{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,6]],"date-time":"2026-05-06T05:12:51Z","timestamp":1778044371358,"version":"3.51.4"},"reference-count":43,"publisher":"Springer Science and Business Media LLC","issue":"1","license":[{"start":{"date-parts":[[2025,9,26]],"date-time":"2025-09-26T00:00:00Z","timestamp":1758844800000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2025,9,26]],"date-time":"2025-09-26T00:00:00Z","timestamp":1758844800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"funder":[{"name":"Princess Nourah bint Abdulrahman University Researchers Supporting Project","award":["PNURSP2025R323"],"award-info":[{"award-number":["PNURSP2025R323"]}]}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["J Netw Syst Manage"],"published-print":{"date-parts":[[2026,1]]},"DOI":"10.1007\/s10922-025-09978-1","type":"journal-article","created":{"date-parts":[[2025,9,26]],"date-time":"2025-09-26T07:35:24Z","timestamp":1758872124000},"update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":1,"title":["Feature Fusion-Based Ensemble Approach for Robust Malware Detection with Reduced False Positives"],"prefix":"10.1007","volume":"34","author":[{"given":"Asia","family":"Maqsood","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Hamid Turab","family":"Mirza","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Faiza","family":"Iqbal","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Reem Ibrahim","family":"Alkanhel","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Naveed","family":"Hussain","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Ayesha","family":"Afzaal","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Ayesha","family":"Altaf","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Imran","family":"Ashraf","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2025,9,26]]},"reference":[{"key":"9978_CR1","doi-asserted-by":"publisher","DOI":"10.1016\/j.jnca.2019.102526","volume":"153","author":"D Gibert","year":"2020","unstructured":"Gibert, D., Mateu, C., Planes, J.: The rise of machine learning for detection and classification of malware: research developments, trends and challenges. J. Netw. Comput. Appl. 153, 102526 (2020)","journal-title":"J. Netw. Comput. Appl."},{"key":"9978_CR2","doi-asserted-by":"publisher","first-page":"383","DOI":"10.1007\/978-3-030-96756-7_12","volume-title":"Machine Learning for Computer Scientists and Data Analysts: From an Applied Perspective","author":"S Rafatirad","year":"2022","unstructured":"Rafatirad, S., Homayoun, H., Chen, Z., Pudukotai Dinakarrao, S.M.: Applied machine learning for computer architecture security. In: Machine Learning for Computer Scientists and Data Analysts: From an Applied Perspective, pp. 383\u2013404. Springer, Cham (2022)"},{"key":"9978_CR3","doi-asserted-by":"publisher","first-page":"226","DOI":"10.4018\/978-1-6684-3991-3.ch013","volume-title":"Methods, Implementation, and Application of Cyber Security Intelligence and Analytics","author":"S Senthilkumar","year":"2022","unstructured":"Senthilkumar, S., Brindha, K., et al.: Recognizing user portraits for fraudulent identification on online social networks. In: Methods, Implementation, and Application of Cyber Security Intelligence and Analytics, pp. 226\u2013240. IGI Global, Hershey (2022)"},{"key":"9978_CR4","volume":"52","author":"P Wanda","year":"2020","unstructured":"Wanda, P., Jie, H.J.: Deepprofile: finding fake profile in online social network using dynamic cnn. J. Inf. Secur. Appl. 52, 102465 (2020)","journal-title":"J. Inf. Secur. Appl."