{"id":"https://openalex.org/W4407842019","doi":"https://doi.org/10.3390/make7010021","title":"Comparative Analysis of Perturbation Techniques in LIME for Intrusion Detection Enhancement","display_name":"Comparative Analysis of Perturbation Techniques in LIME for Intrusion Detection Enhancement","publication_year":2025,"publication_date":"2025-02-21","ids":{"openalex":"https://openalex.org/W4407842019","doi":"https://doi.org/10.3390/make7010021"},"language":"en","primary_location":{"id":"doi:10.3390/make7010021","is_oa":true,"landing_page_url":"https://doi.org/10.3390/make7010021","pdf_url":"https://www.mdpi.com/2504-4990/7/1/21/pdf?version=1740144358","source":{"id":"https://openalex.org/S4210213891","display_name":"Machine Learning and Knowledge Extraction","issn_l":"2504-4990","issn":["2504-4990"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310310987","host_organization_name":"Multidisciplinary Digital Publishing Institute","host_organization_lineage":["https://openalex.org/P4310310987"],"host_organization_lineage_names":["Multidisciplinary Digital Publishing Institute"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Machine Learning and Knowledge Extraction","raw_type":"journal-article"},"type":"article","indexed_in":["crossref","doaj"],"open_access":{"is_oa":true,"oa_status":"gold","oa_url":"https://www.mdpi.com/2504-4990/7/1/21/pdf?version=1740144358","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5064413636","display_name":"Mantas Bacevi\u010dius","orcid":null},"institutions":[{"id":"https://openalex.org/I172574986","display_name":"Kaunas University of Technology","ror":"https://ror.org/01me6gb93","country_code":"LT","type":"education","lineage":["https://openalex.org/I172574986"]}],"countries":["LT"],"is_corresponding":false,"raw_author_name":"Mantas Bacevicius","raw_affiliation_strings":["Faculty of Informatics, Kaunas University of Technology, Studentu 50, 51368 Kaunas, Lithuania"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Faculty of Informatics, Kaunas University of Technology, Studentu 50, 51368 Kaunas, Lithuania","institution_ids":["https://openalex.org/I172574986"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5087778270","display_name":"Agn\u0117 Paulauskait\u0117-Tarasevi\u010dien\u0117","orcid":"https://orcid.org/0000-0002-8787-3343"},"institutions":[{"id":"https://openalex.org/I172574986","display_name":"Kaunas University of Technology","ror":"https://ror.org/01me6gb93","country_code":"LT","type":"education","lineage":["https://openalex.org/I172574986"]},{"id":"https://openalex.org/I4210119728","display_name":"Sustainable Innovation (Sweden)","ror":"https://ror.org/02e9qns56","country_code":"SE","type":"company","lineage":["https://openalex.org/I4210119728"]}],"countries":["LT","SE"],"is_corresponding":true,"raw_author_name":"Agne Paulauskaite-Taraseviciene","raw_affiliation_strings":["Centre of Excellence for Sustainable Living and Working (SustAInLivWork), K. Donelaicio 73, 44249 Kaunas, Lithuania","Faculty of Informatics, Kaunas University of Technology, Studentu 50, 51368 Kaunas, Lithuania","Centre of Excellence for Sustainable Living and Working (SustAInLivWork), K. Donelaicio73, 44249 Kaunas, Lithuania"],"raw_orcid":"https://orcid.org/0000-0002-8787-3343","affiliations":[{"raw_affiliation_string":"Centre of Excellence for Sustainable Living and Working (SustAInLivWork), K. Donelaicio 73, 44249 Kaunas, Lithuania","institution_ids":["https://openalex.org/I4210119728"]},{"raw_affiliation_string":"Faculty of Informatics, Kaunas University of Technology, Studentu 50, 51368 Kaunas, Lithuania","institution_ids":["https://openalex.org/I172574986"]},{"raw_affiliation_string":"Centre of Excellence for Sustainable Living and Working (SustAInLivWork), K. Donelaicio73, 44249 Kaunas, Lithuania","institution_ids":[]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5116381123","display_name":"Gintare Zokaityte","orcid":null},"institutions":[{"id":"https://openalex.org/I172574986","display_name":"Kaunas University of Technology","ror":"https://ror.org/01me6gb93","country_code":"LT","type":"education","lineage":["https://openalex.org/I172574986"]}],"countries":["LT"],"is_corresponding":false,"raw_author_name":"Gintare Zokaityte","raw_affiliation_strings":["Faculty of Informatics, Kaunas University of Technology, Studentu 50, 51368 Kaunas, Lithuania"],"raw_orcid":"https://orcid.org/0009-0000-0043-6988","affiliations":[{"raw_affiliation_string":"Faculty of Informatics, Kaunas