{"id":"https://openalex.org/W3023996409","doi":"https://doi.org/10.1109/iciot48696.2020.9089478","title":"A Malware Detection Method for Health Sensor Data Based on Machine Learning","display_name":"A Malware Detection Method for Health Sensor Data Based on Machine Learning","publication_year":2020,"publication_date":"2020-02-01","ids":{"openalex":"https://openalex.org/W3023996409","doi":"https://doi.org/10.1109/iciot48696.2020.9089478","mag":"3023996409"},"language":"en","primary_location":{"id":"doi:10.1109/iciot48696.2020.9089478","is_oa":false,"landing_page_url":"https://doi.org/10.1109/iciot48696.2020.9089478","pdf_url":null,"source":{"id":"https://openalex.org/S4306498678","display_name":"2020 IEEE International Conference on Informatics, IoT, and Enabling Technologies (ICIoT)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"conference"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2020 IEEE International Conference on Informatics, IoT, and Enabling Technologies (ICIoT)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5100757248","display_name":"Hanwen Liu","orcid":"https://orcid.org/0000-0002-2905-370X"},"institutions":[{"id":"https://openalex.org/I165932596","display_name":"National University of Singapore","ror":"https://ror.org/01tgyzw49","country_code":"SG","type":"education","lineage":["https://openalex.org/I165932596"]}],"countries":["SG"],"is_corresponding":true,"raw_author_name":"Hanwen Liu","raw_affiliation_strings":["Department of Computer Science, School of Computing, National University of Singapore, Singapore"],"affiliations":[{"raw_affiliation_string":"Department of Computer Science, School of Computing, National University of Singapore, Singapore","institution_ids":["https://openalex.org/I165932596"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5102835149","display_name":"Xiaohan Helu","orcid":"https://orcid.org/0000-0003-1486-294X"},"institutions":[{"id":"https://openalex.org/I37987034","display_name":"Guangzhou University","ror":"https://ror.org/05ar8rn06","country_code":"CN","type":"education","lineage":["https://openalex.org/I37987034"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Xiaohan Helu","raw_affiliation_strings":["Cyberspace of Institute of Advanced Technology, Guangzhou University, Guangzhou, China"],"affiliations":[{"raw_affiliation_string":"Cyberspace of Institute of Advanced Technology, Guangzhou University, Guangzhou, China","institution_ids":["https://openalex.org/I37987034"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5101864112","display_name":"Chengjie Jin","orcid":"https://orcid.org/0000-0001-7716-655X"},"institutions":[{"id":"https://openalex.org/I37987034","display_name":"Guangzhou University","ror":"https://ror.org/05ar8rn06","country_code":"CN","type":"education","lineage":["https://openalex.org/I37987034"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Chengjie Jin","raw_affiliation_strings":["Cyberspace of Institute of Advanced Technology, Guangzhou University, Guangzhou, China"],"affiliations":[{"raw_affiliation_string":"Cyberspace of Institute of Advanced Technology, Guangzhou University, Guangzhou, China","institution_ids":["https://openalex.org/I37987034"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5101486498","display_name":"Hui Lu","orcid":"https://orcid.org/0000-0002-4120-7716"},"institutions":[{"id":"https://openalex.org/I37987034","display_name":"Guangzhou University","ror":"https://ror.org/05ar8rn06","country_code":"CN","type":"education","lineage":["https://openalex.org/I37987034"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Hui Lu","raw_affiliation_strings":["Cyberspace of Institute of Advanced Technology, Guangzhou University, Guangzhou, China"],"affiliations":[{"raw_affiliation_string":"Cyberspace of Institute of Advanced Technology, Guangzhou University, Guangzhou, China","institution_ids":["https://openalex.org/I37987034"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5056608045","display_name":"Zhihong Tian","orcid":"https://orcid.org/0000-0002-9409-5359"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Zhihong Tian","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5060514022","display_name":"Xiaojiang Du","orcid":"https://orcid.org/0000-0003-4235-9671"},"institutions":[{"id":"https://openalex.org/I84392919","display_name":"Temple University","ror":"https://ror.org/00kx1jb78","country_code":"US","type":"education","lineage":["https://openalex.org/I84392919"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Xiaojiang Du","raw_affiliation_strings":["Department of Computer and Information Sciences, Temple University, Philadelphia, USA"],"affiliations":[{"raw_affiliation_string":"Department of Computer and Information Sciences, Temple