{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,4]],"date-time":"2026-07-04T12:16:57Z","timestamp":1783167417641,"version":"3.54.6"},"reference-count":32,"publisher":"Elsevier BV","license":[{"start":{"date-parts":[[2026,10,1]],"date-time":"2026-10-01T00:00:00Z","timestamp":1790812800000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.elsevier.com\/tdm\/userlicense\/1.0\/"},{"start":{"date-parts":[[2026,10,1]],"date-time":"2026-10-01T00:00:00Z","timestamp":1790812800000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.elsevier.com\/legal\/tdmrep-license"},{"start":{"date-parts":[[2026,10,1]],"date-time":"2026-10-01T00:00:00Z","timestamp":1790812800000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-017"},{"start":{"date-parts":[[2026,10,1]],"date-time":"2026-10-01T00:00:00Z","timestamp":1790812800000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"},{"start":{"date-parts":[[2026,10,1]],"date-time":"2026-10-01T00:00:00Z","timestamp":1790812800000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-012"},{"start":{"date-parts":[[2026,10,1]],"date-time":"2026-10-01T00:00:00Z","timestamp":1790812800000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2026,10,1]],"date-time":"2026-10-01T00:00:00Z","timestamp":1790812800000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-004"}],"funder":[{"DOI":"10.13039\/501100012166","name":"National Key Research and Development Program of China","doi-asserted-by":"publisher","award":["2023YFB3106700"],"award-info":[{"award-number":["2023YFB3106700"]}],"id":[{"id":"10.13039\/501100012166","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["62172093"],"award-info":[{"award-number":["62172093"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["U22B2025"],"award-info":[{"award-number":["U22B2025"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":["elsevier.com","sciencedirect.com"],"crossmark-restriction":true},"short-container-title":["Computers &amp; Security"],"published-print":{"date-parts":[[2026,10]]},"DOI":"10.1016\/j.cose.2026.104987","type":"journal-article","created":{"date-parts":[[2026,5,26]],"date-time":"2026-05-26T23:34:46Z","timestamp":1779838486000},"page":"104987","update-policy":"https:\/\/doi.org\/10.1016\/elsevier_cm_policy","source":"Crossref","is-referenced-by-count":0,"special_numbering":"C","title":["PacketPatch: Practical generation and deployment of adversarial packets for byte-feature-based encrypted traffic classification"],"prefix":"10.1016","volume":"169","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-1611-9167","authenticated-orcid":false,"given":"Yuwei","family":"Xu","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0009-0001-1220-4401","authenticated-orcid":false,"given":"Yuanyuan","family":"Xu","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0009-0007-0294-5867","authenticated-orcid":false,"given":"Yunpeng","family":"Bai","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0009-0009-1337-5016","authenticated-orcid":false,"given":"Jiahui","family":"Chen","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-9694-6359","authenticated-orcid":false,"given":"Kehui","family":"Song","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-6943-1306","authenticated-orcid":false,"given":"Jie","family":"Cao","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-3394-6279","authenticated-orcid":false,"given":"Qiao","family":"Xiang","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-8642-4362","authenticated-orcid":false,"given":"Guang","family":"Cheng","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"78","reference":[{"issue":"2","key":"10.1016\/j.cose.2026.104987_b1","doi-asserted-by":"crossref","first-page":"445","DOI":"10.1109\/TNSM.2019.2899085","article-title":"Mobile encrypted traffic classification using deep learning: Experimental evaluation, lessons learned, and challenges","volume":"16","author":"Aceto","year":"2019","journal-title":"IEEE Trans. Netw. Serv. Manag."