},{"key":"9978_CR5","unstructured":"Global Security Mag: Over 30 million new malware samples found in 2022 as cyber threats evolve. https:\/\/www.globalsecuritymag.fr\/Over-30-million-new-malware,20220421,124427.html (2022)"},{"key":"9978_CR6","doi-asserted-by":"publisher","DOI":"10.1016\/j.compeleceng.2023.108804","volume":"110","author":"H Bak\u0131r","year":"2023","unstructured":"Bak\u0131r, H., Bak\u0131r, R.: Droidencoder: malware detection using auto-encoder based feature extractor and machine learning algorithms. Comput. Electr. Eng. 110, 108804 (2023)","journal-title":"Comput. Electr. Eng."},{"key":"9978_CR7","doi-asserted-by":"crossref","unstructured":"Zhou, Y., Jiang, X.: Dissecting android malware: Characterization and evolution. In: 2012 IEEE Symposium on Security and Privacy, pp. 95\u2013109 (2012). IEEE","DOI":"10.1109\/SP.2012.16"},{"key":"9978_CR8","doi-asserted-by":"crossref","unstructured":"Arp, D., Spreitzenbarth, M., Hubner, M., Gascon, H., Rieck, K., Siemens, C.: Drebin: Effective and explainable detection of android malware in your pocket. In: Ndss, vol. 14, pp. 23\u201326 (2014)","DOI":"10.14722\/ndss.2014.23247"},{"key":"9978_CR9","doi-asserted-by":"publisher","DOI":"10.1016\/j.eswa.2022.117200","volume":"206","author":"A Guerra-Manzanares","year":"2022","unstructured":"Guerra-Manzanares, A., Luckner, M., Bahsi, H.: Android malware concept drift using system calls: detection, characterization and challenges. Expert Syst. Appl. 206, 117200 (2022)","journal-title":"Expert Syst. Appl."},{"key":"9978_CR10","unstructured":"Akhtar, Z.: Malware detection and analysis: challenges and research opportunities. arXiv preprint arXiv:2101.08429 (2021)"},{"key":"9978_CR11","doi-asserted-by":"publisher","first-page":"847","DOI":"10.1016\/j.procs.2021.03.106","volume":"184","author":"ON Elayan","year":"2021","unstructured":"Elayan, O.N., Mustafa, A.M.: Android malware detection using deep learning. Procedia Comput. Sci. 184, 847\u2013852 (2021)","journal-title":"Procedia Comput. Sci."},{"key":"9978_CR12","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2021.102264","volume":"106","author":"H Gao","year":"2021","unstructured":"Gao, H., Cheng, S., Zhang, W.: Gdroid: android malware detection and classification with graph convolutional network. Comput. Secur. 106, 102264 (2021)","journal-title":"Comput. Secur."},{"key":"9978_CR13","unstructured":"Illes, D.: On the impact of dataset size and class imbalance in evaluating machine-learning-based windows malware detection techniques. arXiv preprint arXiv:2206.06256 (2022)"},{"key":"9978_CR14","doi-asserted-by":"publisher","first-page":"15247","DOI":"10.1109\/ACCESS.2022.3149295","volume":"10","author":"Y-D Lin","year":"2022","unstructured":"Lin, Y.-D., Liu, Z.-Q., Hwang, R.-H., Nguyen, V.-L., Lin, P.-C., Lai, Y.-C.: Machine learning with variational autoencoder for imbalanced datasets in intrusion detection. IEEE Access 10, 15247\u201315260 (2022)","journal-title":"IEEE Access"},{"key":"9978_CR15","doi-asserted-by":"publisher","first-page":"159","DOI":"10.1007\/978-3-030-74753-4_11","volume-title":"Handbook of Big Data Analytics and Forensics","author":"D Sahoo","year":"2022","unstructured":"Sahoo, D., Dhawan, Y.: Evaluation of supervised and unsupervised machine learning classifiers for mac os malware detection. In: Handbook of Big Data Analytics and Forensics, pp. 159\u2013175. Springer, Cham (2022)"},{"key":"9978_CR16","doi-asserted-by":"publisher","first-page":"30996","DOI":"10.1109\/ACCESS.2018.2844349","volume":"6","author":"P Feng","year":"2018","unstructured":"Feng, P., Ma, J., Sun, C., Xu, X., Ma, Y.: A novel dynamic android malware detection system with ensemble learning. IEEE Access 6, 30996\u201331011 (2018)","journal-title":"IEEE Access"},{"issue":"1","key":"9978_CR17","first-page":"7775917","volume":"2022","author":"S Acharya","year":"2022","unstructured":"Acharya, S., Rawat, U., Bhatnagar, R.: [retracted] a comprehensive review of android security: threats, vulnerabilities, malware detection, and analysis. Secur. Commun. Netw. 2022(1), 7775917 (2022)","journal-title":"Secur. Commun. Netw."