{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,13]],"date-time":"2026-05-13T09:18:45Z","timestamp":1778663925174,"version":"3.51.4"},"publisher-location":"New York, NY, USA","reference-count":59,"publisher":"ACM","license":[{"start":{"date-parts":[[2019,8,26]],"date-time":"2019-08-26T00:00:00Z","timestamp":1566777600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2019,8,26]]},"DOI":"10.1145\/3339252.3339266","type":"proceedings-article","created":{"date-parts":[[2019,8,9]],"date-time":"2019-08-09T12:21:03Z","timestamp":1565353263000},"page":"1-10","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":48,"title":["Black Box Attacks on Deep Anomaly Detectors"],"prefix":"10.1145","author":[{"given":"Aditya","family":"Kuppa","sequence":"first","affiliation":[{"name":"University College, Dublin, Symantec Corporation"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Slawomir","family":"Grzonkowski","sequence":"additional","affiliation":[{"name":"Symantec Corporation"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Muhammad Rizwan","family":"Asghar","sequence":"additional","affiliation":[{"name":"The University of Auckland"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Nhien-An","family":"Le-Khac","sequence":"additional","affiliation":[{"name":"University College, Dublin"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2019,8,26]]},"reference":[{"key":"e_1_3_2_1_1_1","volume-title":"18th IEEE International Conference On Trust, Security And Privacy In Computing And Communications (TrustCom","author":"Aditya K","year":"2019","unstructured":"K Aditya , Slawomir Grzonkowski , Muhammad Rizwan Asghar , and Nhien-An Le-Khac . 2019 . Finding Rats in Cats: Detecting Stealthy Attacks using Group Anomaly Detection . In 18th IEEE International Conference On Trust, Security And Privacy In Computing And Communications (TrustCom 2019), Roturua, New Zealand. IEEE, (to appear). K Aditya, Slawomir Grzonkowski, Muhammad Rizwan Asghar, and Nhien-An Le-Khac. 2019. Finding Rats in Cats: Detecting Stealthy Attacks using Group Anomaly Detection. In 18th IEEE International Conference On Trust, Security And Privacy In Computing And Communications (TrustCom 2019), Roturua, New Zealand. IEEE, (to appear)."},{"key":"e_1_3_2_1_2_1","volume-title":"Enabling Trust in Deep Learning Models: A Digital Forensics Case Study. In 17th IEEE International Conference On Trust, Security And Privacy In Computing And Communications (TrustCom","author":"Aditya K","year":"2018","unstructured":"K Aditya , Slawomir Grzonkowski , and Nhien-An Le-Khac . 2018 . Enabling Trust in Deep Learning Models: A Digital Forensics Case Study. In 17th IEEE International Conference On Trust, Security And Privacy In Computing And Communications (TrustCom 2018), New York, USA. IEEE, 1250--1255. K Aditya, Slawomir Grzonkowski, and Nhien-An Le-Khac. 2018. Enabling Trust in Deep Learning Models: A Digital Forensics Case Study. In 17th IEEE International Conference On Trust, Security And Privacy In Computing And Communications (TrustCom 2018), New York, USA. IEEE, 1250--1255."},{"key":"e_1_3_2_1_3_1","doi-asserted-by":"publisher","DOI":"10.1109\/SPW.2018.00020"},{"key":"e_1_3_2_1_4_1","volume-title":"Evading machine learning malware detection. Black Hat","author":"Anderson Hyrum S","year":"2017","unstructured":"Hyrum S Anderson , Anant Kharkar , Bobby Filar , and Phil Roth . 2017. Evading machine learning malware detection. Black Hat ( 2017 ). Hyrum S Anderson, Anant Kharkar, Bobby Filar, and Phil Roth. 2017. Evading machine learning malware detection. Black Hat (2017)."