{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,4,14]],"date-time":"2026-04-14T15:57:31Z","timestamp":1776182251155,"version":"3.50.1"},"reference-count":48,"publisher":"IEEE","license":[{"start":{"date-parts":[[2025,11,14]],"date-time":"2025-11-14T00:00:00Z","timestamp":1763078400000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2025,11,14]],"date-time":"2025-11-14T00:00:00Z","timestamp":1763078400000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"DOI":"10.13039\/100013101","name":"National Research Council","doi-asserted-by":"publisher","id":[{"id":"10.13039\/100013101","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2025,11,14]]},"DOI":"10.1109\/trustcom66490.2025.00125","type":"proceedings-article","created":{"date-parts":[[2026,2,2]],"date-time":"2026-02-02T20:42:41Z","timestamp":1770064961000},"page":"1080-1091","source":"Crossref","is-referenced-by-count":1,"title":["Enhancing Adversarial Robustness of IoT Intrusion Detection via SHAP-Based Attribution Fingerprinting"],"prefix":"10.1109","author":[{"given":"Dilli Prasad","family":"Sharma","sequence":"first","affiliation":[{"name":"York University,School of Information Technology,Toronto,Canada"}]},{"given":"Liang","family":"Xue","sequence":"additional","affiliation":[{"name":"York University,School of Information Technology,Toronto,Canada"}]},{"given":"Xiaowei","family":"Sun","sequence":"additional","affiliation":[{"name":"York University,School of Information Technology,Toronto,Canada"}]},{"given":"Xiaodong","family":"Lin","sequence":"additional","affiliation":[{"name":"University of Guelph,School of Computer Science,Canada"}]},{"given":"Pulei","family":"Xiong","sequence":"additional","affiliation":[{"name":"National Research Council of Canada,Ottawa,Canada"}]}],"member":"263","reference":[{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1109\/COMST.2015.2444095"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1016\/j.eswa.2021.115782"},{"key":"ref3","article-title":"Adversarial Robustness Toolbox","year":"2025"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1145\/3675392"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-86523-8_26"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1145\/3530812"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1109\/IJCNN48605.2020.9207637"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1109\/JIOT.2025.3555202"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1145\/3626203.3670522"},{"key":"ref10","first-page":"249","article-title":"Understanding the Difficulty of Training Deep Feedforward Neural Networks","volume-title":"Proceedings of the Thirteenth International Conference on Artificial Intelligence and Statistics","author":"Glorot"},{"issue":"2","key":"ref11","volume-title":"Deep Learning","volume":"1","author":"Goodfellow","year":"2016"},{"key":"ref12","article-title":"Explaining and Harnessing Adversarial Examples","author":"Goodfellow","year":"2014"},{"key":"ref13","article-title":"DeepSafe: A Data-driven Approach for Checking Adversarial Robustness in Neural Networks","author":"Gopinath","year":"2017"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.32657\/10356\/143316"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2024.3402446"},{"key":"ref16","first-page":"364","article-title":"LEMNA:Explaining Deep Learning based Security Applications","volume-title":"Proceedings of the 2018 ACM SIGSAC Conference on Computer and Communications Security","author":"Guo"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1109\/JSAC.2021.3087242"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1016\/j.patrec.2024.12.009"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2019.2924045"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1109\/COMST.2022.3233793"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1109\/WCNC61545.2025.10978796"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1126\/science.1127647"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1016\/j.future.2022.02.019"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1145\/3719292"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-63387-9_5"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v39i5.32485"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2017.56"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.3321\/j.issn:0529-6579.2007.z1.029"},{"key":"ref29","article-title":"Towards Deep Learning Models Resistant to Adversarial Attacks","author":"Madry","year":"2017"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2021.3073408"},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.282"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.3390\/s23135941"},{"key":"ref33","article-title":"Adversarial Robustness Toolbox v1. 0.0","author":"Nicolae","year":"2018"},{"key":"ref34","doi-asserted-by":"publisher","DOI":"10.1109\/SP54263.2024.00021"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1145\/3600160.3605086"},{"key":"ref36","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2016.41"},{"key":"ref37","doi-asserted-by":"publisher","DOI":"10.1109\/JIOT.2020.3048038"},{"key":"ref38","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2022.102783"},{"key":"ref39","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/N16-3020"},{"key":"ref40","doi-asserted-by":"publisher","DOI":"10.1111\/j.1541-0420.2005.00389.x"},{"key":"ref41","first-page":"3145","article-title":"Learning Important Features Through Propagating Activation Differences","volume-title":"International conference on machine learning","author":"Shrikumar"},{"key":"ref42","doi-asserted-by":"publisher","DOI":"10.1145\/3600160.3605162"},{"key":"ref43","article-title":"PixelDefend: Leveraging generative models to understand and defend against adversarial examples","author":"Song","year":"2017"},{"key":"ref44","article-title":"Intriguing Properties of Neural Networks","author":"Szegedy","year":"2013"},{"key":"ref45","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2022.3148990"},{"key":"ref46","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2023.103141"},{"key":"ref47","doi-asserted-by":"publisher","DOI":"10.1109\/TNET.2021.3137084"},{"key":"ref48","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2025.3560486"}],"event":{"name":"2025 IEEE 24th International Conference on Trust, Security and Privacy in Computing and Communications (TrustCom)","location":"Guiyang, China","start":{"date-parts":[[2025,11,14]]},"end":{"date-parts":[[2025,11,17]]}},"container-title":["2025 IEEE 24th International Conference on Trust, Security and Privacy in Computing and Communications (TrustCom)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/11354467\/11354567\/11354855.pdf?arnumber=11354855","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,2,3]],"date-time":"2026-02-03T05:58:36Z","timestamp":1770098316000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/11354855\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,11,14]]},"references-count":48,"URL":"https:\/\/doi.org\/10.1109\/trustcom66490.2025.00125","relation":{},"subject":[],"published":{"date-parts":[[2025,11,14]]}}}