{"id":"https://openalex.org/W7118971054","doi":"https://doi.org/10.1109/access.2026.3651178","title":"Evaluating Convolutional Autoencoders for Anomaly Detection on Space-Filling Curve-Transformed Control Flow Data","display_name":"Evaluating Convolutional Autoencoders for Anomaly Detection on Space-Filling Curve-Transformed Control Flow Data","publication_year":2026,"publication_date":"2026-01-01","ids":{"openalex":"https://openalex.org/W7118971054","doi":"https://doi.org/10.1109/access.2026.3651178"},"language":null,"primary_location":{"id":"doi:10.1109/access.2026.3651178","is_oa":true,"landing_page_url":"https://doi.org/10.1109/access.2026.3651178","pdf_url":null,"source":{"id":"https://openalex.org/S2485537415","display_name":"IEEE Access","issn_l":"2169-3536","issn":["2169-3536"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Access","raw_type":"journal-article"},"type":"article","indexed_in":["crossref","doaj"],"open_access":{"is_oa":true,"oa_status":"gold","oa_url":"https://doi.org/10.1109/access.2026.3651178","any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5045489825","display_name":"Pranav Gangwani","orcid":"https://orcid.org/0000-0001-5922-6002"},"institutions":[{"id":"https://openalex.org/I19700959","display_name":"Florida International University","ror":"https://ror.org/02gz6gg07","country_code":"US","type":"education","lineage":["https://openalex.org/I19700959"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"Pranav Gangwani","raw_affiliation_strings":["Department of Electrical and Computer Engineering, Florida International University, Miami, FL, USA"],"affiliations":[{"raw_affiliation_string":"Department of Electrical and Computer Engineering, Florida International University, Miami, FL, USA","institution_ids":["https://openalex.org/I19700959"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5046752937","display_name":"Alexander Perez-Pons","orcid":null},"institutions":[{"id":"https://openalex.org/I19700959","display_name":"Florida International University","ror":"https://ror.org/02gz6gg07","country_code":"US","type":"education","lineage":["https://openalex.org/I19700959"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Alexander Perez-Pons","raw_affiliation_strings":["Department of Electrical and Computer Engineering, Florida International University, Miami, FL, USA"],"affiliations":[{"raw_affiliation_string":"Department of Electrical and Computer Engineering, Florida International University, Miami, FL, USA","institution_ids":["https://openalex.org/I19700959"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5122113596","display_name":"Gabriel Alvarez","orcid":null},"institutions":[{"id":"https://openalex.org/I19700959","display_name":"Florida International University","ror":"https://ror.org/02gz6gg07","country_code":"US","type":"education","lineage":["https://openalex.org/I19700959"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Gabriel Alvarez","raw_affiliation_strings":["Department of Electrical and Computer Engineering, Florida International University, Miami, FL, USA"],"affiliations":[{"raw_affiliation_string":"Department of Electrical and Computer Engineering, Florida International University, Miami, FL, USA","institution_ids":["https://openalex.org/I19700959"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5083254513","display_name":"Sebastian De La Cruz","orcid":null},"institutions":[{"id":"https://openalex.org/I19700959","display_name":"Florida International University","ror":"https://ror.org/02gz6gg07","country_code":"US","type":"education","lineage":["https://openalex.org/I19700959"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Sebastian De La Cruz","raw_affiliation_strings":["Department of Electrical and Computer Engineering, Florida International University, Miami, FL, USA"],"affiliations":[{"raw_affiliation_string":"Department of Electrical and Computer Engineering, Florida International University, Miami, FL, USA","institution_ids":["https://openalex.org/I19700959"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5045489825"],"corresponding_institution_ids":["https://openalex.org/I19700959"],"apc_list":{"value":1850,"currency":"USD","value_usd":1850},"apc_paid":{"value":1850,"currency":"USD","value_usd":1850},"fwci":0.0,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":{"value":0.08283848,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":"14","issue":null,"first_page":"4292","last_page":"4304"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.24379999935626984,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.24379999935626984,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.181099995970726,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.16619999706745148,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/anomaly-detection","display_name":"Anomaly