{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,30]],"date-time":"2026-05-30T08:02:07Z","timestamp":1780128127474,"version":"3.54.0"},"reference-count":34,"publisher":"Elsevier BV","license":[{"start":{"date-parts":[[2026,7,1]],"date-time":"2026-07-01T00:00:00Z","timestamp":1782864000000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.elsevier.com\/tdm\/userlicense\/1.0\/"},{"start":{"date-parts":[[2026,7,1]],"date-time":"2026-07-01T00:00:00Z","timestamp":1782864000000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.elsevier.com\/legal\/tdmrep-license"},{"start":{"date-parts":[[2026,7,1]],"date-time":"2026-07-01T00:00:00Z","timestamp":1782864000000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-017"},{"start":{"date-parts":[[2026,7,1]],"date-time":"2026-07-01T00:00:00Z","timestamp":1782864000000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"},{"start":{"date-parts":[[2026,7,1]],"date-time":"2026-07-01T00:00:00Z","timestamp":1782864000000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-012"},{"start":{"date-parts":[[2026,7,1]],"date-time":"2026-07-01T00:00:00Z","timestamp":1782864000000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2026,7,1]],"date-time":"2026-07-01T00:00:00Z","timestamp":1782864000000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-004"}],"funder":[{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100004826","name":"Beijing Natural Science Foundation","doi-asserted-by":"publisher","id":[{"id":"10.13039\/501100004826","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100005090","name":"Beijing Nova Program","doi-asserted-by":"publisher","id":[{"id":"10.13039\/501100005090","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":["elsevier.com","sciencedirect.com"],"crossmark-restriction":true},"short-container-title":["Journal of Information Security and Applications"],"published-print":{"date-parts":[[2026,7]]},"DOI":"10.1016\/j.jisa.2026.104488","type":"journal-article","created":{"date-parts":[[2026,4,24]],"date-time":"2026-04-24T06:21:21Z","timestamp":1777011681000},"page":"104488","update-policy":"https:\/\/doi.org\/10.1016\/elsevier_cm_policy","source":"Crossref","is-referenced-by-count":0,"special_numbering":"C","title":["SMAD: Robust DGA detection approach based on improved attention mechanism"],"prefix":"10.1016","volume":"100","author":[{"ORCID":"https:\/\/orcid.org\/0009-0003-5567-6737","authenticated-orcid":false,"given":"Shaoxuan","family":"Yun","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-0135-8915","authenticated-orcid":false,"given":"Yuchao","family":"Zhang","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0009-0006-6962-9757","authenticated-orcid":false,"given":"Qianrui","family":"Yuan","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"78","reference":[{"key":"10.1016\/j.jisa.2026.104488_bib0001","series-title":"21st USENIX security symposium (USENIX security 12)","first-page":"491","article-title":"From {Throw-Away} traffic to bots: detecting the rise of {DGA-Based} malware","author":"Antonakakis","year":"2012"},{"issue":"1","key":"10.1016\/j.jisa.2026.104488_bib0002","doi-asserted-by":"crossref","first-page":"1","DOI":"10.1145\/3639037","article-title":"NetDiffusion: network data augmentation through protocol-constrained traffic generation","volume":"8","author":"Jiang","year":"2024","journal-title":"Proc ACM Meas Anal Comput Syst"},{"key":"10.1016\/j.jisa.2026.104488_bib0003","series-title":"Proceedings of the 27th international symposium on research in attacks, intrusions and defenses","first-page":"147","article-title":"Down to earth! guidelines for DGA-based malware detection","author":"Cebere","year":"2024"},{"issue":"3\/4","key":"10.1016\/j.jisa.2026.104488_bib0004","first-page":"116","article-title":"DGA-based botnet detection using dns traffic","volume":"3","author":"Zhou","year":"2013","journal-title":"J Internet Serv Inf Secur"},{"key":"10.1016\/j.jisa.2026.104488_bib0005","series-title":"2017\u202fIEEE Symposium on security and privacy (SP)","first-page":"788","article-title":"A lustrum of malware network communication: evolution and insights","author":"Lever","year":"2017"},{"key":"10.1016\/j.jisa.2026.104488_bib0006","series-title":"Intelligent, secure, and dependable systems in distributed and cloud environments: first international conference, ISDDC 2017, Vancouver, BC, Canada, October 26\u201328, 2017, proceedings 1","first-page":"19","article-title":"Detecting broad length algorithmically generated domains","author":"Ahluwalia","year":"2017"},{"key":"10.1016\/j.jisa.2026.104488_bib0007","series-title":"Research in attacks, intrusions, and defenses: 21st international symposium, RAID 2018, Heraklion, Crete, Greece, September 10\u201312, 2018, proceedings 21","first-page":"295","article-title":"Dictionary extraction and