{"id":"https://openalex.org/W3195857193","doi":"https://doi.org/10.1002/cpe.6561","title":"A fast and accurate threat detection and prevention architecture using stream processing","display_name":"A fast and accurate threat detection and prevention architecture using stream processing","publication_year":2021,"publication_date":"2021-08-13","ids":{"openalex":"https://openalex.org/W3195857193","doi":"https://doi.org/10.1002/cpe.6561","mag":"3195857193"},"language":"en","primary_location":{"is_oa":false,"landing_page_url":"https://doi.org/10.1002/cpe.6561","pdf_url":null,"source":{"id":"https://openalex.org/S11065456","display_name":"Concurrency and Computation Practice and Experience","issn_l":"1532-0626","issn":["1532-0626","1532-0634"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320595","host_organization_name":"Wiley","host_organization_lineage":["https://openalex.org/P4310320595"],"host_organization_lineage_names":["Wiley"],"type":"journal"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":false},"type":"article","type_crossref":"journal-article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5007963200","display_name":"Antonio Gonzalez Pastana Lobato","orcid":"https://orcid.org/0000-0002-1544-2333"},"institutions":[{"id":"https://openalex.org/I122140584","display_name":"Universidade Federal do Rio de Janeiro","ror":"https://ror.org/03490as77","country_code":"BR","type":"education","lineage":["https://openalex.org/I122140584"]}],"countries":["BR"],"is_corresponding":false,"raw_author_name":"Antonio G. Pastana Lobato","raw_affiliation_strings":["GTA/COPPE/UFRJ, Universidade Federal do Rio de Janeiro, Rio de Janeiro, Brazil"],"affiliations":[{"raw_affiliation_string":"GTA/COPPE/UFRJ, Universidade Federal do Rio de Janeiro, Rio de Janeiro, Brazil","institution_ids":["https://openalex.org/I122140584"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5025235658","display_name":"Martin Andreoni Lopez","orcid":"https://orcid.org/0000-0002-4170-4341"},"institutions":[{"id":"https://openalex.org/I122140584","display_name":"Universidade Federal do Rio de Janeiro","ror":"https://ror.org/03490as77","country_code":"BR","type":"education","lineage":["https://openalex.org/I122140584"]},{"id":"https://openalex.org/I39804081","display_name":"Sorbonne Universit\u00e9","ror":"https://ror.org/02en5vm52","country_code":"FR","type":"education","lineage":["https://openalex.org/I39804081"]},{"id":"https://openalex.org/I4210159731","display_name":"Laboratoire de Recherche en Informatique de Paris 6","ror":"https://ror.org/05krcen59","country_code":"FR","type":"facility","lineage":["https://openalex.org/I1294671590","https://openalex.org/I39804081","https://openalex.org/I4210159245","https://openalex.org/I4210159731"]},{"id":"https://openalex.org/I1294671590","display_name":"Centre National de la Recherche Scientifique","ror":"https://ror.org/02feahw73","country_code":"FR","type":"government","lineage":["https://openalex.org/I1294671590"]}],"countries":["BR","FR"],"is_corresponding":false,"raw_author_name":"Martin Andreoni Lopez","raw_affiliation_strings":["GTA/COPPE/UFRJ, Universidade Federal do Rio de Janeiro, Rio de Janeiro, Brazil","Laboratoire d'Informatique de Paris 6, CNRS Sorbonne Universit\u00e9 Paris France"],"affiliations":[{"raw_affiliation_string":"GTA/COPPE/UFRJ, Universidade Federal do Rio de Janeiro, Rio de Janeiro, Brazil","institution_ids":["https://openalex.org/I122140584"]},{"raw_affiliation_string":"Laboratoire d'Informatique de Paris 6, CNRS Sorbonne Universit\u00e9 Paris France","institution_ids":["https://openalex.org/I39804081","https://openalex.org/I4210159731","https://openalex.org/I1294671590"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5016892225","display_name":"\u00c1lvaro A. C\u00e1rdenas","orcid":"https://orcid.org/0000-0002-5142-9750"},"institutions":[{"id":"https://openalex.org/I185103710","display_name":"University of California, Santa Cruz","ror":"https://ror.org/03s65by71","country_code":"US","type":"education","lineage":["https://openalex.org/I185103710"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Alvaro A. Cardenas","raw_affiliation_strings":["Department of Computer Science and Engineering, University of California, Santa Cruz, Santa Cruz, CA, USA"],"affiliations":[{"raw_affiliation_string":"Department of Computer Science and Engineering, University of California, Santa Cruz, Santa Cruz, CA, USA","institution_ids":["https://openalex.org/I185103710"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5026700596","display_name":"Otto Carlos M. B. Duarte","orcid":"https://orcid.org/0000-0002-6642-4100"},"institutions":[{"id":"https://openalex.org/I122140584","display_name":"Universidade Federal do Rio de Janeiro","ror":"https://ror.org/03490as77","country_code":"BR","type":"education","lineage":["https://openalex.org/I122140584"]}],"countries":["BR"],"is_corresponding":true,"raw_author_name":"Otto