{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,2]],"date-time":"2026-05-02T00:45:20Z","timestamp":1777682720058,"version":"3.51.4"},"reference-count":31,"publisher":"SAGE Publications","issue":"1","content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["JHS"],"published-print":{"date-parts":[[2016,2,10]]},"DOI":"10.3233\/jhs-160539","type":"journal-article","created":{"date-parts":[[2016,2,18]],"date-time":"2016-02-18T08:29:09Z","timestamp":1455784149000},"page":"65-76","source":"Crossref","is-referenced-by-count":3,"title":["Generating statistical insights into network behavior using SKETURE"],"prefix":"10.1177","volume":"22","author":[{"given":"Sherenaz","family":"Al-Haj Baddar","sequence":"first","affiliation":[{"name":"KASIT \u2013 The University of Jordan, 11942, Amman, Jordan. E-mail:\u00a0s.baddar@ju.edu.jo"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Alessio","family":"Merlo","sequence":"additional","affiliation":[{"name":"DIBRIS \u2013 University of Genoa, 16145, Genoa, Italy. E-mail:\u00a0alessio.merlo@unige.it"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Mauro","family":"Migliardi","sequence":"additional","affiliation":[{"name":"DEI \u2013 University of Padua, Padua, 35131, Italy. E-mail:\u00a0mauro.migliardi@unipd.it"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"179","reference":[{"issue":"4","key":"10.3233\/JHS-160539_ref1","first-page":"29","article-title":"Anomaly detection in computer networks: A state-of-the-art review","volume":"5","author":"Al-Haj Baddar","year":"2014","journal-title":"Journal of Wireless Mobile Networks, Ubiquitous Computing, and Dependable Applications (JoWUA)"},{"key":"10.3233\/JHS-160539_ref2","doi-asserted-by":"crossref","unstructured":"[2]S.\u00a0Al-Haj Baddar, A.\u00a0Merlo and M.\u00a0Migliardi, SKETURE: A sketch-based packet analysis tool, in: Proceedings of the 7th ACM CCS International Workshop on Managing Insider Security Threats, CCS-MIST 2015, 2015, pp.\u00a01\u20134.","DOI":"10.1145\/2808783.2808791"},{"key":"10.3233\/JHS-160539_ref3","doi-asserted-by":"crossref","unstructured":"[3]E.\u00a0Albin and N.C.\u00a0Rowe, A realistic experimental comparison of the suricata and snort intrusion-detection systems, in: 26th International Conference on Advanced Information Networking and Applications Workshops (WAINA), 2012, pp.\u00a0122\u2013127.","DOI":"10.1109\/WAINA.2012.29"},{"key":"10.3233\/JHS-160539_ref4","doi-asserted-by":"crossref","unstructured":"[4]D.\u00a0Bailey, J.\u00a0Brainard, S.\u00a0Rohde and C.\u00a0Paar, Wireless authentication and transaction-confirmation token, in: E-Business and Telecommunications, Mohammad, S.\u00a0Obaidat and J.\u00a0Filipe, eds, Communications in Computer and Information Science, Vol.\u00a0130, Springer, Berlin, 2011, pp.\u00a0186\u2013198.","DOI":"10.1007\/978-3-642-20077-9_13"},{"key":"10.3233\/JHS-160539_ref5","doi-asserted-by":"crossref","unstructured":"[5]A.\u00a0Castiglione, G.\u00a0Cattaneo, A.\u00a0De Santis, F.\u00a0Petagna and U.\u00a0Ferraro Petrillo, SPEECH: Secure personal end-to-end communication with handheld, in: ISSE 2006 \u2013 Securing Electronic Business Processes, Vieweg, 2006, pp.\u00a0287\u2013297.","DOI":"10.1007\/978-3-8348-9195-2_31"},{"key":"10.3233\/JHS-160539_ref6","doi-asserted-by":"crossref","unstructured":"[6]A.\u00a0Castiglione, G.\u00a0Cattaneo, G.D.\u00a0Maio and F.\u00a0Petagna, SECR3T: Secure end-to-end communication over 3G telecommunication networks, in: Fifth International Conference on Innovative Mobile and Internet Services in Ubiquitous Computing (IMIS), 2011, pp.\u00a0520\u2013526.","DOI":"10.1109\/IMIS.2011.65"},{"key":"10.3233\/JHS-160539_ref9","doi-asserted-by":"crossref","unstructured":"[9]G.\u00a0Cormode and S.\u00a0Muthukrishnan, What\u2019s new: Finding significant differences in network data streams, in: Twenty-Third Annual Joint Conference of the IEEE Computer and Communications Societies, INFOCOM 2004, Vol.\u00a03, 2004, pp.