{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,29]],"date-time":"2026-07-29T02:05:40Z","timestamp":1785290740077,"version":"3.55.0"},"reference-count":100,"publisher":"Springer Science and Business Media LLC","issue":"1","license":[{"start":{"date-parts":[[2025,10,28]],"date-time":"2025-10-28T00:00:00Z","timestamp":1761609600000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by-nc-nd\/4.0"},{"start":{"date-parts":[[2025,10,28]],"date-time":"2025-10-28T00:00:00Z","timestamp":1761609600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by-nc-nd\/4.0"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["Discov Computing"],"DOI":"10.1007\/s10791-025-09760-6","type":"journal-article","created":{"date-parts":[[2025,10,28]],"date-time":"2025-10-28T19:19:57Z","timestamp":1761679197000},"update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":7,"title":["Explainability and interpretability of artificial intelligence use in cybersecurity"],"prefix":"10.1007","volume":"28","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-6036-619X","authenticated-orcid":false,"given":"Lizzy","family":"Ofusori","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-3710-2513","authenticated-orcid":false,"given":"Tebogo","family":"Bokaba","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-8203-5984","authenticated-orcid":false,"given":"Siyabonga","family":"Mhlongo","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2025,10,28]]},"reference":[{"issue":"2","key":"9760_CR1","doi-asserted-by":"publisher","first-page":"1","DOI":"10.47672\/ejt.1486","volume":"7","author":"J Bharadiya","year":"2023","unstructured":"Bharadiya J. Machine learning in cybersecurity: techniques and challenges. Eur J Technol. 2023;7(2):1\u201314.","journal-title":"Eur J Technol"},{"issue":"6","key":"9760_CR2","doi-asserted-by":"publisher","first-page":"1473","DOI":"10.1007\/s40745-022-00444-2","volume":"10","author":"IH Sarker","year":"2023","unstructured":"Sarker IH. Machine learning for intelligent data analysis and automation in cybersecurity: current and future prospects. Ann Data Sci. 2023;10(6):1473\u201398.","journal-title":"Ann Data Sci"},{"key":"9760_CR3","doi-asserted-by":"publisher","unstructured":"Desai A, Desai M. A review of the state of cybersecurity in the healthcare industry and propose [sic] security controls. Mesopot J Artif Intell Healthc. 2023;82\u20134. https:\/\/doi.org\/10.58496\/MJAIH\/2023\/016.","DOI":"10.58496\/MJAIH\/2023\/016"},{"key":"9760_CR4","doi-asserted-by":"publisher","first-page":"292","DOI":"10.1057\/s41284-023-00378-1","volume":"37","author":"P Kariuki","year":"2024","unstructured":"Kariuki P, Ofusori LO, Subramaniam PR. Cybersecurity threats and vulnerabilities experienced by small-scale African migrant traders in Southern Africa. Secur J. 2024;37:292\u2013321. https:\/\/doi.org\/10.1057\/s41284-023-00378-1.","journal-title":"Secur J"},{"issue":"4","key":"9760_CR5","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1007\/s11920-021-01228-w","volume":"23","author":"S Monteith","year":"2021","unstructured":"Monteith S, Bauer M, Alda M, Geddes J, Whybrow PC, Glenn T. Increasing cybercrime since the pandemic: concerns for psychiatry. Curr Psychiatry Rep. 2021;23(4):1\u20139.","journal-title":"Curr Psychiatry Rep"},{"key":"9760_CR6","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1186\/s40537-020-00318-5","volume":"7","author":"IH Sarker","year":"2020","unstructured":"Sarker IH, Kayes A, Badsha S, Alqahtani H, Watters P, Ng A. Cybersecurity data science: an overview from machine learning perspective. J Big Data. 2020;7:1\u201329.","journal-title":"J Big Data"},{"issue":"4","key":"9760_CR7","doi-asserted-by":"publisher","first-page":"252","DOI":"10.1080\/19393555.2021.1995537","volume":"32","author":"M Nasereddin","year":"2023","unstructured":"Nasereddin M, Al Khamaiseh A, Qasaimeh M, Al-Qassas R. A systematic review of detection and prevention techniques of SQL injection attacks. Inf Secur J Glob Perspect. 2023;32(4):252\u201365.","journal-title":"Inf Secur J Glob Perspect"},{"key":"9760_CR8","unstructured":"Suciu D, McLaughlin S, Simon L, Sion R. Horizontal privilege escalation in trusted applications. In: 29th USENIX Security Symposium (USENIX Secur.), pp. 825\u2013840, (2020)."},{"key":"9760_CR9","doi-asserted-by":"publisher","unstructured":"Kuppa A, Le-Khac NA. Black box attacks on explainable artificial intelligence (XAI) methods in cyber security. In: International Joint Conference on Neural Networks, IEEE, Glasgow, UK, pp. 1\u20138 (2020). https:\/\/doi.org\/10.1109\/IJCNN48605.2020.9206780","DOI":"10.1109\/IJCNN48605.2020.9206780"},{"key":"9760_CR10","doi-asserted-by":"publisher","unstructured":"Guo W, Mu D, Xu J, Su P, Wang G, Xing X. Lemna: Explaining deep learning based security applications. In: Proceedings of the 2018 ACM SIGSAC Conference on Computer and Communications Security, Toronto, Canada, pp. 364\u2013379 (2018). https:\/\/doi.org\/10.1145\/3243734","DOI":"10.1145\/3243734"},{"key":"9760_CR11","unstructured":"Zhang X, Wang N, Shen H, Ji S, Luo X, Wang T. Interpretable deep learning under fire. In: Proceedings of the 29th USENIX Security Symposium (USENIX Security 20); 2020 August 12\u201314, Boston, MA. California: USENIX Association; 2020. pp. 1659\u20131676."