{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,2,19]],"date-time":"2026-02-19T21:30:55Z","timestamp":1771536655076,"version":"3.50.1"},"reference-count":70,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","license":[{"start":{"date-parts":[[2026,1,1]],"date-time":"2026-01-01T00:00:00Z","timestamp":1767225600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2026,1,1]],"date-time":"2026-01-01T00:00:00Z","timestamp":1767225600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2026,1,1]],"date-time":"2026-01-01T00:00:00Z","timestamp":1767225600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"DOI":"10.13039\/501100012166","name":"National Key Research and Development Program of China","doi-asserted-by":"publisher","award":["2023YFB2703804"],"award-info":[{"award-number":["2023YFB2703804"]}],"id":[{"id":"10.13039\/501100012166","id-type":"DOI","asserted-by":"publisher"}]},{"name":"Open Research Fund of the State Key Laboratory of Internet Architecture, Tsinghua University","award":["HLW2025ZD13"],"award-info":[{"award-number":["HLW2025ZD13"]}]},{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["5244100304"],"award-info":[{"award-number":["5244100304"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["62376210"],"award-info":[{"award-number":["62376210"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["62161160337"],"award-info":[{"award-number":["62161160337"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["62132011"],"award-info":[{"award-number":["62132011"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["U21B2018"],"award-info":[{"award-number":["U21B2018"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["U20A20177"],"award-info":[{"award-number":["U20A20177"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["U20B2049"],"award-info":[{"award-number":["U20B2049"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["62006181"],"award-info":[{"award-number":["62006181"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["52441702"],"award-info":[{"award-number":["52441702"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"name":"Shaanxi Province Key Industry Innovation Program","award":["2023-ZDLGY-38"],"award-info":[{"award-number":["2023-ZDLGY-38"]}]},{"name":"Shaanxi Province Key Industry Innovation Program","award":["2021ZDLGY01-02"],"award-info":[{"award-number":["2021ZDLGY01-02"]}]},{"DOI":"10.13039\/501100002858","name":"China Postdoctoral Science Foundation","doi-asserted-by":"publisher","award":["2022M722530"],"award-info":[{"award-number":["2022M722530"]}],"id":[{"id":"10.13039\/501100002858","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100002858","name":"China Postdoctoral Science Foundation","doi-asserted-by":"publisher","award":["2023T160512"],"award-info":[{"award-number":["2023T160512"]}],"id":[{"id":"10.13039\/501100002858","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100012226","name":"Fundamental Research Funds for the Central Universities","doi-asserted-by":"publisher","award":["xtr052023004"],"award-info":[{"award-number":["xtr052023004"]}],"id":[{"id":"10.13039\/501100012226","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100012226","name":"Fundamental Research Funds for the Central Universities","doi-asserted-by":"publisher","award":["xtr022019002"],"award-info":[{"award-number":["xtr022019002"]}],"id":[{"id":"10.13039\/501100012226","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Trans.Inform.Forensic Secur."],"published-print":{"date-parts":[[2026]]},"DOI":"10.1109\/tifs.2026.3657117","type":"journal-article","created":{"date-parts":[[2026,1,23]],"date-time":"2026-01-23T20:57:16Z","timestamp":1769201836000},"page":"2090-2101","source":"Crossref","is-referenced-by-count":0,"title":["Cross-Region Feature Reformer With Semantic Preservation for Adversarial Malware Detection"],"prefix":"10.1109","volume":"21","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-1073-7810","authenticated-orcid":false,"given":"Qian","family":"Li","sequence":"first","affiliation":[{"name":"Ministry of Education Key Laboratory for Intelligent Networks and Network Security, School of Cyber Science and Engineering, Xi&#x2019;an Jiaotong University, Xi&#x2019;an, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-6979-3537","authenticated-orcid":false,"given":"Di","family":"Wu","sequence":"additional","affiliation":[{"name":"State Key Laboratory of Internet Architecture, Tsinghua University, Beijing, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-6265-7345","authenticated-orcid":false,"given":"Chenhao","family":"Lin","sequence":"additional","affiliation":[{"name":"School of Computer Science and Technology, Xi&#x2019;an Jiaotong University, Xi&#x2019;an, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-0327-6729","authenticated-orcid":false,"given":"Shuai","family":"Liu","sequence":"additional","affiliation":[{"name":"School of Software, Xi&#x2019;an Jiaotong University, Xi&#x2019;an, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-0547-315X","authenticated-orcid":false,"given":"Cong","family":"Wang","sequence":"additional","affiliation":[{"name":"Department of Computer Science, City University of Hong Kong, Pokfulam, Hong Kong"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-6959-0569","authenticated-orcid":false,"given":"Chao","family":"Shen","sequence":"additional","affiliation":[{"name":"School of Computer Science and Technology, Xi&#x2019;an Jiaotong University, Xi&#x2019;an, China"}]}],"member":"263","reference":[{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1109\/TII.2024.3363016"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1145\/2556464.2556467"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1145\/3460319.3464839"},{"key":"ref4","volume-title":"Google Play Store: Number of Apps 2023","year":"2023"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2020.3021924"},{"key":"ref6","first-page":"51","article-title":"Automated bug reproduction from user reviews for Android applications","volume-title":"Proc. IEEE\/ACM 42nd