{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,27]],"date-time":"2026-05-27T21:03:46Z","timestamp":1779915826417,"version":"3.53.1"},"reference-count":32,"publisher":"Elsevier BV","license":[{"start":{"date-parts":[[2026,9,1]],"date-time":"2026-09-01T00:00:00Z","timestamp":1788220800000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.elsevier.com\/tdm\/userlicense\/1.0\/"},{"start":{"date-parts":[[2026,9,1]],"date-time":"2026-09-01T00:00:00Z","timestamp":1788220800000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.elsevier.com\/legal\/tdmrep-license"},{"start":{"date-parts":[[2026,9,1]],"date-time":"2026-09-01T00:00:00Z","timestamp":1788220800000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-017"},{"start":{"date-parts":[[2026,9,1]],"date-time":"2026-09-01T00:00:00Z","timestamp":1788220800000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"},{"start":{"date-parts":[[2026,9,1]],"date-time":"2026-09-01T00:00:00Z","timestamp":1788220800000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-012"},{"start":{"date-parts":[[2026,9,1]],"date-time":"2026-09-01T00:00:00Z","timestamp":1788220800000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2026,9,1]],"date-time":"2026-09-01T00:00:00Z","timestamp":1788220800000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-004"}],"content-domain":{"domain":["elsevier.com","sciencedirect.com"],"crossmark-restriction":true},"short-container-title":["Computers &amp; Security"],"published-print":{"date-parts":[[2026,9]]},"DOI":"10.1016\/j.cose.2026.104924","type":"journal-article","created":{"date-parts":[[2026,4,20]],"date-time":"2026-04-20T14:58:35Z","timestamp":1776697115000},"page":"104924","update-policy":"https:\/\/doi.org\/10.1016\/elsevier_cm_policy","source":"Crossref","is-referenced-by-count":0,"special_numbering":"C","title":["M4D: Manifold entanglement for robust decision tree NIDS in medical IoT"],"prefix":"10.1016","volume":"168","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-5621-4126","authenticated-orcid":false,"given":"Mohmmad","family":"Al-Fawa\u2019reh","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-0483-8196","authenticated-orcid":false,"given":"Mohammed","family":"Kaosar","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-6651-2880","authenticated-orcid":false,"given":"Jumana","family":"Abu-khalaf","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"78","reference":[{"key":"10.1016\/j.cose.2026.104924_b1","doi-asserted-by":"crossref","DOI":"10.1016\/j.cose.2025.104431","article-title":"Detection of on-manifold adversarial attacks via latent space transformation","volume":"154","author":"Al-Fawa\u2019reh","year":"2025","journal-title":"Comput. Secur."},{"issue":"2","key":"10.1016\/j.cose.2026.104924_b2","doi-asserted-by":"crossref","first-page":"173","DOI":"10.1016\/j.eij.2021.12.001","article-title":"Cyber threat intelligence using PCA-DNN model to detect abnormal network behavior","volume":"23","author":"Al-Fawa\u2019reh","year":"2022","journal-title":"Egypt. Inform. J."},{"key":"10.1016\/j.cose.2026.104924_b3","doi-asserted-by":"crossref","first-page":"148738","DOI":"10.1109\/ACCESS.2021.3124634","article-title":"Asynchronous peer-to-peer federated capability-based targeted ransomware detection model for industrial IoT","volume":"9","author":"Al-Hawawreh","year":"2021","journal-title":"IEEE Access"},{"issue":"2","key":"10.1016\/j.cose.2026.104924_b4","doi-asserted-by":"crossref","first-page":"713","DOI":"10.3390\/s24020713","article-title":"Anomaly detection IDS for detecting DoS attacks in IoT networks based on machine learning algorithms","volume":"24","author":"Altulaihan","year":"2024","journal-title":"Sens. (Basel)"},{"key":"10.1016\/j.cose.2026.104924_b5","series-title":"Advances in Neural Information Processing Systems","article-title":"Provably robust boosted decision stumps and trees against adversarial attacks","volume":"Vol. 32","author":"Andriushchenko","year":"2019"},{"key":"10.1016\/j.cose.2026.104924_b6","series-title":"Treant: Training evasion-aware decision trees","author":"Calzavara","year":"2019"},{"issue":"19","key":"10.1016\/j.cose.2026.104924_b7","first-page":"20993","article-title":"TTTS: Tree test time simulation for enhancing decision tree robustness against adversarial examples","volume":"38","author":"Cohen","year":"2024","journal-title":"Proc. AAAI Conf. Artif. Intell."