{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,11]],"date-time":"2026-07-11T16:47:26Z","timestamp":1783788446847,"version":"3.55.0"},"publisher-location":"New York, NY, USA","reference-count":38,"publisher":"ACM","license":[{"start":{"date-parts":[[2021,4,19]],"date-time":"2021-04-19T00:00:00Z","timestamp":1618790400000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0\/"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2021,4,19]]},"DOI":"10.1145\/3442381.3450044","type":"proceedings-article","created":{"date-parts":[[2021,6,3]],"date-time":"2021-06-03T19:37:45Z","timestamp":1622749065000},"page":"3603-3612","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":39,"title":["Robust Android Malware Detection against Adversarial Example Attacks"],"prefix":"10.1145","author":[{"given":"Heng","family":"Li","sequence":"first","affiliation":[{"name":"Huazhong University of Science and Technology, China"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Shiyao","family":"Zhou","sequence":"additional","affiliation":[{"name":"The Hong Kong Polytechnic University, Hong Kong"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Wei","family":"Yuan","sequence":"additional","affiliation":[{"name":"Huazhong University of Science and Technology, China"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Xiapu","family":"Luo","sequence":"additional","affiliation":[{"name":"The Hong Kong Polytechnic University, Hong Kong"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Cuiying","family":"Gao","sequence":"additional","affiliation":[{"name":"Huazhong University of Science and Technology, China"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Shuiyan","family":"Chen","sequence":"additional","affiliation":[{"name":"Huazhong University of Science and Technology, China"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"320","published-online":{"date-parts":[[2021,6,3]]},"reference":[{"key":"e_1_3_2_1_1_1","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2014.23247"},{"key":"e_1_3_2_1_2_1","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/K16-1002"},{"key":"e_1_3_2_1_3_1","doi-asserted-by":"crossref","unstructured":"Sen Chen Minhui Xue Lingling Fan Shuang Hao Lihua Xu Haojin Zhu and Bo Li. 2018. Automated poisoning attacks and defenses in malware detection systems: An adversarial machine learning approach. computers & security 73(2018) 326\u2013344.  Sen Chen Minhui Xue Lingling Fan Shuang Hao Lihua Xu Haojin Zhu and Bo Li. 2018. Automated poisoning attacks and defenses in malware detection systems: An adversarial machine learning approach. computers & security 73(2018) 326\u2013344.","DOI":"10.1016\/j.cose.2017.11.007"},{"key":"e_1_3_2_1_4_1","doi-asserted-by":"publisher","DOI":"10.1109\/INFOCOM.2019.8737430"},{"key":"e_1_3_2_1_5_1","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2019.2932228"},{"key":"e_1_3_2_1_6_1","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2019.2932228"},{"key":"e_1_3_2_1_7_1","volume-title":"29th {USENIX} Security Symposium ({USENIX} Security 20). 2343\u20132360.","author":"Chen Yizheng","unstructured":"Yizheng Chen , Shiqi Wang , Dongdong She , and Suman Jana . 2020. On Training Robust {PDF} Malware Classifiers . In 29th {USENIX} Security Symposium ({USENIX} Security 20). 2343\u20132360. Yizheng Chen, Shiqi Wang, Dongdong She, and Suman Jana. 2020. On Training Robust {PDF} Malware Classifiers. In 29th {USENIX} Security Symposium ({USENIX} Security 20). 2343\u20132360."