{"id":"https://openalex.org/W2479004360","doi":"https://doi.org/10.1109/tnnls.2016.2593488","title":"Randomized Prediction Games for Adversarial Machine Learning","display_name":"Randomized Prediction Games for Adversarial Machine Learning","publication_year":2016,"publication_date":"2016-08-04","ids":{"openalex":"https://openalex.org/W2479004360","doi":"https://doi.org/10.1109/tnnls.2016.2593488","mag":"2479004360","pmid":"https://pubmed.ncbi.nlm.nih.gov/27514067"},"language":"en","primary_location":{"id":"doi:10.1109/tnnls.2016.2593488","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tnnls.2016.2593488","pdf_url":null,"source":{"id":"https://openalex.org/S4210175523","display_name":"IEEE Transactions on Neural Networks and Learning Systems","issn_l":"2162-237X","issn":["2162-237X","2162-2388"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Neural Networks and Learning Systems","raw_type":"journal-article"},"type":"article","indexed_in":["arxiv","crossref","pubmed"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://arxiv.org/pdf/1609.00804","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5073916921","display_name":"Samuel Rota Bul\u00f2","orcid":"https://orcid.org/0000-0002-2372-1367"},"institutions":[{"id":"https://openalex.org/I2277624104","display_name":"Fondazione Bruno Kessler","ror":"https://ror.org/01j33xk10","country_code":"IT","type":"facility","lineage":["https://openalex.org/I2277624104"]}],"countries":["IT"],"is_corresponding":true,"raw_author_name":"Samuel Rota Bulo","raw_affiliation_strings":["ICT-Tev, Fondazione Bruno Kessler, Trento, Italy"],"affiliations":[{"raw_affiliation_string":"ICT-Tev, Fondazione Bruno Kessler, Trento, Italy","institution_ids":["https://openalex.org/I2277624104"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5008367647","display_name":"Battista Biggio","orcid":"https://orcid.org/0000-0001-7752-509X"},"institutions":[{"id":"https://openalex.org/I172446870","display_name":"University of Cagliari","ror":"https://ror.org/003109y17","country_code":"IT","type":"education","lineage":["https://openalex.org/I172446870"]}],"countries":["IT"],"is_corresponding":false,"raw_author_name":"Battista Biggio","raw_affiliation_strings":["Department of Electrical and Electronic Engineering, University of Cagliari, Cagliari, Italy"],"affiliations":[{"raw_affiliation_string":"Department of Electrical and Electronic Engineering, University of Cagliari, Cagliari, Italy","institution_ids":["https://openalex.org/I172446870"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5035772926","display_name":"Ignazio Pillai","orcid":null},"institutions":[{"id":"https://openalex.org/I172446870","display_name":"University of Cagliari","ror":"https://ror.org/003109y17","country_code":"IT","type":"education","lineage":["https://openalex.org/I172446870"]}],"countries":["IT"],"is_corresponding":false,"raw_author_name":"Ignazio Pillai","raw_affiliation_strings":["Department of Electrical and Electronic Engineering, University of Cagliari, Cagliari, Italy"],"affiliations":[{"raw_affiliation_string":"Department of Electrical and Electronic Engineering, University of Cagliari, Cagliari, Italy","institution_ids":["https://openalex.org/I172446870"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5088359990","display_name":"Marcello Pelillo","orcid":"https://orcid.org/0000-0001-8992-9243"},"institutions":[{"id":"https://openalex.org/I149461666","display_name":"Ca' Foscari University of Venice","ror":"https://ror.org/04yzxz566","country_code":"IT","type":"education","lineage":["https://openalex.org/I149461666"]}],"countries":["IT"],"is_corresponding":false,"raw_author_name":"Marcello Pelillo","raw_affiliation_strings":["Dipartimento di Scienze Ambientali, Informatica e Statistica, Ca' Foscari University of Venice, Venice, Italy","Dipartimento di Scienze Ambientali, Ca' Foscari University of Venice, Venice, Italy"],"affiliations":[{"raw_affiliation_string":"Dipartimento di Scienze Ambientali, Informatica e Statistica, Ca' Foscari University of Venice, Venice, Italy","institution_ids":["https://openalex.org/I149461666"]},{"raw_affiliation_string":"Dipartimento di Scienze Ambientali, Ca' Foscari University of Venice, Venice, Italy","institution_ids":["https://openalex.org/I149461666"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5065359946","display_name":"Fabio Roli","orcid":"https://orcid.org/0000-0003-4103-9190"},"institutions":[{"id":"https://openalex.org/I172446870","display_name":"University of Cagliari","ror":"https://ror.org/003109y17","country_code":"IT","type":"education","lineage":["https://openalex.org/I172446870"]}],"countries":["IT"],"is_corresponding":false,"raw_author_name":"Fabio