{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,2]],"date-time":"2026-05-02T14:58:42Z","timestamp":1777733922468,"version":"3.51.4"},"publisher-location":"New York, NY, USA","reference-count":42,"publisher":"ACM","license":[{"start":{"date-parts":[[2023,10,16]],"date-time":"2023-10-16T00:00:00Z","timestamp":1697414400000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2023,10,16]]},"DOI":"10.1145\/3607199.3607231","type":"proceedings-article","created":{"date-parts":[[2023,10,3]],"date-time":"2023-10-03T22:30:51Z","timestamp":1696372251000},"page":"330-345","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":11,"title":["False Sense of Security: Leveraging XAI to Analyze the Reasoning and True Performance of Context-less DGA Classifiers"],"prefix":"10.1145","author":[{"ORCID":"https:\/\/orcid.org\/0000-0001-7326-7273","authenticated-orcid":false,"given":"Arthur","family":"Drichel","sequence":"first","affiliation":[{"name":"RWTH Aachen University, Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-2569-1042","authenticated-orcid":false,"given":"Ulrike","family":"Meyer","sequence":"additional","affiliation":[{"name":"RWTH Aachen University, Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2023,10,16]]},"reference":[{"key":"e_1_3_2_1_1_1","volume-title":"iNNvestigate Neural Networks!Journal of Machine Learning Research 20, 93","author":"Alber Maximilian","year":"2019","unstructured":"Maximilian Alber, Sebastian Lapuschkin, Philipp Seegerer, Miriam H\u00e4gele, Kristof\u00a0T. Sch\u00fctt, Gr\u00e9goire Montavon, Wojciech Samek, Klaus-Robert M\u00fcller, Sven D\u00e4hne, and Pieter-Jan Kindermans. 2019. iNNvestigate Neural Networks!Journal of Machine Learning Research 20, 93 (2019). http:\/\/jmlr.org\/papers\/v20\/18-540.html."},{"key":"e_1_3_2_1_2_1","doi-asserted-by":"publisher","DOI":"10.1145\/2996758.2996767"},{"key":"e_1_3_2_1_3_1","volume-title":"USENIX Security Symposium. USENIX Association. https:\/\/www.usenix.org\/conference\/usenixsecurity12\/technical-sessions\/presentation\/antonakakis.","author":"Antonakakis Manos","year":"2012","unstructured":"Manos Antonakakis, Roberto Perdisci, Yacin Nadji, Nikolaos Vasiloglou, Saeed Abu-Nimeh, Wenke Lee, and David Dagon. 2012. From Throw-Away Traffic to Bots: Detecting the Rise of DGA-Based Malware. In USENIX Security Symposium. USENIX Association. https:\/\/www.usenix.org\/conference\/usenixsecurity12\/technical-sessions\/presentation\/antonakakis."},{"key":"e_1_3_2_1_4_1","volume-title":"Invariant Risk Minimization. arXiv:1907.02893","author":"Arjovsky Martin","year":"2019","unstructured":"Martin Arjovsky, L\u00e9on Bottou, Ishaan Gulrajani, and David Lopez-Paz. 2019. Invariant Risk Minimization. arXiv:1907.02893 (2019). https:\/\/arxiv.org\/abs\/1907.02893."},{"key":"e_1_3_2_1_5_1","volume-title":"Dos and Don\u2019ts of Machine Learning in Computer Security. In USENIX Security Symposium. USENIX Association. https:\/\/www.usenix.org\/conference\/usenixsecurity22\/presentation\/arp.","author":"Arp Daniel","year":"2022","unstructured":"Daniel Arp, Erwin Quiring, Feargus Pendlebury, Alexander Warnecke, Fabio Pierazzi, Christian Wressnegger, Lorenzo Cavallaro, and Konrad Rieck. 2022. Dos and Don\u2019ts of Machine Learning in Computer Security. In USENIX Security Symposium. USENIX Association. https:\/\/www.usenix.org\/conference\/usenixsecurity22\/presentation\/arp."