detection","score":0.6294999718666077},{"id":"https://openalex.org/keywords/microcontroller","display_name":"Microcontroller","score":0.6205999851226807},{"id":"https://openalex.org/keywords/kalman-filter","display_name":"Kalman filter","score":0.603600025177002},{"id":"https://openalex.org/keywords/control-flow","display_name":"Control flow","score":0.40130001306533813},{"id":"https://openalex.org/keywords/pipeline","display_name":"Pipeline (software)","score":0.3871000111103058},{"id":"https://openalex.org/keywords/convolutional-neural-network","display_name":"Convolutional neural network","score":0.3797999918460846},{"id":"https://openalex.org/keywords/intrusion-detection-system","display_name":"Intrusion detection system","score":0.37049999833106995},{"id":"https://openalex.org/keywords/pattern-recognition","display_name":"Pattern recognition (psychology)","score":0.3686999976634979}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8535000085830688},{"id":"https://openalex.org/C739882","wikidata":"https://www.wikidata.org/wiki/Q3560506","display_name":"Anomaly detection","level":2,"score":0.6294999718666077},{"id":"https://openalex.org/C173018170","wikidata":"https://www.wikidata.org/wiki/Q165678","display_name":"Microcontroller","level":2,"score":0.6205999851226807},{"id":"https://openalex.org/C157286648","wikidata":"https://www.wikidata.org/wiki/Q846780","display_name":"Kalman filter","level":2,"score":0.603600025177002},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.5194000005722046},{"id":"https://openalex.org/C160191386","wikidata":"https://www.wikidata.org/wiki/Q868299","display_name":"Control flow","level":2,"score":0.40130001306533813},{"id":"https://openalex.org/C43521106","wikidata":"https://www.wikidata.org/wiki/Q2165493","display_name":"Pipeline (software)","level":2,"score":0.3871000111103058},{"id":"https://openalex.org/C81363708","wikidata":"https://www.wikidata.org/wiki/Q17084460","display_name":"Convolutional neural network","level":2,"score":0.3797999918460846},{"id":"https://openalex.org/C35525427","wikidata":"https://www.wikidata.org/wiki/Q745881","display_name":"Intrusion detection system","level":2,"score":0.37049999833106995},{"id":"https://openalex.org/C153180895","wikidata":"https://www.wikidata.org/wiki/Q7148389","display_name":"Pattern recognition (psychology)","level":2,"score":0.3686999976634979},{"id":"https://openalex.org/C2776760102","wikidata":"https://www.wikidata.org/wiki/Q5139990","display_name":"Code (set theory)","level":3,"score":0.3587000072002411},{"id":"https://openalex.org/C16910744","wikidata":"https://www.wikidata.org/wiki/Q7705759","display_name":"Test data","level":2,"score":0.3490000069141388},{"id":"https://openalex.org/C12997251","wikidata":"https://www.wikidata.org/wiki/Q567560","display_name":"Anomaly (physics)","level":2,"score":0.3481999933719635},{"id":"https://openalex.org/C106131492","wikidata":"https://www.wikidata.org/wiki/Q3072260","display_name":"Filter (signal processing)","level":2,"score":0.3474999964237213},{"id":"https://openalex.org/C65856478","wikidata":"https://www.wikidata.org/wiki/Q3991682","display_name":"Attack model","level":2,"score":0.3361000120639801},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.33180001378059387},{"id":"https://openalex.org/C79403827","wikidata":"https://www.wikidata.org/wiki/Q3988","display_name":"Real-time computing","level":1,"score":0.3278999924659729},{"id":"https://openalex.org/C67186912","wikidata":"https://www.wikidata.org/wiki/Q367664","display_name":"Data modeling","level":2,"score":0.3224000036716461},{"id":"https://openalex.org/C2775941552","wikidata":"https://www.wikidata.org/wiki/Q25212305","display_name":"Isolation (microbiology)","level":2,"score":0.32179999351501465},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.31679999828338623},{"id":"https://openalex.org/C489000","wikidata":"https://www.wikidata.org/wiki/Q747385","display_name":"Data flow diagram","level":2,"score":0.31630000472068787},{"id":"https://openalex.org/C149635348","wikidata":"https://www.wikidata.org/wiki/Q193040","display_name":"Embedded system","level":1,"score":0.3095000088214874},{"id":"https://openalex.org/C52622490","wikidata":"https://www.wikidata.org/wiki/Q1026626","display_name":"Feature extraction","level":2,"score":0.2874000072479248},{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.27559998631477356},{"id":"https://openalex.org/C31972630","wikidata":"https://www.wikidata.org/wiki/Q844240","display_name":"Computer