{"id":"https://openalex.org/W3106727479","doi":"https://doi.org/10.1109/cisp-bmei51763.2020.9263663","title":"Network Attack Detection based on Domain Attack Behavior Analysis","display_name":"Network Attack Detection based on Domain Attack Behavior Analysis","publication_year":2020,"publication_date":"2020-10-17","ids":{"openalex":"https://openalex.org/W3106727479","doi":"https://doi.org/10.1109/cisp-bmei51763.2020.9263663","mag":"3106727479"},"language":"en","primary_location":{"id":"doi:10.1109/cisp-bmei51763.2020.9263663","is_oa":false,"landing_page_url":"https://doi.org/10.1109/cisp-bmei51763.2020.9263663","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2020 13th International Congress on Image and Signal Processing, BioMedical Engineering and Informatics (CISP-BMEI)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5100435237","display_name":"Weifeng Wang","orcid":"https://orcid.org/0000-0002-4669-6029"},"institutions":[{"id":"https://openalex.org/I159948400","display_name":"Jinan University","ror":"https://ror.org/02xe5ns62","country_code":"CN","type":"education","lineage":["https://openalex.org/I159948400"]},{"id":"https://openalex.org/I34949971","display_name":"University of Jinan","ror":"https://ror.org/02mjz6f26","country_code":"CN","type":"education","lineage":["https://openalex.org/I34949971"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Weifeng Wang","raw_affiliation_strings":["University of Jinan,University of Jinan Library, School of Information Science and Engineering,Jinan,China,250022"],"affiliations":[{"raw_affiliation_string":"University of Jinan,University of Jinan Library, School of Information Science and Engineering,Jinan,China,250022","institution_ids":["https://openalex.org/I34949971","https://openalex.org/I159948400"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100390708","display_name":"Xinyu Zhang","orcid":"https://orcid.org/0000-0002-7427-5774"},"institutions":[{"id":"https://openalex.org/I34949971","display_name":"University of Jinan","ror":"https://ror.org/02mjz6f26","country_code":"CN","type":"education","lineage":["https://openalex.org/I34949971"]},{"id":"https://openalex.org/I159948400","display_name":"Jinan University","ror":"https://ror.org/02xe5ns62","country_code":"CN","type":"education","lineage":["https://openalex.org/I159948400"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Xinyu Zhang","raw_affiliation_strings":["University of Jinan,University of Jinan Library, School of Information Science and Engineering,Jinan,China,250022"],"affiliations":[{"raw_affiliation_string":"University of Jinan,University of Jinan Library, School of Information Science and Engineering,Jinan,China,250022","institution_ids":["https://openalex.org/I34949971","https://openalex.org/I159948400"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5053234933","display_name":"Likai Dong","orcid":"https://orcid.org/0000-0002-7264-1873"},"institutions":[{"id":"https://openalex.org/I34949971","display_name":"University of Jinan","ror":"https://ror.org/02mjz6f26","country_code":"CN","type":"education","lineage":["https://openalex.org/I34949971"]},{"id":"https://openalex.org/I159948400","display_name":"Jinan University","ror":"https://ror.org/02xe5ns62","country_code":"CN","type":"education","lineage":["https://openalex.org/I159948400"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Likai Dong","raw_affiliation_strings":["University of Jinan,University of Jinan Library, School of Information Science and Engineering,Jinan,China,250022"],"affiliations":[{"raw_affiliation_string":"University of Jinan,University of Jinan Library, School of Information Science and Engineering,Jinan,China,250022","institution_ids":["https://openalex.org/I34949971","https://openalex.org/I159948400"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5028752845","display_name":"Yuling Fan","orcid":"https://orcid.org/0000-0003-1312-8655"},"institutions":[{"id":"https://openalex.org/I34949971","display_name":"University of Jinan","ror":"https://ror.org/02mjz6f26","country_code":"CN","type":"education","lineage":["https://openalex.org/I34949971"]},{"id":"https://openalex.org/I159948400","display_name":"Jinan University","ror":"https://ror.org/02xe5ns62","country_code":"CN","type":"education","lineage":["https://openalex.org/I159948400"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yuling