{"id":"https://openalex.org/W4306406262","doi":"https://doi.org/10.1145/3545948.3545960","title":"Systematically Evaluating the Robustness of ML-based IoT Malware Detection Systems","display_name":"Systematically Evaluating the Robustness of ML-based IoT Malware Detection Systems","publication_year":2022,"publication_date":"2022-10-17","ids":{"openalex":"https://openalex.org/W4306406262","doi":"https://doi.org/10.1145/3545948.3545960"},"language":"en","primary_location":{"id":"doi:10.1145/3545948.3545960","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3545948.3545960","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 25th International Symposium on Research in Attacks, Intrusions and Defenses","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5005907786","display_name":"Ahmed Abusnaina","orcid":"https://orcid.org/0000-0001-5032-3412"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Ahmed Abusnaina","raw_affiliation_strings":["Meta, United States of America"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Meta, United States of America","institution_ids":[]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5064140739","display_name":"Afsah Anwar","orcid":"https://orcid.org/0000-0003-1449-3590"},"institutions":[{"id":"https://openalex.org/I12912129","display_name":"Northeastern University","ror":"https://ror.org/04t5xt781","country_code":"US","type":"education","lineage":["https://openalex.org/I12912129"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Afsah Anwar","raw_affiliation_strings":["Northeastern University, United States of America"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Northeastern University, United States of America","institution_ids":["https://openalex.org/I12912129"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5056285183","display_name":"Sultan S. Alshamrani","orcid":"https://orcid.org/0000-0001-8194-9354"},"institutions":[{"id":"https://openalex.org/I106165777","display_name":"University of Central Florida","ror":"https://ror.org/036nfer12","country_code":"US","type":"education","lineage":["https://openalex.org/I106165777"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Sultan Alshamrani","raw_affiliation_strings":["University of Central Florida, United States of America"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"University of Central Florida, United States of America","institution_ids":["https://openalex.org/I106165777"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5082380898","display_name":"Abdulrahman Alabduljabbar","orcid":"https://orcid.org/0000-0002-1066-6725"},"institutions":[{"id":"https://openalex.org/I106165777","display_name":"University of Central Florida","ror":"https://ror.org/036nfer12","country_code":"US","type":"education","lineage":["https://openalex.org/I106165777"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Abdulrahman Alabduljabbar","raw_affiliation_strings":["University of Central Florida, United States of America"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"University of Central Florida, United States of America","institution_ids":["https://openalex.org/I106165777"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5017780520","display_name":"Rhongho Jang","orcid":"https://orcid.org/0000-0002-3417-6851"},"institutions":[{"id":"https://openalex.org/I185443292","display_name":"Wayne State University","ror":"https://ror.org/01070mq45","country_code":"US","type":"education","lineage":["https://openalex.org/I185443292"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"RhongHo Jang","raw_affiliation_strings":["Wayne State University, United States of America"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Wayne State University, United States of America","institution_ids":["https://openalex.org/I185443292"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5079230730","display_name":"DaeHun Nyang","orcid":"https://orcid.org/0000-0001-5183-891X"},"institutions":[{"id":"https://openalex.org/I138925566","display_name":"Ewha Womans University","ror":"https://ror.org/053fp5c05","country_code":"KR","type":"education","lineage":["https://openalex.org/I138925566"]}],"countries":["KR"],"is_corresponding":false,"raw_author_name":"DaeHun Nyang","raw_affiliation_strings":["Ewha Womans University, South Korea"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Ewha Womans University, South Korea","institution_ids":["https://openalex.org/I138925566"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5077402873","display_name":"Aziz Mohaisen","orcid":"https://orcid.org/0000-0003-3227-2505"},"institutions":[{"id":"https://openalex.org/I106165777","display_name":"University of Central