-
1
-
-
14944365044
-
A flow-based method for abnormal network traffic detection
-
M. S. Kim, H. J. Kang, S. C. Hung, S. H. Chung, and J. W. Hong, A Flow-based Method for Abnormal Network Traffic Detection," IEEE/IFIP NOMS, 2004.
-
(2004)
IEEE/IFIP NOMS
-
-
Kim, M.S.1
Kang, H.J.2
Hung, S.C.3
Chung, S.H.4
Hong, J.W.5
-
2
-
-
33746603312
-
Mining anomalies using traffic feature distributions
-
A. Lakhina, M. Crovella, and C. Diot, "Mining Anomalies Using Traffic Feature Distributions," ACM SIGCOMM, 2005.
-
(2005)
ACM SIGCOMM
-
-
Lakhina, A.1
Crovella, M.2
Diot, C.3
-
7
-
-
37049006312
-
Adaptive random sampling for total load estimation
-
B. Y. Choi, J. Park, and Z. L. Zhang, Adaptive random sampling for total load estimation," IEEE ICC, 2003.
-
(2003)
IEEE ICC
-
-
Choi, B.Y.1
Park, J.2
Zhang, Z.L.3
-
8
-
-
78649816570
-
Properties and prediction of flow statistics from sampled packet streams
-
N. Duffield, C. Lund, and M. Thorup, Properties and prediction of flow statistics from sampled packet streams," ACM IMC, 2002.
-
(2002)
ACM IMC
-
-
Duffield, N.1
Lund, C.2
Thorup, M.3
-
9
-
-
8344290018
-
Estimating flow distributions from sampled flow statistics
-
N. Duffield, C. Lund, and M. Thorup, Estimating Flow Distributions from Sampled Flow Statistics," ACM SIGCOMM, 2003.
-
(2003)
ACM SIGCOMM
-
-
Duffield, N.1
Lund, C.2
Thorup, M.3
-
10
-
-
33947659323
-
Inverting sampled traffic
-
N. Hohn and D. Veitch, "Inverting Sampled Traffic," ACM IMC, 2003.
-
(2003)
ACM IMC
-
-
Hohn, N.1
Veitch, D.2
-
11
-
-
33845614039
-
Impact of packet sampling on portscan detection
-
J. Mai, A. Sridharan, C. N. Chuah, H. Zang, and T. Ye, "Impact of packet sampling on portscan detection," IEEE J. SAC, 24(12):2285-2298, 2006.
-
(2006)
IEEE J. SAC
, vol.24
, Issue.12
, pp. 2285-2298
-
-
Mai, J.1
Sridharan, A.2
Chuah, C.N.3
Zang, H.4
Ye, T.5
-
12
-
-
65249083278
-
Is sampled data sufficient for anomaly detection?
-
J. Mai, C. N. Chuah, A. Sridharan, T. YE, and H. Zang, "Is sampled data sufficient for anomaly detection?" ACM IMC, 2006.
-
(2006)
ACM IMC
-
-
Mai, J.1
Chuah, C.N.2
Sridharan, A.3
Ye, T.4
Zang, H.5
-
13
-
-
35148880264
-
Understanding and evaluating the impact of sampling on anomaly detection techniques
-
G. Androulidakis, V. Chatzigiannakis, S. Papavassiliou, M. Grammatikou, V. Maglaris, "Understanding and Evaluating the Impact of Sampling on Anomaly Detection Techniques," IEEE MILCOM, 2006.
-
(2006)
IEEE MILCOM
-
-
Androulidakis, G.1
Chatzigiannakis, V.2
Papavassiliou, S.3
Grammatikou, M.4
Maglaris, V.5
-
14
-
-
78649839530
-
Impact of packet sampling on anomaly detection metrics
-
D. Brauckhoff, B. Tellenbach, A. Wagner, M. May, A. Lakhina, "Impact of Packet Sampling on Anomaly Detection Metrics," ACM IMC, 2006.
-
(2006)
ACM IMC
-
-
Brauckhoff, D.1
Tellenbach, B.2
Wagner, A.3
May, M.4
Lakhina, A.5
-
15
-
-
8344261545
-
PacketScore: Statistics-based overload control against distributed denial-of-service attacks
-
Y. Kim, W. C. Lau, M. C. Chuah, and H. J. Chao, "PacketScore: Statistics-based Overload Control against Distributed Denial-of-Service Attacks," IEEE INFOCOM, 2004.
-
(2004)
IEEE INFOCOM
-
-
Kim, Y.1
Lau, W.C.2
Chuah, M.C.3
Chao, H.J.4
-
16
-
-
33749824252
-
ALPi: A DDoS defense system for high-speed networks
-
P. E. Ayres, H. Sun, and H. J. Chao, "ALPi: A DDoS Defense System for High-Speed Networks," IEEE J. SAC, 24(10):1864-1876, 2006.
-
(2006)
IEEE J. SAC
, vol.24
, Issue.10
, pp. 1864-1876
-
-
Ayres, P.E.1
Sun, H.2
Chao, H.J.3
-
17
-
-
33745605036
-
Detecting anomalies in network traffic using maximum entropy estimation
-
Y. Gu, A. McCullum, and D. Towsley, "Detecting anomalies in network traffic using maximum entropy estimation," ACM IMC, 2005.
