{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,13]],"date-time":"2026-06-13T15:55:50Z","timestamp":1781366150033,"version":"3.54.1"},"publisher-location":"New York, NY, USA","reference-count":29,"publisher":"ACM","license":[{"start":{"date-parts":[[2026,3,11]],"date-time":"2026-03-11T00:00:00Z","timestamp":1773187200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0\/legalcode"}],"funder":[{"name":"JSPS KAKENHI","award":["JP22K12037"],"award-info":[{"award-number":["JP22K12037"]}]}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2026,3,11]]},"DOI":"10.1145\/3803291.3803336","type":"proceedings-article","created":{"date-parts":[[2026,6,13]],"date-time":"2026-06-13T15:29:06Z","timestamp":1781364546000},"page":"510-516","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":0,"title":["Improving the Accuracy of NIDS Using a Network Simulator to Prevent Lateral Movement"],"prefix":"10.1145","author":[{"ORCID":"https:\/\/orcid.org\/0009-0005-5038-0499","authenticated-orcid":false,"given":"Jun'ichiro","family":"Hara","sequence":"first","affiliation":[{"name":"Ritsumeikan University, Ibaraki, Osaka, Japan"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-7535-5840","authenticated-orcid":false,"given":"Koichi","family":"Mouri","sequence":"additional","affiliation":[{"name":"Ritsumeikan University, Ibaraki, Osaka, Japan"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0009-0007-9487-5738","authenticated-orcid":false,"given":"Masami","family":"Yoshida","sequence":"additional","affiliation":[{"name":"Ritsumeikan University, Ibaraki, Osaka, Japan"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-8633-4383","authenticated-orcid":false,"given":"Eiji","family":"Takimoto","sequence":"additional","affiliation":[{"name":"Ritsumeikan University, Ibaraki, Osaka, Japan and Nara Women's University, Nara, Nara, Japan"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"320","published-online":{"date-parts":[[2026,6,13]]},"reference":[{"key":"e_1_3_3_1_2_2","doi-asserted-by":"publisher","unstructured":"Ernest Akpaku Jinfu Chen Mukhtar Ahmed William Leslie Brown-Acquaye Francis Kwadzo\u00a0Agbenyegah and Rexford Nii Ayitey\u00a0Sosu. 2025. Detecting encrypted malicious traffic with HEAT: a header-focused deep learning approach. Comput. J. (08 2025) bxaf093. 10.1093\/comjnl\/bxaf093 arXiv:https:\/\/academic.oup.com\/comjnl\/advance-article-pdf\/doi\/10.1093\/comjnl\/bxaf093\/63928106\/bxaf093.pdf","DOI":"10.1093\/comjnl\/bxaf093"},{"key":"e_1_3_3_1_3_2","doi-asserted-by":"publisher","DOI":"10.1145\/2996758.2996768"},{"key":"e_1_3_3_1_4_2","doi-asserted-by":"publisher","DOI":"10.1145\/3097983.3098163"},{"key":"e_1_3_3_1_5_2","unstructured":"Blake Anderson Subharthi Paul and David McGrew. 2016. Deciphering Malware\u2019s use of TLS (without Decryption). arxiv:https:\/\/arXiv.org\/abs\/1607.01639\u00a0[cs.CR] https:\/\/arxiv.org\/abs\/1607.01639"},{"key":"e_1_3_3_1_6_2","volume-title":"Snort","author":"Inc. Cisco Systems,","year":"2025","unstructured":"Cisco Systems, Inc.2025. Snort. https:\/\/www.snort.orgRetrieved December 3, 2025 from"},{"key":"e_1_3_3_1_7_2","doi-asserted-by":"publisher","DOI":"10.1145\/3460120.3484585"},{"key":"e_1_3_3_1_8_2","unstructured":"Chuanpu Fu Qi Li and Ke Xu. 2023. Detecting Unknown Encrypted Malicious Traffic in Real Time via Flow Interaction Graph Analysis. arxiv:https:\/\/arXiv.org\/abs\/2301.13686\u00a0[cs.CR] https:\/\/arxiv.org\/abs\/2301.13686"},{"key":"e_1_3_3_1_9_2","doi-asserted-by":"publisher","unstructured":"Gibran Gomez Platon Kotzias Matteo Dell\u2019Amico Leyla Bilge Juan Caballero and Vincenzo Conti. 2023. Unsupervised Detection and Clustering of Malicious TLS Flows. Sec. and Commun. Netw. 2023 (Jan. 2023) 17. 