{"id":"https://openalex.org/W3163962598","doi":"https://doi.org/10.1145/3433210.3453083","title":"Filtering DDoS Attacks from Unlabeled Network Traffic Data Using Online Deep Learning","display_name":"Filtering DDoS Attacks from Unlabeled Network Traffic Data Using Online Deep Learning","publication_year":2021,"publication_date":"2021-05-24","ids":{"openalex":"https://openalex.org/W3163962598","doi":"https://doi.org/10.1145/3433210.3453083","mag":"3163962598"},"language":"en","primary_location":{"id":"doi:10.1145/3433210.3453083","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3433210.3453083","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3433210.3453083","source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2021 ACM Asia Conference on Computer and Communications Security","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"gold","oa_url":"https://dl.acm.org/doi/pdf/10.1145/3433210.3453083","any_repository_has_fulltext":null},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5066428042","display_name":"Wesley Joon-Wie Tann","orcid":"https://orcid.org/0000-0002-5595-531X"},"institutions":[{"id":"https://openalex.org/I165932596","display_name":"National University of Singapore","ror":"https://ror.org/01tgyzw49","country_code":"SG","type":"education","lineage":["https://openalex.org/I165932596"]}],"countries":["SG"],"is_corresponding":true,"raw_author_name":"Wesley Joon-Wie Tann","raw_affiliation_strings":["National University of Singapore, Singapore, Singapore"],"affiliations":[{"raw_affiliation_string":"National University of Singapore, Singapore, Singapore","institution_ids":["https://openalex.org/I165932596"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5112643862","display_name":"Jackie Tan","orcid":null},"institutions":[{"id":"https://openalex.org/I165932596","display_name":"National University of Singapore","ror":"https://ror.org/01tgyzw49","country_code":"SG","type":"education","lineage":["https://openalex.org/I165932596"]}],"countries":["SG"],"is_corresponding":false,"raw_author_name":"Jackie Jin Wei Tan","raw_affiliation_strings":["National University of Singapore, Singapore, Singapore"],"affiliations":[{"raw_affiliation_string":"National University of Singapore, Singapore, Singapore","institution_ids":["https://openalex.org/I165932596"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5019782016","display_name":"Joanna Purba","orcid":null},"institutions":[{"id":"https://openalex.org/I165932596","display_name":"National University of Singapore","ror":"https://ror.org/01tgyzw49","country_code":"SG","type":"education","lineage":["https://openalex.org/I165932596"]}],"countries":["SG"],"is_corresponding":false,"raw_author_name":"Joanna Purba","raw_affiliation_strings":["National University of Singapore, Singapore, Singapore"],"affiliations":[{"raw_affiliation_string":"National University of Singapore, Singapore, Singapore","institution_ids":["https://openalex.org/I165932596"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5105408906","display_name":"Ee\u2010Chien Chang","orcid":"https://orcid.org/0000-0003-4613-0866"},"institutions":[{"id":"https://openalex.org/I165932596","display_name":"National University of Singapore","ror":"https://ror.org/01tgyzw49","country_code":"SG","type":"education","lineage":["https://openalex.org/I165932596"]}],"countries":["SG"],"is_corresponding":false,"raw_author_name":"Ee-Chien Chang","raw_affiliation_strings":["National University of Singapore, Singapore, Singapore"],"affiliations":[{"raw_affiliation_string":"National University of Singapore, Singapore, Singapore","institution_ids":["https://openalex.org/I165932596"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5066428042"],"corresponding_institution_ids":["https://openalex.org/I165932596"],"apc_list":null,"apc_paid":null,"fwci":0.9547,"has_fulltext":true,"cited_by_count":6,"citation_normalized_percentile":{"value":0.76491735,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":89,"max":96},"biblio":{"volume":null,"issue":null,"first_page":"432","last_page":"446"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11598","display_name":"Internet Traffic Analysis and Secure E-voting","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.996999979019165,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8022170066833496},{"id":"https://openalex.org/keywords/leverage","display_name":"Leverage (statistics)","score":0.725455641746521},{"id":"https://openalex.org/keywords/deep-learning","display_name":"Deep learning","score":0.696729838848114},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.6605240106582642},{"id":"https://openalex.org/keywords/anomaly-detection","display_name":"Anomaly