{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,23]],"date-time":"2026-07-23T16:08:58Z","timestamp":1784822938112,"version":"3.55.0"},"reference-count":49,"publisher":"Springer Science and Business Media LLC","issue":"9","license":[{"start":{"date-parts":[[2019,7,27]],"date-time":"2019-07-27T00:00:00Z","timestamp":1564185600000},"content-version":"tdm","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"},{"start":{"date-parts":[[2019,7,27]],"date-time":"2019-07-27T00:00:00Z","timestamp":1564185600000},"content-version":"vor","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["Neural Comput &amp; Applic"],"published-print":{"date-parts":[[2020,5]]},"DOI":"10.1007\/s00521-019-04363-x","type":"journal-article","created":{"date-parts":[[2019,7,27]],"date-time":"2019-07-27T15:03:06Z","timestamp":1564239786000},"page":"4303-4314","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":53,"title":["Gryphon: a semi-supervised anomaly detection system based on one-class evolving spiking neural network"],"prefix":"10.1007","volume":"32","author":[{"ORCID":"https:\/\/orcid.org\/0000-0003-1330-5228","authenticated-orcid":false,"given":"Konstantinos","family":"Demertzis","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Lazaros","family":"Iliadis","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Ilias","family":"Bougoudis","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2019,7,27]]},"reference":[{"key":"4363_CR1","unstructured":"Hurst W, Merabti M, Fergus P (2014) A survey of critical infrastructure security. In: Butts J, Shenoi S (eds) Critical infrastructure protection VIII. ICCIP 2014. IFIP Advances in information and communication technology, vol 441. Springer, Berlin"},{"key":"4363_CR2","doi-asserted-by":"crossref","unstructured":"Yusufovna F, Alisherovich F, Choi M, Cho E, Abdurashidovich F, Kim T (2009) Research on critical infrastructures and critical information infrastructures. In: Proceedings of the symposium on bio-inspired learning and intelligent systems for security, pp 97\u2013101","DOI":"10.1109\/BLISS.2009.32"},{"key":"4363_CR3","unstructured":"Hurst W, Merabti M, Fergus P (2013) Behavioral observation for critical infrastructure security support. In: Proceedings of the seventh IEEE European modeling symposium, pp 36\u201341"},{"key":"4363_CR4","doi-asserted-by":"crossref","unstructured":"Wang C, Fang L, Dai Y (2010) A simulation environment for SCADA security analysis and assessment. In: Proceedings of the international conference on measuring technology and mechatronics automation, vol 1, pp 342\u2013347","DOI":"10.1109\/ICMTMA.2010.603"},{"key":"4363_CR5","doi-asserted-by":"crossref","unstructured":"Walker J, Williams B, Skelton G (2010) Cyber security for emergency management. In: Proceedings of the IEEE international conference on technologies for homeland security, pp 476\u2013480","DOI":"10.1109\/THS.2010.5654965"},{"key":"4363_CR6","volume-title":"Computer applications for security, control and system engineering. Communications in computer and information science","author":"I Jeun","year":"2012","unstructured":"Jeun I, Lee Y, Won D (2012) A practical study on advanced persistent threats. In: Kim T et al (eds) Computer applications for security, control and system engineering. Communications in computer and information science, vol 339. Springer, Berlin"},{"key":"4363_CR7","first-page":"1","volume-title":"Advances in building energy research","author":"K Demertzis","year":"2018","unstructured":"Demertzis K, Iliadis LS, Anezakis V-D (2018) An innovative soft computing system for smart energy grids cybersecurity. In: Santamouris M (ed) Advances in building energy research. Taylor & Francis, London, pp 1\u201322"},{"key":"4363_CR8","volume-title":"E-democracy, security, privacy and trust in a digital world. e-Democracy 2013. Communications in computer and information science","author":"K