Pith. sign in

Paper Citation Record · LEDGER

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries

As of 13 August 2026, this Paper Citation Record lists 57 of 57 outbound references and 0 inbound Pith citation observations for arXiv:2502.05367.

A citation records a reference. It does not transfer a finding from one paper to another.

pith.paper-citation-record.v1
2502.05367 v1

Coverage vector

measured 57 of 57 reference resolution

Typed states for the displayed outbound observations.

Source: paper_references, paper_reference_links, observed 2026-08-08T19:41:43.166605Z

measured 57 of 57 standing notices

One-hop event checks from named stored sources.

Source: scholarly_work_events, retraction_status_cache, observed 2026-08-13T06:32:02.005865+00:00

measured 0 of 0 inbound itemization

Pith citing papers itemized under the disclosed page cap.

Source: paper_references, paper_reference_links

measured 0 of 1 external citation measurements

A source-named dated measurement, never combined with another source.

Source: cited_works

Reference resolution

57 of 57 outbound references displayed

  • verified exact0
  • verified fuzzy56
  • unresolved1
  • parse uncertain0
  • malformed identifier0
  • metadata mismatch0

External citation measurements

No source-named external measurement is stored.

Outbound references

Observation 3b0cb3b4-0234-46d5-ad11-e6f3d97a8f8e · outbound

This paper cites Strategically- motivated advanced persistent threat: Definition, process, tactics and a disinformation model of counterattack,.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Strategically- motivated advanced persistent threat: Definition, process, tactics and a disinformation model of counterattack,

Reference 1

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.860376Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:42.930174Z digest=sha256:8c30756df852004c336334b8d78c8055a9131f4cf002a811bfe13dfc3cda8867

Observation 2ee05805-4bce-415a-9deb-f7ef93a377ee · outbound

This paper cites Anomaly detection in log data using graph databases and machine learning to defend advanced persistent threats,.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Anomaly detection in log data using graph databases and machine learning to defend advanced persistent threats,

Reference 2

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.848961Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:42.934983Z digest=sha256:fd6576214a6c8ca27c56a4d5c5bb3b392bfb28ac7b969ff2eb233f1339f057f5

Observation c5df73c4-7e39-4a9e-b0b7-e6fd3ebaa80b · outbound

This paper cites Dark matter: Uncovering the darkcomet rat ecosystem,.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Dark matter: Uncovering the darkcomet rat ecosystem,

Reference 3

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.837821Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:42.939224Z digest=sha256:9cf7c7282041bf656e9894fc0c1d99fd86e28022afc7f752ebb2efb6c138c036

Observation 4d8198f2-a635-4bff-a00c-98c87372f5e5 · outbound

This paper cites Schrödinger’s RAT: Profiling the stakeholders in the remote access trojan ecosystem,.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Schrödinger’s RAT: Profiling the stakeholders in the remote access trojan ecosystem,

Reference 4

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.826644Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:42.943995Z digest=sha256:fa911117500f64943ed43df4db10143c227e56a9e944acd7e085a3cb4a551473

Observation 04c5c58f-d57f-47d6-aeaf-cc6b2d2119ec · outbound

This paper cites To catch a ratter: Monitoring the behavior of amateur darkcomet rat operators in the wild,.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries To catch a ratter: Monitoring the behavior of amateur darkcomet rat operators in the wild,

Reference 5

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.815121Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:42.948636Z digest=sha256:b8dcf5805947bd17b2c1ea3dfd55f9d3ab36f251e6add53fc8272582a16fe3b0

Observation 7ca70c6d-8435-4641-b8ba-c8346d054dd5 · outbound

This paper cites Fin7.5: the infamous cybercrime rig “fin7.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Fin7.5: the infamous cybercrime rig “fin7

Reference 6

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.802974Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:42.953177Z digest=sha256:e7af903bca14ade9f3171a399ff86308a5513d203f62d889603e383914561e20

