{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2024,10,29]],"date-time":"2024-10-29T20:03:48Z","timestamp":1730232228292,"version":"3.28.0"},"reference-count":27,"publisher":"IEEE","license":[{"start":{"date-parts":[[2021,6,1]],"date-time":"2021-06-01T00:00:00Z","timestamp":1622505600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2021,6,1]],"date-time":"2021-06-01T00:00:00Z","timestamp":1622505600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2021,6,1]],"date-time":"2021-06-01T00:00:00Z","timestamp":1622505600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"DOI":"10.13039\/100000001","name":"National Science Foundation","doi-asserted-by":"publisher","id":[{"id":"10.13039\/100000001","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2021,6]]},"DOI":"10.1109\/icc42927.2021.9500859","type":"proceedings-article","created":{"date-parts":[[2021,8,6]],"date-time":"2021-08-06T16:49:21Z","timestamp":1628268561000},"page":"1-7","source":"Crossref","is-referenced-by-count":5,"title":["Analysis of Attacker Behavior in Compromised Hosts During Command and Control"],"prefix":"10.1109","author":[{"given":"Farhan","family":"Sadique","sequence":"first","affiliation":[]},{"given":"Shamik","family":"Sengupta","sequence":"additional","affiliation":[]}],"member":"263","reference":[{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1109\/CIT.2007.90"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1109\/ccnc08.2007.112"},{"key":"ref12","article-title":"Botnet detection and response","author":"dagon","year":"2005","journal-title":"OARC Workshop"},{"key":"ref13","article-title":"The domain name service as an ids","author":"schonewille","year":"2006","journal-title":"Research Project for the Master System-and Network Engineering at the University of Amsterdam"},{"key":"ref14","first-page":"1","article-title":"A virtual honeypot framework","volume":"173","author":"provos","year":"2004","journal-title":"USENIX Security Symposium"},{"article-title":"Cowrie ssh\/telnet honeypot","year":"2016","author":"oosterhof","key":"ref15"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-05366-6_33"},{"key":"ref17","article-title":"Using reinforcement learning to conceal honeypot functionality","author":"dowling","year":"2018","journal-title":"Proc Eur Conf Mach Learn Knowl Discovery Databases"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1109\/MILCOM.2017.8170867"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1109\/ISSRE.2018.00032"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1145\/1653662.1653738"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1002\/j.1538-7305.1950.tb00463.x"},{"key":"ref3","first-page":"1093","article-title":"Understanding the mirai botnet","author":"antonakakis","year":"2017","journal-title":"26th USENIX Security Symposium ( USENIX Security 17)"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1016\/j.jnca.2012.09.004"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1145\/1920261.1920285"},{"key":"ref8","first-page":"7","article-title":"An algorithm for anomaly-based botnet detection","volume":"6","author":"binkley","year":"2006","journal-title":"SRUTI"},{"key":"ref7","first-page":"7","article-title":"Wide-scale botnet detection and characterization","volume":"7","author":"karasaridis","year":"2007","journal-title":"HOTBOTS"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1109\/SECURWARE.2009.48"},{"article-title":"Botsniffer: Detecting botnet command and control channels in network traffic","year":"2008","author":"gu","key":"ref9"},{"key":"ref1","article-title":"Bots & botnet: An overview","volume":"3","author":"puri","year":"2003","journal-title":"SANS Institute"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1109\/CCWC47524.2020.9031234"},{"key":"ref22","article-title":"Temporal and stochastic modelling of attacker behaviour","author":"rade","year":"2018","journal-title":"international conference on intelligent information technologies"},{"article-title":"Attacker behaviour profiling using stochastic ensemble of hidden markov models","year":"2019","author":"deshmukh","key":"ref21"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1109\/CCWC.2019.8666600"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1109\/TPAMI.2007.1078"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1145\/359581.359603"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.17487\/rfc5246"}],"event":{"name":"ICC 2021 - IEEE International Conference on Communications","start":{"date-parts":[[2021,6,14]]},"location":"Montreal, QC, Canada","end":{"date-parts":[[2021,6,23]]}},"container-title":["ICC 2021 - IEEE International Conference on Communications"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/9500243\/9500244\/09500859.pdf?arnumber=9500859","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,5,10]],"date-time":"2022-05-10T11:44:09Z","timestamp":1652183049000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/9500859\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2021,6]]},"references-count":27,"URL":"https:\/\/doi.org\/10.1109\/icc42927.2021.9500859","relation":{},"subject":[],"published":{"date-parts":[[2021,6]]}}}