Roli","raw_affiliation_strings":["Department of Electrical and Electronic Engineering, University of Cagliari, Cagliari, Italy"],"affiliations":[{"raw_affiliation_string":"Department of Electrical and Electronic Engineering, University of Cagliari, Cagliari, Italy","institution_ids":["https://openalex.org/I172446870"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":5,"corresponding_author_ids":["https://openalex.org/A5073916921"],"corresponding_institution_ids":["https://openalex.org/I2277624104"],"apc_list":null,"apc_paid":null,"fwci":20.7959,"has_fulltext":false,"cited_by_count":70,"citation_normalized_percentile":{"value":0.99259815,"is_in_top_1_percent":true,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":91,"max":100},"biblio":{"volume":"28","issue":"11","first_page":"2466","last_page":"2478"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11644","display_name":"Spam and Phishing Detection","score":0.9995999932289124,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11644","display_name":"Spam and Phishing Detection","score":0.9995999932289124,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9993000030517578,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9991000294685364,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/exploit","display_name":"Exploit","score":0.8424785733222961},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8101938366889954},{"id":"https://openalex.org/keywords/malware","display_name":"Malware","score":0.738242506980896},{"id":"https://openalex.org/keywords/byte","display_name":"Byte","score":0.6718671917915344},{"id":"https://openalex.org/keywords/classifier","display_name":"Classifier (UML)","score":0.5756741762161255},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.5710423588752747},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.4942924976348877},{"id":"https://openalex.org/keywords/evasion","display_name":"Evasion (ethics)","score":0.4887199401855469},{"id":"https://openalex.org/keywords/obfuscation","display_name":"Obfuscation","score":0.43306106328964233},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.36411070823669434}],"concepts":[{"id":"https://openalex.org/C165696696","wikidata":"https://www.wikidata.org/wiki/Q11287","display_name":"Exploit","level":2,"score":0.8424785733222961},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8101938366889954},{"id":"https://openalex.org/C541664917","wikidata":"https://www.wikidata.org/wiki/Q14001","display_name":"Malware","level":2,"score":0.738242506980896},{"id":"https://openalex.org/C43364308","wikidata":"https://www.wikidata.org/wiki/Q8799","display_name":"Byte","level":2,"score":0.6718671917915344},{"id":"https://openalex.org/C95623464","wikidata":"https://www.wikidata.org/wiki/Q1096149","display_name":"Classifier (UML)","level":2,"score":0.5756741762161255},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.5710423588752747},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.4942924976348877},{"id":"https://openalex.org/C2781251061","wikidata":"https://www.wikidata.org/wiki/Q5416089","display_name":"Evasion (ethics)","level":3,"score":0.4887199401855469},{"id":"https://openalex.org/C40305131","wikidata":"https://www.wikidata.org/wiki/Q2616305","display_name":"Obfuscation","level":2,"score":0.43306106328964233},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.36411070823669434},{"id":"https://openalex.org/C86803240","wikidata":"https://www.wikidata.org/wiki/Q420","display_name":"Biology","level":0,"score":0.0},{"id":"https://openalex.org/C8891405","wikidata":"https://www.wikidata.org/wiki/Q1059","display_name":"Immune system","level":2,"score":0.0},{"id":"https://openalex.org/C203014093","wikidata":"https://www.wikidata.org/wiki/Q101929","display_name":"Immunology","level":1,"score":0.0},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.0}],"mesh":[],"locations_count":6,"locations":[{"id":"doi:10.1109/tnnls.2016.2593488","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tnnls.2016.2593488","pdf_url":null,"source":{"id":"https://openalex.org/S4210175523","display_name":"IEEE Transactions on Neural Networks and Learning Systems","issn_l":"2162-237X","issn":["2162-237X","2162-2388"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Neural Networks and Learning Systems","raw_type":"journal-article"},{"id":"pmid:27514067","is_oa":false,"landing_page_url":"https://pubmed.ncbi.nlm.nih.gov/27514067","pdf_url":null,"source":{"id":"https://openalex.org/S4306525036","display_name":"PubMed","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I1299303238","host_organization_name":"National Institutes of