{"id":"https://openalex.org/W4290043213","doi":"https://doi.org/10.1109/access.2022.3187116","title":"Detecting Zero-Day Intrusion Attacks Using Semi-Supervised Machine Learning Approaches","display_name":"Detecting Zero-Day Intrusion Attacks Using Semi-Supervised Machine Learning Approaches","publication_year":2022,"publication_date":"2022-01-01","ids":{"openalex":"https://openalex.org/W4290043213","doi":"https://doi.org/10.1109/access.2022.3187116"},"language":"en","primary_location":{"id":"doi:10.1109/access.2022.3187116","is_oa":true,"landing_page_url":"https://doi.org/10.1109/access.2022.3187116","pdf_url":"https://ieeexplore.ieee.org/ielx7/6287639/9668973/09810217.pdf","source":{"id":"https://openalex.org/S2485537415","display_name":"IEEE Access","issn_l":"2169-3536","issn":["2169-3536"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Access","raw_type":"journal-article"},"type":"article","indexed_in":["crossref","doaj"],"open_access":{"is_oa":true,"oa_status":"gold","oa_url":"https://ieeexplore.ieee.org/ielx7/6287639/9668973/09810217.pdf","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5051643060","display_name":"Innocent Mbona","orcid":"https://orcid.org/0000-0001-9240-8035"},"institutions":[{"id":"https://openalex.org/I69552723","display_name":"University of Pretoria","ror":"https://ror.org/00g0p6g84","country_code":"ZA","type":"education","lineage":["https://openalex.org/I69552723"]}],"countries":["ZA"],"is_corresponding":true,"raw_author_name":"Innocent Mbona","raw_affiliation_strings":["Department of Computer Science, University of Pretoria, Pretoria, South Africa"],"affiliations":[{"raw_affiliation_string":"Department of Computer Science, University of Pretoria, Pretoria, South Africa","institution_ids":["https://openalex.org/I69552723"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5088421729","display_name":"Jan H. P. Eloff","orcid":"https://orcid.org/0000-0003-4683-2198"},"institutions":[{"id":"https://openalex.org/I69552723","display_name":"University of Pretoria","ror":"https://ror.org/00g0p6g84","country_code":"ZA","type":"education","lineage":["https://openalex.org/I69552723"]}],"countries":["ZA"],"is_corresponding":false,"raw_author_name":"Jan H. P. Eloff","raw_affiliation_strings":["Department of Computer Science, University of Pretoria, Pretoria, South Africa"],"affiliations":[{"raw_affiliation_string":"Department of Computer Science, University of Pretoria, Pretoria, South Africa","institution_ids":["https://openalex.org/I69552723"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":2,"corresponding_author_ids":["https://openalex.org/A5051643060"],"corresponding_institution_ids":["https://openalex.org/I69552723"],"apc_list":{"value":1850,"currency":"USD","value_usd":1850},"apc_paid":{"value":1850,"currency":"USD","value_usd":1850},"fwci":8.7071,"has_fulltext":true,"cited_by_count":63,"citation_normalized_percentile":{"value":0.9821997,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":90,"max":100},"biblio":{"volume":"10","issue":null,"first_page":"69822","last_page":"69838"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11598","display_name":"Internet Traffic Analysis and Secure E-voting","score":0.9994000196456909,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9990000128746033,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7901967763900757},{"id":"https://openalex.org/keywords/intrusion-detection-system","display_name":"Intrusion detection system","score":0.7000353932380676},{"id":"https://openalex.org/keywords/exploit","display_name":"Exploit","score":0.6263079047203064},{"id":"https://openalex.org/keywords/network-security","display_name":"Network security","score":0.5533984899520874},{"id":"https://openalex.org/keywords/support-vector-machine","display_name":"Support vector machine","score":0.5410249829292297},{"id":"https://openalex.org/keywords/zero","display_name":"Zero (linguistics)","score":0.49583348631858826},{"id":"https://openalex.org/keywords/network-packet","display_name":"Network packet","score":0.4874613285064697},{"id":"https://openalex.org/keywords/data-mining","display_name":"Data mining","score":0.4596203863620758},{"id":"https://openalex.org/keywords/the-internet","display_name":"The Internet","score":0.4575783610343933},{"id":"https://openalex.org/keywords/intrusion","display_name":"Intrusion","score":0.4255208373069763},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.4114851951599121},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.4013387858867645},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.3993595242500305}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7901967763900757},{"id":"https://openalex.org/C35525427","wikidata":"https://www.wikidata.org/wiki/Q745881","display_name":"Intrusion detection