},{"key":"e_1_3_2_1_8_1","volume-title":"Substitute Model Generation for Black-Box Adversarial Attack Based on Knowledge Distillation. In 2020 IEEE International Conference on Image Processing (ICIP). IEEE, 648\u2013652","author":"Cui Weiyu","year":"2020","unstructured":"Weiyu Cui , Xiaorui Li , Jiawei Huang , Wenyi Wang , Shuai Wang , and Jianwen Chen . 2020 . Substitute Model Generation for Black-Box Adversarial Attack Based on Knowledge Distillation. In 2020 IEEE International Conference on Image Processing (ICIP). IEEE, 648\u2013652 . Weiyu Cui, Xiaorui Li, Jiawei Huang, Wenyi Wang, Shuai Wang, and Jianwen Chen. 2020. Substitute Model Generation for Black-Box Adversarial Attack Based on Knowledge Distillation. In 2020 IEEE International Conference on Image Processing (ICIP). IEEE, 648\u2013652."},{"key":"e_1_3_2_1_9_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICASSP.2013.6638293"},{"key":"e_1_3_2_1_10_1","volume-title":"Proc. International Conference on Learning Representations.","author":"Goodfellow Ian","year":"2015","unstructured":"Ian Goodfellow , Jonathon Shlens , and Christian Szegedy . 2015 . Explaining and Harnessing Adversarial Examples . In Proc. International Conference on Learning Representations. Ian Goodfellow, Jonathon Shlens, and Christian Szegedy. 2015. Explaining and Harnessing Adversarial Examples. In Proc. International Conference on Learning Representations."},{"key":"e_1_3_2_1_11_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-66399-9_4"},{"key":"e_1_3_2_1_12_1","volume-title":"Proc. International Conference on Computer Communications.","author":"Higgins Irina","year":"2017","unstructured":"Irina Higgins , Loic Matthey , Arka Pal , Christopher\u00a0 P Burgess , Xavier Glorot , Matthew Botvinick , Shakir Mohamed , and Alexander Lerchner . 2017 . beta-VAE: Learning Basic Visual Concepts with a Constrained Variational Framework . In Proc. International Conference on Computer Communications. Irina Higgins, Loic Matthey, Arka Pal, Christopher\u00a0P Burgess, Xavier Glorot, Matthew Botvinick, Shakir Mohamed, and Alexander Lerchner. 2017. beta-VAE: Learning Basic Visual Concepts with a Constrained Variational Framework. In Proc. International Conference on Computer Communications."},{"key":"e_1_3_2_1_13_1","volume-title":"Proc. Neural Information Processing Systems Deep Learning Workshop.","author":"Hinton E","year":"2015","unstructured":"Geoffrey\u00a0 E Hinton , Oriol Vinyals , and Jeffrey Dean . 2015 . Distilling the Knowledge in a Neural Network . In Proc. Neural Information Processing Systems Deep Learning Workshop. Geoffrey\u00a0E Hinton, Oriol Vinyals, and Jeffrey Dean. 2015. Distilling the Knowledge in a Neural Network. In Proc. Neural Information Processing Systems Deep Learning Workshop."},{"key":"e_1_3_2_1_14_1","volume-title":"Generating Adversarial Malware Examples for Black-Box Attacks Based on GAN. arXiv: 1702.05983","author":"Hu Weiwei","year":"2017","unstructured":"Weiwei Hu and Ying Tan . 2017. Generating Adversarial Malware Examples for Black-Box Attacks Based on GAN. arXiv: 1702.05983 ( 2017 ). Weiwei Hu and Ying Tan. 2017. Generating Adversarial Malware Examples for Black-Box Attacks Based on GAN. arXiv: 1702.05983 (2017)."},{"key":"e_1_3_2_1_15_1","volume-title":"Proc. IEEE Security and Privacy Workshops.","author":"Huang Alex","year":"2018","unstructured":"Alex Huang , Abdullah Aldujaili , Erik Hemberg , and Unamay Oreilly . 2018 . Adversarial Deep Learning for Robust Detection of Binary Encoded Malware . In Proc. IEEE Security and Privacy Workshops. Alex Huang, Abdullah Aldujaili, Erik Hemberg, and Unamay Oreilly. 2018. Adversarial Deep Learning for Robust Detection of Binary Encoded Malware. In Proc. IEEE Security and Privacy Workshops."