},{"issue":"5","key":"9978_CR18","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1145\/3329786","volume":"52","author":"O Or-Meir","year":"2019","unstructured":"Or-Meir, O., Nissim, N., Elovici, Y., Rokach, L.: Dynamic malware analysis in the modern era-a state of the art survey. ACM Comput. Surv. (CSUR) 52(5), 1\u201348 (2019)","journal-title":"ACM Comput. Surv. (CSUR)"},{"key":"9978_CR19","doi-asserted-by":"publisher","first-page":"124579","DOI":"10.1109\/ACCESS.2020.3006143","volume":"8","author":"K Liu","year":"2020","unstructured":"Liu, K., Xu, S., Xu, G., Zhang, M., Sun, D., Liu, H.: A review of android malware detection approaches based on machine learning. IEEE Access 8, 124579\u2013124607 (2020)","journal-title":"IEEE Access"},{"issue":"6","key":"9978_CR20","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1145\/3453153","volume":"54","author":"R Moussaileb","year":"2021","unstructured":"Moussaileb, R., Cuppens, N., Lanet, J.-L., Bouder, H.L.: A survey on windows-based ransomware taxonomy and detection mechanisms. ACM Comput. Surv. (CSUR) 54(6), 1\u201336 (2021)","journal-title":"ACM Comput. Surv. (CSUR)"},{"key":"9978_CR21","doi-asserted-by":"crossref","unstructured":"Wang, J., Jing, Q., Gao, J., Qiu, X.: Sedroid: A robust android malware detector using selective ensemble learning. In: 2020 IEEE Wireless Communications and Networking Conference (WCNC), pp. 1\u20135 (2020). IEEE","DOI":"10.1109\/WCNC45663.2020.9120537"},{"key":"9978_CR22","doi-asserted-by":"crossref","unstructured":"Christianah, A., Gyunka, B., Oluwatobi, A.: Optimizing android malware detection via ensemble learning (2020)","DOI":"10.3991\/ijim.v14i09.11548"},{"key":"9978_CR23","unstructured":"Saleem, M.S., Mi\u0161i\u0107, J., Mi\u0161i\u0107, V.B.: Android malware detection using feature ranking of permissions. arXiv preprint arXiv:2201.08468 (2022)"},{"issue":"8","key":"9978_CR24","doi-asserted-by":"publisher","first-page":"1009","DOI":"10.3390\/e23081009","volume":"23","author":"C Ding","year":"2021","unstructured":"Ding, C., Luktarhan, N., Lu, B., Zhang, W.: A hybrid analysis-based approach to android malware family classification. Entropy 23(8), 1009 (2021)","journal-title":"Entropy"},{"issue":"1","key":"9978_CR25","doi-asserted-by":"publisher","first-page":"1830201","DOI":"10.1155\/2022\/1830201","volume":"2022","author":"AS Shatnawi","year":"2022","unstructured":"Shatnawi, A.S., Jaradat, A., Yaseen, T.B., Taqieddin, E., Al-Ayyoub, M., Mustafa, D.: An android malware detection leveraging machine learning. Wirel. Commun. Mob. Comput. 2022(1), 1830201 (2022)","journal-title":"Wirel. Commun. Mob. Comput."},{"key":"9978_CR26","doi-asserted-by":"publisher","DOI":"10.1016\/j.compeleceng.2024.109483","volume":"119","author":"P Mishra","year":"2024","unstructured":"Mishra, P., Jain, T., Aggarwal, P., Paul, G., Gupta, B.B., Attar, R.W., Gaurav, A.: Cloudintellmal: an advanced cloud based intelligent malware detection framework to analyze android applications. Comput. Electr. Eng. 119, 109483 (2024)","journal-title":"Comput. Electr. Eng."