{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,2,24]],"date-time":"2026-02-24T08:08:34Z","timestamp":1771920514507,"version":"3.50.1"},"publisher-location":"Cham","reference-count":29,"publisher":"Springer International Publishing","isbn-type":[{"value":"9783030305079","type":"print"},{"value":"9783030305086","type":"electronic"}],"license":[{"start":{"date-parts":[[2019,1,1]],"date-time":"2019-01-01T00:00:00Z","timestamp":1546300800000},"content-version":"tdm","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2019]]},"DOI":"10.1007\/978-3-030-30508-6_54","type":"book-chapter","created":{"date-parts":[[2019,9,8]],"date-time":"2019-09-08T23:02:47Z","timestamp":1567983767000},"page":"685-696","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":25,"title":["Evaluating Defensive Distillation for Defending Text Processing Neural Networks Against Adversarial Examples"],"prefix":"10.1007","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-6845-9825","authenticated-orcid":false,"given":"Marcus","family":"Soll","sequence":"first","affiliation":[]},{"ORCID":"https:\/\/orcid.org\/0000-0003-1354-1562","authenticated-orcid":false,"given":"Tobias","family":"Hinz","sequence":"additional","affiliation":[]},{"ORCID":"https:\/\/orcid.org\/0000-0002-0589-6585","authenticated-orcid":false,"given":"Sven","family":"Magg","sequence":"additional","affiliation":[]},{"ORCID":"https:\/\/orcid.org\/0000-0003-1343-4775","authenticated-orcid":false,"given":"Stefan","family":"Wermter","sequence":"additional","affiliation":[]}],"member":"297","published-online":{"date-parts":[[2019,9,9]]},"reference":[{"key":"54_CR1","unstructured":"AG\u2019s corpus of news articles. http:\/\/www.di.unipi.it\/~gulli\/AG_corpus_of_news_articles.html . Accessed 27 Oct 2017"},{"key":"54_CR2","doi-asserted-by":"publisher","first-page":"14410","DOI":"10.1109\/ACCESS.2018.2807385","volume":"6","author":"N Akhtar","year":"2018","unstructured":"Akhtar, N., Mian, A.: Threat of adversarial attacks on deep learning in computer vision: a survey. IEEE Access 6, 14410\u201314430 (2018). https:\/\/doi.org\/10.1109\/ACCESS.2018.2807385","journal-title":"IEEE Access"},{"key":"54_CR3","unstructured":"Brendel, W., Bethge, M.: Comment on \u201cbiologically inspired protection of deep networks from adversarial attacks\u201d. CoRR abs\/1704.01547 (2017)"},{"key":"54_CR4","unstructured":"Carlini, N., Wagner, D.A.: Defensive distillation is not robust to adversarial examples. CoRR abs\/1607.04311 (2016)"},{"key":"54_CR5","volume-title":"WordNet: An Electronic Lexical Database","year":"1998","unstructured":"Fellbaum, C. (ed.): WordNet: An Electronic Lexical Database. MIT Press, Cambridge (1998)"},{"key":"54_CR6","unstructured":"Goodfellow, I.J., Shlens, J., Szegedy, C.: Explaining and harnessing adversarial examples. In: International Conference on Learning Representations (2015)"},{"key":"54_CR7","unstructured":"Hinton, G., Vinyals, O., Dean, J.: Distilling the knowledge in a neural network. In: NIPS Deep Learning Workshop (2014)"},{"key":"54_CR8","doi-asserted-by":"publisher","unstructured":"Jia, R., Liang, P.: Adversarial examples for evaluating reading comprehension systems. In: Proceedings of the Conference on Empirical Methods in Natural Language Processing, pp. 2021\u20132031 (2017). https:\/\/doi.org\/10.18653\/v1\/D17-1215","DOI":"10.18653\/v1\/D17-1215"},{"key":"54_CR9","doi-asserted-by":"crossref","unstructured":"Kim, Y.: Convolutional neural networks for sentence classification. In: Proceedings of the Conference on Empirical Methods in Natural Language Processing, pp. 1746\u20131751 (2014)","DOI":"10.3115\/v1\/D14-1181"},{"key":"54_CR10","unstructured":"Leskovec, J., Krevl, A.: SNAP datasets: stanford large network dataset collection. http:\/\/snap.stanford.edu\/data (2014)"},{"key":"54_CR11","doi-asserted-by":"publisher","unstructured":"Liang, B., Li, H., Su, M., Bian, P., Li, X., Shi, W.: Deep text classification can be fooled. In: Proceedings of the International Joint Conference on Artificial Intelligence, pp. 4208\u20134215 (2018). https:\/\/doi.org\/10.24963\/ijcai.2018\/585","DOI":"10.24963\/ijcai.2018\/585"},{"key":"54_CR12","doi-asserted-by":"publisher","unstructured":"Lu, J., Issaranon, T., Forsyth, D.: SafetyNet: detecting and rejecting adversarial examples robustly. In: IEEE International Conference on Computer Vision, pp. 446\u2013454 (2017). https:\/\/doi.org\/10.1109\/ICCV.2017.56","DOI":"10.1109\/ICCV.2017.56"},{"key":"54_CR13","doi-asserted-by":"publisher","unstructured":"McAuley, J.J., Leskovec, J.: From amateurs to connoisseurs: modeling the evolution of user expertise through online reviews. In: Proceedings of the International Conference on World Wide Web, pp. 897\u2013908 (2013). https:\/\/doi.org\/10.1145\/2488388.2488466","DOI":"10.1145\/2488388.2488466"},{"key":"54_CR14","unstructured":"Mikolov, T., Chen, K., Corrado, G., Dean, J.: Efficient estimation of word representations in vector space. In: International Conference on