Observation 2cf3b356-b082-420f-adf7-b97a87667a72 · outbound

This paper cites Intelligence-driven computer network defense informed by analysis of adversary campaigns and intrusion kill chains,.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Intelligence-driven computer network defense informed by analysis of adversary campaigns and intrusion kill chains,

Reference 7

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.792375Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:42.957877Z digest=sha256:6a269098b46aab7ff89c0561e3cc562600a1f9b34597c2c2f22067ff3e02a0d1

Observation fb881cb2-de99-4349-92f6-798080848f43 · outbound

This paper cites HOLMES: Real-time APT Detection through Correlation of Suspicious Information Flows.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries HOLMES: Real-time APT Detection through Correlation of Suspicious Information Flows

Reference 8

Resolution
unresolved
no resolver link, observed 2026-08-08T19:41:42.961856Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-08T19:41:42.961856Z digest=sha256:baace7fee47b7474605dd5c9008f032f253fe2e32c62feb09e2436845733d760

Observation 3380a6eb-e7d4-4498-a1b8-d4952dfef01e · outbound

This paper cites Botminer: Clustering analysis of network traffic for protocol-and structure-independent botnet detec- tion,.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Botminer: Clustering analysis of network traffic for protocol-and structure-independent botnet detec- tion,

Reference 9

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.780266Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:42.966550Z digest=sha256:ae77b5d427d39486c634eecf5a269b6655ba268ec1f10bf7dc9dfeb2a3d6fd5d

Observation 1bfd2319-4477-4b49-a54e-176b6afeea82 · outbound

This paper cites Disclo- sure: detecting botnet command and control servers through large-scale netflow analysis,.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Disclo- sure: detecting botnet command and control servers through large-scale netflow analysis,

Reference 10

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.768625Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:42.971260Z digest=sha256:a2c843f776b011265fd5ca56c9c717d8a1634b00ff5c70872eb02a20fe1d9c43

Observation 6d902a09-7093-4fa4-8cea-9a5516d59d7d · outbound

This paper cites Beehive: Large-scale log analysis for detecting suspicious activity in enterprise networks,.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Beehive: Large-scale log analysis for detecting suspicious activity in enterprise networks,

Reference 11

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.756550Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:42.975269Z digest=sha256:e2daf3f40eae2f799ce0bbc92067b27c7fda7f02105ddfd99bd6bdcafdae0a5a

Observation 59a64934-15a5-4b91-8f56-ce87e6a0d422 · outbound

This paper cites Baywatch: robust beaconing detection to identify infected hosts in large-scale enterprise networks,.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Baywatch: robust beaconing detection to identify infected hosts in large-scale enterprise networks,

Reference 12

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.744995Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:42.979630Z digest=sha256:2327639386f841c438faa5b33e2c39c0ae39da82c6627533fc16a03ff3c16625

Observation 433d009b-c316-4485-9e1c-913e958c6ccc · outbound

This paper cites Detection of early-stage enterprise infection by mining large-scale log data,.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Detection of early-stage enterprise infection by mining large-scale log data,

Reference 13

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.734644Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:42.983614Z digest=sha256:b4fd57a0295826096685e52dd6b89a0404f366814d1a100d13ca9a547ece1258

Observation 1f014a93-edf3-4e81-bbdd-99cc477fa2e7 · outbound

This paper cites Behavioral clustering of http-based malware and signature generation using malicious network traces.,.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Behavioral clustering of http-based malware and signature generation using malicious network traces.,

Reference 14

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.724584Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:42.987874Z digest=sha256:9164a451eafbfa73f98a4fa15e8ea308425d4f2467042a39b57c285bc3433127

Observation 744bb125-7266-44b9-9550-b19ab2d4324f · outbound

This paper cites Applying deep learning on packet flows for botnet detection,.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Applying deep learning on packet flows for botnet detection,

Reference 15

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.713384Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:42.991826Z digest=sha256:7e88c9db5ee9672ba1da7a22312773a1ad2125d411555d2419dabf661b1d463a

