{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,3,31]],"date-time":"2026-03-31T21:37:59Z","timestamp":1774993079199,"version":"3.50.1"},"publisher-location":"Cham","reference-count":47,"publisher":"Springer International Publishing","isbn-type":[{"value":"9783030385569","type":"print"},{"value":"9783030385576","type":"electronic"}],"license":[{"start":{"date-parts":[[2020,1,1]],"date-time":"2020-01-01T00:00:00Z","timestamp":1577836800000},"content-version":"tdm","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2020]]},"DOI":"10.1007\/978-3-030-38557-6_6","type":"book-chapter","created":{"date-parts":[[2020,3,18]],"date-time":"2020-03-18T14:03:04Z","timestamp":1584540184000},"page":"109-120","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":11,"title":["A Comparison of State-of-the-Art Machine Learning Models for OpCode-Based IoT Malware Detection"],"prefix":"10.1007","author":[{"given":"William","family":"Peters","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-9294-7554","authenticated-orcid":false,"given":"Ali","family":"Dehghantanha","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Reza M.","family":"Parizi","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Gautam","family":"Srivastava","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2020,3,19]]},"reference":[{"key":"6_CR1","doi-asserted-by":"publisher","first-page":"544","DOI":"10.1016\/j.future.2017.07.060","volume":"78","author":"M Conti","year":"2018","unstructured":"M. Conti, A. Dehghantanha, K. Franke, S. Watson, Internet of things security and forensics: challenges and opportunities. Futur. Gener. Comput. Syst. 78, 544\u2013546 (2018)","journal-title":"Futur. Gener. Comput. Syst."},{"key":"6_CR2","doi-asserted-by":"publisher","first-page":"25167","DOI":"10.1109\/ACCESS.2018.2817560","volume":"6","author":"S Walker-Roberts","year":"2018","unstructured":"S. Walker-Roberts, M. Hammoudeh, A. Dehghantanha, A systematic review of the availability and efficacy of countermeasures to internal threats in healthcare critical infrastructure. IEEE Access 6, 25167\u201325177 (2018)","journal-title":"IEEE Access"},{"key":"6_CR3","doi-asserted-by":"crossref","unstructured":"A.D. Dwivedi, G. Srivastava, S. Dhar, R. Singh, A decentralized privacy-preserving healthcare blockchain for IoT. Sensors 19(2), 326 (2019). \nhttps:\/\/doi.org\/10.3390\/s19020326","DOI":"10.3390\/s19020326"},{"key":"6_CR4","doi-asserted-by":"publisher","first-page":"135","DOI":"10.1109\/TSP.2019.8769060","volume":"1\u20133","author":"AD Dwivedi","year":"2019","unstructured":"A.D. Dwivedi, L. Malina, P. Dzurenda, G. Srivastava, Optimized blockchain model for internet of things based healthcare applications, in 42nd International Conference on Telecommunications and Signal Processing, TSP 2019, Budapest, July 1\u20133 (2019), pp. 135\u2013139. \nhttps:\/\/doi.org\/10.1109\/TSP.2019.8769060","journal-title":"Budapest, July"},{"key":"6_CR5","unstructured":"R.M. Parizi, L. Guo, Y. Bian, A. Azmoodeh, A. Dehghantanha, K.R. Choo, CyberPDF: smart and secure coordinate-based automated health pdf data batch extraction. in 2018 IEEE\/ACM International Conference on Connected Health: Applications, Systems and Engineering Technologies (CHASE) (2018), pp. 106\u2013111"},{"key":"6_CR6","doi-asserted-by":"crossref","unstructured":"G. Epiphaniou, P. Karadimas, D. Kbaier