{"id":"https://openalex.org/W4415124478","doi":"https://doi.org/10.1109/icnp65844.2025.11192405","title":"ARTEMIS: Adaptive Reweighing for Transferable Evasion via Meta-learning in Zero-Query Network Intrusion Detection Systems","display_name":"ARTEMIS: Adaptive Reweighing for Transferable Evasion via Meta-learning in Zero-Query Network Intrusion Detection Systems","publication_year":2025,"publication_date":"2025-09-22","ids":{"openalex":"https://openalex.org/W4415124478","doi":"https://doi.org/10.1109/icnp65844.2025.11192405"},"language":"en","primary_location":{"id":"doi:10.1109/icnp65844.2025.11192405","is_oa":false,"landing_page_url":"https://doi.org/10.1109/icnp65844.2025.11192405","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2025 IEEE 33rd International Conference on Network Protocols (ICNP)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5100436079","display_name":"Lei Wang","orcid":"https://orcid.org/0000-0003-0931-0710"},"institutions":[{"id":"https://openalex.org/I4210114105","display_name":"Tsinghua\u2013Berkeley Shenzhen Institute","ror":"https://ror.org/02hhwwz98","country_code":"CN","type":"facility","lineage":["https://openalex.org/I4210114105","https://openalex.org/I95457486","https://openalex.org/I99065089"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Lei Wang","raw_affiliation_strings":["Tsinghua Shenzhen International Graduate School,Shenzhen,China"],"affiliations":[{"raw_affiliation_string":"Tsinghua Shenzhen International Graduate School,Shenzhen,China","institution_ids":["https://openalex.org/I4210114105"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5079973133","display_name":"Qingsong Zou","orcid":"https://orcid.org/0000-0002-7892-0021"},"institutions":[{"id":"https://openalex.org/I4210114105","display_name":"Tsinghua\u2013Berkeley Shenzhen Institute","ror":"https://ror.org/02hhwwz98","country_code":"CN","type":"facility","lineage":["https://openalex.org/I4210114105","https://openalex.org/I95457486","https://openalex.org/I99065089"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Qingsong Zou","raw_affiliation_strings":["Tsinghua Shenzhen International Graduate School,Shenzhen,China"],"affiliations":[{"raw_affiliation_string":"Tsinghua Shenzhen International Graduate School,Shenzhen,China","institution_ids":["https://openalex.org/I4210114105"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100404059","display_name":"Qing Li","orcid":"https://orcid.org/0000-0002-1772-9194"},"institutions":[{"id":"https://openalex.org/I4210136793","display_name":"Peng Cheng Laboratory","ror":"https://ror.org/03qdqbt06","country_code":"CN","type":"facility","lineage":["https://openalex.org/I4210136793"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Qing Li","raw_affiliation_strings":["Peng Cheng Laboratory,Shenzhen,China"],"affiliations":[{"raw_affiliation_string":"Peng Cheng Laboratory,Shenzhen,China","institution_ids":["https://openalex.org/I4210136793"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5076180260","display_name":"Jianping Zhang","orcid":"https://orcid.org/0000-0003-2212-5296"},"institutions":[{"id":"https://openalex.org/I177725633","display_name":"Chinese University of Hong Kong","ror":"https://ror.org/00t33hh48","country_code":"CN","type":"education","lineage":["https://openalex.org/I177725633"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Jianping Zhang","raw_affiliation_strings":["The Chinese University of Hong Kong,Hong Kong,China"],"affiliations":[{"raw_affiliation_string":"The Chinese University of Hong Kong,Hong Kong,China","institution_ids":["https://openalex.org/I177725633"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5101656020","display_name":"Yong Jiang","orcid":"https://orcid.org/0000-0002-0163-5089"},"institutions":[{"id":"https://openalex.org/I4210114105","display_name":"Tsinghua\u2013Berkeley Shenzhen Institute","ror":"https://ror.org/02hhwwz98","country_code":"CN","type":"facility","lineage":["https://openalex.org/I4210114105","https://openalex.org/I95457486","https://openalex.org/I99065089"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yong