system","level":2,"score":0.7000353932380676},{"id":"https://openalex.org/C165696696","wikidata":"https://www.wikidata.org/wiki/Q11287","display_name":"Exploit","level":2,"score":0.6263079047203064},{"id":"https://openalex.org/C182590292","wikidata":"https://www.wikidata.org/wiki/Q989632","display_name":"Network security","level":2,"score":0.5533984899520874},{"id":"https://openalex.org/C12267149","wikidata":"https://www.wikidata.org/wiki/Q282453","display_name":"Support vector machine","level":2,"score":0.5410249829292297},{"id":"https://openalex.org/C2780813799","wikidata":"https://www.wikidata.org/wiki/Q3274237","display_name":"Zero (linguistics)","level":2,"score":0.49583348631858826},{"id":"https://openalex.org/C158379750","wikidata":"https://www.wikidata.org/wiki/Q214111","display_name":"Network packet","level":2,"score":0.4874613285064697},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.4596203863620758},{"id":"https://openalex.org/C110875604","wikidata":"https://www.wikidata.org/wiki/Q75","display_name":"The Internet","level":2,"score":0.4575783610343933},{"id":"https://openalex.org/C158251709","wikidata":"https://www.wikidata.org/wiki/Q354025","display_name":"Intrusion","level":2,"score":0.4255208373069763},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.4114851951599121},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.4013387858867645},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.3993595242500305},{"id":"https://openalex.org/C136764020","wikidata":"https://www.wikidata.org/wiki/Q466","display_name":"World Wide Web","level":1,"score":0.0},{"id":"https://openalex.org/C127313418","wikidata":"https://www.wikidata.org/wiki/Q1069","display_name":"Geology","level":0,"score":0.0},{"id":"https://openalex.org/C41895202","wikidata":"https://www.wikidata.org/wiki/Q8162","display_name":"Linguistics","level":1,"score":0.0},{"id":"https://openalex.org/C17409809","wikidata":"https://www.wikidata.org/wiki/Q161764","display_name":"Geochemistry","level":1,"score":0.0},{"id":"https://openalex.org/C138885662","wikidata":"https://www.wikidata.org/wiki/Q5891","display_name":"Philosophy","level":0,"score":0.0}],"mesh":[],"locations_count":3,"locations":[{"id":"doi:10.1109/access.2022.3187116","is_oa":true,"landing_page_url":"https://doi.org/10.1109/access.2022.3187116","pdf_url":"https://ieeexplore.ieee.org/ielx7/6287639/9668973/09810217.pdf","source":{"id":"https://openalex.org/S2485537415","display_name":"IEEE Access","issn_l":"2169-3536","issn":["2169-3536"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Access","raw_type":"journal-article"},{"id":"pmh:oai:doaj.org/article:eacc95f652e346edbe14d0e66a8657a0","is_oa":true,"landing_page_url":"https://doaj.org/article/eacc95f652e346edbe14d0e66a8657a0","pdf_url":null,"source":{"id":"https://openalex.org/S112646816","display_name":"SHILAP Revista de lepidopterolog\u00eda","issn_l":"0300-5267","issn":["0300-5267","2340-4078"],"is_oa":true,"is_in_doaj":true,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"IEEE Access, Vol 10, Pp 69822-69838 (2022)","raw_type":"article"},{"id":"pmh:oai:repository.up.ac.za:2263/88421","is_oa":false,"landing_page_url":"https://repository.up.ac.za/handle/2263/88421","pdf_url":null,"source":{"id":"https://openalex.org/S4306401870","display_name":"UpSpace Institutional Repository (University of Pretoria)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I69552723","host_organization_name":"University of Pretoria","host_organization_lineage":["https://openalex.org/I69552723"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":"Article"}],"best_oa_location":{"id":"doi:10.1109/access.2022.3187116","is_oa":true,"landing_page_url":"https://doi.org/10.1109/access.2022.3187116","pdf_url":"https://ieeexplore.ieee.org/ielx7/6287639/9668973/09810217.pdf","source":{"id":"https://openalex.org/S2485537415","display_name":"IEEE Access","issn_l":"2169-3536","issn":["2169-3536"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Access","raw_type":"journal-article"},"sustainable_development_goals":[{"score":0.7900000214576721,"id":"https://metadata.un.org/sdg/16","display_name":"Peace, Justice and strong institutions"}],"awards":[],"funders":[{"id":"https://openalex.org/F4320320692","display_name":"University of