Observation a122a8b3-401c-42b4-bbe3-84aa69f58f45 · outbound

This paper cites H AWK-EYE: Holistic detection of APT command and control domains,.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries H AWK-EYE: Holistic detection of APT command and control domains,

Reference 16

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.702196Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:42.995691Z digest=sha256:51eb353f42bd89989df194e6c61c0b963d809acc71268d68f8a5cc8b5b16fb6e

Observation 378ca119-834e-4832-aa12-169188601978 · outbound

This paper cites Converting information into knowledge-based assets.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Converting information into knowledge-based assets

Reference 17

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.685740Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:42.999339Z digest=sha256:3facf58cc7e814943ae269d73df322d857b584f4544d841719043cd93c09ec52

Observation b1b6ac2e-e126-492f-bfd9-dea9b6f852ee · outbound

This paper cites Bro: A system for detecting network intruders in real-time,.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Bro: A system for detecting network intruders in real-time,

Reference 18

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.672930Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:43.002994Z digest=sha256:585b9999cd5c46662b3c2f604f90445b75add54827720a294e9a366066f3399a

Observation 547a4c6e-3e9b-43f5-8816-b735bee3b97f · outbound

This paper cites Command and control.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Command and control

Reference 19

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.661633Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:43.006915Z digest=sha256:d80843b2110398cfd5c5770860f2f4c4d8c98294469ca184978c91ca430c6bbe

Observation 9ce50892-a5a8-48a7-b89a-4959e8c49a19 · outbound

This paper cites E ARLYCROW github repository.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries E ARLYCROW github repository

Reference 20

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.649928Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:43.011398Z digest=sha256:ddc08e5da175fe849ca662b323e4d5755a2954816503aab026190968f8fbc868

Observation 027f56f7-aa45-4b7c-8dea-026a90c623f2 · outbound

This paper cites Outside the closed world: On using machine learning for network intrusion detection,.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Outside the closed world: On using machine learning for network intrusion detection,

Reference 21

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.638681Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:43.015568Z digest=sha256:0c0b3081c6f67bd112c10d0da8f864c3a83797d3242d26bebf9198c8628ac0a4

Observation 34d1f640-ffa4-4efc-8074-c97ef45a5d75 · outbound

This paper cites Fallback channel ttp.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Fallback channel ttp

Reference 22

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.626876Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:43.019214Z digest=sha256:8b6cc750ab4f933496d37a9f29f1fa022b4902fdeacb3d7c146ddb3bf2e05d5e

Observation c3ce8b43-d8c1-409c-9045-1fe26ffa40e5 · outbound

This paper cites Protocol tunneling.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Protocol tunneling

Reference 23

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.615131Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:43.024060Z digest=sha256:5a669f35a96b382178f761c3d149cd50026ed02c521a30e32368346b2c5ebadc

Observation eb135f24-27dc-4f33-bdc5-9dda6af5c6be · outbound

This paper cites Abusing cloud services to fly under the radar.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Abusing cloud services to fly under the radar

Reference 24

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.604279Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:43.028050Z digest=sha256:e2e61896ef6728895ded4ee512aaa8c29376a4071716a94b8ec0764abc1e430f

Observation 4628d6b8-72c8-4e1e-9f97-d26c238cfc10 · outbound

This paper cites Highly evasive attacker leverages solarwinds supply chain to compromise multiple global victims with sunburst back- door.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Highly evasive attacker leverages solarwinds supply chain to compromise multiple global victims with sunburst back- door

Reference 25

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.592591Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:43.032412Z digest=sha256:4b3c6e5e6079f659a5af13b184f7c0b53cad188b7b056e829a225743111a7dfd

Observation f2294f53-5634-4da8-b84c-e5669fff7705 · outbound

This paper cites Application layer protocol: Web protocols.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Application layer protocol: Web protocols

Reference 26

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.580480Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:43.036717Z digest=sha256:be9a42c5e12e8d656d60de4b1d18694d64f614ff75c501ea33dfba3cdcfe81be