},{"key":"9760_CR12","doi-asserted-by":"publisher","first-page":"93104","DOI":"10.1109\/ACCESS.2022.3204051","volume":"10","author":"Z Zhang","year":"2022","unstructured":"Zhang Z, Al Hamadi H, Damiani E, Yeun CY, Taher F. Explainable artificial intelligence applications in cyber security: state-of-the-art in research. IEEE Access. 2022;10:93104\u201339.","journal-title":"IEEE Access"},{"key":"9760_CR13","doi-asserted-by":"publisher","DOI":"10.36227\/techrxiv.17169080.v1","author":"S Wali","year":"2023","unstructured":"Wali S, Khan I. Explainable AI and random forest based reliable intrusion detection system. Authorea Preprint. 2023. https:\/\/doi.org\/10.36227\/techrxiv.17169080.v1.","journal-title":"Authorea Preprint"},{"key":"9760_CR14","doi-asserted-by":"publisher","first-page":"30164","DOI":"10.1109\/ACCESS.2024.3368377","volume":"12","author":"D Gaspar","year":"2024","unstructured":"Gaspar D, Silva P, Silva C. Explainable AI for intrusion detection systems: LIME and SHAP applicability on multi-layer perceptron. IEEE Access. 2024;12:30164\u201375.","journal-title":"IEEE Access"},{"key":"9760_CR15","doi-asserted-by":"publisher","unstructured":"Sindiramutty SR, Tan CE, Lau SP, Thangaveloo R, Gharib AH, Manchuri AR, Khan NA, Tee WJ, Muniandy L. Explainable AI for cybersecurity. In: Ghonge M., Pradeep N., Jhanjhi N., Kulkarni P, editors, Advances in Explainable AI Applications for Smart Cities, pp. 31\u201397. IGI Global Scientific Publishing (2024). https:\/\/doi.org\/10.4018\/978-1-6684-6361-1.ch002","DOI":"10.4018\/978-1-6684-6361-1.ch002"},{"key":"9760_CR16","doi-asserted-by":"publisher","first-page":"1319","DOI":"10.1007\/s11135-020-01059-6","volume":"55","author":"M Shaffril","year":"2021","unstructured":"Shaffril M, Samsuddin HA, Abu Samah SF. The ABC of systematic literature review: the basic methodological guidance for beginners. Qual Quant. 2021;55:1319\u201346.","journal-title":"Qual Quant"},{"key":"9760_CR17","doi-asserted-by":"publisher","DOI":"10.1186\/s13643-021-01671-z","volume":"10","author":"R Sarkis-Onofre","year":"2021","unstructured":"Sarkis-Onofre R, Catal\u00e1-L\u00f3pez F, Aromataris E, Lockwood C. How to properly use the PRISMA statement. Syst Rev. 2021;10:117. https:\/\/doi.org\/10.1186\/s13643-021-01671-z.","journal-title":"Syst Rev"},{"key":"9760_CR18","doi-asserted-by":"crossref","unstructured":"Schotten M, Meester WJ, Steiginga S, Ross CA. A brief history of scopus: the world\u2019s largest abstract and citation database of scientific literature. In: Cantu-Ortiz F, editor. Research Analytics. Boosting university productivity and competitiveness through scientometrics. Taylor & Francis; 2017. pp. 31\u201358.","DOI":"10.1201\/9781315155890-3"},{"issue":"1","key":"9760_CR19","doi-asserted-by":"publisher","first-page":"377","DOI":"10.1162\/qss_a_00019","volume":"1","author":"J Baas","year":"2020","unstructured":"Baas J, Schotten M, Plume A, C\u00f4t\u00e9 G, Karimi R. Scopus as a curated, high-quality bibliometric data source for academic research in quantitative science studies. Quant Sci Stud. 2020;1(1):377\u201386.","journal-title":"Quant Sci Stud"},{"key":"9760_CR20","unstructured":"Garc\u00eda-Pe\u00f1alvo FJ. Developing robust state-of-the-art reports. Systematic Literature Reviews\u2019; 2022."},{"key":"9760_CR21","doi-asserted-by":"crossref","unstructured":"Page MJ, McKenzie JE, Bossuyt PM, Boutron I, Hoffmann TC, Mulrow CD, Shamseer L, Tetzlaff JM, Akl EA, Brennan SE. \u2018The PRISMA 2020 statement: an updated guideline for reporting systematic reviews\u2019, bmj, 2021, 372.","DOI":"10.1136\/bmj.n71"},{"key":"9760_CR22","doi-asserted-by":"publisher","unstructured":"Ali MA, Alqaraghuli A. A survey on the significance of artificial intelligence (AI) in network cybersecurity. Babylon J Netw. 2023;21\u20139. https:\/\/doi.org\/10.58496\/BJN\/2023\/004.","DOI":"10.58496\/BJN\/2023\/004"},{"key":"9760_CR23","doi-asserted-by":"publisher","DOI":"10.58496\/BJAI\/2025\/008","author":"SA Moamin","year":"2025","unstructured":"Moamin SA, Abdulhameed MK, Al-Amri RM, Radhi AD, Naser RK, Pheng LG. Artificial intelligence in malware and network intrusion detection: a comprehensive survey of techniques, datasets, challenges, and future directions. Babylonian Journal of Artificial Intelligence. 2025. https:\/\/doi.org\/10.58496\/BJAI\/2025\/008.","journal-title":"Babylonian Journal of Artificial Intelligence"},{"key":"9760_CR24","doi-asserted-by":"publisher","DOI":"10.58496\/BJML\/2024\/006","author":"MA Khalaf","year":"2024","unstructured":"Khalaf MA, Steiti A. Artificial intelligence predictions in cyber security: analysis and early detection of cyber attacks. Babylonian Journal of Machine Learning. 