},{"key":"e_1_3_2_1_5_1","doi-asserted-by":"publisher","DOI":"10.1145\/1128817.1128824"},{"key":"e_1_3_2_1_6_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-01258-8_10"},{"key":"e_1_3_2_1_7_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.patcog.2018.07.023"},{"key":"e_1_3_2_1_8_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-48057-2_9"},{"key":"e_1_3_2_1_9_1","volume-title":"Decision-based adversarial attacks: Reliable attacks against black-box machine learning models. arXiv preprint arXiv:1712.04248","author":"Brendel Wieland","year":"2017","unstructured":"Wieland Brendel , Jonas Rauber , and Matthias Bethge . 2017. Decision-based adversarial attacks: Reliable attacks against black-box machine learning models. arXiv preprint arXiv:1712.04248 ( 2017 ). Wieland Brendel, Jonas Rauber, and Matthias Bethge. 2017. Decision-based adversarial attacks: Reliable attacks against black-box machine learning models. arXiv preprint arXiv:1712.04248 (2017)."},{"key":"e_1_3_2_1_10_1","volume-title":"Deep Learning for Anomaly Detection: A Survey. arXiv preprint arXiv:1901.03407","author":"Chalapathy Raghavendra","year":"2019","unstructured":"Raghavendra Chalapathy and Sanjay Chawla . 2019. Deep Learning for Anomaly Detection: A Survey. arXiv preprint arXiv:1901.03407 ( 2019 ). Raghavendra Chalapathy and Sanjay Chawla. 2019. Deep Learning for Anomaly Detection: A Survey. arXiv preprint arXiv:1901.03407 (2019)."},{"key":"e_1_3_2_1_11_1","doi-asserted-by":"publisher","DOI":"10.1145\/1541880.1541882"},{"key":"e_1_3_2_1_12_1","volume-title":"Model Extraction and Active Learning. arXiv preprint arXiv:1811.02054","author":"Chandrasekaran Varun","year":"2018","unstructured":"Varun Chandrasekaran , Kamalika Chaudhuri , Irene Giacomelli , Somesh Jha , and Songbai Yan . 2018. Model Extraction and Active Learning. arXiv preprint arXiv:1811.02054 ( 2018 ). Varun Chandrasekaran, Kamalika Chaudhuri, Irene Giacomelli, Somesh Jha, and Songbai Yan. 2018. Model Extraction and Active Learning. arXiv preprint arXiv:1811.02054 (2018)."},{"key":"e_1_3_2_1_13_1","volume-title":"Joint European Conference on Machine Learning and Knowledge Discovery in Databases. Springer, 149--158","author":"Chawla Ashima","year":"2018","unstructured":"Ashima Chawla , Brian Lee , Sheila Fallon , and Paul Jacob . 2018 . Host based intrusion detection system with combined cnn\/rnn model . In Joint European Conference on Machine Learning and Knowledge Discovery in Databases. Springer, 149--158 . Ashima Chawla, Brian Lee, Sheila Fallon, and Paul Jacob. 2018. Host based intrusion detection system with combined cnn\/rnn model. In Joint European Conference on Machine Learning and Knowledge Discovery in Databases. Springer, 149--158."},{"key":"e_1_3_2_1_14_1","doi-asserted-by":"publisher","DOI":"10.1145\/3128572.3140448"},{"key":"e_1_3_2_1_15_1","volume-title":"Giuseppe Lo Re, and Marco Morana","author":"Paola Alessandra De","year":"2018","unstructured":"Alessandra De Paola , Salvatore Favaloro , Salvatore Gaglio , Giuseppe Lo Re, and Marco Morana . 2018 . Malware Detection through Low-level Features and Stacked Denoising Autoencoders.. In ITASEC. Alessandra De Paola, Salvatore Favaloro, Salvatore Gaglio, Giuseppe Lo Re, and Marco Morana. 2018. Malware Detection through Low-level Features and Stacked Denoising Autoencoders.. In ITASEC."},{"key":"e_1_3_2_1_16_1","volume-title":"Adversarial perturbations against deep neural networks for malware classification. arXiv preprint arXiv:1606.04435","author":"Grosse Kathrin","year":"2016","unstructured":"Kathrin Grosse , Nicolas Papernot , Praveen Manoharan , Michael Backes , and Patrick McDaniel . 2016. Adversarial perturbations against deep neural networks for malware classification. arXiv preprint arXiv:1606.04435 ( 2016 ). Kathrin Grosse, Nicolas Papernot, Praveen Manoharan, Michael Backes, and Patrick McDaniel. 