{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,6,18]],"date-time":"2025-06-18T04:32:39Z","timestamp":1750221159084,"version":"3.41.0"},"publisher-location":"New York, NY, USA","reference-count":51,"publisher":"ACM","license":[{"start":{"date-parts":[[2018,5,29]],"date-time":"2018-05-29T00:00:00Z","timestamp":1527552000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2018,5,29]]},"DOI":"10.1145\/3196494.3196539","type":"proceedings-article","created":{"date-parts":[[2018,5,31]],"date-time":"2018-05-31T13:18:28Z","timestamp":1527772708000},"page":"723-734","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":4,"title":["A Data-driven Attack against Support Vectors of SVM"],"prefix":"10.1145","author":[{"given":"Shigang","family":"Liu","sequence":"first","affiliation":[{"name":"Swinburne University of Technology, Hawthorn, Australia"}]},{"given":"Jun","family":"Zhang","sequence":"additional","affiliation":[{"name":"Swinburne University of Technology, Hawthorn, Australia"}]},{"given":"Yu","family":"Wang","sequence":"additional","affiliation":[{"name":"Guangzhou University, Guangzhou, China"}]},{"given":"Wanlei","family":"Zhou","sequence":"additional","affiliation":[{"name":"Deakin University, Burwood, Australia"}]},{"given":"Yang","family":"Xiang","sequence":"additional","affiliation":[{"name":"Swinburne University of Technology, Hawthorn, Australia"}]},{"given":"Olivier De","family":"Vel.","sequence":"additional","affiliation":[{"name":"Defence Science &amp;Technology Group, Edinburgh , Australia"}]}],"member":"320","published-online":{"date-parts":[[2018,5,29]]},"reference":[{"key":"e_1_3_2_1_1_1","unstructured":"Yuichiro Anzai. 2012.Pattern Recognition &Machine Learning. Elsevier.   Yuichiro Anzai. 2012.Pattern Recognition &Machine Learning. Elsevier."},{"key":"e_1_3_2_1_2_1","doi-asserted-by":"publisher","DOI":"10.1109\/MLSP.2015.7324345"},{"key":"e_1_3_2_1_3_1","volume-title":"Veronique Van Vlasselaer, and Wouter Verbeke","author":"Baesens Bart","year":"2015","unstructured":"Bart Baesens , Veronique Van Vlasselaer, and Wouter Verbeke . 2015 . Fraud Analytics Using Descriptive, Predictive , and Social Network Techniques: A Guide to Data Science for Fraud Detection. John Wiley &Sons . Bart Baesens, Veronique Van Vlasselaer, and Wouter Verbeke. 2015. Fraud Analytics Using Descriptive, Predictive, and Social Network Techniques: A Guide to Data Science for Fraud Detection. John Wiley &Sons."},{"key":"e_1_3_2_1_4_1","doi-asserted-by":"publisher","DOI":"10.1109\/WIFS.2016.7823902"},{"key":"e_1_3_2_1_5_1","doi-asserted-by":"publisher","DOI":"10.1007\/s10994-010-5188-5"},{"key":"e_1_3_2_1_6_1","doi-asserted-by":"publisher","DOI":"10.1145\/1128817.1128824"},{"key":"e_1_3_2_1_7_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-662-44415-3_5"},{"key":"e_1_3_2_1_8_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-40994-3_25"},{"key":"e_1_3_2_1_9_1","doi-asserted-by":"publisher","DOI":"10.1109\/TPAMI.2016.2558154"},{"key":"e_1_3_2_1_10_1","doi-asserted-by":"publisher","DOI":"10.1109\/TKDE.2013.57"},{"key":"e_1_3_2_1_11_1","first-page":"97","article-title":"Support Vector Machines Under Adversarial Label Noise","volume":"20","author":"Biggio Battista","year":"2011","unstructured":"Battista Biggio , Blaine Nelson , and Pavel Laskov . 2011 . Support Vector Machines Under Adversarial Label Noise . ACML Vol. 20 (2011), 97 -- 112 . Battista Biggio, Blaine Nelson, and Pavel Laskov. 2011. Support Vector Machines Under Adversarial Label Noise. ACML Vol. 20 (2011), 97--112.","journal-title":"ACML"},{"key":"e_1_3_2_1_12_1","volume-title":"Proc. 29th Int'l Conf. Machine Learning. http:\/\/icml.cc\/discuss\/2012\/880","author":"Biggio Battista","year":"2012","unstructured":"Battista Biggio , Blaine Nelson , and Pavel Laskov . 