},{"key":"10.1016\/j.cose.2026.104924_b8","series-title":"FairTTTS: A tree test time simulation method for fairness-aware classification","author":"Cohen-Inger","year":"2025"},{"key":"10.1016\/j.cose.2026.104924_b9","doi-asserted-by":"crossref","DOI":"10.1016\/j.iot.2024.101351","article-title":"CICIoMT2024: A benchmark dataset for multi-protocol security assessment in IoMT","volume":"28","author":"Dadkhah","year":"2024","journal-title":"Internet Things"},{"key":"10.1016\/j.cose.2026.104924_b10","series-title":"Adversarial spheres","author":"Gilmer","year":"2018"},{"issue":"2","key":"10.1016\/j.cose.2026.104924_b11","doi-asserted-by":"crossref","first-page":"182","DOI":"10.1089\/hs.2021.0165","article-title":"Next-generation biowarfare: Small in scale, sensational in nature?","volume":"20","author":"Gisselsson","year":"2022","journal-title":"Health Secur."},{"key":"10.1016\/j.cose.2026.104924_b12","series-title":"Explaining and harnessing adversarial examples","author":"Goodfellow","year":"2014"},{"key":"10.1016\/j.cose.2026.104924_b13","series-title":"Proceedings of the 39th International Conference on Machine Learning","first-page":"8127","article-title":"Fast provably robust decision trees and boosting","volume":"vol. 162","author":"Guo","year":"2022"},{"key":"10.1016\/j.cose.2026.104924_b14","series-title":"IoT healthcare security dataset","author":"Hussain","year":"2021"},{"issue":"9","key":"10.1016\/j.cose.2026.104924_b15","doi-asserted-by":"crossref","DOI":"10.3390\/s21093025","article-title":"A framework for malicious traffic detection in IoT healthcare environment","volume":"21","author":"Hussain","year":"2021","journal-title":"Sensors"},{"key":"10.1016\/j.cose.2026.104924_b16","series-title":"Characterizing adversarial subspaces using local intrinsic dimensionality","author":"Ma","year":"2018"},{"key":"10.1016\/j.cose.2026.104924_b17","series-title":"Transferability in machine learning: from phenomena to black-box attacks using adversarial samples","author":"Papernot","year":"2016"},{"key":"10.1016\/j.cose.2026.104924_b18","doi-asserted-by":"crossref","DOI":"10.1016\/j.cose.2023.103546","article-title":"Apollon: A robust defense system against adversarial machine learning attacks in intrusion detection systems","volume":"136","author":"Paya","year":"2024","journal-title":"Comput. Secur."},{"issue":"5","key":"10.1016\/j.cose.2026.104924_b19","doi-asserted-by":"crossref","first-page":"445","DOI":"10.1023\/A:1016409317640","article-title":"Decision trees: An overview and their use in medicine","volume":"26","author":"Podgorelec","year":"2002","journal-title":"J. Med. Syst."},{"key":"10.1016\/j.cose.2026.104924_b20","series-title":"Proceedings of the Genetic and Evolutionary Computation Conference","first-page":"358","article-title":"Genetic adversarial training of decision trees","author":"Ranzato","year":"2021"},{"key":"10.1016\/j.cose.2026.104924_b21","doi-asserted-by":"crossref","DOI":"10.1016\/j.cose.2023.103483","article-title":"RAIDS: Robust autoencoder-based intrusion detection system model against adversarial attacks","volume":"135","author":"Sar\u0131kaya","year":"2023","journal-title":"Comput. Secur."},{"issue":"6","key":"10.1016\/j.cose.2026.104924_b22","doi-asserted-by":"crossref","first-page":"657","DOI":"10.1007\/s10207-019-00482-7","article-title":"A context-aware robust intrusion detection system: A reinforcement learning-based approach","volume":"19","author":"Sethi","year":"2020","journal-title":"Int. J. Inf. Secur."