Ben Ismail, H. Al-Khateeb, A. Dehghantanha, K.R. Choo, Nonreciprocity compensation combined with turbo codes for secret key generation in vehicular Ad Hoc social IoT networks. IEEE Internet Things J. 5(4), 2496\u20132505 (2018)","DOI":"10.1109\/JIOT.2017.2764384"},{"key":"6_CR7","doi-asserted-by":"crossref","unstructured":"L. Malina, G. Srivastava, P. Dzurenda, J. Hajny, R. Fujdiak, A secure publish\/subscribe protocol for internet of things, in Proceedings of the 14th International Conference on Availability, Reliability and Security, ARES 2019, Canterbury, August 26\u201329 (2019), pp. 75:1\u201375:10. \nhttps:\/\/doi.org\/10.1145\/3339252.3340503","DOI":"10.1145\/3339252.3340503"},{"key":"6_CR8","doi-asserted-by":"crossref","unstructured":"J. Sakhnini, H. Karimipour, A. Dehghantanha, R. Parizi, G. Srivastava, Security aspects of internet of things aided smart grids: a bibliometric survey. Internet Things, 1\u201313 (2019). \nhttps:\/\/doi.org\/10.1016\/j.iot.2019.100111","DOI":"10.1016\/j.iot.2019.100111"},{"key":"6_CR9","doi-asserted-by":"publisher","first-page":"80778","DOI":"10.1109\/ACCESS.2019.2920326","volume":"7","author":"H Karimipour","year":"2019","unstructured":"H. Karimipour, A. Dehghantanha, R.M. Parizi, K.R. Choo, H. Leung, A deep and scalable unsupervised machine learning system for cyber-attack detection in large-scale smart grids. IEEE Access 7, 80778\u201380788 (2019)","journal-title":"IEEE Access"},{"key":"6_CR10","doi-asserted-by":"publisher","first-page":"208","DOI":"10.1109\/INFOCOM.2015.7218384","volume-title":"Ubiflow: mobility management in urban-scale software defined IoT, in 2015 IEEE Conference on Computer Communications (INFOCOM)","author":"D Wu","year":"2015","unstructured":"D. Wu, D.I. Arkhipov, E. Asmare, Z. Qin, J.A. McCann, Ubiflow: mobility management in urban-scale software defined IoT, in 2015 IEEE Conference on Computer Communications (INFOCOM) (IEEE, Piscataway, 2015), pp. 208\u2013216"},{"key":"6_CR11","doi-asserted-by":"publisher","first-page":"31","DOI":"10.1016\/j.biosystemseng.2017.09.007","volume":"164","author":"A Tzounis","year":"2017","unstructured":"A. Tzounis, N. Katsoulas, T. Bartzanas, C. Kittas, Internet of things in agriculture, recent advances and future challenges. Biosyst. Eng. 164, 31\u201348 (2017)","journal-title":"Biosyst. Eng."},{"key":"6_CR12","volume-title":"IoT Report: How Internet of Things Technology Growth is Reaching Mainstream Companies and Consumers","author":"P Newman","year":"2019","unstructured":"P. Newman, IoT Report: How Internet of Things Technology Growth is Reaching Mainstream Companies and Consumers (Business Insider, New York, 2019)"},{"key":"6_CR13","volume-title":"The internet of things: mapping the value beyond the hype","author":"J Manyika","year":"2015","unstructured":"J. Manyika, M. Chui, P. Bisson, J. Woetzel, R. Dobbs, J. Bughin, D. Aharon, The internet of things: mapping the value beyond the hype. Technical Report, McKinsey & Company (2015)"},{"key":"6_CR14","volume-title":"PerLindberg, K","author":"P Cerwall","year":"2018","unstructured":"P. Cerwall, A. Lurdvall, P. Jonsson, S. Carson, R. Moller, R. Svenningsson, PerLindberg, K. Ohman, T. Sandin, L. Rangel, I. Sorlie, S. Elmgren, A. Karapntelakis, L. Wieweg, M. Halen, J. Esdtam, R. Queiros, F. Muller, L. Englund, R. Kirby, Ericsson mobility report. Technical