Health","host_organization_lineage":["https://openalex.org/I1299303238"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE transactions on neural networks and learning systems","raw_type":null},{"id":"pmh:oai:arXiv.org:1609.00804","is_oa":true,"landing_page_url":"http://arxiv.org/abs/1609.00804","pdf_url":"https://arxiv.org/pdf/1609.00804","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"text"},{"id":"pmh:oai:iris.unica.it:11584/176686","is_oa":true,"landing_page_url":"http://hdl.handle.net/11584/176686","pdf_url":null,"source":{"id":"https://openalex.org/S4377196293","display_name":"UNICA IRIS Institutional Research Information System (University of Cagliari)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I172446870","host_organization_name":"University of Cagliari","host_organization_lineage":["https://openalex.org/I172446870"],"host_organization_lineage_names":[],"type":"repository"},"license":"other-oa","license_id":"https://openalex.org/licenses/other-oa","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":"info:eu-repo/semantics/article"},{"id":"pmh:oai:iris.unige.it:11567/1085451","is_oa":false,"landing_page_url":"https://hdl.handle.net/11567/1085451","pdf_url":null,"source":{"id":"https://openalex.org/S4377196291","display_name":"CINECA IRIS Institutial Research Information System (University of Genoa)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I83816512","host_organization_name":"University of Genoa","host_organization_lineage":["https://openalex.org/I83816512"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":"info:eu-repo/semantics/article"},{"id":"pmh:oai:iris.unive.it:10278/3694418","is_oa":true,"landing_page_url":"http://hdl.handle.net/10278/3694418","pdf_url":null,"source":{"id":"https://openalex.org/S4306402336","display_name":"ARCA (Universit\u00e0 Ca' Foscari Venezia)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I149461666","host_organization_name":"Ca' Foscari University of Venice","host_organization_lineage":["https://openalex.org/I149461666"],"host_organization_lineage_names":[],"type":"repository"},"license":"public-domain","license_id":"https://openalex.org/licenses/public-domain","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":"info:eu-repo/semantics/article"}],"best_oa_location":{"id":"pmh:oai:arXiv.org:1609.00804","is_oa":true,"landing_page_url":"http://arxiv.org/abs/1609.00804","pdf_url":"https://arxiv.org/pdf/1609.00804","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"text"},"sustainable_development_goals":[{"display_name":"Peace, Justice and strong institutions","id":"https://metadata.un.org/sdg/16","score":0.5899999737739563}],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":78,"referenced_works":["https://openalex.org/W9657784","https://openalex.org/W73527130","https://openalex.org/W568984285","https://openalex.org/W1507364520","https://openalex.org/W1519407765","https://openalex.org/W1564743226","https://openalex.org/W1565160282","https://openalex.org/W1592657892","https://openalex.org/W1667072054","https://openalex.org/W1966912382","https://openalex.org/W1972221945","https://openalex.org/W2007562169","https://openalex.org/W2014466911","https://openalex.org/W2038296020","https://openalex.org/W2047237187","https://openalex.org/W2055326651","https://openalex.org/W2082190528","https://openalex.org/W2085919653","https://openalex.org/W2087496594","https://openalex.org/W2088032561","https://openalex.org/W2089103284","https://openalex.org/W2093246563","https://openalex.org/W2095577883","https://openalex.org/W2097860933","https://openalex.org/W2097895487","https://openalex.org/W2100395828","https://openalex.org/W2101919228","https://openalex.org/W2108982221","https://openalex.org/W2110522107","https://openalex.org/W2112507308","https://openalex.org/W2114296159","https://openalex.org/W2119821739","https://openalex.org/W2126879264","https://openalex.org/W2131523719","https://openalex.org/W2142992973","https://openalex.org/W2144906988","https://openalex.org/W2146211060","https://openalex.org/W2149836368","https://openalex.org/W2151298633","https://openalex.org/W2153635508","https://openalex.org/W2156504490","https://openalex.org/W2161470437","https://openalex.org/W2162152253","https://openalex.org/W2162552722","https://openalex.org/W2167421362","https://openalex.org/W2167731287","https://openalex.org/W2168420538","https://openalex.org/W2170005069","https://openalex.org/W2224750461","https://openalex.org/W2293768274","https://openalex.org/W2296452361","https://openalex.org/W2401293755","https://openalex.org/W2402124760","https://openalex.org/W2487202609","https://openalex.org/W2546191734","https://openalex.org/W2611675901","https://openalex.org/W2613634265","https://openalex.org/W2732030