2016. Adversarial perturbations against deep neural networks for malware classification. arXiv preprint arXiv:1606.04435 (2016)."},{"key":"e_1_3_2_1_17_1","volume-title":"Learning Universal Adversarial Perturbations with Generative Models. In 2018 IEEE Security and Privacy Workshops (SPW). IEEE, 43--49","author":"Hayes Jamie","year":"2018","unstructured":"Jamie Hayes and George Danezis . 2018 . Learning Universal Adversarial Perturbations with Generative Models. In 2018 IEEE Security and Privacy Workshops (SPW). IEEE, 43--49 . Jamie Hayes and George Danezis. 2018. Learning Universal Adversarial Perturbations with Generative Models. In 2018 IEEE Security and Privacy Workshops (SPW). IEEE, 43--49."},{"key":"e_1_3_2_1_18_1","doi-asserted-by":"publisher","DOI":"10.1023\/B:AIRE.0000045502.10941.a9"},{"key":"e_1_3_2_1_19_1","volume-title":"Generating adversarial malware examples for black-box attacks based on GAN. arXiv preprint arXiv:1702.05983","author":"Hu Weiwei","year":"2017","unstructured":"Weiwei Hu and Ying Tan . 2017. Generating adversarial malware examples for black-box attacks based on GAN. arXiv preprint arXiv:1702.05983 ( 2017 ). Weiwei Hu and Ying Tan. 2017. Generating adversarial malware examples for black-box attacks based on GAN. arXiv preprint arXiv:1702.05983 (2017)."},{"key":"e_1_3_2_1_20_1","doi-asserted-by":"publisher","DOI":"10.1145\/2046684.2046692"},{"key":"e_1_3_2_1_21_1","volume-title":"Query-Efficient Black-box Adversarial Examples (superceded). arXiv preprint arXiv:1712.07113","author":"Ilyas Andrew","year":"2017","unstructured":"Andrew Ilyas , Logan Engstrom , Anish Athalye , and Jessy Lin . 2017. Query-Efficient Black-box Adversarial Examples (superceded). arXiv preprint arXiv:1712.07113 ( 2017 ). Andrew Ilyas, Logan Engstrom, Anish Athalye, and Jessy Lin. 2017. Query-Efficient Black-box Adversarial Examples (superceded). arXiv preprint arXiv:1712.07113 (2017)."},{"key":"e_1_3_2_1_22_1","doi-asserted-by":"publisher","DOI":"10.4108\/eai.3-12-2015.2262516"},{"key":"e_1_3_2_1_23_1","unstructured":"Eric Jones Travis Oliphant and Pearu Peterson. 2014. {SciPy}: Open source scientific tools for {Python}. (2014).  Eric Jones Travis Oliphant and Pearu Peterson. 2014. {SciPy}: Open source scientific tools for {Python}. (2014)."},{"key":"e_1_3_2_1_24_1","volume-title":"A survey of deep learning-based network anomaly detection. Cluster Computing","author":"Kwon Donghwoon","year":"2017","unstructured":"Donghwoon Kwon , Hyunjoo Kim , Jinoh Kim , Sang C Suh , Ikkyun Kim , and Kuinam J Kim . 2017. A survey of deep learning-based network anomaly detection. Cluster Computing ( 2017 ), 1--13. Donghwoon Kwon, Hyunjoo Kim, Jinoh Kim, Sang C Suh, Ikkyun Kim, and Kuinam J Kim. 2017. A survey of deep learning-based network anomaly detection. Cluster Computing (2017), 1--13."},{"key":"e_1_3_2_1_25_1","unstructured":"Bo Li and Yevgeniy Vorobeychik. 2014. Feature cross-substitution in adversarial classification. In Advances in neural information processing systems. 2087--2095.   Bo Li and Yevgeniy Vorobeychik. 2014. Feature cross-substitution in adversarial classification. In Advances in neural information processing systems. 2087--2095."},{"key":"e_1_3_2_1_26_1","volume-title":"Efficient manifold and subspace approximations with spherelets. arXiv preprint arXiv:1706.08263","author":"Li Didong","year":"2017","unstructured":"Didong Li and David B Dunson . 2017. Efficient manifold and subspace approximations with spherelets. arXiv preprint arXiv:1706.08263 ( 2017 ). Didong Li and David B Dunson. 2017. Efficient manifold and subspace approximations with spherelets. arXiv preprint arXiv:1706.08263 (2017)."