Demertzis","year":"2014","unstructured":"Demertzis K, Iliadis L (2014) A hybrid network anomaly and intrusion detection approach based on evolving spiking neural network classification. In: Sideridis A, Kardasiadou Z, Yialouris C, Zorkadis V (eds) E-democracy, security, privacy and trust in a digital world. e-Democracy 2013. Communications in computer and information science, vol 441. Springer, Cham"},{"key":"4363_CR9","doi-asserted-by":"publisher","unstructured":"Demertzis K, Iliadis L (2014) Evolving computational intelligence system for malware detection. In: Iliadis L, Papazoglou M, Pohl K (eds) Advanced information systems engineering workshops. CAiSE 2014. Lecture notes in business information processing, vol 178. Springer, Cham. \nhttps:\/\/doi.org\/10.1007\/978-3-319-07869-4_30","DOI":"10.1007\/978-3-319-07869-4_30"},{"key":"4363_CR10","volume-title":"Computation, cryptography, and network security","author":"K Demertzis","year":"2014","unstructured":"Demertzis K, Iliadis L (2014) Bio-inspired hybrid artificial intelligence framework for cyber security. In: Daras N, Rassias M (eds) Computation, cryptography, and network security. Springer, Cham"},{"key":"4363_CR11","doi-asserted-by":"crossref","unstructured":"Demertzis K, Iliadis L (2014d) Bio-inspired hybrid intelligent method for detecting android malware. In: Iliadis L, Papazoglou M, Pohl K (eds) Advanced information systems engineering workshops. CAiSE 2014. Lecture notes in business information processing, vol 178. Springer, Cham","DOI":"10.1007\/978-3-319-07869-4"},{"key":"4363_CR12","doi-asserted-by":"crossref","unstructured":"Demertzis K, Iliadis L (2015a) Evolving smart URL filter in a zone-based policy firewall for detecting algorithmically generated malicious domains. In: Gammerman A, Vovk V, Papadopoulos H (eds) Statistical learning and data sciences. SLDS 2015. Lecture notes in computer science, vol 9047. Springer, Cham","DOI":"10.1007\/978-3-319-17091-6_17"},{"key":"4363_CR13","doi-asserted-by":"crossref","unstructured":"Demertzis K, Iliadis L (2015b) SAME: an intelligent anti-malware extension for android ART virtual machine. In: N\u00fa\u00f1ez M, Nguyen N, Camacho D, Trawi\u0144ski B (eds) Computational collective intelligence. Lecture notes in computer science, vol 9330. Springer, Cham","DOI":"10.1007\/978-3-319-24306-1_23"},{"key":"4363_CR14","doi-asserted-by":"publisher","first-page":"245","DOI":"10.1007\/s40595-017-0095-3","volume":"4","author":"K Demertzis","year":"2017","unstructured":"Demertzis K, Iliadis L (2017) Computational intelligence anti-malware framework for android OS. Vietnam J Comput Sci 4:245. \nhttps:\/\/doi.org\/10.1007\/s40595-017-0095-3","journal-title":"Vietnam J Comput Sci"},{"issue":"3","key":"4363_CR15","first-page":"45","volume":"6","author":"K Demertzis","year":"2016","unstructured":"Demertzis K, Iliadis L (2016) Ladon: a cyber-threat bio-inspired intelligence management system. J Appl Math Bioinform 6(3):45\u201364","journal-title":"J Appl Math Bioinform"},{"key":"4363_CR16","doi-asserted-by":"publisher","DOI":"10.1017\/S026988891300043X","author":"S\u039a Shehroz","year":"2014","unstructured":"Shehroz S\u039a, Madden MG (2014) One-class classification: taxonomy of study and review of techniques. Knowl Eng Rev. \nhttps:\/\/doi.org\/10.1017\/S026988891300043X","journal-title":"Knowl Eng Rev"},{"issue":"1","key":"4363_CR17","doi-asserted-by":"publisher","first-page":"4","DOI":"10.1109\/34.824819","volume":"22","author":"J Mao","year":"2000","unstructured":"Mao J, Jain AK, Duin PW (2000) Statistical pattern recognition: a review. IEEE Trans Pattern Anal Mach Intell 22(1):4\u201337","journal-title":"IEEE Trans Pattern Anal Mach Intell"},{"key":"4363_CR18","unstructured":"Ban T, Abe S (2006) Implementing multi-class classifiers by one-class classification methods. In: International joint conference on neural networks, pp 