{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,3,27]],"date-time":"2025-03-27T11:24:25Z","timestamp":1743074665714,"version":"3.40.3"},"publisher-location":"Singapore","reference-count":25,"publisher":"Springer Nature Singapore","isbn-type":[{"type":"print","value":"9789819724574"},{"type":"electronic","value":"9789819724581"}],"license":[{"start":{"date-parts":[[2024,1,1]],"date-time":"2024-01-01T00:00:00Z","timestamp":1704067200000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2024,1,1]],"date-time":"2024-01-01T00:00:00Z","timestamp":1704067200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2024]]},"DOI":"10.1007\/978-981-97-2458-1_4","type":"book-chapter","created":{"date-parts":[[2024,4,22]],"date-time":"2024-04-22T04:01:50Z","timestamp":1713758510000},"page":"44-55","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":0,"title":["On the\u00a0Role of\u00a0Similarity in\u00a0Detecting Masquerading Files"],"prefix":"10.1007","author":[{"given":"Jonathan","family":"Oliver","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Jue","family":"Mo","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Susmit","family":"Yenkar","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Raghav","family":"Batta","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Sekhar","family":"Josyoula","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2024,4,23]]},"reference":[{"key":"4_CR1","unstructured":"ANNOY library. https:\/\/github.com\/spotify\/annoy"},{"key":"4_CR2","unstructured":"Benchmarking for fast searching of nearest neighbors. https:\/\/github.com\/erikbern\/ann-benchmarks"},{"key":"4_CR3","unstructured":"Code signing. https:\/\/en.wikipedia.org\/wiki\/Code_signing. Accessed 25 Aug 2023"},{"key":"4_CR4","unstructured":"Email authentication. https:\/\/en.wikipedia.org\/wiki\/Email_authentication. Accessed 25 Aug 2023"},{"key":"4_CR5","unstructured":"Fast nearest neighbour search and scalable clustering"},{"key":"4_CR6","unstructured":"The future of machine learning in cybersecurity. https:\/\/www.cio.com\/article\/406441\/the-future-of-machine-learning-in-cybersecurity.html\/"},{"key":"4_CR7","unstructured":"Administrator: Hijacking digital signatures. https:\/\/pentestlab.blog\/2017\/11\/06\/hijacking-digital-signatures\/ (2017). Accessed 25 Aug 2023"},{"key":"4_CR8","unstructured":"Ashkenazy, A., Zini, S.: Cylance, I kill you (2019). https:\/\/skylightcyber.com\/2019\/07\/18\/cylance-i-kill-you\/"},{"key":"4_CR9","doi-asserted-by":"crossref","unstructured":"Barr-Smith, F., Blazytko, T., Baker, R., Martinovic, I.: Exorcist: automated differential analysis to detect compromises in closed-source software supply chains. In: Proceedings of the 2022 ACM Workshop on Software Supply Chain Offensive Research and Ecosystem Defenses, pp. 51\u201361 (2022)","DOI":"10.1145\/3560835.3564550"},{"key":"4_CR10","unstructured":"Bazaar, M.: Malware Bazaar (2021). https:\/\/bazaar.abuse.ch\/. Accessed 25 Aug 2023"},{"key":"4_CR11","unstructured":"Intelligence, M.S.C.: MISP threat sharing (2021). https:\/\/www.misp-project.org\/. Accessed 06 Jan 2022"},{"key":"4_CR12","doi-asserted-by":"publisher","first-page":"91","DOI":"10.1016\/j.diin.2006.06.015","volume":"3","author":"J Kornblum","year":"2006","unstructured":"Kornblum, J.: Identifying almost identical files using context triggered piecewise hashing. Digit. Investig. 3, 91\u201397 (2006)","journal-title":"Digit. Investig."