{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2024,1,11]],"date-time":"2024-01-11T00:09:14Z","timestamp":1704931754381},"reference-count":23,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","issue":"4","content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEICE Trans. Commun."],"published-print":{"date-parts":[[2020,4,1]]},"DOI":"10.1587\/transcom.2019nrp0005","type":"journal-article","created":{"date-parts":[[2019,10,7]],"date-time":"2019-10-07T22:04:04Z","timestamp":1570485844000},"page":"375-388","source":"Crossref","is-referenced-by-count":2,"title":["Exploration into Gray Area: Toward Efficient Labeling for Detecting Malicious Domain Names"],"prefix":"10.23919","volume":"E103.B","author":[{"given":"Naoki","family":"FUKUSHI","sequence":"first","affiliation":[{"name":"Waseda University"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Daiki","family":"CHIBA","sequence":"additional","affiliation":[{"name":"NTT Secure Platform Laboratories, NTT Corporation"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Mitsuaki","family":"AKIYAMA","sequence":"additional","affiliation":[{"name":"NTT Secure Platform Laboratories, NTT Corporation"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Masato","family":"UCHIDA","sequence":"additional","affiliation":[{"name":"Waseda University"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"1","doi-asserted-by":"crossref","unstructured":"[1] N. Fukushi, D. Chiba, M. Akiyama, and M. Uchida, \u201cExploration into gray area: Efficient labelling for malicious domain name detection,\u201d 2019 IEEE 43rd Annual Computer Software and Applications Conference (COMPSAC), 2019. 10.1109\/compsac.2019.00114","DOI":"10.1109\/COMPSAC.2019.00114"},{"key":"2","unstructured":"[2] Cisco, \u201cCisco 2016 annual security report,\u201d http:\/\/mkto.cisco.com\/rs\/564-whv-323\/images\/cisco-asr-2016.pdf, 2016, [Online; accessed 01-August-2019]."},{"key":"3","unstructured":"[3] M. Antonakakis, R. Perdisci, Y. Nadji, N. Vasiloglou, S. Abu-Nimeh, W. Lee, and D. Dagon, \u201cFrom throw-away traffic to bots: Detecting the rise of DGA-based malware,\u201d Proc. USENIX Security Symposium, pp.491-506, 2012."},{"key":"4","doi-asserted-by":"crossref","unstructured":"[4] S. Hao, A. Kantchelian, B. Miller, V. Paxson, and N. Feamster, \u201cPREDATOR: Proactive recognition and elimination of domain abuse at time-of-registration,\u201d Proc. ACM SIGSAC Conference on Computer and Communications Security (CCS), pp.1568-1579, 2016. 10.1145\/2976749.2978317","DOI":"10.1145\/2976749.2978317"},{"key":"5","unstructured":"[5] M. Antonakakis, R. Perdisci, D. Dagon, W. Lee, and N. Feamster, \u201cBuilding a dynamic reputation system for DNS,\u201d Proc. USENIX Security Symposium, pp.273-290, 2010."},{"key":"6","unstructured":"[6] L. Bilge, E. Kirda, C. Kruegel, and M. Balduzzi, \u201cEXPOSURE: Finding malicious domains using passive DNS analysis,\u201d Proc. Network and Distributed System Security Symposium (NDSS), 2011."},{"key":"7","unstructured":"[7] M. Antonakakis, R. Perdisci, W. Lee, N. Vasiloglou, and D. Dagon, \u201cDetecting malware domains at the upper DNS hierarchy,\u201d Proc. USENIX Security Symposium, 2011."},{"key":"8","doi-asserted-by":"crossref","unstructured":"[8] B. Rahbarinia, R. Perdisci, and M. Antonakakis, \u201cSegugio: Efficient behavior-based tracking of malware-control domains in large ISP networks,\u201d Proc. IEEE\/IFIP International Conference on Dependable Systems and Networks (DSN), pp.403-414, 2015. 10.1109\/dsn.2015.35","DOI":"10.1109\/DSN.2015.35"},{"key":"9","doi-asserted-by":"crossref","unstructured":"[9] D. Chiba, T. Yagi, M. Akiyama, T. Shibahara, T. Yada, T. Mori, and S. Goto, \u201cDomainProfiler: Discovering domain names abused in future,\u201d Proc. IEEE\/IFIP International Conference on Dependable Systems and Networks (DSN), pp.491-502, 2016. 