Observation 1475ee6e-db72-4cc6-b17a-57d49d7d8641 · outbound

This paper cites Non-application layer protocol.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Non-application layer protocol

Reference 27

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.569227Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:43.041895Z digest=sha256:8f4c7ef9bc2d1cc5c9c7801b735f7a3c06ff88d77a12263dfd83a25fdc760b00

Observation 8a54b737-63c7-41db-94b2-1b5979432e3d · outbound

This paper cites Encrypted channel.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Encrypted channel

Reference 28

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.557949Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:43.047415Z digest=sha256:e5eed8eeae4a2757afe484c3ea62d13a024cc790094ef1d5617fb4287163d41b

Observation 44a65cc2-3766-4740-bfa9-61846c89c3b5 · outbound

This paper cites Dynamic resolution: Fast flux dns.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Dynamic resolution: Fast flux dns

Reference 29

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.546816Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:43.051571Z digest=sha256:302d83ad3b24bf9f864313e49d0fdeb386b83bf9f1877799f2cbb9d2cce193ae

Observation 4638f57b-d511-4706-8f80-bc87c06f5fb8 · outbound

This paper cites Data obfuscation: Protocol impersonation.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Data obfuscation: Protocol impersonation

Reference 30

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.536163Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:43.055751Z digest=sha256:0a8bdccac55c63c1d1a62b160324694d42d883284820d4cda8e274fba2144abd

Observation 4775fd73-e637-427e-9324-bf36180b3470 · outbound

This paper cites Cisco systems netflow services export version 9,.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Cisco systems netflow services export version 9,

Reference 31

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.525156Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:43.060117Z digest=sha256:ef73bd41ed7d28c892cbaa52bcf6354d293bf8e9d759a614b5cfc1448f4391f9

Observation 256bf0fa-cdbc-4f63-9b8e-3cbb32844517 · outbound

This paper cites Tranalyzer: Versatile high performance network traffic analyser,.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Tranalyzer: Versatile high performance network traffic analyser,

Reference 32

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.514225Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:43.064121Z digest=sha256:afbf385a181385d9e01201801fe9c724b0fd2803f0854b67bf5da78b2b6b8579

Observation adc6d296-f317-4332-8b75-7e2748bc90f0 · outbound

This paper cites Identifying encrypted malware traffic with contextual flow data,.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Identifying encrypted malware traffic with contextual flow data,

Reference 33

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.502024Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:43.068313Z digest=sha256:4a3dc78dcfe1961337f79116942a92ce479683cea3cead33356e7183015b01ac

Observation bc93fa25-e9bb-4f3b-bd74-f1f444721930 · outbound

This paper cites Passive dns replication,.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Passive dns replication,

Reference 34

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.489880Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:43.072511Z digest=sha256:16fc4c86899e94c042ec0bab46e11ce75b140e419637859c28cf2e6dabbc07c8

Observation 5a8775e0-afb1-44bd-841a-8dde6124b4e9 · outbound

This paper cites Forefront tmg web proxy.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Forefront tmg web proxy

Reference 35

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.476257Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:43.076431Z digest=sha256:2647f671ff8adca0eee89131eea52335ec4bc22788a4e6d22f4cfa591444b36c

Observation 1e71c6ff-28da-413f-ab72-0a2c8dbb5722 · outbound

This paper cites Squid: Optimising web delivery.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Squid: Optimising web delivery

Reference 36

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.463335Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:43.080877Z digest=sha256:7b776a81139193b6b4b411882a6c72838efc20cced4cbe382aa5ebe686ad6d9c

Observation 0063c372-3606-47d4-bf8c-a133044d7c8f · outbound

This paper cites Dynamic dns.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Dynamic dns

Reference 37

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.451529Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:43.085587Z digest=sha256:1b42e37d797150c68d96609d4149f27922f89fd7af6c990900e7bb7ac95a2d45

Observation 3e77476a-c218-443d-90e0-68bc81f83bbf · outbound

This paper cites Beyond blacklists: learning to detect malicious web sites from suspicious urls,.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Beyond blacklists: learning to detect malicious web sites from suspicious urls,

