{"id":"https://openalex.org/W3089157269","doi":"https://doi.org/10.1109/is48319.2020.9199976","title":"Log Files Analysis For Network Intrusion Detection","display_name":"Log Files Analysis For Network Intrusion Detection","publication_year":2020,"publication_date":"2020-08-01","ids":{"openalex":"https://openalex.org/W3089157269","doi":"https://doi.org/10.1109/is48319.2020.9199976","mag":"3089157269"},"language":"en","primary_location":{"id":"doi:10.1109/is48319.2020.9199976","is_oa":false,"landing_page_url":"https://doi.org/10.1109/is48319.2020.9199976","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2020 IEEE 10th International Conference on Intelligent Systems (IS)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5072123869","display_name":"Andr\u00e9 Brand\u00e3o","orcid":"https://orcid.org/0000-0002-3005-5323"},"institutions":[{"id":"https://openalex.org/I60858718","display_name":"University of Aveiro","ror":"https://ror.org/00nt41z93","country_code":"PT","type":"education","lineage":["https://openalex.org/I60858718"]}],"countries":["PT"],"is_corresponding":true,"raw_author_name":"Andre Brandao","raw_affiliation_strings":["Department of Electronics, IEETA University of Aveiro, Aveiro, Portugal"],"affiliations":[{"raw_affiliation_string":"Department of Electronics, IEETA University of Aveiro, Aveiro, Portugal","institution_ids":["https://openalex.org/I60858718"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5041531122","display_name":"P\u00e9tia Georgieva","orcid":"https://orcid.org/0000-0002-6424-6590"},"institutions":[{"id":"https://openalex.org/I60858718","display_name":"University of Aveiro","ror":"https://ror.org/00nt41z93","country_code":"PT","type":"education","lineage":["https://openalex.org/I60858718"]}],"countries":["PT"],"is_corresponding":false,"raw_author_name":"Petia Georgieva","raw_affiliation_strings":["Department of Electronics, IEETA University of Aveiro, Aveiro, Portugal"],"affiliations":[{"raw_affiliation_string":"Department of Electronics, IEETA University of Aveiro, Aveiro, Portugal","institution_ids":["https://openalex.org/I60858718"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":2,"corresponding_author_ids":["https://openalex.org/A5072123869"],"corresponding_institution_ids":["https://openalex.org/I60858718"],"apc_list":null,"apc_paid":null,"fwci":1.0792,"has_fulltext":false,"cited_by_count":19,"citation_normalized_percentile":{"value":0.79623351,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":94,"max":99},"biblio":{"volume":null,"issue":null,"first_page":"328","last_page":"333"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9991000294685364,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11598","display_name":"Internet Traffic Analysis and Secure E-voting","score":0.9986000061035156,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7952986359596252},{"id":"https://openalex.org/keywords/intrusion-detection-system","display_name":"Intrusion detection system","score":0.7067265510559082},{"id":"https://openalex.org/keywords/discriminative-model","display_name":"Discriminative model","score":0.6163040995597839},{"id":"https://openalex.org/keywords/dashboard","display_name":"Dashboard","score":0.5898005962371826},{"id":"https://openalex.org/keywords/decision-tree","display_name":"Decision tree","score":0.5592237710952759},{"id":"https://openalex.org/keywords/network-forensics","display_name":"Network forensics","score":0.5044635534286499},{"id":"https://openalex.org/keywords/network-security","display_name":"Network security","score":0.486417293548584},{"id":"https://openalex.org/keywords/data-mining","display_name":"Data mining","score":0.47255274653434753},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.38934382796287537},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.21002167463302612},{"id":"https://openalex.org/keywords/database","display_name":"Database","score":0.19667154550552368},{"id":"https://openalex.org/keywords/digital-forensics","display_name":"Digital forensics","score":0.11690106987953186}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7952986359596252},{"id":"https://openalex.org/C35525427","wikidata":"https://www.wikidata.org/wiki/Q745881","display_name":"Intrusion detection system","level":2,"score":0.7067265510559082},{"id":"https://openalex.org/C97931131","wikidata":"https://www.wikidata.org/wiki/Q5282087","display_name":"Discriminative