},{"key":"e_1_3_2_1_16_1","volume-title":"Proc. International Conference on Machine Learning. 2137\u20132146","author":"Ilyas Andrew","year":"2018","unstructured":"Andrew Ilyas , Logan Engstrom , Anish Athalye , and Jessy Lin . 2018 . Black-box Adversarial Attacks with Limited Queries and Information .. In Proc. International Conference on Machine Learning. 2137\u20132146 . Andrew Ilyas, Logan Engstrom, Anish Athalye, and Jessy Lin. 2018. Black-box Adversarial Attacks with Limited Queries and Information.. In Proc. International Conference on Machine Learning. 2137\u20132146."},{"key":"e_1_3_2_1_17_1","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2018.2866319"},{"key":"e_1_3_2_1_18_1","volume-title":"Proc. International Conference on Learning Representationse.","author":"Kingma P","year":"2014","unstructured":"Diederik\u00a0 P Kingma and Max Welling . 2014 . Auto-Encoding Variational Bayes . In Proc. International Conference on Learning Representationse. Diederik\u00a0P Kingma and Max Welling. 2014. Auto-Encoding Variational Bayes. In Proc. International Conference on Learning Representationse."},{"key":"e_1_3_2_1_19_1","volume-title":"Adversarial-Example Attacks towards Android Malware Detection System","author":"Li Heng","year":"2019","unstructured":"Heng Li , ShiYao Zhou , Wei Yuan , and Henry Leung . 2019. Adversarial-Example Attacks towards Android Malware Detection System . IEEE Systems Journal( 2019 ). Heng Li, ShiYao Zhou, Wei Yuan, and Henry Leung. 2019. Adversarial-Example Attacks towards Android Malware Detection System. IEEE Systems Journal(2019)."},{"key":"e_1_3_2_1_20_1","doi-asserted-by":"publisher","DOI":"10.1109\/TII.2017.2789219"},{"key":"e_1_3_2_1_21_1","volume-title":"Collecting Millions of Android Apps and Their Metadata for the Research Community. arXiv:1709.05281","author":"Li Li","year":"2017","unstructured":"Li Li , Jun Gao , M\u00e9d\u00e9ric Hurier , Pingfan Kong , Tegawend\u00e9\u00a0 F Bissyand\u00e9 , Alexandre Bartel , Jacques Klein , and Yves Le\u00a0Traon . 2017. AndroZoo++ : Collecting Millions of Android Apps and Their Metadata for the Research Community. arXiv:1709.05281 ( 2017 ). Li Li, Jun Gao, M\u00e9d\u00e9ric Hurier, Pingfan Kong, Tegawend\u00e9\u00a0F Bissyand\u00e9, Alexandre Bartel, Jacques Klein, and Yves Le\u00a0Traon. 2017. AndroZoo++: Collecting Millions of Android Apps and Their Metadata for the Research Community. arXiv:1709.05281 (2017)."},{"key":"e_1_3_2_1_22_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-28865-9_2"},{"key":"e_1_3_2_1_23_1","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2018.23158"},{"key":"e_1_3_2_1_24_1","doi-asserted-by":"publisher","DOI":"10.1145\/3274694.3274731"},{"key":"e_1_3_2_1_25_1","volume-title":"Proc. ACM Transactions on Privacy and Security.","author":"Mariconti Enrico","year":"2019","unstructured":"Enrico Mariconti , Lucky Onwuzurike , Panagiotis Andriotis , Emiliano De\u00a0Cristofaro , Gordon\u00a0 J Ross , and Gianluca Stringhini . 2019 . MAMADROID: Detecting Android Malware by Building Markov Chains of Behavioral Models . In Proc. ACM Transactions on Privacy and Security. Enrico Mariconti, Lucky Onwuzurike, Panagiotis Andriotis, Emiliano De\u00a0Cristofaro, Gordon\u00a0J Ross, and Gianluca Stringhini. 2019. MAMADROID: Detecting Android Malware by Building Markov Chains of Behavioral Models. In Proc. ACM Transactions on Privacy and Security."},{"key":"e_1_3_2_1_26_1","doi-asserted-by":"publisher","DOI":"10.1145\/3243734.3278494"},{"key":"e_1_3_2_1_27_1","volume-title":"97% of malicious mobile malware targets Android. SC Media UK News","author":"Millman Rene","year":"2015","unstructured":"Rene Millman . 