{"id":"W2308766372","doi":"10.1145/2875475.2875484","title":"Detecting Advanced Persistent Threats using Fractal Dimension based Machine Learning Classification","year":2016,"lang":"en","type":"article","venue":"","topic":"Network Security and Intrusion Detection","field":"Computer Science","cited_by":67,"is_retracted":false,"has_abstract":true,"ca_institutions":"University of Manitoba","funders":"","keywords":"Computer science; False positive paradox; False positives and false negatives; Anomaly detection; Network packet; The Internet; Artificial intelligence; Machine learning; False positive rate; Fractal; Deep packet inspection; Intrusion detection system; Data mining; Computer security","routes":{"ca_aff":true,"ca_fund":false,"ca_venue":false,"about_ca":false,"invisible_to_affiliation_only":false},"retraction":null,"screen":null,"direct_labels":[],"prediction":{"model_version":"metacan-v3-hybrid-931329e0061c","candidate_categories":[],"consensus_categories":[],"category_scores_codex":[0.001150298,0.0007429418,0.001062729,0.005091063,0.0004634004,0.001226315,0.0007712385,0.0009488649,0.0005665141],"category_scores_gemma":[0.003975737,0.0001775155,0.0007161061,0.001884432,0.0005392586,0.001332658,0.0006387524,0.0006976338,0.0003985226],"about_ca_system_candidate":false,"about_ca_system_consensus":false,"about_ca_system_score_codex":0.0006257289,"about_ca_system_score_gemma":0.0004855252,"about_ca_topic_candidate":false,"about_ca_topic_consensus":false,"about_ca_topic_score_codex":0.001499341,"about_ca_topic_score_gemma":0.0009953893,"domain_scores_codex":[0.9989625,0.0001941523,0.0001018317,0.0001864962,0.0004424736,0.0001124801],"domain_scores_gemma":[0.9966158,0.001638602,0.0005281215,0.0003366267,0.0007804713,0.0001004825],"domain_codex":null,"domain_gemma":null,"domain_candidate":null,"domain_consensus":null,"study_design_codex":"design_other","study_design_gemma":"simulation_or_modeling","study_design_scores_codex":[0.0003389095,0.0004384832,0.03281271,0.0001649127,0.0001757817,0.0004030534,0.0001897686,0.1507977,0.01862048,0.005138914,0.003892565,0.7870266],"study_design_scores_gemma":[0.000007541279,0.00007859234,0.004676538,0.00001262811,0.0000184542,0.0002341115,0.00003379225,0.987134,0.004236728,0.002668338,0.0008719497,0.0000272642],"study_design_candidate":"simulation_or_modeling","study_design_consensus":null,"genre_codex":"methods","genre_gemma":"empirical","genre_scores_codex":[0.2315639,0.0009923606,0.7606688,0.0003901045,0.0001727511,0.0001359005,0.0002917976,0.002744884,0.003039423],"genre_scores_gemma":[0.8368195,0.0003449805,0.1609824,0.00007675747,0.00009156595,0.00007042171,0.0005030792,0.00003304807,0.001078156],"genre_candidate":"empirical","genre_consensus":null,"teacher_disagreement_score":0.005091063,"threshold_uncertainty_score":0.006083429,"prediction_status":"machine_predicted_unvalidated"},"machine_scores":{"provisional":true,"baseline":true,"maturity_gate_passed":false,"score_opus":0.03468693595753106,"score_gpt":0.2578775778584103,"score_spread":0.2231906419008793,"validation_status":"score_only:v0-immature-baseline","note":"Baseline scores from an immature model (maturity gate not passed). Scores rank; they never assert a category."}}