{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,3,31]],"date-time":"2026-03-31T15:04:29Z","timestamp":1774969469189,"version":"3.50.1"},"publisher-location":"Cham","reference-count":28,"publisher":"Springer International Publishing","isbn-type":[{"value":"9783030366162","type":"print"},{"value":"9783030366179","type":"electronic"}],"license":[{"start":{"date-parts":[[2020,1,1]],"date-time":"2020-01-01T00:00:00Z","timestamp":1577836800000},"content-version":"tdm","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2020]]},"DOI":"10.1007\/978-3-030-36617-9_11","type":"book-chapter","created":{"date-parts":[[2020,1,14]],"date-time":"2020-01-14T06:04:02Z","timestamp":1578981842000},"page":"173-187","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":7,"title":["Dealing with Class Imbalance in Android Malware Detection by Cascading Clustering and Classification"],"prefix":"10.1007","author":[{"given":"Giuseppina","family":"Andresini","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Annalisa","family":"Appice","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Donato","family":"Malerba","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2020,1,15]]},"reference":[{"issue":"3","key":"11_CR1","doi-asserted-by":"publisher","first-page":"771","DOI":"10.1007\/s10115-017-1111-8","volume":"55","author":"G Ajaeiya","year":"2018","unstructured":"Ajaeiya, G., Elhajj, I.H., Chehab, A., Kayssi, A., Kneppers, M.: Mobile apps identification based on network flows. Knowl. Inf. Syst. 55(3), 771\u2013796 (2018)","journal-title":"Knowl. Inf. Syst."},{"key":"11_CR2","doi-asserted-by":"crossref","unstructured":"Alam, M.S., Vuong, S.T.: Random forest classification for detecting android malware. In: Proceedings of the 2013 IEEE International Conference on Green Computing and Communications and IEEE Internet of Things and IEEE Cyber, Physical and Social Computing, pp. 663\u2013669 (2013)","DOI":"10.1109\/GreenCom-iThings-CPSCom.2013.122"},{"key":"11_CR3","doi-asserted-by":"crossref","unstructured":"Arp, D., Spreitzenbarth, M., Hubner, M., Gascon, H., Rieck, K.: DREBIN: effective and explainable detection of android malware in your pocket. In: Proceedings of the 21st Annual Network and Distributed System Security Symposium. The Internet Society (2014)","DOI":"10.14722\/ndss.2014.23247"},{"key":"11_CR4","doi-asserted-by":"crossref","unstructured":"Bhatia, T., Kaushal, R.: Malware detection in android based on dynamic analysis. In: Proceedings of the 2017 International Conference on Cyber Security And Protection Of Digital Services (Cyber Security), pp. 1\u20136 (2017)","DOI":"10.1109\/CyberSecPODS.2017.8074847"},{"key":"11_CR5","doi-asserted-by":"crossref","unstructured":"Biggio, B., Rieck, K., Ariu, D., Wressnegger, C., Corona, I., Giacinto, G., Roli, F.: Poisoning behavioral malware clustering. In: Proceedings of the 2014 Workshop on Artificial Intelligent and Security Workshop, AISec \u201914, pp. 27\u201336. ACM (2014)","DOI":"10.1145\/2666652.2666666"},{"key":"11_CR6","doi-asserted-by":"publisher","first-page":"399","DOI":"10.1016\/j.cose.2017.11.016","volume":"73","author":"P Burnap","year":"2018","unstructured":"Burnap, P., French, R., Turner, F., Jones, K.: Malware classification using self organising feature maps and machine activity data. Comput. Secur. 73, 399\u2013410 (2018)","journal-title":"Comput. Secur."