{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,5]],"date-time":"2026-06-05T04:25:30Z","timestamp":1780633530815,"version":"3.54.1"},"publisher-location":"New York, NY, USA","reference-count":39,"publisher":"ACM","license":[{"start":{"date-parts":[[2024,6,5]],"date-time":"2024-06-05T00:00:00Z","timestamp":1717545600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"funder":[{"DOI":"10.13039\/501100006374","name":"Japan Society for the Promotion of Science","doi-asserted-by":"publisher","award":["JP23H03361"],"award-info":[{"award-number":["JP23H03361"]}],"id":[{"id":"10.13039\/501100006374","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100006374","name":"Agence Nationale de la Recherche","doi-asserted-by":"publisher","award":["ANR-20-CE39-0011"],"award-info":[{"award-number":["ANR-20-CE39-0011"]}],"id":[{"id":"10.13039\/501100006374","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2024,6,5]]},"DOI":"10.1145\/3655693.3655714","type":"proceedings-article","created":{"date-parts":[[2024,6,4]],"date-time":"2024-06-04T18:22:10Z","timestamp":1717525330000},"page":"65-73","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":11,"title":["XAI-driven Adversarial Attacks on Network Intrusion Detectors"],"prefix":"10.1145","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-6601-5710","authenticated-orcid":false,"given":"Satoshi","family":"Okada","sequence":"first","affiliation":[{"name":"University of Tokyo, Japan"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-4864-5380","authenticated-orcid":false,"given":"Houda","family":"Jmila","sequence":"additional","affiliation":[{"name":"Universite Paris-Saclay, France"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0009-0003-0741-3238","authenticated-orcid":false,"given":"Kunio","family":"Akashi","sequence":"additional","affiliation":[{"name":"University of Tokyo, Japan"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0009-0003-0089-7997","authenticated-orcid":false,"given":"Takuho","family":"Mitsunaga","sequence":"additional","affiliation":[{"name":"INIAD, Toyo University, Japan"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0009-0006-6287-9606","authenticated-orcid":false,"given":"Yuji","family":"Sekiya","sequence":"additional","affiliation":[{"name":"University of Tokyo, Japan"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-2660-5927","authenticated-orcid":false,"given":"Hideki","family":"Takase","sequence":"additional","affiliation":[{"name":"University of Tokyo, Japan"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-8150-6617","authenticated-orcid":false,"given":"Gregory","family":"Blanc","sequence":"additional","affiliation":[{"name":"TELECOM SudParis, France"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0009-0005-6505-1903","authenticated-orcid":false,"given":"Hiroshi","family":"Nakamura","sequence":"additional","affiliation":[{"name":"University of Tokyo, Japan"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"320","published-online":{"date-parts":[[2024,6,5]]},"reference":[{"key":"e_1_3_2_1_1_1","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2018.2870052"},{"key":"e_1_3_2_1_2_1","doi-asserted-by":"publisher","DOI":"10.1109\/NCA.2019.8935039"},{"key":"e_1_3_2_1_3_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICATCCT.2015.7456901"},{"key":"e_1_3_2_1_4_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.patcog.2018.07.023"},{"key":"e_1_3_2_1_5_1","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2021.3088661"},{"key":"e_1_3_2_1_6_1","doi-asserted-by":"publisher","DOI":"10.1109\/COMST.2015.2494502"},{"key":"e_1_3_2_1_7_1","doi-asserted-by":"publisher","DOI":"10.1109\/SSCI50451.2021.9660011"},{"key":"e_1_3_2_1_8_1","doi-asserted-by":"publisher","DOI":"10.23919\/MIPRO.2018.8400040"},{"key":"e_1_3_2_1_9_1","volume-title":"Xplique: A Deep Learning Explainability Toolbox. Workshop on Explainable Artificial Intelligence for Computer Vision (CVPR)","author":"Fel Thomas","year":"2022","unstructured":"Thomas Fel, Lucas Hervier, David Vigouroux, Antonin Poche, Justin Plakoo, Remi Cadene, Mathieu Chalvidal, Julien Colin, Thibaut Boissin, Louis Bethune, Agustin Picard, Claire Nicodeme, Laurent Gardes, Gregory Flandin, and Thomas Serre. 2022. Xplique: A Deep Learning Explainability Toolbox. Workshop on Explainable Artificial Intelligence for Computer Vision (CVPR) (2022)."},{"key":"e_1_3_2_1_10_1","volume-title":"3rd International Conference on Learning Representations, ICLR","author":"Goodfellow J.","year":"2015","unstructured":"Ian\u00a0J. Goodfellow, Jonathon Shlens, and Christian Szegedy. 2015. Explaining and Harnessing Adversarial Examples. In 3rd International Conference on Learning Representations, ICLR 2015, San Diego, CA, USA, May 7-9, 2015, Conference Track Proceedings, Yoshua Bengio and Yann LeCun (Eds.)."},{"key":"e_1_3_2_1_11_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.cosrev.2022.100529"},{"key":"e_1_3_2_1_12_1","volume-title":"Proceedings of the 36th International Conference on Machine Learning, ICML 2019","author":"Guo Chuan","year":"2019","unstructured":"Chuan Guo, Jacob\u00a0R. Gardner, Yurong You, Andrew\u00a0Gordon Wilson, and Kilian\u00a0Q. Weinberger. 2019. Simple Black-box Adversarial Attacks. In Proceedings of the 36th International Conference on Machine Learning, ICML 2019, 9-15 June 2019, Long Beach, California, USA(Proceedings of Machine Learning Research, Vol.\u00a097), Kamalika Chaudhuri and Ruslan Salakhutdinov (Eds.). PMLR, 2484\u20132493."},{"key":"e_1_3_2_1_13_1","doi-asserted-by":"publisher","DOI":"10.1109\/JSAC.2021.3087242"},{"key":"e_1_3_2_1_14_1","doi-asserted-by":"publisher","DOI":"10.1145\/3359992.3366642"},{"key":"e_1_3_2_1_15_1","doi-asserted-by":"publisher","DOI":"10.1109\/JIOT.2020.3019225"},{"key":"e_1_3_2_1_16_1","first-page":"e4","article-title":"Improving Network Intrusion Detection Classifiers by Non-payload-Based Exploit-Independent Obfuscations","volume":"5","author":"Homoliak Ivan","year":"2019","unstructured":"Ivan Homoliak, Martin Teknos, Mart\u00edn Ochoa, Dominik Breitenbacher, Saeid Hosseini, and Petr Han\u00e1cek. 2019. Improving Network Intrusion Detection Classifiers by Non-payload-Based Exploit-Independent Obfuscations: An Adversarial Approach. EAI Endorsed Trans. Security Safety 5, 17 (2019), e4.","journal-title":"An Adversarial Approach. EAI Endorsed Trans. Security Safety"},{"key":"e_1_3_2_1_17_1","first-page":"e2","article-title":"A Deep Learning Approach for Network Intrusion Detection System","volume":"3","author":"Javaid Y.","year":"2016","unstructured":"Ahmad\u00a0Y. Javaid, Quamar Niyaz, Weiqing Sun, and Mansoor Alam. 2016. A Deep Learning Approach for Network Intrusion Detection System. EAI Endorsed Trans. Security Safety 3, 9 (2016), e2.","journal-title":"EAI Endorsed Trans. Security Safety"},{"key":"e_1_3_2_1_18_1","doi-asserted-by":"publisher","DOI":"10.1109\/TITS.2021.3059261"},{"key":"e_1_3_2_1_19_1","doi-asserted-by":"publisher","DOI":"10.1145\/3592307.3592342"},{"key":"e_1_3_2_1_20_1","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2021.3117075"},{"key":"e_1_3_2_1_21_1","doi-asserted-by":"publisher","DOI":"10.1007\/s10586-017-1117-8"},{"key":"e_1_3_2_1_22_1","doi-asserted-by":"publisher","DOI":"10.1109\/MVT.2020.3017181"},{"key":"e_1_3_2_1_23_1","volume-title":"PAKDD 2022, Chengdu, China, May 16-19, 2022, Proceedings, Part III(Lecture Notes in Computer Science, Vol.