detection","score":0.6544764637947083},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.5920777320861816},{"id":"https://openalex.org/keywords/transfer-of-learning","display_name":"Transfer of learning","score":0.564787745475769},{"id":"https://openalex.org/keywords/exploit","display_name":"Exploit","score":0.5420315265655518},{"id":"https://openalex.org/keywords/online-learning","display_name":"Online learning","score":0.5400984287261963},{"id":"https://openalex.org/keywords/unsupervised-learning","display_name":"Unsupervised learning","score":0.5256812572479248},{"id":"https://openalex.org/keywords/labeled-data","display_name":"Labeled data","score":0.5209937691688538},{"id":"https://openalex.org/keywords/online-algorithm","display_name":"Online algorithm","score":0.4172893464565277},{"id":"https://openalex.org/keywords/algorithm","display_name":"Algorithm","score":0.11530780792236328},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.08620548248291016}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8022170066833496},{"id":"https://openalex.org/C153083717","wikidata":"https://www.wikidata.org/wiki/Q6535263","display_name":"Leverage (statistics)","level":2,"score":0.725455641746521},{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.696729838848114},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.6605240106582642},{"id":"https://openalex.org/C739882","wikidata":"https://www.wikidata.org/wiki/Q3560506","display_name":"Anomaly detection","level":2,"score":0.6544764637947083},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.5920777320861816},{"id":"https://openalex.org/C150899416","wikidata":"https://www.wikidata.org/wiki/Q1820378","display_name":"Transfer of learning","level":2,"score":0.564787745475769},{"id":"https://openalex.org/C165696696","wikidata":"https://www.wikidata.org/wiki/Q11287","display_name":"Exploit","level":2,"score":0.5420315265655518},{"id":"https://openalex.org/C2986087404","wikidata":"https://www.wikidata.org/wiki/Q15946010","display_name":"Online learning","level":2,"score":0.5400984287261963},{"id":"https://openalex.org/C8038995","wikidata":"https://www.wikidata.org/wiki/Q1152135","display_name":"Unsupervised learning","level":2,"score":0.5256812572479248},{"id":"https://openalex.org/C2776145971","wikidata":"https://www.wikidata.org/wiki/Q30673951","display_name":"Labeled data","level":2,"score":0.5209937691688538},{"id":"https://openalex.org/C196921405","wikidata":"https://www.wikidata.org/wiki/Q786431","display_name":"Online algorithm","level":2,"score":0.4172893464565277},{"id":"https://openalex.org/C11413529","wikidata":"https://www.wikidata.org/wiki/Q8366","display_name":"Algorithm","level":1,"score":0.11530780792236328},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.08620548248291016},{"id":"https://openalex.org/C136764020","wikidata":"https://www.wikidata.org/wiki/Q466","display_name":"World Wide Web","level":1,"score":0.0}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1145/3433210.3453083","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3433210.3453083","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3433210.3453083","source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2021 ACM Asia Conference on Computer and Communications Security","raw_type":"proceedings-article"},{"id":"pmh:oai:scholarbank.nus.edu.sg:10635/194989","is_oa":false,"landing_page_url":"https://scholarbank.nus.edu.sg/handle/10635/194989","pdf_url":null,"source":{"id":"https://openalex.org/S7407052290","display_name":"National University of Singapore","issn_l":null,"issn":[],"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"Elements","raw_type":"Article"}],"best_oa_location":{"id":"doi:10.1145/3433210.3453083","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3433210.3453083","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3433210.3453083","source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2021 ACM Asia Conference on Computer and Communications Security","raw_type":"proceedings-article"},"sustainable_development_goals":[],"awards":[{"id":"https://openalex.org/G2564264772","display_name":null,"funder_award_id":"AISG-100E-2019-0033","funder_id":"https://openalex.org/F4320320709","funder_display_name":"National Research Foundation Singapore"}],"funders":[{"id":"https://openalex.org/F4320320671","display_name":"National Research Foundation","ror":"https://ror.org/05s0g1g46"},{"id":"https://openalex.org/F4320320709","display_name":"National Research Foundation