2024. https:\/\/doi.org\/10.58496\/BJML\/2024\/006.","journal-title":"Babylonian Journal of Machine Learning"},{"key":"9760_CR25","doi-asserted-by":"crossref","unstructured":"Choubisa M, Doshi R, Khatri N, Hiran KK. A simple and robust approach of random forest for intrusion detection system in cyber security. In: International Conference on IoT and Blockchain Technology (ICIBT), IEEE, pp. 1\u20135 (2022).","DOI":"10.1109\/ICIBT52874.2022.9807766"},{"key":"9760_CR26","doi-asserted-by":"crossref","unstructured":"Reddy RS, Kumar KS, Rao ESN, RajaRajeswari P. Enhancing cybersecurity through random forests: A comprehensive analysis of malware detection and intrusion detection. In: Third International Conference on Ubiquitous Computing and Intelligent Information Systems (ICUIS), IEEE, pp. 478\u2013482 (2023).","DOI":"10.1109\/ICUIS60567.2023.00085"},{"key":"9760_CR27","doi-asserted-by":"crossref","unstructured":"Ghanem K, Aparicio-Navarro FJ, Kyriakopoulos KG, Lambotharan S, Chambers JA. Support vector machine for network intrusion and cyber-attack detection. In: Sensor Signal Processing for Defence Conference, IEEE, pp. 1\u20135 (2017).","DOI":"10.1109\/SSPD.2017.8233268"},{"key":"9760_CR28","doi-asserted-by":"publisher","first-page":"105","DOI":"10.1007\/978-3-319-02300-7","volume-title":"Support vector machines applications","author":"B Biggio","year":"2014","unstructured":"Biggio B, Corona I, Nelson B, Rubinstein BI, Maiorca D, Fumera G, Giacinto G, Roli F. Security evaluation of support vector machines in adversarial environments. In: Ma Y, Guo G, editors. Support vector machines applications. Cham: Springer; 2014. pp. 105\u201353. https:\/\/doi.org\/10.1007\/978-3-319-02300-7."},{"key":"9760_CR29","doi-asserted-by":"publisher","unstructured":"Agarwal M, Gill KS, Chauhan R, Kapruwan A, Banerjee D. Classification of network security attack using KNN (K-nearest neighbour) and comparison of different attacks through different machine learning techniques. In: 3rd International Conference for Innovation in Technology (INOCON), pp. 1\u20137. IEEE (2024). https:\/\/doi.org\/10.1109\/INOCON60754.2024.10512250","DOI":"10.1109\/INOCON60754.2024.10512250"},{"issue":"1","key":"9760_CR30","doi-asserted-by":"publisher","first-page":"209","DOI":"10.60087\/jaigs.v1i1.213","volume":"1","author":"F Zhao","year":"2024","unstructured":"Zhao F, Zhang M, Zhou S, Lou Q. Detection of network security traffic anomalies based on machine learning KNN method. J Artif Intell Gen Sci. 2024;1(1):209\u201318. https:\/\/doi.org\/10.60087\/jaigs.v1i1.213.","journal-title":"J Artif Intell Gen Sci"},{"issue":"7","key":"9760_CR31","first-page":"422","volume":"12","author":"R Majeed","year":"2021","unstructured":"Majeed R, Abdullah NA, Mushtaq MF. IoT-based cyber-security of drones using the Na\u00efve Bayes algorithm. Int J Adv Comput Sci Appl. 2021;12(7):422\u20137.","journal-title":"Int J Adv Comput Sci Appl"},{"key":"9760_CR32","doi-asserted-by":"publisher","unstructured":"Jamil M, Creutzburg R, Nafiz Aydin M. Enhancing critical infrastructure cybersecurity: Leveraging AI-based solutions for threat detection. In: Mathew, L., Subramanian, K.G., Nagar, A.K, editors, Proceedings of International Conference on Theoretical and Applied Computing (ICTAC 2024), Algorithms for Intelligent Systems, pp. 157\u2013169, Springer, Singapore (2024). https:\/\/doi.org\/10.1007\/978-981-97-6957-5_14","DOI":"10.1007\/978-981-97-6957-5_14"},{"key":"9760_CR33","doi-asserted-by":"publisher","unstructured":"Kothari S, Tidke I. A systemic review of machine learning approaches for malicious URL detection. In: Kumar, S., Hiranwal, S., Garg, R., Purohit, S.D, editors, Proceedings of International Conference on Communication and Computational Technologies, 1121, pp. 177\u2013187, Springer, Singapore (2024). https:\/\/doi.org\/10.1007\/978-981-97-7423-4_14","DOI":"10.1007\/978-981-97-7423-4_14"},{"key":"9760_CR34","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2021.102585","volume":"114","author":"D Nedeljkovic","year":"2022","unstructured":"Nedeljkovic D, Jakovljevic Z. CNN based method for the development of cyber-attacks detection algorithms in industrial control systems. Comput Secur. 2022;114:102585.","journal-title":"Comput Secur"},{"issue":"11","key":"9760_CR35","doi-asserted-by":"publisher","DOI":"10.3390\/sym14112308","volume":"14","author":"MS Akhtar","year":"2022","unstructured":"Akhtar MS, Feng T. Detection of malware by deep learning as CNN-LSTM machine learning techniques in real time. Symmetry. 2022;14(11):2308. https:\/\/doi.org\/10.3390\/sym14112308.","journal-title":"Symmetry"},{"key":"9760_CR36","doi-asserted-by":"crossref","unstructured":"Van Efferen L, Ali-Eldin AM. A multi-layer perceptron approach for flow-based anomaly detection. In: International Symposium on Networks, Computers and Communications (ISNCC), IEEE, pp. 1\u20136, Marrakech, Morocco, 16\u201318 May (2017).","DOI":"10.1109\/ISNCC.2017.8072036"},{"key":"9760_CR37","volume-title":"Recent advancements in network and cyber security using RNN. Trust, security and privacy for big data","author":"G Yenduri","year":"2022","unstructured":"Yenduri G, Gadekallu TR. Recent advancements in network and cyber security using RNN. Trust, security and privacy for big data. 1st ed. Boca Raton, FL, USA: CRC; 2022.","edition":"1"},{"issue":"19","key":"9760_CR38","doi-asserted-by":"publisher","DOI":"10.3390\/app9193945","volume":"9","author":"H Gasmi","year":"2019","unstructured":"Gasmi H, Laval J, Bouras A. Information extraction of cybersecurity concepts: an LSTM approach. Appl Sci. 2019;9(19):3945. https:\/\/doi.org\/10.3390\/app9193945.","journal-title":"Appl Sci"},{"key":"9760_CR39","doi-asserted-by":"publisher","first-page":"7700","DOI":"10.1109\/ACCESS.2018.280344","volume":"6","author":"LF Maim\u00f3","year":"2018","unstructured":"Maim\u00f3 LF, G\u00f3mez \u00c1LP, Clemente FJG, P\u00e9rez MG, P\u00e9rez GM. A self-adaptive deep learning-based system for anomaly detection in 5G networks. IEEE Access. 