{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,2,7]],"date-time":"2026-02-07T03:10:24Z","timestamp":1770433824339,"version":"3.49.0"},"reference-count":45,"publisher":"Elsevier BV","issue":"5","license":[{"start":{"date-parts":[[2008,4,1]],"date-time":"2008-04-01T00:00:00Z","timestamp":1207008000000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/2.zoppoz.workers.dev:443\/https\/www.elsevier.com\/tdm\/userlicense\/1.0\/"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["Computer Networks"],"published-print":{"date-parts":[[2008,4]]},"DOI":"10.1016\/j.comnet.2007.11.015","type":"journal-article","created":{"date-parts":[[2007,12,5]],"date-time":"2007-12-05T14:48:38Z","timestamp":1196866118000},"page":"957-970","source":"Crossref","is-referenced-by-count":31,"title":["A router-based technique to mitigate reduction of quality (RoQ) attacks"],"prefix":"10.1016","volume":"52","author":[{"given":"Amey","family":"Shevtekar","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Nirwan","family":"Ansari","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"78","reference":[{"key":"10.1016\/j.comnet.2007.11.015_bib1","unstructured":"CSI\/FBI Computer Crime and Security Survey. <https:\/\/2.zoppoz.workers.dev:443\/http\/www.gocsi.com\/>, 2006, online."},{"key":"10.1016\/j.comnet.2007.11.015_bib2","doi-asserted-by":"crossref","unstructured":"A. Kuzmanovic, E. Knightly, Low-rate TCP-targeted denial of service attacks (The Shrew vs. the Mice and Elephants), in: ACM SIGCOMM 2003, 2003, pp. 75\u201386.","DOI":"10.1145\/863955.863966"},{"key":"10.1016\/j.comnet.2007.11.015_bib3","doi-asserted-by":"crossref","unstructured":"M. Guirguis, A. Bestavros, I. Matta, Exploiting the transients of adaptation for RoQ attacks on Internet resources, in: IEEE ICNP 2004, 2004, pp. 184\u2013195.","DOI":"10.1109\/ICNP.2004.1348109"},{"key":"10.1016\/j.comnet.2007.11.015_bib4","doi-asserted-by":"crossref","unstructured":"S. Ebrahimi-Taghizadeh, A. Helmy, S. Gupta, TCP vs. TCP: a systematic study of adverse impact of short-lived TCP flows on long-lived TCP flows, in: IEEE INFOCOM 2005, 2005, pp. 926\u2013937.","DOI":"10.1109\/INFCOM.2005.1498322"},{"key":"10.1016\/j.comnet.2007.11.015_bib5","unstructured":"X. Luo, R.K.C. Chang, On a new class of pulsing denial-of-service attacks and the defense, in: NDSS 2005, 2005."},{"key":"10.1016\/j.comnet.2007.11.015_bib6","doi-asserted-by":"crossref","unstructured":"A. Shevtekar, N. Ansari, Do low rate dos attacks affect QoS sensitive VoIP traffic? in: IEEE ICC 2006, 2006, pp. 2153\u20132158.","DOI":"10.1109\/ICC.2006.255089"},{"key":"10.1016\/j.comnet.2007.11.015_bib7","doi-asserted-by":"crossref","unstructured":"R. Chertov, S. Fahmy, N. Shroff, Emulation versus simulation: a case study of TCP-targeted denial of service attacks, in: TridentCom 2006, 2006, pp. 316\u2013325.","DOI":"10.1109\/TRIDNT.2006.1649164"},{"key":"10.1016\/j.comnet.2007.11.015_bib8","unstructured":"M. Delio, New Breed of Attack Zombies Lurk. <https:\/\/2.zoppoz.workers.dev:443\/http\/technews.acm.org\/articles\/2001-3\/0514m.html#item2>, 2001."