Florida","ror":"https://ror.org/036nfer12","country_code":"US","type":"education","lineage":["https://openalex.org/I106165777"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"David Mohaisen","raw_affiliation_strings":["University of Central Florida, United States of America"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"University of Central Florida, United States of America","institution_ids":["https://openalex.org/I106165777"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":7,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":0.8919,"has_fulltext":false,"cited_by_count":7,"citation_normalized_percentile":{"value":0.72680283,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":94,"max":98},"biblio":{"volume":null,"issue":null,"first_page":"308","last_page":"320"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":0.9991000294685364,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9976000189781189,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/malware","display_name":"Malware","score":0.9151522517204285},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7892560362815857},{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness (evolution)","score":0.6151244044303894},{"id":"https://openalex.org/keywords/cryptovirology","display_name":"Cryptovirology","score":0.6104761362075806},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.5164051651954651},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.5099169015884399},{"id":"https://openalex.org/keywords/mobile-malware","display_name":"Mobile malware","score":0.46247589588165283},{"id":"https://openalex.org/keywords/software","display_name":"Software","score":0.45052769780158997},{"id":"https://openalex.org/keywords/opcode","display_name":"Opcode","score":0.4485996663570404},{"id":"https://openalex.org/keywords/detector","display_name":"Detector","score":0.4213041663169861},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.4160693883895874},{"id":"https://openalex.org/keywords/data-mining","display_name":"Data mining","score":0.326693594455719},{"id":"https://openalex.org/keywords/operating-system","display_name":"Operating system","score":0.09904766082763672}],"concepts":[{"id":"https://openalex.org/C541664917","wikidata":"https://www.wikidata.org/wiki/Q14001","display_name":"Malware","level":2,"score":0.9151522517204285},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7892560362815857},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.6151244044303894},{"id":"https://openalex.org/C84525096","wikidata":"https://www.wikidata.org/wiki/Q3506050","display_name":"Cryptovirology","level":3,"score":0.6104761362075806},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.5164051651954651},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.5099169015884399},{"id":"https://openalex.org/C2780967490","wikidata":"https://www.wikidata.org/wiki/Q1291200","display_name":"Mobile malware","level":3,"score":0.46247589588165283},{"id":"https://openalex.org/C2777904410","wikidata":"https://www.wikidata.org/wiki/Q7397","display_name":"Software","level":2,"score":0.45052769780158997},{"id":"https://openalex.org/C52173422","wikidata":"https://www.wikidata.org/wiki/Q766483","display_name":"Opcode","level":2,"score":0.4485996663570404},{"id":"https://openalex.org/C94915269","wikidata":"https://www.wikidata.org/wiki/Q1834857","display_name":"Detector","level":2,"score":0.4213041663169861},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.4160693883895874},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.326693594455719},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.09904766082763672},{"id":"https://openalex.org/C185592680","wikidata":"https://www.wikidata.org/wiki/Q2329","display_name":"Chemistry","level":0,"score":0.0},{"id":"https://openalex.org/C76155785","wikidata":"https://www.wikidata.org/wiki/Q418","display_name":"Telecommunications","level":1,"score":0.0},{"id":"https://openalex.org/C104317684","wikidata":"https://www.wikidata.org/wiki/Q7187","display_name":"Gene","level":2,"score":0.0},{"id":"https://openalex.org/C55493867","wikidata":"https://www.wikidata.org/wiki/Q7094","display_name":"Biochemistry","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/3545948.3545960","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3545948.3545960","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 25th International Symposium on Research in Attacks, Intrusions and Defenses","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[{"id":"https://openalex.org/G1226334713","display_name":null,"funder_award_id":"NRF-2020R1A2C2009372","funder_id":"https://openalex.org/F4320322120","funder_display_name":"National Research Foundation of