2018;6:7700\u201312. https:\/\/doi.org\/10.1109\/ACCESS.2018.280344.","journal-title":"IEEE Access"},{"key":"9760_CR40","doi-asserted-by":"crossref","unstructured":"Aggarwal S, Kumar V, Sudarsan S. Identification and detection of phishing emails using natural language processing techniques. In: Proceedings of the 7th International Conference on Security of Information and Networks; 2014 September 9; Glasgow, UK. New York: ACM Press; 2014. pp. 217\u2013222.","DOI":"10.1145\/2659651.2659691"},{"key":"9760_CR41","doi-asserted-by":"crossref","unstructured":"Hamisu M, Mansour A. Detecting advance fee fraud using NLP bag of word model. In: IEEE 2nd International Conference on Cyberspac (CYBER NIGERIA), pp. 94\u201397, IEEE, Nagoya, Japan, 26\u201329 June (2020).","DOI":"10.1109\/CYBERNIGERIA51635.2021.9428793"},{"key":"9760_CR42","doi-asserted-by":"crossref","unstructured":"Ranka P, Shah A, Vora N, Kulkarni A, Patil N. Computer vision-based cybersecurity threat detection system with GAN-enhanced data augmentation. In: International Conference on Soft Computing and its Engineering Applications, Cham, Springer Nature, Switzerland, pp. 54\u201367 (2023).","DOI":"10.1007\/978-3-031-53728-8_5"},{"key":"9760_CR43","doi-asserted-by":"crossref","unstructured":"Rao RS, Ali ST. A computer vision technique to detect phishing attacks. In: Fifth International Conference on Communication Systems and Network Technologies, IEEE, pp. 596\u2013601. Gwalior, India, 4\u20136 April (2015).","DOI":"10.1109\/CSNT.2015.68"},{"key":"9760_CR44","doi-asserted-by":"crossref","unstructured":"Bozkir AS, Sezer EA. Use of HOG descriptors in phishing detection. In: 4th International Symposium on Digital Forensic and Security, IEEE, pp. 148\u2013153, Little Rock, AR, USA, 25\u201327 April (2016).","DOI":"10.1109\/ISDFS.2016.7473534"},{"key":"9760_CR45","doi-asserted-by":"publisher","first-page":"323","DOI":"10.1016\/j.cose.2017.09.011","volume":"74","author":"M Alali","year":"2018","unstructured":"Alali M, Almogren A, Hassan MM, Rassan IA, Bhuiyan MZA. Improving risk assessment model of cyber security using fuzzy logic inference system. Comput Secur. 2018;74:323\u201339. https:\/\/doi.org\/10.1016\/j.cose.2017.09.011.","journal-title":"Comput Secur"},{"key":"9760_CR46","doi-asserted-by":"publisher","first-page":"33","DOI":"10.1007\/978-3-031-67195-1_5","volume-title":"Intelligent and fuzzy systems","author":"R Imamguluyev","year":"2024","unstructured":"Imamguluyev R, Huseynli J, Hajiyev I. Fuzzy logic and cybersecurity: an intelligent shield in the digital age. In: Kahraman C, Onar C, Cebi S, Oztaysi S, Tolga B, Ucal Sari AC, I, editors. Intelligent and fuzzy systems. Volume 1089. Cham, Switzerland: Springer Nature; 2024. pp. 33\u201340. https:\/\/doi.org\/10.1007\/978-3-031-67195-1_5."},{"issue":"18","key":"9760_CR47","doi-asserted-by":"publisher","first-page":"14753","DOI":"10.1007\/s00521-020-04830-w","volume":"32","author":"S Mahdavifar","year":"2020","unstructured":"Mahdavifar S, Ghorbani AA. DeNNeS: deep embedded neural network expert system for detecting cyber attacks. Neural Comput Appl. 2020;32(18):14753\u201380.","journal-title":"Neural Comput Appl"},{"issue":"3","key":"9760_CR48","doi-asserted-by":"publisher","first-page":"2330","DOI":"10.1109\/JIOT.2022.3211346","volume":"10","author":"C Park","year":"2022","unstructured":"Park C, Lee J, Kim Y, Park JG, Kim H, Hong D. An enhanced AI-based network intrusion detection system using generative adversarial networks. IEEE Internet Things J. 2022;10(3):2330\u201345.","journal-title":"IEEE Internet Things J"},{"key":"9760_CR49","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2024.104005","volume":"145","author":"X Zhao","year":"2024","unstructured":"Zhao X, Fok KW, Thing VL. Enhancing network intrusion detection performance using generative adversarial networks. Comput Secur. 2024;145:104005. https:\/\/doi.org\/10.1016\/j.cose.2024.104005.","journal-title":"Comput Secur"},{"key":"9760_CR50","doi-asserted-by":"publisher","DOI":"10.70470\/SHIFRA\/2025\/004","author":"S Salloum","year":"2025","unstructured":"Salloum S, Norozpour S. XAI-IDS: a transparent and interpretable framework for robust cybersecurity using explainable artificial intelligence. SHIFRA. 