{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,2,25]],"date-time":"2026-02-25T15:15:31Z","timestamp":1772032531754,"version":"3.50.1"},"publisher-location":"New York, NY, USA","reference-count":32,"publisher":"ACM","license":[{"start":{"date-parts":[[2009,11,9]],"date-time":"2009-11-09T00:00:00Z","timestamp":1257724800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2009,11,9]]},"DOI":"10.1145\/1654988.1655002","type":"proceedings-article","created":{"date-parts":[[2009,11,17]],"date-time":"2009-11-17T13:30:15Z","timestamp":1258464615000},"page":"47-54","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":55,"title":["Active learning for network intrusion detection"],"prefix":"10.1145","author":[{"given":"Nico","family":"G\u00f6rnitz","sequence":"first","affiliation":[{"name":"Technische Universit\u00e4t Berlin, Berlin, Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Marius","family":"Kloft","sequence":"additional","affiliation":[{"name":"Technische Universit\u00e4t Berlin, Berlin, Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Konrad","family":"Rieck","sequence":"additional","affiliation":[{"name":"Technische Universit\u00e4t Berlin, Berlin, Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Ulf","family":"Brefeld","sequence":"additional","affiliation":[{"name":"Technische Universit\u00e4t Berlin, Berlin, Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2009,11,9]]},"reference":[{"key":"e_1_3_2_1_1_1","doi-asserted-by":"publisher","DOI":"10.5555\/1009380.1009668"},{"key":"e_1_3_2_1_2_1","volume-title":"Proceedings of the International Workshop on AI and Statistics","author":"Chapelle O.","year":"2005","unstructured":"O. Chapelle and A. Zien . Semi-supervised classification by low density separation . In Proceedings of the International Workshop on AI and Statistics , 2005 . O. Chapelle and A. Zien. Semi-supervised classification by low density separation. In Proceedings of the International Workshop on AI and Statistics, 2005."},{"key":"e_1_3_2_1_3_1","doi-asserted-by":"publisher","DOI":"10.1126\/science.267.5199.843"},{"key":"e_1_3_2_1_4_1","volume-title":"Proceedings of USENIX Security Symposium","author":"Fogla P.","year":"2006","unstructured":"P. Fogla , M. Sharif , R. Perdisci , O. Kolesnikov , and W. Lee . Polymorphic blending attacks . In Proceedings of USENIX Security Symposium , 2006 . P. Fogla, M. Sharif, R. Perdisci, O. Kolesnikov, and W. Lee. Polymorphic blending attacks. In Proceedings of USENIX Security Symposium, 2006."},{"key":"e_1_3_2_1_5_1","volume-title":"Proceedings of the International Joint Conference on Neural Networks","author":"Hoi C.-H.","year":"2003","unstructured":"C.-H. Hoi , C.-H. Chan , K. Huang , M. Lyu , and I. King . Support vector machines for class representation and discrimination . In Proceedings of the International Joint Conference on Neural Networks , 2003 . C.-H. Hoi, C.-H. Chan, K. Huang, M. Lyu, and I. King. Support vector machines for class representation and discrimination. In Proceedings of the International Joint Conference on Neural Networks, 2003."},{"key":"e_1_3_2_1_6_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.comnet.2006.09.016"},{"key":"e_1_3_2_1_7_1","volume-title":"NIPS Workshop on Machine Learning in Adversarial Environments for Computer Security","author":"Kloft M.","year":"2007","unstructured":"M. Kloft and P. Laskov . A poisoning attack against online anomaly detection . In NIPS Workshop on Machine Learning in Adversarial Environments for Computer Security , 2007 . M. Kloft and P. Laskov. A poisoning attack against online anomaly detection. In NIPS Workshop on Machine Learning in Adversarial Environments for Computer Security, 2007."},{"key":"e_1_3_2_1_8_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.comnet.2005.01.009"},{"key":"e_1_3_2_1_9_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICPR.2006.799"},{"key":"e_1_3_2_1_10_1","doi-asserted-by":"publisher","DOI":"10.1145\/952532.952601"},{"key":"e_1_3_2_1_12_1","volume-title":"Syngress","author":"Maynor K.","year":"2007","unstructured":"K. Maynor , K. Mookhey , J. F. R. Cervini , and K. Beaver . Metasploit toolkit . In Syngress , 2007 . K. Maynor, K. Mookhey, J. F. R. Cervini, and K. Beaver. Metasploit toolkit. In Syngress, 2007."