10.1109\/dsn.2016.51","DOI":"10.1109\/DSN.2016.51"},{"key":"10","unstructured":"[10] B. Settles, \u201cActive learning literature survey,\u201d Computer Sciences Technical Report 1648, University of Wisconsin-Madison, 2009."},{"key":"11","doi-asserted-by":"publisher","unstructured":"[11] L. Breiman, \u201cRandom forests,\u201d Mach. Learn., vol.45, no.1, pp.5-32, Oct. 2001. 10.1023\/a:1010933404324","DOI":"10.1023\/A:1010933404324"},{"key":"12","doi-asserted-by":"publisher","unstructured":"[12] L. Breiman, \u201cBagging predictors,\u201d Mach. Learn., vol.24, no.2, pp.123-140, Aug. 1996. 10.1007\/bf00058655","DOI":"10.1007\/BF00058655"},{"key":"13","doi-asserted-by":"publisher","unstructured":"[13] R.E. Schapire, \u201cThe strength of weak learnability,\u201d Mach. Learn., vol.5, no.2, pp.197-227, June 1990. 10.1007\/bf00116037","DOI":"10.1007\/BF00116037"},{"key":"14","unstructured":"[14] \u201chpHosts,\u201d http:\/\/www.hosts-file.net\/, [Online; accessed 01-August-2019]."},{"key":"15","unstructured":"[15] \u201cAlexa Top Sites,\u201d http:\/\/www.alexa.com\/topsites, [Online; accessed 01-August-2019]."},{"key":"16","unstructured":"[16] \u201cVirusTotal,\u201d https:\/\/www.virustotal.com\/, [Online; accessed 01-August-2019]."},{"key":"17","unstructured":"[17] VERISIGN, \u201cThe domain name industry brief,\u201d https:\/\/www.verisign.com\/assets\/domain-name-report-Q12019.pdf, 2019, [Online; accessed 01-August-2019]."},{"key":"18","unstructured":"[18] Ponemon Institute, \u201cThe cost of malware containment,\u201d http:\/\/www.ponemon.org\/library\/the-cost-of-malware-containment, 2015, [Online; accessed 01-August-2019]."},{"key":"19","unstructured":"[19] SECURITYWEEK, \u201cHow to reduce false positives and move faster on what matters,\u201d https:\/\/www.securityweek.com\/how-reduce-false-positives-and-move-faster-what-matters, 2018, [Online; accessed 01-August-2019]."},{"key":"20","unstructured":"[20] M. Ester, H. Kriegel, J. Sander, and X. Xu, \u201cA density-based algorithm for discovering clusters in large spatial databases with noise,\u201d Proc. ACM Knowledge Discovery and Data Mining (KDD), pp.226-231, 1996."},{"key":"21","doi-asserted-by":"crossref","unstructured":"[21] R. Moskovitch, N. Nissim, and Y. Elovici, \u201cMalicious code detection using active learning,\u201d Proc. Privacy, Security, and Trust in KDD (PinKDD), pp.74-91, 2008. 10.1007\/978-3-642-01718-6_6","DOI":"10.1007\/978-3-642-01718-6_6"},{"key":"22","doi-asserted-by":"crossref","unstructured":"[22] P. Zhao and S.C.H. Hoi, \u201cCost-sensitive online active learning with application to malicious URL detection,\u201d Proc. ACM Knowledge Discovery and Data Mining (KDD), pp.919-927, 2013. 10.1145\/2487575.2487647","DOI":"10.1145\/2487575.2487647"},{"key":"23","doi-asserted-by":"crossref","unstructured":"[23] A. Beaugnon, P. Chifflier, and F. Bach, \u201cILAB: An interactive labelling strategy for intrusion detection,\u201d Proc. Research in Attacks, Intrusions, and Defenses (RAID), pp.120-140, 2017. 10.1007\/978-3-319-66332-6_6","DOI":"10.1007\/978-3-319-66332-6_6"}],"container-title":["IEICE Transactions on Communications"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/www.jstage.jst.go.jp\/article\/transcom\/E103.B\/4\/E103.B_2019NRP0005\/_pdf","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,1,10]],"date-time":"2024-01-10T15:01:14Z","timestamp":1704898874000},"score":1,"resource":{"primary":{"URL":"https:\/\/www.jstage.jst.go.jp\/article\/transcom\/E103.B\/4\/E103.B_2019NRP0005\/_article"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2020,4,1]]},"references-count":23,"journal-issue":{"issue":"4","published-print":{"date-parts":[[2020]]}},"URL":"https:\/\/doi.org\/10.1587\/transcom.2019nrp0005","relation":{},"ISSN":["0916-8516","1745-1345"],"issn-type":[{"value":"0916-8516","type":"print"},{"value":"1745-1345","type":"electronic"}],"subject":[],"published":{"date-parts":[[2020,4,1]]}}}