Fan","raw_affiliation_strings":["University of Jinan,University of Jinan Library, School of Information Science and Engineering,Jinan,China,250022"],"affiliations":[{"raw_affiliation_string":"University of Jinan,University of Jinan Library, School of Information Science and Engineering,Jinan,China,250022","institution_ids":["https://openalex.org/I34949971","https://openalex.org/I159948400"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5058675032","display_name":"Xinyi Diao","orcid":null},"institutions":[{"id":"https://openalex.org/I34949971","display_name":"University of Jinan","ror":"https://ror.org/02mjz6f26","country_code":"CN","type":"education","lineage":["https://openalex.org/I34949971"]},{"id":"https://openalex.org/I159948400","display_name":"Jinan University","ror":"https://ror.org/02xe5ns62","country_code":"CN","type":"education","lineage":["https://openalex.org/I159948400"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Xinyi Diao","raw_affiliation_strings":["University of Jinan,University of Jinan Library, School of Information Science and Engineering,Jinan,China,250022"],"affiliations":[{"raw_affiliation_string":"University of Jinan,University of Jinan Library, School of Information Science and Engineering,Jinan,China,250022","institution_ids":["https://openalex.org/I34949971","https://openalex.org/I159948400"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5101763059","display_name":"Tao Xu","orcid":"https://orcid.org/0000-0001-8811-1888"},"institutions":[{"id":"https://openalex.org/I159948400","display_name":"Jinan University","ror":"https://ror.org/02xe5ns62","country_code":"CN","type":"education","lineage":["https://openalex.org/I159948400"]},{"id":"https://openalex.org/I34949971","display_name":"University of Jinan","ror":"https://ror.org/02mjz6f26","country_code":"CN","type":"education","lineage":["https://openalex.org/I34949971"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Tao Xu","raw_affiliation_strings":["University of Jinan,University of Jinan Library, School of Information Science and Engineering,Jinan,China,250022"],"affiliations":[{"raw_affiliation_string":"University of Jinan,University of Jinan Library, School of Information Science and Engineering,Jinan,China,250022","institution_ids":["https://openalex.org/I34949971","https://openalex.org/I159948400"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":6,"corresponding_author_ids":["https://openalex.org/A5100435237"],"corresponding_institution_ids":["https://openalex.org/I159948400","https://openalex.org/I34949971"],"apc_list":null,"apc_paid":null,"fwci":0.3084,"has_fulltext":false,"cited_by_count":4,"citation_normalized_percentile":{"value":0.6226963,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":89,"max":96},"biblio":{"volume":null,"issue":null,"first_page":"962","last_page":"965"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10734","display_name":"Information and Cyber Security","score":0.9980000257492065,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7512527108192444},{"id":"https://openalex.org/keywords/hacker","display_name":"Hacker","score":0.7423483729362488},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.7019996643066406},{"id":"https://openalex.org/keywords/intrusion-detection-system","display_name":"Intrusion detection system","score":0.6374663710594177},{"id":"https://openalex.org/keywords/network-security","display_name":"Network security","score":0.5290046334266663},{"id":"https://openalex.org/keywords/domain","display_name":"Domain (mathematical analysis)","score":0.4847807288169861},{"id":"https://openalex.org/keywords/key","display_name":"Key (lock)","score":0.4158567190170288}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7512527108192444},{"id":"https://openalex.org/C86844869","wikidata":"https://www.wikidata.org/wiki/Q2798820","display_name":"Hacker","level":2,"score":0.7423483729362488},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.7019996643066406},{"id":"https://openalex.org/C35525427","wikidata":"https://www.wikidata.org/wiki/Q745881","display_name":"Intrusion detection system","level":2,"score":0.6374663710594177},{"id":"https://openalex.org/C182590292","wikidata":"https://www.wikidata.org/wiki/Q989632","display_name":"Network