},{"key":"e_1_3_2_1_27_1","volume-title":"Idsgan: Generative adversarial networks for attack generation against intrusion detection. arXiv preprint arXiv:1809.02077","author":"Lin Zilong","year":"2018","unstructured":"Zilong Lin , Yong Shi , and Zhi Xue . 2018 . Idsgan: Generative adversarial networks for attack generation against intrusion detection. arXiv preprint arXiv:1809.02077 (2018). Zilong Lin, Yong Shi, and Zhi Xue. 2018. Idsgan: Generative adversarial networks for attack generation against intrusion detection. arXiv preprint arXiv:1809.02077 (2018)."},{"key":"e_1_3_2_1_28_1","volume-title":"Isolation Forest. In Proceedings of the 2008 Eighth IEEE International Conference on Data Mining (ICDM '08)","author":"Liu Fei Tony","year":"2008","unstructured":"Fei Tony Liu , Kai Ming Ting , and Zhi-Hua Zhou . 2008 . Isolation Forest. In Proceedings of the 2008 Eighth IEEE International Conference on Data Mining (ICDM '08) . IEEE Computer Society, Washington, DC, USA, 413--422. Fei Tony Liu, Kai Ming Ting, and Zhi-Hua Zhou. 2008. Isolation Forest. In Proceedings of the 2008 Eighth IEEE International Conference on Data Mining (ICDM '08). IEEE Computer Society, Washington, DC, USA, 413--422."},{"key":"e_1_3_2_1_29_1","volume-title":"A survey on security threats and defensive techniques of machine learning: A data driven view","author":"Liu Qiang","year":"2018","unstructured":"Qiang Liu , Pan Li , Wentao Zhao , Wei Cai , Shui Yu , and Victor CM Leung . 2018. A survey on security threats and defensive techniques of machine learning: A data driven view . IEEE access 6 ( 2018 ), 12103--12117. Qiang Liu, Pan Li, Wentao Zhao, Wei Cai, Shui Yu, and Victor CM Leung. 2018. A survey on security threats and defensive techniques of machine learning: A data driven view. IEEE access 6 (2018), 12103--12117."},{"key":"e_1_3_2_1_30_1","volume-title":"Characterizing adversarial subspaces using local intrinsic dimensionality. arXiv preprint arXiv:1801.02613","author":"Ma Xingjun","year":"2018","unstructured":"Xingjun Ma , Bo Li , Yisen Wang , Sarah M Erfani , Sudanthi Wijewickrema , Grant Schoenebeck , Dawn Song , Michael E Houle , and James Bailey . 2018. Characterizing adversarial subspaces using local intrinsic dimensionality. arXiv preprint arXiv:1801.02613 ( 2018 ). Xingjun Ma, Bo Li, Yisen Wang, Sarah M Erfani, Sudanthi Wijewickrema, Grant Schoenebeck, Dawn Song, Michael E Houle, and James Bailey. 2018. Characterizing adversarial subspaces using local intrinsic dimensionality. arXiv preprint arXiv:1801.02613 (2018)."},{"key":"e_1_3_2_1_31_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-00012-7_30"},{"key":"e_1_3_2_1_32_1","first-page":"1","article-title":"Exploiting Machine Learning to Subvert Your Spam Filter","volume":"8","author":"Nelson Blaine","year":"2008","unstructured":"Blaine Nelson , Marco Barreno , Fuching Jack Chi , Anthony D Joseph , Benjamin IP Rubinstein , Udam Saini , Charles A Sutton , J Doug Tygar , and Kai Xia . 2008 . Exploiting Machine Learning to Subvert Your Spam Filter . LEET 8 (2008), 1 -- 9 . Blaine Nelson, Marco Barreno, Fuching Jack Chi, Anthony D Joseph, Benjamin IP Rubinstein, Udam Saini, Charles A Sutton, J Doug Tygar, and Kai Xia. 2008. Exploiting Machine Learning to Subvert Your Spam Filter. LEET 8 (2008), 1--9.","journal-title":"LEET"},{"key":"e_1_3_2_1_33_1","doi-asserted-by":"publisher","DOI":"10.1007\/11856214_5"},{"key":"e_1_3_2_1_34_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-662-56266-6_4"},{"key":"e_1_3_2_1_35_1","volume-title":"Transferability in machine learning: from phenomena to black-box attacks using adversarial samples. arXiv preprint arXiv:1605.07277","author":"Papernot Nicolas","year":"2016","unstructured":"Nicolas Papernot , Patrick McDaniel , and Ian Goodfellow . 