{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,2,21]],"date-time":"2025-02-21T07:31:32Z","timestamp":1740123092518,"version":"3.37.3"},"reference-count":42,"publisher":"Springer Science and Business Media LLC","issue":"8-9","license":[{"start":{"date-parts":[[2019,2,25]],"date-time":"2019-02-25T00:00:00Z","timestamp":1551052800000},"content-version":"tdm","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"funder":[{"name":"Cisco R&D"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["Mach Learn"],"published-print":{"date-parts":[[2019,9]]},"DOI":"10.1007\/s10994-019-05789-z","type":"journal-article","created":{"date-parts":[[2019,2,25]],"date-time":"2019-02-25T21:05:58Z","timestamp":1551128758000},"page":"1353-1368","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":4,"title":["Joint detection of malicious domains and infected clients"],"prefix":"10.1007","volume":"108","author":[{"ORCID":"https:\/\/orcid.org\/0000-0003-1842-3645","authenticated-orcid":false,"given":"Paul","family":"Prasse","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Ren\u00e9","family":"Knaebel","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Luk\u00e1\u0161","family":"Machlica","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Tom\u00e1\u0161","family":"Pevn\u00fd","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Tobias","family":"Scheffer","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2019,2,25]]},"reference":[{"key":"5789_CR1","unstructured":"Abadi, M., Agarwal, A., Barham, P., Brevdo, E., Chen, Z., Citro, C., Corrado, G. S., Davis, A., Dean, J., Devin, M., Ghemawat, S., Goodfellow, I., Harp, A., Irving, G., Isard, M., Jia, Y., Jozefowicz, R., Kaiser, L., Kudlur, M., Levenberg, J., Man\u00e9, D., Monga, R., Moore, S., Murray, D., Olah, C., Schuster, M., Shlens, J., Steiner, B., Sutskever, I., Talwar, K., Tucker, P., Vanhoucke, V., Vasudevan, V., Vi\u00e9gas, F., Vinyals, O., Warden, P., Wattenberg, M., Wicke, M., Yu, Y., & Zheng, X. (2015). TensorFlow: Large-scale machine learning on heterogeneous systems. Software available from https:\/\/www.tensorflow.org\/ . Accessed 6 Sept 2018."},{"issue":"4","key":"5789_CR2","doi-asserted-by":"publisher","first-page":"247","DOI":"10.1007\/s11416-011-0152-x","volume":"7","author":"B Anderson","year":"2011","unstructured":"Anderson, B., Quist, D., Neil, J., Storlie, C., & Lane, T. (2011). Graph-based malware detection using dynamic analysis. Journal of Computer Virology, 7(4), 247\u2013258.","journal-title":"Journal of Computer Virology"},{"key":"5789_CR3","doi-asserted-by":"crossref","unstructured":"Argyriou, A., Evgeniou, T., & Pontil, M. (2007). Multi-task feature learning. In B. Sch\u00f6lkopf, J. C. Platt, & T. Hoffman (Eds.), Advances in neural information processing systems 19 (pp. 41\u201348). MIT Press.","DOI":"10.7551\/mitpress\/7503.003.0010"},{"key":"5789_CR4","doi-asserted-by":"crossref","unstructured":"Arora, A., Garg, S., & Peddoju, S. K. (2014). Malware detection using network traffic analysis in android based mobile devices. In International conference on next generation mobile apps, services and technologies (pp. 66\u201371).","DOI":"10.1109\/NGMAST.2014.57"},{"key":"5789_CR5","doi-asserted-by":"crossref","unstructured":"Bartos, K., & Sofka, M. (2015). Robust representation for domain adaptation in network security. In European conference on machine learning and principles and practice of knowledge discovery in databases (pp. 116\u2013132). Springer.","DOI":"10.1007\/978-3-319-23461-8_8"},{"key":"5789_CR6","unstructured":"Bartos, K., Sofka, M., & Franc, V. (2016). Optimized invariant representation of network traffic for detecting unseen malware variants. In USENIX security symposium (pp. 807\u2013822)."