2012 . Poisoning Attacks against Support Vector Machines . In Proc. 29th Int'l Conf. Machine Learning. http:\/\/icml.cc\/discuss\/2012\/880 .html tempurl Battista Biggio, Blaine Nelson, and Pavel Laskov. 2012. Poisoning Attacks against Support Vector Machines. In Proc. 29th Int'l Conf. Machine Learning. http:\/\/icml.cc\/discuss\/2012\/880.html tempurl"},{"key":"e_1_3_2_1_13_1","doi-asserted-by":"publisher","DOI":"10.5555\/1005332.1016792"},{"key":"e_1_3_2_1_14_1","doi-asserted-by":"publisher","DOI":"10.1007\/11856214_4"},{"key":"e_1_3_2_1_15_1","doi-asserted-by":"publisher","DOI":"10.1186\/s40537-015-0029-9"},{"volume-title":"An introduction to support vector machines and other kernel-based learning methods","author":"Cristianini Nello","key":"e_1_3_2_1_16_1","unstructured":"Nello Cristianini and John Shawe-Taylor . 2000. An introduction to support vector machines and other kernel-based learning methods . Cambridge university press . Nello Cristianini and John Shawe-Taylor. 2000. An introduction to support vector machines and other kernel-based learning methods. Cambridge university press."},{"key":"e_1_3_2_1_17_1","doi-asserted-by":"publisher","DOI":"10.1145\/1014052.1014066"},{"key":"e_1_3_2_1_18_1","doi-asserted-by":"publisher","DOI":"10.1001\/jama.2015.18421"},{"key":"e_1_3_2_1_19_1","volume-title":"Machine Learning Can Be More Secure! A Case Study on Android Malware Detection","author":"Demontis Ambra","year":"2017","unstructured":"Ambra Demontis , Marco Melis , Battista Biggio , Davide Maiorca , Daniel Arp , Konrad Rieck , Igino Corona , Giorgio Giacinto , and Fabio Roli . 2017. Yes , Machine Learning Can Be More Secure! A Case Study on Android Malware Detection . IEEE Transactions on Dependable and Secure Computing ( 2017 ). Ambra Demontis, Marco Melis, Battista Biggio, Davide Maiorca, Daniel Arp, Konrad Rieck, Igino Corona, Giorgio Giacinto, and Fabio Roli. 2017. Yes, Machine Learning Can Be More Secure! A Case Study on Android Malware Detection. IEEE Transactions on Dependable and Secure Computing (2017)."},{"key":"e_1_3_2_1_20_1","volume-title":"UCI Machine Learning Repository {http:\/\/archive. ics. uci. edu\/ml}","author":"Frank Andrew","year":"2010","unstructured":"Andrew Frank and Arthur Asuncion . 2010. UCI Machine Learning Repository {http:\/\/archive. ics. uci. edu\/ml} . Irvine, CA : University of California . School of Information and Computer Science Vol. 213 ( 2010 ). Andrew Frank and Arthur Asuncion. 2010. UCI Machine Learning Repository {http:\/\/archive. ics. uci. edu\/ml}. Irvine, CA: University of California. School of Information and Computer Science Vol. 213 (2010)."},{"key":"e_1_3_2_1_21_1","volume-title":"Probabilistic machine learning and artificial intelligence. Nature","author":"Ghahramani Zoubin","year":"2015","unstructured":"Zoubin Ghahramani . 2015. Probabilistic machine learning and artificial intelligence. Nature Vol. 521 , 7553 ( 2015 ), 452--459. Zoubin Ghahramani. 2015. Probabilistic machine learning and artificial intelligence. Nature Vol. 521, 7553 (2015), 452--459."},{"key":"e_1_3_2_1_22_1","doi-asserted-by":"publisher","DOI":"10.1145\/2046684.2046692"},{"key":"e_1_3_2_1_23_1","doi-asserted-by":"publisher","DOI":"10.1109\/SGCAC.2016.7458022"},{"key":"e_1_3_2_1_24_1","doi-asserted-by":"publisher","DOI":"10.1145\/1150402.1150429"},{"key":"e_1_3_2_1_25_1","volume-title":"Evasion and Hardening of Tree Ensemble Classifiers. arXiv preprint arXiv:1509.07892","author":"Kantchelian Alex","year":"2015","unstructured":"Alex Kantchelian , JD Tygar , and Anthony D Joseph . 2015. Evasion and Hardening of Tree Ensemble Classifiers. arXiv preprint arXiv:1509.07892 ( 2015 ). Alex Kantchelian, JD Tygar, and Anthony D Joseph. 2015. Evasion and Hardening of Tree Ensemble Classifiers. arXiv preprint arXiv:1509.07892 (2015)."