327\u2013332"},{"issue":"8","key":"4363_CR19","doi-asserted-by":"publisher","first-page":"3188","DOI":"10.1109\/TGRS.2010.2045764","volume":"48","author":"J Munoz-Mari","year":"2010","unstructured":"Munoz-Mari J, Bovolo F, Gomez-Chova L, Bruzzone L, Camp-Valls G (2010) Semisupervised one-class support vector machines for classification of remote sensing data. IEEE Trans Geosci Remote Sens 48(8):3188\u20133197. \nhttps:\/\/doi.org\/10.1109\/TGRS.2010.2045764","journal-title":"IEEE Trans Geosci Remote Sens"},{"issue":"4","key":"4363_CR20","doi-asserted-by":"publisher","first-page":"942","DOI":"10.1162\/neco.2006.18.4.942","volume":"18","author":"V Roth","year":"2006","unstructured":"Roth V (2006) Kernel fisher discriminants for outlier detection. Neural Comput 18(4):942\u2013960","journal-title":"Neural Comput"},{"key":"4363_CR21","doi-asserted-by":"crossref","unstructured":"Abe N, Zadrozny B, Langford J (2006) Outlier detection by active learning. In: Proceedings of the 12th ACM SIGKDD international conference on knowledge discovery and data mining, pp 767\u2013772. ACM Press, New York","DOI":"10.1145\/1150402.1150459"},{"key":"4363_CR22","unstructured":"Tax DMJ, Muller KR (2004) A consistency-based model selection for one-class classification. In: Proceedings of the 17th international conference on pattern recognition (ICPR 2004), vol 3, pp 363\u2013366"},{"key":"4363_CR23","doi-asserted-by":"publisher","first-page":"185","DOI":"10.1016\/j.neucom.2011.02.023","volume":"75","author":"T Wilk","year":"2012","unstructured":"Wilk T, Wozniak M (2012) Soft computing methods applied to combination of one-class classifiers. Neurocomputing 75:185\u2013193","journal-title":"Neurocomputing"},{"key":"4363_CR24","unstructured":"Huang W, Li N, Lin Z, Huang GB, Zong W, Zhou J, Duan Y (2013) Liver tumor detection and segmentation using kernel based extreme learning machine. In: IEEE conference on Engineering in Medicine and Biology Society (EMBC), pp 3662\u20133665, 3\u20137 July"},{"key":"4363_CR25","doi-asserted-by":"publisher","first-page":"2815","DOI":"10.1007\/s11042-015-2582-9","volume":"75","author":"WZ Zhu","year":"2015","unstructured":"Zhu WZ (2015) Data and feature mixed ensemble based extreme learning machine for medical object detection and segmentation. Multimed Tools Appl 75:2815\u20132837","journal-title":"Multimed Tools Appl"},{"key":"4363_CR26","unstructured":"Juszczak P (2006) Learning to recognize. A study on one-class classification and active learning. Ph.D. thesis, Delft University of Technology"},{"key":"4363_CR27","series-title":"Lecture notes in computer science","doi-asserted-by":"publisher","first-page":"259","DOI":"10.1007\/978-3-540-73547-2_27","volume-title":"Autonomic and trusted computing","author":"J Luo","year":"2007","unstructured":"Luo J, Ding L, Pan Z, Ni G, Hu G (2007) Research on cost-sensitive learning in one-class anomaly detection algorithms. In: Xiao B, Yang LT, Ma J, Muller-Schloer C, Hua Y (eds) Autonomic and trusted computing, vol 4610. Lecture notes in computer science. Springer, Berlin, pp 259\u2013268"},{"key":"4363_CR28","doi-asserted-by":"crossref","unstructured":"Tax DMJ, Laskov P (2003) Online SVM learning: from classification to data description and back. In: IEEE 13th workshop on neural networks for signal processing, (NNSP\u201903), pp 499\u2013508. IEEE","DOI":"10.1109\/NNSP.2003.1318049"},{"key":"4363_CR29","first-page":"139","volume":"2","author":"L Manevitz","year":"2001","unstructured":"Manevitz L, Yousef M (2001) One-class SVM for document classification. J Mach Learn Res 2:139\u2013154","journal-title":"J Mach Learn Res"},{"key":"4363_CR30","doi-asserted-by":"publisher","first-page":"1466","DOI":"10.1016\/j.neucom.2006.05.013","volume":"70","author":"L Manevitz","year":"2007","unstructured":"Manevitz L, Yousef M (2007) One-class document classification via neural networks. Neurocomputing 