2025. https:\/\/doi.org\/10.70470\/SHIFRA\/2025\/004.","journal-title":"SHIFRA"},{"issue":"3","key":"9760_CR51","doi-asserted-by":"publisher","first-page":"1318","DOI":"10.1002\/qre.2939","volume":"38","author":"P Giudici","year":"2022","unstructured":"Giudici P, Raffinetti E. Explainable AI methods in cyber risk management. Qual Reliab Eng Int. 2022;38(3):1318\u201326.","journal-title":"Qual Reliab Eng Int"},{"key":"9760_CR52","doi-asserted-by":"crossref","unstructured":"Alenezi R, Ludwig SA. Explainability of cybersecurity threats data using SHAP. In: IEEE Symposium Series on Computational Intelligence (SSCI), IEEE, pp. 1\u201310, Orlando, FL, USA, 5\u20137 December (2021).","DOI":"10.1109\/SSCI50451.2021.9659888"},{"key":"9760_CR53","unstructured":"Saleem M, Farooq MS, Shahzad T, Hassan A, Abbas S, Ali T, Aggoune E-HM, Khan MA, Access IEEE. 2024."},{"key":"9760_CR54","doi-asserted-by":"publisher","first-page":"2066","DOI":"10.1016\/j.egyr.2025.01.063","volume":"13","author":"MA Khan","year":"2025","unstructured":"Khan MA, Farooq MS, Saleem M, Shahzad T, Ahmad M, Abbas S, et al. Smart buildings: federated learning-driven secure, transparent and smart energy management system using XAI. Energy Rep. 2025;13:2066\u201381.","journal-title":"Energy Rep"},{"issue":"1","key":"9760_CR55","doi-asserted-by":"publisher","DOI":"10.1007\/s10791-025-09672-5","volume":"28","author":"R Sowmya","year":"2025","unstructured":"Sowmya R, Konduri B. Explainable and cognitive attention evoked learning framework for mitigating the large-scale real time cyber attacks. Discover Computing. 2025;28(1):160.","journal-title":"Discover Computing"},{"issue":"3","key":"9760_CR56","doi-asserted-by":"publisher","first-page":"766","DOI":"10.1080\/10618600.2021.2007935","volume":"31","author":"A Inglis","year":"2022","unstructured":"Inglis A, Parnell A, Hurley CB. Visualizing variable importance and variable interaction effects in machine learning models. J Comput Graph Stat. 2022;31(3):766\u201378.","journal-title":"J Comput Graph Stat"},{"issue":"12","key":"9760_CR57","doi-asserted-by":"publisher","first-page":"12305","DOI":"10.1002\/int.23088","volume":"37","author":"F Yan","year":"2022","unstructured":"Yan F, Wen S, Nepal S, Paris C, Xiang Y. Explainable machine learning in cybersecurity: a survey. Int J Intell Syst. 2022;37(12):12305\u201334.","journal-title":"Int J Intell Syst"},{"key":"9760_CR58","doi-asserted-by":"publisher","unstructured":"Alodibat S, Ahmad A, Azzeh M. Explainable machine learning-based cybersecurity detection using LIME and Secml. In: IEEE Jordan International Joint Conference on Electrical Engineering and Information Technology (JEEIT), pp. 235\u2013242, IEEE (2023). https:\/\/doi.org\/10.1109\/JEEIT58638.2023.10185893","DOI":"10.1109\/JEEIT58638.2023.10185893"},{"key":"9760_CR59","doi-asserted-by":"publisher","unstructured":"Baniya A, Vinod A, Chinta HS, Vishnu P, Thangam S. Intrusion detection based on clustering with ML algorithm and LIME insights. In: International Conference on Integrated Circuits and Communication Systems (ICICACS), IEEE, pp. 1\u20136, Raichur, India (2024). https:\/\/doi.org\/10.1109\/ICICACS60521.2024.10498512","DOI":"10.1109\/ICICACS60521.2024.10498512"},{"key":"9760_CR60","doi-asserted-by":"publisher","first-page":"1164","DOI":"10.1109\/OJCOMS.2022.3188750","volume":"3","author":"AE Houda","year":"2022","unstructured":"Houda AE, Brik Z, Khoukhi B. Why should I trust your ids? An explainable deep learning framework for intrusion detection systems in internet of things networks. IEEE Open J Commun Soc. 2022;3:1164\u201376. https:\/\/doi.org\/10.1109\/OJCOMS.2022.3188750.","journal-title":"IEEE Open J Commun Soc"},{"key":"9760_CR61","doi-asserted-by":"crossref","unstructured":"Sivamohan S, Sri S. KHO-XAI: Krill herd optimization and explainable artificial intelligence framework for network intrusion detection systems in Industry 4.0. Research Square (2022).","DOI":"10.21203\/rs.3.rs-1683748\/v1"},{"key":"9760_CR62","doi-asserted-by":"crossref","unstructured":"Tavallaee M, Bagheri E, Lu W, Ghorbani AA. A detailed analysis of the KDD CUP 99 dataset. In: IEEE Symposium on Computational Intelligence for Security and Defense Applications, IEEE, pp. 1\u20136, Ottawa, ON, Canada (2009).","DOI":"10.1109\/CISDA.2009.5356528"},{"key":"9760_CR63","doi-asserted-by":"publisher","unstructured":"Lee K, Eoff B, Caverlee J. Seven months with the devils: A long-term study of content polluters on Twitter. In: Proceedings of the International AAAI Conference on Web and Social Media, 5 (1), 185\u2013192 (2011). https:\/\/doi.org\/10.1609\/icwsm.v5i1.14106","DOI":"10.1609\/icwsm.v5i1.14106"},{"issue":"2","key":"9760_CR64","first-page":"841","volume":"31","author":"S Wachter","year":"2018","unstructured":"Wachter S, Mittelstadt B, Russell C. Counterfactual explanations without opening the black box: automated decisions and the GDPR. Harv J Law Technol. 2018;31(2):841\u201361.","journal-title":"Harv J Law Technol"},{"key":"9760_CR65","doi-asserted-by":"crossref","unstructured":"Binns R, Van Kleek M, Veale M, Lyngs U, Zhao J, Shadbolt N. It\u2019s reducing a human being to a percentage: Perceptions of justice in algorithmic decisions. In: Proceedings of the 2018 Chi Conference on Human Factors in Computing Systems, pp. 1\u201314, Montreal, QC, Canada, 21\u201326 April (2018).","DOI":"10.1145\/3173574.3173951"},{"key":"9760_CR66","doi-asserted-by":"publisher","unstructured":"Naeem H, Alshammari BM, Ullah F. Explainable artificial intelligence-based IoT device malware detection mechanism using image visualization and fine\u2010tuned CNN\u2010based transfer learning model. Comput Intell Neurosci. 