{"id":"https://openalex.org/W4410357315","doi":"https://doi.org/10.1145/3672608.3707927","title":"Formally Verifying Robustness and Generalisation of Network Intrusion Detection Models","display_name":"Formally Verifying Robustness and Generalisation of Network Intrusion Detection Models","publication_year":2025,"publication_date":"2025-03-31","ids":{"openalex":"https://openalex.org/W4410357315","doi":"https://doi.org/10.1145/3672608.3707927"},"language":"en","primary_location":{"id":"doi:10.1145/3672608.3707927","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3672608.3707927","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3672608.3707927","source":null,"license":"cc-by-sa","license_id":"https://openalex.org/licenses/cc-by-sa","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 40th ACM/SIGAPP Symposium on Applied Computing","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"gold","oa_url":"https://dl.acm.org/doi/pdf/10.1145/3672608.3707927","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5072735035","display_name":"Robert Flood","orcid":"https://orcid.org/0000-0001-7171-3364"},"institutions":[{"id":"https://openalex.org/I98677209","display_name":"University of Edinburgh","ror":"https://ror.org/01nrxwf90","country_code":"GB","type":"education","lineage":["https://openalex.org/I98677209"]}],"countries":["GB"],"is_corresponding":true,"raw_author_name":"Robert Flood","raw_affiliation_strings":["University of Edinburgh, Edinburgh, United Kingdom"],"affiliations":[{"raw_affiliation_string":"University of Edinburgh, Edinburgh, United Kingdom","institution_ids":["https://openalex.org/I98677209"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5074844361","display_name":"Marco Casadio","orcid":null},"institutions":[{"id":"https://openalex.org/I32062511","display_name":"Heriot-Watt University","ror":"https://ror.org/04mghma93","country_code":"GB","type":"education","lineage":["https://openalex.org/I32062511"]}],"countries":["GB"],"is_corresponding":false,"raw_author_name":"Marco Casadio","raw_affiliation_strings":["Heriot-Watt University, Heriot-Watt University, United Kingdom"],"affiliations":[{"raw_affiliation_string":"Heriot-Watt University, Heriot-Watt University, United Kingdom","institution_ids":["https://openalex.org/I32062511"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5013254098","display_name":"David Aspinall","orcid":"https://orcid.org/0000-0002-6073-9013"},"institutions":[{"id":"https://openalex.org/I98677209","display_name":"University of Edinburgh","ror":"https://ror.org/01nrxwf90","country_code":"GB","type":"education","lineage":["https://openalex.org/I98677209"]}],"countries":["GB"],"is_corresponding":false,"raw_author_name":"David Aspinall","raw_affiliation_strings":["University of Edinburgh, Edinburgh, United Kingdom"],"affiliations":[{"raw_affiliation_string":"University of Edinburgh, Edinburgh, United Kingdom","institution_ids":["https://openalex.org/I98677209"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5026643182","display_name":"Ekaterina Komendantskaya","orcid":"https://orcid.org/0000-0002-3240-0987"},"institutions":[{"id":"https://openalex.org/I43439940","display_name":"University of Southampton","ror":"https://ror.org/01ryk1543","country_code":"GB","type":"education","lineage":["https://openalex.org/I43439940"]}],"countries":["GB"],"is_corresponding":false,"raw_author_name":"Ekaterina Komendantskaya","raw_affiliation_strings":["University of Southampton, Southampton, United Kingdom"],"affiliations":[{"raw_affiliation_string":"University of Southampton, Southampton, United Kingdom","institution_ids":["https://openalex.org/I43439940"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5072735035"],"corresponding_institution_ids":["https://openalex.org/I98677209"],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":true,"cited_by_count":0,"citation_normalized_percentile":{"value":0.10177219,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":"1867","last_page":"1876"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9962999820709229,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10917","display_name":"Smart Grid Security and Resilience","score":0.9950000047683716,"subfield":{"id":"https://openalex.org/subfields/2207","display_name":"Control and Systems Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7798557281494141},{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness (evolution)","score":0.7638111114501953},{"id":"https://openalex.org/keywords/intrusion-detection-system","display_name":"Intrusion detection system","score":0.5854007005691528},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.45253899693489075},{"id":"https://openalex.org/keywords/data-mining","display_name":"Data mining","score":0.3974217176437378},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.3720472455024719}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7798557281494141},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.7638111114501953},{"id":"https://openalex.org/C35525427","wikidata":"https://www.wikidata.org/wiki/Q745881","display_name":"Intrusion detection system","level":2,"score":0.5854007005691528},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.45253899693489075},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.3974217176437378},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.3720472455024719},{"id":"https://openalex.org/C104317684","wikidata":"https://www.wikidata.org/wiki/Q7187","display_name":"Gene","level":2,"score":0.0},{"id":"https://openalex.org/C185592680","wikidata":"https://www.wikidata.org/wiki/Q2329","display_name":"Chemistry","level":0,"score":0.0},{"id":"https://openalex.org/C55493867","wikidata":"https://www.wikidata.org/wiki/Q7094","display_name":"Biochemistry","level":1,"score":0.0}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1145/3672608.3707927","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3672608.3707927","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3672608.3707927","source":null,"license":"cc-by-sa","license_id":"https://openalex.org/licenses/cc-by-sa","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 