{"id":"https://openalex.org/W7133231151","doi":"https://doi.org/10.1109/iotsms68530.2025.11408583","title":"Meta-Ensemble Deep Learning Framework with Grad-CAM Explainability for Robust Image-Based Malware Detection in Industrial IoT Networks","display_name":"Meta-Ensemble Deep Learning Framework with Grad-CAM Explainability for Robust Image-Based Malware Detection in Industrial IoT Networks","publication_year":2025,"publication_date":"2025-12-02","ids":{"openalex":"https://openalex.org/W7133231151","doi":"https://doi.org/10.1109/iotsms68530.2025.11408583"},"language":null,"primary_location":{"id":"doi:10.1109/iotsms68530.2025.11408583","is_oa":false,"landing_page_url":"https://doi.org/10.1109/iotsms68530.2025.11408583","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2025 12th International Conference on Internet of Things: Systems, Management and Security (IOTSMS)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5019629910","display_name":"Tamara Zhukabayeva","orcid":"https://orcid.org/0000-0001-6345-5211"},"institutions":[{"id":"https://openalex.org/I10232997","display_name":"L. N. Gumilyov Eurasian National University","ror":"https://ror.org/0242cby63","country_code":"KZ","type":"education","lineage":["https://openalex.org/I10232997"]}],"countries":["KZ"],"is_corresponding":false,"raw_author_name":"Tamara Zhukabayeva","raw_affiliation_strings":["L.N. Gumilyov Eurasian National University,Faculty of Information Technology,Astana,Kazakhstan"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"L.N. Gumilyov Eurasian National University,Faculty of Information Technology,Astana,Kazakhstan","institution_ids":["https://openalex.org/I10232997"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5002828790","display_name":"Zulfiqar Ahmad","orcid":"https://orcid.org/0000-0002-6278-9516"},"institutions":[{"id":"https://openalex.org/I263208278","display_name":"Hazara University","ror":"https://ror.org/018y22094","country_code":"PK","type":"education","lineage":["https://openalex.org/I263208278"]}],"countries":["PK"],"is_corresponding":false,"raw_author_name":"Zulfiqar Ahmad","raw_affiliation_strings":["Hazara University,Department of Computer Science and Information Technology,Mansehra,Pakistan,21300"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Hazara University,Department of Computer Science and Information Technology,Mansehra,Pakistan,21300","institution_ids":["https://openalex.org/I263208278"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5127802232","display_name":"Jamil Abedalrahim Jamil Alsayaydeh","orcid":null},"institutions":[{"id":"https://openalex.org/I32589535","display_name":"Technical University of Malaysia Malacca","ror":"https://ror.org/01xb6rs26","country_code":"MY","type":"education","lineage":["https://openalex.org/I32589535"]}],"countries":["MY"],"is_corresponding":false,"raw_author_name":"Jamil Abedalrahim Jamil Alsayaydeh","raw_affiliation_strings":["Fakulti Teknologi dan Kejuruteraan Elektronik dan Komputer (FTKEK), Universiti Teknikal Malaysia Melaka (UTeM),Department of Engineering Technology,Durian Tunggal,Melaka,Malaysia,76100"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Fakulti Teknologi dan Kejuruteraan Elektronik dan Komputer (FTKEK), Universiti Teknikal Malaysia Melaka (UTeM),Department of Engineering Technology,Durian Tunggal,Melaka,Malaysia,76100","institution_ids":["https://openalex.org/I32589535"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5127871954","display_name":"Nurdaulet Karabayev","orcid":null},"institutions":[{"id":"https://openalex.org/I10232997","display_name":"L. N. Gumilyov Eurasian National University","ror":"https://ror.org/0242cby63","country_code":"KZ","type":"education","lineage":["https://openalex.org/I10232997"]}],"countries":["KZ"],"is_corresponding":false,"raw_author_name":"Nurdaulet Karabayev","raw_affiliation_strings":["L.N. Gumilyov Eurasian National University,Faculty of Information Technology,Astana,Kazakhstan"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"L.N. Gumilyov Eurasian National University,Faculty of Information Technology,Astana,Kazakhstan","institution_ids":["https://openalex.org/I10232997"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5092706653","display_name":"Yerik Mardenov","orcid":"https://orcid.org/0000-0001-9284-9797"},"institutions":[{"id":"https://openalex.org/I10232997","display_name":"L. N. Gumilyov Eurasian National University","ror":"https://ror.org/0242cby63","country_code":"KZ","type":"education","lineage":["https://openalex.org/I10232997"]}],"countries":["KZ"],"is_corresponding":false,"raw_author_name":"Yerik Mardenov","raw_affiliation_strings":["L.N. Gumilyov Eurasian National University,Faculty of Information Technology,Astana,Kazakhstan"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"L.N. Gumilyov Eurasian