Carlos M. B. Duarte","raw_affiliation_strings":["GTA/COPPE/UFRJ, Universidade Federal do Rio de Janeiro, Rio de Janeiro, Brazil"],"affiliations":[{"raw_affiliation_string":"GTA/COPPE/UFRJ, Universidade Federal do Rio de Janeiro, Rio de Janeiro, Brazil","institution_ids":["https://openalex.org/I122140584"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5104962716","display_name":"Guy Pujolle","orcid":"https://orcid.org/0000-0003-4147-7270"},"institutions":[{"id":"https://openalex.org/I39804081","display_name":"Sorbonne Universit\u00e9","ror":"https://ror.org/02en5vm52","country_code":"FR","type":"education","lineage":["https://openalex.org/I39804081"]},{"id":"https://openalex.org/I4210159731","display_name":"Laboratoire de Recherche en Informatique de Paris 6","ror":"https://ror.org/05krcen59","country_code":"FR","type":"facility","lineage":["https://openalex.org/I1294671590","https://openalex.org/I39804081","https://openalex.org/I4210159245","https://openalex.org/I4210159731"]},{"id":"https://openalex.org/I1294671590","display_name":"Centre National de la Recherche Scientifique","ror":"https://ror.org/02feahw73","country_code":"FR","type":"government","lineage":["https://openalex.org/I1294671590"]}],"countries":["FR"],"is_corresponding":false,"raw_author_name":"Guy Pujolle","raw_affiliation_strings":["Laboratoire d'Informatique de Paris 6, CNRS Sorbonne Universit\u00e9 Paris France"],"affiliations":[{"raw_affiliation_string":"Laboratoire d'Informatique de Paris 6, CNRS Sorbonne Universit\u00e9 Paris France","institution_ids":["https://openalex.org/I39804081","https://openalex.org/I4210159731","https://openalex.org/I1294671590"]}]}],"institution_assertions":[],"countries_distinct_count":3,"institutions_distinct_count":5,"corresponding_author_ids":["https://openalex.org/A5026700596"],"corresponding_institution_ids":["https://openalex.org/I122140584"],"apc_list":{"value":4740,"currency":"USD","value_usd":4740,"provenance":"doaj"},"apc_paid":null,"fwci":0.542,"has_fulltext":false,"cited_by_count":4,"citation_normalized_percentile":{"value":0.999938,"is_in_top_1_percent":true,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":76,"max":78},"biblio":{"volume":"34","issue":"3","first_page":null,"last_page":null},"is_retracted":false,"is_paratext":false,"primary_topic":{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11598","display_name":"Internet Traffic Analysis and Secure E-voting","score":0.9996,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9944,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/spoofing-attack","display_name":"Spoofing attack","score":0.7133649}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.82845473},{"id":"https://openalex.org/C167900197","wikidata":"https://www.wikidata.org/wiki/Q11081100","display_name":"Spoofing attack","level":2,"score":0.7133649},{"id":"https://openalex.org/C158379750","wikidata":"https://www.wikidata.org/wiki/Q214111","display_name":"Network packet","level":2,"score":0.7033963},{"id":"https://openalex.org/C110875604","wikidata":"https://www.wikidata.org/wiki/Q75","display_name":"The Internet","level":2,"score":0.5268242},{"id":"https://openalex.org/C739882","wikidata":"https://www.wikidata.org/wiki/Q3560506","display_name":"Anomaly detection","level":2,"score":0.52087927},{"id":"https://openalex.org/C182590292","wikidata":"https://www.wikidata.org/wiki/Q989632","display_name":"Network security","level":2,"score":0.4687106},{"id":"https://openalex.org/C35525427","wikidata":"https://www.wikidata.org/wiki/Q745881","display_name":"Intrusion detection system","level":2,"score":0.45933902},{"id":"https://openalex.org/C79403827","wikidata":"https://www.wikidata.org/wiki/Q3988","display_name":"Real-time computing","level":1,"score":0.41850823},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.41566002},{"id":"https://openalex.org/C31258907","wikidata":"https://www.wikidata.org/wiki/Q1301371","display_name":"Computer network","level":1,"score":0.37771213},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.36126024},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.10243967}],"mesh":[],"locations_count":2,"locations":[{"is_oa":false,"landing_page_url":"https://doi.org/10.1002/cpe.6561","pdf_url":null,"source":{"id":"https://openalex.org/S11065456","display_name":"Concurrency and Computation Practice and Experience","issn_l":"1532-0626","issn":["1532-0626","1532-0634"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320595","host_organization_name":"Wiley","host_organization_lineage":["https://openalex.org/P4310320595"],"host_organization_lineage_names":["Wiley"],"type":"journal"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":false},{"is_oa":false,"landing_page_url":"https://hal.science/hal-03920611","pdf_url":null,"source":{"id":"https://openalex.org/S4306402512","display_name":"HAL (Le Centre pour la Communication Scientifique