{"id":"https://openalex.org/W4300865450","doi":"https://doi.org/10.1145/3565362","title":"A Comparison of Systemic and Systematic Risks of Malware Encounters in Consumer and Enterprise Environments","display_name":"A Comparison of Systemic and Systematic Risks of Malware Encounters in Consumer and Enterprise Environments","publication_year":2022,"publication_date":"2022-10-03","ids":{"openalex":"https://openalex.org/W4300865450","doi":"https://doi.org/10.1145/3565362"},"language":"en","primary_location":{"id":"doi:10.1145/3565362","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3565362","pdf_url":null,"source":{"id":"https://openalex.org/S4210174050","display_name":"ACM Transactions on Privacy and Security","issn_l":"2471-2566","issn":["2471-2566","2471-2574"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319798","host_organization_name":"Association for Computing Machinery","host_organization_lineage":["https://openalex.org/P4310319798"],"host_organization_lineage_names":["Association for Computing Machinery"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"ACM Transactions on Privacy and Security","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://hal.science/hal-04093099","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5063585200","display_name":"Savino Dambra","orcid":null},"institutions":[{"id":"https://openalex.org/I1902872","display_name":"EURECOM","ror":"https://ror.org/00sse7z02","country_code":"FR","type":"education","lineage":["https://openalex.org/I1902872","https://openalex.org/I205703379"]}],"countries":["FR"],"is_corresponding":false,"raw_author_name":"Savino Dambra","raw_affiliation_strings":["Eurecom, Biot, France"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Eurecom, Biot, France","institution_ids":["https://openalex.org/I1902872"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5034154377","display_name":"Leyla Bilge","orcid":"https://orcid.org/0000-0002-8408-3741"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Leyla Bilge","raw_affiliation_strings":["Norton Research Group, France"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Norton Research Group, France","institution_ids":[]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5002025561","display_name":"Davide Balzarotti","orcid":"https://orcid.org/0000-0001-5957-6213"},"institutions":[{"id":"https://openalex.org/I1902872","display_name":"EURECOM","ror":"https://ror.org/00sse7z02","country_code":"FR","type":"education","lineage":["https://openalex.org/I1902872","https://openalex.org/I205703379"]}],"countries":["FR"],"is_corresponding":false,"raw_author_name":"Davide Balzarotti","raw_affiliation_strings":["Eurecom, Biot, France"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Eurecom, Biot, France","institution_ids":["https://openalex.org/I1902872"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":3,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":1.2747,"has_fulltext":false,"cited_by_count":5,"citation_normalized_percentile":{"value":0.84647389,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":90,"max":98},"biblio":{"volume":"26","issue":"2","first_page":"1","last_page":"30"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10734","display_name":"Information and Cyber Security","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10734","display_name":"Information and Cyber Security","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":0.9995999932289124,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/malware","display_name":"Malware","score":0.8148499727249146},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.588087260723114},{"id":"https://openalex.org/keywords/compromise","display_name":"Compromise","score":0.532666802406311},{"id":"https://openalex.org/keywords/product","display_name":"Product (mathematics)","score":0.49640733003616333},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.4893006980419159},{"id":"https://openalex.org/keywords/risk-analysis","display_name":"Risk