security","level":2,"score":0.5290046334266663},{"id":"https://openalex.org/C36503486","wikidata":"https://www.wikidata.org/wiki/Q11235244","display_name":"Domain (mathematical analysis)","level":2,"score":0.4847807288169861},{"id":"https://openalex.org/C26517878","wikidata":"https://www.wikidata.org/wiki/Q228039","display_name":"Key (lock)","level":2,"score":0.4158567190170288},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.0},{"id":"https://openalex.org/C134306372","wikidata":"https://www.wikidata.org/wiki/Q7754","display_name":"Mathematical analysis","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/cisp-bmei51763.2020.9263663","is_oa":false,"landing_page_url":"https://doi.org/10.1109/cisp-bmei51763.2020.9263663","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2020 13th International Congress on Image and Signal Processing, BioMedical Engineering and Informatics (CISP-BMEI)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"score":0.5600000023841858,"id":"https://metadata.un.org/sdg/16","display_name":"Peace, Justice and strong institutions"}],"awards":[],"funders":[{"id":"https://openalex.org/F4320322291","display_name":"University of Jinan","ror":"https://ror.org/02mjz6f26"}],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":5,"referenced_works":["https://openalex.org/W2084590457","https://openalex.org/W2896777396","https://openalex.org/W2958688953","https://openalex.org/W2979323854","https://openalex.org/W3004179294"],"related_works":["https://openalex.org/W2376886931","https://openalex.org/W2061466315","https://openalex.org/W2010561419","https://openalex.org/W2374845301","https://openalex.org/W2351448539","https://openalex.org/W1977863481","https://openalex.org/W2384741105","https://openalex.org/W1495178644","https://openalex.org/W2185594426","https://openalex.org/W2377372927"],"abstract_inverted_index":{"Network":[0],"security":[1,59,200],"has":[2,15],"become":[3],"an":[4],"important":[5],"issue":[6],"in":[7,179],"our":[8],"work":[9],"and":[10,37,52,115,120,140,155,182,197],"life.":[11],"Hackers'":[12],"attack":[13,20,32,77,104,135,163,172],"mode":[14],"been":[16,85],"upgraded":[17],"from":[18,109],"normal":[19],"to":[21],"APT(":[22],"Advanced":[23],"Persistent":[24],"Threat,":[25],"APT)":[26],"attack.":[27],"The":[28],"key":[29],"of":[30,39,58,61,80,170,189],"APT":[31],"chain":[33],"is":[34,153],"the":[35,49,96,126,131,133,143,147,161,168,176,185],"penetration":[36],"intrusion":[38,99,150,187],"active":[40],"directory,":[41],"which":[42,192],"can":[43,174],"not":[44,83],"be":[45],"completely":[46],"detected":[47],"via":[48],"traditional":[50],"IDS":[51],"antivirus":[53],"software.":[54],"Further":[55],"more,":[56],"lack":[57],"protection":[60],"existing":[62],"solutions":[63],"for":[64,75,118],"domain":[65,76,98,102,134,149,171],"control":[66],"aggravates":[67],"this":[68,92],"problem.":[69],"Although":[70],"researchers":[71],"have":[72,82],"proposed":[73],"methods":[74],"detection,":[78],"many":[79],"them":[81],"yet":[84],"converted":[86],"into":[87,142],"effective":[88],"market-oriented":[89],"products.":[90],"In":[91],"paper,":[93],"we":[94],"analyzes":[95],"common":[97,116],"methods,":[100],"various":[101],"related":[103],"behavior":[105,173,188],"characteristics":[106],"were":[107],"extracted":[108],"ATT&CK":[110],"matrix":[111],"(Advanced":[112],"tactics,":[113],"techniques,":[114],"knowledge)":[117],"analysis":[119,144,169],"simulation":[121],"test.":[122],"Based":[123],"on":[124,167],"analyzing":[125],"log":[127,177],"file":[128,178],"generated":[129],"by":[130],"attack,":[132],"detection":[136,151,164],"rules":[137],"are":[138],"established":[139],"input":[141],"engine.":[145],"Finally,":[146],"available":[148],"system":[152],"designed":[154],"implemented.":[156],"Experimental":[157],"results":[158],"show":[159],"that":[160],"network":[162,199],"method":[165],"based":[166],"analyze":[175],"real":[180],"time":[181],"effectively":[183],"detect":[184],"malicious":[186],"hackers":[190],",":[191],"could":[193],"facilitate":[194],"managers":[195],"find":[196],"eliminate":[198],"threats":[201],"immediately.":[202]},"counts_by_year":[{"year":2025,"cited_by_count":2},{"year":2023,"cited_by_count":1},{"year":2021,"cited_by_count":1}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
