{"id":"https://openalex.org/W4308642220","doi":"https://doi.org/10.1145/3548606.3560629","title":"Gringotts","display_name":"Gringotts","publication_year":2022,"publication_date":"2022-11-07","ids":{"openalex":"https://openalex.org/W4308642220","doi":"https://doi.org/10.1145/3548606.3560629"},"language":"en","primary_location":{"id":"doi:10.1145/3548606.3560629","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3548606.3560629","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3548606.3560629","source":{"id":"https://openalex.org/S4363608815","display_name":"Proceedings of the 2022 ACM SIGSAC Conference on Computer and Communications Security","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"conference"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2022 ACM SIGSAC Conference on Computer and Communications Security","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"hybrid","oa_url":"https://dl.acm.org/doi/pdf/10.1145/3548606.3560629","any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5015544810","display_name":"Junxian Shen","orcid":"https://orcid.org/0000-0001-5295-092X"},"institutions":[{"id":"https://openalex.org/I99065089","display_name":"Tsinghua University","ror":"https://ror.org/03cve4549","country_code":"CN","type":"education","lineage":["https://openalex.org/I99065089"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Junxian Shen","raw_affiliation_strings":["Tsinghua University &amp; Zhongguancun Laboratory, Beijing, China"],"affiliations":[{"raw_affiliation_string":"Tsinghua University &amp; Zhongguancun Laboratory, Beijing, China","institution_ids":["https://openalex.org/I99065089"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100399382","display_name":"Han Zhang","orcid":"https://orcid.org/0000-0003-4429-9959"},"institutions":[{"id":"https://openalex.org/I99065089","display_name":"Tsinghua University","ror":"https://ror.org/03cve4549","country_code":"CN","type":"education","lineage":["https://openalex.org/I99065089"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Han Zhang","raw_affiliation_strings":["Tsinghua University &amp; Zhongguancun Laboratory, Beijing, China"],"affiliations":[{"raw_affiliation_string":"Tsinghua University &amp; Zhongguancun Laboratory, Beijing, China","institution_ids":["https://openalex.org/I99065089"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5028897096","display_name":"Yantao Geng","orcid":"https://orcid.org/0000-0003-2615-6153"},"institutions":[{"id":"https://openalex.org/I99065089","display_name":"Tsinghua University","ror":"https://ror.org/03cve4549","country_code":"CN","type":"education","lineage":["https://openalex.org/I99065089"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yantao Geng","raw_affiliation_strings":["Tsinghua University &amp; Zhongguancun Laboratory, Beijing, China"],"affiliations":[{"raw_affiliation_string":"Tsinghua University &amp; Zhongguancun Laboratory, Beijing, China","institution_ids":["https://openalex.org/I99065089"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5108050256","display_name":"Jiawei Li","orcid":"https://orcid.org/0000-0001-7922-9892"},"institutions":[{"id":"https://openalex.org/I99065089","display_name":"Tsinghua University","ror":"https://ror.org/03cve4549","country_code":"CN","type":"education","lineage":["https://openalex.org/I99065089"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Jiawei Li","raw_affiliation_strings":["Tsinghua University, Beijing, China"],"affiliations":[{"raw_affiliation_string":"Tsinghua University, Beijing, China","institution_ids":["https://openalex.org/I99065089"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100660344","display_name":"Jilong Wang","orcid":"https://orcid.org/0000-0002-4493-5145"},"institutions":[{"id":"https://openalex.org/I99065089","display_name":"Tsinghua University","ror":"https://ror.org/03cve4549","country_code":"CN","type":"education","lineage":["https://openalex.org/I99065089"]},{"id":"https://openalex.org/I4210136793","display_name":"Peng Cheng Laboratory","ror":"https://ror.org/03qdqbt06","country_code":"CN","type":"facility","lineage":["https://openalex.org/I4210136793"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Jilong Wang","raw_affiliation_strings":["Tsinghua University, Zhongguancun Laboratory, &amp; Peng Cheng Laboratory, Beijing, China"],"affiliations":[{"raw_affiliation_string":"Tsinghua University, Zhongguancun Laboratory, &amp; Peng Cheng Laboratory, Beijing, China","institution_ids":["https://openalex.org/I4210136793","https://openalex.org/I99065089"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5100771111","display_name":"Mingwei Xu","orcid":"https://orcid.org/0000-0002-4847-4585"},"institutions":[{"id":"https://openalex.org/I99065089","display_name":"Tsinghua