Research Article

GroupTracer: Automatic Attacker TTP Profile Extraction and Group Cluster in Internet of Things

Table 4

Several significant time-series characteristics.

#Feature nameDescription

1maximumThe largest value of the time series
2minimumThe smallest value of the time series
3lengthNumber of attack periods per IP
4meanA measure of the central tendency
5medianThe “middle” value
6standard_deviationThe square root of its variance
7varianceThe expectation of the squared deviation of a random variable from its mean
8sum_valueCalculates the sum over the time-series values