2022;7671967. https:\/\/doi.org\/10.1155\/2022\/7671967.","DOI":"10.1155\/2022\/7671967"},{"key":"9760_CR67","doi-asserted-by":"publisher","unstructured":"Becker F, Drichel A, M\u00fcller C, Ertl T. Interpretable visualizations of deep neural networks for domain generation algorithm detection. In: IEEE Symposium on Visualization for Cyber Security (VizSec), pp. 25\u201329. IEEE (2020). https:\/\/doi.org\/10.1109\/vizsec51108.2020.00010","DOI":"10.1109\/vizsec51108.2020.00010"},{"key":"9760_CR68","doi-asserted-by":"crossref","unstructured":"Norton AP, Qi Y. Adversarial-Playground: A visualization suite showing how adversarial examples fool deep learning. In: IEEE Symposium on Visualization for Cyber Security (VizSec), IEEE, pp. 1\u20134, Phoenix, AZ, USA, 2 October (2017).","DOI":"10.1109\/VIZSEC.2017.8062202"},{"key":"9760_CR69","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2021.102198","volume":"105","author":"G Iadarola","year":"2021","unstructured":"Iadarola G, Martinelli F, Mercaldo F, Santone A. Towards an interpretable deep learning model for mobile malware detection and family identification. Comput Secur. 2021;105:102198. https:\/\/doi.org\/10.1016\/j.cose.2021.102198.","journal-title":"Comput Secur"},{"key":"9760_CR70","doi-asserted-by":"crossref","unstructured":"Hong X, Papazachos Z, Del Rincon JM, Miller P. Network intrusion detection by variational component-based feature saliency Gaussian mixture clustering. In: European Symposium on Research in Computer Security, Cham, Springer Nature, Switzerland, pp. 761\u2013772 (2023).","DOI":"10.1007\/978-3-031-54129-2_45"},{"key":"9760_CR71","doi-asserted-by":"crossref","unstructured":"Lin YS, Lee WC, Celik ZB. What do you see? Evaluation of explainable artificial intelligence (XAI) interpretability through neural backdoors. In: Proceedings of the 27th ACM SIGKDD Conference on Knowledge Discovery & Data Mining, pp. 1027\u20131035, arXiv 2020, arXiv:2009.10639 (2021).","DOI":"10.1145\/3447548.3467213"},{"issue":"9","key":"9760_CR72","doi-asserted-by":"publisher","first-page":"3280","DOI":"10.1109\/TSE.2021.3087402","volume":"48","author":"S Chakraborty","year":"2021","unstructured":"Chakraborty S, Krishna R, Ding Y, Ray B. Deep learning based vulnerability detection: are we there yet? IEEE Trans Softw Eng. 2021;48(9):3280\u201396.","journal-title":"IEEE Trans Softw Eng"},{"key":"9760_CR73","doi-asserted-by":"publisher","first-page":"247","DOI":"10.1007\/978-3-030-86797-3_17","volume-title":"Innovation through information systems","author":"K Kluge","year":"2021","unstructured":"Kluge K, Eckhardt R. Explaining the suspicion: design of an XAI-based user-focused anti-phishing measure. In: Ahlemann F, Sch\u00fctte R, Stieglitz S, editors. Innovation through information systems. Cham, Switzerland: Springer International; 2021. pp. 247\u201361."},{"key":"9760_CR74","doi-asserted-by":"publisher","first-page":"34613","DOI":"10.1109\/ACCESS.2022.3162588","volume":"10","author":"H Suryotrisongko","year":"2022","unstructured":"Suryotrisongko H, Musashi Y, Tsuneda A, Sugitani K. Robust botnet DGA detection: blending XAI and OSINT for cyber threat intelligence sharing. IEEE Access. 2022;10:34613\u201324. https:\/\/doi.org\/10.1109\/ACCESS.2022.3162588.","journal-title":"IEEE Access"},{"key":"9760_CR75","doi-asserted-by":"publisher","unstructured":"Khan N, Ahmad K, Tamimi AA, Alani MM, Bermak A, Khalil I. Explainable AI-based intrusion detection system for industry 5.0: an overview of the literature, associated challenges, the existing solutions, and potential research directions. ArXiv Preprint arXiv. 2024;240803335. https:\/\/doi.org\/10.48550\/arXiv.2408.03335.","DOI":"10.48550\/arXiv.2408.03335"},{"key":"9760_CR76","doi-asserted-by":"publisher","first-page":"82","DOI":"10.1016\/j.inffus.2019.12.012","volume":"58","author":"AB Arrieta","year":"2020","unstructured":"Arrieta AB, D\u00edaz-Rodr\u00edguez N, Ser D, Bennetot J, Tabik A, Barbado S, et al. Explainable artificial intelligence (XAI): concepts, taxonomies, opportunities and challenges toward responsible AI. Inf Fusion. 2020;58:82\u2013115.","journal-title":"Inf Fusion"},{"issue":"1","key":"9760_CR77","doi-asserted-by":"publisher","DOI":"10.3390\/e23010018","volume":"23","author":"P Linardatos","year":"2020","unstructured":"Linardatos P, Papastefanopoulos V, Kotsiantis S. Explainable AI: a review of machine learning interpretability methods. Entropy. 2020;23(1):18. https:\/\/doi.org\/10.3390\/e23010018.","journal-title":"Entropy"},{"issue":"1","key":"9760_CR78","doi-asserted-by":"publisher","first-page":"45","DOI":"10.1007\/s12559-023-10179-8","volume":"16","author":"V Hassija","year":"2024","unstructured":"Hassija V, Chamola V, Mahapatra A, Singal A, Goel D, Huang K, et al. Interpreting black-box models: a review on explainable artificial intelligence. Cogn Comput. 2024;16(1):45\u201374.","journal-title":"Cogn Comput"},{"key":"9760_CR79","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2025.104318","volume":"151","author":"CS Kalutharage","year":"2025","unstructured":"Kalutharage CS, Liu X, Chrysoulas C. Neurosymbolic learning and domain knowledge-driven explainable AI for enhanced IoT network attack detection and response. Comput Secur. 