{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,3,31]],"date-time":"2026-03-31T14:23:48Z","timestamp":1774967028794,"version":"3.50.1"},"reference-count":33,"publisher":"IEEE","license":[{"start":{"date-parts":[[2023,7,9]],"date-time":"2023-07-09T00:00:00Z","timestamp":1688860800000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2023,7,9]],"date-time":"2023-07-09T00:00:00Z","timestamp":1688860800000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"DOI":"10.13039\/501100012166","name":"National Key Research and Development Program of China","doi-asserted-by":"publisher","id":[{"id":"10.13039\/501100012166","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2023,7,9]]},"DOI":"10.1109\/dac56929.2023.10247858","type":"proceedings-article","created":{"date-parts":[[2023,9,15]],"date-time":"2023-09-15T17:31:31Z","timestamp":1694799091000},"page":"1-6","source":"Crossref","is-referenced-by-count":3,"title":["MPass: Bypassing Learning-based Static Malware Detectors"],"prefix":"10.1109","author":[{"given":"Jialai","family":"Wang","sequence":"first","affiliation":[{"name":"Tsinghua University"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Wenjie","family":"Qu","sequence":"additional","affiliation":[{"name":"Huazhong University of Science and Technology"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Yi","family":"Rong","sequence":"additional","affiliation":[{"name":"Tsinghua University"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Han","family":"Qiu","sequence":"additional","affiliation":[{"name":"Tsinghua University"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Qi","family":"Li","sequence":"additional","affiliation":[{"name":"Tsinghua University"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Zongpeng","family":"Li","sequence":"additional","affiliation":[{"name":"Tsinghua University"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Chao","family":"Zhang","sequence":"additional","affiliation":[{"name":"Tsinghua University"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-00470-5_23"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1145\/3374217"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1145\/3488932.3497768"},{"key":"ref14","article-title":"Binary black-box evasion attacks against deep learning-based static malware detectors with adversarial byte-level language model","author":"ebrahimi","year":"2020","journal-title":"CoRR"},{"key":"ref31","article-title":"Virusshare","author":"roberts","year":"2021"},{"key":"ref30","article-title":"Virustotal","author":"sood","year":"2021"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.49"},{"key":"ref33","article-title":"Machine learning static evasion competition","author":"anderson","year":"2019"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1145\/3316781.3323470"},{"key":"ref32","article-title":"Non-negative networks against adversarial attacks","author":"fleshman","year":"2018"},{"key":"ref2","article-title":"EMBER: an open dataset for training static PE malware machine learning models","author":"anderson","year":"2018","journal-title":"CoRR"},{"key":"ref1","article-title":"Malware detection by eating a whole EXE","author":"raff","year":"2018","journal-title":"AAAI Workshop"},{"key":"ref17","article-title":"Query-efficient hard-label black-box attack: An optimization-based approach","author":"cheng","year":"2019","journal-title":"ICLRE"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2021.3082330"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1109\/SP40000.2020.00073"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v33i01.3301742"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2020.24310"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1145\/3427228.3427230"},{"key":"ref26","article-title":"A unified approach to interpreting model predictions","author":"lundberg","year":"2017","journal-title":"NIPS"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1109\/IJCNN48605.2020.9207168"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2016.23115"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v31i1.10804"},{"key":"ref21","article-title":"Evading machine learning malware detection","author":"anderson","year":"2017","journal-title":"Black Hat"},{"key":"ref28","article-title":"Ensemble adversarial training: Attacks and defenses","author":"tram\u00e8r","year":"2018","journal-title":"ICLRE"},{"key":"ref27","article-title":"Delving into transferable adversarial examples and black-box attacks","author":"liu","year":"2017","journal-title":"ICLRE"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.1109\/MILCOM.2016.7795300"},{"key":"ref8","article-title":"Towards deep learning models resistant to adversarial attacks","author":"madry","year":"2018","journal-title":"ICLRE"},{"key":"ref7","article-title":"Intriguing properties of neural networks","author":"szegedy","year":"2014","journal-title":"ICLRE"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1109\/DAC18074.2021.9586275"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1109\/DAC18074.2021.9586330"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v35i11.17131"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1186\/s13673-018-0125-x"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1109\/DAC18074.2021.9586288"}],"event":{"name":"2023 60th ACM\/IEEE Design Automation Conference (DAC)","location":"San Francisco, CA, USA","start":{"date-parts":[[2023,7,9]]},"end":{"date-parts":[[2023,7,13]]}},"container-title":["2023 60th ACM\/IEEE Design Automation Conference (DAC)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/10247654\/10247655\/10247858.pdf?arnumber=10247858","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2023,10,2]],"date-time":"2023-10-02T17:41:18Z","timestamp":1696268478000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/10247858\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2023,7,9]]},"references-count":33,"URL":"https:\/\/doi.org\/10.1109\/dac56929.2023.10247858","relation":{},"subject":[],"published":{"date-parts":[[2023,7,9]]}}}