University of Technology, Studentu 50, 51368 Kaunas, Lithuania","institution_ids":["https://openalex.org/I172574986"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5116381124","display_name":"Lukas Kersys","orcid":null},"institutions":[{"id":"https://openalex.org/I172574986","display_name":"Kaunas University of Technology","ror":"https://ror.org/01me6gb93","country_code":"LT","type":"education","lineage":["https://openalex.org/I172574986"]}],"countries":["LT"],"is_corresponding":false,"raw_author_name":"Lukas Kersys","raw_affiliation_strings":["Faculty of Informatics, Kaunas University of Technology, Studentu 50, 51368 Kaunas, Lithuania"],"raw_orcid":"https://orcid.org/0009-0001-1361-7590","affiliations":[{"raw_affiliation_string":"Faculty of Informatics, Kaunas University of Technology, Studentu 50, 51368 Kaunas, Lithuania","institution_ids":["https://openalex.org/I172574986"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5116381125","display_name":"Agne Moleikaityte","orcid":null},"institutions":[{"id":"https://openalex.org/I172574986","display_name":"Kaunas University of Technology","ror":"https://ror.org/01me6gb93","country_code":"LT","type":"education","lineage":["https://openalex.org/I172574986"]}],"countries":["LT"],"is_corresponding":false,"raw_author_name":"Agne Moleikaityte","raw_affiliation_strings":["Faculty of Informatics, Kaunas University of Technology, Studentu 50, 51368 Kaunas, Lithuania"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Faculty of Informatics, Kaunas University of Technology, Studentu 50, 51368 Kaunas, Lithuania","institution_ids":["https://openalex.org/I172574986"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":5,"corresponding_author_ids":["https://openalex.org/A5087778270"],"corresponding_institution_ids":["https://openalex.org/I172574986","https://openalex.org/I4210119728"],"apc_list":{"value":1400,"currency":"CHF","value_usd":1515},"apc_paid":{"value":1400,"currency":"CHF","value_usd":1515},"fwci":57.2597,"has_fulltext":true,"cited_by_count":15,"citation_normalized_percentile":{"value":0.99822153,"is_in_top_1_percent":true,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":99,"max":100},"biblio":{"volume":"7","issue":"1","first_page":"21","last_page":"21"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10069","display_name":"Antenna Design and Analysis","score":0.7591000199317932,"subfield":{"id":"https://openalex.org/subfields/2202","display_name":"Aerospace Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10069","display_name":"Antenna Design and Analysis","score":0.7591000199317932,"subfield":{"id":"https://openalex.org/subfields/2202","display_name":"Aerospace Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12024","display_name":"Ultra-Wideband Communications Technology","score":0.7224000096321106,"subfield":{"id":"https://openalex.org/subfields/2208","display_name":"Electrical and Electronic Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10575","display_name":"Wireless Communication Networks Research","score":0.7006999850273132,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/lime","display_name":"Lime","score":0.5724968314170837},{"id":"https://openalex.org/keywords/intrusion","display_name":"Intrusion","score":0.4320743978023529},{"id":"https://openalex.org/keywords/intrusion-detection-system","display_name":"Intrusion detection system","score":0.4267141819000244},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.40829360485076904},{"id":"https://openalex.org/keywords/geology","display_name":"Geology","score":0.3667108714580536},{"id":"https://openalex.org/keywords/materials-science","display_name":"Materials science","score":0.3072524666786194},{"id":"https://openalex.org/keywords/data-mining","display_name":"Data mining","score":0.2530888319015503},{"id":"https://openalex.org/keywords/geochemistry","display_name":"Geochemistry","score":0.16943901777267456},{"id":"https://openalex.org/keywords/metallurgy","display_name":"Metallurgy","score":0.1683887541294098}],"concepts":[{"id":"https://openalex.org/C2778218555","wikidata":"https://www.wikidata.org/wiki/Q250423","display_name":"Lime","level":2,"score":0.5724968314170837},{"id":"https://openalex.org/C158251709","wikidata":"https://www.wikidata.org/wiki/Q354025","display_name":"Intrusion","level":2,"score":0.4320743978023529},{"id":"https://openalex.org/C35525427","wikidata":"https://www.wikidata.org/wiki/Q745881","display_name":"Intrusion detection