doc\/scipy\/reference\/generated\/scipy.cluster.hierarchy.linkage.html , 2015. Accessed Aug 2018. [Online]"},{"key":"15_CR27","unstructured":"Servnet n.d.. https:\/\/servnetshsztndci.onion . Accessed Aug 2018. [Online]"},{"key":"15_CR28","unstructured":"Sklearn. sklearn.svm.svc. http:\/\/scikit-learn.org\/stable\/modules\/generated\/sklearn.svm.SVC.html , 2015. Accessed Aug 2018. [Online]"},{"key":"15_CR29","unstructured":"Snort. Snort ssl and tls. http:\/\/manual.snort.org\/node147.html , 2015. Accessed Aug 2018. [Online]"},{"key":"15_CR30","unstructured":"solutionary. Threat-intelligence. https:\/\/www.solutionary.com\/_assets\/pdf\/research\/sert-q4-2013-threat-intelligence.pdf , 2015. Accessed Aug 2018. [Online]"},{"key":"15_CR31","doi-asserted-by":"crossref","unstructured":"Stringhini G, Kruegel C, Vigna G (2013) Shady paths: Leveraging surfing crowds to detect malicious web pages. In: Proceedings of the 2013 ACM SIGSAC conference on Computer & communications security. ACM, pp 133\u2013144","DOI":"10.1145\/2508859.2516682"},{"key":"15_CR32","unstructured":"Sucuri. Sucuri. https:\/\/sucuri.net\/ , 2015. Accessed Aug 2018. [Online]"},{"key":"15_CR33","unstructured":"Symantec. The future of ids. http:\/\/www.symantec.com\/connect\/articles\/future-ids , 2015. Accessed Aug 2018. [Online]"},{"key":"15_CR34","unstructured":"VirusTotal. Virustotal. https:\/\/www.virustotal.com\/ , 2015. Accessed Aug 2018. [Online]"},{"key":"15_CR35","unstructured":"WhatWeb. Whatweb. http:\/\/www.morningstarsecurity.com\/research\/whatweb , 2015. Accessed Aug 2018. [Online]"},{"key":"15_CR36","doi-asserted-by":"crossref","unstructured":"Xu Y, Cui W, Peinado M (2015) Controlled-channel attacks: deterministic side channels for untrusted operating systems. In: Proceedings of the 36th IEEE Symposium on Security and Privacy (Oakland). IEEE Institute of Electrical and Electronics Engineers","DOI":"10.1109\/SP.2015.45"},{"key":"15_CR37","doi-asserted-by":"crossref","unstructured":"Y. Zhang, A. Juels, M. K. Reiter, and T. Ristenpart. Cross-tenant Side-Channel attacks in PaaS clouds. In Proc. 21st Conference on Computer and Communications Security (CCS), Scottsdale, 2014","DOI":"10.1145\/2660267.2660356"}],"container-title":["Cybersecurity"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1186\/s42400-018-0015-6.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"http:\/\/link.springer.com\/article\/10.1186\/s42400-018-0015-6\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1186\/s42400-018-0015-6.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2023,9,5]],"date-time":"2023-09-05T22:26:28Z","timestamp":1693952788000},"score":1,"resource":{"primary":{"URL":"https:\/\/cybersecurity.springeropen.com\/articles\/10.1186\/s42400-018-0015-6"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2018,10,11]]},"references-count":37,"journal-issue":{"issue":"1","published-print":{"date-parts":[[2018,12]]}},"alternative-id":["15"],"URL":"https:\/\/doi.org\/10.1186\/s42400-018-0015-6","relation":{},"ISSN":["2523-3246"],"issn-type":[{"type":"electronic","value":"2523-3246"}],"subject":[],"published":{"date-parts":[[2018,10,11]]},"assertion":[{"value":"24 May 2018","order":1,"name":"received","label":"Received","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"10 September 2018","order":2,"name":"accepted","label":"Accepted","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"11 October 2018","order":3,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"The authors declare that they have no competing interests.","order":1,"name":"Ethics","group":{"name":"EthicsHeading","label":"Competing interests"}},{"value":"Springer Nature remains neutral with regard to jurisdictional claims in published maps and institutional affiliations.","order":2,"name":"Ethics","group":{"name":"EthicsHeading","label":"Publisher\u2019s Note"}}],"article-number":"14"}}