{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,5]],"date-time":"2026-06-05T04:02:53Z","timestamp":1780632173279,"version":"3.54.1"},"publisher-location":"New York, NY, USA","reference-count":33,"publisher":"ACM","license":[{"start":{"date-parts":[[2014,11,7]],"date-time":"2014-11-07T00:00:00Z","timestamp":1415318400000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2014,11,7]]},"DOI":"10.1145\/2666652.2666666","type":"proceedings-article","created":{"date-parts":[[2014,11,7]],"date-time":"2014-11-07T17:10:54Z","timestamp":1415380254000},"page":"27-36","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":73,"title":["Poisoning behavioral malware clustering"],"prefix":"10.1145","author":[{"given":"Battista","family":"Biggio","sequence":"first","affiliation":[{"name":"University of Cagliari, Cagliari, Italy"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Konrad","family":"Rieck","sequence":"additional","affiliation":[{"name":"University of Goettingen, Goettingen, Germany"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Davide","family":"Ariu","sequence":"additional","affiliation":[{"name":"University of Cagliari, Cagliari, Italy"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Christian","family":"Wressnegger","sequence":"additional","affiliation":[{"name":"University of Goettingen, Goettingen, Germany"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Igino","family":"Corona","sequence":"additional","affiliation":[{"name":"University of Cagliari, Cagliari, Italy"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Giorgio","family":"Giacinto","sequence":"additional","affiliation":[{"name":"University of Cagliari, Cagliari, Italy"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Fabio","family":"Roli","sequence":"additional","affiliation":[{"name":"University of Cagliari, Cagliari, Italy"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"320","published-online":{"date-parts":[[2014,11,7]]},"reference":[{"key":"e_1_3_2_1_1_1","doi-asserted-by":"publisher","DOI":"10.5555\/1776434.1776449"},{"key":"e_1_3_2_1_2_1","doi-asserted-by":"publisher","DOI":"10.1145\/1128817.1128824"},{"key":"e_1_3_2_1_3_1","volume-title":"Proc. of Network and Distributed System Security Symposium (NDSS)","author":"Bayer U.","year":"2009","unstructured":"U. Bayer , P. Comparetti , C. Hlauschek , C. Kruegel , and E. Kirda . Scalable, behavior-based malware clustering . In Proc. of Network and Distributed System Security Symposium (NDSS) , 2009 . U. Bayer, P. Comparetti, C. Hlauschek, C. Kruegel, and E. Kirda. Scalable, behavior-based malware clustering. In Proc. of Network and Distributed System Security Symposium (NDSS), 2009."},{"key":"e_1_3_2_1_4_1","volume-title":"Structural, Syntactic, and Statistical Pattern Recognition","author":"Biggio B.","year":"2014","unstructured":"B. Biggio , S. R. Bul\u00f3 , I. Pillai , M. Mura , E. Z. Mequanint , M. Pelillo , and F. Roli . Poisoning complete linkage hierarchical clustering . In Structural, Syntactic, and Statistical Pattern Recognition , 2014 , In press . B. Biggio, S. R. Bul\u00f3, I. Pillai, M. Mura, E. Z. Mequanint, M. Pelillo, and F. Roli. Poisoning complete linkage hierarchical clustering. In Structural, Syntactic, and Statistical Pattern Recognition, 2014, In press."},{"key":"e_1_3_2_1_5_1","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"crossref","first-page":"387","DOI":"10.1007\/978-3-642-40994-3_25","volume-title":"H. Blockeel, K. Kersting, S. Nijssen, and F. \u017delezn\u00fd","author":"Biggio B.","year":"2013","unstructured":"B. Biggio , I. Corona , D. Maiorca , B. Nelson , N. \u0160rndi\u0107 , P. Laskov , G. Giacinto , and F. Roli . Evasion attacks against machine learning at test time . In H. Blockeel, K. Kersting, S. Nijssen, and F. \u017delezn\u00fd , editors, European Conference on Machine Learning and Principles and Practice of Knowledge Discovery