\u00a013282)","author":"Lin Zilong","year":"2022","unstructured":"Zilong Lin, Yong Shi, and Zhi Xue. 2022. IDSGAN: Generative Adversarial Networks for Attack Generation Against Intrusion Detection. In Advances in Knowledge Discovery and Data Mining - 26th Pacific-Asia Conference, PAKDD 2022, Chengdu, China, May 16-19, 2022, Proceedings, Part III(Lecture Notes in Computer Science, Vol.\u00a013282), Jo\u00e3o Gama, Tianrui Li, Yang Yu, Enhong Chen, Yu\u00a0Zheng, and Fei Teng (Eds.). Springer, 79\u201391."},{"key":"e_1_3_2_1_24_1","volume-title":"CRiSIS 2020","author":"Merzouk Mohamed\u00a0Amine","year":"2020","unstructured":"Mohamed\u00a0Amine Merzouk, Fr\u00e9d\u00e9ric Cuppens, Nora Boulahia-Cuppens, and Reda Yaich. 2020. A Deeper Analysis of Adversarial Examples in Intrusion Detection. In Risks and Security of Internet and Systems - 15th International Conference, CRiSIS 2020, Paris, France, November 4-6, 2020, Revised Selected Papers(Lecture Notes in Computer Science, Vol.\u00a012528), Joaqu\u00edn Garc\u00eda-Alfaro, Jean Leneutre, Nora Cuppens, and Reda Yaich (Eds.). Springer, 67\u201384."},{"key":"e_1_3_2_1_25_1","doi-asserted-by":"publisher","DOI":"10.1007\/s12243-022-00910-1"},{"key":"e_1_3_2_1_26_1","first-page":"3523","article-title":"Image Segmentation Using Deep Learning: A Survey","volume":"44","author":"Minaee Shervin","year":"2022","unstructured":"Shervin Minaee, Yuri Boykov, Fatih Porikli, Antonio Plaza, Nasser Kehtarnavaz, and Demetri Terzopoulos. 2022. Image Segmentation Using Deep Learning: A Survey. IEEE Trans. Pattern Anal. Mach. Intell. 44, 7 (2022), 3523\u20133542.","journal-title":"IEEE Trans. Pattern Anal. Mach. Intell."},{"key":"e_1_3_2_1_27_1","volume-title":"Kitsune: An Ensemble of Autoencoders for Online Network Intrusion Detection. In 25th Annual Network and Distributed System Security Symposium, NDSS 2018","author":"Mirsky Yisroel","year":"2018","unstructured":"Yisroel Mirsky, Tomer Doitshman, Yuval Elovici, and Asaf Shabtai. 2018. Kitsune: An Ensemble of Autoencoders for Online Network Intrusion Detection. In 25th Annual Network and Distributed System Security Symposium, NDSS 2018, San Diego, California, USA, February 18-21, 2018. The Internet Society."},{"key":"e_1_3_2_1_28_1","volume-title":"Adversarial Attack Against DoS Intrusion Detection: An Improved Boundary-Based Method. In 31st IEEE International Conference on Tools with Artificial Intelligence, ICTAI 2019","author":"Peng Xiao","year":"2019","unstructured":"Xiao Peng, Weiqing Huang, and Zhixin Shi. 2019. Adversarial Attack Against DoS Intrusion Detection: An Improved Boundary-Based Method. In 31st IEEE International Conference on Tools with Artificial Intelligence, ICTAI 2019, Portland, OR, USA, November 4-6, 2019. IEEE, 1288\u20131295."},{"key":"e_1_3_2_1_29_1","volume-title":"Intriguing Properties of Adversarial ML Attacks in the Problem Space. In 2020 IEEE Symposium on Security and Privacy, SP 2020","author":"Pierazzi Fabio","year":"2020","unstructured":"Fabio Pierazzi, Feargus Pendlebury, Jacopo Cortellazzi, and Lorenzo Cavallaro. 2020. Intriguing Properties of Adversarial ML Attacks in the Problem Space. In 2020 IEEE Symposium on Security and Privacy, SP 2020, San Francisco, CA, USA, May 18-21, 2020. IEEE, 1332\u20131349."},{"key":"e_1_3_2_1_30_1","volume-title":"Sai Sree\u00a0Laya Chukkapalli, and Anupam Joshi","author":"Piplai Aritran","year":"2020","unstructured":"Aritran Piplai, Sai Sree\u00a0Laya Chukkapalli, and Anupam Joshi. 