detection of algorithmically generated domain names in passive DNS traffic","author":"Pereira","year":"2018"},{"issue":"2","key":"10.1016\/j.jisa.2026.104488_bib0008","doi-asserted-by":"crossref","first-page":"110","DOI":"10.1007\/s42979-021-00507-w","article-title":"Real-time detection of dictionary DGA network traffic using deep learning","volume":"2","author":"Highnam","year":"2021","journal-title":"SN Comput Sci"},{"key":"10.1016\/j.jisa.2026.104488_bib0009","series-title":"2019\u202fIEEE 21st international conference on high performance computing and communications; IEEE 17th international conference on smart city; IEEE 5th international conference on data science and systems (HPCC\/SmartCity\/DSS)","first-page":"492","article-title":"Detecting malicious domains using modified SVM model","author":"Zhu","year":"2019"},{"key":"10.1016\/j.jisa.2026.104488_bib0010","series-title":"International conference on smart computing and communication","first-page":"133","article-title":"A survey of machine learning and deep learning based DGA detection techniques","author":"Saeed","year":"2021"},{"key":"10.1016\/j.jisa.2026.104488_bib0011","series-title":"Proceedings of the 39th international ACM SIGIR conference on research and development in information retrieval","first-page":"1041","article-title":"Tweet2Vec: learning tweet embeddings using character-level CNN-LSTM encoder-decoder","author":"Vosoughi","year":"2016"},{"key":"10.1016\/j.jisa.2026.104488_bib0012","doi-asserted-by":"crossref","first-page":"77","DOI":"10.1016\/j.cose.2019.04.015","article-title":"Detection method of domain names generated by DGAs based on semantic representation and deep neural network","volume":"85","author":"Xu","year":"2019","journal-title":"Comput Secur"},{"key":"10.1016\/j.jisa.2026.104488_bib0013","unstructured":"Woodbridge J., Anderson H.S., Ahuja A., Grant D.. Predicting domain generation algorithms with long short-term memory networks. 2016. arXiv preprint arXiv: 161100791."},{"key":"10.1016\/j.jisa.2026.104488_bib0014","series-title":"2017\u202fIEEE International conference on data mining workshops (ICDMW)","first-page":"683","article-title":"Inline DGA detection with deep networks","author":"Yu","year":"2017"},{"key":"10.1016\/j.jisa.2026.104488_bib0015","series-title":"2021\u202fIEEE 5th international conference on cryptography, security and privacy (CSP)","first-page":"139","article-title":"DGA domain detection using deep learning","author":"Shahzad","year":"2021"},{"issue":"5","key":"10.1016\/j.jisa.2026.104488_bib0016","doi-asserted-by":"crossref","first-page":"157","DOI":"10.3390\/info10050157","article-title":"DGA CapsNet: 1D application of capsule networks to DGA detection","volume":"10","author":"Berman","year":"2019","journal-title":"Information"},{"key":"10.1016\/j.jisa.2026.104488_bib0017","doi-asserted-by":"crossref","first-page":"2225","DOI":"10.1109\/TIFS.2019.2960647","article-title":"Khaos: an adversarial neural network DGA with high anti-detection ability","volume":"15","author":"Yun","year":"2019","journal-title":"IEEE Trans Inf Forensics Secur"},{"key":"10.1016\/j.jisa.2026.104488_bib0018","doi-asserted-by":"crossref","first-page":"4854","DOI":"10.1109\/TIFS.2023.3298229","article-title":"PKDGA: a partial knowledge-based domain generation algorithm for botnets","volume":"18","author":"Nie","year":"2023","journal-title":"IEEE Trans Inf Forensics Secur"},{"key":"10.1016\/j.jisa.2026.104488_bib0019","series-title":"2022\u202fIEEE International conference on trust, security and privacy in computing and communications (TrustCom)","first-page":"352","article-title":"CDGA: a GAN-based controllable domain generation algorithm","author":"Zhai","year":"2022"},{"key":"10.1016\/j.jisa.2026.104488_bib0020","doi-asserted-by":"crossref","DOI":"10.1016\/j.cose.2020.101787","article-title":"MaldomDetector: a system for detecting algorithmically generated domain names with machine learning","volume":"93","author":"Almashhadani","year":"2020","journal-title":"Comput Secur"},{"key":"10.1016\/j.jisa.2026.104488_bib0021","doi-asserted-by":"crossref","DOI":"10.1016\/j.cose.2024.104007","article-title":"On DGA detection and classification using p4 programmable switches","volume":"145","author":"AlSabeh","year":"2024","journal-title":"Comput Secur"},{"key":"10.1016\/j.jisa.2026.104488_bib0022","doi-asserted-by":"crossref","unstructured":"Mockapetris P.. Domain names - implementation and specification. RFC 1035. 1987. 10.17487\/RFC1035. https:\/\/www.rfc-editor.org\/info\/rfc1035.","DOI":"10.17487\/rfc1035"},{"key":"10.1016\/j.jisa.2026.104488_bib0023","unstructured":"DGArchive. DGArchive dataset. Web; 2023. Accessed: 2023-04-28; https:\/\/dgarchive.caad.fkie.fraunhofer.de\/."