},{"issue":"1","key":"5789_CR7","doi-asserted-by":"publisher","first-page":"7","DOI":"10.1023\/A:1007327622663","volume":"28","author":"J Baxter","year":"1997","unstructured":"Baxter, J. (1997). A bayesian\/information theoretic model of learning to learn via multiple task sampling. Machine Learning, 28(1), 7\u201339.","journal-title":"Machine Learning"},{"key":"5789_CR8","doi-asserted-by":"crossref","unstructured":"Bickel, S., Bogojeska, J., Lengauer, T., & Scheffer, T. (2008). Multi-task learning for hiv therapy screening. In Proceedings of the international conference on machine learning (pp. 56\u201363). ACM.","DOI":"10.1145\/1390156.1390164"},{"key":"5789_CR9","unstructured":"Blum, S. B., & Lueker, J. (2001). Transparent proxy server, January\u00a030. US Patent 6,182,141."},{"key":"5789_CR10","doi-asserted-by":"crossref","unstructured":"Caruana, R. (1993) Multitask learning: A knowledge-based source of inductive bias. In Proceedings of the international conference on machine learning.","DOI":"10.1016\/B978-1-55860-307-3.50012-5"},{"key":"5789_CR11","unstructured":"Chollet, F., et al. (2015). Keras. https:\/\/keras.io . Accessed 6 Sept 2018."},{"issue":"1","key":"5789_CR12","doi-asserted-by":"publisher","first-page":"5","DOI":"10.1145\/1198255.1198257","volume":"37","author":"M Crotti","year":"2007","unstructured":"Crotti, M., Dusi, M., Gringoli, F., & Salgarelli, L. (2007). Traffic classification through simple statistical fingerprinting. ACM SIGCOMM Computer Communication Review, 37(1), 5\u20131.","journal-title":"ACM SIGCOMM Computer Communication Review"},{"key":"5789_CR13","doi-asserted-by":"crossref","unstructured":"Demontis, A., Melis, M., Biggio, B., Maiorca, D., Arp, D., Rieck, K., et al. (2018). Yes, machine learning can be more secure! a case study on android malware detection. IEEE Transactions on Dependable and Secure Computing. https:\/\/doi.org\/10.1109\/TDSC.2017.2700270 .","DOI":"10.1109\/TDSC.2017.2700270"},{"key":"5789_CR14","doi-asserted-by":"crossref","unstructured":"Duong, L., Cohn, T., Bird, S., & Cook, P. (2015). A neural network model for low-resource universal dependency parsing. In Proceedings of the conference on empirical methods in natural language processing (pp. 339\u2013348).","DOI":"10.18653\/v1\/D15-1040"},{"issue":"1","key":"5789_CR15","doi-asserted-by":"publisher","first-page":"81","DOI":"10.1016\/j.comnet.2008.09.010","volume":"53","author":"M Dusi","year":"2009","unstructured":"Dusi, M., Crotti, M., Gringoli, F., & Salgarelli, L. (2009). Tunnel hunter: Detecting application-layer tunnels with statistical fingerprinting. Computer Networks, 53(1), 81\u201397.","journal-title":"Computer Networks"},{"issue":"Apr","key":"5789_CR16","first-page":"615","volume":"6","author":"T Evgeniou","year":"2005","unstructured":"Evgeniou, T., Micchelli, C. A., & Pontil, M. (2005). Learning multiple tasks with kernel methods. Journal of Machine Learning Research, 6(Apr), 615\u2013637.","journal-title":"Journal of Machine Learning Research"},{"key":"5789_CR17","doi-asserted-by":"crossref","unstructured":"Finkel, J. R., & Manning, C. D. (2009). Hierarchical bayesian domain adaptation. In Proceedings of ACL human language technologies (pp. 602\u2013610).","DOI":"10.3115\/1620754.1620842"},{"key":"5789_CR18","unstructured":"Finley, K. (2017). Half the web is now encrypted. That makes everyone safer. Wired. https:\/\/www.wired.com\/2017\/01\/half-web-now-encrypted-makes-everyone-safer\/ ."},{"key":"5789_CR19","doi-asserted-by":"crossref","unstructured":"Franc, V., Sofka, M., & Bartos, K. (2015). Learning detector of malicious network traffic from weak labels. In A. Bifet, M. May, B. Zadrozny, R. Gavalda, D. Pedreschi, F. Bonchi, J. Cardoso, & M. Spiliopoulou (Eds.), Machine learning and knowledge discovery in databases (pp. 85\u201399). Springer.","DOI":"10.1007\/978-3-319-23461-8_6"},{"issue":"59","key":"5789_CR20","first-page":"1","volume":"17","author":"Y Ganin","year":"2016","unstructured":"Ganin, Y., Ustinova, E., Ajakan, H., Germain, P., Larochelle, H., Laviolette, F., et al. (2016). Domain-adversarial training of neural networks. Journal of Machine Learning Research, 17(59), 1\u201335.","journal-title":"Journal of Machine Learning Research"},{"key":"5789_CR21","unstructured":"Gehring, J., Auli, M., Grangier, D., Yarats, D., & Dauphin, Y. N. (2017). Convolutional sequence to sequence learning. arXiv:1705.03122 ."