{"id":"https://openalex.org/W7116985437","doi":"https://doi.org/10.1109/itnac66378.2025.11302604","title":"An Investigation of Feature-Grouping for Robust SHAP Explanations in IoT Intrusion Detection","display_name":"An Investigation of Feature-Grouping for Robust SHAP Explanations in IoT Intrusion Detection","publication_year":2025,"publication_date":"2025-11-26","ids":{"openalex":"https://openalex.org/W7116985437","doi":"https://doi.org/10.1109/itnac66378.2025.11302604"},"language":null,"primary_location":{"id":"doi:10.1109/itnac66378.2025.11302604","is_oa":false,"landing_page_url":"https://doi.org/10.1109/itnac66378.2025.11302604","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2025 IEEE 35th International Telecommunication Networks and Applications Conference (ITNAC)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5121065963","display_name":"Dedy Hendro","orcid":null},"institutions":[{"id":"https://openalex.org/I41156924","display_name":"Victoria University of Wellington","ror":"https://ror.org/0040r6f76","country_code":"NZ","type":"education","lineage":["https://openalex.org/I41156924"]},{"id":"https://openalex.org/I2799419803","display_name":"Crown Research Institutes","ror":"https://ror.org/00t28mr39","country_code":"NZ","type":"government","lineage":["https://openalex.org/I2799419803"]}],"countries":["NZ"],"is_corresponding":true,"raw_author_name":"Dedy Hendro","raw_affiliation_strings":["Victoria University of Wellington,School of Engineering and Computer Science,New Zealand"],"affiliations":[{"raw_affiliation_string":"Victoria University of Wellington,School of Engineering and Computer Science,New Zealand","institution_ids":["https://openalex.org/I41156924","https://openalex.org/I2799419803"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5067329845","display_name":"Yi Mei","orcid":null},"institutions":[{"id":"https://openalex.org/I2799419803","display_name":"Crown Research Institutes","ror":"https://ror.org/00t28mr39","country_code":"NZ","type":"government","lineage":["https://openalex.org/I2799419803"]},{"id":"https://openalex.org/I41156924","display_name":"Victoria University of Wellington","ror":"https://ror.org/0040r6f76","country_code":"NZ","type":"education","lineage":["https://openalex.org/I41156924"]}],"countries":["NZ"],"is_corresponding":false,"raw_author_name":"Yi Mei","raw_affiliation_strings":["Victoria University of Wellington,School of Engineering and Computer Science,New Zealand"],"affiliations":[{"raw_affiliation_string":"Victoria University of Wellington,School of Engineering and Computer Science,New Zealand","institution_ids":["https://openalex.org/I41156924","https://openalex.org/I2799419803"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5058515120","display_name":"Ian Welch","orcid":"https://orcid.org/0000-0002-5968-182X"},"institutions":[{"id":"https://openalex.org/I2799419803","display_name":"Crown Research Institutes","ror":"https://ror.org/00t28mr39","country_code":"NZ","type":"government","lineage":["https://openalex.org/I2799419803"]},{"id":"https://openalex.org/I41156924","display_name":"Victoria University of Wellington","ror":"https://ror.org/0040r6f76","country_code":"NZ","type":"education","lineage":["https://openalex.org/I41156924"]}],"countries":["NZ"],"is_corresponding":false,"raw_author_name":"Ian Welch","raw_affiliation_strings":["Victoria University of Wellington,School of Engineering and Computer Science,New Zealand"],"affiliations":[{"raw_affiliation_string":"Victoria University of Wellington,School of Engineering and Computer Science,New