National University,Faculty of Information Technology,Astana,Kazakhstan","institution_ids":["https://openalex.org/I10232997"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5105099789","display_name":"Dilaram Baumuratova","orcid":"https://orcid.org/0009-0009-4621-1886"},"institutions":[{"id":"https://openalex.org/I10232997","display_name":"L. N. Gumilyov Eurasian National University","ror":"https://ror.org/0242cby63","country_code":"KZ","type":"education","lineage":["https://openalex.org/I10232997"]}],"countries":["KZ"],"is_corresponding":false,"raw_author_name":"Dilaram Baumuratova","raw_affiliation_strings":["L.N. Gumilyov Eurasian National University,Faculty of Information Technology,Astana,Kazakhstan"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"L.N. Gumilyov Eurasian National University,Faculty of Information Technology,Astana,Kazakhstan","institution_ids":["https://openalex.org/I10232997"]}]}],"institutions":[],"countries_distinct_count":3,"institutions_distinct_count":6,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":{"value":0.82335157,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":"63","last_page":"70"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.5146999955177307,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.5146999955177307,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.20739999413490295,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12026","display_name":"Explainable Artificial Intelligence (XAI)","score":0.15459999442100525,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/interpretability","display_name":"Interpretability","score":0.8485000133514404},{"id":"https://openalex.org/keywords/malware","display_name":"Malware","score":0.8339999914169312},{"id":"https://openalex.org/keywords/deep-learning","display_name":"Deep learning","score":0.6744999885559082},{"id":"https://openalex.org/keywords/visualization","display_name":"Visualization","score":0.49000000953674316},{"id":"https://openalex.org/keywords/executable","display_name":"Executable","score":0.4562999904155731},{"id":"https://openalex.org/keywords/sensitivity","display_name":"Sensitivity (control systems)","score":0.39570000767707825},{"id":"https://openalex.org/keywords/baseline","display_name":"Baseline (sea)","score":0.33469998836517334},{"id":"https://openalex.org/keywords/emulation","display_name":"Emulation","score":0.3330000042915344}],"concepts":[{"id":"https://openalex.org/C2781067378","wikidata":"https://www.wikidata.org/wiki/Q17027399","display_name":"Interpretability","level":2,"score":0.8485000133514404},{"id":"https://openalex.org/C541664917","wikidata":"https://www.wikidata.org/wiki/Q14001","display_name":"Malware","level":2,"score":0.8339999914169312},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7414000034332275},{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.6744999885559082},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.6600000262260437},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.5342000126838684},{"id":"https://openalex.org/C36464697","wikidata":"https://www.wikidata.org/wiki/Q451553","display_name":"Visualization","level":2,"score":0.49000000953674316},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.4893999993801117},{"id":"https://openalex.org/C160145156","wikidata":"https://www.wikidata.org/wiki/Q778586","display_name":"Executable","level":2,"score":0.4562999904155731},{"id":"https://openalex.org/C21200559","wikidata":"https://www.wikidata.org/wiki/Q7451068","display_name":"Sensitivity (control systems)","level":2,"score":0.39570000767707825},{"id":"https://openalex.org/C12725497","wikidata":"https://www.wikidata.org/wiki/Q810247","display_name":"Baseline (sea)","level":2,"score":0.33469998836517334},{"id":"https://openalex.org/C149810388","wikidata":"https://www.wikidata.org/wiki/Q5374873","display_name":"Emulation","level":2,"score":0.3330000042915344},{"id":"https://openalex.org/C26517878","wikidata":"https://www.wikidata.org/wiki/Q228039","display_name":"Key (lock)","level":2,"score":0.32019999623298645},{"id":"https://openalex.org/C95922358","wikidata":"https://www.wikidata.org/wiki/Q5432725","display_name":"False positive rate","level":2,"score":0.32019999623298645},{"id":"https://openalex.org/C81669768","wikidata":"https://www.wikidata.org/wiki/Q2359161","display_name":"Precision and recall","level":2,"score":0.3140000104904175},{"id":"https://openalex.org/C28719098","wikidata":"https://www.wikidata.org/wiki/Q44946","display_name":"Point (geometry)","level":2,"score":0.31290000677108765},{"id":"https://openalex.org/C182590292","wikidata":"https://www.wikidata.org/wiki/Q989632","display_name":"Network security","level":2,"score":0.3107999861240387},{"id":"https://openalex.org/C81860439","wikidata":"https://www.wikidata.org/wiki/Q251212","display_name":"Internet