analysis (engineering)","score":0.4380584955215454},{"id":"https://openalex.org/keywords/work","display_name":"Work (physics)","score":0.4344174861907959},{"id":"https://openalex.org/keywords/data-breach","display_name":"Data breach","score":0.43270543217658997},{"id":"https://openalex.org/keywords/internet-privacy","display_name":"Internet privacy","score":0.41077497601509094},{"id":"https://openalex.org/keywords/business","display_name":"Business","score":0.4063999354839325},{"id":"https://openalex.org/keywords/engineering","display_name":"Engineering","score":0.10207661986351013}],"concepts":[{"id":"https://openalex.org/C541664917","wikidata":"https://www.wikidata.org/wiki/Q14001","display_name":"Malware","level":2,"score":0.8148499727249146},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.588087260723114},{"id":"https://openalex.org/C46355384","wikidata":"https://www.wikidata.org/wiki/Q726686","display_name":"Compromise","level":2,"score":0.532666802406311},{"id":"https://openalex.org/C90673727","wikidata":"https://www.wikidata.org/wiki/Q901718","display_name":"Product (mathematics)","level":2,"score":0.49640733003616333},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.4893006980419159},{"id":"https://openalex.org/C112930515","wikidata":"https://www.wikidata.org/wiki/Q4389547","display_name":"Risk analysis (engineering)","level":1,"score":0.4380584955215454},{"id":"https://openalex.org/C18762648","wikidata":"https://www.wikidata.org/wiki/Q42213","display_name":"Work (physics)","level":2,"score":0.4344174861907959},{"id":"https://openalex.org/C165609540","wikidata":"https://www.wikidata.org/wiki/Q1172486","display_name":"Data breach","level":2,"score":0.43270543217658997},{"id":"https://openalex.org/C108827166","wikidata":"https://www.wikidata.org/wiki/Q175975","display_name":"Internet privacy","level":1,"score":0.41077497601509094},{"id":"https://openalex.org/C144133560","wikidata":"https://www.wikidata.org/wiki/Q4830453","display_name":"Business","level":0,"score":0.4063999354839325},{"id":"https://openalex.org/C127413603","wikidata":"https://www.wikidata.org/wiki/Q11023","display_name":"Engineering","level":0,"score":0.10207661986351013},{"id":"https://openalex.org/C78519656","wikidata":"https://www.wikidata.org/wiki/Q101333","display_name":"Mechanical engineering","level":1,"score":0.0},{"id":"https://openalex.org/C36289849","wikidata":"https://www.wikidata.org/wiki/Q34749","display_name":"Social science","level":1,"score":0.0},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.0},{"id":"https://openalex.org/C144024400","wikidata":"https://www.wikidata.org/wiki/Q21201","display_name":"Sociology","level":0,"score":0.0},{"id":"https://openalex.org/C2524010","wikidata":"https://www.wikidata.org/wiki/Q8087","display_name":"Geometry","level":1,"score":0.0}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1145/3565362","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3565362","pdf_url":null,"source":{"id":"https://openalex.org/S4210174050","display_name":"ACM Transactions on Privacy and Security","issn_l":"2471-2566","issn":["2471-2566","2471-2574"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319798","host_organization_name":"Association for Computing Machinery","host_organization_lineage":["https://openalex.org/P4310319798"],"host_organization_lineage_names":["Association for Computing Machinery"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"ACM Transactions on Privacy and Security","raw_type":"journal-article"},{"id":"pmh:oai:HAL:hal-04093099v1","is_oa":true,"landing_page_url":"https://hal.science/hal-04093099","pdf_url":null,"source":{"id":"https://openalex.org/S4306402512","display_name":"HAL (Le Centre pour la Communication Scientifique Directe)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I1294671590","host_organization_name":"Centre National de la Recherche