<?xml version="1.0" encoding="utf-8"?>
<!DOCTYPE article PUBLIC "-//NLM//DTD JATS (Z39.96) Journal Publishing DTD v1.3 20210610//EN" "https://jats.nlm.nih.gov/publishing/1.3/JATS-journalpublishing1-3.dtd">
<article article-type="research-article" dtd-version="1.3" xml:lang="en">
  <front xmlns:xlink="http://www.w3.org/1999/xlink">
    <journal-meta>
      <journal-id journal-id-type="elibrary">9004</journal-id>
      <journal-title-group>
        <journal-title>Problems of information security. Computer systems</journal-title>
        <trans-title-group xml:lang="ru">
          <trans-title>Проблемы информационной безопасности. Компьютерные системы</trans-title>
        </trans-title-group>
      </journal-title-group>
      <issn pub-type="epub">2071-8217</issn>
    </journal-meta>
    <article-meta xmlns:xlink="http://www.w3.org/1999/xlink">
      <article-id pub-id-type="publisher-id">6</article-id>
      <title-group>
        <article-title>Approach to detect maliscous servers on anonimous network TOR based on clasterization methods</article-title>
        <trans-title-group xml:lang="ru">
          <trans-title>Подход к выявлению вредоносных серверов сети анонимизации TOR на основе методов кластерного анализа</trans-title>
        </trans-title-group>
      </title-group>
      <contrib-group>
        <contrib contrib-type="author">
          <name>
            <surname>Nefedov</surname>
            <given-names>V.</given-names>
          </name>
        </contrib>
        <contrib contrib-type="author">
          <name>
            <surname>Kriulin</surname>
            <given-names>Artur</given-names>
          </name>
          <email>kriulin@mirea.ru</email>
        </contrib>
        <contrib contrib-type="author">
          <contrib-id contrib-id-type="orcid">0000-0002-5511-4000</contrib-id>
          <name>
            <surname>Eremeev</surname>
            <given-names>Mihail</given-names>
          </name>
          <xref ref-type="aff" rid="aff1"/>
        </contrib>
      </contrib-group>
      <aff id="aff1">MIREA – Russian Technological University</aff>
      <pub-date publication-format="electronic" date-type="pub" iso-8601-date="2021-03-30">
        <day>30</day>
        <month>03</month>
        <year>2021</year>
      </pub-date>
      <issue>1</issue>
      <fpage>55</fpage>
      <lpage>61</lpage>
      <self-uri xmlns:xlink="http://www.w3.org/1999/xlink" content-type="pdf" xlink:href="https://jisp.spbstu.ru/userfiles/files/soderzhaniya/2021_1-7-8.pdf"/>
      <abstract xml:lang="en">
        <p>The paper deals with the issues of ensuring the security of communications on the Internet, anonymous access to network resources. The problem situation is revealed, which consists in increasing the probability of deanonymization of users of the TOR network when using servers under a single administrative management in the same chain. An approach to identifying «hidden groups» of TOR anonymous network servers is proposed by analyzing the frequency of server characteristics and clustering them based on the similarity measure. The conducted research allowed us to identify ways to improve the software of the TOR anonymous network and improve the security of users</p>
      </abstract>
      <kwd-group xml:lang="en">
        <kwd>information security</kwd>
        <kwd>computer networks</kwd>
        <kwd>anonymous communication</kwd>
        <kwd>anonymous networks</kwd>
        <kwd>TOR network</kwd>
        <kwd>clustering</kwd>
      </kwd-group>
    </article-meta>
  </front>
</article>