2015. Updated : 97% of malicious mobile malware targets Android. SC Media UK News ( 2015 ). Rene Millman. 2015. Updated: 97% of malicious mobile malware targets Android. SC Media UK News (2015)."},{"key":"e_1_3_2_1_28_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2016.41"},{"key":"e_1_3_2_1_29_1","volume-title":"Proc. Conference on Data and Application Security and Privacy. 309\u2013320","author":"Suareztangil Guillermo","year":"2017","unstructured":"Guillermo Suareztangil , Santanu\u00a0Kumar Dash , Mansour Ahmadi , Johannes Kinder , Giorgio Giacinto , and Lorenzo Cavallaro . 2017 . DroidSieve: Fast and Accurate Classification of Obfuscated Android Malware . In Proc. Conference on Data and Application Security and Privacy. 309\u2013320 . Guillermo Suareztangil, Santanu\u00a0Kumar Dash, Mansour Ahmadi, Johannes Kinder, Giorgio Giacinto, and Lorenzo Cavallaro. 2017. DroidSieve: Fast and Accurate Classification of Obfuscated Android Malware. In Proc. Conference on Data and Application Security and Privacy. 309\u2013320."},{"key":"e_1_3_2_1_30_1","volume-title":"Proc. International Conference on Learning Representationse.","author":"Szegedy Christian","year":"2014","unstructured":"Christian Szegedy , Wojciech Zaremba , Ilya Sutskever , Joan Bruna , Dumitru Erhan , Ian Goodfellow , and Rob Fergus . 2014 . Intriguing properties of neural networks . In Proc. International Conference on Learning Representationse. Christian Szegedy, Wojciech Zaremba, Ilya Sutskever, Joan Bruna, Dumitru Erhan, Ian Goodfellow, and Rob Fergus. 2014. Intriguing properties of neural networks. In Proc. International Conference on Learning Representationse."},{"key":"e_1_3_2_1_31_1","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2017.2771228"},{"key":"e_1_3_2_1_32_1","doi-asserted-by":"publisher","DOI":"10.1145\/3319535.3363193"},{"key":"e_1_3_2_1_33_1","doi-asserted-by":"publisher","DOI":"10.1109\/EuroSP.2018.00040"},{"key":"e_1_3_2_1_34_1","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2018.23198"},{"key":"e_1_3_2_1_35_1","doi-asserted-by":"publisher","DOI":"10.1145\/3073559"},{"key":"e_1_3_2_1_36_1","unstructured":"W. Yuan Y. Jiang H. Li and M. Cai. 2019. A Lightweight On-Device Detection Method for Android Malware. IEEE Transactions on Systems Man and Cybernetics: Systems (2019) 1\u201312.  W. Yuan Y. Jiang H. Li and M. Cai. 2019. A Lightweight On-Device Detection Method for Android Malware. IEEE Transactions on Systems Man and Cybernetics: Systems (2019) 1\u201312."},{"key":"e_1_3_2_1_37_1","doi-asserted-by":"publisher","DOI":"10.1145\/2740070.2631434"},{"key":"e_1_3_2_1_38_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR42600.2020.00126"}],"event":{"name":"WWW '21: The Web Conference 2021","location":"Ljubljana Slovenia","acronym":"WWW '21","sponsor":["SIGWEB ACM Special Interest Group on Hypertext, Hypermedia, and Web"]},"container-title":["Proceedings of the Web Conference 2021"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3442381.3450044","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3442381.3450044","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,17]],"date-time":"2025-06-17T21:24:45Z","timestamp":1750195485000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3442381.3450044"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2021,4,19]]},"references-count":38,"alternative-id":["10.1145\/3442381.3450044","10.1145\/3442381"],"URL":"https:\/\/doi.org\/10.1145\/3442381.3450044","relation":{},"subject":[],"published":{"date-parts":[[2021,4,19]]},"assertion":[{"value":"2021-06-03","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}