\u00a01534\u20131545.","DOI":"10.1109\/INFCOM.2004.1354567"},{"issue":"4","key":"10.3233\/JHS-160539_ref10","doi-asserted-by":"crossref","first-page":"32","DOI":"10.1109\/MSP.2006.108","article-title":"Web application security assessment tools","volume":"4","author":"Curphey","year":"2006","journal-title":"IEEE Security and Privacy"},{"key":"10.3233\/JHS-160539_ref11","doi-asserted-by":"crossref","first-page":"408","DOI":"10.1016\/j.asoc.2015.07.029","article-title":"An uncertainty-managing batch relevance-based approach to network anomaly detection","volume":"36","author":"D\u2019Angelo","year":"2015","journal-title":"Applied Soft Computing"},{"key":"10.3233\/JHS-160539_ref12","doi-asserted-by":"crossref","unstructured":"[12]S.\u00a0Ganguly, M.\u00a0Garofalakis, R.\u00a0Rastogi and K.\u00a0Sabnani, Streaming algorithms for robust, real-time detection of DDoS attacks, in: 27th International Conference on Distributed Computing Systems, ICDCS\u201907, 2007, pp.\u00a04.","DOI":"10.1109\/ICDCS.2007.142"},{"key":"10.3233\/JHS-160539_ref13","unstructured":"[13]C.\u00a0Guitton, Criminals and cyber attacks: The missing link between attribution and deterrence, International Journal of Cyber Criminology 6(2) (2012)."},{"key":"10.3233\/JHS-160539_ref14","doi-asserted-by":"crossref","unstructured":"[14]D.\u00a0Helbing, Have we opened Pandora\u2019s box? in: Thinking Ahead \u2013 Essays on Big Data, Digital Revolution, and Participatory Market Society, Springer International Publishing, 2015, pp.\u00a01\u201326.","DOI":"10.1007\/978-3-319-15078-9_1"},{"issue":"1","key":"10.3233\/JHS-160539_ref15","doi-asserted-by":"crossref","first-page":"5","DOI":"10.1016\/j.ijforecast.2003.09.015","article-title":"Forecasting seasonals and trends by exponentially weighted moving averages","volume":"20","author":"Holt","year":"2004","journal-title":"International Journal of Forecasting"},{"key":"10.3233\/JHS-160539_ref16","doi-asserted-by":"crossref","unstructured":"[16]Q.\u00a0Huang and P.P.C.\u00a0Lee, LD-sketch: A distributed sketching design for accurate and scalable anomaly detection in network data streams, in: IEEE Conference on Computer Communications, INFOCOM, Toronto, Canada, April 27\u2013May 2, 2014, pp.\u00a01420\u20131428.","DOI":"10.1109\/INFOCOM.2014.6848076"},{"key":"10.3233\/JHS-160539_ref17","unstructured":"[17]K.\u00a0Karnad and S.\u00a0Nagenthram, Cloud security: Can the cloud be secured? in: International Conference for Internet Technology and Secured Transactions, 2012, pp.\u00a0208\u2013210."},{"issue":"1","key":"10.3233\/JHS-160539_ref18","doi-asserted-by":"crossref","first-page":"51","DOI":"10.1145\/762471.762473","article-title":"A simple algorithm for finding frequent elements in streams and bags","volume":"28","author":"Karp","year":"2003","journal-title":"ACM Trans. Database Syst."},{"key":"10.3233\/JHS-160539_ref21","doi-asserted-by":"crossref","unstructured":"[21]A.\u00a0Kumar and J.\u00a0Xu, Sketch guided sampling \u2013 Using on-line estimates of flow size for adaptive data collection, in: Proceedings of the 25th IEEE International Conference on Computer Communications, INFOCOM, 2006, pp.\u00a01\u201311.","DOI":"10.1109\/INFOCOM.2006.326"},{"key":"10.3233\/JHS-160539_ref22","doi-asserted-by":"crossref","unstructured":"[22]Y.\u00a0Liu, W.\u00a0Chen and Y.\u00a0Guan, A fast sketch for aggregate queries over high-speed network traffic, in: Proceedings IEEE, INFOCOM, 2012, pp.\u00a02741\u20132745.","DOI":"10.1109\/INFCOM.2012.6195691"},{"key":"10.3233\/JHS-160539_ref23","doi-asserted-by":"crossref","unstructured":"[23]M.S.\u00a0Ackerman, J.\u00a0Muramatsu and D.W.\u00a0McDonald, Social regulation in an online game: Uncovering the problematics of code, in: Proceedings of the 16th ACM International Conference on Supporting Group Work, GROUP\u201910, ACM, New York, NY, USA, 2010, pp.\u00a0173\u2013182.","DOI":"10.1145\/1880071.1880101"},{"issue":"2","key":"10.3233\/JHS-160539_ref24","doi-asserted-by":"crossref","first-page":"14","DOI":"10.1109\/MSP.2013.31","article-title":"Crossing the \u201cvalley of death\u201d: Transitioning cybersecurity research into practice","volume":"11","author":"Maughan","year":"2013","journal-title":"IEEE Security and Privacy"},{"issue":"3","key":"10.3233\/JHS-160539_ref25","doi-asserted-by":"crossref","first-page":"280","DOI":"10.1109\/TDSC.2014.2315198","article-title":"A denial of service attack to UMTS networks using SIM-less devices","volume":"11","author":"Merlo","year":"2014","journal-title":"IEEE Transactions on Dependable