{"id":"https://openalex.org/W3204004884","doi":"https://doi.org/10.3233/jcs-210101","title":"Deep learning for detecting logic-flaw-exploiting network attacks: An\u00a0end-to-end approach","display_name":"Deep learning for detecting logic-flaw-exploiting network attacks: An\u00a0end-to-end approach","publication_year":2021,"publication_date":"2021-09-29","ids":{"openalex":"https://openalex.org/W3204004884","doi":"https://doi.org/10.3233/jcs-210101","mag":"3204004884"},"language":"en","primary_location":{"id":"doi:10.3233/jcs-210101","is_oa":false,"landing_page_url":"https://doi.org/10.3233/jcs-210101","pdf_url":null,"source":{"id":"https://openalex.org/S106992369","display_name":"Journal of Computer Security","issn_l":"0926-227X","issn":["0926-227X","1875-8924"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310318577","host_organization_name":"IOS Press","host_organization_lineage":["https://openalex.org/P4310318577"],"host_organization_lineage_names":["IOS Press"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Journal of Computer Security","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5058926362","display_name":"Qingtian Zou","orcid":"https://orcid.org/0000-0002-1412-4800"},"institutions":[{"id":"https://openalex.org/I130769515","display_name":"Pennsylvania State University","ror":"https://ror.org/04p491231","country_code":"US","type":"education","lineage":["https://openalex.org/I130769515"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"Qingtian Zou","raw_affiliation_strings":["College of Information Sciences and Technology, The Pennsylvania State University, PA, USA"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"College of Information Sciences and Technology, The Pennsylvania State University, PA, USA","institution_ids":["https://openalex.org/I130769515"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5088206056","display_name":"Anoop Singhal","orcid":"https://orcid.org/0000-0002-2602-3927"},"institutions":[{"id":"https://openalex.org/I1321296531","display_name":"National Institute of Standards and Technology","ror":"https://ror.org/05xpvk416","country_code":"US","type":"funder","lineage":["https://openalex.org/I1321296531","https://openalex.org/I1343035065"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Anoop Singhal","raw_affiliation_strings":["Security Test, Validation and Measurement Group, National Institute of Standards and Technology, MD, USA"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Security Test, Validation and Measurement Group, National Institute of Standards and Technology, MD, USA","institution_ids":["https://openalex.org/I1321296531"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100656311","display_name":"Xiaoyan Sun","orcid":"https://orcid.org/0000-0002-0321-2338"},"institutions":[{"id":"https://openalex.org/I43522216","display_name":"California State University, Sacramento","ror":"https://ror.org/03e26wv14","country_code":"US","type":"education","lineage":["https://openalex.org/I43522216"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Xiaoyan Sun","raw_affiliation_strings":["College of Engineering & Computer Science, California State University, Sacramento, CA, USA"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"College of Engineering & Computer Science, California State University, Sacramento, CA, USA","institution_ids":["https://openalex.org/I43522216"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5100346828","display_name":"Peng Liu","orcid":"https://orcid.org/0000-0002-5091-8464"},"institutions":[{"id":"https://openalex.org/I130769515","display_name":"Pennsylvania State University","ror":"https://ror.org/04p491231","country_code":"US","type":"education","lineage":["https://openalex.org/I130769515"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Peng Liu","raw_affiliation_strings":["College of Information Sciences and Technology, The Pennsylvania State University, PA, USA"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"College of Information Sciences and Technology, The Pennsylvania State