{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,10]],"date-time":"2026-05-10T10:25:39Z","timestamp":1778408739833,"version":"3.51.4"},"publisher-location":"Cham","reference-count":106,"publisher":"Springer Nature Switzerland","isbn-type":[{"value":"9783031200649","type":"print"},{"value":"9783031200656","type":"electronic"}],"license":[{"start":{"date-parts":[[2022,1,1]],"date-time":"2022-01-01T00:00:00Z","timestamp":1640995200000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springer.com\/tdm"},{"start":{"date-parts":[[2022,1,1]],"date-time":"2022-01-01T00:00:00Z","timestamp":1640995200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2022]]},"DOI":"10.1007\/978-3-031-20065-6_16","type":"book-chapter","created":{"date-parts":[[2022,11,2]],"date-time":"2022-11-02T20:24:03Z","timestamp":1667420643000},"page":"262-282","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":4,"title":["Zero-Shot Attribute Attacks on\u00a0Fine-Grained Recognition Models"],"prefix":"10.1007","author":[{"given":"Nasim","family":"Shafiee","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Ehsan","family":"Elhamifar","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2022,11,3]]},"reference":[{"key":"16_CR1","doi-asserted-by":"crossref","unstructured":"Afifi, M., Brown, M.S.: What else can fool deep learning? Addressing color constancy errors on deep neural network performance. In: Proceedings of the IEEE\/CVF International Conference on Computer Vision, pp. 243\u2013252 (2019)","DOI":"10.1109\/ICCV.2019.00033"},{"key":"16_CR2","doi-asserted-by":"crossref","unstructured":"Ak, K.E., Kassim, A.A., Lim, J.H., Tham, J.Y.: Learning attribute representations with localization for flexible fashion search. In: IEEE Conference on Computer Vision and Pattern Recognition (2018)","DOI":"10.1109\/CVPR.2018.00804"},{"key":"16_CR3","doi-asserted-by":"publisher","first-page":"1425","DOI":"10.1109\/TPAMI.2015.2487986","volume":"38","author":"Z Akata","year":"2016","unstructured":"Akata, Z., Perronnin, F., Harchaoui, Z., Schmid, C.: Label-embedding for image classification. IEEE Trans. Pattern Anal. Mach. Intell. 38, 1425\u20131438 (2016)","journal-title":"IEEE Trans. Pattern Anal. Mach. Intell."},{"key":"16_CR4","doi-asserted-by":"crossref","unstructured":"Benz, P., Zhang, C., Imtiaz, T., Kweon, I.S.: Double targeted universal adversarial perturbations. In: Asian Conference on Computer Vision (2020)","DOI":"10.1007\/978-3-030-69538-5_18"},{"key":"16_CR5","doi-asserted-by":"crossref","unstructured":"Benz, P., Zhang, C., Karjauv, A., Kweon, I.S.: Universal adversarial training with class-wise perturbations. In: 2021 IEEE International Conference on Multimedia and Expo (ICME), pp. 1\u20136. IEEE (2021)","DOI":"10.1109\/ICME51207.2021.9428419"},{"key":"16_CR6","unstructured":"Bhattad, A., Chong, M.J., Liang, K., Li, B., Forsyth, D.A.: Unrestricted adversarial examples via semantic manipulation. arXiv preprint arXiv:1904.06347 (2019)"},{"key":"16_CR7","unstructured":"Bucher, M., Herbin, S., Jurie, F.: Generating visual representations for zero-shot classification. In: IEEE International Conference on Computer Vision Workshops (2017)"},{"key":"16_CR8","doi-asserted-by":"crossref","unstructured":"Carlini, N., Wagner, D.: Towards evaluating the robustness of neural networks. In: IEEE Symposium on Security and Privacy (2017)","DOI":"10.1109\/SP.2017.49"},{"key":"16_CR9","doi-asserted-by":"crossref","unstructured":"Chang, D., Pang, K., Zheng, Y., Ma, Z., Song, Y.Z., Guo, J.: Your \u201cflamingo\u201d is my \u201cbird\u201d: fine-grained, or not. In: Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition, pp. 11476\u201311485 (2021)","DOI":"10.1109\/CVPR46437.2021.01131"},{"key":"16_CR10","doi-asserted-by":"crossref","unstructured":"Changpinyo, S., Chao, W., Gong, B., Sha, F.: Synthesized classifiers for zero-shot learning. In: IEEE Conference on Computer Vision and Pattern Recognition (2016)","DOI":"10.1109\/CVPR.2016.575"},{"key":"16_CR11","doi-asserted-by":"crossref","unstructured":"Chen, P.Y., Sharma, Y., Zhang, H., Yi, J., Hsieh, C.J.: EAD: elastic-net attacks to deep neural networks via adversarial examples. In: AAAI Conference on Artificial Intelligence (2018)","DOI":"10.1609\/aaai.v32i1.11302"},{"key":"16_CR12","doi-asserted-by":"crossref","unstructured":"Choi, J., Larson, M., Li, X., Li, K., Friedland, G., Hanjalic, A.: The geo-privacy bonus of popular photo enhancements. In: Proceedings of the 2017 ACM on International Conference on Multimedia Retrieval, pp. 84\u201392 (2017)","DOI":"10.1145\/3078971.3080543"},{"key":"16_CR13","doi-asserted-by":"crossref","unstructured":"Croce, F., Hein, M.: Sparse and imperceivable adversarial attacks. In: Proceedings of the IEEE\/CVF International Conference on Computer Vision, pp. 4724\u20134732 (2019)","DOI":"10.1109\/ICCV.2019.00482"},{"key":"16_CR14","doi-asserted-by":"crossref","unstructured":"Ding, Y., Zhou, Y., Zhu, Y., Ye, Q., Jiao, J.: Selective sparse sampling for fine-grained image recognition. In: IEEE International Conference on Computer Vision (2019)","DOI":"10.1109\/ICCV.2019.00670"},{"key":"16_CR15","doi-asserted-by":"publisher","first-page":"2826","DOI":"10.1109\/TIP.2021.3055617","volume":"30","author":"Y Ding","year":"2021","unstructured":"Ding, Y., et al.: AP-CNN: weakly supervised attention pyramid convolutional neural network for fine-grained visual classification. IEEE Trans. Image Process. 30, 2826\u20132836 (2021)","journal-title":"IEEE Trans. Image Process."},{"key":"16_CR16","doi-asserted-by":"crossref","unstructured":"Dong, Y., et al.: Boosting adversarial attacks with momentum. In: IEEE Conference on Computer Vision and Pattern Recognition (2018)","DOI":"10.1109\/CVPR.2018.00957"},{"key":"16_CR17","doi-asserted-by":"crossref","unstructured":"Duan, R., Chen, Y., Niu, D., Yang, Y., Qin, A., He, Y.: AdvDrop: adversarial attack to DNNs by dropping information. In: Proceedings of the IEEE\/CVF International Conference on Computer Vision, pp. 7506\u20137515 (2021)","DOI":"10.1109\/ICCV48922.2021.00741"},{"key":"16_CR18","doi-asserted-by":"crossref","unstructured":"Dubey, A., Gupta, O., Guo, P., Raskar, R., Farrell, R., Naik, N.: Pairwise confusion for fine-grained visual classification. In: European Conference on Computer Vision (2018)","DOI":"10.1007\/978-3-030-01258-8_5"},{"key":"16_CR19","doi-asserted-by":"crossref","unstructured":"Elhoseiny, M., Zhu, Y., Zhang, H., Elgammal, A.M.: Link the head to the \u201cbeak\u201d: zero shot learning from noisy text description at part precision. In: IEEE Conference on Computer Vision and Pattern Recognition, pp. 6288\u20136297 (2017)","DOI":"10.1109\/CVPR.2017.666"},{"key":"16_CR20","unstructured":"Engstrom, L., Tran, B., Tsipras, D., Schmidt, L., Madry, A.: A rotation and a translation suffice: fooling CNNs with simple transformations (2018)"},{"key":"16_CR21","doi-asserted-by":"crossref","unstructured":"Felix, R., Kumar, B.G.V., Reid, I.D., Carneiro, G.: Multi-modal cycle-consistent generalized zero-shot learning. In: European Conference on Computer Vision (2018)","DOI":"10.1007\/978-3-030-01231-1_2"},{"key":"16_CR22","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"307","DOI":"10.1007\/978-3-030-58604-1_19","volume-title":"Computer Vision \u2013 ECCV 2020","author":"L Gao","year":"2020","unstructured":"Gao, L., Zhang, Q., Song, J., Liu, X., Shen, H.T.: Patch-wise attack for fooling deep neural network. In: Vedaldi, A., Bischof, H., Brox, T., Frahm, J.