Report, Ericsson (2018)"},{"key":"6_CR15","first-page":"1","volume-title":"Big Data and Internet of Things Security and Forensics: Challenges and Opportunities","author":"A Azmoodeh","year":"2019","unstructured":"A. Azmoodeh, A. Dehghantanha, K.K.R. Choo, Big Data and Internet of Things Security and Forensics: Challenges and Opportunities (Springer International Publishing, Cham, 2019), pp. 1\u20134"},{"key":"6_CR16","doi-asserted-by":"publisher","first-page":"865","DOI":"10.3745\/JIPS.03.0126","volume":"15","author":"PN Bahrami","year":"2019","unstructured":"P.N. Bahrami, A. Dehghantanha, T. Dargahi, R.M. Parizi, K.R. Choo, H.H.S. Javadi, Cyber kill chain-based taxonomy of advanced persistent threat actors: analogy of tactics, techniques, and procedures. J. Inf. Process. Syst. 15, 865\u2013889 (2019). \nhttps:\/\/doi.org\/10.3745\/JIPS.03.0126","journal-title":"J. Inf. Process. Syst."},{"issue":"7","key":"6_CR17","doi-asserted-by":"publisher","first-page":"80","DOI":"10.1109\/MC.2017.201","volume":"50","author":"C Kolias","year":"2017","unstructured":"C. Kolias, G. Kambourakis, A. Stavrou, J. Voas, DDos in the IoT: Mirai and other botnets. Computer 50(7), 80\u201384 (2017)","journal-title":"Computer"},{"key":"6_CR18","doi-asserted-by":"publisher","first-page":"266","DOI":"10.1016\/j.compeleceng.2017.02.013","volume":"61","author":"N Milosevic","year":"2017","unstructured":"N. Milosevic, A. Dehghantanha, K.K.R. Choo, Machine learning aided android malware classification. Comput. Electr. Eng. 61, 266\u2013274 (2017). \nhttps:\/\/doi.org\/10.1016\/j.compeleceng.2017.02.013","journal-title":"Comput. Electr. Eng."},{"key":"6_CR19","first-page":"93","volume-title":"Leveraging Machine Learning Techniques for Windows Ransomware Network Traffic Detection","author":"OMK Alhawi","year":"2018","unstructured":"O.M.K. Alhawi, J. Baldwin, A. Dehghantanha, Leveraging Machine Learning Techniques for Windows Ransomware Network Traffic Detection (Springer International Publishing, Cham, 2018), pp. 93\u2013106."},{"key":"6_CR20","doi-asserted-by":"publisher","unstructured":"R.M. Parizi, A. Dehghantanha, K.R. Choo, Towards better ocular recognition for secure real-world applications, in 2018 17th IEEE International Conference on Trust, Security and Privacy in Computing and Communications\/12th IEEE International Conference on Big Data Science and Engineering (TrustCom\/BigDataSE) (2018), pp. 277\u2013282. \nhttps:\/\/doi.org\/10.1109\/TrustCom\/BigDataSE.2018.00050","DOI":"10.1109\/TrustCom\/BigDataSE.2018.00050"},{"key":"6_CR21","doi-asserted-by":"crossref","unstructured":"H. Darabian, A. Dehghantanha, S. Hashemi, S. Homayoun, K.K.R. Choo, An opcode-based technique for polymorphic internet of things malware detection. Concurr. Comput. Pract. Exp. e5173 (2019)","DOI":"10.1002\/cpe.5173"},{"key":"6_CR22","doi-asserted-by":"publisher","first-page":"94","DOI":"10.1016\/j.future.2018.07.045","volume":"90","author":"S Homayoun","year":"2019","unstructured":"S. Homayoun, A. Dehghantanha, M. Ahmadzadeh, S. Hashemi, R. Khayami, K.K.R. Choo, D.E. Newton, Drthis: deep ransomware threat hunting and intelligence system at the fog layer. Futur. Gener. Comput. Syst. 90, 94\u2013104 (2019)","journal-title":"Futur. Gener. Comput. Syst."