{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,18]],"date-time":"2026-06-18T02:48:36Z","timestamp":1781750916230,"version":"3.54.5"},"reference-count":79,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","license":[{"start":{"date-parts":[[2019,1,1]],"date-time":"2019-01-01T00:00:00Z","timestamp":1546300800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/OAPA.html"}],"funder":[{"name":"Paramount Computer Systems"},{"name":"Lakhshya Cyber Security Labs"},{"name":"Department of Corporate and Information Services, Northern Territory Government of Australia"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Access"],"published-print":{"date-parts":[[2019]]},"DOI":"10.1109\/access.2019.2895334","type":"journal-article","created":{"date-parts":[[2019,4,3]],"date-time":"2019-04-03T22:15:50Z","timestamp":1554329750000},"page":"41525-41550","source":"Crossref","is-referenced-by-count":1546,"title":["Deep Learning Approach for Intelligent Intrusion Detection System"],"prefix":"10.1109","volume":"7","author":[{"ORCID":"https:\/\/orcid.org\/0000-0001-6873-6469","authenticated-orcid":false,"given":"R.","family":"Vinayakumar","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Mamoun","family":"Alazab","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"K. P.","family":"Soman","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Prabaharan","family":"Poornachandran","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Ameer","family":"Al-Nemrat","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Sitalakshmi","family":"Venkatraman","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"263","reference":[{"key":"ref73","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2016.2536605"},{"key":"ref72","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2018.2866319"},{"key":"ref71","doi-asserted-by":"publisher","DOI":"10.1109\/ISCIT.2012.6380910"},{"key":"ref70","first-page":"171","article-title":"Zero-day malware detection based on supervised learning algorithms of API call signatures","volume":"121","author":"alazab","year":"2011","journal-title":"Proc 9th Australasian Data Mining Conf"},{"key":"ref76","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2017.2780250"},{"key":"ref77","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2017.2768533"},{"key":"ref74","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2018.2863036"},{"key":"ref39","first-page":"542","article-title":"Evaluating host-based anomaly detection systems: Application of the frequency-based algorithms to ADFA-LD","author":"xie","year":"2014","journal-title":"Proc IEEE Int Conf Netw"},{"key":"ref75","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2018.2801792"},{"key":"ref38","doi-asserted-by":"publisher","DOI":"10.4236\/jis.2015.63025"},{"key":"ref78","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2018.2854745"},{"key":"ref79","doi-asserted-by":"publisher","DOI":"10.1109\/TSIPN.2018.2801622"},{"key":"ref33","doi-asserted-by":"publisher","DOI":"10.4108\/eai.3-12-2015.2262516"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2017.2762418"},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2011.08.009"},{"key":"ref30","first-page":"1","article-title":"Ensemble learning for intrusion detection in computer networks","author":"didaci","year":"2002","journal-title":"Proc Workshop Mach Learn Meth Appl"},{"key":"ref37","doi-asserted-by":"publisher","DOI":"10.3233\/HIS-170247"},{"key":"ref36","doi-asserted-by":"publisher","DOI":"10.1109\/SIU.2004.1338634"},{"key":"ref35","first-page":"281","article-title":"Development of host based intrusion detection system for log files","author":"ali","year":"2011","journal-title":"Proc IEEE Symp Bus Eng Ind Appl (ISBEIA)"},{"key":"ref34","doi-asserted-by":"publisher","DOI":"10.1109\/PlatCon.2016.7456805"},{"key":"ref60","doi-asserted-by":"publisher","DOI":"10.1109\/78.134446"},{"key":"ref62","doi-asserted-by":"publisher","DOI":"10.1109\/TC.2013.13"},{"key":"ref61","doi-asserted-by":"publisher","DOI":"10.1016\/j.jss.2014.10.031"},{"key":"ref63","first-page":"2579","article-title":"Visualizing data using t-SNE","volume":"9","author":"van der maaten","year":"2008","journal-title":"J Mach Learn