},{"key":"e_1_3_2_1_6_1","doi-asserted-by":"publisher","DOI":"10.5555\/3305381.3305406"},{"key":"e_1_3_2_1_7_1","doi-asserted-by":"publisher","unstructured":"Pepa Atanasova Jakob\u00a0Grue Simonsen Christina Lioma and Isabelle Augenstein. 2020. A Diagnostic Study of Explainability Techniques for Text Classification. In Empirical Methods in Natural Language Processing. ACM. https:\/\/doi.org\/10.18653\/v1\/2020.emnlp-main.263.","DOI":"10.18653\/v1"},{"key":"e_1_3_2_1_8_1","doi-asserted-by":"publisher","DOI":"10.1145\/357830.357849"},{"key":"e_1_3_2_1_9_1","doi-asserted-by":"publisher","DOI":"10.1371\/journal.pone.0130140"},{"key":"e_1_3_2_1_10_1","doi-asserted-by":"publisher","DOI":"10.1145\/2584679"},{"key":"e_1_3_2_1_11_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52688.2022.01008"},{"key":"e_1_3_2_1_12_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-540-87987-9_8"},{"key":"e_1_3_2_1_13_1","doi-asserted-by":"publisher","DOI":"10.1145\/3465481.3465749"},{"key":"e_1_3_2_1_14_1","doi-asserted-by":"publisher","DOI":"10.1145\/3407023.3407030"},{"key":"e_1_3_2_1_15_1","doi-asserted-by":"publisher","DOI":"10.1145\/3407023.3409190"},{"key":"e_1_3_2_1_16_1","volume-title":"International Conference on Knowledge Discovery and Data Mining. AAAI Press. https:\/\/dl.acm.org\/doi\/10","author":"Ester Martin","year":"1996","unstructured":"Martin Ester, Hans-Peter Kriegel, J\u00f6rg Sander, and Xiaowei Xu. 1996. A Density-Based Algorithm for Discovering Clusters in Large Spatial Databases with Noise. In International Conference on Knowledge Discovery and Data Mining. AAAI Press. https:\/\/dl.acm.org\/doi\/10.5555\/3001460.3001507."},{"key":"e_1_3_2_1_17_1","doi-asserted-by":"publisher","DOI":"10.1038\/s42256-020-00257-z"},{"key":"e_1_3_2_1_18_1","doi-asserted-by":"publisher","DOI":"10.1109\/INM.2015.7140486"},{"key":"e_1_3_2_1_19_1","volume-title":"Conditional Variance Penalties and Domain Shift Robustness. arXiv:1710.11469","author":"Heinze-Deml Christina","year":"2017","unstructured":"Christina Heinze-Deml and Nicolai Meinshausen. 2017. Conditional Variance Penalties and Domain Shift Robustness. arXiv:1710.11469 (2017). https:\/\/arxiv.org\/abs\/1710.11469."},{"key":"e_1_3_2_1_20_1","volume-title":"Excessive Invariance Causes Adversarial Vulnerability. In International Conference on Learning Representations. https:\/\/openreview.net\/forum?id=BkfbpsAcF7.","author":"Jacobsen Joern-Henrik","year":"2019","unstructured":"Joern-Henrik Jacobsen, Jens Behrmann, Richard Zemel, and Matthias Bethge. 2019. Excessive Invariance Causes Adversarial Vulnerability. In International Conference on Learning Representations. https:\/\/openreview.net\/forum?id=BkfbpsAcF7."},{"key":"e_1_3_2_1_21_1","volume-title":"Tranco: A Research-Oriented Top Sites Ranking Hardened Against Manipulation. In Network and Distributed System Security Symposium","author":"Le\u00a0Pochat Victor","year":"2019","unstructured":"Victor Le\u00a0Pochat, Tom Van\u00a0Goethem, Samaneh Tajalizadehkhoob, Maciej Korczynski, and Wouter Joosen. 2019. Tranco: A Research-Oriented Top Sites Ranking Hardened Against Manipulation. In Network and Distributed System Security Symposium. Internet Society. https:\/\/www.ndss-symposium.org\/ndss-paper\/tranco-a-research-oriented-top-sites-ranking-hardened-against-manipulation\/."},{"key":"e_1_3_2_1_22_1","volume-title":"Advances in Neural Information Processing Systems, Vol.\u00a032. Curran Associates","author":"Li Yuanzhi","year":"2019","unstructured":"Yuanzhi Li, Colin Wei, and Tengyu Ma. 2019. Towards Explaining the Regularization Effect of Initial Large Learning Rate in Training Neural Networks. In Advances in Neural Information Processing Systems, Vol.