{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,9,25]],"date-time":"2025-09-25T16:42:18Z","timestamp":1758818538270,"version":"3.44.0"},"publisher-location":"New York, NY, USA","reference-count":45,"publisher":"ACM","funder":[{"name":"Federal Ministry for Economic Affairs and Climate Action (BMWK)","award":["19A23009G"],"award-info":[{"award-number":["19A23009G"]}]}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2025,8,25]]},"DOI":"10.1145\/3709017.3737706","type":"proceedings-article","created":{"date-parts":[[2025,7,15]],"date-time":"2025-07-15T16:18:38Z","timestamp":1752596318000},"page":"87-102","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":0,"title":["FASER-IN: Evasion of Network Intrusion Detection Systems in Industrial Networks"],"prefix":"10.1145","author":[{"ORCID":"https:\/\/orcid.org\/0000-0001-9604-163X","authenticated-orcid":false,"given":"Pranav","family":"Shetty","sequence":"first","affiliation":[{"name":"Saarland University, Saarbr\u00fccken, Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-6903-9446","authenticated-orcid":false,"given":"Ankush","family":"Meshram","sequence":"additional","affiliation":[{"name":"KASTEL Security Research Labs, Vision and Fusion Laboratory (IES), Karlsruhe Institute of Technology, Karlsruhe, Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-5683-4499","authenticated-orcid":false,"given":"Markus","family":"Karch","sequence":"additional","affiliation":[{"name":"Fraunhofer Institute of Optronics, System Technologies and Image, Exploitation (IOSB), Karlsruhe, Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0009-0006-3295-7271","authenticated-orcid":false,"given":"Christian","family":"Haas","sequence":"additional","affiliation":[{"name":"Fraunhofer Institute of Optronics, System Technologies and Image, Exploitation (IOSB), Karlsruhe, Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-8424-2602","authenticated-orcid":false,"given":"Nils Ole","family":"Tippenhauer","sequence":"additional","affiliation":[{"name":"CISPA Helmholtz Center for Information Security, Saarbr\u00fccken, Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2025,8,25]]},"reference":[{"key":"e_1_3_2_1_1_1","first-page":"21","article-title":"MITRE ATT&CK for industrial control systems: Design and philosophy. The MITRE Corporation: Bedford","volume":"29","author":"Alexander Otis","year":"2020","unstructured":"Otis Alexander, Misha Belisle, and Jacob Steele. 2020. MITRE ATT&CK for industrial control systems: Design and philosophy. The MITRE Corporation: Bedford, MA, USA 29 (2020), 21--85.","journal-title":"MA, USA"},{"key":"e_1_3_2_1_2_1","doi-asserted-by":"publisher","DOI":"10.3390\/s22249825"},{"key":"e_1_3_2_1_3_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.jisa.2020.102717"},{"key":"e_1_3_2_1_4_1","volume-title":"Proceedings of the 2018 International conference on machine learning. PMLR, 274--283","author":"Athalye Anish","year":"2018","unstructured":"Anish Athalye, Nicholas Carlini, and David Wagner. 2018. Obfuscated gradients give a false sense of security: Circumventing defenses to adversarial examples. In Proceedings of the 2018 International conference on machine learning. PMLR, 274--283."},{"key":"e_1_3_2_1_5_1","volume-title":"A new perspective towards the development of robust data-driven intrusion detection for industrial control systems. Nuclear engineering and technology 52, 12","author":"Ayodeji Abiodun","year":"2020","unstructured":"Abiodun Ayodeji, Yong-kuo Liu, Nan Chao, and Li-qun Yang. 2020. A new perspective towards the development of robust data-driven intrusion detection for industrial control systems. Nuclear engineering and technology 52, 12 (2020), 2687--2698."