Korea"},{"id":"https://openalex.org/G7207199162","display_name":null,"funder_award_id":"NRF-2016K1A1A2912757","funder_id":"https://openalex.org/F4320320671","funder_display_name":"National Research Foundation"}],"funders":[{"id":"https://openalex.org/F4320320671","display_name":"National Research Foundation","ror":"https://ror.org/05s0g1g46"},{"id":"https://openalex.org/F4320322120","display_name":"National Research Foundation of Korea","ror":"https://ror.org/013aysd81"}],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":26,"referenced_works":["https://openalex.org/W569478347","https://openalex.org/W1573286687","https://openalex.org/W1981221397","https://openalex.org/W2012132268","https://openalex.org/W2111038628","https://openalex.org/W2243397390","https://openalex.org/W2267635142","https://openalex.org/W2602321133","https://openalex.org/W2603766943","https://openalex.org/W2609225916","https://openalex.org/W2744095836","https://openalex.org/W2747329762","https://openalex.org/W2785022326","https://openalex.org/W2791879367","https://openalex.org/W2792310543","https://openalex.org/W2897812226","https://openalex.org/W2961099251","https://openalex.org/W2963857521","https://openalex.org/W2990114920","https://openalex.org/W3008497156","https://openalex.org/W3097333530","https://openalex.org/W3109130616","https://openalex.org/W3113371616","https://openalex.org/W3159521830","https://openalex.org/W4241054193","https://openalex.org/W4300584183"],"related_works":["https://openalex.org/W4382794599","https://openalex.org/W2903602818","https://openalex.org/W36091977","https://openalex.org/W1605436333","https://openalex.org/W2384735743","https://openalex.org/W2982912425","https://openalex.org/W2902612505","https://openalex.org/W4200054778","https://openalex.org/W2233081671","https://openalex.org/W4312234627"],"abstract_inverted_index":{"The":[0,146,202],"rapid":[1],"growth":[2],"of":[3,6,18,30,86,123,131,164,170,192,197,229],"the":[4,16,28,49,57,72,108,129,132,140,143,162,171,179,187,190,193,198,208,219,227],"Internet":[5],"Things":[7],"(IoT)":[8],"devices":[9],"is":[10,213],"paralleled":[11],"by":[12],"them":[13,69],"being":[14],"on":[15,88],"front-line":[17],"malicious":[19,144],"attacks.":[20],"This":[21,80],"has":[22],"led":[23],"to":[24,63,71,178,221,232],"an":[25],"explosion":[26],"in":[27,135],"number":[29],"IoT":[31],"malware,":[32],"with":[33,94,152],"continued":[34],"mutations,":[35],"evolution,":[36],"and":[37,66,91,117,158,195,204,216],"sophistication.":[38],"Malware":[39],"samples":[40],"are":[41,61],"detected":[42],"using":[43],"machine":[44],"learning":[45,118,136],"(ML)":[46],"algorithms":[47],"alongside":[48],"traditional":[50],"signature-based":[51],"methods.":[52],"Although":[53],"ML-based":[54],"detectors":[55,134,174,231],"improve":[56],"detection":[58,92,111,211],"performance,":[59],"they":[60,75],"susceptible":[62],"malware":[64,89,110,173,180,200,210,230],"evolution":[65],"sophistication,":[67],"making":[68],"limited":[70],"patterns":[73,137],"that":[74,113,138,149,196,207],"have":[76],"been":[77],"trained":[78],"upon.":[79],"continuous":[81],"trend":[82],"motivates":[83],"large":[84],"body":[85],"literature":[87],"analysis":[90,169],"research,":[93],"many":[95],"systems":[96],"emerging":[97],"constantly,":[98],"outperforming":[99],"their":[100,176,223],"predecessors.":[101],"In":[102],"this":[103],"paper,":[104],"we":[105,185],"systematically":[106],"examine":[107],"state-of-the-art":[109],"approaches,":[112],"utilize":[114],"various":[115],"representation":[116],"techniques,":[119],"under":[120],"a":[121],"range":[122],"adversarial":[124],"settings.":[125],"Our":[126],"analyses":[127,205],"highlight":[128,186],"instability":[130,177],"proposed":[133],"distinguish":[139],"benign":[141],"from":[142],"software.":[145],"results":[147],"exhibit":[148],"software":[150],"mutations":[151],"functionality-preserving":[153],"operations,":[154],"such":[155,165],"as":[156],"stripping":[157],"padding,":[159],"significantly":[160],"deteriorate":[161],"accuracy":[163],"detectors.":[166,201],"Additionally,":[167],"our":[168],"industry-standard":[172],"shows":[175],"mutations.":[181],"Through":[182],"extensive":[183],"experiments,":[184],"gap":[188],"between":[189],"capabilities":[191],"adversary":[194],"existing":[199],"evaluations":[203],"show":[206],"optimal":[209],"system":[212],"nowhere":[214],"near":[215],"calls":[217],"for":[218],"community":[220],"streamline":[222],"efforts":[224],"towards":[225],"testing":[226],"robustness":[228],"different":[233],"manipulation":[234],"techniques.":[235]},"counts_by_year":[{"year":2026,"cited_by_count":1},{"year":2025,"cited_by_count":4},{"year":2024,"cited_by_count":2}],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2025-10-10T00:00:00"}