-M. (eds.) ECCV 2020. LNCS, vol. 12373, pp. 307\u2013322. Springer, Cham (2020). https:\/\/doi.org\/10.1007\/978-3-030-58604-1_19"},{"key":"16_CR23","doi-asserted-by":"crossref","unstructured":"Gao, Y., Beijbom, O., Zhang, N., Darrell, T.: Compact bilinear pooling. In: IEEE Conference on Computer Vision and Pattern Recognition (2016)","DOI":"10.1109\/CVPR.2016.41"},{"key":"16_CR24","unstructured":"Goodfellow, I.J., Shlens, J., Szegedy, C.: Explaining and harnessing adversarial examples. In: International Conference on Learning Representations (2015)"},{"key":"16_CR25","doi-asserted-by":"publisher","first-page":"142","DOI":"10.1016\/j.patrec.2021.03.033","volume":"147","author":"D Gragnaniello","year":"2021","unstructured":"Gragnaniello, D., Marra, F., Verdoliva, L., Poggi, G.: Perceptual quality-preserving black-box attack against deep learning image classifiers. Pattern Recogn. Lett. 147, 142\u2013149 (2021)","journal-title":"Pattern Recogn. Lett."},{"key":"16_CR26","doi-asserted-by":"crossref","unstructured":"Han, Z., Fu, Z., Chen, S., Yang, J.: Contrastive embedding for generalized zero-shot learning. In: Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition, pp. 2371\u20132381 (2021)","DOI":"10.1109\/CVPR46437.2021.00240"},{"key":"16_CR27","doi-asserted-by":"crossref","unstructured":"Hayes, J., Danezis, G.: Learning universal adversarial perturbations with generative models. In: IEEE Security and Privacy Workshops (2018)","DOI":"10.1109\/SPW.2018.00015"},{"key":"16_CR28","doi-asserted-by":"crossref","unstructured":"Hendrycks, D., Zhao, K., Basart, S., Steinhardt, J., Song, D.: Natural adversarial examples. In: Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition, pp. 15262\u201315271 (2021)","DOI":"10.1109\/CVPR46437.2021.01501"},{"key":"16_CR29","doi-asserted-by":"crossref","unstructured":"Hosseini, H., Poovendran, R.: Semantic adversarial examples. In: Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition Workshops, pp. 1614\u20131619 (2018)","DOI":"10.1109\/CVPRW.2018.00212"},{"key":"16_CR30","doi-asserted-by":"crossref","unstructured":"Huang, S., Wang, X., Tao, D.: Stochastic partial swap: Enhanced model generalization and interpretability for fine-grained recognition. In: Proceedings of the IEEE\/CVF International Conference on Computer Vision, pp. 620\u2013629 (2021)","DOI":"10.1109\/ICCV48922.2021.00066"},{"key":"16_CR31","unstructured":"Huynh, D., Elhamifar, E.: Compositional zero-shot learning via fine-grained dense feature composition. In: Neural Information Processing Systems (2020)"},{"key":"16_CR32","doi-asserted-by":"crossref","unstructured":"Huynh, D., Elhamifar, E.: Fine-grained generalized zero-shot learning via dense attribute-based attention. In: IEEE Conference on Computer Vision and Pattern Recognition (2020)","DOI":"10.1109\/CVPR42600.2020.00454"},{"key":"16_CR33","unstructured":"Huynh, D., Elhamifar, E.: Compositional fine-grained low-shot learning. arXiv preprint arXiv:2105.10438 (2021)"},{"key":"16_CR34","doi-asserted-by":"crossref","unstructured":"Ji, R., et al.: Attention convolutional binary neural tree for fine-grained visual categorization. In: Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition, pp. 10468\u201310477 (2020)","DOI":"10.1109\/CVPR42600.2020.01048"},{"key":"16_CR35","doi-asserted-by":"crossref","unstructured":"Jiang, H., Wang, R., Shan, S., Chen, X.: Transferable contrastive network for generalized zero-shot learning. In: IEEE International Conference on Computer Vision (2019)","DOI":"10.1109\/ICCV.2019.00986"},{"key":"16_CR36","doi-asserted-by":"crossref","unstructured":"Kariyappa, S., Prakash, A., Qureshi, M.K.: MAZE: data-free model stealing attack using zeroth-order gradient