},{"issue":"2","key":"9978_CR27","doi-asserted-by":"publisher","first-page":"1","DOI":"10.30564\/jcsr.v6i2.6632","volume":"6","author":"S Xiong","year":"2024","unstructured":"Xiong, S., Zhang, H.: A multi-model fusion strategy for android malware detection based on machine learning algorithms. J. Comput. Sci. Res. 6(2), 1\u201311 (2024)","journal-title":"J. Comput. Sci. Res."},{"key":"9978_CR28","doi-asserted-by":"crossref","unstructured":"Prasad, A., Chandra, S., Uddin, M., Al-Shehari, T., Alsadhan, N.A., Ullah, S.S.: Permguard: A scalable framework for android malware detection using permission-to-exploitation mapping. IEEE Access (2024)","DOI":"10.1109\/ACCESS.2024.3523629"},{"key":"9978_CR29","doi-asserted-by":"crossref","unstructured":"Sharma, Y.K., Tomar, D.S., Pateriya, R., Bhandari, S.: Mosdroid: Obfuscation-resilient android malware detection using multisets of encoded opcode sequences. Comput. Secur., 104379 (2025)","DOI":"10.1016\/j.cose.2025.104379"},{"key":"9978_CR30","doi-asserted-by":"publisher","DOI":"10.1016\/j.compeleceng.2020.106729","volume":"86","author":"D Gupta","year":"2020","unstructured":"Gupta, D., Rani, R.: Improving malware detection using big data and ensemble learning. Comput. Electric. Eng. 86, 106729 (2020)","journal-title":"Comput. Electric. Eng."},{"key":"9978_CR31","doi-asserted-by":"publisher","first-page":"10","DOI":"10.3390\/informatics8010010","volume":"8","author":"NA Azeez","year":"2021","unstructured":"Azeez, N.A., Odufuwa, O.E., Misra, S., Oluranti, J., Dama\u0161evi\u010dius, R.: Windows pe malware detection using ensemble learning. Informatics 8, 10 (2021)","journal-title":"Informatics"},{"issue":"1","key":"9978_CR32","doi-asserted-by":"publisher","first-page":"124","DOI":"10.1016\/j.icte.2021.08.005","volume":"8","author":"D Moon","year":"2022","unstructured":"Moon, D., Lee, J., Yoon, M.: Compact feature hashing for machine learning based malware detection. ICT Express 8(1), 124\u2013129 (2022)","journal-title":"ICT Express"},{"key":"9978_CR33","doi-asserted-by":"publisher","first-page":"420","DOI":"10.1016\/j.ins.2020.08.082","volume":"546","author":"S Yoo","year":"2021","unstructured":"Yoo, S., Kim, S., Kim, S., Kang, B.B.: Ai-hydra: advanced hybrid approach using random forest and deep learning for malware classification. Inf. Sci. 546, 420\u2013435 (2021)","journal-title":"Inf. Sci."},{"issue":"01","key":"9978_CR34","first-page":"403","volume":"7","author":"A Ijaz","year":"2024","unstructured":"Ijaz, A., Khan, A.A., Arslan, M., Tanzil, A., Javed, A., Khalid, M.A.U., Khan, S.: Innovative machine learning techniques for malware detection. J. Comput. Biomed. Inf. 7(01), 403\u2013424 (2024)","journal-title":"J. Comput. Biomed. Inf."},{"issue":"1","key":"9978_CR35","doi-asserted-by":"publisher","first-page":"167","DOI":"10.3390\/electronics14010167","volume":"14","author":"S Zhang","year":"2025","unstructured":"Zhang, S., Gao, M., Wang, L., Xu, S., Shao, W., Kuang, R.: A malware-detection method using deep learning to fully extract api sequence features. Electronics 14(1), 167 (2025)","journal-title":"Electronics"},{"key":"9978_CR36","doi-asserted-by":"publisher","DOI":"10.1016\/j.compeleceng.2025.110108","volume":"123","author":"S Yang","year":"2025","unstructured":"Yang, S., Yang, Y., Zhao, D., Xu, L., Li, X., Yu, F., Hu, J.: Dynamic malware detection based on supervised contrastive learning. Comput. Electr. Eng. 123, 110108 (2025)","journal-title":"Comput. Electr. Eng."