2016. Transferability in machine learning: from phenomena to black-box attacks using adversarial samples. arXiv preprint arXiv:1605.07277 ( 2016 ). Nicolas Papernot, Patrick McDaniel, and Ian Goodfellow. 2016. Transferability in machine learning: from phenomena to black-box attacks using adversarial samples. arXiv preprint arXiv:1605.07277 (2016)."},{"key":"e_1_3_2_1_36_1","volume-title":"Towards the science of security and privacy in machine learning. arXiv preprint arXiv:1611.03814","author":"Papernot Nicolas","year":"2016","unstructured":"Nicolas Papernot , Patrick McDaniel , Arunesh Sinha , and Michael Wellman . 2016. Towards the science of security and privacy in machine learning. arXiv preprint arXiv:1611.03814 ( 2016 ). Nicolas Papernot, Patrick McDaniel, Arunesh Sinha, and Michael Wellman. 2016. Towards the science of security and privacy in machine learning. arXiv preprint arXiv:1611.03814 (2016)."},{"key":"e_1_3_2_1_37_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2016.41"},{"key":"e_1_3_2_1_38_1","first-page":"2825","article-title":"Scikit-learn: Machine learning in Python","author":"Pedregosa Fabian","year":"2011","unstructured":"Fabian Pedregosa , Ga\u00ebl Varoquaux , Alexandre Gramfort , Vincent Michel , Bertrand Thirion , Olivier Grisel , Mathieu Blondel , Peter Prettenhofer , Ron Weiss , Vincent Dubourg , 2011 . Scikit-learn: Machine learning in Python . Journal of machine learning research 12 , Oct (2011), 2825 -- 2830 . Fabian Pedregosa, Ga\u00ebl Varoquaux, Alexandre Gramfort, Vincent Michel, Bertrand Thirion, Olivier Grisel, Mathieu Blondel, Peter Prettenhofer, Ron Weiss, Vincent Dubourg, et al. 2011. Scikit-learn: Machine learning in Python. Journal of machine learning research 12, Oct (2011), 2825--2830.","journal-title":"Journal of machine learning research 12"},{"key":"e_1_3_2_1_39_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICDM.2018.00159"},{"key":"e_1_3_2_1_40_1","volume-title":"Unsupervised representation learning with deep convolutional generative adversarial networks. arXiv preprint arXiv:1511.06434","author":"Radford Alec","year":"2015","unstructured":"Alec Radford , Luke Metz , and Soumith Chintala . 2015. Unsupervised representation learning with deep convolutional generative adversarial networks. arXiv preprint arXiv:1511.06434 ( 2015 ). Alec Radford, Luke Metz, and Soumith Chintala. 2015. Unsupervised representation learning with deep convolutional generative adversarial networks. arXiv preprint arXiv:1511.06434 (2015)."},{"key":"e_1_3_2_1_41_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-70087-8_59"},{"key":"e_1_3_2_1_42_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-00470-5_23"},{"key":"e_1_3_2_1_43_1","volume-title":"The Odds are Odd: A Statistical Test for Detecting Adversarial Examples. arXiv preprint arXiv:1902.04818","author":"Roth Kevin","year":"2019","unstructured":"Kevin Roth , Yannic Kilcher , and Thomas Hofmann . 2019. The Odds are Odd: A Statistical Test for Detecting Adversarial Examples. arXiv preprint arXiv:1902.04818 ( 2019 ). Kevin Roth, Yannic Kilcher, and Thomas Hofmann. 2019. The Odds are Odd: A Statistical Test for Detecting Adversarial Examples. arXiv preprint arXiv:1902.04818 (2019)."},{"key":"e_1_3_2_1_44_1","doi-asserted-by":"publisher","DOI":"10.1145\/1644893.1644895"},{"key":"e_1_3_2_1_45_1","volume-title":"Proceedings of the 35th International Conference on Machine Learning (Proceedings of Machine Learning Research), Jennifer Dy and Andreas Krause (Eds.)","volume":"80","author":"Ruff Lukas","year":"2018","unstructured":"Lukas Ruff , Robert Vandermeulen , Nico Goernitz , Lucas Deecke , Shoaib Ahmed Siddiqui , Alexander Binder , Emmanuel M\u00fcller , and Marius Kloft . 