Reference 38

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.439763Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:43.090018Z digest=sha256:706b37161b8477271669453e3adf50812471f4b6745378af5690fbd005988781

Observation e17ed71d-cccd-4f7b-a3cc-a22794bde5ab · outbound

This paper cites Made: Security analytics for enterprise threat detection,.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Made: Security analytics for enterprise threat detection,

Reference 39

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.428768Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:43.094300Z digest=sha256:497d9358c44ce624c82aa3b05c1be8181fd39a2ff5e62ac5a2412077f6389375

Observation 077d4d7b-d206-45ef-a7e3-86724f923a4e · outbound

This paper cites Optimized invariant representation of network traffic for detecting unseen malware variants,.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Optimized invariant representation of network traffic for detecting unseen malware variants,

Reference 40

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.418418Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:43.098400Z digest=sha256:57ab0f86b8e8de6506e2cf57b177bc39f483308f94397a06d92ab1f298aeb41d

Observation e772371d-98c5-4ce1-a12b-acb39b9a09e2 · outbound

This paper cites Behavioral classification and detection of malware through http user agent anomalies,.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Behavioral classification and detection of malware through http user agent anomalies,

Reference 41

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.407831Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:43.102669Z digest=sha256:9e9a6b8ee17b38f4cb678d8fe2fe0f41a144dc3e4f06bb7651b2a6cd455772fa

Observation 09c45779-2102-412e-8b79-3671530fec89 · outbound

This paper cites Trafficav: An effective and explainable detection of mobile malware behavior using network traffic,.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Trafficav: An effective and explainable detection of mobile malware behavior using network traffic,

Reference 42

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.396695Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:43.106919Z digest=sha256:67dbe59cb6f4e62d7cf045397ba1f3f7d78c03f45d3fab35dd919e1f42eccdab

Observation ab95193a-3d66-48f4-9174-e9e3c2f3ce04 · outbound

This paper cites Malware detection using http user-agent dis- crepancy identification,.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Malware detection using http user-agent dis- crepancy identification,

Reference 43

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.385336Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:43.111115Z digest=sha256:9e82f1de45b4029b997df9b0fbad446a5f52c9965614315fe26f628c730f58f2

Observation 64c0faf5-67ff-4a35-b77a-e85a625dd732 · outbound

This paper cites Cipher suite info.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Cipher suite info

Reference 44

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.373175Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:43.115629Z digest=sha256:c75166bba6d84a8e6501acdbf84bfb854a7e96b8959ba3012ac4b3f9de65ef07

Observation 3a93123a-4d2a-4500-832d-bceca841cc50 · outbound

This paper cites Network traffic behavior analysis by decomposition into control and data planes,.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Network traffic behavior analysis by decomposition into control and data planes,

Reference 45

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.361952Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:43.119570Z digest=sha256:3fecd6e2a97415b46e824130d23d2319ea3344d750b2335f27b485ed17a7f90c

Observation 6569e055-ad16-4d6f-8729-4f15b43a0d61 · outbound

This paper cites Detecting botnets using command and control traffic,.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Detecting botnets using command and control traffic,

Reference 46

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.350447Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:43.123597Z digest=sha256:cb680da97a1de053a41bd350be7560c591fd5f8443908cf78bb39d1ec8b07b56

Observation 33fe8a26-26a2-4c98-bc6b-8880ef3d903f · outbound

This paper cites Botfinder: Finding bots in network traffic without deep packet inspection,.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Botfinder: Finding bots in network traffic without deep packet inspection,

Reference 47

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.338595Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:43.127481Z digest=sha256:3d869b58fbed74f9beb2e49d6e507b77d755af96bfb25cfc6272bb2b2425af1e

Observation fd2e8a17-1f2f-4940-ad4d-3cef56bb5b04 · outbound

This paper cites Nazca: Detecting malware distribution in large-scale networks.,.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Nazca: Detecting malware distribution in large-scale networks.,