University","ror":"https://ror.org/03cve4549","country_code":"CN","type":"education","lineage":["https://openalex.org/I99065089"]},{"id":"https://openalex.org/I4210136793","display_name":"Peng Cheng Laboratory","ror":"https://ror.org/03qdqbt06","country_code":"CN","type":"facility","lineage":["https://openalex.org/I4210136793"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Mingwei Xu","raw_affiliation_strings":["Tsinghua University, Zhongguancun Laboratory, &amp; Peng Cheng Laboratory, Beijing, China"],"affiliations":[{"raw_affiliation_string":"Tsinghua University, Zhongguancun Laboratory, &amp; Peng Cheng Laboratory, Beijing, China","institution_ids":["https://openalex.org/I4210136793","https://openalex.org/I99065089"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":6,"corresponding_author_ids":["https://openalex.org/A5015544810"],"corresponding_institution_ids":["https://openalex.org/I99065089"],"apc_list":null,"apc_paid":null,"fwci":3.4342,"has_fulltext":true,"cited_by_count":19,"citation_normalized_percentile":{"value":0.94757953,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":97,"max":99},"biblio":{"volume":null,"issue":null,"first_page":"2627","last_page":"2641"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8066520690917969},{"id":"https://openalex.org/keywords/testbed","display_name":"Testbed","score":0.6893632411956787},{"id":"https://openalex.org/keywords/denial-of-service-attack","display_name":"Denial-of-service attack","score":0.5998901128768921},{"id":"https://openalex.org/keywords/overhead","display_name":"Overhead (engineering)","score":0.5357595682144165},{"id":"https://openalex.org/keywords/flexibility","display_name":"Flexibility (engineering)","score":0.5206971764564514},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.5061327815055847},{"id":"https://openalex.org/keywords/computer-network","display_name":"Computer network","score":0.2681591510772705},{"id":"https://openalex.org/keywords/operating-system","display_name":"Operating system","score":0.1883143186569214},{"id":"https://openalex.org/keywords/the-internet","display_name":"The Internet","score":0.07944601774215698}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8066520690917969},{"id":"https://openalex.org/C31395832","wikidata":"https://www.wikidata.org/wiki/Q1318674","display_name":"Testbed","level":2,"score":0.6893632411956787},{"id":"https://openalex.org/C38822068","wikidata":"https://www.wikidata.org/wiki/Q131406","display_name":"Denial-of-service attack","level":3,"score":0.5998901128768921},{"id":"https://openalex.org/C2779960059","wikidata":"https://www.wikidata.org/wiki/Q7113681","display_name":"Overhead (engineering)","level":2,"score":0.5357595682144165},{"id":"https://openalex.org/C2780598303","wikidata":"https://www.wikidata.org/wiki/Q65921492","display_name":"Flexibility (engineering)","level":2,"score":0.5206971764564514},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.5061327815055847},{"id":"https://openalex.org/C31258907","wikidata":"https://www.wikidata.org/wiki/Q1301371","display_name":"Computer network","level":1,"score":0.2681591510772705},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.1883143186569214},{"id":"https://openalex.org/C110875604","wikidata":"https://www.wikidata.org/wiki/Q75","display_name":"The Internet","level":2,"score":0.07944601774215698},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.0},{"id":"https://openalex.org/C105795698","wikidata":"https://www.wikidata.org/wiki/Q12483","display_name":"Statistics","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/3548606.3560629","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3548606.3560629","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3548606.3560629","source":{"id":"https://openalex.org/S4363608815","display_name":"Proceedings of the 2022 ACM SIGSAC Conference on Computer and Communications Security","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"conference"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2022 ACM SIGSAC Conference on Computer and Communications Security","raw_type":"proceedings-article"}],"best_oa_location":{"id":"doi:10.1145/3548606.3560629","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3548606.3560629","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3548606.3560629","source":{"id":"https://openalex.org/S4363608815","display_name":"Proceedings of the 2022 ACM SIGSAC Conference on Computer and Communications Security","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"conference"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2022 ACM SIGSAC Conference on Computer and Communications