},{"key":"e_1_3_2_1_26_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-72413-3_20"},{"key":"e_1_3_2_1_27_1","volume-title":"Adversarial machine learning at scale. arXiv preprint arXiv:1611.01236","author":"Kurakin Alexey","year":"2016","unstructured":"Alexey Kurakin , Ian Goodfellow , and Samy Bengio . 2016. Adversarial machine learning at scale. arXiv preprint arXiv:1611.01236 ( 2016 ). Alexey Kurakin, Ian Goodfellow, and Samy Bengio. 2016. Adversarial machine learning at scale. arXiv preprint arXiv:1611.01236 (2016)."},{"key":"e_1_3_2_1_28_1","volume-title":"Deep learning. Nature","author":"LeCun Yann","year":"2015","unstructured":"Yann LeCun , Yoshua Bengio , and Geoffrey Hinton . 2015. Deep learning. Nature Vol. 521 , 7553 ( 2015 ), 436--444. Yann LeCun, Yoshua Bengio, and Geoffrey Hinton. 2015. Deep learning. Nature Vol. 521, 7553 (2015), 436--444."},{"key":"e_1_3_2_1_29_1","doi-asserted-by":"publisher","DOI":"10.1145\/2872427.2883060"},{"key":"e_1_3_2_1_30_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2016.12.004"},{"key":"e_1_3_2_1_31_1","doi-asserted-by":"publisher","DOI":"10.1145\/2897845.2897928"},{"key":"e_1_3_2_1_32_1","volume-title":"Handbook of matrices. Computational Statistics and Data Analysis","author":"Lutkepohl Helmut","year":"1997","unstructured":"Helmut Lutkepohl . 1997. Handbook of matrices. Computational Statistics and Data Analysis Vol. 2 , 25 ( 1997 ). Helmut Lutkepohl. 1997. Handbook of matrices. Computational Statistics and Data Analysis Vol. 2, 25 (1997)."},{"key":"e_1_3_2_1_33_1","doi-asserted-by":"crossref","unstructured":"Shike Mei and Xiaojin Zhu. 2015. Using Machine Teaching to Identify Optimal Training-Set Attacks on Machine Learners.. In AAAI. 2871--2877.   Shike Mei and Xiaojin Zhu. 2015. Using Machine Teaching to Identify Optimal Training-Set Attacks on Machine Learners.. In AAAI. 2871--2877.","DOI":"10.1609\/aaai.v29i1.9569"},{"key":"e_1_3_2_1_34_1","doi-asserted-by":"publisher","DOI":"10.1145\/2666652.2666656"},{"key":"e_1_3_2_1_35_1","doi-asserted-by":"publisher","DOI":"10.1007\/s00500-014-1511-6"},{"key":"e_1_3_2_1_36_1","first-page":"1","article-title":"Exploiting Machine Learning to Subvert Your Spam Filter","volume":"8","author":"Nelson Blaine","year":"2008","unstructured":"Blaine Nelson , Marco Barreno , Fuching Jack Chi , Anthony D Joseph , Benjamin IP Rubinstein , Udam Saini , Charles A Sutton , J Doug Tygar , and Kai Xia . 2008 . Exploiting Machine Learning to Subvert Your Spam Filter . LEET Vol. 8 (2008), 1 -- 9 . Blaine Nelson, Marco Barreno, Fuching Jack Chi, Anthony D Joseph, Benjamin IP Rubinstein, Udam Saini, Charles A Sutton, J Doug Tygar, and Kai Xia. 2008. Exploiting Machine Learning to Subvert Your Spam Filter. LEET Vol. 8 (2008), 1--9.","journal-title":"LEET"},{"key":"e_1_3_2_1_37_1","doi-asserted-by":"publisher","DOI":"10.1007\/11856214_5"},{"key":"e_1_3_2_1_38_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2016.41"},{"key":"e_1_3_2_1_39_1","volume-title":"Incremental and decremental support vector machine learning. Advances in neural information processing systems","author":"Poggio T","year":"2001","unstructured":"T Poggio and G Cauwenberghs . 2001. Incremental and decremental support vector machine learning. Advances in neural information processing systems Vol. 13 ( 2001 ), 409. T Poggio and G Cauwenberghs. 2001. Incremental and decremental support vector machine learning. Advances in neural information processing systems Vol. 13 (2001), 409."},{"volume-title":"Introduction to recommender systems handbook","author":"Ricci Francesco","key":"e_1_3_2_1_40_1","unstructured":"Francesco Ricci , Lior Rokach , and Bracha Shapira . 2011. Introduction to recommender systems handbook . Springer . Francesco Ricci, Lior Rokach, and Bracha Shapira. 2011. Introduction to recommender systems handbook. Springer."},{"key":"e_1_3_2_1_41_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2014.20"},{"volume-title":"Insider Attack and Cyber Security","author":"Salem Malek Ben","key":"e_1_3_2_1_42_1","unstructured":"Malek Ben Salem , Shlomo Hershkop , and Salvatore J Stolfo . 