2020. NAttack! Adversarial Attacks to bypass a GAN based classifier trained to detect Network intrusion. In 6th IEEE International Conference on Big Data Security on Cloud, IEEE International Conference on High Performance and Smart Computing, and IEEE International Conference on Intelligent Data and Security, BigDataSecurity\/HPSC\/IDS 2020, Baltimore, MD, USA, May 25-27, 2020. IEEE, 49\u201354."},{"key":"e_1_3_2_1_31_1","doi-asserted-by":"publisher","DOI":"10.1145\/3178454"},{"key":"e_1_3_2_1_32_1","volume-title":"d.]. Cross-site scripting (XSS) cheat sheet. Retrieved","author":"Research PortSwigger","year":"2024","unstructured":"PortSwigger Research. [n. d.]. Cross-site scripting (XSS) cheat sheet. Retrieved January 2, 2024 from https:\/\/portswigger.net\/web-security\/cross-site-scripting\/cheat-sheet"},{"key":"e_1_3_2_1_33_1","doi-asserted-by":"publisher","DOI":"10.1038\/s42256-019-0048-x"},{"key":"e_1_3_2_1_34_1","doi-asserted-by":"publisher","DOI":"10.5220\/0006639801080116"},{"key":"e_1_3_2_1_35_1","volume-title":"Towards Systematic Evaluation of the Evadability of Bot\/Botnet Detection Methods. In 2nd USENIX Workshop on Offensive Technologies, WOOT\u201908","author":"Stinson Elizabeth","year":"2008","unstructured":"Elizabeth Stinson and John\u00a0C. Mitchell. 2008. Towards Systematic Evaluation of the Evadability of Bot\/Botnet Detection Methods. In 2nd USENIX Workshop on Offensive Technologies, WOOT\u201908, San Jose, CA, USA, July 28, 2008, Proceedings, Dan Boneh, Tal Garfinkel, and Dug Song (Eds.). USENIX Association."},{"key":"e_1_3_2_1_36_1","volume-title":"Proceedings of the 34th International Conference on Machine Learning, ICML 2017","author":"Sundararajan Mukund","year":"2017","unstructured":"Mukund Sundararajan, Ankur Taly, and Qiqi Yan. 2017. Axiomatic Attribution for Deep Networks. In Proceedings of the 34th International Conference on Machine Learning, ICML 2017, Sydney, NSW, Australia, 6-11 August 2017(Proceedings of Machine Learning Research, Vol.\u00a070), Doina Precup and Yee\u00a0Whye Teh (Eds.). PMLR, 3319\u20133328."},{"key":"e_1_3_2_1_37_1","volume-title":"2nd International Conference on Learning Representations, ICLR 2014, Banff, AB, Canada, April 14-16, 2014, Conference Track Proceedings, Yoshua Bengio and Yann LeCun (Eds.).","author":"Szegedy Christian","year":"2014","unstructured":"Christian Szegedy, Wojciech Zaremba, Ilya Sutskever, Joan Bruna, Dumitru Erhan, Ian\u00a0J. Goodfellow, and Rob Fergus. 2014. Intriguing properties of neural networks. In 2nd International Conference on Learning Representations, ICLR 2014, Banff, AB, Canada, April 14-16, 2014, Conference Track Proceedings, Yoshua Bengio and Yann LeCun (Eds.)."},{"key":"e_1_3_2_1_38_1","doi-asserted-by":"publisher","DOI":"10.1109\/WINCOM.2016.7777224"},{"key":"e_1_3_2_1_39_1","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2018.2854599"}],"event":{"name":"EICC 2024: European Interdisciplinary Cybersecurity Conference","location":"Xanthi Greece","acronym":"EICC 2024"},"container-title":["European Interdisciplinary Cybersecurity Conference"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3655693.3655714","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3655693.3655714","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,8,29]],"date-time":"2025-08-29T16:19:40Z","timestamp":1756484380000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3655693.3655714"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024,6,5]]},"references-count":39,"alternative-id":["10.1145\/3655693.3655714","10.1145\/3655693"],"URL":"https:\/\/doi.org\/10.1145\/3655693.3655714","relation":{},"subject":[],"published":{"date-parts":[[2024,6,5]]},"assertion":[{"value":"2024-06-05","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}