vision","level":1,"score":0.26930001378059387},{"id":"https://openalex.org/C77052588","wikidata":"https://www.wikidata.org/wiki/Q644307","display_name":"Constant false alarm rate","level":2,"score":0.2554999887943268}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/access.2026.3651178","is_oa":true,"landing_page_url":"https://doi.org/10.1109/access.2026.3651178","pdf_url":null,"source":{"id":"https://openalex.org/S2485537415","display_name":"IEEE Access","issn_l":"2169-3536","issn":["2169-3536"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Access","raw_type":"journal-article"}],"best_oa_location":{"id":"doi:10.1109/access.2026.3651178","is_oa":true,"landing_page_url":"https://doi.org/10.1109/access.2026.3651178","pdf_url":null,"source":{"id":"https://openalex.org/S2485537415","display_name":"IEEE Access","issn_l":"2169-3536","issn":["2169-3536"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Access","raw_type":"journal-article"},"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":19,"referenced_works":["https://openalex.org/W2100495367","https://openalex.org/W2112796928","https://openalex.org/W2136655611","https://openalex.org/W2150847526","https://openalex.org/W2166023715","https://openalex.org/W2753692828","https://openalex.org/W2795033129","https://openalex.org/W2886020981","https://openalex.org/W2891512841","https://openalex.org/W3025080732","https://openalex.org/W3026646233","https://openalex.org/W3093621053","https://openalex.org/W3108671495","https://openalex.org/W4293563248","https://openalex.org/W4385337045","https://openalex.org/W4404849442","https://openalex.org/W4405576390","https://openalex.org/W4406949671","https://openalex.org/W4407639858"],"related_works":[],"abstract_inverted_index":{"Microcontrollers":[0],"are":[1,125],"increasingly":[2],"targeted":[3],"by":[4],"cyber":[5],"threats,":[6],"requiring":[7],"robust":[8],"and":[9,60,146,185],"adaptive":[10],"security":[11],"mechanisms.":[12],"This":[13,155],"work":[14],"presents":[15],"a":[16,49,62,71,76,109,120],"novel":[17],"anomaly":[18],"detection":[19],"pipeline":[20],"that":[21,157,181],"transforms":[22],"microcontroller":[23],"program":[24,85],"control-flow":[25],"data":[26],"into":[27],"Hilbert":[28],"space-filling":[29],"curve":[30],"images,":[31],"leveraging":[32],"Convolutional":[33],"Autoencoders":[34],"(CAEs)":[35],"to":[36],"detect":[37],"threats.":[38],"We":[39],"test":[40],"this":[41,190],"method":[42,191],"against":[43,128],"two":[44],"distinct":[45],"cyberattack":[46],"scenarios:":[47],"(1)":[48],"function-level":[50],"attack":[51,65,107,118,142],"(a":[52,66],"Kalman":[53,106],"filter":[54],"application":[55,68],"injected":[56,69],"with":[57,70,108,119],"malicious":[58,73,169],"functions)":[59],"(2)":[61],"subtle,":[63,174],"instruction-level":[64,175],"CRC32":[67,117],"single":[72],"instruction":[74],"in":[75,203],"benign":[77,84],"loop).":[78],"Our":[79],"models,":[80],"trained":[81],"exclusively":[82],"on":[83,139,149],"traces,":[86],"achieved":[87],"exceptional":[88],"results.":[89],"The":[90],"deep":[91],"CAE":[92],"model":[93],"(<italic":[94],"xmlns:mml=\"http://www.w3.org/1998/Math/MathML\"":[95,97,100],"xmlns:xlink=\"http://www.w3.org/1999/xlink\">M</i><sup":[96],"xmlns:xlink=\"http://www.w3.org/1999/xlink\">2</sup>":[98],"<sub":[99],"xmlns:xlink=\"http://www.w3.org/1999/xlink\"><i>a</i></sub>)":[101],"successfully":[102],"detected":[103],"the":[104,115,140,150,173,187,198],"large-scale":[105],"99.3%":[110],"F1-Score":[111],"and,":[112],"more":[113],"significantly,":[114],"minimal-footprint":[116],"99.7%":[121],"F1-Score.":[122],"These":[123],"results":[124],"then":[126],"benchmarked":[127],"traditional":[129],"models":[130],"(One-class":[131],"SVM,":[132],"Isolation":[133],"Forest,":[134],"LOF),":[135],"which":[136],"performed":[137],"poorly":[138],"first":[141],"(F1-Scores":[143,152],"<":[144,153],"0.74)":[145],"failed":[147],"completely":[148],"second":[151],"0.61).":[154],"demonstrates":[156],"our":[158],"methodology":[159],"is":[160],"highly":[161],"sensitive,":[162],"capable":[163],"of":[164,178,189],"identifying":[165],"not":[166],"only":[167],"overt":[168],"code":[170],"but":[171],"also":[172],"changes":[176],"characteristic":[177],"sophisticated":[179],"attacks":[180],"raw-trace":[182],"analysis":[183],"misses,":[184],"demonstrating":[186],"feasibility":[188],"for":[192,200],"improving":[193],"embedded":[194],"system":[195],"security,":[196],"paving":[197],"way":[199],"further":[201],"advancements":[202],"intelligent":[204],"threat":[205],"detection.":[206]},"counts_by_year":[],"updated_date":"2026-01-14T23:40:02.550235","created_date":"2026-01-08T00:00:00"}
