{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2024:SUMOSZCZRUODWLGMXUISPYK577","short_pith_number":"pith:SUMOSZCZ","schema_version":"1.0","canonical_sha256":"9518e964598d1c3b2cccbd1127e15dffdb22a501845fb5eed1c343e8c2bc7539","source":{"kind":"arxiv","id":"2403.18788","version":1},"attestation_state":"computed","paper":{"title":"Peregrine: ML-based Malicious Traffic Detection for Terabit Networks","license":"http://creativecommons.org/licenses/by/4.0/","headline":"","cross_cats":[],"primary_cat":"cs.NI","authors_text":"David Pissarra, Fernando M. V. Ramos, Francisco Pereira, Jo\\~ao Romeiras Amado, Miguel Correia, Salvatore Signorello","submitted_at":"2024-03-27T17:33:55Z","abstract_excerpt":"Malicious traffic detectors leveraging machine learning (ML), namely those incorporating deep learning techniques, exhibit impressive detection capabilities across multiple attacks. However, their effectiveness becomes compromised when deployed in networks handling Terabit-speed traffic. In practice, these systems require substantial traffic sampling to reconcile the high data plane packet rates with the comparatively slower processing speeds of ML detection. As sampling significantly reduces traffic observability, it fundamentally undermines their detection capability.\n  We present Peregrine,"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"2403.18788","kind":"arxiv","version":1},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.NI","submitted_at":"2024-03-27T17:33:55Z","cross_cats_sorted":[],"title_canon_sha256":"3b21fd2e596bc0206d9cf0b8f21cfe97c3647f8c2216d2b0560af66219a5c926","abstract_canon_sha256":"d587c82f6661b5d25f0f61167f89959d8a7ddd460f60052e91969a4d55a439b7"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T08:01:27.250172Z","signature_b64":"gIZZWFRJHoRz9PWyJton+6/K9jWkxFzZVEd1cuI74S3NqktOowx1/RTn3usWLT9RNV6EzLDfqIBVuqjkc+93Bg==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"9518e964598d1c3b2cccbd1127e15dffdb22a501845fb5eed1c343e8c2bc7539","last_reissued_at":"2026-07-05T08:01:27.249697Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T08:01:27.249697Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"Peregrine: ML-based Malicious Traffic Detection for Terabit Networks","license":"http://creativecommons.org/licenses/by/4.0/","headline":"","cross_cats":[],"primary_cat":"cs.NI","authors_text":"David Pissarra, Fernando M. V. Ramos, Francisco Pereira, Jo\\~ao Romeiras Amado, Miguel Correia, Salvatore Signorello","submitted_at":"2024-03-27T17:33:55Z","abstract_excerpt":"Malicious traffic detectors leveraging machine learning (ML), namely those incorporating deep learning techniques, exhibit impressive detection capabilities across multiple attacks. However, their effectiveness becomes compromised when deployed in networks handling Terabit-speed traffic. In practice, these systems require substantial traffic sampling to reconcile the high data plane packet rates with the comparatively slower processing speeds of ML detection. As sampling significantly reduces traffic observability, it fundamentally undermines their detection capability.\n  We present Peregrine,"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2403.18788","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2403.18788/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"2403.18788","created_at":"2026-07-05T08:01:27.249758+00:00"},{"alias_kind":"arxiv_version","alias_value":"2403.18788v1","created_at":"2026-07-05T08:01:27.249758+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2403.18788","created_at":"2026-07-05T08:01:27.249758+00:00"},{"alias_kind":"pith_short_12","alias_value":"SUMOSZCZRUOD","created_at":"2026-07-05T08:01:27.249758+00:00"},{"alias_kind":"pith_short_16","alias_value":"SUMOSZCZRUODWLGM","created_at":"2026-07-05T08:01:27.249758+00:00"},{"alias_kind":"pith_short_8","alias_value":"SUMOSZCZ","created_at":"2026-07-05T08:01:27.249758+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":1,"internal_anchor_count":1,"sample":[{"citing_arxiv_id":"2507.22165","citing_title":"Programmable Data Planes for Network Security","ref_index":8,"is_internal_anchor":true}]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/SUMOSZCZRUODWLGMXUISPYK577","json":"https://pith.science/pith/SUMOSZCZRUODWLGMXUISPYK577.json","graph_json":"https://pith.science/api/pith-number/SUMOSZCZRUODWLGMXUISPYK577/graph.json","events_json":"https://pith.science/api/pith-number/SUMOSZCZRUODWLGMXUISPYK577/events.json","paper":"https://pith.science/paper/SUMOSZCZ"},"agent_actions":{"view_html":"https://pith.science/pith/SUMOSZCZRUODWLGMXUISPYK577","download_json":"https://pith.science/pith/SUMOSZCZRUODWLGMXUISPYK577.json","view_paper":"https://pith.science/paper/SUMOSZCZ","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=2403.18788&json=true","fetch_graph":"https://pith.science/api/pith-number/SUMOSZCZRUODWLGMXUISPYK577/graph.json","fetch_events":"https://pith.science/api/pith-number/SUMOSZCZRUODWLGMXUISPYK577/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/SUMOSZCZRUODWLGMXUISPYK577/action/timestamp_anchor","attest_storage":"https://pith.science/pith/SUMOSZCZRUODWLGMXUISPYK577/action/storage_attestation","attest_author":"https://pith.science/pith/SUMOSZCZRUODWLGMXUISPYK577/action/author_attestation","sign_citation":"https://pith.science/pith/SUMOSZCZRUODWLGMXUISPYK577/action/citation_signature","submit_replication":"https://pith.science/pith/SUMOSZCZRUODWLGMXUISPYK577/action/replication_record"}},"created_at":"2026-07-05T08:01:27.249758+00:00","updated_at":"2026-07-05T08:01:27.249758+00:00"}