275","https://openalex.org/W2916045930","https://openalex.org/W3102219781","https://openalex.org/W3103836116","https://openalex.org/W3111818035","https://openalex.org/W3120421331","https://openalex.org/W4236135656","https://openalex.org/W4239510810","https://openalex.org/W4243548576","https://openalex.org/W4253730333","https://openalex.org/W6603010935","https://openalex.org/W6633816096","https://openalex.org/W6637187546","https://openalex.org/W6675580205","https://openalex.org/W6676935882","https://openalex.org/W6680744341","https://openalex.org/W6681652963","https://openalex.org/W6682686508","https://openalex.org/W6684011098","https://openalex.org/W6684403227","https://openalex.org/W6684559340"],"related_works":["https://openalex.org/W2620652965","https://openalex.org/W2024170198","https://openalex.org/W4296272594","https://openalex.org/W2900526031","https://openalex.org/W1966145327","https://openalex.org/W2728713145","https://openalex.org/W2131332603","https://openalex.org/W2072617132","https://openalex.org/W2470029541","https://openalex.org/W2470502009"],"abstract_inverted_index":{"In":[0,110,305],"spam":[1,196],"and":[2,12,80,91,132,164,193,197,207,275,286,327,359,388],"malware":[3,23,194,198,218,389],"detection,":[4,199],"attackers":[5,200],"exploit":[6,201],"randomization":[7,39,202,234],"to":[8,34,44,62,71,140,157,169,203,229,239,257,266,335,352,364],"obfuscate":[9,204],"malicious":[10,205],"data":[11,94,206,289],"increase":[13,208],"their":[14,209],"chances":[15,210],"of":[16,47,108,211,242,303],"evading":[17,212],"detection":[18,163,213,358],"at":[19,214],"test":[20,215],"time,":[21,216],"e.g.,":[22,217],"code":[24,219],"is":[25,220],"typically":[26,221],"obfuscated":[27,222],"using":[28,223],"random":[29,224],"strings":[30,225],"or":[31,226],"byte":[32,227],"sequences":[33,228],"hide":[35,230],"known":[36,231],"exploits.":[37,232],"Interestingly,":[38,233],"has":[40,67,235,262],"also":[41,236],"been":[42,97,237,292],"proposed":[43,68,238,263],"improve":[45,158,240,353],"security":[46,241],"learning":[48,243],"algorithms":[49,244],"against":[50,175,245,370],"evasion":[51,78,246,273],"attacks,":[52,247],"as":[53,248],"it":[54,249],"results":[55,250],"in":[56,99,128,251,294,323],"hiding":[57,252],"information":[58,253],"about":[59,254],"the":[60,63,82,88,92,130,133,146,159,170,255,258,277,283,287,325,328,341,354,365],"classifier":[61,131,256,326],"attacker.":[64,259],"Recent":[65,260],"work":[66,261],"game-theoretical":[69,264],"formulations":[70,265],"learn":[72,267],"secure":[73,172,268,367],"classifiers,":[74,173,269,368],"by":[75,117,270,312],"simulating":[76,271],"different":[77,179,272,374],"attacks":[79,176,274,371],"modifying":[81,276],"classification":[83,89,278,284],"function":[84,90,279,285],"accordingly.":[85,280],"However,":[86,281],"both":[87,282],"simulated":[93,288],"manipulations":[95,290],"have":[96,291],"modeled":[98,293],"a":[100,119,124,295,314,319],"deterministic":[101,296],"manner,":[102,297],"without":[103,298],"accounting":[104,299],"for":[105,300],"any":[106,301],"form":[107,302],"randomization.":[109,304],"this":[111,115,306,310],"paper,":[112,307],"we":[113,308],"overcome":[114,309],"limitation":[116,311],"proposing":[118,313],"randomized":[120,136,315,331],"prediction":[121,316],"game,":[122,317],"namely,":[123,318],"noncooperative":[125,320],"game-theoretic":[126,321],"formulation":[127,322],"which":[129,324],"attacker":[134,329],"make":[135,330],"strategy":[137,148,332,343],"selections":[138,333],"according":[139,334],"some":[141,336],"probability":[142,337],"distribution":[143,338],"defined":[144,339],"over":[145,340],"respective":[147,342],"set.":[149,344],"We":[150,345],"show":[151,346],"that":[152,177,347,372],"our":[153,348],"approach":[154,349],"allows":[155,350],"one":[156,351],"tradeoff":[160,355],"between":[161,356],"attack":[162,357],"false":[165,360],"alarms":[166,361],"with":[167,362],"respect":[168,363],"state-of-the-art":[171,366],"even":[174,369],"are":[178,373],"from":[180,375],"those":[181,376],"hypothesized":[182,377],"during":[183,378],"design,":[184,379],"on":[185,380],"application":[186,381],"examples":[187,382],"including":[188,383],"handwritten":[189,384],"digit":[190,385],"recognition,":[191,386],"spam,":[192,387],"detection.In":[195],"detection.":[390]},"counts_by_year":[{"year":2025,"cited_by_count":1},{"year":2024,"cited_by_count":3},{"year":2023,"cited_by_count":8},{"year":2022,"cited_by_count":3},{"year":2021,"cited_by_count":12},{"year":2020,"cited_by_count":13},{"year":2019,"cited_by_count":16},{"year":2018,"cited_by_count":12},{"year":2016,"cited_by_count":2}],"updated_date":"2026-03-27T05:58:40.876381","created_date":"2025-10-10T00:00:00"}