Zealand","institution_ids":["https://openalex.org/I41156924","https://openalex.org/I2799419803"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":3,"corresponding_author_ids":["https://openalex.org/A5121065963"],"corresponding_institution_ids":["https://openalex.org/I2799419803","https://openalex.org/I41156924"],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":{"value":0.83640407,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":"1","last_page":"8"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T12026","display_name":"Explainable Artificial Intelligence (XAI)","score":0.38179999589920044,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T12026","display_name":"Explainable Artificial Intelligence (XAI)","score":0.38179999589920044,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.3248000144958496,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":0.11429999768733978,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/interpretability","display_name":"Interpretability","score":0.7189000248908997},{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness (evolution)","score":0.705299973487854},{"id":"https://openalex.org/keywords/random-forest","display_name":"Random forest","score":0.6233000159263611},{"id":"https://openalex.org/keywords/intrusion-detection-system","display_name":"Intrusion detection system","score":0.5789999961853027},{"id":"https://openalex.org/keywords/feature","display_name":"Feature (linguistics)","score":0.43529999256134033},{"id":"https://openalex.org/keywords/internet-of-things","display_name":"Internet of Things","score":0.420199990272522},{"id":"https://openalex.org/keywords/encoding","display_name":"Encoding (memory)","score":0.39250001311302185},{"id":"https://openalex.org/keywords/aggregate","display_name":"Aggregate (composite)","score":0.3767000138759613}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7351999878883362},{"id":"https://openalex.org/C2781067378","wikidata":"https://www.wikidata.org/wiki/Q17027399","display_name":"Interpretability","level":2,"score":0.7189000248908997},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.705299973487854},{"id":"https://openalex.org/C169258074","wikidata":"https://www.wikidata.org/wiki/Q245748","display_name":"Random forest","level":2,"score":0.6233000159263611},{"id":"https://openalex.org/C35525427","wikidata":"https://www.wikidata.org/wiki/Q745881","display_name":"Intrusion detection system","level":2,"score":0.5789999961853027},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.5325999855995178},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.5117999911308289},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.475600004196167},{"id":"https://openalex.org/C2776401178","wikidata":"https://www.wikidata.org/wiki/Q12050496","display_name":"Feature (linguistics)","level":2,"score":0.43529999256134033},{"id":"https://openalex.org/C81860439","wikidata":"https://www.wikidata.org/wiki/Q251212","display_name":"Internet of Things","level":2,"score":0.420199990272522},{"id":"https://openalex.org/C125411270","wikidata":"https://www.wikidata.org/wiki/Q18653","display_name":"Encoding (memory)","level":2,"score":0.39250001311302185},{"id":"https://openalex.org/C4679612","wikidata":"https://www.wikidata.org/wiki/Q866298","display_name":"Aggregate (composite)","level":2,"score":0.3767000138759613},{"id":"https://openalex.org/C158251709","wikidata":"https://www.wikidata.org/wiki/Q354025","display_name":"Intrusion","level":2,"score":0.36570000648498535},{"id":"https://openalex.org/C21200559","wikidata":"https://www.wikidata.org/wiki/Q7451068","display_name":"Sensitivity (control systems)","level":2,"score":0.36250001192092896},{"id":"https://openalex.org/C52622490","wikidata":"https://www.wikidata.org/wiki/Q1026626","display_name":"Feature extraction","level":2,"score":0.3095000088214874},{"id":"https://openalex.org/C179799912","wikidata":"https://www.wikidata.org/wiki/Q205084","display_name":"Computational complexity theory","level":2,"score":0.2827000021934509},{"id":"https://openalex.org/C110875604","wikidata":"https://www.wikidata.org/wiki/Q75","display_name":"The