Directe)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I1294671590","host_organization_name":"Centre National de la Recherche Scientifique","host_organization_lineage":["https://openalex.org/I1294671590"],"host_organization_lineage_names":["Centre National de la Recherche Scientifique"],"type":"repository"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":false}],"best_oa_location":null,"sustainable_development_goals":[],"grants":[],"datasets":[],"versions":[],"referenced_works_count":46,"referenced_works":["https://openalex.org/W1571568546","https://openalex.org/W1635892993","https://openalex.org/W1851843436","https://openalex.org/W1980794459","https://openalex.org/W1984438447","https://openalex.org/W1985987493","https://openalex.org/W1999644179","https://openalex.org/W2012568697","https://openalex.org/W2018277822","https://openalex.org/W2025001960","https://openalex.org/W2044439547","https://openalex.org/W2076459109","https://openalex.org/W2077488147","https://openalex.org/W2089301155","https://openalex.org/W2096070451","https://openalex.org/W2098266409","https://openalex.org/W2099940443","https://openalex.org/W2108132694","https://openalex.org/W2124808847","https://openalex.org/W2129827899","https://openalex.org/W2130613448","https://openalex.org/W2154412916","https://openalex.org/W2155317309","https://openalex.org/W2212753854","https://openalex.org/W2266096763","https://openalex.org/W2291943985","https://openalex.org/W2342408547","https://openalex.org/W2532764181","https://openalex.org/W2559341072","https://openalex.org/W2559944106","https://openalex.org/W2586025740","https://openalex.org/W2791055416","https://openalex.org/W2791319131","https://openalex.org/W2887492447","https://openalex.org/W2897774248","https://openalex.org/W2899235912","https://openalex.org/W2900725446","https://openalex.org/W2909437060","https://openalex.org/W2920901101","https://openalex.org/W2946704785","https://openalex.org/W2955559202","https://openalex.org/W2955681899","https://openalex.org/W3008193351","https://openalex.org/W3009746682","https://openalex.org/W3138598418","https://openalex.org/W4232915056"],"related_works":["https://openalex.org/W3157271777","https://openalex.org/W2614907253","https://openalex.org/W2384741105","https://openalex.org/W2377372927","https://openalex.org/W2376886931","https://openalex.org/W2374845301","https://openalex.org/W2351448539","https://openalex.org/W2061466315","https://openalex.org/W2010561419","https://openalex.org/W1977863481"],"abstract_inverted_index":{"Summary":[0],"Late":[1],"detection":[2,24,115,131],"of":[3,9,32,57,75,85,157],"security":[4],"breaches":[5],"increases":[6],"the":[7,30,68,71,83,153,175],"risk":[8],"irreparable":[10],"damages":[11],"and":[12,21,25,50,53,67,107,112,125,132,163,169],"limits":[13],"any":[14],"mitigation":[15],"attempts.":[16],"We":[17,42,80,105,135],"propose":[18,54,137],"a":[19,39,44,64,94,158],"fast":[20],"accurate":[22],"threat":[23],"prevention":[26],"architecture":[27],"that":[28,146],"combines":[29],"advantages":[31],"real\u2010time":[33],"streaming":[34],"with":[35],"batch":[36],"processing":[37],"over":[38],"historical":[40],"database.":[41],"create":[43],"dataset":[45],"by":[46,150],"capturing":[47],"both":[48],"legitimate":[49],"malicious":[51],"traffic":[52],"two":[55,113],"ways":[56],"combining":[58],"packets":[59,74,156],"into":[60],"flows,":[61],"one":[62],"considering":[63],"time":[65],"window":[66],"other":[69],"analyzing":[70,151],"first":[72,154],"few":[73,155],"each":[76],"flow":[77],"per":[78],"period.":[79],"also":[81],"investigate":[82],"effectiveness":[84],"our":[86],"proposal":[87,161],"on":[88,142],"real\u2010world":[89],"network":[90,97],"traces":[91],"obtained":[92],"from":[93],"significant":[95],"Brazilian":[96],"operator":[98],"providing":[99],"broadband":[100],"Internet":[101],"to":[102],"their":[103],"customers.":[104],"implement":[106],"evaluate":[108],"three":[109],"classification":[110],"algorithms":[111],"anomaly":[114],"methods.":[116],"The":[117,160],"results":[118],"show":[119],"an":[120,126,138],"accuracy":[121],"higher":[122],"than":[123],"95%":[124],"excellent":[127],"trade\u2010off":[128],"between":[129],"attack":[130],"false\u2010positive":[133],"rates.":[134],"further":[136],"improved":[139],"scheme":[140],"based":[141],"software":[143],"defined":[144],"networks":[145],"automatically":[147],"prevents":[148],"threats":[149],"only":[152],"flow.":[159],"promptly":[162],"efficiently":[164],"blocks":[165],"threats,":[166],"is":[167],"robust,":[168],"can":[170],"scale":[171],"up,":[172],"even":[173],"when":[174],"attacker":[176],"employs":[177],"spoofed":[178],"IP.":[179]},"cited_by_api_url":"https://api.openalex.org/works?filter=cites:W3195857193","counts_by_year":[{"year":2024,"cited_by_count":1},{"year":2023,"cited_by_count":1},{"year":2022,"cited_by_count":1},{"year":2021,"cited_by_count":1}],"updated_date":"2025-01-06T20:51:55.521239","created_date":"2021-08-30"}