model","level":2,"score":0.6163040995597839},{"id":"https://openalex.org/C33499554","wikidata":"https://www.wikidata.org/wiki/Q1417134","display_name":"Dashboard","level":2,"score":0.5898005962371826},{"id":"https://openalex.org/C84525736","wikidata":"https://www.wikidata.org/wiki/Q831366","display_name":"Decision tree","level":2,"score":0.5592237710952759},{"id":"https://openalex.org/C50747538","wikidata":"https://www.wikidata.org/wiki/Q7001032","display_name":"Network forensics","level":3,"score":0.5044635534286499},{"id":"https://openalex.org/C182590292","wikidata":"https://www.wikidata.org/wiki/Q989632","display_name":"Network security","level":2,"score":0.486417293548584},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.47255274653434753},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.38934382796287537},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.21002167463302612},{"id":"https://openalex.org/C77088390","wikidata":"https://www.wikidata.org/wiki/Q8513","display_name":"Database","level":1,"score":0.19667154550552368},{"id":"https://openalex.org/C84418412","wikidata":"https://www.wikidata.org/wiki/Q3246940","display_name":"Digital forensics","level":2,"score":0.11690106987953186}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/is48319.2020.9199976","is_oa":false,"landing_page_url":"https://doi.org/10.1109/is48319.2020.9199976","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2020 IEEE 10th International Conference on Intelligent Systems (IS)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/10","score":0.6399999856948853,"display_name":"Reduced inequalities"}],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":17,"referenced_works":["https://openalex.org/W205885184","https://openalex.org/W1483650506","https://openalex.org/W1990089904","https://openalex.org/W2098000029","https://openalex.org/W2142726658","https://openalex.org/W2157665255","https://openalex.org/W2189369254","https://openalex.org/W2895211999","https://openalex.org/W2898726669","https://openalex.org/W2903306539","https://openalex.org/W2926251634","https://openalex.org/W2978864691","https://openalex.org/W4391726932","https://openalex.org/W6608457852","https://openalex.org/W6674852975","https://openalex.org/W6683235873","https://openalex.org/W6755327082"],"related_works":["https://openalex.org/W2061466315","https://openalex.org/W2376886931","https://openalex.org/W1992118813","https://openalex.org/W2010561419","https://openalex.org/W2374845301","https://openalex.org/W2351448539","https://openalex.org/W1977863481","https://openalex.org/W2035643924","https://openalex.org/W2384741105","https://openalex.org/W1495178644"],"abstract_inverted_index":{"Information":[0],"security":[1,20,48],"remains":[2],"an":[3,78,87],"unsolved":[4],"challenge":[5],"for":[6],"organizations,":[7],"because":[8],"every":[9],"day":[10],"brings":[11],"new":[12,25],"and":[13,44,106],"sophisticated":[14],"cyber-attacks.":[15],"The":[16,96,133],"implementation":[17],"of":[18,38,56,67],"network":[19],"operation":[21],"systems":[22,51],"is":[23,136],"a":[24,53,118],"trend":[26],"in":[27,36],"the":[28,33,65,72,107,115,127,131,139],"companies,":[29],"to":[30,42,60,64,70,85],"permanently":[31],"monitor":[32],"logs":[34,57,97],"and,":[35],"case":[37],"any":[39,47],"anomalous":[40],"traffic,":[41],"detect":[43],"hopefully":[45],"prevent":[46],"incident.":[49],"These":[50],"generate":[52],"huge":[54],"amount":[55],"per":[58],"second":[59],"be":[61],"handled,":[62],"leading":[63],"need":[66],"automated":[68],"ways":[69],"identify":[71],"cyber-attacks.In":[73],"this":[74],"paper":[75],"we":[76],"propose":[77],"effective":[79],"Log-based":[80],"Intrusion":[81],"Detection":[82],"System":[83],"(LIDS),":[84],"predict":[86],"attack":[88,116],"or":[89],"not,":[90],"based":[91],"on":[92],"carefully":[93],"selected":[94],"features.":[95],"from":[98],"various":[99],"sources":[100],"are":[101,111],"aggregated":[102],"into":[103],"one":[104],"dashboard":[105],"most":[108],"discriminative":[109],"features":[110],"first":[112],"determined.":[113],"For":[114],"prediction,":[117],"few":[119],"machine":[120],"learning":[121],"techniques":[122],"were":[123],"comparatively":[124],"tested,":[125],"with":[126,138],"Decision":[128],"tree":[129],"being":[130],"winner.":[132],"proposed":[134],"system":[135],"illustrated":[137],"largest":[140],"publicly":[141],"available":[142],"labelled":[143],"log":[144],"file":[145],"dataset":[146],"KDD":[147],"Cup":[148],"1999.":[149]},"counts_by_year":[{"year":2026,"cited_by_count":1},{"year":2025,"cited_by_count":9},{"year":2024,"cited_by_count":2},{"year":2023,"cited_by_count":5},{"year":2022,"cited_by_count":2}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