},{"key":"e_1_3_2_1_6_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.sasc.2023.200050"},{"key":"e_1_3_2_1_7_1","doi-asserted-by":"publisher","DOI":"10.3390\/jcp1040037"},{"key":"e_1_3_2_1_8_1","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2020.3037500"},{"key":"e_1_3_2_1_9_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICNICONSMCL.2006.72"},{"key":"e_1_3_2_1_10_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2018.00016"},{"key":"e_1_3_2_1_11_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.ijcip.2018.08.002"},{"key":"e_1_3_2_1_12_1","volume-title":"Proceedings of the 37th International Conference on Machine Learning (Proceedings of Machine Learning Research","author":"Croce Francesco","year":"2020","unstructured":"Francesco Croce and Matthias Hein. 2020. Reliable evaluation of adversarial robustness with an ensemble of diverse parameter-free attacks. In Proceedings of the 37th International Conference on Machine Learning (Proceedings of Machine Learning Research, Vol. 119), Hal Daum\u00e9 III and Aarti Singh (Eds.). PMLR, 2206--2216. https:\/\/proceedings.mlr.press\/v119\/croce20b.html"},{"volume-title":"Decision Tree Attack - Adversarial Robustness Toolbox.","key":"e_1_3_2_1_13_1","unstructured":"decision tree attack [n.d.]. Decision Tree Attack - Adversarial Robustness Toolbox. Available at https:\/\/adversarial-robustness-toolbox.readthedocs.io\/en\/latest\/modules\/attacks\/evasion.html#decision-tree-attack. Accessed: 2025-03-01."},{"key":"e_1_3_2_1_14_1","volume-title":"Proc. Black Hat USA 2018","author":"Pinto Alessandro Di","year":"2018","unstructured":"Alessandro Di Pinto, Younes Dragoni, and Andrea Carcano. 2018. TRITON: The first ICS cyber attack on safety instrument systems. Proc. Black Hat USA 2018 (2018), 1--26."},{"key":"e_1_3_2_1_15_1","doi-asserted-by":"publisher","DOI":"10.3390\/app12020852"},{"key":"e_1_3_2_1_16_1","doi-asserted-by":"publisher","DOI":"10.1145\/3427228.3427660"},{"key":"e_1_3_2_1_17_1","doi-asserted-by":"publisher","DOI":"10.1109\/JIOT.2020.2970501"},{"key":"e_1_3_2_1_18_1","doi-asserted-by":"publisher","DOI":"10.1080\/00396338.2011.555586"},{"key":"e_1_3_2_1_19_1","volume-title":"A deep learning-based framework for conducting stealthy attacks in industrial control systems. arXiv preprint arXiv:1709.06397","author":"Feng Cheng","year":"2017","unstructured":"Cheng Feng, Tingting Li, Zhanxing Zhu, and Deeph Chana. 2017. A deep learning-based framework for conducting stealthy attacks in industrial control systems. arXiv preprint arXiv:1709.06397 (2017)."},{"key":"e_1_3_2_1_20_1","doi-asserted-by":"publisher","DOI":"10.1109\/IST55454.2022.9827763"},{"key":"e_1_3_2_1_21_1","volume-title":"Proceedings of the 2016 International Conference on Critical Information Infrastructures Security (CRITIS). Springer, 88--99","author":"Goh Jonathan","year":"2016","unstructured":"Jonathan Goh, Sridhar Adepu, Khurum Nazir Junejo, and Aditya Mathur. 2016. A dataset to support research in the design of secure water treatment systems. In Proceedings of the 2016 International Conference on Critical Information Infrastructures Security (CRITIS). Springer, 88--99."},{"key":"e_1_3_2_1_22_1","volume-title":"Proceedings of the twenty-ninth international conference on international joint conferences on artificial intelligence (IJCAI). 1244--1250","author":"Ng Kiong","year":"2021","unstructured":"Adam Goodge, Bryan Hooi, See Kiong Ng, and Wee Siong Ng. 2021. Robustness of autoencoders for anomaly detection under adversarial impact. In Proceedings of the twenty-ninth international conference on international joint conferences on artificial intelligence (IJCAI). 1244--1250."},{"key":"e_1_3_2_1_23_1","doi-asserted-by":"publisher","DOI":"10.1023\/B:SYNT.0000004904.91112.16"},{"key":"e_1_3_2_1_24_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.procs.2018.01.095"},{"key":"e_1_3_2_1_25_1","doi-asserted-by":"publisher","DOI":"10.5555\/3489212.3489288"},{"key":"e_1_3_2_1_26_1","doi-asserted-by":"publisher","DOI":"10.1109\/ACII.2013.47"},{"key":"e_1_3_2_1_27_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.ijcip.2021.100452"},{"key":"e_1_3_2_1_28_1","doi-asserted-by":"publisher","DOI":"10.1109\/ETFA52439.2022.9921672"},{"key":"e_1_3_2_1_29_1","volume-title":"Proceedings of the 2013 11th IEEE International Conference on Industrial Informatics (INDIN). IEEE, 670--675","author":"Krotofil Maryna","year":"2013","unstructured":"Maryna Krotofil and Dieter Gollmann. 