},{"issue":"1","key":"6_CR23","doi-asserted-by":"publisher","first-page":"88","DOI":"10.1109\/TSUSC.2018.2809665","volume":"4","author":"A Azmoodeh","year":"2019","unstructured":"A. Azmoodeh, A. Dehghantnha, K.K.R. Choo, Robust malware detection for internet of things devices using deep eigenspace learning. IEEE Trans. Sustain. Comput. 4(1), 88\u201395 (2019)","journal-title":"IEEE Trans. Sustain. Comput."},{"key":"6_CR24","volume-title":"A layered intrusion detection system for critical infrastructure using machine learning, in 2019 IEEE International Conference on Smart Energy Grid Engineering (SEGE)","author":"MR Begli","year":"2019","unstructured":"M.R. Begli, F. Derakhshan, H. Karimipour, A layered intrusion detection system for critical infrastructure using machine learning, in 2019 IEEE International Conference on Smart Energy Grid Engineering (SEGE) (2019)"},{"key":"6_CR25","volume-title":"A feature selection-based approach for joint cyber-attack detection and state estimation, in 2019 IEEE International Conference on Smart Energy Grid Engineering (SEGE)","author":"S Geris","year":"2019","unstructured":"S. Geris, H. Karimipour, A feature selection-based approach for joint cyber-attack detection and state estimation, in 2019 IEEE International Conference on Smart Energy Grid Engineering (SEGE) (2019)"},{"key":"6_CR26","volume-title":"Smart grid cyber attacks detection using supervised learning and heuristic feature selection, in 2019 IEEE International Conference on Smart Energy Grid Engineering (SEGE)","author":"J Sakhnini","year":"2019","unstructured":"J. Sakhnini, A. Dehghantanha, H. Karimipour, Smart grid cyber attacks detection using supervised learning and heuristic feature selection, in 2019 IEEE International Conference on Smart Energy Grid Engineering (SEGE) (2019)"},{"key":"6_CR27","doi-asserted-by":"publisher","first-page":"125","DOI":"10.1016\/j.pmcj.2015.01.006","volume":"25","author":"I Bilogrevic","year":"2016","unstructured":"I. Bilogrevic, K. Huguenin, B. Agir, M. Jadliwala, M. Gazaki, J.P. Hubaux, A machine-learning based approach to privacy-aware information-sharing in mobile social networks. Pervasive Mob. Comput. 25, 125\u2013142 (2016)","journal-title":"Pervasive Mob. Comput."},{"key":"6_CR28","doi-asserted-by":"crossref","unstructured":"T. Mackey, J. Kalyanam, J. Klugman, E. Kuzmenko, R. Gupta, Solution to detect, classify, and report illicit online marketing and sales of controlled substances via twitter: using machine learning and web forensics to combat digital opioid access. J. Med. Internet Res. 20(4), e10029 (2018)","DOI":"10.2196\/10029"},{"key":"6_CR29","first-page":"211","volume-title":"Internet of Things Camera Identification Algorithm Based on Sensor Pattern Noise Using Color Filter Array and Wavelet Transform","author":"K Bolouri","year":"2019","unstructured":"K. Bolouri, A. Azmoodeh, A. Dehghantanha, M. Firouzmand, Internet of Things Camera Identification Algorithm Based on Sensor Pattern Noise Using Color Filter Array and Wavelet Transform (Springer International Publishing, Cham, 2019), pp. 211\u2013223"},{"key":"6_CR30","volume-title":"Intelligent anomaly detection for large-scale smart grids, in 2019 IEEE Canadian Conference of Electrical and Computer Engineering (CCECE)","author":"H Karimipour","year":"2019","unstructured":"H. Karimipour, S. Geris, A. Dehghantanha, H. Leung, Intelligent anomaly detection for large-scale smart grids, in 2019 IEEE Canadian Conference of