2025;151:104318. https:\/\/doi.org\/10.1016\/j.cose.2025.104318.","journal-title":"Comput Secur"},{"key":"9760_CR80","doi-asserted-by":"publisher","first-page":"100230","DOI":"10.1016\/j.dajour.2023.100230","volume":"7","author":"A Saranya","year":"2023","unstructured":"Saranya A, Subhashini R. A systematic review of explainable artificial intelligence models and applications: recent developments and future trends. Decis Anal J. 2023;7:100230. https:\/\/doi.org\/10.1016\/j.dajour.2023.100230.","journal-title":"Decis Anal J"},{"key":"9760_CR81","doi-asserted-by":"publisher","DOI":"10.1016\/j.iswa.2024.200472","volume":"25","author":"OA Madamidola","year":"2025","unstructured":"Madamidola OA, Ngobigha F, Ez-zizi A. Detecting new obfuscated malware variants: a lightweight and interpretable machine learning approach. Intell Syst Appl. 2025;25:200472. https:\/\/doi.org\/10.1016\/j.iswa.2024.200472.","journal-title":"Intell Syst Appl"},{"key":"9760_CR82","doi-asserted-by":"publisher","DOI":"10.1007\/s10207-024-00920-1","volume":"24","author":"MA Bouke","year":"2025","unstructured":"Bouke MA, Alramli OI, Abdullah A. XAIRF-WFP: a novel XAI-based random forest classifier for advanced email spam detection. Int J Inf Secur. 2025;24:5. https:\/\/doi.org\/10.1007\/s10207-024-00920-1.","journal-title":"Int J Inf Secur"},{"key":"9760_CR83","doi-asserted-by":"publisher","first-page":"4924","DOI":"10.1109\/TIFS.2021.3117075","volume":"16","author":"A Kuppa","year":"2021","unstructured":"Kuppa A, Le-Khac NA. Adversarial XAI methods in cybersecurity. IEEE Trans Inf Forensics Secur. 2021;16:4924\u201338. https:\/\/doi.org\/10.1109\/TIFS.2021.3117075.","journal-title":"IEEE Trans Inf Forensics Secur"},{"key":"9760_CR84","doi-asserted-by":"publisher","DOI":"10.1016\/j.icte.2024.05.007","author":"IH Sarker","year":"2024","unstructured":"Sarker IH, Janicke H, Mohsin A, Gill A, Maglaras L. Explainable AI for cybersecurity automation, intelligence and trustworthiness in digital twin: methods, taxonomy, challenges and prospects. ICT Express. 2024. https:\/\/doi.org\/10.1016\/j.icte.2024.05.007.","journal-title":"ICT Express"},{"key":"9760_CR85","doi-asserted-by":"publisher","DOI":"10.1016\/j.inffus.2024.102303","volume":"107","author":"H Baniecki","year":"2024","unstructured":"Baniecki H, Biecek P. Adversarial attacks and defenses in explainable artificial intelligence: a survey. Inf Fusion. 2024;107:102303. https:\/\/doi.org\/10.1016\/j.inffus.2024.102303.","journal-title":"Inf Fusion"},{"key":"9760_CR86","doi-asserted-by":"publisher","DOI":"10.1109\/COMST.2024.3437248","author":"T Senevirathna","year":"2024","unstructured":"Senevirathna T, La VH, Marchal S, Siniarski B, Liyanage M, Wang S. A survey on XAI for 5G and beyond security: technical aspects, challenges and research directions. IEEE Commun Surv Tutor. 2024. https:\/\/doi.org\/10.1109\/COMST.2024.3437248.","journal-title":"IEEE Commun Surv Tutor"},{"key":"9760_CR87","doi-asserted-by":"crossref","unstructured":"Spartalis CN, Semertzidis T, Daras P. Balancing XAI with privacy and security considerations. In: European Symposium on Research in Computer Security, Springer Nature, Cham Switzerland, pp. 111\u2013124 (2023).","DOI":"10.1007\/978-3-031-54129-2_7"},{"key":"9760_CR88","doi-asserted-by":"publisher","first-page":"238","DOI":"10.1016\/j.ins.2022.10.013","volume":"615","author":"W Ding","year":"2022","unstructured":"Ding W, Abdel-Basset M, Hawash H, Ali AM. Explainability of artificial intelligence methods, applications and challenges: a comprehensive survey. Inf Sci. 2022;615:238\u201392. https:\/\/doi.org\/10.1016\/j.ins.2022.10.013.","journal-title":"Inf Sci"},{"key":"9760_CR89","doi-asserted-by":"crossref","unstructured":"Aggarwal R, Sachan S, Verma R, Dhanda N. Traditional AI vs modern AI\u2019: \u2018The confluence of cryptography. Blockchain and Artificial Intelligence\u2019 (CRC; 2025. pp. 51\u201375.","DOI":"10.1201\/9781032711515-3"},{"issue":"9","key":"9760_CR90","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1145\/3561048","volume":"55","author":"R Dwivedi","year":"2023","unstructured":"Dwivedi R, Dave D, Naik H, Singhal S, Omer R, Patel P, et al. Explainable AI (XAI): core ideas, techniques, and solutions. ACM Comput Surv. 2023;55(9):1\u201333.","journal-title":"ACM Comput Surv"},{"key":"9760_CR91","unstructured":"Das A, Rad P. \u2018Opportunities and challenges in explainable artificial intelligence (xai): A survey\u2019, arXiv preprint arXiv:2006.11371, 2020."},{"key":"9760_CR92","doi-asserted-by":"publisher","unstructured":"Shamoo Y. The role of explainable AI (XAI) in forensic investigations: In: Omar, M., Zangana, H, editors, Digital Forensics in the Age of AI, pp. 31\u201362, IGI Global Scientific Publishing (2025). https:\/\/doi.org\/10.4018\/979-8-3373-0857-9.ch002","DOI":"10.4018\/979-8-3373-0857-9.ch002"},{"key":"9760_CR93","doi-asserted-by":"publisher","first-page":"14029","DOI":"10.1109\/ACCESS.2025.3528114","volume":"13","author":"A Al Siam","year":"2025","unstructured":"Al Siam A, Alazab M, Awajan A, Faruqui N. A comprehensive review of AI\u2019s current impact and future prospects in cybersecurity. IEEE Access. 