Reference 48

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.325812Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:43.131424Z digest=sha256:250b96bb2042b832bbbafc2afce704ba76794633b1df35943405e39bca3719b3

Observation e213f4ab-887d-4e59-8332-e7554faee37c · outbound

This paper cites From Throw-Away traffic to bots: Detecting the rise of DGA-Based malware,.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries From Throw-Away traffic to bots: Detecting the rise of DGA-Based malware,

Reference 49

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.314517Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:43.135320Z digest=sha256:651198009056edc744a2aa5ed16ff8da21e90fbf3cc0ea7f311be0e123c48622

Observation e16362d8-6a95-47c6-a884-771ce3e0d376 · outbound

This paper cites On botnets that use dns for command and control,.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries On botnets that use dns for command and control,

Reference 50

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.302801Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:43.139110Z digest=sha256:27e2b5dcbe7cb58f02e63fe65dd57ff85891f749da8239ef2e7b24b97b818f30

Observation 65a308cb-4d21-475b-8542-6fbc38642e25 · outbound

This paper cites Dos and don’ts of machine learning in computer security,.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Dos and don’ts of machine learning in computer security,

Reference 51

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.290847Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:43.142913Z digest=sha256:cd4da6a57c8c3aa2b21994c1f710ab43315b128a96eef39656159b611b7eb36a

Observation 222d08f5-4a85-4c08-ae42-08c3cb67dd0a · outbound

This paper cites Causality matters in medical imaging,.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Causality matters in medical imaging,

Reference 52

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.278376Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:43.147043Z digest=sha256:0cfbb2a256c64eefdfab05f7a108fa7669d0976aa86c3a97d0ed57ca89e84564

Observation d9c0cf3d-55c2-4832-b153-ec15fa5986bb · outbound

This paper cites Troubleshooting an intrusion detection dataset: the cicids2017 case study,.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Troubleshooting an intrusion detection dataset: the cicids2017 case study,

Reference 53

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.264663Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:43.150869Z digest=sha256:54599041eccdd66dccda1cc0a2cd6761aa0d2fdd7f6c71abaeec3ce37503629e

Observation 8bae7f3d-0a10-4db8-bccc-3bb5c63b0779 · outbound

This paper cites Crafting adversarial example to bypass flow-&ml-based botnet detector via rl,.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Crafting adversarial example to bypass flow-&ml-based botnet detector via rl,

Reference 54

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.251661Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:43.154724Z digest=sha256:ecf01a8129a2308c6db2999761e22d2fddc93746e777cddc5cdd21b2903a5c13

Observation a9c975fd-8d22-4918-a453-d17def568090 · outbound

This paper cites Execscent: Mining for new c&c domains in live networks with adaptive control protocol templates,.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Execscent: Mining for new c&c domains in live networks with adaptive control protocol templates,

Reference 55

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.238728Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:43.158863Z digest=sha256:65517ad23c7e318290b1d42effb4e54766ca8ff6f57d00299703f2211e326d09

Observation 50fe57f7-12b6-47a6-8b75-0445702fcbcb · outbound

This paper cites Decanter: Detection of anomalous outbound http traffic by passive application fingerprinting,.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Decanter: Detection of anomalous outbound http traffic by passive application fingerprinting,

Reference 56

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.226734Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:43.162582Z digest=sha256:c956a105fd957e8ee627ae34411e1d93d28c4928d01b15483dded03c86519753

Observation 544cd299-cb14-40f9-92db-174d6f5c91d5 · outbound

This paper cites Kitsune: an ensemble of autoencoders for online network intrusion detection,.

Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries Kitsune: an ensemble of autoencoders for online network intrusion detection,

Reference 57

Resolution
verified fuzzy
raw_fallback, observed 2026-08-08T19:41:43.213844Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-08-08T19:41:43.166605Z digest=sha256:0dcb2f21eccb145b5944ddadeb2e807bc79d8c0140d59687860b542fe8abb776

Pith citing papers

No inbound Pith citation observations are available.