70:1466\u20131481","journal-title":"Neurocomputing"},{"key":"4363_CR31","series-title":"Lecture notes in computer science","doi-asserted-by":"crossref","first-page":"181","DOI":"10.1007\/978-3-642-02326-2_19","volume-title":"Ensembles of one class support vector machines","author":"AD Shieh","year":"2009","unstructured":"Shieh AD, Kamm DF (2009) Ensembles of one class support vector machines, vol 5519. Lecture notes in computer science. Springer, Berlin, pp 181\u2013190"},{"key":"4363_CR32","doi-asserted-by":"crossref","unstructured":"Chen Q, Abdelwahed S (2013) A model-based approach to self-protection in computing system. In: Proceeding CAC \u201813 of the ACM cloud and autonomic computing conference, article No. 16","DOI":"10.1145\/2494621.2494639"},{"key":"4363_CR33","doi-asserted-by":"publisher","unstructured":"Soupionis Y, Ntalampiras S, Giannopoulos G (2016) Vol 8985 of the book series Lecture notes in computer science. \nhttps:\/\/doi.org\/10.1007\/978-3-319-31664-2_29","DOI":"10.1007\/978-3-319-31664-2_29"},{"key":"4363_CR34","doi-asserted-by":"publisher","first-page":"389","DOI":"10.1109\/DRPT.2004.1338527","volume":"1","author":"X Tao","year":"2004","unstructured":"Tao X, Renmu H, Peng W, Dongjie X (2004) Applications of data mining technique for power system transient stability prediction. Proc IEEE Electr Util Deregul Restruct Power Technol 1:389\u2013392","journal-title":"Proc IEEE Electr Util Deregul Restruct Power Technol"},{"key":"4363_CR35","doi-asserted-by":"crossref","unstructured":"Yasakethu SLP, Jiang J (2013) Intrusion detection via machine learning for SCADA system protection, learning and development ltd. In: Proceedings of the 1st international symposium for ICS and SCADA cyber security research","DOI":"10.14236\/ewic\/ICSCSR2013.12"},{"key":"4363_CR36","unstructured":"Weiss J (2003) Current status of cybersecurity of control systems. In: Presentation to Georgia Tech protective relay conference"},{"key":"4363_CR37","volume-title":"SCADA: supervisory control and data acquisition","author":"S\u0391 Boyer","year":"2010","unstructured":"Boyer S\u0391 (2010) SCADA: supervisory control and data acquisition, 4th edn. International Society of Automation, Research Triangle Park","edition":"4"},{"key":"4363_CR38","doi-asserted-by":"crossref","unstructured":"Demertzis K, Iliadis L, Spartalis S (2017) A spiking one-class anomaly detection framework for cyber-security on industrial control systems. In: Boracchi G, Iliadis L, Jayne C, Likas A (eds) Engineering applications of neural networks. EANN 2017. Communications in computer and information science, vol 744. Springer, Cham","DOI":"10.1007\/978-3-319-65172-9_11"},{"key":"4363_CR39","doi-asserted-by":"crossref","unstructured":"Bougoudis I, Demertzis K, Iliadis L, Anezakis VD, Papaleonidas A (2016) Semi-supervised hybrid modeling of atmospheric pollution in urban centers. In: Proceedings engineering applications of neural networks. EANN 2016. Communications in computer and information science, vol 629. Springer","DOI":"10.1007\/978-3-319-44188-7_4"},{"key":"4363_CR40","volume-title":"Learning and soft computing","author":"V Kecman","year":"2001","unstructured":"Kecman V (2001) Learning and soft computing. MIT Press, Cambridge"},{"key":"4363_CR41","unstructured":"Iliadis L (2007) Intelligent systems and application in risk estimation. In: Stamoulis A (eds) Thessaloniki, Greece. ISBN: 978-960-6741-33-3"},{"key":"4363_CR42","unstructured":"Iliadis L, Papaleonidas A (2016) Computational intelligence an intelligent agents. In: Tziolas A (eds) Thessaloniki, Greece. ISBN: 978-960-418-601-3"},{"key":"4363_CR43","doi-asserted-by":"publisher","first-page":"87","DOI":"10.1007\/s12530-013-9074-9","volume":"4","author":"S Schliebs","year":"2013","unstructured":"Schliebs S, Kasabov N (2013) Evolving spiking neural network\u2014a survey. Evol Syst 