2008. A survey of insider attack detection research . In Insider Attack and Cyber Security . Springer , 69--90. Malek Ben Salem, Shlomo Hershkop, and Salvatore J Stolfo. 2008. A survey of insider attack detection research. In Insider Attack and Cyber Security. Springer, 69--90."},{"key":"e_1_3_2_1_43_1","doi-asserted-by":"publisher","DOI":"10.1145\/2872427.2883012"},{"key":"e_1_3_2_1_44_1","volume-title":"Michelle Gaasenbeek, Michael Angelo, Michael Reich, Geraldine S Pinkus, et almbox..","author":"Shipp Margaret A","year":"2002","unstructured":"Margaret A Shipp , Ken N Ross , Pablo Tamayo , Andrew P Weng , Jeffery L Kutok , Ricardo CT Aguiar , Michelle Gaasenbeek, Michael Angelo, Michael Reich, Geraldine S Pinkus, et almbox.. 2002 . Diffuse large B-cell lymphoma outcome prediction by gene-expression profiling and supervised machine learning. Nature medicine Vol. 8 , 1 (2002), 68--74. Margaret A Shipp, Ken N Ross, Pablo Tamayo, Andrew P Weng, Jeffery L Kutok, Ricardo CT Aguiar, Michelle Gaasenbeek, Michael Angelo, Michael Reich, Geraldine S Pinkus, et almbox.. 2002. Diffuse large B-cell lymphoma outcome prediction by gene-expression profiling and supervised machine learning. Nature medicine Vol. 8, 1 (2002), 68--74."},{"volume-title":"Support vector machines","author":"Steinwart Ingo","key":"e_1_3_2_1_45_1","unstructured":"Ingo Steinwart and Andreas Christmann . 2008. Support vector machines . Springer Science &Business Media . Ingo Steinwart and Andreas Christmann. 2008. Support vector machines. Springer Science &Business Media."},{"key":"e_1_3_2_1_46_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICCSCE.2013.6719993"},{"key":"e_1_3_2_1_47_1","unstructured":"Shobha Venkataraman Avrim Blum and Dawn Song. 2008. Limits of learning-based signature generation with adversaries. (2008).  Shobha Venkataraman Avrim Blum and Dawn Song. 2008. Limits of learning-based signature generation with adversaries. (2008)."},{"key":"e_1_3_2_1_48_1","doi-asserted-by":"publisher","DOI":"10.1109\/TPDS.2013.307"},{"key":"e_1_3_2_1_49_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.neucom.2014.08.081"},{"key":"e_1_3_2_1_50_1","volume-title":"2014 IEEE Conference on. IEEE, 265--273","author":"Xu Li","year":"2014","unstructured":"Li Xu , Zhenxin Zhan , Shouhuai Xu , and Keying Ye . 2014 . An evasion and counter-evasion study in malicious websites detection Communications and Network Security (CNS) , 2014 IEEE Conference on. IEEE, 265--273 . Li Xu, Zhenxin Zhan, Shouhuai Xu, and Keying Ye. 2014. An evasion and counter-evasion study in malicious websites detection Communications and Network Security (CNS), 2014 IEEE Conference on. IEEE, 265--273."},{"key":"e_1_3_2_1_51_1","doi-asserted-by":"publisher","DOI":"10.1109\/TCYB.2015.2415032"}],"event":{"name":"ASIA CCS '18: ACM Asia Conference on Computer and Communications Security","sponsor":["SIGSAC ACM Special Interest Group on Security, Audit, and Control"],"location":"Incheon Republic of Korea","acronym":"ASIA CCS '18"},"container-title":["Proceedings of the 2018 on Asia Conference on Computer and Communications Security"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3196494.3196539","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3196494.3196539","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,18]],"date-time":"2025-06-18T01:08:39Z","timestamp":1750208919000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3196494.3196539"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2018,5,29]]},"references-count":51,"alternative-id":["10.1145\/3196494.3196539","10.1145\/3196494"],"URL":"https:\/\/doi.org\/10.1145\/3196494.3196539","relation":{},"subject":[],"published":{"date-parts":[[2018,5,29]]},"assertion":[{"value":"2018-05-29","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}