},{"issue":"3","key":"10.1016\/j.comnet.2007.11.015_bib9","doi-asserted-by":"crossref","first-page":"47","DOI":"10.1145\/1070873.1070878","article-title":"On the robustness of router-based denial-of-service (DoS) defense systems","volume":"35","author":"Xu","year":"2005","journal-title":"ACM Computer Communications Review"},{"issue":"4","key":"10.1016\/j.comnet.2007.11.015_bib10","doi-asserted-by":"crossref","first-page":"363","DOI":"10.1109\/LCOMM.2005.1413635","article-title":"Low rate TCP denial-of-service attack detection at edge routers","volume":"9","author":"Shevtekar","year":"2005","journal-title":"IEEE Communication Letters"},{"issue":"5","key":"10.1016\/j.comnet.2007.11.015_bib11","doi-asserted-by":"crossref","first-page":"123","DOI":"10.1109\/MCOM.2005.1453433","article-title":"Tracing Cyber attacks from the practical perspective","volume":"43","author":"Gao","year":"2005","journal-title":"IEEE Communications Magazine"},{"issue":"7","key":"10.1016\/j.comnet.2007.11.015_bib12","doi-asserted-by":"crossref","first-page":"142","DOI":"10.1109\/MCOM.2003.1215651","article-title":"On IP traceback","volume":"41","author":"Belenky","year":"2003","journal-title":"IEEE Communications Magazine"},{"key":"10.1016\/j.comnet.2007.11.015_bib13","unstructured":"R. Beverly, S. Bauer, The Spoofer project: inferring the extent of source address filtering on the Internet, in: USENIX SRUTI\u201905, 2005, pp. 53\u201359."},{"issue":"2","key":"10.1016\/j.comnet.2007.11.015_bib14","doi-asserted-by":"crossref","first-page":"39","DOI":"10.1145\/997150.997156","article-title":"A taxonomy of DDoS attack and DDoS defense mechanisms","volume":"34","author":"Mirkovic","year":"2004","journal-title":"ACM SIGCOMM Computer Communications Review"},{"key":"10.1016\/j.comnet.2007.11.015_bib15","unstructured":"D. Dagon, C. Zhou, W. Lee, Modelling botnet propagation using time zones, in: NDSS 2006, 2006."},{"key":"10.1016\/j.comnet.2007.11.015_bib16","unstructured":"M. Guirguis, A. Bestavros, I. Matta, Bandwidth stealing via link targeted RoQ attacks, in: CCN\u201904, 2004."},{"issue":"4","key":"10.1016\/j.comnet.2007.11.015_bib17","doi-asserted-by":"crossref","first-page":"397","DOI":"10.1109\/90.251892","article-title":"Random early detection gateways for congestion avoidance","volume":"1","author":"Floyd","year":"1993","journal-title":"IEEE\/ACM Transactions on Networking"},{"issue":"2","key":"10.1016\/j.comnet.2007.11.015_bib18","doi-asserted-by":"crossref","first-page":"286","DOI":"10.1109\/TNET.2004.826291","article-title":"An adaptive virtual queue (AVQ) algorithm for active queue management","volume":"12","author":"Kunniyur","year":"2004","journal-title":"IEEE\/ACM Transactions on Networking"},{"key":"10.1016\/j.comnet.2007.11.015_bib19","unstructured":"Cisco Netflow. <https:\/\/2.zoppoz.workers.dev:443\/http\/www.cisco.com\/en\/US\/products\/ps6601\/products_ios_protocol_group_home.html>, 2007, online."},{"key":"10.1016\/j.comnet.2007.11.015_bib20","doi-asserted-by":"crossref","unstructured":"R. Kompella, C. Estan, The power of slicing in Internet flow measurement, in: IMC 2005, 2005.","DOI":"10.1145\/1330107.1330119"},{"issue":"10","key":"10.1016\/j.comnet.2007.11.015_bib21","doi-asserted-by":"crossref","first-page":"110","DOI":"10.1109\/MCOM.2002.1039865","article-title":"Understanding Internet traffic streams: dragonflies and tortoises","volume":"40","author":"Brownlee","year":"2002","journal-title":"IEEE Communications Magazine"},{"issue":"8","key":"10.1016\/j.comnet.2007.11.015_bib22","doi-asserted-by":"crossref","first-page":"1481","DOI":"10.1109\/49.464717","article-title":"A parameterizable methodology for Internet traffic flow profiling","volume":"13","author":"Claffy","year":"1995","journal-title":"IEEE Journal on Selected Areas in Communication"},{"key":"10.1016\/j.comnet.2007.11.015_bib23","unstructured":"M. Fomenkov, K. Keys, D. Moore, K. Claffy, Longitudinal study of Internet traffic from 1998 to 2003, in: Winter International Symposium on Information and Communication Technologies, 2004, pp. 1\u20136."