{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,11,7]],"date-time":"2025-11-07T13:15:18Z","timestamp":1762521318567,"version":"3.41.0"},"publisher-location":"New York, NY, USA","reference-count":12,"publisher":"ACM","license":[{"start":{"date-parts":[[2009,11,9]],"date-time":"2009-11-09T00:00:00Z","timestamp":1257724800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2009,11,9]]},"DOI":"10.1145\/1654988.1654990","type":"proceedings-article","created":{"date-parts":[[2009,11,17]],"date-time":"2009-11-17T13:30:15Z","timestamp":1258464615000},"page":"1-4","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":23,"title":["A framework for quantitative security analysis of machine learning"],"prefix":"10.1145","author":[{"given":"Pavel","family":"Laskov","sequence":"first","affiliation":[{"name":"Universit\u00e4t T\u00fcbingen, T\u00fcbingen, Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Marius","family":"Kloft","sequence":"additional","affiliation":[{"name":"Technische Universit\u00e4t Berlin, Berlin, Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2009,11,9]]},"reference":[{"doi-asserted-by":"publisher","key":"e_1_3_2_1_1_1","DOI":"10.1145\/1128817.1128824"},{"doi-asserted-by":"publisher","key":"e_1_3_2_1_2_1","DOI":"10.1145\/1014052.1014066"},{"doi-asserted-by":"publisher","key":"e_1_3_2_1_3_1","DOI":"10.1145\/1180405.1180414"},{"doi-asserted-by":"publisher","key":"e_1_3_2_1_4_1","DOI":"10.1137\/0222052"},{"key":"e_1_3_2_1_5_1","volume-title":"NIPS Workshop on Machine Learning in Adversarial Environments for Computer Security","author":"Kloft M.","year":"2007","unstructured":"M. Kloft and P. Laskov . A poisoning attack against online anomaly detection . In NIPS Workshop on Machine Learning in Adversarial Environments for Computer Security , 2007 . M. Kloft and P. Laskov. A poisoning attack against online anomaly detection. In NIPS Workshop on Machine Learning in Adversarial Environments for Computer Security, 2007."},{"key":"e_1_3_2_1_6_1","volume-title":"Conference on Email and Anti-Spam","author":"Lowd D.","year":"2005","unstructured":"D. Lowd and C. Meek . Good word attacks on statistical spam filters . In Conference on Email and Anti-Spam , 2005 . D. Lowd and C. Meek. Good word attacks on statistical spam filters. In Conference on Email and Anti-Spam, 2005."},{"key":"e_1_3_2_1_7_1","volume-title":"Proc. of the First Workshop on Tackling Computer Systems Problems with Machine Learning Techniques (SysML), Saint-Malo","author":"Nelson B.","year":"2006","unstructured":"B. Nelson and A. D. Joseph . Bounding an attack's complexity for a simple learning model . In Proc. of the First Workshop on Tackling Computer Systems Problems with Machine Learning Techniques (SysML), Saint-Malo , France , 2006 . B. Nelson and A. D. Joseph. Bounding an attack's complexity for a simple learning model. In Proc. of the First Workshop on Tackling Computer Systems Problems with Machine Learning Techniques (SysML), Saint-Malo, France, 2006."},{"doi-asserted-by":"publisher","key":"e_1_3_2_1_8_1","DOI":"10.1109\/SP.2006.26"},{"key":"e_1_3_2_1_9_1","author":"Rieck K.","year":"2008","unstructured":"K. Rieck and P. Laskov . Linear-time computation of similarity measures for sequential data. Journal of Machine Learning Research, 9(Jan):23--48 , 2008 . K. Rieck and P. Laskov. Linear-time computation of similarity measures for sequential data. Journal of Machine Learning Research, 9(Jan):23--48, 2008.","journal-title":"Journal of Machine Learning Research, 9(Jan):23--48"},{"doi-asserted-by":"publisher","key":"e_1_3_2_1_10_1","DOI":"10.1145\/1315245.1315312"},{"key":"e_1_3_2_1_11_1","volume-title":"Statistical Learning Theory","author":"Vapnik V.","year":"1998","unstructured":"V. Vapnik . Statistical Learning Theory . Wiley , New York , 1998 . V. Vapnik. Statistical Learning Theory. Wiley, New York, 1998."},{"key":"e_1_3_2_1_12_1","volume-title":"Limits of learning-based signature generation with adversaries","author":"Venkataraman S.","year":"2008","unstructured":"S. Venkataraman , A. Blum , and D. Song . Limits of learning-based signature generation with adversaries . In NDSS. The Internet Society , 2008 . S. Venkataraman, A. Blum, and D. Song. Limits of learning-based signature generation with adversaries. In NDSS. The Internet Society, 2008."}],"event":{"sponsor":["SIGSAC ACM Special Interest Group on Security, Audit, and Control"],"acronym":"CCS '09","name":"CCS '09: 16th ACM Conference on Computer and Communications Security 2009","location":"Chicago Illinois USA"},"container-title":["Proceedings of the 2nd ACM workshop on Security and artificial intelligence"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/1654988.1654990","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/1654988.1654990","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,18]],"date-time":"2025-06-18T12:41:00Z","timestamp":1750250460000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/1654988.1654990"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2009,11,9]]},"references-count":12,"alternative-id":["10.1145\/1654988.1654990","10.1145\/1654988"],"URL":"https:\/\/doi.org\/10.1145\/1654988.1654990","relation":{},"subject":[],"published":{"date-parts":[[2009,11,9]]},"assertion":[{"value":"2009-11-09","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}