Learning Representations (2013)"},{"key":"54_CR15","unstructured":"Mikolov, T., Sutskever, I., Chen, K., Corrado, G.S., Dean, J.: Distributed representations of words and phrases and their compositionality. In: Advances in Neural Information Processing Systems, pp. 3111\u20133119 (2013)"},{"key":"54_CR16","unstructured":"Mitton, R.: Corpora of misspellings for download. http:\/\/www.dcs.bbk.ac.uk\/~ROGER\/corpora.html . Accessed 10 Nov 2017"},{"key":"54_CR17","unstructured":"Nayebi, A., Ganguli, S.: Biologically inspired protection of deep networks from adversarial attacks. CoRR abs\/1703.09202 (2017)"},{"key":"54_CR18","doi-asserted-by":"publisher","unstructured":"Papernot, N., McDaniel, P., Wu, X., Jha, S., Swami, A.: Distillation as a defense to adversarial perturbations against deep neural networks. In: IEEE Symposium on Security and Privacy, pp. 582\u2013597 (2016). https:\/\/doi.org\/10.1109\/SP.2016.41","DOI":"10.1109\/SP.2016.41"},{"key":"54_CR19","unstructured":"Papernot, N., McDaniel, P.D.: Extending defensive distillation. CoRR abs\/1705.05264 (2017)"},{"key":"54_CR20","unstructured":"Papernot, N., McDaniel, P.D., Sinha, A., Wellman, M.P.: Towards the science of security and privacy in machine learning. CoRR abs\/1611.03814 (2016)"},{"key":"54_CR21","doi-asserted-by":"publisher","unstructured":"Rozsa, A., Gunther, M., Boult, T.E.: Towards robust deep neural networks with bang. In: IEEE Winter Conference on Applications of Computer Vision, pp. 803\u2013811 (2018). https:\/\/doi.org\/10.1109\/WACV.2018.00093","DOI":"10.1109\/WACV.2018.00093"},{"key":"54_CR22","unstructured":"Samanta, S., Mehta, S.: Towards crafting text adversarial samples. CoRR abs\/1707.02812 (2017)"},{"key":"54_CR23","doi-asserted-by":"publisher","DOI":"10.1109\/TEVC.2019.2890858","author":"J Su","year":"2019","unstructured":"Su, J., Vargas, D.V., Sakurai, K.: One pixel attack for fooling deep neural networks. IEEE Trans. Evol. Comput. (2019). https:\/\/doi.org\/10.1109\/TEVC.2019.2890858","journal-title":"IEEE Trans. Evol. Comput."},{"key":"54_CR24","unstructured":"Szegedy, C., et al.: Intriguing properties of neural networks. In: International Conference on Learning Representations (2014)"},{"key":"54_CR25","doi-asserted-by":"crossref","unstructured":"Tram\u00e8r, F., Kurakin, A., Papernot, N., Boneh, D., McDaniel, P.: Ensemble adversarial training: attacks and defenses. In: International Conference on Learning Representations (2018)","DOI":"10.1145\/3319535.3354222"},{"key":"54_CR26","unstructured":"Tram\u00e8r, F., Papernot, N., Goodfellow, I., Boneh, D., McDaniel, P.: The space of transferable adversarial examples. CoRR abs\/1704.03453 (2017)"},{"key":"54_CR27","doi-asserted-by":"crossref","unstructured":"Zhang, W.E., Sheng, Q.Z., Alhazmi, A.A.F., Li, C.: Generating textual adversarial examples for deep learning models: a survey. CoRR abs\/1901.06796 (2019)","DOI":"10.18653\/v1\/P19-1559"},{"key":"54_CR28","unstructured":"Zhang, X., Zhao, J., LeCun, Y.: Character-level convolutional networks for text classification. In: Advances in Neural Information Processing Systems, pp. 649\u2013657 (2015)"},{"key":"54_CR29","unstructured":"Zhang, Y., Wallace, B.: A sensitivity analysis of (and practitioners\u2019 guide to) convolutional neural networks for sentence classification. In: Proceedings of the International Joint Conference on Natural Language Processing, pp. 253\u2013263 (2017)"}],"container-title":["Lecture Notes in Computer Science","Artificial Neural Networks and Machine Learning \u2013 ICANN 2019: Image Processing"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-030-30508-6_54","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,9,27]],"date-time":"2022-09-27T21:38:07Z","timestamp":1664314687000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-030-30508-6_54"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2019]]},"ISBN":["9783030305079","9783030305086"],"references-count":29,"URL":"https:\/\/doi.org\/10.1007\/978-3-030-30508-6_54","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"value":"0302-9743","type":"print"},{"value":"1611-3349","type":"electronic"}],"subject":[],"published":{"date-parts":[[2019]]},"assertion":[{"value":"9 September 2019","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"ICANN","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"International Conference on Artificial Neural Networks","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Munich","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Germany","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2019","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"17 September 2019","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"19 September 2019","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"28","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"icann2019","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"https:\/\/e-nns.org\/icann2019\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}