Singapore","ror":"https://ror.org/03cpyc314"}],"has_content":{"grobid_xml":true,"pdf":true},"content_urls":{"pdf":"https://content.openalex.org/works/W3163962598.pdf","grobid_xml":"https://content.openalex.org/works/W3163962598.grobid-xml"},"referenced_works_count":40,"referenced_works":["https://openalex.org/W1526572178","https://openalex.org/W1562817747","https://openalex.org/W1822036807","https://openalex.org/W1978502884","https://openalex.org/W2070996757","https://openalex.org/W2074623901","https://openalex.org/W2079411451","https://openalex.org/W2088263074","https://openalex.org/W2123865948","https://openalex.org/W2150213544","https://openalex.org/W2162969618","https://openalex.org/W2163375756","https://openalex.org/W2183397118","https://openalex.org/W2513093253","https://openalex.org/W2575772514","https://openalex.org/W2625013748","https://openalex.org/W2738679187","https://openalex.org/W2762776925","https://openalex.org/W2783146946","https://openalex.org/W2784186767","https://openalex.org/W2789828921","https://openalex.org/W2883778034","https://openalex.org/W2889424024","https://openalex.org/W2889592383","https://openalex.org/W2894006709","https://openalex.org/W2907111600","https://openalex.org/W2912944969","https://openalex.org/W3043187969","https://openalex.org/W3102091066","https://openalex.org/W3149599232","https://openalex.org/W3158742479","https://openalex.org/W4245819515","https://openalex.org/W4247939269","https://openalex.org/W4252860272","https://openalex.org/W4300529821","https://openalex.org/W4391130695","https://openalex.org/W4401248321","https://openalex.org/W6600258949","https://openalex.org/W6608689620","https://openalex.org/W6668491742"],"related_works":["https://openalex.org/W3193920202","https://openalex.org/W2726367589","https://openalex.org/W4318813552","https://openalex.org/W2576964996","https://openalex.org/W4287073482","https://openalex.org/W2952412049","https://openalex.org/W2572248225","https://openalex.org/W1876956220","https://openalex.org/W3185920324","https://openalex.org/W2195225896"],"abstract_inverted_index":{"DDoS":[0],"attacks":[1],"are":[2,43],"simple,":[3],"effective,":[4],"and":[5,60,95,115,159,162,184],"still":[6],"pose":[7],"a":[8,175],"significant":[9],"threat":[10],"even":[11],"after":[12],"more":[13,179],"than":[14],"two":[15,107],"decades.":[16],"Given":[17],"the":[18,52,55,63,81,112,116,143,165,192,201,215,225],"recent":[19],"success":[20],"in":[21,45,62,191],"machine":[22],"learning,":[23],"it":[24,190],"is":[25,99],"interesting":[26],"to":[27,35,51,141,154,167,188,214,237],"investigate":[28],"how":[29],"we":[30,105,173],"can":[31,70],"leverage":[32],"deep":[33,47,182],"learning":[34,48,68,75,153,183],"filter":[36],"out":[37],"application":[38],"layer":[39],"attack":[40],"requests.":[41,126],"There":[42],"challenges":[44],"adopting":[46],"solutions":[49],"due":[50],"ever-changing":[53],"profiles,":[54],"lack":[56],"of":[57,124,209],"labeled":[58,241],"data,":[59],"constraints":[61],"online":[64,170,193,204],"setting.":[65,194],"Offline":[66],"unsupervised":[67,137],"methods":[69],"sidestep":[71],"these":[72],"hurdles":[73],"by":[74,132],"an":[76,136,169,207],"anomaly":[77,86,138],"detector":[78,139],"N":[79,114,140,156,158],"from":[80],"normal-day":[82],"traffic":[83,119],"N.":[84],"However,":[85],"detection":[87,217],"does":[88],"not":[89,100],"exploit":[90],"information":[91],"acquired":[92],"during":[93,121],"attacks,":[94,122],"their":[96],"performance":[97],"typically":[98],"satisfactory.":[101],"In":[102,224],"this":[103],"paper,":[104],"propose":[106],"approaches":[108,229],"that":[109],"utilize":[110],"both":[111],"historic":[113],"mixture":[117],"M":[118,160],"obtained":[120],"consisting":[123],"unlabeled":[125,231],"First,":[127],"our":[128,203,228],"proposed":[129],"approach,":[130],"inspired":[131],"statistical":[133],"methods,":[134],"extends":[135],"solve":[142,189],"problem":[144],"using":[145],"estimated":[146],"conditional":[147],"probability":[148],"distributions.":[149],"We":[150],"adopt":[151],"transfer":[152],"apply":[155],"on":[157,230,240],"separately":[161],"efficiently,":[163],"combining":[164],"results":[166],"obtain":[168],"learner.":[171],"Second,":[172],"formulate":[174],"specific":[176],"loss":[177],"function":[178],"suited":[180],"for":[181],"use":[185],"iterative":[186],"training":[187],"On":[195],"publicly":[196],"available":[197],"datasets,":[198],"such":[199],"as":[200],"CICIDS2017,":[202],"learners":[205],"achieve":[206,233],"average":[208],"90.6%":[210],"accuracy":[211,235],"rates":[212],"compared":[213,236],"baseline":[216],"method,":[218],"which":[219],"achieves":[220],"around":[221],"60.0%":[222],"accuracy.":[223],"offline":[226],"setting,":[227],"data":[232],"competitive":[234],"classifiers":[238],"trained":[239],"data.":[242]},"counts_by_year":[{"year":2024,"cited_by_count":1},{"year":2023,"cited_by_count":2},{"year":2022,"cited_by_count":2},{"year":2021,"cited_by_count":1}],"updated_date":"2026-03-15T09:29:46.208133","created_date":"2025-10-10T00:00:00"}
