Multi-viewpoint evaluation of explanation quality in X-IDS using aggregated and consensus metrics
Multi-viewpoint evaluation of explanation quality in X-IDS using aggregated and consensus metrics
Explainable intrusion detection systems (X-IDS) typically provide a set of explanations for each alert, while provided explanations may not be sufficient for security analysts to make time-critical decisions. Existing evaluation methods only consider such cases with a single set of explanations, as a result, limiting the scope of evaluation. This work expands a set of explanation evaluation metrics, our earlier work, to extend the scope of evaluation covering X-IDS providing multiple sets of explanations. Additional intermediate metrics are proposed to capture characteristics of multiple sets of explanations so the evaluation metrics can be computed for the multiple sets of explanations. The experimental results show the proposed metrics reveal more insights.
97-99
Alquliti, Mohammed Homaid
f50e6e5b-b4c1-4b0e-8dbc-cbb484a1d7d3
Karafili, Erisa
f5efa31c-22b8-443e-8107-e488bd28918e
Kang, Boojoong
cfccdccd-f57f-448e-9f3c-1c51134c48dd
Alquliti, Mohammed Homaid
f50e6e5b-b4c1-4b0e-8dbc-cbb484a1d7d3
Karafili, Erisa
f5efa31c-22b8-443e-8107-e488bd28918e
Kang, Boojoong
cfccdccd-f57f-448e-9f3c-1c51134c48dd
Alquliti, Mohammed Homaid, Karafili, Erisa and Kang, Boojoong
(2025)
Multi-viewpoint evaluation of explanation quality in X-IDS using aggregated and consensus metrics.
ACM SIGCOMM 2025 Posters and Demos, , Porto, Portugal.
08 - 11 Sep 2025.
.
(doi:10.1145/3744969.3748440).
Record type:
Conference or Workshop Item
(Poster)
Abstract
Explainable intrusion detection systems (X-IDS) typically provide a set of explanations for each alert, while provided explanations may not be sufficient for security analysts to make time-critical decisions. Existing evaluation methods only consider such cases with a single set of explanations, as a result, limiting the scope of evaluation. This work expands a set of explanation evaluation metrics, our earlier work, to extend the scope of evaluation covering X-IDS providing multiple sets of explanations. Additional intermediate metrics are proposed to capture characteristics of multiple sets of explanations so the evaluation metrics can be computed for the multiple sets of explanations. The experimental results show the proposed metrics reveal more insights.
Text
3744969.3748440
- Version of Record
More information
e-pub ahead of print date: 10 September 2025
Venue - Dates:
ACM SIGCOMM 2025 Posters and Demos, , Porto, Portugal, 2025-09-08 - 2025-09-11
Identifiers
Local EPrints ID: 510427
URI: http://eprints.soton.ac.uk/id/eprint/510427
PURE UUID: fb905c7b-8cfa-4916-9e9e-f93c4578ff41
Catalogue record
Date deposited: 31 Mar 2026 16:37
Last modified: 01 Apr 2026 02:02
Export record
Altmetrics
Contributors
Author:
Mohammed Homaid Alquliti
Author:
Erisa Karafili
Author:
Boojoong Kang
Download statistics
Downloads from ePrints over the past year. Other digital versions may also be available to download e.g. from the publisher's website.
View more statistics