Res"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.1109\/ICPR.2002.1047476"},{"key":"ref64","doi-asserted-by":"publisher","DOI":"10.1109\/CIS.2011.6169141"},{"key":"ref27","doi-asserted-by":"crossref","first-page":"80","DOI":"10.1007\/3-540-39945-3_6","article-title":"Adaptive, model-based monitoring for cyber attack detection","author":"valdes","year":"2000","journal-title":"2nd Int Workshop Recent Advances in Intrusion Detection"},{"key":"ref65","first-page":"21","article-title":"The applications of deep learning on traffic identification","author":"wang","year":"2015","journal-title":"BlackHat USA"},{"key":"ref66","doi-asserted-by":"publisher","DOI":"10.1109\/ICISSEC.2016.7885840"},{"key":"ref29","first-page":"24","article-title":"Using genetic algorithm for network intrusion detection","author":"li","year":"2004","journal-title":"Proc United States Dept Energy Cyber Secur Group Training Conf"},{"key":"ref67","first-page":"448","article-title":"Batch normalization: Accelerating deep network training by reducing internal covariate shift","author":"ioffe","year":"2015","journal-title":"Proc Int Conf Mach Learn"},{"key":"ref68","first-page":"1929","article-title":"Dropout: A simple way to prevent neural networks from overfitting","volume":"15","author":"srivastava","year":"2014","journal-title":"J Mach Learn Res"},{"key":"ref69","author":"simonyan","year":"2013","journal-title":"Deep Inside Convolutional Networks Visualising Image Classification Models and Saliency Maps"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1016\/S1353-4858(16)30026-5"},{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1109\/65.283931"},{"key":"ref20","first-page":"12","article-title":"Selecting features for intrusion detection: A feature relevance analysis on KDD 99 intrusion detection datasets","author":"kayacik","year":"2005","journal-title":"Proc 3rd Annual Conf Privacy Security Trust"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1016\/j.future.2014.06.001"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1109\/TSMCC.2008.923876"},{"key":"ref24","doi-asserted-by":"crossref","first-page":"577","DOI":"10.1109\/TSMCB.2007.914695","article-title":"AdaBoost-based algorithm for network intrusion detection","volume":"38","author":"hu","year":"2008","journal-title":"IEEE Trans Syst Man Cybern B Cybern"},{"key":"ref23","first-page":"2878","article-title":"A hybrid wrapper-filter approach for Malware detection","volume":"9","author":"alazab","year":"2014","journal-title":"J Netw"},{"key":"ref26","first-page":"11","article-title":"Naive Bayesian networks in intrusion detection systems","author":"amor","year":"2003","journal-title":"Proc 23rd Workshop Probabilistic Graph Models Classification 14th Eur Conf Mach Learn (ECML) 7th Eur Conf Princ Pract Knowl Discovery Databases (PKDD)"},{"key":"ref25","first-page":"47","article-title":"Finding clusters of different sizes, shapes, and densities in noisy, high dimensional data","author":"ert\u00f6z","year":"2013","journal-title":"Proc SIAM Int Conf Data Mining"},{"key":"ref50","doi-asserted-by":"crossref","first-page":"220","DOI":"10.1007\/978-3-540-45248-5_13","article-title":"An analysis of the 1999 DARPA\/Lincoln Laboratory evaluation data for network anomaly detection","volume":"2820","author":"mahoney","year":"2003","journal-title":"Recent Advances in Intrusion Detection"},{"key":"ref51","doi-asserted-by":"publisher","DOI":"10.3233\/IDA-2004-8406"},{"key":"ref59","doi-asserted-by":"publisher","DOI":"10.5220\/0006639801080116"},{"key":"ref58","doi-asserted-by":"publisher","DOI":"10.1145\/1978672.1978676"},{"key":"ref57","doi-asserted-by":"publisher","DOI":"10.1109\/MilCIS.2015.7348942"},{"key":"ref56","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2011.12.012"},{"key":"ref55","doi-asserted-by":"publisher","DOI":"10.1109\/CISDA.2009.5356528"},{"key":"ref54","doi-asserted-by":"publisher","DOI":"10.1145\/382912.382923"},{"key":"ref53","article-title":"An assessment of the DARPA IDS evaluation dataset using snort","author":"brugger","year":"2005"},{"key":"ref52","first-page":"1","article-title":"Neural networks vs. decision trees for intrusion detection","author":"bouzida","year":"2006","journal-title":"Proc