and Secure Computing"},{"key":"10.3233\/JHS-160539_ref26","doi-asserted-by":"crossref","first-page":"505","DOI":"10.1007\/978-3-319-07995-0_50","article-title":"Optimizing network energy consumption through intrusion prevention systems","volume":"299","author":"Merlo","year":"2014","journal-title":"Advances in Intelligent Systems and Computing"},{"issue":"2","key":"10.3233\/JHS-160539_ref27","doi-asserted-by":"crossref","first-page":"39","DOI":"10.1145\/997150.997156","article-title":"A taxonomy of DDoS attack and DDoS defense mechanisms","volume":"34","author":"Mirkovic","year":"2004","journal-title":"SIGCOMM Comput. Commun. Rev."},{"key":"10.3233\/JHS-160539_ref28","unstructured":"[28]S.\u00a0Muthukrishnan, Data streams: Algorithms and applications, in: Proceedings of the Fourteenth Annual ACM-SIAM Symposium on Discrete Algorithms, SODA\u201903, Society for Industrial and Applied Mathematics, Philadelphia, PA, USA, 2003, pp.\u00a0413."},{"key":"10.3233\/JHS-160539_ref29","doi-asserted-by":"crossref","unstructured":"[29]F.\u00a0O\u2019Neil, Target data breach: Applying user-centered design principles to data breach notifications, in: Proceedings of the 33rd Annual International Conference on the Design of Communication, SIGDOC\u201915, ACM, New York, NY, USA, 2015, pp.\u00a047:1\u201347:8.","DOI":"10.1145\/2775441.2775456"},{"key":"10.3233\/JHS-160539_ref30","doi-asserted-by":"crossref","unstructured":"[30]F.\u00a0Palmieri, S.\u00a0Ricciardi and U.\u00a0Fiore, Evaluating network-based DoS attacks under the energy consumption perspective: New security issues in the coming green ICT area, in: International Conference on Broadband and Wireless Computing, Communication and Applications (BWCCA), 2011, pp.\u00a0374\u2013379.","DOI":"10.1109\/BWCCA.2011.66"},{"key":"10.3233\/JHS-160539_ref31","doi-asserted-by":"crossref","unstructured":"[31]M.\u00a0Maxim and D.\u00a0Pollino, Wireless Security, RSA Press, 2002.","DOI":"10.1016\/S1353-4858(02)00119-8"},{"key":"10.3233\/JHS-160539_ref32","unstructured":"[32]M.\u00a0Roesch, Snort \u2013 Lightweight intrusion detection for networks, in: Proceedings of the 13th USENIX Conference on System Administration, LISA\u201999, USENIX Association, Berkeley, CA, USA, 1999, pp.\u00a0229\u2013238."},{"key":"10.3233\/JHS-160539_ref33","doi-asserted-by":"crossref","unstructured":"[33]M.\u00a0Sung, A.\u00a0Kumar, L.\u00a0Li, J.\u00a0Wang and J.\u00a0Xu, Scalable and efficient data streaming algorithms for detecting common content in Internet traffic, in: Proceedings of the 22nd International Conference on Data Engineering Workshops, ICDEW\u201906, 2006, pp.\u00a027.","DOI":"10.1109\/ICDEW.2006.130"},{"key":"10.3233\/JHS-160539_ref34","doi-asserted-by":"crossref","unstructured":"[34]M.\u00a0Thottan, G.\u00a0Liu and C.\u00a0Ji, Anomaly detection approaches for communication networks, in: Algorithms for Next Generation Networks, Computer Communications and Networks, G.\u00a0Cormode and M.\u00a0Thottan, eds, Springer, London, 2010, pp.\u00a0239\u2013261.","DOI":"10.1007\/978-1-84882-765-3_11"},{"key":"10.3233\/JHS-160539_ref35","doi-asserted-by":"crossref","unstructured":"[35]P.\u00a0Traynor, M.\u00a0Lin, M.\u00a0Ongtang, V.\u00a0Rao, T.\u00a0Jaeger, P.\u00a0McDaniel and T.\u00a0La Porta, On cellular botnets: Measuring the impact of malicious devices on a cellular network core, in: Proceedings of the 16th ACM Conference on Computer and Communications Security, ACM, 2009, pp.\u00a0223\u2013234.","DOI":"10.1145\/1653662.1653690"}],"container-title":["Journal of High Speed Networks"],"original-title":[],"link":[{"URL":"https:\/\/content.iospress.com\/download?id=10.3233\/JHS-160539","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,4,29]],"date-time":"2026-04-29T08:43:52Z","timestamp":1777452232000},"score":1,"resource":{"primary":{"URL":"https:\/\/journals.sagepub.com\/doi\/full\/10.3233\/JHS-160539"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2016,2,10]]},"references-count":31,"journal-issue":{"issue":"1"},"URL":"https:\/\/doi.org\/10.3233\/jhs-160539","relation":{},"ISSN":["1875-8940","0926-6801"],"issn-type":[{"value":"1875-8940","type":"electronic"},{"value":"0926-6801","type":"print"}],"subject":[],"published":{"date-parts":[[2016,2,10]]}}}