\u00a032. Curran Associates, Inc.https:\/\/proceedings.neurips.cc\/paper\/2019\/hash\/bce9abf229ffd7e570818476ee5d7dde-Abstract.html."},{"key":"e_1_3_2_1_23_1","volume-title":"Detecting and Correcting for Label Shift with Black Box Predictors. In International Conference on Machine Learning. PMLR. https:\/\/proceedings.mlr.press\/v80\/lipton18a.html.","author":"Lipton Zachary","year":"2018","unstructured":"Zachary Lipton, Yu-Xiang Wang, and Alexander Smola. 2018. Detecting and Correcting for Label Shift with Black Box Predictors. In International Conference on Machine Learning. PMLR. https:\/\/proceedings.mlr.press\/v80\/lipton18a.html."},{"key":"e_1_3_2_1_24_1","volume-title":"Advances in Neural Information Processing Systems, Vol.\u00a030. Curran Associates","author":"Lundberg M","year":"2017","unstructured":"Scott\u00a0M Lundberg and Su-In Lee. 2017. A Unified Approach to Interpreting Model Predictions. In Advances in Neural Information Processing Systems, Vol.\u00a030. Curran Associates, Inc.https:\/\/proceedings.neurips.cc\/paper\/2017\/hash\/8a20a8621978632d76c43dfd28b67767-Abstract.html."},{"key":"e_1_3_2_1_25_1","volume-title":"Towards Deep Learning Models Resistant to Adversarial Attacks. arXiv:1706.06083","author":"Madry Aleksander","year":"2017","unstructured":"Aleksander Madry, Aleksandar Makelov, Ludwig Schmidt, Dimitris Tsipras, and Adrian Vladu. 2017. Towards Deep Learning Models Resistant to Adversarial Attacks. arXiv:1706.06083 (2017). https:\/\/arxiv.org\/abs\/1706.06083."},{"key":"e_1_3_2_1_26_1","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2019.2927075"},{"key":"e_1_3_2_1_27_1","volume-title":"USENIX Security Symposium. USENIX Association. https:\/\/www.usenix.org\/conference\/usenixsecurity19\/presentation\/pendlebury.","author":"Pendlebury Feargus","year":"2019","unstructured":"Feargus Pendlebury, Fabio Pierazzi, Roberto Jordaney, Johannes Kinder, and Lorenzo Cavallaro. 2019. TESSERACT: Eliminating Experimental Bias in Malware Classification across Space and Time. In USENIX Security Symposium. USENIX Association. https:\/\/www.usenix.org\/conference\/usenixsecurity19\/presentation\/pendlebury."},{"key":"e_1_3_2_1_28_1","volume-title":"Explaining Machine Learning DGA Detectors from DNS Traffic Data. arXiv:2208.05285","author":"Piras Giorgio","year":"2022","unstructured":"Giorgio Piras, Maura Pintor, Luca Demetrio, and Battista Biggio. 2022. Explaining Machine Learning DGA Detectors from DNS Traffic Data. arXiv:2208.05285 (2022). https:\/\/arxiv.org\/abs\/2208.05285."},{"key":"e_1_3_2_1_29_1","volume-title":"USENIX Security Symposium. USENIX Association. https:\/\/www.usenix.org\/conference\/usenixsecurity16\/technical-sessions\/presentation\/plohmann.","author":"Plohmann Daniel","year":"2016","unstructured":"Daniel Plohmann, Khaled Yakdan, Michael Klatt, Johannes Bader, and Elmar Gerhards-Padilla. 2016. A Comprehensive Measurement Study of Domain Generating Malware. In USENIX Security Symposium. USENIX Association. https:\/\/www.usenix.org\/conference\/usenixsecurity16\/technical-sessions\/presentation\/plohmann."},{"key":"e_1_3_2_1_31_1","volume-title":"An Investigation of Why Overparameterization Exacerbates Spurious Correlations. In International Conference on Machine Learning. PMLR. https:\/\/proceedings.mlr.press\/v119\/sagawa20a.html.","author":"Sagawa Shiori","year":"2020","unstructured":"Shiori Sagawa, Aditi Raghunathan, Pang\u00a0Wei Koh, and Percy Liang. 