Internet","level":2,"score":0.27480000257492065},{"id":"https://openalex.org/C179518139","wikidata":"https://www.wikidata.org/wiki/Q5140297","display_name":"Coding (social sciences)","level":2,"score":0.2736000120639801},{"id":"https://openalex.org/C2778827112","wikidata":"https://www.wikidata.org/wiki/Q22245680","display_name":"Feature engineering","level":3,"score":0.26980000734329224},{"id":"https://openalex.org/C51632099","wikidata":"https://www.wikidata.org/wiki/Q3985153","display_name":"Training set","level":2,"score":0.25619998574256897},{"id":"https://openalex.org/C26517878","wikidata":"https://www.wikidata.org/wiki/Q228039","display_name":"Key (lock)","level":2,"score":0.2547999918460846}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/itnac66378.2025.11302604","is_oa":false,"landing_page_url":"https://doi.org/10.1109/itnac66378.2025.11302604","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2025 IEEE 35th International Telecommunication Networks and Applications Conference (ITNAC)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":12,"referenced_works":["https://openalex.org/W3035264434","https://openalex.org/W3111749540","https://openalex.org/W3132588576","https://openalex.org/W3164964481","https://openalex.org/W4294559022","https://openalex.org/W4306827119","https://openalex.org/W4312702461","https://openalex.org/W4321786089","https://openalex.org/W4386142022","https://openalex.org/W4391407003","https://openalex.org/W4408168158","https://openalex.org/W4411266860"],"related_works":[],"abstract_inverted_index":{"The":[0,143],"opacity":[1],"of":[2,7,45,62,74,114,145],"Machine":[3],"Learning":[4],"(ML)-based":[5],"Internet":[6],"Things":[8],"(IoT)":[9],"Intrusion":[10],"Detection":[11],"Systems":[12],"(IDSs)":[13],"necessitates":[14],"Explainable":[15],"AI":[16],"techniques":[17],"like":[18],"SHAP.":[19],"However,":[20],"SHAP":[21,43],"explanations":[22],"for":[23,133,156],"models":[24,95],"trained":[25],"on":[26,85],"high-dimensional,":[27],"onehot":[28],"encoded":[29,48],"data":[30],"are":[31,163],"fragmented":[32],"and":[33,71,88,100,106,136,153],"unstable.":[34],"A":[35],"recent":[36],"method,":[37],"FusionSHAP,":[38],"was":[39],"introduced":[40],"to":[41],"aggregate":[42],"values":[44],"the":[46,59,63,157],"one-hot":[47],"features":[49],"back":[50],"into":[51],"their":[52],"respective":[53],"semantic":[54],"groups.":[55],"This":[56],"method":[57,77],"improves":[58,124],"high-level":[60],"interpretability":[61],"explanations.":[64],"We":[65,81],"extend":[66],"existing":[67],"work":[68],"through":[69],"quantitative":[70],"qualitative":[72],"evaluation":[73,113],"feature":[75],"grouping":[76],"across":[78,92,150],"multiple":[79],"dimensions.":[80],"investigate":[82],"its":[83,90,107],"effect":[84],"faithfulness,":[86,122],"complexity":[87,147],"robustness,":[89,161],"performance":[91],"different":[93],"ML":[94],"(Random":[96],"Forest":[97],"vs.":[98,104],"XGBoost)":[99],"attack":[101],"types":[102],"(DDoS":[103],"Ransomware),":[105],"superiority":[108],"over":[109],"label":[110,138],"encoding.":[111],"Our":[112],"30":[115],"random":[116],"seeds":[117],"demonstrates":[118],"that":[119],"feature-grouping":[120],"preserves":[121],"significantly":[123],"robustness":[125],"(reducing":[126],"worst-case":[127,141],"sensitivity":[128],"by":[129],"$\\mathbf{3":[130],"0":[131],"\\%}$":[132],"Random":[134],"Forest)":[135],"outperforms":[137],"encoding":[139],"in":[140,160,165],"robustness.":[142],"trade-off":[144],"increased":[146],"is":[148,154],"consistent":[149],"all":[151],"experiments":[152],"favourable":[155],"substantial":[158],"gains":[159],"which":[162],"paramount":[164],"cybersecurity":[166],"context.":[167]},"counts_by_year":[],"updated_date":"2025-12-24T23:09:58.560324","created_date":"2025-12-23T00:00:00"}