},{"issue":"6","key":"10.1016\/j.comnet.2007.11.015_bib24","doi-asserted-by":"crossref","first-page":"6","DOI":"10.1109\/MNET.2003.1248656","article-title":"Packet-level traffic measurements from the sprint IP backbone","volume":"17","author":"Fraleigh","year":"2003","journal-title":"IEEE Network Magazine"},{"key":"10.1016\/j.comnet.2007.11.015_bib25","doi-asserted-by":"crossref","unstructured":"R. Mahajan, S. Floyd, D. Wetherall, Controlling high-bandwidth flows at the congested router, in: IEEE ICNP 2001, 2001, pp. 192\u2013201.","DOI":"10.1109\/ICNP.2001.992899"},{"key":"10.1016\/j.comnet.2007.11.015_bib26","unstructured":"H. Sun, J.C.S. Lui, D.K.Y. Yau, Defending against low-rate TCP attack: dynamic detection and protection, in: IEEE ICNP 2004, 2004, pp. 196\u2013205."},{"key":"10.1016\/j.comnet.2007.11.015_bib27","unstructured":"The OC48 Data. <https:\/\/2.zoppoz.workers.dev:443\/http\/www.caida.org\/data\/passive\/index.xml#oc48>, online."},{"key":"10.1016\/j.comnet.2007.11.015_bib28","unstructured":"The CoralReef Software. <https:\/\/2.zoppoz.workers.dev:443\/http\/www.caida.org\/tools\/measurement\/coralreef\/>, online."},{"key":"10.1016\/j.comnet.2007.11.015_bib29","doi-asserted-by":"crossref","unstructured":"H.J. Chao, R. Karri, W.C. Lau, CYSEP \u2013 a Cyber security processor for 10Gbps networks and beyond, in: IEEE MILCOM 2004, 2004, pp. 1114\u20131122.","DOI":"10.1109\/MILCOM.2004.1495009"},{"key":"10.1016\/j.comnet.2007.11.015_bib30","doi-asserted-by":"crossref","unstructured":"A. Kumar, J. Xu, Sketch guided sampling \u2013 using on-line estimates of flow size for adaptive data collection, in: IEEE Infocom 2006, 2006.","DOI":"10.1109\/INFOCOM.2006.326"},{"key":"10.1016\/j.comnet.2007.11.015_bib31","doi-asserted-by":"crossref","unstructured":"A. Kumar, M. Sung, J. Xu, J. Wang, Data streaming algorithms for efficient and accurate estimation of flow distribution, in: ACM SIGMETRICS 2004, 2004, pp. 177\u2013188.","DOI":"10.1145\/1005686.1005709"},{"key":"10.1016\/j.comnet.2007.11.015_bib32","doi-asserted-by":"crossref","unstructured":"C. Cranor, T. Johnson, O. Spatschek, Gigascope: a stream database for network applications, in: SIGMOD 2003, 2003, pp. 647\u2013651.","DOI":"10.1145\/872836.872838"},{"key":"10.1016\/j.comnet.2007.11.015_bib33","unstructured":"B. Grot, W. Mangione-Smith, Good memories: enhancing memory performance for precise flow tracking, in: ANCHOR 05, 2005."},{"key":"10.1016\/j.comnet.2007.11.015_bib34","unstructured":"P. Manolios, Bloom Filter Calculator. <https:\/\/2.zoppoz.workers.dev:443\/http\/www-static.cc.gatech.edu\/~manolios\/bloom-filters\/calculator.html>, online."},{"key":"10.1016\/j.comnet.2007.11.015_bib35","unstructured":"UCB\/LBNL\/VINT Network Simulator. <https:\/\/2.zoppoz.workers.dev:443\/http\/www.isi.edu\/nsman\/ns\/>, online."