2025;13:14029\u201350. https:\/\/doi.org\/10.1109\/ACCESS.2025.3528114.","journal-title":"IEEE Access"},{"key":"9760_CR94","doi-asserted-by":"publisher","unstructured":"Mittal D, Parashar AR, Singh PK: Introduction to explainable AI: Unveiling the black box, In: Pandey J,Explainable Artificial Intelligence and Solar Energy Integration, pp. 147\u2013190, Global IGI. (2025). https:\/\/doi.org\/10.4018\/979-8-3693-7822-9.ch006","DOI":"10.4018\/979-8-3693-7822-9.ch006"},{"key":"9760_CR95","doi-asserted-by":"publisher","DOI":"10.1007\/s10479-024-06453-z","author":"W Sun","year":"2025","unstructured":"Sun W, Ren S, Tang G. In the era of responsible artificial intelligence and digitalization: business group digitalization, operations and subsidiary performance. Ann Oper Res. 2025. https:\/\/doi.org\/10.1007\/s10479-024-06453-z.","journal-title":"Ann Oper Res"},{"key":"9760_CR96","doi-asserted-by":"publisher","DOI":"10.1007\/s43681-024-00648-7","author":"TA Bach","year":"2025","unstructured":"Bach TA, Kaarstad M, Solberg E, Babic A. Insights into suggested responsible AI (RAI) practices in real-world settings: a systematic literature review. AI Ethics. 2025. https:\/\/doi.org\/10.1007\/s43681-024-00648-7.","journal-title":"AI Ethics"},{"issue":"4","key":"9760_CR97","doi-asserted-by":"publisher","first-page":"5115","DOI":"10.1109\/TNSM.2023.3282740","volume":"20","author":"G Rjoub","year":"2023","unstructured":"Rjoub G, Bentahar J, Wahab OA, Mizouni R, Song A, Cohen R, et al. A survey on explainable artificial intelligence for cybersecurity. IEEE Trans Network Serv Manag. 2023;20(4):5115\u201340.","journal-title":"IEEE Trans Network Serv Manag"},{"key":"9760_CR98","doi-asserted-by":"publisher","first-page":"97004","DOI":"10.1109\/ACCESS.2024.3421330","volume":"12","author":"T Yang","year":"2024","unstructured":"Yang T, Qiao Y, Lee B. Interpretable probabilistic bayesian neural networks for cybersecurity intrusion detection. IEEE Access. 2024;12:97004\u201316. https:\/\/doi.org\/10.1109\/ACCESS.2024.3421330.","journal-title":"IEEE Access"},{"issue":"1","key":"9760_CR99","doi-asserted-by":"publisher","DOI":"10.1515\/jisys-2024-0226","volume":"34","author":"L Nawaf","year":"2025","unstructured":"Nawaf L, Bentotahewa V. Optimization of cyber security through the implementation of AI technologies. J Intell Syst. 2025;34(1):20240226. https:\/\/doi.org\/10.1515\/jisys-2024-0226.","journal-title":"J Intell Syst"},{"key":"9760_CR100","doi-asserted-by":"publisher","DOI":"10.1016\/j.artint.2021.103473","volume":"296","author":"M Langer","year":"2021","unstructured":"Langer M, Oster D, Speith T, Hermanns H, K\u00e4stner L, Schmidt E, et al. What do we want from explainable artificial intelligence (XAI)? A stakeholder perspective on XAI and a conceptual model guiding interdisciplinary XAI research. Artif Intell. 2021;296:103473. https:\/\/doi.org\/10.1016\/j.artint.2021.103473.","journal-title":"Artif Intell"}],"container-title":["Discover Computing"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s10791-025-09760-6.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/article\/10.1007\/s10791-025-09760-6\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s10791-025-09760-6.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,10,28]],"date-time":"2025-10-28T19:20:02Z","timestamp":1761679202000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/s10791-025-09760-6"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,10,28]]},"references-count":100,"journal-issue":{"issue":"1","published-online":{"date-parts":[[2025,12]]}},"alternative-id":["9760"],"URL":"https:\/\/doi.org\/10.1007\/s10791-025-09760-6","relation":{},"ISSN":["2948-2992"],"issn-type":[{"value":"2948-2992","type":"electronic"}],"subject":[],"published":{"date-parts":[[2025,10,28]]},"assertion":[{"value":"1 May 2025","order":1,"name":"received","label":"Received","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"15 October 2025","order":2,"name":"accepted","label":"Accepted","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"28 October 2025","order":3,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}},{"order":1,"name":"Ethics","group":{"name":"EthicsHeading","label":"Declarations"}},{"value":"This study made use of secondary data derived from research articles retrieved from the Scopus academic database. Ethical clearance exemption for the use of secondary data was granted by the Research Ethics Committee of the School of Consumer Intelligence and Information Systems at the University of Johannesburg (Clearance Number: SCiiS2025101).","order":2,"name":"Ethics","group":{"name":"EthicsHeading","label":"Ethics approval and consent to participate"}},{"value":"Not applicable.","order":3,"name":"Ethics","group":{"name":"EthicsHeading","label":"Consent for publication"}},{"value":"The authors declare no competing interests.","order":4,"name":"Ethics","group":{"name":"EthicsHeading","label":"Competing interests"}}],"article-number":"241"}}