10.1155\/2023\/3676692","DOI":"10.1155\/2023\/3676692"},{"key":"e_1_3_3_1_10_2","doi-asserted-by":"publisher","unstructured":"Neha Gupta Vinita Jindal and Punam Bedi. 2022. CSE-IDS: Using cost-sensitive deep learning and ensemble algorithms to handle class imbalance in network-based intrusion detection systems. Computers & Security 112 (2022) 102499. 10.1016\/j.cose.2021.102499","DOI":"10.1016\/j.cose.2021.102499"},{"key":"e_1_3_3_1_11_2","first-page":"3093","volume-title":"30th USENIX Security Symposium (USENIX Security 21)","author":"Ho Grant","year":"2021","unstructured":"Grant Ho, Mayank Dhiman, Devdatta Akhawe, Vern Paxson, Stefan Savage, Geoffrey\u00a0M. Voelker, and David Wagner. 2021. Hopper: Modeling and Detecting Lateral Movement. In 30th USENIX Security Symposium (USENIX Security 21). USENIX Association, 3093\u20133110. https:\/\/www.usenix.org\/conference\/usenixsecurity21\/presentation\/ho"},{"key":"e_1_3_3_1_12_2","doi-asserted-by":"publisher","unstructured":"Richard Holdbrook Olusola Odeyomi Sun Yi and Kaushik Roy. 2024. Network-Based Intrusion Detection for Industrial and Robotics Systems: A Comprehensive Survey. Electronics 13 22 (2024). 10.3390\/electronics13224440","DOI":"10.3390\/electronics13224440"},{"key":"e_1_3_3_1_13_2","doi-asserted-by":"publisher","unstructured":"Isaiah\u00a0J. King and H.\u00a0Howie Huang. 2023. Euler: Detecting Network Lateral Movement via Scalable Temporal Link Prediction. ACM Trans. Priv. Secur. 26 3 Article 35 (June 2023) 36\u00a0pages. 10.1145\/3588771","DOI":"10.1145\/3588771"},{"key":"e_1_3_3_1_14_2","doi-asserted-by":"publisher","unstructured":"Hee-Yong Kwon Taesic Kim and Mun-Kyu Lee. 2022. Advanced Intrusion Detection Combining Signature-Based and Behavior-Based Detection Methods. Electronics 11 6 (2022). 10.3390\/electronics11060867","DOI":"10.3390\/electronics11060867"},{"key":"e_1_3_3_1_15_2","doi-asserted-by":"publisher","DOI":"10.1109\/ICHI48887.2020.9374302"},{"key":"e_1_3_3_1_16_2","volume-title":"Google Cloud Security Special Report: Mandiant M-Trends 2024","year":"2024","unstructured":"Mandiant. 2024. Google Cloud Security Special Report: Mandiant M-Trends 2024. https:\/\/services.google.com\/fh\/files\/misc\/m-trends-2024.pdfRetrieved December 3, 2025 from"},{"key":"e_1_3_3_1_17_2","doi-asserted-by":"publisher","unstructured":"Jovana Mijalkovic and Angelo Spognardi. 2022. Reducing the False Negative Rate in Deep Learning Based Network Intrusion Detection Systems. Algorithms 15 8 (2022). 10.3390\/a15080258","DOI":"10.3390\/a15080258"},{"key":"e_1_3_3_1_18_2","doi-asserted-by":"publisher","unstructured":"Yisroel Mirsky Tomer Doitshman Yuval Elovici and Asaf Shabtai. 2018. Kitsune: An Ensemble of Autoencoders for Online Network Intrusion Detection. Network and Distributed Systems Security (NDSS) Symposium 2018 (2018). 10.14722\/ndss.2018.23204","DOI":"10.14722\/ndss.2018.23204"},{"key":"e_1_3_3_1_19_2","volume-title":"Lateral Movement","author":"ATT&CK MITRE","year":"2025","unstructured":"MITRE ATT&CK. 2025. Lateral Movement. https:\/\/attack.mitre.org\/Retrieved December 3, 2025 from"},{"key":"e_1_3_3_1_20_2","volume-title":"Tap Bridge Model","author":"Project ns-3","unstructured":"ns-3 Project. [n.d.]. Tap Bridge Model. https:\/\/www.nsnam.org\/docs\/release\/3.8\/doxygen\/group___tap_bridge_model.htmlRetrieved December 3, 2025 from"},{"key":"e_1_3_3_1_21_2","volume-title":"ns-3","author":"Project ns-3","year":"2025","unstructured":"ns-3 Project. 2025. ns-3. https:\/\/www.nsnam.org\/Retrieved December 3, 2025 from"},{"key":"e_1_3_3_1_22_2","doi-asserted-by":"publisher","unstructured":"Satoshi Okada Yosuke Katano Yukihiro Kozai and Takuho Mitsunaga. 