Scientifique","host_organization_lineage":["https://openalex.org/I1294671590"],"host_organization_lineage_names":[],"type":"repository"},"license":"other-oa","license_id":"https://openalex.org/licenses/other-oa","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"ACM Transactions on Privacy and Security, 2023, 26 (2), pp.1-30. &#x27E8;10.1145/3565362&#x27E9;","raw_type":"Journal articles"}],"best_oa_location":{"id":"pmh:oai:HAL:hal-04093099v1","is_oa":true,"landing_page_url":"https://hal.science/hal-04093099","pdf_url":null,"source":{"id":"https://openalex.org/S4306402512","display_name":"HAL (Le Centre pour la Communication Scientifique Directe)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I1294671590","host_organization_name":"Centre National de la Recherche Scientifique","host_organization_lineage":["https://openalex.org/I1294671590"],"host_organization_lineage_names":[],"type":"repository"},"license":"other-oa","license_id":"https://openalex.org/licenses/other-oa","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"ACM Transactions on Privacy and Security, 2023, 26 (2), pp.1-30. &#x27E8;10.1145/3565362&#x27E9;","raw_type":"Journal articles"},"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":18,"referenced_works":["https://openalex.org/W1973628995","https://openalex.org/W2014171012","https://openalex.org/W2017179611","https://openalex.org/W2101771110","https://openalex.org/W2127062979","https://openalex.org/W2132948040","https://openalex.org/W2183110862","https://openalex.org/W2228853307","https://openalex.org/W2593948499","https://openalex.org/W2614419969","https://openalex.org/W2751316134","https://openalex.org/W2767011015","https://openalex.org/W2891316582","https://openalex.org/W2914982603","https://openalex.org/W2947608454","https://openalex.org/W3015342250","https://openalex.org/W4248627707","https://openalex.org/W6686028202"],"related_works":["https://openalex.org/W2801622120","https://openalex.org/W2164141394","https://openalex.org/W1967649051","https://openalex.org/W3036524962","https://openalex.org/W4240977217","https://openalex.org/W2508088450","https://openalex.org/W4214750239","https://openalex.org/W2389434635","https://openalex.org/W2279908259","https://openalex.org/W2811264706"],"abstract_inverted_index":{"Malware":[0],"is":[1,8,75,339,396,492],"still":[2,76],"a":[3,25,56,142,156,201,276,394,441,474],"widespread":[4],"problem,":[5],"and":[6,31,48,91,112,134,162,178,184,188,227,256,315,320,336,371,383,408,420,438,457,490,501],"it":[7],"used":[9],"by":[10,79,89,98],"malicious":[11],"actors":[12],"to":[13,29,71,125,251],"routinely":[14],"compromise":[15],"the":[16,62,68,84,104,113,152,159,164,181,191,197,208,214,231,242,259,286,311,321,357,366,372,390,398,404,406,413,416,445,450,465,471,485,514],"security":[17,41,50,58,182,203,218],"of":[18,46,64,107,116,123,144,151,154,190,200,211,244,264,313,368,374,377,392,400,410,412,430,433,447,452,455,467,487,511],"computer":[19],"systems.":[20],"Consumers":[21],"typically":[22],"rely":[23],"on":[24,173,180,221,238,347,403,470],"single":[26],"AV":[27],"product":[28],"detect":[30],"block":[32],"possible":[33],"malware":[34,65,222,379,434,454],"infections,":[35,66],"while":[36],"corporations":[37],"often":[38],"install":[39],"multiple":[40],"products,":[42],"activate":[43],"several":[44],"layers":[45],"defenses,":[47],"establish":[49],"policies":[51],"among":[52],"employees.":[53],"However,":[54],"if":[55,273],"better":[57,290],"posture":[59],"should":[60],"lower":[61,278],"risk":[63,80,146,194,432,446],"then":[67],"actual":[69],"extent":[70],"which":[72],"this":[73,168,509],"happens":[74],"under":[77],"debate":[78],"analysis":[81],"experts.":[82],"Moreover,":[83],"difference":[85],"in":[86,207,225,444,499,513],"risks":[87,224],"encountered":[88,369],"consumers":[90,274,329,500],"enterprises":[92,282],"has":[93],"never":[94],"been":[95],"empirically":[96],"studied":[97],"using":[99,155],"real-world":[100],"data.":[101],"In":[102,167