},{"key":"10.1016\/j.jisa.2026.104488_bib0024","series-title":"Proceedings of the 2016\u202fACM workshop on artificial intelligence and security","first-page":"13","article-title":"DeepDGA: adversarially-tuned domain generation and detection","author":"Anderson","year":"2016"},{"key":"10.1016\/j.jisa.2026.104488_bib0025","unstructured":"DNSPerf Contributors. DNSPerf\/DNSPerf: DNS performance testing tool. https:\/\/github.com\/DNSPerf\/dnsperf; GitHub repository."},{"key":"10.1016\/j.jisa.2026.104488_bib0026","series-title":"Technological innovation for life improvement: 11th IFIP WG 5.5\/SOCOLNET advanced doctoral conference on computing, electrical and industrial systems, DoCEIS 2020, Costa de Caparica, Portugal, July 1\u20133, 2020, proceedings 11","first-page":"109","article-title":"Towards the detection of malicious URL and domain names using machine learning","author":"Ghalati","year":"2020"},{"key":"10.1016\/j.jisa.2026.104488_bib0027","doi-asserted-by":"crossref","first-page":"141910","DOI":"10.1109\/ACCESS.2020.3013494","article-title":"Inline detection of DGA domains using side information","volume":"8","author":"Sivaguru","year":"2020","journal-title":"IEEE Access"},{"key":"10.1016\/j.jisa.2026.104488_bib0028","series-title":"Computational science\u2013ICCS 2020: 20th international conference, Amsterdam, the Netherlands, June 3\u20135, 2020, proceedings, Part II 20","first-page":"468","article-title":"Malicious domain detection based on k-means and smote","author":"Wang","year":"2020"},{"key":"10.1016\/j.jisa.2026.104488_bib0029","doi-asserted-by":"crossref","DOI":"10.1016\/j.cose.2020.102057","article-title":"DeepDom: malicious domain detection with scalable and heterogeneous graph convolutional networks","volume":"99","author":"Sun","year":"2020","journal-title":"Comput Secur"},{"key":"10.1016\/j.jisa.2026.104488_bib0030","series-title":"Proceedings of the 2023\u202fACM SIGSAC conference on computer and communications security","first-page":"1050","article-title":"Transformer-based model for multi-tab website fingerprinting attack","author":"Jin","year":"2023"},{"key":"10.1016\/j.jisa.2026.104488_bib0031","series-title":"2023\u202fIEEE Symposium on security and privacy (SP)","first-page":"1005","article-title":"Robust multi-tab website fingerprinting attacks in the wild","author":"Deng","year":"2023"},{"issue":"11","key":"10.1016\/j.jisa.2026.104488_bib0032","doi-asserted-by":"crossref","first-page":"5506","DOI":"10.1109\/JBHI.2022.3199110","article-title":"A scalable graph-based framework for multi-organ histology image classification","volume":"26","author":"Bai","year":"2022","journal-title":"IEEE J Biomed Health Inform"},{"key":"10.1016\/j.jisa.2026.104488_bib0033","series-title":"BMVC","first-page":"412","article-title":"HAT-Net: a hierarchical transformer graph neural network for grading of colorectal cancer histology images","author":"Su","year":"2021"},{"key":"10.1016\/j.jisa.2026.104488_bib0034","series-title":"Proceedings of the 2020 4th international conference on digital signal processing","first-page":"155","article-title":"Music genre classification with transformer classifier","author":"Zhuang","year":"2020"}],"container-title":["Journal of Information Security and Applications"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/api.elsevier.com\/content\/article\/PII:S2214212626001183?httpAccept=text\/xml","content-type":"text\/xml","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/api.elsevier.com\/content\/article\/PII:S2214212626001183?httpAccept=text\/plain","content-type":"text\/plain","content-version":"vor","intended-application":"text-mining"}],"deposited":{"date-parts":[[2026,5,30]],"date-time":"2026-05-30T07:34:17Z","timestamp":1780126457000},"score":1,"resource":{"primary":{"URL":"https:\/\/linkinghub.elsevier.com\/retrieve\/pii\/S2214212626001183"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2026,7]]},"references-count":34,"alternative-id":["S2214212626001183"],"URL":"https:\/\/doi.org\/10.1016\/j.jisa.2026.104488","relation":{},"ISSN":["2214-2126"],"issn-type":[{"value":"2214-2126","type":"print"}],"subject":[],"published":{"date-parts":[[2026,7]]},"assertion":[{"value":"Elsevier","name":"publisher","label":"This article is maintained by"},{"value":"SMAD: Robust DGA detection approach based on improved attention mechanism","name":"articletitle","label":"Article Title"},{"value":"Journal of Information Security and Applications","name":"journaltitle","label":"Journal Title"},{"value":"https:\/\/doi.org\/10.1016\/j.jisa.2026.104488","name":"articlelink","label":"CrossRef DOI link to publisher maintained version"},{"value":"article","name":"content_type","label":"Content Type"},{"value":"\u00a9 2026 Elsevier Ltd. All rights are reserved, including those for text and data mining, AI training, and similar technologies.","name":"copyright","label":"Copyright"}],"article-number":"104488"}}