2024. Predicting and Visualizing Lateral Movements Based on ATT&CK and Quantification Theory Type 3. J. Cases Inf. Technol. 26 1 (March 2024) 1\u201314. 10.4018\/JCIT.340722","DOI":"10.4018\/JCIT.340722"},{"key":"e_1_3_3_1_23_2","doi-asserted-by":"publisher","unstructured":"Eva Papadogiannaki and Sotiris Ioannidis. 2021. Acceleration of Intrusion Detection in Encrypted Network Traffic Using Heterogeneous Hardware. Sensors 21 4 (2021). 10.3390\/s21041140","DOI":"10.3390\/s21041140"},{"key":"e_1_3_3_1_24_2","volume-title":"OpenSSH","author":"Project The OpenSSH","year":"2025","unstructured":"The OpenSSH Project. 2025. OpenSSH. https:\/\/www.openssh.comRetrieved December 3, 2025 from"},{"key":"e_1_3_3_1_25_2","volume-title":"2024 Data Breach Investigations Report","author":"Business Verizon","year":"2024","unstructured":"Verizon Business. 2024. 2024 Data Breach Investigations Report. https:\/\/www.verizon.com\/business\/resources\/reports\/2024-dbir-data-breach-investigations-report.pdfRetrieved December 3, 2025 from"},{"key":"e_1_3_3_1_26_2","doi-asserted-by":"publisher","unstructured":"Caihong Wang Du Xu Zonghang Li and Dusit Niyato. 2024. Effective Intrusion Detection in Highly Imbalanced IoT Networks With Lightweight S2CGAN-IDS. IEEE Internet of Things Journal 11 9 (2024) 15140\u201315151. 10.1109\/JIOT.2023.3342638","DOI":"10.1109\/JIOT.2023.3342638"},{"key":"e_1_3_3_1_27_2","doi-asserted-by":"crossref","unstructured":"Qi Wang Wajih\u00a0Ul Hassan Ding Li Kangkook Jee Xiao Yu Kexuan Zou Junghwan\u00a0John Rhee Zhengzhang Chen Wei Cheng Carl\u00a0A. Gunter and Haifeng Chen. 2020. You Are What You Do: Hunting Stealthy Malware via Data Provenance Analysis. Proceedings 2020 Network and Distributed System Security Symposium (2020). https:\/\/api.semanticscholar.org\/CorpusID:211267791","DOI":"10.14722\/ndss.2020.24167"},{"key":"e_1_3_3_1_28_2","volume-title":"MS17-010","year":"2017","unstructured":"worawit. 2017. MS17-010. https:\/\/github.com\/worawit\/MS17-010\/blob\/master\/checker.pyRetrieved December 3, 2025 from"},{"key":"e_1_3_3_1_29_2","doi-asserted-by":"publisher","unstructured":"Linxiao Yu Jun Tao Yifan Xu Weice Sun and Zuyan Wang. 2024. TLS fingerprint for encrypted malicious traffic detection with attributed graph kernel. Computer Networks 247 (2024) 110475. 10.1016\/j.comnet.2024.110475","DOI":"10.1016\/j.comnet.2024.110475"},{"key":"e_1_3_3_1_30_2","doi-asserted-by":"publisher","unstructured":"Zeinab Zoghi and Gursel Serpen. 2024. Building an intrusion detection system on UNSW-NB15: Reducing the margin of error to deal with data overlap and imbalance. Concurrency and Computation: Practice and Experience 36 25 (2024) e8242. 10.1002\/cpe.8242 arXiv:https:\/\/onlinelibrary.wiley.com\/doi\/pdf\/10.1002\/cpe.8242","DOI":"10.1002\/cpe.8242"}],"event":{"name":"ICICT 2026: 2026 The 9th International Conference on Information and Computer Technologies","location":"Honolulu , HI , USA","acronym":"ICICT 2026"},"container-title":["Proceedings of the 2026 9th International Conference on Information and Computer Technologies"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3803291.3803336","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,6,13]],"date-time":"2026-06-13T15:32:13Z","timestamp":1781364733000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3803291.3803336"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2026,3,11]]},"references-count":29,"alternative-id":["10.1145\/3803291.3803336","10.1145\/3803291"],"URL":"https:\/\/doi.org\/10.1145\/3803291.3803336","relation":{},"subject":[],"published":{"date-parts":[[2026,3,11]]},"assertion":[{"value":"2026-06-13","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}