of IEEE\/IST Workshop on Monitoring Attack Detection and Mitigation (MonAM 2006)"},{"key":"ref10","doi-asserted-by":"crossref","first-page":"436","DOI":"10.1038\/nature14539","article-title":"Deep learning","volume":"521","author":"lecun","year":"2015","journal-title":"Nature"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2018.2836950"},{"key":"ref40","doi-asserted-by":"publisher","DOI":"10.1109\/TENCON.2017.8228190"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.3233\/JCS-980109"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1109\/SECPRI.1996.502675"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1109\/COMSNETS.2011.5716416"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1109\/COMSNETS.2012.6151337"},{"key":"ref16","author":"kozushko","year":"2003","journal-title":"Intrusion Detection Host-Based and Network-Based Intrusion Detection Systems"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1145\/382912.382914"},{"key":"ref18","article-title":"A review of KDD99 dataset usage in intrusion detection and machine learning between 2010 and 2015","volume":"4","author":"ozgur","year":"2016","journal-title":"PeerJ PrePrints"},{"key":"ref19","article-title":"PNrule: A new framework for learning classifier models in data mining","author":"agarwal","year":"2000"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1155\/2018\/1728303"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.18489\/sacj.v56i1.248"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1109\/TrustCom.2016.0275"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1109\/COMST.2018.2847722"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1504\/IJESDF.2018.093018"},{"key":"ref7","author":"vinayakumar","year":"2019","journal-title":"Vinayakumarr\/Intrusion-Detection V1 (Version V1)"},{"key":"ref49","first-page":"807","article-title":"Rectified linear units improve restricted boltzmann machines","author":"nair","year":"2010","journal-title":"Proc 27th Int Conf Mach Learn (ICML)"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1016\/S1389-1286(99)00112-7"},{"key":"ref46","doi-asserted-by":"publisher","DOI":"10.1017\/CBO9780511809071.021"},{"key":"ref45","doi-asserted-by":"crossref","DOI":"10.1007\/978-981-10-8476-8_6","article-title":"Scalable framework for cyber threat situational awareness based on domain name systems data analysis","volume":"44","author":"vinayakumar","year":"2018","journal-title":"Big Data in Engineering Applications"},{"key":"ref48","first-page":"1","article-title":"Rectifier nonlinearities improve neural network acoustic models","volume":"30","author":"maas","year":"2013","journal-title":"Proc ICML"},{"key":"ref47","first-page":"315","article-title":"Deep sparse rectifier neural networks","author":"glorot","year":"2011","journal-title":"Proc 14th Int Conf Artif Intell Statist"},{"key":"ref42","author":"kim","year":"2016","journal-title":"Lstm-based system-call language modeling and robust ensemble method for designing host-based intrusion detection systems"},{"key":"ref41","doi-asserted-by":"crossref","first-page":"29","DOI":"10.3390\/fi8030029","article-title":"Windows based data sets for evaluation of robustness of host based intrusion detection systems (IDS) to zero-day and stealth attacks","volume":"8","author":"haider","year":"2016","journal-title":"Future Internet"},{"key":"ref44","article-title":"Big data for cybersecurity: Vulnerability disclosure trends and dependencies","author":"tang","year":"0","journal-title":"IEEE Trans Big Data"},{"key":"ref43","doi-asserted-by":"publisher","DOI":"10.1109\/IREP.2013.6629368"}],"container-title":["IEEE Access"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/6287639\/8600701\/08681044.pdf?arnumber=8681044","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,1,27]],"date-time":"2022-01-27T00:36:23Z","timestamp":1643243783000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/8681044\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2019]]},"references-count":79,"URL":"https:\/\/doi.org\/10.1109\/access.2019.2895334","relation":{},"ISSN":["2169-3536"],"issn-type":[{"value":"2169-3536","type":"electronic"}],"subject":[],"published":{"date-parts":[[2019]]}}}