2013. Industrial control systems security: What is happening?. In Proceedings of the 2013 11th IEEE International Conference on Industrial Informatics (INDIN). IEEE, 670--675."},{"key":"e_1_3_2_1_30_1","doi-asserted-by":"publisher","DOI":"10.1109\/JIOT.2017.2685596"},{"key":"e_1_3_2_1_31_1","doi-asserted-by":"publisher","DOI":"10.1145\/3433210.3437513"},{"key":"e_1_3_2_1_32_1","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2021.3071263"},{"key":"e_1_3_2_1_33_1","doi-asserted-by":"publisher","DOI":"10.1145\/3477403"},{"key":"e_1_3_2_1_34_1","doi-asserted-by":"publisher","DOI":"10.1109\/ETFA54631.2023.10275358"},{"key":"e_1_3_2_1_35_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICICTM.2016.7890812"},{"key":"e_1_3_2_1_36_1","doi-asserted-by":"publisher","DOI":"10.1186\/s42400-021-00095-5"},{"key":"e_1_3_2_1_37_1","doi-asserted-by":"publisher","unstructured":"Nicolas Papernot Patrick McDaniel and Ian Goodfellow. 2016. Transferability in Machine Learning: from Phenomena to Black-Box Attacks using Adversarial Samples. (2016). doi:10.48550\/arXiv.1605.07277","DOI":"10.48550\/arXiv.1605.07277"},{"key":"e_1_3_2_1_38_1","doi-asserted-by":"publisher","DOI":"10.1145\/3052973.3053009"},{"key":"e_1_3_2_1_39_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICETET.2008.252"},{"key":"e_1_3_2_1_40_1","volume-title":"Cyber attacks on power grids: Causes and propagation of cascading failures","author":"Rajkumar Vetrivel Subramaniam","year":"2023","unstructured":"Vetrivel Subramaniam Rajkumar, Alexandru \u015etefanov, Alfan Presekal, Peter Palensky, and Jos\u00e9 Luis Rueda Torres. 2023. Cyber attacks on power grids: Causes and propagation of cascading failures. IEEE Access (2023)."},{"volume-title":"d.]. RandomizedSearchCV - Scikit-Learn.","key":"e_1_3_2_1_41_1","unstructured":"randomizedsearchcv [n. d.]. RandomizedSearchCV - Scikit-Learn. Available at https:\/\/scikit-learn.org\/stable\/modules\/generated\/sklearn.model_selection.RandomizedSearchCV.html. Accessed: 2025-03-01."},{"volume-title":"d.]","key":"e_1_3_2_1_42_1","unstructured":"scapy [n. d.]. Scapy: Packet Manipulation Library. Available at https:\/\/scapy.readthedocs.io\/en\/latest\/. Accessed: 2025-03-01."},{"key":"e_1_3_2_1_43_1","volume-title":"Proceedings of the 25th USENIX Security Symposium (USENIX Security 16)","author":"Tram\u00e8r Florian","year":"2016","unstructured":"Florian Tram\u00e8r, Fan Zhang, Ari Juels, Michael K Reiter, and Thomas Ristenpart. 2016. Stealing machine learning models via prediction {APIs}. In Proceedings of the 25th USENIX Security Symposium (USENIX Security 16). 601--618."},{"key":"e_1_3_2_1_44_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICAIQSA64000.2024.10882284"},{"key":"e_1_3_2_1_45_1","doi-asserted-by":"publisher","DOI":"10.1109\/TrustCom50675.2020.00121"}],"event":{"name":"ASIA CCS '25: ACM Asia Conference on Computer and Communications Security","sponsor":["SIGSAC ACM Special Interest Group on Security, Audit, and Control"],"location":"Hanoi Vietnam","acronym":"ASIA CCS '25"},"container-title":["Proceedings of the 11th ACM Cyber-Physical System Security Workshop"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3709017.3737706","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,9,25]],"date-time":"2025-09-25T16:20:37Z","timestamp":1758817237000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3709017.3737706"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,8,25]]},"references-count":45,"alternative-id":["10.1145\/3709017.3737706","10.1145\/3709017"],"URL":"https:\/\/doi.org\/10.1145\/3709017.3737706","relation":{},"subject":[],"published":{"date-parts":[[2025,8,25]]},"assertion":[{"value":"2025-08-25","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}