},{"key":"4_CR13","series-title":"The Springer Series on Challenges in Machine Learning","doi-asserted-by":"publisher","first-page":"195","DOI":"10.1007\/978-3-319-94042-7_11","volume-title":"The NIPS 2017 Competition: Building Intelligent Systems","author":"A Kurakin","year":"2018","unstructured":"Kurakin, A., et al.: Adversarial attacks and defences competition. In: Escalera, S., Weimer, M. (eds.) The NIPS 2017 Competition: Building Intelligent Systems. TSSCML, pp. 195\u2013231. Springer, Cham (2018). https:\/\/doi.org\/10.1007\/978-3-319-94042-7_11"},{"key":"4_CR14","unstructured":"Lab, M.: Virus.neshta (2023). https:\/\/www.malwarebytes.com\/blog\/detections\/virus-neshta. Accessed 28 Aug 2023"},{"issue":"12","key":"4_CR15","doi-asserted-by":"publisher","first-page":"17","DOI":"10.1109\/MC.2011.367","volume":"44","author":"N Leavitt","year":"2011","unstructured":"Leavitt, N.: Internet security under attack: the undermining of digital certificates. Computer 44(12), 17\u201320 (2011)","journal-title":"Computer"},{"key":"4_CR16","unstructured":"Lella, I., Theocharidou, M., Tsekmezoglou, E., Malatras, A., Garc\u00eda, S.: ENISA Threat Landscape for Supply Chain Attacks. ENISA (2021)"},{"issue":"5","key":"4_CR17","doi-asserted-by":"crossref","first-page":"537","DOI":"10.18280\/ijsse.110505","volume":"11","author":"J Mart\u00ednez","year":"2021","unstructured":"Mart\u00ednez, J., Dur\u00e1n, J.M.: Software supply chain attacks, a threat to global cybersecurity: Solarwinds\u2019 case study. Int. J. Saf. Secur. Eng. 11(5), 537\u2013545 (2021)","journal-title":"Int. J. Saf. Secur. Eng."},{"key":"4_CR18","unstructured":"Mitre: Mitre attack framework. https:\/\/attack.mitre.org\/. Accessed 25 Nov 2022"},{"key":"4_CR19","unstructured":"Mitre: Mitre attack framework: Masquerading (2017). https:\/\/attack.mitre.org\/techniques\/T1036\/. Accessed 28 Aug 2023"},{"key":"4_CR20","doi-asserted-by":"crossref","unstructured":"Oliver, J., Ali, M., Hagen, J.: HAC-T and fast search for similarity in security. In: 2020 International Conference on Omni-layer Intelligent Systems (COINS), pp.\u00a01\u20137. IEEE (2020). https:\/\/tlsh.org\/papersDir\/COINS_2020_camera_ready.pdf","DOI":"10.1109\/COINS49042.2020.9191381"},{"key":"4_CR21","doi-asserted-by":"publisher","unstructured":"Oliver, J., Cheng, C., Chen, Y.: TLSH \u2013 a locality sensitive hash. In: 2013 Fourth Cybercrime and Trustworthy Computing Workshop, pp. 7\u201313 (2013). https:\/\/doi.org\/10.1109\/CTC.2013.9, https:\/\/github.com\/trendmicro\/tlsh\/blob\/master\/TLSH_CTC_final.pdf","DOI":"10.1109\/CTC.2013.9"},{"key":"4_CR22","unstructured":"STIX2.1: STIX version 2.1 (2021). https:\/\/docs.oasis-open.org\/cti\/stix\/v2.1\/stix-v2.1.html. Accessed 06 Jan 2022"},{"key":"4_CR23","unstructured":"Szegedy, C., et al.: Intriguing properties of neural networks. arXiv preprint arXiv:1312.6199 (2013)"},{"key":"4_CR24","unstructured":"VirusTotal: Virustotal (2021). https:\/\/www.virustotal.com. Accessed 06 Jan 2022"},{"key":"4_CR25","unstructured":"Wallace, B.: Optimizing ssDeep for use at scale. Virus Bulletin. Cited Nov (2015). https:\/\/www.virusbulletin.com\/blog\/2015\/11\/paper-optimizing-ssdeep-use-scale"}],"container-title":["Lecture Notes in Computer Science","Machine Learning for Cyber Security"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-981-97-2458-1_4","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,11,16]],"date-time":"2024-11-16T19:07:54Z","timestamp":1731784074000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-981-97-2458-1_4"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024]]},"ISBN":["9789819724574","9789819724581"],"references-count":25,"URL":"https:\/\/doi.org\/10.1007\/978-981-97-2458-1_4","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2024]]},"assertion":[{"value":"23 April 2024","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"ML4CS","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"International Conference on Machine Learning for Cyber Security","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Yanuca Island","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Fiji","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2023","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"4 December 2023","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"6 December 2023","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"5","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"ml4cs2023","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"http:\/\/nsclab.org\/ml4cs2023\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}