University, PA, USA","institution_ids":["https://openalex.org/I130769515"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5058926362"],"corresponding_institution_ids":["https://openalex.org/I130769515"],"apc_list":null,"apc_paid":null,"fwci":0.4807,"has_fulltext":false,"cited_by_count":4,"citation_normalized_percentile":{"value":0.67628138,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":90,"max":96},"biblio":{"volume":"30","issue":"4","first_page":"541","last_page":"570"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11598","display_name":"Internet Traffic Analysis and Secure E-voting","score":0.9997000098228455,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9995999932289124,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.808093249797821},{"id":"https://openalex.org/keywords/network-security","display_name":"Network security","score":0.5498101115226746},{"id":"https://openalex.org/keywords/exploit","display_name":"Exploit","score":0.5262210369110107},{"id":"https://openalex.org/keywords/artificial-neural-network","display_name":"Artificial neural network","score":0.5133720636367798},{"id":"https://openalex.org/keywords/intrusion-detection-system","display_name":"Intrusion detection system","score":0.5032255053520203},{"id":"https://openalex.org/keywords/deep-learning","display_name":"Deep learning","score":0.5004997253417969},{"id":"https://openalex.org/keywords/end-to-end-principle","display_name":"End-to-end principle","score":0.49212950468063354},{"id":"https://openalex.org/keywords/protocol","display_name":"Protocol (science)","score":0.4721921682357788},{"id":"https://openalex.org/keywords/fuzz-testing","display_name":"Fuzz testing","score":0.4417092204093933},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.397047221660614},{"id":"https://openalex.org/keywords/data-mining","display_name":"Data mining","score":0.3913044035434723},{"id":"https://openalex.org/keywords/computer-network","display_name":"Computer network","score":0.386923611164093},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.37613874673843384}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.808093249797821},{"id":"https://openalex.org/C182590292","wikidata":"https://www.wikidata.org/wiki/Q989632","display_name":"Network security","level":2,"score":0.5498101115226746},{"id":"https://openalex.org/C165696696","wikidata":"https://www.wikidata.org/wiki/Q11287","display_name":"Exploit","level":2,"score":0.5262210369110107},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.5133720636367798},{"id":"https://openalex.org/C35525427","wikidata":"https://www.wikidata.org/wiki/Q745881","display_name":"Intrusion detection system","level":2,"score":0.5032255053520203},{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.5004997253417969},{"id":"https://openalex.org/C74296488","wikidata":"https://www.wikidata.org/wiki/Q2527392","display_name":"End-to-end principle","level":2,"score":0.49212950468063354},{"id":"https://openalex.org/C2780385302","wikidata":"https://www.wikidata.org/wiki/Q367158","display_name":"Protocol (science)","level":3,"score":0.4721921682357788},{"id":"https://openalex.org/C111065885","wikidata":"https://www.wikidata.org/wiki/Q1189053","display_name":"Fuzz testing","level":3,"score":0.4417092204093933},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.397047221660614},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.3913044035434723},{"id":"https://openalex.org/C31258907","wikidata":"https://www.wikidata.org/wiki/Q1301371","display_name":"Computer network","level":1,"score":0.386923611164093},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.37613874673843384},{"id":"https://openalex.org/C2777904410","wikidata":"https://www.wikidata.org/wiki/Q7397","display_name":"Software","level":2,"score":0.0},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.0},{"id":"https://openalex.org/C204787440","wikidata":"https://www.wikidata.org/wiki/Q188504","display_name":"Alternative medicine","level":2,"score":0.0},{"id":"https://openalex.org/C71924100","wikidata":"https://www.wikidata.org/wiki/Q11190","display_name":"Medicine","level":0,"score":0.0},{"id":"https://openalex.org/C142724271","wikidata":"https://www.wikidata.org/wiki/Q7208","display_name":"Pathology","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.3233/jcs-210101","is_oa":false,"landing_page_url":"https://doi.org/10.3233/jcs-210101","pdf_url":null,"source":{"id":"https://openalex.org/S106992369","display_name":"Journal of Computer