Jiang","raw_affiliation_strings":["Tsinghua Shenzhen International Graduate School,Shenzhen,China"],"affiliations":[{"raw_affiliation_string":"Tsinghua Shenzhen International Graduate School,Shenzhen,China","institution_ids":["https://openalex.org/I4210114105"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":5,"corresponding_author_ids":["https://openalex.org/A5100436079"],"corresponding_institution_ids":["https://openalex.org/I4210114105"],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":{"value":0.35961657,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":"1","last_page":"12"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":0.9979000091552734,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":0.9979000091552734,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9858999848365784,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11598","display_name":"Internet Traffic Analysis and Secure E-voting","score":0.9812999963760376,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.8069000244140625},{"id":"https://openalex.org/keywords/transferability","display_name":"Transferability","score":0.6847000122070312},{"id":"https://openalex.org/keywords/intrusion-detection-system","display_name":"Intrusion detection system","score":0.6158999800682068},{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness (evolution)","score":0.6071000099182129},{"id":"https://openalex.org/keywords/evasion","display_name":"Evasion (ethics)","score":0.5498999953269958},{"id":"https://openalex.org/keywords/vulnerability","display_name":"Vulnerability (computing)","score":0.5076000094413757},{"id":"https://openalex.org/keywords/generalization","display_name":"Generalization","score":0.4334000051021576}],"concepts":[{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.8069000244140625},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7817000150680542},{"id":"https://openalex.org/C61272859","wikidata":"https://www.wikidata.org/wiki/Q7834031","display_name":"Transferability","level":3,"score":0.6847000122070312},{"id":"https://openalex.org/C35525427","wikidata":"https://www.wikidata.org/wiki/Q745881","display_name":"Intrusion detection system","level":2,"score":0.6158999800682068},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.6071000099182129},{"id":"https://openalex.org/C2781251061","wikidata":"https://www.wikidata.org/wiki/Q5416089","display_name":"Evasion (ethics)","level":3,"score":0.5498999953269958},{"id":"https://openalex.org/C95713431","wikidata":"https://www.wikidata.org/wiki/Q631425","display_name":"Vulnerability (computing)","level":2,"score":0.5076000094413757},{"id":"https://openalex.org/C177148314","wikidata":"https://www.wikidata.org/wiki/Q170084","display_name":"Generalization","level":2,"score":0.4334000051021576},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.3968999981880188},{"id":"https://openalex.org/C167063184","wikidata":"https://www.wikidata.org/wiki/Q1400839","display_name":"Vulnerability assessment","level":3,"score":0.3846000134944916},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.35749998688697815},{"id":"https://openalex.org/C65856478","wikidata":"https://www.wikidata.org/wiki/Q3991682","display_name":"Attack model","level":2,"score":0.3458000123500824},{"id":"https://openalex.org/C26517878","wikidata":"https://www.wikidata.org/wiki/Q228039","display_name":"Key (lock)","level":2,"score":0.34299999475479126},{"id":"https://openalex.org/C182590292","wikidata":"https://www.wikidata.org/wiki/Q989632","display_name":"Network security","level":2,"score":0.3197000026702881},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.31279999017715454},{"id":"https://openalex.org/C158251709","wikidata":"https://www.wikidata.org/wiki/Q354025","display_name":"Intrusion","level":2,"score":0.2930999994277954},{"id":"https://openalex.org/C97541855","wikidata":"https://www.wikidata.org/wiki/Q830687","display_name":"Reinforcement learning","level":2,"score":0.27079999446868896}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/icnp65844.2025.11192405","is_oa":false,"landing_page_url":"https://doi.org/10.1109/icnp65844.2025.11192405","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2025 