University, Philadelphia, USA","institution_ids":["https://openalex.org/I84392919"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5051848738","display_name":"Khalid Abualsaud","orcid":"https://orcid.org/0000-0002-6693-3386"},"institutions":[{"id":"https://openalex.org/I60342839","display_name":"Qatar University","ror":"https://ror.org/00yhnba62","country_code":"QA","type":"education","lineage":["https://openalex.org/I60342839"]}],"countries":["QA"],"is_corresponding":false,"raw_author_name":"Khalid Abualsaud","raw_affiliation_strings":["Department of Computer Science and Engfineering, College of Engineering, Qatar University, Qatar"],"affiliations":[{"raw_affiliation_string":"Department of Computer Science and Engfineering, College of Engineering, Qatar University, Qatar","institution_ids":["https://openalex.org/I60342839"]}]}],"institutions":[],"countries_distinct_count":4,"institutions_distinct_count":7,"corresponding_author_ids":["https://openalex.org/A5100757248"],"corresponding_institution_ids":["https://openalex.org/I165932596"],"apc_list":null,"apc_paid":null,"fwci":0.6734,"has_fulltext":false,"cited_by_count":4,"citation_normalized_percentile":{"value":0.67916042,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":89,"max":96},"biblio":{"volume":null,"issue":null,"first_page":null,"last_page":null},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":0.9993000030517578,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9962000250816345,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/malware","display_name":"Malware","score":0.9044386148452759},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8413029313087463},{"id":"https://openalex.org/keywords/byte","display_name":"Byte","score":0.7021418809890747},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.5141273140907288},{"id":"https://openalex.org/keywords/code","display_name":"Code (set theory)","score":0.4867696762084961},{"id":"https://openalex.org/keywords/cryptovirology","display_name":"Cryptovirology","score":0.4687858819961548},{"id":"https://openalex.org/keywords/data-mining","display_name":"Data mining","score":0.4630809724330902},{"id":"https://openalex.org/keywords/security-token","display_name":"Security token","score":0.45257821679115295},{"id":"https://openalex.org/keywords/random-forest","display_name":"Random forest","score":0.4451078772544861},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.4277940094470978},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.2665283679962158},{"id":"https://openalex.org/keywords/operating-system","display_name":"Operating system","score":0.10283315181732178},{"id":"https://openalex.org/keywords/programming-language","display_name":"Programming language","score":0.08288782835006714}],"concepts":[{"id":"https://openalex.org/C541664917","wikidata":"https://www.wikidata.org/wiki/Q14001","display_name":"Malware","level":2,"score":0.9044386148452759},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8413029313087463},{"id":"https://openalex.org/C43364308","wikidata":"https://www.wikidata.org/wiki/Q8799","display_name":"Byte","level":2,"score":0.7021418809890747},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.5141273140907288},{"id":"https://openalex.org/C2776760102","wikidata":"https://www.wikidata.org/wiki/Q5139990","display_name":"Code (set theory)","level":3,"score":0.4867696762084961},{"id":"https://openalex.org/C84525096","wikidata":"https://www.wikidata.org/wiki/Q3506050","display_name":"Cryptovirology","level":3,"score":0.4687858819961548},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.4630809724330902},{"id":"https://openalex.org/C48145219","wikidata":"https://www.wikidata.org/wiki/Q1335365","display_name":"Security token","level":2,"score":0.45257821679115295},{"id":"https://openalex.org/C169258074","wikidata":"https://www.wikidata.org/wiki/Q245748","display_name":"Random forest","level":2,"score":0.4451078772544861},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.4277940094470978},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.2665283679962158},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.10283315181732178},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.08288782835006714},{"id":"https://openalex.org/C177264268","wikidata":"https://www.wikidata.org/wiki/Q1514741","display_name":"Set (abstract data type)","level":2,"score":0.0}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1109/iciot48696.2020.9089478","is_oa":false,"landing_page_url":"https://doi.org/10.1109/iciot48696.2020.9089478","pdf_url":null,"source":{"id":"https://openalex.org/S4306498678","display_name":"2020 IEEE International Conference on Informatics, IoT, and Enabling Technologies (ICIoT)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"conference"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2020 IEEE International