,230,460],"fact,":[103],"mere":[105],"use":[106],"third-party":[108],"software,":[109],"network":[110],"services,":[111],"interconnected":[114],"nature":[115],"our":[117,212,254,386],"society":[118],"necessarily":[119],"exposes":[120],"both":[121,174],"classes":[122,376],"users":[124,132],"undiversifiable":[126,187],"risks:":[127],"Independently":[128],"from":[129,253],"how":[130,135],"careful":[131],"are":[133],"well":[136],"they":[137],"manage":[138],"their":[139,265],"cyber":[140,192],"hygiene,":[141],"portion":[143],"that":[145,216,271,338,389,464,484,506],"would":[147],"simply":[148],"exist":[149],"because":[150],"fact":[153],"computer,":[157],"sharing":[158],"same":[160,165],"networks,":[161],"running":[163],"software.":[166],"work,":[169],"we":[170,205,234,248,308,462],"shed":[171],"light":[172],"systemic":[175],"(i.e.,":[176,186],"diversifiable":[177],"dependent":[179],"posture)":[183],"systematic":[185,239,431],"independent":[189],"hygiene)":[193],"classes.":[195],"Leveraging":[196],"telemetry":[198],"data":[199],"popular":[202],"company,":[204],"compare,":[206],"first":[209,260],"part":[210],"study,":[213],"effects":[215],"different":[217,246,375],"measures":[219],"have":[220,275,330,440],"encounter":[223,279,332],"consumer":[226],"enterprise":[228,344],"environments.":[229],"second":[232],"part,":[233],"conduct":[235],"exploratory":[236],"research":[237],"risk,":[240],"investigate":[241],"quality":[243],"nine":[245],"indicators":[247,263,429],"were":[249],"able":[250],"extract":[252],"telemetry,":[255],"provide,":[257],"for":[258,334,503],"time,":[261],"quantitative":[262],"predictive":[266],"power.":[267],"Our":[268],"results":[269],"show":[270,388],"even":[272],"slightly":[277],"rate":[280,333],"than":[281,343,356],"(9.8%":[283],"vs.":[284,300],"12.0%),":[285],"latter":[287],"do":[288],"considerably":[289],"when":[291,307,364,478],"selecting":[292],"machines":[293,505],"with":[294],"an":[295,331],"increasingly":[296],"higher":[297,342,442,494],"uptime":[298],"(89%":[299],"53%).":[301],"The":[302],"two":[303],"segments":[304],"also":[305],"diverge":[306],"separately":[309],"consider":[310],"presence":[312],"Adware":[314,335,491],"Potentially":[316],"Unwanted":[317],"Applications":[318],"(PUA)":[319],"generic":[322],"samples":[323],"detected":[324],"through":[325],"behavioral":[326,350],"signatures:":[327],"While":[328],"PUA":[337],"6":[340],"times":[341,353,498],"machines,":[345],"those":[346,504],"average":[348,496],"match":[349],"signatures":[351],"2":[352],"more":[354],"frequently":[355],"counterpart.":[358],"We":[359,481],"find,":[360],"instead,":[361],"similar":[362],"trends":[363],"analyzing":[365],"age":[367],"signatures,":[370],"prevalence":[373],"traditional":[378],"(such":[380],"as":[381,428],"Ransomware":[382],"Cryptominers).":[384],"Finally,":[385],"findings":[387],"amount":[391],"time":[393],"host":[395,417,472],"active,":[397],"volume":[399,466],"files":[401,468],"generated":[402,469],"machine,":[405],"number":[407],"reputation":[409],"vendors":[411],"installed":[414],"applications,":[415],"geographical":[418],"location,":[419],"its":[421],"recurrent":[422],"infected":[423],"state":[424],"carry":[425],"useful":[426],"information":[427],"encounters.":[435],"Activity":[436],"days":[437],"hours":[439],"influence":[443],"consumers,":[448],"increasing":[449],"odds":[451],"encountering":[453,488],"4.51":[456],"2.65":[458],"times.":[459],"addition,":[461],"measure":[463],"represents":[473],"reliable":[475],"indicator,":[476],"especially":[477],"considering":[479],"Adware.":[480],"further":[482],"report":[483],"likelihood":[486],"Worms":[489],"much":[493],"(on":[495],"8":[497],"enterprises)":[502],"already":[507],"reported":[508],"kind":[510],"signature":[512],"past.":[515]},"counts_by_year":[{"year":2026,"cited_by_count":1},{"year":2025,"cited_by_count":3},{"year":2024,"cited_by_count":1}],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2025-10-10T00:00:00"}