Security","issn_l":"0926-227X","issn":["0926-227X","1875-8924"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310318577","host_organization_name":"IOS Press","host_organization_lineage":["https://openalex.org/P4310318577"],"host_organization_lineage_names":["IOS Press"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Journal of Computer Security","raw_type":"journal-article"}],"best_oa_location":null,"sustainable_development_goals":[{"score":0.5600000023841858,"id":"https://metadata.un.org/sdg/16","display_name":"Peace, Justice and strong institutions"}],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":38,"referenced_works":["https://openalex.org/W1498436455","https://openalex.org/W1554663460","https://openalex.org/W1995126785","https://openalex.org/W2031235323","https://openalex.org/W2032885078","https://openalex.org/W2033779093","https://openalex.org/W2055285705","https://openalex.org/W2088675683","https://openalex.org/W2107081940","https://openalex.org/W2129827899","https://openalex.org/W2129975948","https://openalex.org/W2141175718","https://openalex.org/W2151077395","https://openalex.org/W2296509296","https://openalex.org/W2620892147","https://openalex.org/W2625013748","https://openalex.org/W2762776925","https://openalex.org/W2789828921","https://openalex.org/W2807786182","https://openalex.org/W2903094299","https://openalex.org/W2904399224","https://openalex.org/W2908180678","https://openalex.org/W2911964244","https://openalex.org/W2944643572","https://openalex.org/W2954482899","https://openalex.org/W2958343096","https://openalex.org/W2962703433","https://openalex.org/W2965481252","https://openalex.org/W3011411500","https://openalex.org/W3015248254","https://openalex.org/W3096609285","https://openalex.org/W3108957394","https://openalex.org/W3175660521","https://openalex.org/W3180083485","https://openalex.org/W4205686602","https://openalex.org/W4388297464","https://openalex.org/W6600424091","https://openalex.org/W6702248584"],"related_works":["https://openalex.org/W2352737138","https://openalex.org/W2061466315","https://openalex.org/W2376886931","https://openalex.org/W2010561419","https://openalex.org/W2374845301","https://openalex.org/W2351448539","https://openalex.org/W1977863481","https://openalex.org/W2384741105","https://openalex.org/W1495178644","https://openalex.org/W2185594426"],"abstract_inverted_index":{"Network":[0],"attacks":[1,15,38,66],"have":[2,42,59,75],"become":[3],"a":[4,23,99],"major":[5,76],"security":[6],"concern":[7],"for":[8,121],"organizations":[9],"worldwide.":[10],"A":[11],"category":[12],"of":[13,22],"network":[14,37,53,65,68,72,111,122,152],"that":[16,128,135],"exploit":[17],"the":[18,50,150],"logic":[19],"(security)":[20],"flaws":[21],"few":[24],"widely-deployed":[25],"authentication":[26],"protocols":[27],"has":[28],"been":[29],"commonly":[30],"observed":[31],"in":[32],"recent":[33],"years.":[34],"Such":[35],"logic-flaw-exploiting":[36,151],"often":[39],"do":[40],"not":[41],"distinguishing":[43],"signatures,":[44],"and":[45,84,91,139],"can":[46,118,131,147],"thus":[47],"easily":[48],"evade":[49],"typical":[51],"signature-based":[52],"intrusion":[54],"detection":[55],"systems.":[56],"Recently,":[57],"researchers":[58],"applied":[60],"neural":[61],"networks":[62],"to":[63,89,107],"detect":[64,149],"with":[67,87,144],"logs.":[69],"However,":[70],"public":[71],"data":[73,81,86,133,146],"sets":[74],"drawbacks":[77],"such":[78],"as":[79],"limited":[80],"sample":[82],"variations":[83],"unbalanced":[85],"respect":[88],"malicious":[90],"benign":[92],"samples.":[93],"In":[94],"this":[95],"paper,":[96],"we":[97],"present":[98],"new":[100],"end-to-end":[101],"approach":[102],"based":[103],"on":[104,113],"protocol":[105,129],"fuzzing":[106,130],"automatically":[108],"generate":[109,132],"high-quality":[110],"data,":[112,138],"which":[114],"deep":[115,140],"learning":[116,141],"models":[117,142],"be":[119],"trained":[120,143],"attack":[123],"detection.":[124],"Our":[125],"findings":[126],"show":[127],"samples":[134],"cover":[136],"real-world":[137],"fuzzed":[145],"successfully":[148],"attacks.":[153]},"counts_by_year":[{"year":2025,"cited_by_count":1},{"year":2024,"cited_by_count":2},{"year":2023,"cited_by_count":1}],"updated_date":"2026-05-21T06:26:12.895304","created_date":"2025-10-10T00:00:00"}