},{"key":"10.1016\/j.cose.2026.104924_b23","series-title":"2019 IEEE\/CVF Conference on Computer Vision and Pattern Recognition","first-page":"6969","article-title":"Disentangling adversarial robustness and generalization","author":"Stutz","year":"2018"},{"key":"10.1016\/j.cose.2026.104924_b24","series-title":"Proceedings of the 31st International Conference on Neural Information Processing Systems","first-page":"6000","article-title":"Attention is all you need","author":"Vaswani","year":"2017"},{"key":"10.1016\/j.cose.2026.104924_b25","series-title":"Manifold mixup: Learning better representations by interpolating hidden states","author":"Verma","year":"2018"},{"key":"10.1016\/j.cose.2026.104924_b26","series-title":"Proceedings of the 38th International Conference on Machine Learning","first-page":"10586","article-title":"Efficient training of robust decision trees against adversarial examples","volume":"vol. 139","author":"Vos","year":"2021"},{"key":"10.1016\/j.cose.2026.104924_b27","series-title":"AAAI Conference on Artificial Intelligence","article-title":"Robust optimal classification trees against adversarial examples","author":"Vos","year":"2021"},{"key":"10.1016\/j.cose.2026.104924_b28","series-title":"Machine Learning and Knowledge Discovery in Databases","first-page":"203","article-title":"Adversarially robust decision tree relabeling","author":"Vos","year":"2023"},{"key":"10.1016\/j.cose.2026.104924_b29","doi-asserted-by":"crossref","DOI":"10.1016\/j.patcog.2024.111071","article-title":"Understanding adversarial robustness against on-manifold adversarial examples","volume":"159","author":"Xiao","year":"2025","journal-title":"Pattern Recognit."},{"key":"10.1016\/j.cose.2026.104924_b30","series-title":"Proceedings 2018 Network and Distributed System Security Symposium","article-title":"Feature squeezing: Detecting adversarial examples in deep neural networks","author":"Xu","year":"2018"},{"key":"10.1016\/j.cose.2026.104924_b31","series-title":"The Twelfth International Conference on Learning Representations","article-title":"Investigating the benefits of projection head for representation learning","author":"Xue","year":"2024"},{"key":"10.1016\/j.cose.2026.104924_b32","series-title":"Proceedings of the 10th ACM Workshop on Artificial Intelligence and Security","article-title":"Efficient defenses against adversarial attacks","author":"Zantedeschi","year":"2017"}],"container-title":["Computers &amp; Security"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/api.elsevier.com\/content\/article\/PII:S0167404826001008?httpAccept=text\/xml","content-type":"text\/xml","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/api.elsevier.com\/content\/article\/PII:S0167404826001008?httpAccept=text\/plain","content-type":"text\/plain","content-version":"vor","intended-application":"text-mining"}],"deposited":{"date-parts":[[2026,5,27]],"date-time":"2026-05-27T20:03:57Z","timestamp":1779912237000},"score":1,"resource":{"primary":{"URL":"https:\/\/linkinghub.elsevier.com\/retrieve\/pii\/S0167404826001008"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2026,9]]},"references-count":32,"alternative-id":["S0167404826001008"],"URL":"https:\/\/doi.org\/10.1016\/j.cose.2026.104924","relation":{},"ISSN":["0167-4048"],"issn-type":[{"value":"0167-4048","type":"print"}],"subject":[],"published":{"date-parts":[[2026,9]]},"assertion":[{"value":"Elsevier","name":"publisher","label":"This article is maintained by"},{"value":"M4D: Manifold entanglement for robust decision tree NIDS in medical IoT","name":"articletitle","label":"Article Title"},{"value":"Computers & Security","name":"journaltitle","label":"Journal Title"},{"value":"https:\/\/doi.org\/10.1016\/j.cose.2026.104924","name":"articlelink","label":"CrossRef DOI link to publisher maintained version"},{"value":"article","name":"content_type","label":"Content Type"},{"value":"\u00a9 2026 Published by Elsevier Ltd.","name":"copyright","label":"Copyright"}],"article-number":"104924"}}