},{"key":"e_1_3_2_1_13_1","volume-title":"Microsoft security intelligence report: January to","year":"2008","unstructured":"Microsoft. Microsoft security intelligence report: January to June 2008 . Microsoft Corporation , 2008. Microsoft. Microsoft security intelligence report: January to June 2008. Microsoft Corporation, 2008."},{"key":"e_1_3_2_1_14_1","doi-asserted-by":"publisher","DOI":"10.1145\/637201.637244"},{"key":"e_1_3_2_1_15_1","volume-title":"Proc. Advances in Neural Information Processing Systems","author":"Pelleg D.","year":"2004","unstructured":"D. Pelleg and A. Moore . Active learning for anomaly and rare-category detection . Proc. Advances in Neural Information Processing Systems , 2004 . D. Pelleg and A. Moore. Active learning for anomaly and rare-category detection. Proc. Advances in Neural Information Processing Systems, 2004."},{"key":"e_1_3_2_1_16_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.comnet.2008.11.011"},{"key":"e_1_3_2_1_17_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2006.26"},{"key":"e_1_3_2_1_18_1","volume-title":"Advances in kernel methods: support vector learning","author":"Platt J. C.","year":"1999","unstructured":"J. C. Platt . Fast training of support vector machines using sequential minimal optimization . In Advances in kernel methods: support vector learning , 1999 . J. C. Platt. Fast training of support vector machines using sequential minimal optimization. In Advances in kernel methods: support vector learning, 1999."},{"key":"e_1_3_2_1_19_1","doi-asserted-by":"publisher","DOI":"10.1007\/11790754_5"},{"key":"e_1_3_2_1_20_1","doi-asserted-by":"publisher","DOI":"10.1007\/s11416-006-0030-0"},{"key":"e_1_3_2_1_21_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-540-89054-6_5"},{"key":"e_1_3_2_1_22_1","doi-asserted-by":"publisher","DOI":"10.1145\/361219.361220"},{"key":"e_1_3_2_1_23_1","doi-asserted-by":"publisher","DOI":"10.1162\/089976601750264965"},{"key":"e_1_3_2_1_24_1","doi-asserted-by":"publisher","DOI":"10.1109\/MSP.2004.59"},{"key":"e_1_3_2_1_25_1","doi-asserted-by":"publisher","DOI":"10.1145\/1315245.1315312"},{"key":"e_1_3_2_1_26_1","volume-title":"Microsoft Research","author":"Stokes J. W.","year":"2008","unstructured":"J. W. Stokes and J. C. Platt . Aladin: Active learning of anomalies to detect intrusion. Technical report , Microsoft Research , 2008 . J. W. Stokes and J. C. Platt. Aladin: Active learning of anomalies to detect intrusion. Technical report, Microsoft Research, 2008."},{"key":"e_1_3_2_1_27_1","volume-title":"Symantex report on the underground economy: July 07 to June 08","year":"2008","unstructured":"Symantec. Symantex report on the underground economy: July 07 to June 08 . Symantec Corporation , 2008 . Symantec. Symantex report on the underground economy: July 07 to June 08. Symantec Corporation, 2008."},{"key":"e_1_3_2_1_28_1","doi-asserted-by":"publisher","DOI":"10.1023\/B:MACH.0000008084.60811.49"},{"key":"e_1_3_2_1_30_1","doi-asserted-by":"publisher","DOI":"10.1007\/11563983_21"},{"key":"e_1_3_2_1_31_1","doi-asserted-by":"publisher","DOI":"10.1007\/11856214_12"},{"key":"e_1_3_2_1_32_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-540-30143-1_11"},{"key":"e_1_3_2_1_33_1","doi-asserted-by":"publisher","DOI":"10.1021\/ci025620t"},{"key":"e_1_3_2_1_34_1","doi-asserted-by":"publisher","DOI":"10.1145\/1273496.1273645"}],"event":{"name":"CCS '09: 16th ACM Conference on Computer and Communications Security 2009","location":"Chicago Illinois USA","acronym":"CCS '09","sponsor":["SIGSAC ACM Special Interest Group on Security, Audit, and Control"]},"container-title":["Proceedings of the 2nd ACM workshop on Security and artificial intelligence"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/1654988.1655002","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/1654988.1655002","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,18]],"date-time":"2025-06-18T12:41:00Z","timestamp":1750250460000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/1654988.1655002"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2009,11,9]]},"references-count":32,"alternative-id":["10.1145\/1654988.1655002","10.1145\/1654988"],"URL":"https:\/\/doi.org\/10.1145\/1654988.1655002","relation":{},"subject":[],"published":{"date-parts":[[2009,11,9]]},"assertion":[{"value":"2009-11-09","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}