40th ACM/SIGAPP Symposium on Applied Computing","raw_type":"proceedings-article"},{"id":"pmh:oai:pure.ed.ac.uk:openaire/eaae3e35-3451-408e-837e-07498cf44aaf","is_oa":true,"landing_page_url":"https://www.research.ed.ac.uk/en/publications/eaae3e35-3451-408e-837e-07498cf44aaf","pdf_url":null,"source":{"id":"https://openalex.org/S4406922455","display_name":"Edinburgh Research Explorer","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"Flood, R, Casadio, M, Aspinall, D & Komendantskaya, E 2025, Formally Verifying Robustness and Generalisation of Network Intrusion Detection Models. in 40th Annual ACM Symposium on Applied Computing : SAC 2025. Proceedings of the ACM Symposium on Applied Computing, pp. 1867-1876, 40th Annual ACM Symposium on Applied Computing, SAC 2025, Catania, Italy, 31/03/25. https://doi.org/10.1145/3672608.3707927","raw_type":"contributionToPeriodical"}],"best_oa_location":{"id":"doi:10.1145/3672608.3707927","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3672608.3707927","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3672608.3707927","source":null,"license":"cc-by-sa","license_id":"https://openalex.org/licenses/cc-by-sa","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 40th ACM/SIGAPP Symposium on Applied Computing","raw_type":"proceedings-article"},"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/13","score":0.6899999976158142,"display_name":"Climate action"}],"awards":[{"id":"https://openalex.org/G4733191859","display_name":"AISEC: AI Secure and Explainable by Construction","funder_award_id":"EP/T027037/1","funder_id":"https://openalex.org/F4320334627","funder_display_name":"Engineering and Physical Sciences Research Council"}],"funders":[{"id":"https://openalex.org/F4320334627","display_name":"Engineering and Physical Sciences Research Council","ror":"https://ror.org/0439y7842"}],"has_content":{"grobid_xml":true,"pdf":true},"content_urls":{"pdf":"https://content.openalex.org/works/W4410357315.pdf","grobid_xml":"https://content.openalex.org/works/W4410357315.grobid-xml"},"referenced_works_count":30,"referenced_works":["https://openalex.org/W2565186948","https://openalex.org/W2594877703","https://openalex.org/W2772317693","https://openalex.org/W2774644650","https://openalex.org/W2789828921","https://openalex.org/W2794609696","https://openalex.org/W2963197901","https://openalex.org/W2963600714","https://openalex.org/W2989358546","https://openalex.org/W3005097670","https://openalex.org/W3015625436","https://openalex.org/W3083878034","https://openalex.org/W3102091066","https://openalex.org/W3111088413","https://openalex.org/W3164936723","https://openalex.org/W3180062783","https://openalex.org/W3184593429","https://openalex.org/W3198437360","https://openalex.org/W3206414484","https://openalex.org/W3208097639","https://openalex.org/W3211487307","https://openalex.org/W3212419298","https://openalex.org/W4206331418","https://openalex.org/W4220846496","https://openalex.org/W4290087446","https://openalex.org/W4308632271","https://openalex.org/W4379620324","https://openalex.org/W4381571085","https://openalex.org/W4396214268","https://openalex.org/W4408224233"],"related_works":["https://openalex.org/W2961085424","https://openalex.org/W4306674287","https://openalex.org/W4387369504","https://openalex.org/W4394896187","https://openalex.org/W3170094116","https://openalex.org/W4386462264","https://openalex.org/W3107602296","https://openalex.org/W4364306694","https://openalex.org/W4312192474","https://openalex.org/W4283697347"],"abstract_inverted_index":{"We":[0,94,142,156],"introduce":[1],"a":[2,49],"new":[3,60,128],"approach":[4,45],"for":[5,21,31,91,104,149],"robustness":[6,47],"and":[7,35,116,130,139,160,168],"generalisation":[8,138,162],"of":[9,51,163],"neural":[10,105],"network":[11,33,150],"models":[12,73,165],"used":[13],"in":[14],"Network":[15],"Intrusion":[16],"Detection":[17],"Systems":[18],"(NIDS).":[19],"Models":[20],"NIDS":[22,72],"must":[23],"be":[24,177],"robust":[25],"against":[26],"both":[27,96,137],"natural":[28],"perturbations":[29],"(accounting":[30],"typical":[32],"variations)":[34],"adversarial":[36,134,140],"attacks":[37,56],"(designed":[38],"to":[39,46,53,63,81,83,111,122,126,176],"conceal":[40],"malicious":[41,129],"traffic).":[42],"The":[43],"standard":[44],"is":[48,78,166],"cycle":[50],"training":[52,135,152],"recognise":[54],"existing":[55],"followed":[57],"by":[58,98],"generating":[59],"attack":[61],"variations":[62],"defeat":[64],"detection.":[65],"Besides":[66],"robustness,":[67],"another":[68],"problem":[69],"with":[70,146],"research":[71],"trained":[74],"on":[75],"limited":[76],"datasets":[77],"the":[79,84,89,113],"tendency":[80],"over-fit":[82],"dataset":[85],"chosen;":[86],"this":[87],"highlights":[88],"need":[90],"cross-dataset":[92,159],"generalisation.":[93],"address":[95],"problems":[97],"incorporating":[99],"recent":[100],"formal":[101],"verification":[102,120],"tools":[103],"networks.":[106,155],"These":[107],"frameworks":[108],"allow":[109],"us":[110],"characterise":[112],"input":[114],"space":[115],"we":[117],"also":[118],"use":[119],"outputs":[121],"generate":[123,127],"constrained":[124],"counterexamples":[125],"benign":[131],"data.":[132],"Then":[133],"improves":[136],"robustness.":[141],"demonstrate":[143],"these":[144],"ideas":[145],"novel":[147],"specifications":[148],"traffic,":[151],"simple,":[153],"verifiable":[154],"show":[157],"that":[158],"cross-attack":[161],"our":[164],"good":[167],"can":[169],"outperform":[170],"more":[171],"complex,":[172],"state-of-the-art":[173],"models,":[174],"unable":[175],"verified":[178],"similarly.":[179]},"counts_by_year":[],"updated_date":"2026-04-10T15:06:20.359241","created_date":"2025-10-10T00:00:00"}