system","level":2,"score":0.4267141819000244},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.40829360485076904},{"id":"https://openalex.org/C127313418","wikidata":"https://www.wikidata.org/wiki/Q1069","display_name":"Geology","level":0,"score":0.3667108714580536},{"id":"https://openalex.org/C192562407","wikidata":"https://www.wikidata.org/wiki/Q228736","display_name":"Materials science","level":0,"score":0.3072524666786194},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.2530888319015503},{"id":"https://openalex.org/C17409809","wikidata":"https://www.wikidata.org/wiki/Q161764","display_name":"Geochemistry","level":1,"score":0.16943901777267456},{"id":"https://openalex.org/C191897082","wikidata":"https://www.wikidata.org/wiki/Q11467","display_name":"Metallurgy","level":1,"score":0.1683887541294098}],"mesh":[],"locations_count":3,"locations":[{"id":"doi:10.3390/make7010021","is_oa":true,"landing_page_url":"https://doi.org/10.3390/make7010021","pdf_url":"https://www.mdpi.com/2504-4990/7/1/21/pdf?version=1740144358","source":{"id":"https://openalex.org/S4210213891","display_name":"Machine Learning and Knowledge Extraction","issn_l":"2504-4990","issn":["2504-4990"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310310987","host_organization_name":"Multidisciplinary Digital Publishing Institute","host_organization_lineage":["https://openalex.org/P4310310987"],"host_organization_lineage_names":["Multidisciplinary Digital Publishing Institute"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Machine Learning and Knowledge Extraction","raw_type":"journal-article"},{"id":"pmh:oai:ktu.edu:elaba:227675556","is_oa":true,"landing_page_url":"https://vb.ktu.edu/KTU:ELABAPDB227675556&prefLang=en_US","pdf_url":null,"source":{"id":"https://openalex.org/S4406922255","display_name":"KTUePubl (Repository of Kaunas University of Technology)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":"other-oa","license_id":"https://openalex.org/licenses/other-oa","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"ISSN 2504-4990","raw_type":"info:eu-repo/semantics/article"},{"id":"pmh:oai:doaj.org/article:1d38891cbb9146328a57f23ce06fd707","is_oa":false,"landing_page_url":"https://doaj.org/article/1d38891cbb9146328a57f23ce06fd707","pdf_url":null,"source":{"id":"https://openalex.org/S4306401280","display_name":"DOAJ (DOAJ: Directory of Open Access Journals)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"Machine Learning and Knowledge Extraction, Vol 7, Iss 1, p 21 (2025)","raw_type":"article"}],"best_oa_location":{"id":"doi:10.3390/make7010021","is_oa":true,"landing_page_url":"https://doi.org/10.3390/make7010021","pdf_url":"https://www.mdpi.com/2504-4990/7/1/21/pdf?version=1740144358","source":{"id":"https://openalex.org/S4210213891","display_name":"Machine Learning and Knowledge Extraction","issn_l":"2504-4990","issn":["2504-4990"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310310987","host_organization_name":"Multidisciplinary Digital Publishing Institute","host_organization_lineage":["https://openalex.org/P4310310987"],"host_organization_lineage_names":["Multidisciplinary Digital Publishing Institute"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Machine Learning and Knowledge Extraction","raw_type":"journal-article"},"sustainable_development_goals":[],"awards":[{"id":"https://openalex.org/G7915277041","display_name":null,"funder_award_id":"2021-2027","funder_id":"https://openalex.org/F4320334322","funder_display_name":"HORIZON EUROPE Framework Programme"},{"id":"https://openalex.org/G7966230805","display_name":null,"funder_award_id":"101059903","funder_id":"https://openalex.org/F4320320300","funder_display_name":"European Commission"},{"id":"https://openalex.org/G8503085978","display_name":null,"funder_award_id":"2021-2027","funder_id":"https://openalex.org/F4320320300","funder_display_name":"European Commission"}],"funders":[{"id":"https://openalex.org/F4320320300","display_name":"European Commission","ror":"https://ror.org/00k4n6c32"},{"id":"https://openalex.org/F4320334322","display_name":"HORIZON EUROPE Framework