Security","raw_type":"proceedings-article"},"sustainable_development_goals":[],"awards":[{"id":"https://openalex.org/G1231421488","display_name":null,"funder_award_id":"under","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G3317480652","display_name":null,"funder_award_id":"Science","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G37568934","display_name":null,"funder_award_id":"Grant","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G391238517","display_name":null,"funder_award_id":", and","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G5249178904","display_name":null,"funder_award_id":"Grant No. 6","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G571043820","display_name":null,"funder_award_id":"62002009","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G5994120800","display_name":null,"funder_award_id":"Natural","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G7726157001","display_name":null,"funder_award_id":"Grant No.","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"}],"funders":[{"id":"https://openalex.org/F4320321001","display_name":"National Natural Science Foundation of China","ror":"https://ror.org/01h0zpd94"}],"has_content":{"pdf":true,"grobid_xml":true},"content_urls":{"pdf":"https://content.openalex.org/works/W4308642220.pdf","grobid_xml":"https://content.openalex.org/works/W4308642220.grobid-xml"},"referenced_works_count":32,"referenced_works":["https://openalex.org/W1867219652","https://openalex.org/W1934458198","https://openalex.org/W2001759130","https://openalex.org/W2014400530","https://openalex.org/W2074623901","https://openalex.org/W2074701325","https://openalex.org/W2101234009","https://openalex.org/W2118878434","https://openalex.org/W2119028650","https://openalex.org/W2133348650","https://openalex.org/W2404948481","https://openalex.org/W2537031054","https://openalex.org/W2600769197","https://openalex.org/W2734941459","https://openalex.org/W2790466674","https://openalex.org/W2948517885","https://openalex.org/W2962955124","https://openalex.org/W2967391794","https://openalex.org/W3012914409","https://openalex.org/W3046500481","https://openalex.org/W3081497074","https://openalex.org/W3105931142","https://openalex.org/W3154803439","https://openalex.org/W3155888300","https://openalex.org/W3159401322","https://openalex.org/W3188783832","https://openalex.org/W3189867138","https://openalex.org/W3205898353","https://openalex.org/W3212224036","https://openalex.org/W4211049766","https://openalex.org/W4230043734","https://openalex.org/W4255375128"],"related_works":["https://openalex.org/W2883256816","https://openalex.org/W2171408034","https://openalex.org/W3003320923","https://openalex.org/W4230824443","https://openalex.org/W4377970398","https://openalex.org/W3026018975","https://openalex.org/W2185673024","https://openalex.org/W1484565796","https://openalex.org/W2142794587","https://openalex.org/W2113594494"],"abstract_inverted_index":{"Serverless":[0],"computing,":[1],"or":[2],"Function-as-a-Service,":[3],"is":[4],"gaining":[5],"continuous":[6],"popularity":[7],"due":[8],"to":[9,31,47,95,118],"its":[10,49],"pay-as-you-go":[11],"billing":[12],"model,":[13],"flexibility,":[14],"and":[15,58,111,145],"low":[16],"costs.":[17],"These":[18],"characteristics,":[19],"however,":[20],"bring":[21],"additional":[22],"security":[23],"risks,":[24],"such":[25,53],"as":[26,107],"the":[27,74,92,99,102,120],"Denial-of-Wallet":[28],"(DoW)":[29],"attack,":[30],"serverless":[32,45,79],"tenants.":[33],"In":[34],"this":[35],"paper,":[36],"we":[37,55],"perform":[38],"a":[39,68,83,108,116,130],"real-world":[40],"DoW":[41,64],"attack":[42],"on":[43],"commodity":[44],"platforms":[46],"evaluate":[48,59,119],"severity.":[50],"To":[51],"identify":[52],"attacks,":[54],"design,":[56],"implement,":[57],"Gringotts,":[60],"an":[61,138,146],"accurate,":[62],"easy-to-use":[63],"detection":[65,140],"system":[66,110],"with":[67,137],"negligible":[69],"performance":[70,85,121,131],"overhead.":[71],"Gringotts":[72,90,106,128],"addresses":[73],"information":[75],"ambiguity":[76],"inherent":[77],"in":[78,98],"functions":[80],"by":[81],"introducing":[82],"well-designed":[84],"metrics":[86],"collection":[87],"agent.":[88],"Then,":[89],"uses":[91],"Mahalanobis":[93],"distance":[94],"discover":[96],"anomalies":[97],"distribution":[100],"of":[101,122,133,142,149],"metrics.":[103],"We":[104],"implement":[105],"real":[109],"conduct":[112],"extensive":[113],"experiments":[114],"using":[115],"testbed":[117],"Gringotts.":[123],"Our":[124],"results":[125],"indicate":[126],"that":[127],"has":[129],"overhead":[132],"less":[134],"than":[135],"1.1%,":[136],"average":[139,147],"delay":[141],"1.86":[143],"seconds":[144],"accuracy":[148],"over":[150],"95.75%.":[151]},"counts_by_year":[{"year":2026,"cited_by_count":3},{"year":2025,"cited_by_count":12},{"year":2024,"cited_by_count":4}],"updated_date":"2026-04-16T08:26:57.006410","created_date":"2022-11-13T00:00:00"}