-
(2005)
ACM IMC
-
-
Gu, Y.1
McCullum, A.2
Towsley, D.3
-
19
-
-
0141441130
-
PHAD: Packet header anomaly detection for indentifying hostile network traffic
-
CS- 2001-4
-
M. V. Mahoney and P. K. Chan, "PHAD: Packet Header Anomaly Detection for Indentifying Hostile Network Traffic," Technical Report, Florida Tech., CS-2001-4.
-
Technical Report, Florida Tech.
-
-
Mahoney, M.V.1
Chan, P.K.2
-
21
-
-
4544360452
-
New directions in traffic measurement and accounting
-
C. Estan and G. Varghese, "New Directions in Traffic Measurement and Accounting," ACM SIGCOMM, 2002.
-
(2002)
ACM SIGCOMM
-
-
Estan, C.1
Varghese, G.2
-
22
-
-
78649816570
-
Properties and prediction of flow statistics from sampled packet streams
-
N. Duffield, C. Lund, and M. Thorup, "Properties and Prediction of Flow Statistics from Sampled Packet Streams," ACM IMW, 2002.
-
(2002)
ACM IMW
-
-
Duffield, N.1
Lund, C.2
Thorup, M.3
-
23
-
-
1242330656
-
A signal analysis of network traffic anomalies
-
P. Barford, J. Kline, D. Plonka, and A. Ron, "A Signal Analysis of Network Traffic Anomalies," ACM IMW, 2002.
-
(2002)
ACM IMW
-
-
Barford, P.1
Kline, J.2
Plonka, D.3
Ron, A.4
-
24
-
-
3543096392
-
Fast portscan detection using sequential hypothesis testing
-
J. Jung, V. Paxson, A. W. Berger, and H. Balakrishnan, "Fast portscan detection using sequential hypothesis testing," IEEE Symp S&P, 2004.
-
(2004)
IEEE Symp S&P
-
-
Jung, J.1
Paxson, V.2
Berger, A.W.3
Balakrishnan, H.4
-
26
-
-
78649872778
-
Reducing false alarm rate in anomaly detection with layered filtering
-
R. Pokrywka, "Reducing False Alarm Rate in Anomaly Detection with Layered Filtering," ICCS, 2008.
-
(2008)
ICCS
-
-
Pokrywka, R.1
-
27
-
-
61749083929
-
McPAD: A multiple classifler system for accurate payload-based anomaly detection
-
R. Perdisci, D. Ariu, P. Fogla, G. Giacinto, W. Lee, "McPAD: A multiple classifler system for accurate payload-based anomaly detection", Computer Networks, 2009.
-
(2009)
Computer Networks
-
-
Perdisci, R.1
Ariu, D.2
Fogla, P.3
Giacinto, G.4
Lee, W.5
-
28
-
-
34548337359
-
Communication-efficient online detection of network-wide anomalies
-
L. Huang, X. Nguyen, M. Garofalakis, J. M. Hellerstein, M. I. Jordan, A. D. Joseph, N. Taft, "Communication-Efficient Online Detection of Network-Wide Anomalies," IEEE Infocom, 2007.
-
(2007)
IEEE Infocom
-
-
Huang, L.1
Nguyen, X.2
Garofalakis, M.3
Hellerstein, J.M.4
Jordan, M.I.5
Joseph, A.D.6
Taft, N.7
-
29
-
-
33845633068
-
Sketch guided sampling-using on-line estimates of flow size for adaptive data collection
-
A. Kumar and J. Xu, "Sketch Guided Sampling-Using On-Line Estimates of Flow Size for Adaptive Data Collection," IEEE INFOCOM, 2006.
-
(2006)
IEEE INFOCOM
-
-
Kumar, A.1
Xu, J.2
-
30
-
-
36949004950
-
ProgME: Towards programmable network measurement
-
L. Yuan, C. Chuah, and P. Mohapatra, "ProgME: Towards Programmable Network MEasurement," ACM SIGCOMM, 2007.
-
(2007)
ACM SIGCOMM
-
-
Yuan, L.1
Chuah, C.2
Mohapatra, P.3
-
31
-
-
84999424855
-
CSAMP: A system for network-wide flow monitoring
-
V. Sekar, M. K. Reiter, W. Willinger, H. Zhang, R. R. Kompella, and D. G. Andersen, "CSAMP: A System for Network-Wide Flow Monitoring," USENIX, 2008.
-
(2008)
USENIX
-
-
Sekar, V.1
Reiter, M.K.2
Willinger, W.3
Zhang, H.4
Kompella, R.R.5
Andersen, D.G.6
-
34
-
-
84855831261
-
-
LBNL/ICSI Dataset, http://www.icir.org/enterprise-tracing/download.html.
-
LBNL/ICSI Dataset
-
-
-
35
-
-
78249285809
-
-
Endpoint Dataset, http://www.wisnet.seecs.edu.pk/projects/ENS/DataSets. html.
-
Endpoint Dataset
-
-
-
36
-
-
74049102815
-
A Comparative evaluation of anomaly detectors under portscan attacks
-
A. B. Ashfaq, M. J. Robert, A. Mumtaz, M. Q. Ali, A. Sajjad, and S. A. Khayam, "A Comparative Evaluation of Anomaly Detectors under Portscan Attacks," RAID, 2008.
-
(2008)
RAID
-
-
Ashfaq, A.B.1
Robert, M.J.2
Mumtaz, A.3
Ali, M.Q.4
Sajjad, A.5
Khayam, S.A.6
|