of Things","level":2,"score":0.3059999942779541},{"id":"https://openalex.org/C167981075","wikidata":"https://www.wikidata.org/wiki/Q2667186","display_name":"Sandbox (software development)","level":2,"score":0.3021000027656555},{"id":"https://openalex.org/C100660578","wikidata":"https://www.wikidata.org/wiki/Q18733","display_name":"Recall","level":2,"score":0.29089999198913574},{"id":"https://openalex.org/C153180895","wikidata":"https://www.wikidata.org/wiki/Q7148389","display_name":"Pattern recognition (psychology)","level":2,"score":0.26910001039505005},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.266400009393692},{"id":"https://openalex.org/C52622490","wikidata":"https://www.wikidata.org/wiki/Q1026626","display_name":"Feature extraction","level":2,"score":0.2635999917984009},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.2554999887943268},{"id":"https://openalex.org/C150817343","wikidata":"https://www.wikidata.org/wiki/Q875932","display_name":"Digital watermarking","level":3,"score":0.25119999051094055}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/iotsms68530.2025.11408583","is_oa":false,"landing_page_url":"https://doi.org/10.1109/iotsms68530.2025.11408583","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2025 12th International Conference on Internet of Things: Systems, Management and Security (IOTSMS)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"score":0.5302385091781616,"id":"https://metadata.un.org/sdg/9","display_name":"Industry, innovation and infrastructure"}],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":20,"referenced_works":["https://openalex.org/W3020985685","https://openalex.org/W3212457727","https://openalex.org/W4210683801","https://openalex.org/W4280653480","https://openalex.org/W4289941885","https://openalex.org/W4296913356","https://openalex.org/W4367296576","https://openalex.org/W4386220180","https://openalex.org/W4386850845","https://openalex.org/W4387140220","https://openalex.org/W4391093708","https://openalex.org/W4392397351","https://openalex.org/W4399802140","https://openalex.org/W4399985961","https://openalex.org/W4403182947","https://openalex.org/W4405965505","https://openalex.org/W4407550791","https://openalex.org/W4409153671","https://openalex.org/W4409958665","https://openalex.org/W4410810039"],"related_works":[],"abstract_inverted_index":{"The":[0,78,113,144],"exponential":[1],"growth":[2],"of":[3,7,15,75,88,97,155,166,199],"the":[4,13,98,131,137,156,163,167,173,176,197],"Industrial":[5],"Internet":[6],"Things":[8],"(IIoT)":[9],"network":[10],"has":[11],"increased":[12,136],"risk":[14],"malware":[16,31,71,123,189],"attacks,":[17],"which":[18,90],"can":[19],"be":[20],"a":[21,54,67,181],"great":[22],"threat":[23],"to":[24,69,84,95,141,152,172,188],"data":[25],"integrity":[26],"and":[27,39,41,64,110,120,135,161,185,191],"system":[28],"reliability.":[29],"Conventional":[30],"detection":[32,138,190],"methods":[33],"are":[34,43],"not":[35,44],"always":[36],"robust,":[37],"scalable,":[38,183],"interpretable":[40],"thus":[42],"effective":[45],"in":[46,93,125,196],"very":[47],"dynamic":[48],"environments.":[49],"Accordingly,":[50],"this":[51],"paper":[52],"proposes":[53],"meta-ensemble":[55,178],"deep":[56],"learning":[57],"model":[58,80],"that":[59,128,175],"combines":[60],"VGG16,":[61],"ResNet50,":[62],"ResNet101,":[63],"DenseNet121":[65,111],"via":[66],"meta-learner":[68],"classify":[70],"using":[72],"image-based":[73],"representations":[74],"executable":[76],"files.":[77],"proposed":[79,177],"was":[81,91,150],"evaluated":[82],"experimentally":[83],"have":[85],"an":[86],"accuracy":[87],"95%,":[89],"higher":[92],"comparison":[94],"all":[96],"baseline":[99],"models,":[100],"such":[101],"as":[102],"VGG":[103],"16":[104],"(92%),":[105],"ResNet50":[106],"(90%),":[107],"ResNet101":[108],"(89%),":[109],"(88%).":[112],"meta-model":[114],"achieved":[115],"97":[116],"percent":[117,122],"benign":[118],"precision":[119],"98":[121],"recall":[124],"class-wise":[126],"performance":[127],"significantly":[129],"lowered":[130],"false":[132],"positive":[133],"rate":[134],"sensitivity":[139],"compared":[140],"standalone":[142],"models.":[143],"Grad-CAM":[145],"explainable":[146],"AI":[147],"(XAI)":[148],"method":[149],"used":[151],"generate":[153],"visualization":[154],"class-distinctive":[157],"regions,":[158],"allowing":[159],"interpretability":[160],"increasing":[162],"trust":[164],"level":[165],"analyst.":[168],"These":[169],"findings":[170],"point":[171],"conclusion":[174],"framework":[179],"provides":[180],"more":[182],"interpretable,":[184],"robust":[186],"solution":[187],"therefore":[192],"exhibits":[193],"promising":[194],"prospects":[195],"security":[198],"IIoT":[200],"networks.":[201]},"counts_by_year":[],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2026-03-03T00:00:00"}
