{"id":"https://openalex.org/W4387587628","doi":"https://doi.org/10.1109/tdsc.2023.3324265","title":"EAGLE: Evasion Attacks Guided by Local Explanations Against Android Malware Classification","display_name":"EAGLE: Evasion Attacks Guided by Local Explanations Against Android Malware Classification","publication_year":2023,"publication_date":"2023-10-12","ids":{"openalex":"https://openalex.org/W4387587628","doi":"https://doi.org/10.1109/tdsc.2023.3324265"},"language":"en","primary_location":{"id":"doi:10.1109/tdsc.2023.3324265","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tdsc.2023.3324265","pdf_url":null,"source":{"id":"https://openalex.org/S133795288","display_name":"IEEE Transactions on Dependable and Secure Computing","issn_l":"1545-5971","issn":["1545-5971","1941-0018","2160-9209"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320439","host_organization_name":"IEEE Computer Society","host_organization_lineage":["https://openalex.org/P4310320439","https://openalex.org/P4310319808"],"host_organization_lineage_names":["IEEE Computer Society","Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Dependable and Secure Computing","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5101561344","display_name":"Zhan Shu","orcid":"https://orcid.org/0000-0001-9600-9517"},"institutions":[{"id":"https://openalex.org/I123946342","display_name":"Binghamton University","ror":"https://ror.org/008rmbt77","country_code":"US","type":"education","lineage":["https://openalex.org/I123946342"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"Zhan Shu","raw_affiliation_strings":["Department of Computer Science, Binghamton University, State University of New York, Binghamton, NY, USA"],"affiliations":[{"raw_affiliation_string":"Department of Computer Science, Binghamton University, State University of New York, Binghamton, NY, USA","institution_ids":["https://openalex.org/I123946342"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5029645292","display_name":"Guanhua Yan","orcid":"https://orcid.org/0000-0001-7482-4043"},"institutions":[{"id":"https://openalex.org/I123946342","display_name":"Binghamton University","ror":"https://ror.org/008rmbt77","country_code":"US","type":"education","lineage":["https://openalex.org/I123946342"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Guanhua Yan","raw_affiliation_strings":["Department of Computer Science, Binghamton University, State University of New York, Binghamton, NY, USA"],"affiliations":[{"raw_affiliation_string":"Department of Computer Science, Binghamton University, State University of New York, Binghamton, NY, USA","institution_ids":["https://openalex.org/I123946342"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":2,"corresponding_author_ids":["https://openalex.org/A5101561344"],"corresponding_institution_ids":["https://openalex.org/I123946342"],"apc_list":null,"apc_paid":null,"fwci":2.0332,"has_fulltext":false,"cited_by_count":10,"citation_normalized_percentile":{"value":0.87995243,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":89,"max":99},"biblio":{"volume":"21","issue":"4","first_page":"3165","last_page":"3182"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":0.9994000196456909,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12034","display_name":"Digital and Cyber Forensics","score":0.996999979019165,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/android-malware","display_name":"Android malware","score":0.8069455027580261},{"id":"https://openalex.org/keywords/malware","display_name":"Malware","score":0.8044225573539734},{"id":"https://openalex.org/keywords/android","display_name":"Android (operating system)","score":0.7140588164329529},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7128281593322754},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.5680344104766846},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.48956498503685},{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.44236499071121216},{"id":"https://openalex.org/keywords/leverage","display_name":"Leverage (statistics)","score":0.4176235496997833},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.3066859841346741},{"id":"https://openalex.org/keywords/operating-system","display_name":"Operating system","score":0.12926775217056274}],"concepts":[{"id":"https://openalex.org/C2989133298","wikidata":"https://www.wikidata.org/wiki/Q94","display_name":"Android malware","level":3,"score":0.8069455027580261},{"id":"https://openalex.org/C541664917","wikidata":"https://www.wikidata.org/wiki/Q14001","display_name":"Malware","level":2,"score":0.8044225573539734},{"id":"https://openalex.org/C557433098","wikidata":"https://www.wikidata.org/wiki/Q94","display_name":"Android (operating system)","level":2,"score":0.7140588164329529},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7128281593322754},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.5680344104766846},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.48956498503685},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.44236499071121216},{"id":"https://openalex.org/C153083717","wikidata":"https://www.wikidata.org/wiki/Q6535263","display_name":"Leverage (statistics)","level":2,"score":0.4176235496997833},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.3066859841346741},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.12926775217056274}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/tdsc.2023.3324265","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tdsc.2023.3324265","pdf_url":null,"source":{"id":"https://openalex.org/S133795288","display_name":"IEEE Transactions on Dependable and Secure Computing","issn_l":"1545-5971","issn":["1545-5971","1941-0018","2160-9209"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320439","host_organization_name":"IEEE Computer Society","host_organization_lineage":["https://openalex.org/P4310320439","https://openalex.org/P4310319808"],"host_organization_lineage_names":["IEEE Computer Society","Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Dependable and Secure Computing","raw_type":"journal-article"}],"best_oa_location":null,"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/16","score":0.5899999737739563,"display_name":"Peace, Justice and strong institutions"}],"awards":[{"id":"https://openalex.org/G2060341569","display_name":null,"funder_award_id":"CNS-1943079","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"},{"id":"https://openalex.org/G3007264278","display_name":null,"funder_award_id":"CNS-1618631","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"}],"funders":[{"id":"https://openalex.org/F4320306076","display_name":"National Science Foundation","ror":"https://ror.org/021nxhr62"}],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":0,"referenced_works":[],"related_works":["https://openalex.org/W2560361988","https://openalex.org/W2507113366","https://openalex.org/W2591124010","https://openalex.org/W3200508744","https://openalex.org/W3025122950","https://openalex.org/W2311926078","https://openalex.org/W2895504842","https://openalex.org/W4281384336","https://openalex.org/W2717179875","https://openalex.org/W4249118297"],"abstract_inverted_index":{"With":[0],"machine":[1],"learning":[2],"techniques":[3],"widely":[4],"used":[5],"to":[6,14,52,89,93,120,212],"automate":[7],"Android":[8,34,44,122,145,150],"malware":[9,35,45,123,146,151,174],"detection,":[10],"it":[11],"is":[12,88],"important":[13],"investigate":[15],"the":[16,95,170],"robustness":[17],"of":[18,129,144,173,192,206],"these":[19,138],"methods":[20],"against":[21,221],"evasion":[22],"attacks.":[23,214,223],"A":[24],"recent":[25],"work":[26],"has":[27],"proposed":[28],"a":[29,58,102],"novel":[30],"problem-space":[31],"attack":[32,60,171],"on":[33,126,189],"classifiers,":[36],"where":[37],"adversarial":[38,98,166],"examples":[39],"are":[40,209],"generated":[41],"by":[42,76,177],"transforming":[43],"samples":[46],"while":[47],"satisfying":[48],"practical":[49,134],"constraints.":[50],"Aimed":[51],"address":[53],"its":[54],"limitations,":[55],"we":[56],"propose":[57],"new":[59],"called":[61],"EAGLE":[62,107,157,178,213,222],"(":[63],"<bold":[64,68,72,77,81],"xmlns:mml=\"http://www.w3.org/1998/Math/MathML\"":[65,69,73,78,82],"xmlns:xlink=\"http://www.w3.org/1999/xlink\">E</b>":[66,83],"vasion":[67],"xmlns:xlink=\"http://www.w3.org/1999/xlink\">A</b>":[70],"ttacks":[71],"xmlns:xlink=\"http://www.w3.org/1999/xlink\">G</b>":[74],"uided":[75],"xmlns:xlink=\"http://www.w3.org/1999/xlink\">L</b>":[79],"ocal":[80],"xplanations),":[84],"whose":[85],"key":[86],"idea":[87],"leverage":[90],"local":[91],"explanations":[92],"guide":[94],"search":[96],"for":[97,106,140],"examples.":[99,167],"We":[100,132,168,215],"present":[101],"generic":[103],"algorithmic":[104],"framework":[105],"attacks,":[108],"which":[109],"can":[110,159],"be":[111,160],"customized":[112],"with":[113,183],"specific":[114],"feature":[115],"increase":[116],"and":[117],"decrease":[118],"operations":[119,139],"evade":[121],"classifiers":[124,181,201],"trained":[125,188,202],"different":[127,142,184,190],"types":[128,143,191,205],"count":[130,193,207],"features.":[131,194],"overcome":[133],"challenges":[135],"in":[136],"implementing":[137],"four":[141],"classifiers.":[147],"Using":[148],"two":[149],"datasets,":[152],"our":[153],"results":[154],"show":[155],"that":[156,199],"attacks":[158,179],"highly":[161],"effective":[162],"at":[163],"finding":[164],"functionable":[165],"study":[169],"transferrability":[172],"variants":[175],"created":[176],"across":[180],"built":[182],"classification":[185],"models":[186],"or":[187],"Our":[195],"research":[196],"further":[197],"demonstrates":[198],"ensemble":[200],"from":[203],"multiple":[204],"features":[208],"not":[210],"immune":[211],"also":[216],"discuss":[217],"possible":[218],"defense":[219],"mechanisms":[220]},"counts_by_year":[{"year":2026,"cited_by_count":1},{"year":2025,"cited_by_count":5},{"year":2024,"cited_by_count":3},{"year":2023,"cited_by_count":1}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