Int. Conf. Softw. Eng., Softw. Eng. Pract. (ICSE-SEIP)","author":"Li"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2025.3550049"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1145\/3597503.3639122"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1016\/j.future.2019.07.070"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1145\/3417978"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1145\/3702990"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2025.3531230"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2020.3003571"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1109\/tnse.2021.3051354"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2014.20"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-66399-9_4"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2025.3553806"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1109\/EuroSP.2016.36"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2024.3519524"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2025.3550079"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2025.3555552"},{"key":"ref22","first-page":"7393","article-title":"A wolf in sheep\u2019s clothing: Practical black-box adversarial attacks for evading learning-based windows malware detection in the wild","volume-title":"Proc. 33rd USENIX Secur. Symp. (USENIX Secur.)","author":"Ling"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2023.3333567"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2023.3345640"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2024.3468891"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1016\/j.neucom.2018.04.027"},{"key":"ref27","first-page":"5334","article-title":"Reinforcing adversarial robustness using model confidence induced by adversarial training","volume-title":"Proc. 35th Int. Conf. Mach. Learn.","author":"Wu"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.1016\/j.jisa.2024.103800"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.1109\/tifs.2025.3581021"},{"key":"ref30","first-page":"274","article-title":"Obfuscated gradients give a false sense of security: Circumventing defenses to adversarial examples","volume-title":"Proc. 35th Int. Conf. Mach. Learn.","author":"Athalye"},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2025.3577966"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1109\/TAI.2024.3497912"},{"key":"ref33","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52733.2024.02336"},{"key":"ref34","article-title":"Logit pairing methods can fool gradient-based attacks","author":"Mosbach","year":"2018","journal-title":"arXiv:1810.12042"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1016\/j.ins.2021.11.007"},{"key":"ref36","doi-asserted-by":"publisher","DOI":"10.1016\/j.neucom.2020.07.126"},{"key":"ref37","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2024.3402153"},{"key":"ref38","article-title":"Towards deep learning models resistant to adversarial attacks","volume-title":"Proc. 6th Int. Conf. Learn. Represent.","author":"Madry"},{"key":"ref39","article-title":"Adversarial machine learning at scale","volume-title":"Proc. 5th Int. Conf. Learn. Represent.","author":"Kurakin"},{"key":"ref40","article-title":"Certifying some distributional robustness with principled adversarial training","author":"Sinha","year":"2017","journal-title":"arXiv:1710.10571"},{"key":"ref41","article-title":"Explaining and harnessing adversarial examples","volume-title":"Proc. 3rd Int. Conf. Learn. Represent.","author":"Goodfellow"},{"key":"ref42","first-page":"36246","article-title":"Better diffusion models further improve adversarial training","volume-title":"Proc. 40th Int. Conf. Mach. Learn.","author":"Wang"},{"key":"ref43","doi-asserted-by":"publisher","DOI":"10.1109\/TII.2022.3216818"},{"key":"ref44","doi-asserted-by":"publisher","DOI":"10.1109\/SANER56733.2023.00029"},{"key":"ref45","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2016.41"},{"key":"ref46","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2024.3409945"},{"key":"ref47","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2023.103644"},{"key":"ref48","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v38i8.28730"},{"key":"ref49","doi-asserted-by":"publisher","DOI":"10.1109\/TCYB.2024.3380437"},{"key":"ref50","doi-asserted-by":"publisher","DOI":"10.48550\/arXiv.1503.02531"},{"key":"ref51","article-title":"Dimensionality reduction as a defense against evasion attacks on machine learning classifiers","author":"Bhagoji","year":"2017","journal-title":"arXiv:1704.02654"},{"key":"ref52","doi-asserted-by":"publisher","DOI":"10.1145\/3134600.3134606"},{"key":"ref53","doi-asserted-by":"publisher","DOI":"10.1145\/3133956.3134057"},{"key":"ref54","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.49"},{"key":"ref55","article-title":"Guided diffusion model for adversarial purification","author":"Wang","year":"2022","journal-title":"arXiv:2205.14969"},{"key":"ref56","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2025.3566708"},{"key":"ref57","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2014.23247"},{"key":"ref58","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2018.2866319"},{"key":"ref59","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2015.23145"},{"key":"ref60","doi-asserted-by":"publisher","DOI":"10.1016\/j.infsof.2017.04.001"},{"key":"ref61","doi-asserted-by":"publisher","DOI":"10.1145\/3134600.3134636"},{"key":"ref62","doi-asserted-by":"publisher","DOI":"10.1145\/3162625"},{"key":"ref63","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2018.2866319"},{"key":"ref64","volume-title":"Machine Learning: A Probabilistic Perspective","author":"Murphy","year":"2012"},{"key":"ref65","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2023.3326368"},{"key":"ref66","first-page":"543","article-title":"A method for solving the convex programming problem with convergence rate o (1\/k2)","volume":"269","author":"Nesterov","year":"1983","journal-title":"Dokl. Akad. Nauk SSSR"},{"key":"ref67","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2012.16"},{"key":"ref68","volume-title":"Virusshare","year":"2016"},{"key":"ref69","volume-title":"Virustotal","year":"2016"},{"key":"ref70","volume-title":"Quick Heal Annual Threat Report","year":"2015"}],"container-title":["IEEE Transactions on Information Forensics and Security"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/10206\/11313711\/11361198.pdf?arnumber=11361198","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,2,19]],"date-time":"2026-02-19T20:56:47Z","timestamp":1771534607000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/11361198\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2026]]},"references-count":70,"URL":"https:\/\/doi.org\/10.1109\/tifs.2026.3657117","relation":{},"ISSN":["1556-6013","1556-6021"],"issn-type":[{"value":"1556-6013","type":"print"},{"value":"1556-6021","type":"electronic"}],"subject":[],"published":{"date-parts":[[2026]]}}}