Electrical and Computer Engineering (CCECE) (2019)"},{"key":"6_CR31","unstructured":"S. Mohammadi, V. Desai, H. Karimipour, Multivariate mutual information-based feature selection for cyber intrusion detection, in 2018 IEEE Electrical Power and Energy Conference (EPEC) (2018), pp. 1\u20136"},{"key":"6_CR32","unstructured":"R.M. Parizi, A. Dehghantanha, K.K.R. Choo, A. Singh, Empirical vulnerability analysis of automated smart contracts security testing on blockchains, in Proceedings of the 28th Annual International Conference on Computer Science and Software Engineering, CASCON \u201918 (2018), pp. 103\u2013113"},{"key":"6_CR33","first-page":"1137","volume":"14","author":"R Kohavi","year":"1995","unstructured":"R. Kohavi, et al., A study of cross-validation and bootstrap for accuracy estimation and model selection, in IJCAI\u201995 Proceedings of the 14th International Joint Conference on Artificial Intelligence, Montreal, vol. 14 (1995), pp. 1137\u20131145","journal-title":"Montreal"},{"key":"6_CR34","first-page":"80","volume":"44","author":"S Mohammadi","year":"2019","unstructured":"S. Mohammadi, H. Mirvaziri, M. Ghazizadeh-Ahsaee, H. Karimipour, Cyber intrusion detection by combined feature selection algorithm. J. Inf. Secur. Appl. 44, 80\u201388 (2019)","journal-title":"J. Inf. Secur. Appl."},{"issue":"3","key":"6_CR35","doi-asserted-by":"publisher","first-page":"153","DOI":"10.1007\/s11416-016-0278-y","volume":"13","author":"H Hashemi","year":"2017","unstructured":"H. Hashemi, A. Azmoodeh, A. Hamzeh, S. Hashemi, Graph embedding as a new approach for unknown malware detection. J. Comput. Virol. Hacking Tech. 13(3), 153\u2013166 (2017)","journal-title":"J. Comput. Virol. Hacking Tech."},{"issue":"4","key":"6_CR36","first-page":"10","volume":"2","author":"M Damshenas","year":"2013","unstructured":"M. Damshenas, A. Dehghantanha, R. Mahmoud, A survey on malware propagation, analysis, and detection. Int. J. Cyber Secur. Digit. Forensics 2(4), 10\u201330 (2013)","journal-title":"Int. J. Cyber Secur. Digit. Forensics"},{"key":"6_CR37","doi-asserted-by":"publisher","unstructured":"F. Daryabar, A. Dehghantanha, N.I. Udzir, Investigation of bypassing malware defences and malware detections, in 2011 7th International Conference on Information Assurance and Security (IAS) (2011). pp. 173\u2013178. \nhttps:\/\/doi.org\/10.1109\/ISIAS.2011.6122815","DOI":"10.1109\/ISIAS.2011.6122815"},{"issue":"3","key":"6_CR38","doi-asserted-by":"publisher","first-page":"213","DOI":"10.1007\/s11416-017-0307-5","volume":"14","author":"HH Pajouh","year":"2018","unstructured":"H.H. Pajouh, A. Dehghantanha, R. Khayami, K.K.R. Choo, Intelligent OS X malware threat detection with code inspection. J. Comput. Virol. Hacking Tech. 14(3), 213\u2013223 (2018)","journal-title":"J. Comput. Virol. Hacking Tech."},{"key":"6_CR39","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1016\/j.sysarc.2019.01.017","volume":"97","author":"EM Dovom","year":"2019","unstructured":"E.M. Dovom, A. Azmoodeh, A. Dehghantanha, D.E. Newton, R.M. Parizi, H. Karimipour, Fuzzy pattern tree for edge malware detection and categorization in IoT. J. Syst. Archit. 97, 1\u20137 (2019). \nhttps:\/\/doi.org\/10.1016\/j.sysarc.2019.01.017","journal-title":"J. Syst. Archit."