},{"key":"11_CR7","doi-asserted-by":"crossref","unstructured":"Chakraborty, T., Pierazzi, F., Subrahmanian, V.S.: EC2: ensemble clustering and classification for predicting android malware families. IEEE Trans. Dependable Secur. Comput., 1\u20131 (2018)","DOI":"10.1109\/TDSC.2017.2739145"},{"key":"11_CR8","unstructured":"Chawla, N.V. et al.: Synthetic minority over-sampling technique. J. Artif. Intell. Res. 16, 321\u2013357 (2002)"},{"key":"11_CR9","unstructured":"Demontis, A., Melis, M., Biggio, B., Maiorca, D., Arp, D., Rieck, K., Corona, I., Giacinto, G., Roli, F.: Yes, machine learning can be more secure! a case study on android malware detection. IEEE Trans. Dependable Secur. Comput. (99), 1\u20131 (2017)"},{"key":"11_CR10","doi-asserted-by":"crossref","unstructured":"Goyal, R., Spognardi, A., Dragoni, N., Argyriou, M.: Safedroid: A distributed malware detection service for android. In: Proceedings of the 2016 IEEE 9th International Conference on Service-Oriented Computing and Applications (SOCA), pp. 59\u201366 (2016)","DOI":"10.1109\/SOCA.2016.14"},{"key":"11_CR11","doi-asserted-by":"crossref","unstructured":"Idrees, F., Rajarajan, M.: Investigating the android intents and permissions for malware detection. In: Proceedings of the IEEE 10th International Conference on Wireless and Mobile Computing, Networking and Communications, pp. 354\u2013358 (2014)","DOI":"10.1109\/WiMOB.2014.6962194"},{"key":"11_CR12","unstructured":"Japkowicz, N.: The class imbalance problem: Significance and strategies. In: Proceedings of the 2000 International Conference on Artificial Intelligence (IC-AI\u20192000), vol.\u00a01, pp. 111\u2013117 (2000)"},{"issue":"4","key":"11_CR13","doi-asserted-by":"publisher","first-page":"535","DOI":"10.1080\/00401706.2014.958916","volume":"57","author":"Y Kao","year":"2015","unstructured":"Kao, Y., Reich, B., Storlie, C., Anderson, B.: Malware detection using nonparametric bayesian clustering and classification techniques. Technometrics 57(4), 535\u2013546 (2015)","journal-title":"Technometrics"},{"key":"11_CR14","doi-asserted-by":"publisher","first-page":"16568","DOI":"10.1109\/ACCESS.2017.2738069","volume":"5","author":"W Lin","year":"2017","unstructured":"Lin, W., Wu, Z., Lin, L., Wen, A., Li, J.: An ensemble random forest algorithm for insurance big data analysis. IEEE Access 5, 16568\u201316575 (2017)","journal-title":"IEEE Access"},{"key":"11_CR15","doi-asserted-by":"crossref","unstructured":"Mehrotra, S., Kohli, S.: Comparative analysis of k-means with other clustering algorithms to improve search result. In: 2015 International Conference on Green Computing and Internet of Things (ICGCIoT), pp. 309\u2013313 (2015)","DOI":"10.1109\/ICGCIoT.2015.7380479"},{"key":"11_CR16","doi-asserted-by":"publisher","first-page":"266","DOI":"10.1016\/j.compeleceng.2017.02.013","volume":"61","author":"N Milosevic","year":"2017","unstructured":"Milosevic, N., Dehghantanha, A., Choo, K.K.R.: Machine learning aided android malware classification. Comput. Electr. Eng. 61, 266\u2013274 (2017)","journal-title":"Comput. Electr. Eng."},{"issue":"3","key":"11_CR17","doi-asserted-by":"publisher","first-page":"795","DOI":"10.1007\/s10115-016-0918-z","volume":"49","author":"N Nissim","year":"2016","unstructured":"Nissim, N., Moskovitch, R., BarAd, O., Rokach, L., Elovici, Y.: Aldroid: efficient update of android anti-virus software using designated active learning methods. Knowl. Inf. Syst. 49(3), 795\u2013833 (2016)","journal-title":"Knowl. Inf. Syst."},{"key":"11_CR18","doi-asserted-by":"crossref","unstructured":"Peiravian, N., Zhu, X.: Machine learning for android malware detection using permission and api calls. In: Proceedings of the IEEE 25th International Conference on Tools with Artificial Intelligence, pp. 300\u2013305 (2013)","DOI":"10.1109\/ICTAI.2013.53"},{"key":"11_CR19","doi-asserted-by":"crossref","unstructured":"Raff, E., Nicholas, C.: Malware classification and class imbalance via stochastic hashed lzjd. In: Proceedings of the 10th ACM Workshop on Artificial Intelligence and Security, AISec \u201917, pp. 111\u2013120. ACM (2017)","DOI":"10.1145\/3128572.3140446"},{"key":"11_CR20","doi-asserted-by":"crossref","unstructured":"Rovelli, P., Vigf\u00fasson, \u00dd.: Pmds: permission-based malware detection system. In: A.