},{"issue":"6","key":"10.1016\/j.cose.2026.104987_b2","doi-asserted-by":"crossref","DOI":"10.1145\/3703447","article-title":"Deep learning on network traffic prediction: Recent advances, analysis, and future directions","volume":"57","author":"Aouedi","year":"2025","journal-title":"ACM Comput. Surv."},{"key":"10.1016\/j.cose.2026.104987_b3","series-title":"Proceedings of the 23rd IEEE International Conference on Trust, Security and Privacy in Computing and Communications, TrustCom","first-page":"1015","article-title":"Perturbing vulnerable bytes in packets to generate adversarial samples resisting DNN-based traffic monitoring","author":"Cao","year":"2024"},{"key":"10.1016\/j.cose.2026.104987_b4","doi-asserted-by":"crossref","DOI":"10.1016\/j.comnet.2021.108472","article-title":"MATEC: A lightweight neural network for online encrypted traffic classification","volume":"199","author":"Cheng","year":"2021","journal-title":"Comput. Netw."},{"key":"10.1016\/j.cose.2026.104987_b5","series-title":"Proceedings of the 18th European Conference on Computer Vision","first-page":"93","article-title":"Advdiff: Generating unrestricted adversarial examples using diffusion models","author":"Dai","year":"2024"},{"key":"10.1016\/j.cose.2026.104987_b6","doi-asserted-by":"crossref","unstructured":"Devlin, J., Chang, M.-W., Lee, K., Toutanova, K., 2019. Bert: Pre-training of Deep Bidirectional Transformers for Language Understanding. In: Proceedings of the 2019 Conference of the North American Chapter of the Association for Computational Linguistics: Human Language Technologies, NAACL-HLT. pp. 4171\u20134186.","DOI":"10.18653\/v1\/N19-1423"},{"key":"10.1016\/j.cose.2026.104987_b7","doi-asserted-by":"crossref","DOI":"10.1016\/j.comnet.2024.110790","article-title":"Towards universal and transferable adversarial attacks against network traffic classification","volume":"254","author":"Ding","year":"2024","journal-title":"Comput. Netw."},{"issue":"10","key":"10.1016\/j.cose.2026.104987_b8","doi-asserted-by":"crossref","first-page":"18024","DOI":"10.1109\/TITS.2022.3154884","article-title":"Adversarial sample attack and defense method for encrypted traffic data","volume":"23","author":"Ding","year":"2022","journal-title":"IEEE Trans. Intell. Transp. Syst."},{"key":"10.1016\/j.cose.2026.104987_b9","doi-asserted-by":"crossref","DOI":"10.1016\/j.neucom.2024.128444","article-title":"Deep learning and pre-training technology for encrypted traffic classification: A comprehensive review","volume":"617","author":"Dong","year":"2025","journal-title":"Neurocomputing"},{"key":"10.1016\/j.cose.2026.104987_b10","doi-asserted-by":"crossref","unstructured":"Draper-Gil, G., Lashkari, A.H., Mamun, M.S.I., Ghorbani, A.A., 2016. Characterization of encrypted and vpn traffic using time-related. In: Proceedings of the 2nd International Conference on Information Systems Security and Privacy. ICISSP, pp. 407\u2013414.","DOI":"10.5220\/0005740704070414"},{"key":"10.1016\/j.cose.2026.104987_b11","series-title":"Proceedings of the 12th ITU Kaleidoscope Academic Conference, ITU K","first-page":"1","article-title":"PERT: Payload encoding representation from transformer for encrypted traffic classification","author":"He","year":"2020"},{"issue":"2","key":"10.1016\/j.cose.2026.104987_b12","doi-asserted-by":"crossref","first-page":"1","DOI":"10.1145\/3712307","article-title":"Deep packgen: A deep reinforcement learning framework for adversarial network packet generation","volume":"28","author":"Hore","year":"2025","journal-title":"ACM Trans. Priv. Secur."},{"issue":"5","key":"10.1016\/j.cose.2026.104987_b13","doi-asserted-by":"crossref","first-page":"3814","DOI":"10.1109\/JIOT.2022.3160755","article-title":"A deep subdomain adaptation network with attention mechanism for malware variant traffic identification at an IoT edge gateway","volume":"10","author":"Hu","year":"2023","journal-title":"IEEE Internet Things J."