Conference on Informatics, IoT, and Enabling Technologies (ICIoT)","raw_type":"proceedings-article"},{"id":"pmh:oai:qspace.qu.edu.qa:10576/53537","is_oa":false,"landing_page_url":"http://hdl.handle.net/10576/53537","pdf_url":null,"source":{"id":"https://openalex.org/S4306400014","display_name":"Qatar University QSpace (Qatar University)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I60342839","host_organization_name":"Qatar University","host_organization_lineage":["https://openalex.org/I60342839"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"Conference"}],"best_oa_location":null,"sustainable_development_goals":[{"score":0.4099999964237213,"display_name":"Life in Land","id":"https://metadata.un.org/sdg/15"}],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":39,"referenced_works":["https://openalex.org/W1482612322","https://openalex.org/W1985618814","https://openalex.org/W2014395806","https://openalex.org/W2028287816","https://openalex.org/W2063312129","https://openalex.org/W2067886306","https://openalex.org/W2080765376","https://openalex.org/W2170770919","https://openalex.org/W2295598076","https://openalex.org/W2317110652","https://openalex.org/W2485966427","https://openalex.org/W2518379032","https://openalex.org/W2598939142","https://openalex.org/W2770638201","https://openalex.org/W2790511644","https://openalex.org/W2806985517","https://openalex.org/W2808451969","https://openalex.org/W2808681425","https://openalex.org/W2809107162","https://openalex.org/W2884705561","https://openalex.org/W2897812612","https://openalex.org/W2901014412","https://openalex.org/W2902007313","https://openalex.org/W2903590454","https://openalex.org/W2903686779","https://openalex.org/W2903823816","https://openalex.org/W2907369926","https://openalex.org/W2912343591","https://openalex.org/W2931991156","https://openalex.org/W2944035120","https://openalex.org/W2949341542","https://openalex.org/W2963273426","https://openalex.org/W2964061570","https://openalex.org/W2965297251","https://openalex.org/W2971076825","https://openalex.org/W2976882027","https://openalex.org/W6657654207","https://openalex.org/W6726368390","https://openalex.org/W6752432530"],"related_works":["https://openalex.org/W4249009605","https://openalex.org/W2900526031","https://openalex.org/W4256304280","https://openalex.org/W2395100307","https://openalex.org/W2909615516","https://openalex.org/W3183826413","https://openalex.org/W4243179955","https://openalex.org/W3205001643","https://openalex.org/W2557742076","https://openalex.org/W2968504645"],"abstract_inverted_index":{"Traditional":[0],"signature-based":[1],"malware":[2,12,16,43,60,130,173,192],"detection":[3,67],"approaches":[4],"are":[5,18,102,140],"sensitive":[6],"to":[7,40,53,69,92,141,153,185],"small":[8,50],"changes":[9],"in":[10,59,73,90,151],"the":[11,42,49,71,74,94,145,148,157,167,186],"code.":[13],"Currently,":[14],"most":[15],"programs":[17,61],"adapted":[19],"from":[20,96,194],"existing":[21],"programs.":[22],"Hence,":[23],"they":[24],"share":[25],"some":[26],"common":[27],"patterns":[28,72],"but":[29],"have":[30,132],"different":[31],"signatures.":[32],"To":[33],"health":[34,56,97,162],"sensor":[35,57,98,163],"data,":[36,164],"it":[37],"is":[38,175],"necessary":[39],"identify":[41],"pattern":[44,181],"rather":[45],"than":[46],"only":[47],"detect":[48,54,70],"changes.":[51],"However,":[52],"these":[55],"data":[58],"timely,":[62],"we":[63],"propose":[64],"a":[65,113,172],"fast":[66],"strategy":[68],"code":[75,95],"with":[76,125],"machine":[77],"learning-based":[78],"approaches.":[79],"In":[80],"particular,":[81],"XGBoost,":[82],"LightGBM":[83],"and":[84,129,143,155,165,169],"Random":[85],"Forests":[86],"will":[87,182,190],"be":[88,183],"exploited":[89],"order":[91,152],"analyze":[93],"data.":[99],"The":[100,135],"codes":[101],"fed":[103],"into":[104],"them":[105],"as":[106,112],"sequences":[107],"of":[108,123,137,161],"bytes/tokens":[109],"or":[110,120],"just":[111],"single":[114],"byte/token":[115],"(e.g.":[116],"1-,":[117],"2-,":[118],"3-,":[119],"4-grams).":[121],"Terabytes":[122],"program":[124,174,193],"labels,":[126],"including":[127],"benign":[128],"programs,":[131],"been":[133],"collected.":[134],"challenges":[136],"this":[138],"task":[139],"select":[142],"get":[144],"features,":[146],"modify":[147],"three":[149],"models":[150],"train":[154],"test":[156],"dataset,":[158],"which":[159,189],"consists":[160],"evaluate":[166],"features":[168],"models.":[170],"When":[171],"detected":[176],"by":[177],"one":[178],"model,":[179],"its":[180],"broadcast":[184],"other":[187],"models,":[188],"prevent":[191],"intrusion":[195],"effectively.":[196]},"counts_by_year":[{"year":2023,"cited_by_count":1},{"year":2022,"cited_by_count":2},{"year":2021,"cited_by_count":1}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