},{"issue":"2","key":"6_CR40","doi-asserted-by":"publisher","first-page":"314","DOI":"10.1109\/TETC.2016.2633228","volume":"7","author":"HH Pajouh","year":"2019","unstructured":"H.H. Pajouh, R. Javidan, R. Khayami, A. Dehghantanha, K.R. Choo, A two-layer dimension reduction and two-tier classification model for anomaly-based intrusion detection in IoT backbone networks. IEEE Trans. Emerg. Top. Comput. 7(2), 314\u2013323 (2019)","journal-title":"IEEE Trans. Emerg. Top. Comput."},{"issue":"4","key":"6_CR41","doi-asserted-by":"publisher","first-page":"1141","DOI":"10.1007\/s12652-017-0558-5","volume":"9","author":"A Azmoodeh","year":"2018","unstructured":"A. Azmoodeh, A. Dehghantanha, M. Conti, K.K.R. Choo, Detecting crypto-ransomware in IoT networks based on energy consumption footprint. J. Ambient. Intell. Humaniz. Comput. 9(4), 1141\u20131152 (2018)","journal-title":"J. Ambient. Intell. Humaniz. Comput."},{"key":"6_CR42","doi-asserted-by":"publisher","first-page":"16476","DOI":"10.1109\/ACCESS.2019.2894337","volume":"7","author":"AD Dwivedi","year":"2019","unstructured":"A.D. Dwivedi, P. Morawiecki, G. Srivastava, Differential cryptanalysis of round-reduced SPECK suitable for internet of things devices. IEEE Access 7, 16476\u201316486 (2019). \nhttps:\/\/doi.org\/10.1109\/ACCESS.2019.2894337","journal-title":"IEEE Access"},{"key":"6_CR43","doi-asserted-by":"crossref","unstructured":"S. Lou, G. Srivastava, S. Liu, A node density control learning method for the internet of things. Sensors 19(15), 3428 (2019). \nhttps:\/\/doi.org\/10.3390\/s19153428","DOI":"10.3390\/s19153428"},{"key":"6_CR44","doi-asserted-by":"publisher","unstructured":"S. Homayoun, A. Dehghantanha, M. Ahmadzadeh, S. Hashemi, R. Khayami, Know abnormal, find evil: frequent pattern mining for ransomware threat hunting and intelligence. IEEE Trans. Emerg. Top. Comput. 1\u20131 (2017). \nhttps:\/\/doi.org\/10.1109\/TETC.2017.2756908","DOI":"10.1109\/TETC.2017.2756908"},{"key":"6_CR45","first-page":"137","volume-title":"BoTShark: A Deep Learning Approach for Botnet Traffic Detection","author":"S Homayoun","year":"2018","unstructured":"S. Homayoun, M. Ahmadzadeh, S. Hashemi, A. Dehghantanha, R. Khayami, BoTShark: A Deep Learning Approach for Botnet Traffic Detection (Springer International Publishing, Cham, 2018), pp. 137\u2013153"},{"key":"6_CR46","unstructured":"L.v.d. Maaten, G. Hinton, Visualizing data using t-SNE. J. Mach. Learn. Res. 9, 2579\u20132605 (2008)"},{"issue":"1\u20133","key":"6_CR47","doi-asserted-by":"publisher","first-page":"37","DOI":"10.1016\/0169-7439(87)80084-9","volume":"2","author":"S Wold","year":"1987","unstructured":"S. Wold, K. Esbensen, P. Geladi, Principal component analysis. Chemom. Intell. Lab. Syst. 2(1\u20133), 37\u201352 (1987)","journal-title":"Chemom. Intell. Lab. Syst."}],"container-title":["Handbook of Big Data Privacy"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-030-38557-6_6","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2020,3,19]],"date-time":"2020-03-19T00:26:04Z","timestamp":1584577564000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-030-38557-6_6"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2020]]},"ISBN":["9783030385569","9783030385576"],"references-count":47,"URL":"https:\/\/doi.org\/10.1007\/978-3-030-38557-6_6","relation":{},"subject":[],"published":{"date-parts":[[2020]]},"assertion":[{"value":"19 March 2020","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}}]}}