},{"key":"9978_CR37","doi-asserted-by":"crossref","unstructured":"Kakisim, A.G., Nar, M., Carkaci, N., Sogukpinar, I.: Analysis and evaluation of dynamic feature-based malware detection methods. In: Innovative Security Solutions for Information Technology and Communications: 11th International Conference, SecITC 2018, Bucharest, Romania, November 8\u20139, 2018, Revised Selected Papers 11, pp. 247\u2013258 (2019). Springer","DOI":"10.1007\/978-3-030-12942-2_19"},{"key":"9978_CR38","doi-asserted-by":"publisher","DOI":"10.1016\/j.engappai.2023.106030","volume":"122","author":"K Shaukat","year":"2023","unstructured":"Shaukat, K., Luo, S., Varadharajan, V.: A novel deep learning-based approach for malware detection. Eng. Appl. Artif. Intell. 122, 106030 (2023)","journal-title":"Eng. Appl. Artif. Intell."},{"key":"9978_CR39","volume":"16","author":"A Bensaoud","year":"2024","unstructured":"Bensaoud, A., Kalita, J., Bensaoud, M.: A survey of malware detection using deep learning. Mach. Learn. Appl. 16, 100546 (2024)","journal-title":"Mach. Learn. Appl."},{"key":"9978_CR40","doi-asserted-by":"publisher","DOI":"10.1016\/j.cosrev.2022.100529","volume":"47","author":"M Gopinath","year":"2023","unstructured":"Gopinath, M., Sethuraman, S.C.: A comprehensive survey on deep learning based malware detection techniques. Comput. Sci. Rev. 47, 100529 (2023)","journal-title":"Comput. Sci. Rev."},{"key":"9978_CR41","doi-asserted-by":"publisher","first-page":"29","DOI":"10.1007\/s11416-018-0324-z","volume":"15","author":"RU Khan","year":"2019","unstructured":"Khan, R.U., Zhang, X., Kumar, R.: Analysis of resnet and googlenet models for malware detection. J. Comput. Virol. Hack. Techn. 15, 29\u201337 (2019)","journal-title":"J. Comput. Virol. Hack. Techn."},{"key":"9978_CR42","doi-asserted-by":"publisher","first-page":"100","DOI":"10.1016\/j.iotcps.2023.03.001","volume":"3","author":"R Islam","year":"2023","unstructured":"Islam, R., Sayed, M.I., Saha, S., Hossain, M.J., Masud, M.A.: Android malware classification using optimum feature selection and ensemble machine learning. Internet Things Cyber-Phys. Syst. 3, 100\u2013111 (2023)","journal-title":"Internet Things Cyber-Phys. Syst."},{"key":"9978_CR43","unstructured":"Kaggle: Malware dataset. https:\/\/www.kaggle.com\/code\/adepvenugopal\/malware-datasets (2022)"}],"container-title":["Journal of Network and Systems Management"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s10922-025-09978-1.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/article\/10.1007\/s10922-025-09978-1","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s10922-025-09978-1.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,5,6]],"date-time":"2026-05-06T04:39:50Z","timestamp":1778042390000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/s10922-025-09978-1"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,9,26]]},"references-count":43,"journal-issue":{"issue":"1","published-print":{"date-parts":[[2026,1]]}},"alternative-id":["9978"],"URL":"https:\/\/doi.org\/10.1007\/s10922-025-09978-1","relation":{},"ISSN":["1064-7570","1573-7705"],"issn-type":[{"value":"1064-7570","type":"print"},{"value":"1573-7705","type":"electronic"}],"subject":[],"published":{"date-parts":[[2025,9,26]]},"assertion":[{"value":"6 May 2025","order":1,"name":"received","label":"Received","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"11 August 2025","order":2,"name":"revised","label":"Revised","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"2 September 2025","order":3,"name":"accepted","label":"Accepted","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"26 September 2025","order":4,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}},{"order":1,"name":"Ethics","group":{"name":"EthicsHeading","label":"Declarations"}},{"value":"The authors declare no conflict of interest.","order":2,"name":"Ethics","group":{"name":"EthicsHeading","label":"Conflict of interest"}}],"article-number":"2"}}