},{"issue":"9","key":"10.1016\/j.cose.2026.104987_b14","doi-asserted-by":"crossref","first-page":"7868","DOI":"10.1109\/JIOT.2022.3229906","article-title":"Adversarial attacks against IoT identification systems","volume":"10","author":"Kotak","year":"2023","journal-title":"IEEE Internet Things J."},{"key":"10.1016\/j.cose.2026.104987_b15","first-page":"253","article-title":"Characterization of tor traffic using time based features","volume":"vol. 2","author":"Lashkari","year":"2017"},{"key":"10.1016\/j.cose.2026.104987_b16","doi-asserted-by":"crossref","unstructured":"Lin, X., Xiong, G., Gou, G., et al., 2022. ET-BERT: A Contextualized Datagram Representation with Pre-training Transformers for Encrypted Traffic Classification. In: Proceedings of the 31st ACM Web Conference. WWW, pp. 633\u2013642.","DOI":"10.1145\/3485447.3512217"},{"key":"10.1016\/j.cose.2026.104987_b17","doi-asserted-by":"crossref","DOI":"10.1016\/j.comnet.2021.107974","article-title":"TSCRNN: A novel classification scheme of encrypted traffic based on flow spatiotemporal features for efficient management of IIoT","volume":"190","author":"Lin","year":"2021","journal-title":"Comput. Netw."},{"issue":"3","key":"10.1016\/j.cose.2026.104987_b18","doi-asserted-by":"crossref","first-page":"1999","DOI":"10.1007\/s00500-019-04030-2","article-title":"Deep packet: A novel approach for encrypted traffic classification using deep learning","volume":"24","author":"Lotfollahi","year":"2020","journal-title":"Soft Comput."},{"issue":"6","key":"10.1016\/j.cose.2026.104987_b19","doi-asserted-by":"crossref","first-page":"1","DOI":"10.1145\/3457904","article-title":"A survey on encrypted network traffic analysis applications, techniques, and countermeasures","volume":"54","author":"Papadogiannaki","year":"2021","journal-title":"ACM Comput. Surv."},{"issue":"2","key":"10.1016\/j.cose.2026.104987_b20","doi-asserted-by":"crossref","first-page":"1962","DOI":"10.1109\/TNSM.2021.3052888","article-title":"Adversarial network traffic: Towards evaluating the robustness of deep-learning-based network traffic classification","volume":"18","author":"Sadeghzadeh","year":"2021","journal-title":"IEEE Trans. Netw. Serv. Manag."},{"key":"10.1016\/j.cose.2026.104987_b21","doi-asserted-by":"crossref","DOI":"10.1016\/j.comnet.2024.110984","article-title":"A survey on encrypted network traffic: A comprehensive survey of identification\/classification techniques, challenges, and future directions","volume":"257","author":"Sharma","year":"2025","journal-title":"Comput. Netw."},{"issue":"1","key":"10.1016\/j.cose.2026.104987_b22","doi-asserted-by":"crossref","first-page":"791","DOI":"10.1109\/COMST.2022.3208196","article-title":"Machine learning-powered encrypted network traffic analysis: A comprehensive survey","volume":"25","author":"Shen","year":"2022","journal-title":"IEEE Commun. Surv. Tutor."},{"key":"10.1016\/j.cose.2026.104987_b23","series-title":"Proceedings of the 34th ACM Web Conference","first-page":"3147","article-title":"AdvTG: An adversarial traffic generation framework to deceive DL-based malicious traffic detection models","author":"Sun","year":"2025"},{"key":"10.1016\/j.cose.2026.104987_b24","doi-asserted-by":"crossref","first-page":"55380","DOI":"10.1109\/ACCESS.2018.2872430","article-title":"Datanet: Deep learning based encrypted network traffic classification in sdn home gateway","volume":"6","author":"Wang","year":"2018","journal-title":"IEEE Access"},{"key":"10.1016\/j.cose.2026.104987_b25","series-title":"Proc. of the 15th IEEE International Conference on Intelligence and Security Informatics","first-page":"43","article-title":"End-to-end encrypted traffic classification with one-dimensional convolution neural