in Databases (ECML PKDD), Part III, volume 8190 of Lecture Notes in Computer Science , pages 387 -- 402 . Springer Berlin Heidelberg , 2013 . B. Biggio, I. Corona, D. Maiorca, B. Nelson, N. \u0160rndi\u0107, P. Laskov, G. Giacinto, and F. Roli. Evasion attacks against machine learning at test time. In H. Blockeel, K. Kersting, S. Nijssen, and F. \u017delezn\u00fd, editors, European Conference on Machine Learning and Principles and Practice of Knowledge Discovery in Databases (ECML PKDD), Part III, volume 8190 of Lecture Notes in Computer Science, pages 387--402. Springer Berlin Heidelberg, 2013."},{"key":"e_1_3_2_1_6_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-02300-7_4"},{"key":"e_1_3_2_1_7_1","doi-asserted-by":"publisher","DOI":"10.1109\/TKDE.2013.57"},{"key":"e_1_3_2_1_8_1","volume-title":"Poisoning attacks against support vector machines","author":"Biggio B.","year":"2012","unstructured":"B. Biggio , B. Nelson , and P. Laskov . Poisoning attacks against support vector machines . In J. Langford and J. Pineau, editors, 29th Int'l Conf. on Machine Learning. Omnipress , 2012 . B. Biggio, B. Nelson, and P. Laskov. Poisoning attacks against support vector machines. In J. Langford and J. Pineau, editors, 29th Int'l Conf. on Machine Learning. Omnipress, 2012."},{"key":"e_1_3_2_1_9_1","doi-asserted-by":"publisher","DOI":"10.1145\/2517312.2517321"},{"key":"e_1_3_2_1_10_1","doi-asserted-by":"publisher","DOI":"10.5555\/2503308.2503326"},{"key":"e_1_3_2_1_11_1","volume-title":"The fraunhofer aisec malware analysis laboratory. Technical report","author":"Brunner M.","year":"2010","unstructured":"M. Brunner , M. Epah , H. Hofinger , C. Roblee , P. Schoo , and S. Todt . The fraunhofer aisec malware analysis laboratory. Technical report , Fraunhofer Institute AISEC , 2010 . M. Brunner, M. Epah, H. Hofinger, C. Roblee, P. Schoo, and S. Todt. The fraunhofer aisec malware analysis laboratory. Technical report, Fraunhofer Institute AISEC, 2010."},{"key":"e_1_3_2_1_12_1","doi-asserted-by":"publisher","DOI":"10.5555\/1267336.1267353"},{"key":"e_1_3_2_1_13_1","volume-title":"Proc. of USENIX Security Symposium","author":"Gu G.","year":"2008","unstructured":"G. Gu , R. Perdisci , J. Zhang , and W. Lee . BotMiner: Clustering Analysis of Network Traffic for Protocol- and Structure-Independent Botnet Detection . In Proc. of USENIX Security Symposium , 2008 . G. Gu, R. Perdisci, J. Zhang, and W. Lee. BotMiner: Clustering Analysis of Network Traffic for Protocol- and Structure-Independent Botnet Detection. In Proc. of USENIX Security Symposium, 2008."},{"key":"e_1_3_2_1_14_1","volume-title":"Proc. of Network and Distributed System Security Symposium (NDSS)","author":"Gu G.","year":"2008","unstructured":"G. Gu , J. Zhang , and W. Lee . BotSniffer: Detecting Botnet Command and Control Channels in Network Traffic . In Proc. of Network and Distributed System Security Symposium (NDSS) , 2008 . G. Gu, J. Zhang, and W. Lee. BotSniffer: Detecting Botnet Command and Control Channels in Network Traffic. In Proc. of Network and Distributed System Security Symposium (NDSS), 2008."},{"key":"e_1_3_2_1_15_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-540-87403-4_6"},{"key":"e_1_3_2_1_16_1","doi-asserted-by":"publisher","DOI":"10.1145\/2523649.2523677"},{"key":"e_1_3_2_1_17_1","doi-asserted-by":"publisher","DOI":"10.1145\/2046684.2046692"},{"key":"e_1_3_2_1_18_1","volume-title":"http:\/\/anubis.iseclab.org, visited","year":"2014","unstructured":"iSeclab. Anubis. http:\/\/anubis.iseclab.org, visited April , 2014 . iSeclab. Anubis. http:\/\/anubis.iseclab.org, visited April, 2014."},{"key":"e_1_3_2_1_19_1","doi-asserted-by":"publisher","DOI":"10.1145\/331499.331504"},{"key":"e_1_3_2_1_20_1","doi-asserted-by":"publisher","DOI":"10.1145\/2046707.2046742"},{"key":"e_1_3_2_1_21_1","volume-title":"Lab. KASPERSKY SECURITY BULLETIN 2013","year":"2013","unstructured":"Kaspersky Lab. KASPERSKY SECURITY BULLETIN 2013 . http:\/\/media.kaspersky.com\/pdf\/KSB_ 2013 _EN.pdf, 2014. Kaspersky Lab. KASPERSKY SECURITY BULLETIN 2013. http:\/\/media.kaspersky.com\/pdf\/KSB_2013_EN.pdf, 2014."