Pretoria","ror":"https://ror.org/00g0p6g84"}],"has_content":{"pdf":true,"grobid_xml":true},"content_urls":{"pdf":"https://content.openalex.org/works/W4290043213.pdf","grobid_xml":"https://content.openalex.org/works/W4290043213.grobid-xml"},"referenced_works_count":48,"referenced_works":["https://openalex.org/W1568253479","https://openalex.org/W1902748306","https://openalex.org/W2056787146","https://openalex.org/W2328120369","https://openalex.org/W2342408547","https://openalex.org/W2570296101","https://openalex.org/W2604105233","https://openalex.org/W2620580412","https://openalex.org/W2754445169","https://openalex.org/W2762776925","https://openalex.org/W2766402408","https://openalex.org/W2783748519","https://openalex.org/W2787322429","https://openalex.org/W2789828921","https://openalex.org/W2790583291","https://openalex.org/W2791775123","https://openalex.org/W2891993883","https://openalex.org/W2901725274","https://openalex.org/W2919868916","https://openalex.org/W2921177652","https://openalex.org/W2921708219","https://openalex.org/W2924689635","https://openalex.org/W2946445608","https://openalex.org/W2963329071","https://openalex.org/W2981929856","https://openalex.org/W2982682021","https://openalex.org/W2999309192","https://openalex.org/W3007580316","https://openalex.org/W3009193884","https://openalex.org/W3011003588","https://openalex.org/W3016974523","https://openalex.org/W3027374119","https://openalex.org/W3033213260","https://openalex.org/W3035311645","https://openalex.org/W3038955483","https://openalex.org/W3040628207","https://openalex.org/W3043530913","https://openalex.org/W3092771185","https://openalex.org/W3103243862","https://openalex.org/W3105087971","https://openalex.org/W3105939760","https://openalex.org/W3110819044","https://openalex.org/W3176721776","https://openalex.org/W4206101301","https://openalex.org/W4234237257","https://openalex.org/W4240631899","https://openalex.org/W4388506701","https://openalex.org/W6726789191"],"related_works":["https://openalex.org/W2133389611","https://openalex.org/W2376886931","https://openalex.org/W2061466315","https://openalex.org/W2010561419","https://openalex.org/W2374845301","https://openalex.org/W2351448539","https://openalex.org/W1977863481","https://openalex.org/W2384741105","https://openalex.org/W1495178644","https://openalex.org/W2185594426"],"abstract_inverted_index":{"Recently,":[0],"network":[1,19,36,48,53,74,86,186,248],"intrusion":[2,20,75],"attacks,":[3,12],"particularly":[4],"new":[5],"unknown":[6],"attacks":[7,21,44,148,215],"referred":[8],"to":[9,30,108],"as":[10,27,101,137,174],"zero-day":[11,43,147,200,214,247],"have":[13,40,114],"become":[14],"a":[15,23,35,47,65,115,178],"global":[16],"phenomenon.":[17],"Zero-day":[18],"constitute":[22,92],"frequent":[24],"cybersecurity":[25],"threat,":[26],"they":[28],"seek":[29],"exploit":[31],"the":[32,119,153,167,232],"vulnerabilities":[33],"of":[34,95,121,155,169,191,238,243],"system.":[37],"Previous":[38],"studies":[39],"demonstrated":[41],"that":[42,113,127,142,166,181,188,206,226],"can":[45,182,195],"compromise":[46],"for":[49,132,145,198,212,245],"prolonged":[50],"periods":[51],"if":[52,216],"traffic":[54,87,90],"analysis":[55],"(NTA)":[56],"is":[57,106,126,177],"not":[58],"performed":[59],"thoroughly":[60],"and":[61,81,149,194,240],"efficiently.":[62],"NTA":[63],"plays":[64],"crucial":[66],"role":[67],"in":[68,162],"supporting":[69],"machine":[70],"learning":[71],"(ML)":[72],"based":[73],"detection":[76],"systems":[77],"(NIDS)":[78],"by":[79,98],"monitoring":[80],"extracting":[82],"meaningful":[83],"information":[84],"from":[85],"data.":[88],"Network":[89],"data":[91,96],"large":[93],"volumes":[94],"described":[97],"features":[99,112,135,187,218],"such":[100,136],"destination-to-source":[102],"packet":[103],"count.":[104],"It":[105],"important":[107],"use":[109],"only":[110],"those":[111],"significant":[116,185,217],"impact":[117,152],"on":[118],"performance":[120,154],"an":[122],"NIDS.":[123],"The":[124,159,222],"problem":[125],"most":[128],"existing":[129],"ML":[130,157,208],"models":[131],"NIDS":[133],"employ":[134],"Internet":[138],"protocol":[139],"(IP)":[140],"addresses":[141],"are":[143,189,210,219],"redundant":[144],"detecting":[146,199,213,246],"therefore":[150],"negatively":[151],"these":[156],"models.":[158],"solution":[160],"proposed":[161],"this":[163],"study":[164,204],"demonstrates":[165],"law":[168],"anomalous":[170,192],"numbers,":[171],"famously":[172],"known":[173],"Benford&#x2019;s":[175],"law,":[176],"viable":[179],"technique":[180],"effectively":[183],"identify":[184],"indicative":[190],"behaviour":[193],"be":[196],"used":[197],"attacks.":[201,249],"Finally,":[202],"our":[203],"illustrates":[205],"semi-supervised":[207],"approaches":[209],"effective":[211],"optimally":[220],"chosen.":[221],"experimental":[223],"results":[224,234],"demonstrate":[225],"one-class":[227],"support":[228],"vector":[229],"machines":[230],"achieved":[231],"best":[233],"(Matthews":[235],"correlation":[236],"coefficient":[237],"74&#x0025;":[239],"F<sub>1</sub>":[241],"score":[242],"85&#x0025;)":[244]},"counts_by_year":[{"year":2026,"cited_by_count":2},{"year":2025,"cited_by_count":25},{"year":2024,"cited_by_count":18},{"year":2023,"cited_by_count":17},{"year":2022,"cited_by_count":1}],"updated_date":"2026-04-02T15:55:50.835912","created_date":"2025-10-10T00:00:00"}