},{"issue":"1\u20132","key":"5789_CR22","doi-asserted-by":"publisher","first-page":"13","DOI":"10.1007\/s11416-005-0002-9","volume":"1","author":"ME Karim","year":"2005","unstructured":"Karim, M. E., Walenstein, A., Lakhotia, A., & Laxmi, P. (2005). Malware phylogeny generation using permutations of code. Journal in Computer Virology, 1(1\u20132), 13\u201323.","journal-title":"Journal in Computer Virology"},{"key":"5789_CR23","unstructured":"Kogan, R. (2015). Bedep trojan malware spread by the angler exploit kit gets political. Spider Labs Blog. https:\/\/www.trustwave.com\/Resources\/SpiderLabs-Blog\/Bedep-trojan-malware-spread-by-the-Angler-exploit-kit-gets-political\/ . Accessed 6 Sept 2018."},{"key":"5789_CR24","doi-asserted-by":"crossref","unstructured":"Kohout, J., & Pevny, T. (2015a) Automatic discovery of web servers hosting similar applications. In Proceedings of the IFIP\/IEEE international symposium on integrated network management.","DOI":"10.1109\/INM.2015.7140487"},{"key":"5789_CR25","doi-asserted-by":"crossref","unstructured":"Kohout, J., & Pevny, T. (2015b). Unsupervised detection of malware in persistent web traffic. In Proceedings of the IEEE international conference on acoustics, speech and signal processing.","DOI":"10.1109\/ICASSP.2015.7178272"},{"key":"5789_CR26","unstructured":"Lashkari, A., Kadir, A., Gonzalez, H., Mbah, K., & Ghorbani, A. (2015). Towards a network-based framework for android malware detection and characterization. In Proceedings international conference on privacy, security, and trust."},{"key":"5789_CR27","unstructured":"Li, L., Jamieson, K. G., DeSalvo, G., Rostamizadeh, A., & Talwalkar, A. (2016). Efficient hyperparameter optimization and infinitely many armed bandits. CoRR. arXiv:1603.06560 ."},{"key":"5789_CR28","doi-asserted-by":"crossref","unstructured":"Loko\u010d, J., Kohout, J., \u010cech, P., Skopal, T., & Pevn\u1ef3, T. (2016). k-NN classification of malware in HTTPS traffic using the metric space approach. In M. Chau, G. A. Wang, & H. Chen (Eds.), Intelligence and security informatics (pp. 131\u2013145). Springer.","DOI":"10.1007\/978-3-319-31863-9_10"},{"key":"5789_CR29","unstructured":"Long, M., & Wang, J. (2015). Learning multiple tasks with deep relationship networks. In arXiv:1506.02117 ."},{"key":"5789_CR30","doi-asserted-by":"crossref","unstructured":"Malik, J., & Kaushal, R. (2016). CREDROID: Android malware detection by network traffic analysis. In Proceedings of the first ACM workshop on privacy-aware mobile computing (pp. 28\u201336). ACM.","DOI":"10.1145\/2940343.2940348"},{"key":"5789_CR31","unstructured":"Mikolov, T., Sutskever, I., Chen, K., Corrado, G., & Dean, J. (2013). Distributed representations of words and phrases and their compositionality. In C. J. C. Burges, L. Bottou, M. Welling, Z. Ghahramani, & K. Q. Weinberger (Eds.), Advances in neural information processing systems 26 (pp. 3111\u20133119). Curran Associates, Inc."},{"key":"5789_CR32","doi-asserted-by":"crossref","unstructured":"Misra, I., Shrivastava, A., Gupta, A., & Hebert, M. (2016). Cross-stitch networks for multi-task learning. In Proceedings of the IEEE conference on computer vision and pattern recognition (pp. 3994\u20134003).","DOI":"10.1109\/CVPR.2016.433"},{"key":"5789_CR33","unstructured":"Nelms, T., Perdisci, R., & Ahamad, M. (2013). Execscent: Mining for new C&C domains in live networks with adaptive control protocol templates. In Proceedings of the USENIX security symposium."