\u00a0Prakash, R.\u00a0Shyamasundar (eds.) Proceedings of the Information Systems Security, pp. 338\u2013357. Springer International Publishing (2014)","DOI":"10.1007\/978-3-319-13841-1_19"},{"key":"11_CR21","doi-asserted-by":"publisher","first-page":"905","DOI":"10.1016\/j.neucom.2014.10.004","volume":"151","author":"S Sheen","year":"2015","unstructured":"Sheen, S., Anitha, R., Natarajan, V.: Android based malware detection using a multifeature collaborative decision fusion approach. Neurocomputing 151, 905\u2013912 (2015)","journal-title":"Neurocomputing"},{"key":"11_CR22","doi-asserted-by":"publisher","first-page":"804","DOI":"10.1016\/j.procs.2015.02.149","volume":"46","author":"P Shijo","year":"2015","unstructured":"Shijo, P., Salim, A.: Integrated static and dynamic analysis for malware detection. Procedia Comput. Sci. 46, 804\u2013811 (2015)","journal-title":"Procedia Comput. Sci."},{"key":"11_CR23","doi-asserted-by":"crossref","unstructured":"Suarez-Tangil, G., Dash, S.K., Ahmadi, M., Kinder, J., Giacinto, G., Cavallaro, L.: Droidsieve: fast and accurate classification of obfuscated android malware. In: Proceedings of the 7th ACM on Conference on Data and Application Security and Privacy, CODASPY 2017, pp. 309\u2013320 (2017)","DOI":"10.1145\/3029806.3029825"},{"key":"11_CR24","doi-asserted-by":"publisher","first-page":"1044","DOI":"10.3390\/app8071044","volume":"8","author":"A Tajoddin","year":"2018","unstructured":"Tajoddin, A., Jalili, S.: HM3aID: polymorphic malware detection using program behavior-aware hidden Markov model. Appl. Sci. 8, 1044 (2018)","journal-title":"Appl. Sci."},{"key":"11_CR25","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1016\/j.diin.2015.01.001","volume":"13","author":"KA Talha","year":"2015","unstructured":"Talha, K.A., Alper, D.I., Aydin, C.: Apk auditor: permission-based android malware detection system. Digit. Investig. 13, 1\u201314 (2015)","journal-title":"Digit. Investig."},{"key":"11_CR26","series-title":"The Morgan Kaufmann Series in Data Management Systems","volume-title":"Data Mining: Practical Machine Learning Tools and Techniques","author":"IH Witten","year":"2011","unstructured":"Witten, I.H., Frank, E., Hall, M.A.: Data Mining: Practical Machine Learning Tools and Techniques. The Morgan Kaufmann Series in Data Management Systems, 3rd edn. Morgan Kaufmann, Boston (2011)","edition":"3"},{"key":"11_CR27","doi-asserted-by":"crossref","unstructured":"Yerima, S.Y., Sezer, S., Muttik, I.: Android malware detection using parallel machine learning classifiers. In: Proceedings of the 8th International Conference on Next Generation Mobile Apps, Services and Technologies, pp. 37\u201342 (2014)","DOI":"10.1109\/NGMAST.2014.23"},{"key":"11_CR28","doi-asserted-by":"crossref","unstructured":"Zhou, Y., Jiang, X.: Dissecting android malware: characterization and evolution. In: Proceedings of the 2012 IEEE Symposium on Security and Privacy, pp. 95\u2013109 (2012)","DOI":"10.1109\/SP.2012.16"}],"container-title":["Studies in Computational Intelligence","Complex Pattern Mining"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-030-36617-9_11","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2020,1,14]],"date-time":"2020-01-14T06:57:17Z","timestamp":1578985037000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-030-36617-9_11"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2020]]},"ISBN":["9783030366162","9783030366179"],"references-count":28,"URL":"https:\/\/doi.org\/10.1007\/978-3-030-36617-9_11","relation":{},"ISSN":["1860-949X","1860-9503"],"issn-type":[{"value":"1860-949X","type":"print"},{"value":"1860-9503","type":"electronic"}],"subject":[],"published":{"date-parts":[[2020]]},"assertion":[{"value":"15 January 2020","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}}]}}