4:87. \nhttps:\/\/doi.org\/10.1007\/s12530-013-9074-9","journal-title":"Evol Syst"},{"key":"4363_CR44","unstructured":"Sjostrom J, Gerstner W (2010) Spike-timing dependent plasticity. In: Scholarpedia 5.2. Revision 142314, p 1362"},{"issue":"1","key":"4363_CR45","doi-asserted-by":"publisher","first-page":"94","DOI":"10.1109\/TNN.2005.860834","volume":"17","author":"W Swiercz","year":"2006","unstructured":"Swiercz W, Swiercz W, Cios KJ, Staley K, Kurgan L, Accurso F, Sagel S (2006) A new synaptic plasticity rule for networks of spiking neurons. IEEE Trans Neural Netw 17(1):94\u2013105","journal-title":"IEEE Trans Neural Netw"},{"issue":"3","key":"4363_CR46","first-page":"93","volume":"29","author":"P Sen","year":"2008","unstructured":"Sen P, Namata G, Bilgic M, Getoor L, Galligher B, Rad ET (2008) Collective classification in network data. Adv Artif Intell 29(3):93\u2013106","journal-title":"Adv Artif Intell"},{"key":"4363_CR47","volume-title":"CRC standard probability and statistics tables and formulae","author":"D Zwillinger","year":"2000","unstructured":"Zwillinger D, Kokoska S (2000) CRC standard probability and statistics tables and formulae. CRC Press, Boca Raton"},{"issue":"2","key":"4363_CR48","first-page":"174","volume":"17","author":"TH Morris","year":"2015","unstructured":"Morris TH, Thornton Z, Turnipseed I (2015) Industrial control system simulation and data logging for intrusion detection system research. Int J Netw Secur (IJNS) 17(2):174\u2013188","journal-title":"Int J Netw Secur (IJNS)"},{"issue":"8","key":"4363_CR49","doi-asserted-by":"publisher","first-page":"861","DOI":"10.1016\/j.patrec.2005.10.010","volume":"27","author":"T Fawcett","year":"2006","unstructured":"Fawcett T (2006) An introduction to ROC analysis. Pattern Recognit Lett 27(8):861\u2013874. \nhttps:\/\/doi.org\/10.1016\/j.patrec.2005.10.010","journal-title":"Pattern Recognit Lett"}],"container-title":["Neural Computing and Applications"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/s00521-019-04363-x.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"http:\/\/link.springer.com\/article\/10.1007\/s00521-019-04363-x\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/s00521-019-04363-x.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2020,7,25]],"date-time":"2020-07-25T23:20:42Z","timestamp":1595719242000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/s00521-019-04363-x"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2019,7,27]]},"references-count":49,"journal-issue":{"issue":"9","published-print":{"date-parts":[[2020,5]]}},"alternative-id":["4363"],"URL":"https:\/\/doi.org\/10.1007\/s00521-019-04363-x","relation":{},"ISSN":["0941-0643","1433-3058"],"issn-type":[{"value":"0941-0643","type":"print"},{"value":"1433-3058","type":"electronic"}],"subject":[],"published":{"date-parts":[[2019,7,27]]},"assertion":[{"value":"17 September 2018","order":1,"name":"received","label":"Received","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"19 July 2019","order":2,"name":"accepted","label":"Accepted","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"27 July 2019","order":3,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}},{"order":1,"name":"Ethics","group":{"name":"EthicsHeading","label":"Compliance with ethical standards"}},{"value":"The authors certify that they have NO affiliations with or involvement in any organization or entity with any financial interest (such as honoraria; educational grants; participation in speakers\u2019 bureaus; membership, employment, consultancies, stock ownership, or other equity interest; and expert testimony or patent-licensing arrangements), or non-financial interest (such as personal or professional relationships, affiliations, knowledge or beliefs) in the subject matter or materials discussed in this manuscript.","order":2,"name":"Ethics","group":{"name":"EthicsHeading","label":"Conflict of interest"}}]}}