},{"key":"10.1016\/j.comnet.2007.11.015_bib36","doi-asserted-by":"crossref","unstructured":"J. Cao W.S. Cleveland, Y. Gao, K. Jeffay, F.D. Smith, M.C. Weigle, Stochastic models for generating synthetic HTTP source traffic, in: IEEE Infocom 2004, 2004, pp. 1546\u20131557.","DOI":"10.1109\/INFCOM.2004.1354568"},{"issue":"3","key":"10.1016\/j.comnet.2007.11.015_bib37","doi-asserted-by":"crossref","first-page":"249","DOI":"10.1109\/90.929849","article-title":"Tuning RED for web traffic","volume":"9","author":"Christiansen","year":"2001","journal-title":"IEEE\/ACM Transaction on Networking"},{"key":"10.1016\/j.comnet.2007.11.015_bib38","unstructured":"PackMime Traffic Generator. <https:\/\/2.zoppoz.workers.dev:443\/http\/dirt.cs.unc.edu\/packmime>, online."},{"key":"10.1016\/j.comnet.2007.11.015_bib39","unstructured":"Latinode Case Study. <https:\/\/2.zoppoz.workers.dev:443\/http\/www.nextone.com\/files\/LatiNode%20Case%20Study.pdf>, 2005, online."},{"key":"10.1016\/j.comnet.2007.11.015_bib40","doi-asserted-by":"crossref","unstructured":"G. Yang, M. Gerla, M.Y. Sanadidi, Randomization: defense against low-rate TCP-targeted denial-of-service attacks, in: IEEE Symposium on Computers and Communications, 2004, pp. 345\u2013350.","DOI":"10.1109\/ISCC.2004.1358428"},{"issue":"9","key":"10.1016\/j.comnet.2007.11.015_bib41","article-title":"Collaborative detection and filtering of Shrew DDoS attacks using spectral analysis","volume":"66","author":"Chen","year":"2006","journal-title":"Journal of Parallel and Distributed Computing, Special Issue on Security in Grids and Distributed Systems"},{"key":"10.1016\/j.comnet.2007.11.015_bib42","doi-asserted-by":"crossref","unstructured":"Y. Chen, K. Hwang, Spectral analysis of TCP flows for defense against reduction-of-quality attacks, in: IEEE ICC 2007, 2007.","DOI":"10.1109\/ICC.2007.204"},{"key":"10.1016\/j.comnet.2007.11.015_bib43","doi-asserted-by":"crossref","unstructured":"S. Sarat, A. Terzis, On the effect of router buffer sizes on low-rate denial of service attacks, in: IEEE ICCCN 05, 2005, pp. 281\u2013286.","DOI":"10.1109\/ICCCN.2005.1523867"},{"key":"10.1016\/j.comnet.2007.11.015_bib44","doi-asserted-by":"crossref","unstructured":"Y. Kwok, R. Tripathi, Y. Chen, K. Hwang, HAWK: Halting anomaly with weighted choking to rescue well-behaved TCP sessions from Shrew DoS attacks, in: ICCNMC 2005, 2005.","DOI":"10.1007\/11534310_46"},{"key":"10.1016\/j.comnet.2007.11.015_bib45","doi-asserted-by":"crossref","unstructured":"Y. Xu, R. Guerin, A double horizon defense for robust regulation of malicious traffic, in: SecureComm, 2006.","DOI":"10.1109\/SECCOMW.2006.359585"}],"container-title":["Computer Networks"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/2.zoppoz.workers.dev:443\/https\/api.elsevier.com\/content\/article\/PII:S1389128607003398?httpAccept=text\/xml","content-type":"text\/xml","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/2.zoppoz.workers.dev:443\/https\/api.elsevier.com\/content\/article\/PII:S1389128607003398?httpAccept=text\/plain","content-type":"text\/plain","content-version":"vor","intended-application":"text-mining"}],"deposited":{"date-parts":[[2025,1,23]],"date-time":"2025-01-23T07:25:00Z","timestamp":1737617100000},"score":1,"resource":{"primary":{"URL":"https:\/\/2.zoppoz.workers.dev:443\/https\/linkinghub.elsevier.com\/retrieve\/pii\/S1389128607003398"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2008,4]]},"references-count":45,"journal-issue":{"issue":"5","published-print":{"date-parts":[[2008,4]]}},"alternative-id":["S1389128607003398"],"URL":"https:\/\/2.zoppoz.workers.dev:443\/https\/doi.org\/10.1016\/j.comnet.2007.11.015","relation":{},"ISSN":["1389-1286"],"issn-type":[{"value":"1389-1286","type":"print"}],"subject":[],"published":{"date-parts":[[2008,4]]}}}