IEEE 33rd International Conference on Network Protocols (ICNP)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":38,"referenced_works":["https://openalex.org/W2112796928","https://openalex.org/W2180612164","https://openalex.org/W2335999708","https://openalex.org/W2342408547","https://openalex.org/W2543927648","https://openalex.org/W2746600820","https://openalex.org/W2774644650","https://openalex.org/W2783047817","https://openalex.org/W2789828921","https://openalex.org/W2853623529","https://openalex.org/W2889836475","https://openalex.org/W2915004662","https://openalex.org/W2919493784","https://openalex.org/W2923778952","https://openalex.org/W2926701059","https://openalex.org/W2962847335","https://openalex.org/W2963197901","https://openalex.org/W2963857521","https://openalex.org/W2964205597","https://openalex.org/W3009091629","https://openalex.org/W3014732532","https://openalex.org/W3015625436","https://openalex.org/W3040389479","https://openalex.org/W3091857398","https://openalex.org/W3111088413","https://openalex.org/W3168146198","https://openalex.org/W3173170122","https://openalex.org/W4321484315","https://openalex.org/W4385080307","https://openalex.org/W4386072305","https://openalex.org/W4386076570","https://openalex.org/W4390231746","https://openalex.org/W4391097056","https://openalex.org/W4403561221","https://openalex.org/W4403791862","https://openalex.org/W4405181112","https://openalex.org/W4408283015","https://openalex.org/W4409473631"],"related_works":[],"abstract_inverted_index":{"Machine":[0],"Learning-based":[1],"Network":[2],"Intrusion":[3],"Detection":[4],"Systems":[5],"(ML-NIDSes)":[6],"are":[7],"vital":[8],"for":[9,97,167,175],"cyber-security,":[10],"yet":[11],"their":[12],"inherent":[13],"vulnerability":[14,169],"to":[15,92,107,109,128],"adversarial":[16,58,95],"attacks":[17,26,52],"poses":[18],"a":[19,28,86,122,164],"persistent":[20],"challenge.":[21],"Among":[22],"these,":[23],"zero-query":[24,81,98,152],"transfer-based":[25,179],"present":[27],"particularly":[29],"realistic":[30],"and":[31,65,150,171],"formidable":[32],"threat,":[33],"as":[34],"adversaries":[35],"operate":[36],"with":[37,43],"no":[38],"knowledge":[39],"of":[40,50,78,105,137],"or":[41],"interaction":[42],"the":[44,48,76,102,134,144],"target":[45,111],"NIDS.":[46],"However,":[47],"efficacy":[49],"such":[51],"is":[53],"critically":[54],"hampered":[55],"by":[56,66,113,132],"poor":[57],"transferability":[59,96],"across":[60,147],"diverse":[61,115],"NIDS":[62,168],"model":[63],"architectures":[64],"strict":[67],"protocol-defined":[68],"constraints":[69],"on":[70,143],"network":[71],"traffic":[72],"modifications.":[73],"To":[74],"probe":[75],"robustness":[77],"NIDSes":[79],"under":[80],"attacks,":[82],"we":[83],"introduce":[84],"ARTEMIS,":[85],"novel":[87],"hybrid":[88],"attack":[89],"framework":[90],"engineered":[91],"dramatically":[93],"enhance":[94],"attacks.":[99],"ARTEMIS":[100,156],"leverages":[101],"generalization":[103],"capabilities":[104],"meta-learning":[106],"adapt":[108],"unknown":[110],"models":[112],"simulating":[114],"black-box":[116],"transfer":[117,130],"tasks.":[118],"Simultaneously,":[119],"it":[120],"combines":[121],"reinforcement":[123],"learning-inspired":[124],"adaptive":[125],"reweighing":[126],"mechanism":[127],"maximize":[129],"potential":[131],"promoting":[133],"effective":[135],"use":[136],"heterogeneous":[138],"substitute":[139],"ensembles.":[140],"Extensive":[141],"evaluations":[142],"BCCC-CIC-IDS2017/2018":[145],"datasets":[146],"closed-set,":[148],"open-set,":[149],"cross-set":[151],"scenarios":[153],"confirm":[154],"that":[155],"significantly":[157],"outperforms":[158],"state-of-the-art":[159],"baselines.":[160],"Our":[161],"work":[162],"presents":[163],"powerful":[165],"methodology":[166],"assessment":[170],"provides":[172],"crucial":[173],"insights":[174],"developing":[176],"defenses":[177],"against":[178],"evasions.":[180]},"counts_by_year":[],"updated_date":"2026-03-07T16:01:11.037858","created_date":"2025-10-14T00:00:00"}