2018 . Deep One-Class Classification . In Proceedings of the 35th International Conference on Machine Learning (Proceedings of Machine Learning Research), Jennifer Dy and Andreas Krause (Eds.) , Vol. 80 . PMLR, Stockholmsm\u00c3\u20acssan, Stockholm Sweden, 4393--4402. http:\/\/proceedings.mlr.press\/v80\/ruff18a.html Lukas Ruff, Robert Vandermeulen, Nico Goernitz, Lucas Deecke, Shoaib Ahmed Siddiqui, Alexander Binder, Emmanuel M\u00fcller, and Marius Kloft. 2018. Deep One-Class Classification. In Proceedings of the 35th International Conference on Machine Learning (Proceedings of Machine Learning Research), Jennifer Dy and Andreas Krause (Eds.), Vol. 80. PMLR, Stockholmsm\u00c3\u20acssan, Stockholm Sweden, 4393--4402. http:\/\/proceedings.mlr.press\/v80\/ruff18a.html"},{"key":"e_1_3_2_1_46_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-59050-9_12"},{"key":"e_1_3_2_1_47_1","unstructured":"Bernhard Sch\u00f6lkopf Robert C Williamson Alex J Smola John Shawe-Taylor and John C Platt. 2000. Support vector method for novelty detection. In Advances in neural information processing systems. 582--588.   Bernhard Sch\u00f6lkopf Robert C Williamson Alex J Smola John Shawe-Taylor and John C Platt. 2000. Support vector method for novelty detection. In Advances in neural information processing systems. 582--588."},{"key":"e_1_3_2_1_48_1","doi-asserted-by":"publisher","DOI":"10.1145\/3230833.3230835"},{"key":"e_1_3_2_1_49_1","volume-title":"Are adversarial examples inevitable? arXiv preprint arXiv:1809.02104","author":"Shafahi Ali","year":"2018","unstructured":"Ali Shafahi , W Ronny Huang , Christoph Studer , Soheil Feizi , and Tom Goldstein . 2018. Are adversarial examples inevitable? arXiv preprint arXiv:1809.02104 ( 2018 ). Ali Shafahi, W Ronny Huang, Christoph Studer, Soheil Feizi, and Tom Goldstein. 2018. Are adversarial examples inevitable? arXiv preprint arXiv:1809.02104 (2018)."},{"key":"e_1_3_2_1_50_1","volume-title":"Arash Habibi Lashkari, and Ali A Ghorbani","author":"Sharafaldin Iman","year":"2018","unstructured":"Iman Sharafaldin , Arash Habibi Lashkari, and Ali A Ghorbani . 2018 . Toward Generating a New Intrusion Detection Dataset and Intrusion Traffic Characterization.. In ICISSP. 108--116. Iman Sharafaldin, Arash Habibi Lashkari, and Ali A Ghorbani. 2018. Toward Generating a New Intrusion Detection Dataset and Intrusion Traffic Characterization.. In ICISSP. 108--116."},{"key":"e_1_3_2_1_51_1","volume-title":"Recurrent Neural Networks for Enhancement of Signature-based Network Intrusion Detection Systems. arXiv preprint arXiv:1807.03212","author":"Sohi Soroush M","year":"2018","unstructured":"Soroush M Sohi , Fatemeh Ganji , and Jean-Pierre Seifert . 2018. Recurrent Neural Networks for Enhancement of Signature-based Network Intrusion Detection Systems. arXiv preprint arXiv:1807.03212 ( 2018 ). Soroush M Sohi, Fatemeh Ganji, and Jean-Pierre Seifert. 2018. Recurrent Neural Networks for Enhancement of Signature-based Network Intrusion Detection Systems. arXiv preprint arXiv:1807.03212 (2018)."},{"key":"e_1_3_2_1_52_1","volume-title":"Query-limited black-box attacks to classifiers. arXiv preprint arXiv:1712.08713","author":"Suya Fnu","year":"2017","unstructured":"Fnu Suya , Yuan Tian , David Evans , and Paolo Papotti . 2017. Query-limited black-box attacks to classifiers. arXiv preprint arXiv:1712.08713 ( 2017 ). Fnu Suya, Yuan Tian, David Evans, and Paolo Papotti. 2017. Query-limited black-box attacks to classifiers. arXiv preprint arXiv:1712.08713 (2017)."},{"key":"e_1_3_2_1_53_1","volume-title":"Intriguing properties of neural networks. arXiv preprint arXiv:1312.6199","author":"Szegedy Christian","year":"2013","unstructured":"Christian Szegedy , Wojciech Zaremba , Ilya Sutskever , Joan Bruna , Dumitru Erhan , Ian Goodfellow , and Rob Fergus . 