},{"issue":"4","key":"5789_CR34","doi-asserted-by":"publisher","first-page":"56","DOI":"10.1109\/SURV.2008.080406","volume":"10","author":"T Nguyen","year":"2008","unstructured":"Nguyen, T., & Armitage, G. (2008). A survey of techniques for internet traffic classification using machine learning. IEEE Communications Surveys, Tutorials, 10(4), 56\u201376.","journal-title":"IEEE Communications Surveys, Tutorials"},{"key":"5789_CR35","doi-asserted-by":"crossref","unstructured":"Pascanu, R., Stokes, J. W., Sanossian, H., Marinescu, M., & Thomas, A. (2015). Malware classification with recurrent networks. In Proceedings of the IEEE international conference on acoustics, speech and signal processing (pp. 1916\u20131920). IEEE.","DOI":"10.1109\/ICASSP.2015.7178304"},{"key":"5789_CR36","first-page":"2825","volume":"12","author":"F Pedregosa","year":"2011","unstructured":"Pedregosa, F., Varoquaux, G., Gramfort, A., Michel, V., Thirion, B., Grisel, O., et al. (2011). Scikit-learn: Machine learning in Python. Journal of Machine Learning Research, 12, 2825\u20132830.","journal-title":"Journal of Machine Learning Research"},{"key":"5789_CR37","doi-asserted-by":"crossref","unstructured":"Pevny, T., & Somol, P. (2016). Discriminative models for multi-instance problems with tree structure. In Proceedings of the international workshop on artificial intelligence for computer security.","DOI":"10.1145\/2996758.2996761"},{"key":"5789_CR38","doi-asserted-by":"crossref","unstructured":"Prasse, P., Machlica, L., Pevn\u00fd, T., Havelka, J., & Scheffer, T. (2017). Malware detection by analysing network traffic with neural networks. In Proceedings of the European conference on machine learning.","DOI":"10.1109\/SPW.2017.8"},{"key":"5789_CR39","unstructured":"Ruder, S., Bingel, J., Augenstein, I., & S\u00f8gaard, A. (2017). Sluice networks: Learning what to share between loosely related tasks. arXiv:1705.08142v1 [stat.ML]"},{"key":"5789_CR40","unstructured":"Swinnen, A., & Mesbahi, A. (2014). One packer to rule them all: Empirical identification, comparison and circumvention of current antivirus detection techniques. BlackHat USA. https:\/\/www.blackhat.com\/docs\/us-14\/materials\/us-14-Mesbahi-One-Packer-To-Rule-Them-All-WP.pdf ."},{"key":"5789_CR41","first-page":"2745","volume":"7","author":"CV Wright","year":"2006","unstructured":"Wright, C. V., Monrose, F., & Masson, G. M. (2006). On inferring application protocol behaviors in encrypted network traffic. Journal of Machine Learning Research, 7, 2745\u20132769.","journal-title":"Journal of Machine Learning Research"},{"key":"5789_CR42","unstructured":"Yang, Y., & Hospedales, T. M. (2016). Trace norm regularised deep multi-task learning. arXiv:1606.04038 ."}],"container-title":["Machine Learning"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/link.springer.com\/article\/10.1007\/s10994-019-05789-z\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/s10994-019-05789-z.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/s10994-019-05789-z.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2023,9,13]],"date-time":"2023-09-13T22:54:49Z","timestamp":1694645689000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/s10994-019-05789-z"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2019,2,25]]},"references-count":42,"journal-issue":{"issue":"8-9","published-print":{"date-parts":[[2019,9]]}},"alternative-id":["5789"],"URL":"https:\/\/doi.org\/10.1007\/s10994-019-05789-z","relation":{},"ISSN":["0885-6125","1573-0565"],"issn-type":[{"type":"print","value":"0885-6125"},{"type":"electronic","value":"1573-0565"}],"subject":[],"published":{"date-parts":[[2019,2,25]]},"assertion":[{"value":"6 September 2018","order":1,"name":"received","label":"Received","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"25 January 2019","order":2,"name":"accepted","label":"Accepted","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"25 February 2019","order":3,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}}]}}