},{"key":"e_1_3_2_1_22_1","first-page":"405","volume-title":"Proceedings of the 13th International Conference on Artificial Intelligence and Statistics (AISTATS)","author":"Kloft M.","year":"2010","unstructured":"M. Kloft and P. Laskov . Online anomaly detection under adversarial impact . In Proceedings of the 13th International Conference on Artificial Intelligence and Statistics (AISTATS) , pages 405 -- 412 , 2010 . M. Kloft and P. Laskov. Online anomaly detection under adversarial impact. In Proceedings of the 13th International Conference on Artificial Intelligence and Statistics (AISTATS), pages 405--412, 2010."},{"key":"e_1_3_2_1_23_1","volume-title":"Sixth Conference on Email and Anti-Spam (CEAS)","author":"Kolcz A.","year":"2009","unstructured":"A. Kolcz and C. H. Teo . Feature weighting for improved classifier robustness . In Sixth Conference on Email and Anti-Spam (CEAS) , Mountain View, CA, USA, 16\/07\/ 2009 2009. A. Kolcz and C. H. Teo. Feature weighting for improved classifier robustness. In Sixth Conference on Email and Anti-Spam (CEAS), Mountain View, CA, USA, 16\/07\/2009 2009."},{"key":"e_1_3_2_1_24_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.comnet.2012.06.022"},{"key":"e_1_3_2_1_25_1","first-page":"391","volume-title":"Proc. of USENIX Symposium on Networked Systems Design and Implementation (NSDI)","author":"Perdisci R.","year":"2010","unstructured":"R. Perdisci , W. Lee , and N. Feamster . Behavioral clustering of HTTP-based malware and signature generation using malicious network traces . In Proc. of USENIX Symposium on Networked Systems Design and Implementation (NSDI) , pages 391 -- 404 , 2010 . R. Perdisci, W. Lee, and N. Feamster. Behavioral clustering of HTTP-based malware and signature generation using malicious network traces. In Proc. of USENIX Symposium on Networked Systems Design and Implementation (NSDI), pages 391--404, 2010."},{"key":"e_1_3_2_1_26_1","doi-asserted-by":"publisher","DOI":"10.1145\/2420950.2420999"},{"key":"e_1_3_2_1_27_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-540-70542-0_6"},{"key":"e_1_3_2_1_28_1","doi-asserted-by":"publisher","DOI":"10.5555\/2011216.2011217"},{"key":"e_1_3_2_1_29_1","doi-asserted-by":"publisher","DOI":"10.5555\/1754701.1754707"},{"key":"e_1_3_2_1_30_1","doi-asserted-by":"publisher","DOI":"10.5555\/829514.830544"},{"key":"e_1_3_2_1_31_1","unstructured":"VirusTotal. https:\/\/www.virustotal.com.  VirusTotal. https:\/\/www.virustotal.com."},{"key":"e_1_3_2_1_32_1","doi-asserted-by":"publisher","DOI":"10.1145\/586110.586145"},{"key":"e_1_3_2_1_33_1","doi-asserted-by":"publisher","DOI":"10.1109\/MSP.2007.45"}],"event":{"name":"CCS'14: 2014 ACM SIGSAC Conference on Computer and Communications Security","location":"Scottsdale Arizona USA","acronym":"CCS'14","sponsor":["SIGSAC ACM Special Interest Group on Security, Audit, and Control"]},"container-title":["Proceedings of the 2014 Workshop on Artificial Intelligent and Security Workshop"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/2666652.2666666","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/2666652.2666666","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,18]],"date-time":"2025-06-18T06:12:15Z","timestamp":1750227135000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/2666652.2666666"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2014,11,7]]},"references-count":33,"alternative-id":["10.1145\/2666652.2666666","10.1145\/2666652"],"URL":"https:\/\/doi.org\/10.1145\/2666652.2666666","relation":{},"subject":[],"published":{"date-parts":[[2014,11,7]]},"assertion":[{"value":"2014-11-07","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}