2020. An Investigation of Why Overparameterization Exacerbates Spurious Correlations. In International Conference on Machine Learning. PMLR. https:\/\/proceedings.mlr.press\/v119\/sagawa20a.html."},{"key":"e_1_3_2_1_32_1","volume-title":"eXpose: A Character-Level Convolutional Neural Network with Embeddings For Detecting Malicious URLs, File Paths and Registry Keys. arXiv:1702.08568","author":"Saxe Joshua","year":"2017","unstructured":"Joshua Saxe and Konstantin Berlin. 2017. eXpose: A Character-Level Convolutional Neural Network with Embeddings For Detecting Malicious URLs, File Paths and Registry Keys. arXiv:1702.08568 (2017). https:\/\/arxiv.org\/abs\/1702.08568."},{"key":"e_1_3_2_1_33_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-08509-8_11"},{"key":"e_1_3_2_1_34_1","volume-title":"USENIX Security Symposium. USENIX Association. https:\/\/www.usenix.org\/conference\/usenixsecurity18\/presentation\/schuppen.","author":"Sch\u00fcppen Samuel","year":"2018","unstructured":"Samuel Sch\u00fcppen, Dominik Teubert, Patrick Herrmann, and Ulrike Meyer. 2018. FANCI : Feature-based Automated NXDomain Classification and Intelligence. In USENIX Security Symposium. USENIX Association. https:\/\/www.usenix.org\/conference\/usenixsecurity18\/presentation\/schuppen."},{"key":"e_1_3_2_1_35_1","doi-asserted-by":"publisher","DOI":"10.1007\/s11063-017-9666-7"},{"key":"e_1_3_2_1_36_1","doi-asserted-by":"publisher","DOI":"10.1109\/BigData.2018.8621875"},{"key":"e_1_3_2_1_37_1","doi-asserted-by":"publisher","DOI":"10.1145\/3297280.3297467"},{"key":"e_1_3_2_1_38_1","doi-asserted-by":"publisher","DOI":"10.1109\/TrustCom50675.2020.00070"},{"key":"e_1_3_2_1_39_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.neucom.2017.11.018"},{"key":"e_1_3_2_1_40_1","doi-asserted-by":"publisher","DOI":"10.1109\/EuroSP48549.2020.00018"},{"key":"e_1_3_2_1_41_1","volume-title":"Predicting Domain Generation Algorithms with Long Short-Term Memory Networks. arXiv:1611.00791","author":"Woodbridge Jonathan","year":"2016","unstructured":"Jonathan Woodbridge, Hyrum\u00a0S. Anderson, Anjum Ahuja, and Daniel Grant. 2016. Predicting Domain Generation Algorithms with Long Short-Term Memory Networks. arXiv:1611.00791 (2016). https:\/\/arxiv.org\/abs\/1611.00791."},{"key":"e_1_3_2_1_42_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-31909-9_26"},{"key":"e_1_3_2_1_43_1","doi-asserted-by":"publisher","DOI":"10.1109\/IJCNN.2018.8489147"}],"event":{"name":"RAID 2023: The 26th International Symposium on Research in Attacks, Intrusions and Defenses","location":"Hong Kong China","acronym":"RAID 2023"},"container-title":["Proceedings of the 26th International Symposium on Research in Attacks, Intrusions and Defenses"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3607199.3607231","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3607199.3607231","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,17]],"date-time":"2025-06-17T16:37:35Z","timestamp":1750178255000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3607199.3607231"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2023,10,16]]},"references-count":42,"alternative-id":["10.1145\/3607199.3607231","10.1145\/3607199"],"URL":"https:\/\/doi.org\/10.1145\/3607199.3607231","relation":{},"subject":[],"published":{"date-parts":[[2023,10,16]]},"assertion":[{"value":"2023-10-16","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}