2013. Intriguing properties of neural networks. arXiv preprint arXiv:1312.6199 ( 2013 ). Christian Szegedy, Wojciech Zaremba, Ilya Sutskever, Joan Bruna, Dumitru Erhan, Ian Goodfellow, and Rob Fergus. 2013. Intriguing properties of neural networks. arXiv preprint arXiv:1312.6199 (2013)."},{"key":"e_1_3_2_1_54_1","volume-title":"A boundary tilting persepective on the phenomenon of adversarial examples. arXiv preprint arXiv:1608.07690","author":"Tanay Thomas","year":"2016","unstructured":"Thomas Tanay and Lewis Griffin . 2016. A boundary tilting persepective on the phenomenon of adversarial examples. arXiv preprint arXiv:1608.07690 ( 2016 ). Thomas Tanay and Lewis Griffin. 2016. A boundary tilting persepective on the phenomenon of adversarial examples. arXiv preprint arXiv:1608.07690 (2016)."},{"key":"e_1_3_2_1_55_1","volume-title":"The space of transferable adversarial examples. arXiv preprint arXiv:1704.03453","author":"Tram\u00e8r Florian","year":"2017","unstructured":"Florian Tram\u00e8r , Nicolas Papernot , Ian Goodfellow , Dan Boneh , and Patrick McDaniel . 2017. The space of transferable adversarial examples. arXiv preprint arXiv:1704.03453 ( 2017 ). Florian Tram\u00e8r, Nicolas Papernot, Ian Goodfellow, Dan Boneh, and Patrick McDaniel. 2017. The space of transferable adversarial examples. arXiv preprint arXiv:1704.03453 (2017)."},{"key":"e_1_3_2_1_56_1","volume-title":"Adversarially Learned Anomaly Detection. In 2018 IEEE International Conference on Data Mining (ICDM). IEEE, 727--736","author":"Zenati Houssam","year":"2018","unstructured":"Houssam Zenati , Manon Romain , Chuan-Sheng Foo , Bruno Lecouat , and Vijay Chandrasekhar . 2018 . Adversarially Learned Anomaly Detection. In 2018 IEEE International Conference on Data Mining (ICDM). IEEE, 727--736 . Houssam Zenati, Manon Romain, Chuan-Sheng Foo, Bruno Lecouat, and Vijay Chandrasekhar. 2018. Adversarially Learned Anomaly Detection. In 2018 IEEE International Conference on Data Mining (ICDM). IEEE, 727--736."},{"key":"e_1_3_2_1_57_1","doi-asserted-by":"publisher","DOI":"10.1145\/2339530.2339697"},{"key":"e_1_3_2_1_58_1","doi-asserted-by":"publisher","DOI":"10.1145\/279232.279236"},{"key":"e_1_3_2_1_59_1","volume-title":"Wei Cheng, Cristian Lumezanu, Daeki Cho, and Haifeng Chen.","author":"Zong Bo","year":"2018","unstructured":"Bo Zong , Qi Song , Martin Renqiang Min , Wei Cheng, Cristian Lumezanu, Daeki Cho, and Haifeng Chen. 2018 . Deep autoencoding gaussian mixture model for unsupervised anomaly detection. (2018). Bo Zong, Qi Song, Martin Renqiang Min, Wei Cheng, Cristian Lumezanu, Daeki Cho, and Haifeng Chen. 2018. Deep autoencoding gaussian mixture model for unsupervised anomaly detection. (2018)."}],"event":{"name":"ARES '19: 14th International Conference on Availability, Reliability and Security","location":"Canterbury CA United Kingdom","acronym":"ARES '19"},"container-title":["Proceedings of the 14th International Conference on Availability, Reliability and Security"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3339252.3339266","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3339252.3339266","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,17]],"date-time":"2025-06-17T23:44:17Z","timestamp":1750203857000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3339252.3339266"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2019,8,26]]},"references-count":59,"alternative-id":["10.1145\/3339252.3339266","10.1145\/3339252"],"URL":"https:\/\/doi.org\/10.1145\/3339252.3339266","relation":{},"subject":[],"published":{"date-parts":[[2019,8,26]]},"assertion":[{"value":"2019-08-26","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}