networks","author":"Wang","year":"2017"},{"key":"10.1016\/j.cose.2026.104987_b26","series-title":"Proceedings of the 31st International Conference on Information Networking","first-page":"712","article-title":"Malware traffic classification using convolutional neural network for representation learning","author":"Wang","year":"2017"},{"issue":"1","key":"10.1016\/j.cose.2026.104987_b27","doi-asserted-by":"crossref","first-page":"88","DOI":"10.1109\/TNSM.2023.3286446","article-title":"RT-CBCH: Real-time VPN traffic service identification based on sampled data in high-speed networks","volume":"21","author":"Wu","year":"2023","journal-title":"IEEE Trans. Netw. Serv. Manag."},{"key":"10.1016\/j.cose.2026.104987_b28","doi-asserted-by":"crossref","unstructured":"Ye, M., Chen, J., Miao, C., et al., 2023. PAT: Geometry-Aware Hard-Label Black-Box Adversarial Attacks on Text. In: Proceedings of the 29th ACM SIGKDD Conference on Knowledge Discovery and Data Mining. SIGKDD, pp. 3093\u20133104.","DOI":"10.1145\/3580305.3599461"},{"key":"10.1016\/j.cose.2026.104987_b29","doi-asserted-by":"crossref","first-page":"10989","DOI":"10.1109\/ACCESS.2020.2965184","article-title":"Adversarial examples detection for XSS attacks based on generative adversarial networks","volume":"8","author":"Zhang","year":"2020","journal-title":"IEEE Access"},{"key":"10.1016\/j.cose.2026.104987_b30","series-title":"Proceedings of the 22nd Asia-Pacific Network Operations and Management Symposium","first-page":"238","article-title":"Encrypted network traffic identification based on 2d-CNN model","author":"Zhou","year":"2021"},{"key":"10.1016\/j.cose.2026.104987_b31","doi-asserted-by":"crossref","unstructured":"Zhou, H., Wang, Y., Lei, X., Liu, Y., 2017. A Method of Improved CNN Traffic Classification. In: Proceedings of the 13th International Conference on Computational Intelligence and Security. CIS, pp. 177\u2013181.","DOI":"10.1109\/CIS.2017.00046"},{"issue":"13","key":"10.1016\/j.cose.2026.104987_b32","doi-asserted-by":"crossref","first-page":"11773","DOI":"10.1109\/JIOT.2023.3244544","article-title":"CMTSNN: A deep learning model for multiclassification of abnormal and encrypted traffic of internet of things","volume":"10","author":"Zhu","year":"2023","journal-title":"IEEE Internet Things J."}],"container-title":["Computers &amp; Security"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/api.elsevier.com\/content\/article\/PII:S016740482600163X?httpAccept=text\/xml","content-type":"text\/xml","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/api.elsevier.com\/content\/article\/PII:S016740482600163X?httpAccept=text\/plain","content-type":"text\/plain","content-version":"vor","intended-application":"text-mining"}],"deposited":{"date-parts":[[2026,7,4]],"date-time":"2026-07-04T11:33:10Z","timestamp":1783164790000},"score":1,"resource":{"primary":{"URL":"https:\/\/linkinghub.elsevier.com\/retrieve\/pii\/S016740482600163X"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2026,10]]},"references-count":32,"alternative-id":["S016740482600163X"],"URL":"https:\/\/doi.org\/10.1016\/j.cose.2026.104987","relation":{},"ISSN":["0167-4048"],"issn-type":[{"value":"0167-4048","type":"print"}],"subject":[],"published":{"date-parts":[[2026,10]]},"assertion":[{"value":"Elsevier","name":"publisher","label":"This article is maintained by"},{"value":"PacketPatch: Practical generation and deployment of adversarial packets for byte-feature-based encrypted traffic classification","name":"articletitle","label":"Article Title"},{"value":"Computers & Security","name":"journaltitle","label":"Journal Title"},{"value":"https:\/\/doi.org\/10.1016\/j.cose.2026.104987","name":"articlelink","label":"CrossRef DOI link to publisher maintained version"},{"value":"article","name":"content_type","label":"Content Type"},{"value":"\u00a9 2026 Published by Elsevier Ltd.","name":"copyright","label":"Copyright"}],"article-number":"104987"}}