Programme","ror":null}],"has_content":{"grobid_xml":true,"pdf":true},"content_urls":{"pdf":"https://content.openalex.org/works/W4407842019.pdf","grobid_xml":"https://content.openalex.org/works/W4407842019.grobid-xml"},"referenced_works_count":36,"referenced_works":["https://openalex.org/W1565746575","https://openalex.org/W2620509500","https://openalex.org/W2727420541","https://openalex.org/W2789828921","https://openalex.org/W2807124908","https://openalex.org/W2901217160","https://openalex.org/W2909872967","https://openalex.org/W3049335548","https://openalex.org/W3093410479","https://openalex.org/W3118992623","https://openalex.org/W3135544356","https://openalex.org/W3164796711","https://openalex.org/W3167451058","https://openalex.org/W3186197713","https://openalex.org/W4206909422","https://openalex.org/W4210296948","https://openalex.org/W4210743106","https://openalex.org/W4213328526","https://openalex.org/W4285732709","https://openalex.org/W4297682942","https://openalex.org/W4309346044","https://openalex.org/W4309941903","https://openalex.org/W4313116287","https://openalex.org/W4366245889","https://openalex.org/W4366689744","https://openalex.org/W4388516534","https://openalex.org/W4390859355","https://openalex.org/W4399360891","https://openalex.org/W4400200688","https://openalex.org/W4400350841","https://openalex.org/W4401409861","https://openalex.org/W4402783647","https://openalex.org/W6677718073","https://openalex.org/W6748426178","https://openalex.org/W6817988518","https://openalex.org/W6854769312"],"related_works":["https://openalex.org/W2899084033","https://openalex.org/W613900103","https://openalex.org/W41493830","https://openalex.org/W2078196141","https://openalex.org/W3039193420","https://openalex.org/W2586264108","https://openalex.org/W2246622200","https://openalex.org/W2052639853","https://openalex.org/W2274704436","https://openalex.org/W2133389611"],"abstract_inverted_index":{"The":[0,139],"growing":[1],"sophistication":[2],"of":[3,86,113,122,136],"cyber":[4],"threats":[5],"necessitates":[6],"robust":[7],"and":[8,33,48,83,105,133,176,187,214],"interpretable":[9],"intrusion":[10],"detection":[11],"systems":[12],"(IDS)":[13],"to":[14,65,79,108,151,154],"safeguard":[15],"network":[16,114,204],"security.":[17],"While":[18],"machine":[19],"learning":[20],"models":[21,125],"such":[22],"as":[23,45],"Decision":[24],"Tree":[25],"(DT),":[26],"Random":[27],"Forest":[28],"(RF),":[29],"k-Nearest":[30],"Neighbors":[31],"(K-NN),":[32],"XGBoost":[34],"demonstrate":[35],"high":[36],"effectiveness":[37],"in":[38,146,210],"detecting":[39],"malicious":[40],"activities,":[41],"their":[42,46],"interpretability":[43],"decreases":[44],"complexity":[47],"accuracy":[49],"increase,":[50],"posing":[51],"challenges":[52],"for":[53,75,143,179],"critical":[54],"cybersecurity":[55],"applications.":[56],"Local":[57],"Interpretable":[58],"Model-agnostic":[59],"Explanations":[60],"(LIME)":[61],"is":[62],"widely":[63],"used":[64],"address":[66,91],"this":[67],"limitation;":[68],"however,":[69],"its":[70],"reliance":[71],"on":[72,127],"normal":[73],"distribution":[74],"perturbations":[76,160],"often":[77],"fails":[78],"capture":[80,110],"the":[81,111,120,155,162,172,208],"non-linear":[82],"imbalanced":[84],"characteristics":[85,112],"datasets":[87],"like":[88],"CIC-IDS-2018.":[89],"To":[90],"these":[92],"challenges,":[93],"we":[94],"propose":[95],"a":[96],"modified":[97],"LIME":[98],"perturbation":[99],"strategy":[100],"using":[101],"Weibull,":[102],"Gamma,":[103],"Beta,":[104],"Pareto":[106,169],"distributions":[107,167,199],"better":[109],"traffic":[115,205],"data.":[116],"Our":[117],"methodology":[118],"improves":[119],"stability":[121],"different":[123],"ML":[124],"trained":[126],"CIC-IDS":[128],"datasets,":[129],"enabling":[130],"more":[131,217],"meaningful":[132],"reliable":[134],"explanations":[135,213],"model":[137],"predictions.":[138],"proposed":[140],"modifications":[141],"allow":[142],"an":[144],"increase":[145],"explanation":[147,174],"fidelity":[148,175],"by":[149],"up":[150],"78%":[152],"compared":[153],"default":[156],"Gaussian":[157],"approach.":[158],"Pareto-based":[159],"provide":[161],"best":[163],"results.":[164],"Among":[165],"all":[166],"tested,":[168],"consistently":[170],"yielded":[171],"highest":[173],"stability,":[177],"particularly":[178],"K-NN":[180],"(R2":[181,189],"=":[182,185,190,193],"0.9971,":[183],"S":[184,192],"0.9907)":[186],"DT":[188],"0.9267,":[191],"0.9797).":[194],"This":[195],"indicates":[196],"that":[197],"heavy-tailed":[198],"fit":[200],"well":[201],"with":[202],"real-world":[203],"patterns,":[206],"reducing":[207],"variance":[209],"attribute":[211],"importance":[212],"making":[215],"them":[216],"robust.":[218]},"counts_by_year":[{"year":2026,"cited_by_count":6},{"year":2025,"cited_by_count":9}],"updated_date":"2026-06-17T08:01:34.144755","created_date":"2025-10-10T00:00:00"}