estimation. In: Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition, pp. 13814\u201313823 (2021)","DOI":"10.1109\/CVPR46437.2021.01360"},{"key":"16_CR37","doi-asserted-by":"crossref","unstructured":"Khrulkov, V., Oseledets, I.: Art of singular vectors and universal adversarial perturbations. In: IEEE Conference on Computer Vision and Pattern Recognition (2018)","DOI":"10.1109\/CVPR.2018.00893"},{"key":"16_CR38","doi-asserted-by":"crossref","unstructured":"Kong, S., Fowlkes, C.C.: Low-rank bilinear pooling for fine-grained classification. In: IEEE Conference on Computer Vision and Pattern Recognition (2017)","DOI":"10.1109\/CVPR.2017.743"},{"key":"16_CR39","unstructured":"Kurakin, A., Goodfellow, I., Bengio, S.: Adversarial examples in the physical world. arXiv preprint, arXiv:1607.02533 (2016)"},{"key":"16_CR40","unstructured":"Kurakin, A., Goodfellow, I., Bengio, S.: Adversarial machine learning at scale. In: International Conference on Learning Representations (2017)"},{"key":"16_CR41","unstructured":"Laidlaw, C., Feizi, S.: Functional adversarial attacks. arXiv preprint arXiv:1906.00001 (2019)"},{"key":"16_CR42","doi-asserted-by":"crossref","unstructured":"Lampert, C.H., Nickisch, H., Harmeling, S.: Learning to detect unseen object classes by between-class attribute transfer. In: IEEE Conference on Computer Vision and Pattern Recognition (2009)","DOI":"10.1109\/CVPR.2009.5206594"},{"key":"16_CR43","doi-asserted-by":"crossref","unstructured":"Lin, D., Shen, X., Lu, C., Jia, J.: Deep LAC: deep localization, alignment and classification for fine-grained recognition. In: IEEE Conference on Computer Vision and Pattern Recognition (2015)","DOI":"10.1109\/CVPR.2015.7298775"},{"key":"16_CR44","doi-asserted-by":"crossref","unstructured":"Lin, T.Y., RoyChowdhury, A., Maji, S.: Bilinear CNN models for fine-grained visual recognition. In: IEEE International Conference on Computer Vision (2015)","DOI":"10.1109\/ICCV.2015.170"},{"issue":"7","key":"16_CR45","doi-asserted-by":"publisher","first-page":"1785","DOI":"10.1109\/TMM.2019.2954747","volume":"22","author":"C Liu","year":"2019","unstructured":"Liu, C., Xie, H., Zha, Z., Yu, L., Chen, Z., Zhang, Y.: Bidirectional attention-recognition model for fine-grained object classification. IEEE Trans. Multimed. 22(7), 1785\u20131795 (2019)","journal-title":"IEEE Trans. Multimed."},{"key":"16_CR46","doi-asserted-by":"crossref","unstructured":"Liu, H., et al.: Universal adversarial perturbation via prior driven uncertainty approximation. In: International Conference on Computer Vision (2019)","DOI":"10.1109\/ICCV.2019.00303"},{"key":"16_CR47","unstructured":"Liu, S., Long, M., Wang, J., Jordan, M.I.: Generalized zero-shot learning with deep calibration network. In: Neural Information Processing Systems (2018)"},{"key":"16_CR48","doi-asserted-by":"crossref","unstructured":"Liu, Y., Guo, J., Cai, D., He, X.: Attribute attention for semantic disambiguation in zero-shot learning. In: IEEE International Conference on Computer Vision (2019)","DOI":"10.1109\/ICCV.2019.00680"},{"key":"16_CR49","doi-asserted-by":"crossref","unstructured":"Liu, Y., Zhang, W., Wang, J.: Zero-shot adversarial quantization. In: Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition, pp. 1512\u20131521 (2021)","DOI":"10.1109\/CVPR46437.2021.00156"},{"key":"16_CR50","doi-asserted-by":"crossref","unstructured":"Liu, Z., Luo, P., Qiu, S., Wang, X., Tang, X.: DeepFashion: powering robust clothes recognition and retrieval with rich annotations. In: IEEE Conference on Computer Vision and Pattern Recognition (2016)","DOI":"10.1109\/CVPR.2016.124"},{"key":"16_CR51","doi-asserted-by":"crossref","unstructured":"Liu, Z., Luo, P., Wang, X., Tang, X.: Deep learning face attributes in the wild. In: IEEE International Conference on Computer Vision (2015)","DOI":"10.1109\/ICCV.2015.425"},{"key":"16_CR52","doi-asserted-by":"crossref","unstructured":"Luo, B., Liu, Y., Wei, L., Xu, Q.: Towards imperceptible and robust adversarial example attacks against neural networks. In: Thirty-Second AAAI Conference on Artificial Intelligence (2018)","DOI":"10.1609\/aaai.v32i1.11499"},{"key":"16_CR53","doi-asserted-by":"crossref","unstructured":"Maho, T., Furon, T., Le Merrer, E.: SurFree: a fast surrogate-free black-box attack. In: Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition, pp. 10430\u201310439 (2021)","DOI":"10.1109\/CVPR46437.2021.01029"},{"key":"16_CR54","doi-asserted-by":"crossref","unstructured":"Mall, U., Hariharan, B., Bala, K.: Field-guide-inspired zero-shot learning. In: Proceedings of the IEEE\/CVF International Conference on Computer Vision, pp. 9546\u20139555 (2021)","DOI":"10.1109\/ICCV48922.2021.00941"},{"key":"16_CR55","doi-asserted-by":"crossref","unstructured":"Mao, C., Chiquier, M., Wang, H., Yang, J., Vondrick, C.: Adversarial attacks are reversible with natural supervision. arXiv preprint arXiv:2103.14222 (2021)","DOI":"10.1109\/ICCV48922.2021.00070"},{"key":"16_CR56","unstructured":"Metzen, J.H., Kumar, M.C., Brox, T., Fischer, V.: Universal adversarial perturbations against semantic image segmentation. In: International Conference on Computer Vision (2019)"},{"key":"16_CR57","doi-asserted-by":"crossref","unstructured":"Moosavi-Dezfooli, S., Fawzi, A., Fawzi, O., Frossard, P.: Universal adversarial perturbations. In: IEEE Conference on Computer Vision and Pattern Recognition (2017)","DOI":"10.1109\/CVPR.2017.17"},{"key":"16_CR58","doi-asserted-by":"crossref","unstructured":"Moosavi-Dezfooli, S., Fawzi, A., Frossard, P.: DeepFool: a simple and accurate method to fool deep neural networks. In: IEEE Conference on Computer Vision and Pattern Recognition (2016)","DOI":"10.1109\/CVPR.2016.282"},{"issue":"10","key":"16_CR59","doi-asserted-by":"publisher","first-page":"2452","DOI":"10.1109\/TPAMI.2018.2861800","volume":"41","author":"KR Mopuri","year":"2018","unstructured":"Mopuri, K.R., Ganeshan, A., Babu, R.V.: Generalizable data-free objective for crafting universal adversarial perturbations. IEEE Trans. Pattern Anal. Mach. Intell. 41(10), 2452\u20132465 (2018)","journal-title":"IEEE Trans. Pattern Anal. Mach. Intell."},{"key":"16_CR60","unstructured":"Mopuri, K.R., Garg, U., Babu, R.V.: Fast feature fool: a data independent approach to universal adversarial perturbations. arXiv preprint arXiv:1707.05572 (2017)"},{"key":"16_CR61","doi-asserted-by":"crossref","unstructured":"Nakka, K.K., Salzmann, M.: Towards robust fine-grained recognition by maximal separation of discriminative features. In: Asian Conference on Computer Vision (2020)","DOI":"10.1007\/978-3-030-69544-6_24"},{"key":"16_CR62","doi-asserted-by":"crossref","unstructured":"Narodytska, N., Kasiviswanathan, S.: Simple black-box adversarial attacks on deep neural networks. In: IEEE Conference on Computer Vision and Pattern Recognition Workshops (2017)","DOI":"10.1109\/CVPRW.2017.172"},{"key":"16_CR63","unstructured":"Norouzi, M., et al.: Zero-shot learning by convex combination of semantic embeddings. In: International Conference on Learning Representations (2014)"},{"key":"16_CR64","unstructured":"Park, S.M., Wei, K.A., Xiao, K., Li, J., Madry, A.: On distinctive properties of universal perturbations. arXiv preprint arXiv:2112.15329 (2021)"},{"key":"16_CR65","doi-asserted-by":"crossref","unstructured":"Parkhi, O.M., Vedaldi, A., Zisserman, A.: Deep face recognition. In: British Machine Vision Conference (2015)","DOI":"10.5244\/C.29.41"},{"key":"16_CR66","doi-asserted-by":"crossref","unstructured":"Patterson, G., Hays, J.: Sun attribute database: discovering, annotating, and recognizing scene attributes. In: IEEE Conference on Computer Vision and Pattern Recognition (2012)","DOI":"10.1109\/CVPR.2012.6247998"},{"key":"16_CR67","doi-asserted-by":"crossref","unstructured":"Pennington, J., Socher, R., Manning, C.D.: Glove: global vectors for word representation. In: Empirical Methods in Natural Language Processing (EMNLP) (2014)","DOI":"10.3115\/v1\/D14-1162"},{"key":"16_CR68","doi-asserted-by":"crossref","unstructured":"Pony, R., Naeh, I., Mannor, S.: Over-the-air adversarial flickering attacks against video recognition networks. In: IEEE Conference on Computer Vision and Pattern Recognition (2021)","DOI":"10.1109\/CVPR46437.2021.00058"},{"key":"16_CR69","doi-asserted-by":"crossref","unstructured":"Poursaeed, O., Katsman, I., Gao, B., Belongie, S.: Generative adversarial perturbations. In: Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition, pp. 4422\u20134431 (2018)","DOI":"10.1109\/CVPR.2018.00465"},{"key":"16_CR70","doi-asserted-by":"crossref","unstructured":"Rampini, A., Pestarini, F., Cosmo, L., Melzi, S., Rodola, E.: Universal spectral adversarial attacks for deformable shapes. In: Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition, pp. 3216\u20133226 (2021)","DOI":"10.1109\/CVPR46437.2021.00323"},{"key":"16_CR71","unstructured":"Romera-Paredes, B., Torr, P.H.: An embarrassingly simple approach to zero-shot learning. In: International Conference on Machine learning (2015)"},{"key":"16_CR72","doi-asserted-by":"crossref","unstructured":"Rony, J., Granger, E., Pedersoli, M., Ben Ayed, I.: Augmented Lagrangian adversarial attacks. In: Proceedings of the IEEE\/CVF International Conference on Computer Vision, pp. 7738\u20137747 (2021)","DOI":"10.1109\/ICCV48922.2021.00764"},{"key":"16_CR73","doi-asserted-by":"crossref","unstructured":"Rony, J., Hafemann, L.G., Oliveira, L.S., Ayed, I.B., Sabourin, R., Granger, E.: Decoupling direction and norm for efficient gradient-based l2 adversarial attacks and defenses. In: Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition, pp. 4322\u20134330 (2019)","DOI":"10.1109\/CVPR.2019.00445"},{"key":"16_CR74","doi-asserted-by":"crossref","unstructured":"Sayles, A., Hooda, A., Gupta, M., Chatterjee, R., Fernandes, E.: Invisible perturbations: physical adversarial examples exploiting the rolling shutter effect. In: Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition, pp. 14666\u201314675 (2021)","DOI":"10.1109\/CVPR46437.2021.01443"},{"key":"16_CR75","doi-asserted-by":"crossref","unstructured":"Sch\u00f6nfeld, E., Ebrahimi, S., Sinha, S., Darrell, T., Akata, Z.: Generalized zero- and few-shot learning via aligned variational autoencoders. In: IEEE Conference on Computer Vision and Pattern Recognition (2019)","DOI":"10.1109\/CVPR.2019.00844"},{"key":"16_CR76","unstructured":"Skorokhodov, I., Elhoseiny, M.: Class normalization for (continual)? Generalized zero-shot learning. arXiv preprint arXiv:2006.11328 (2020)"},{"key":"16_CR77","doi-asserted-by":"crossref","unstructured":"Sun, M., Yuan, Y., Zhou, F., Ding, E.: Multi-attention multi-class constraint for fine-grained image recognition. In: European Conference on Computer Vision (2018)","DOI":"10.1007\/978-3-030-01270-0_49"},{"key":"16_CR78","unstructured":"Szegedy, C., et al.: Intriguing properties of neural networks. In: International Conference on Learning Representations (2014)"},{"key":"16_CR79","doi-asserted-by":"crossref","unstructured":"Wang, W., Xu, Y., Shen, J., Zhu, S.C.: Attentive fashion grammar network for fashion landmark detection and clothing category classification. In: IEEE Conference on Computer Vision and Pattern Recognition (2018)","DOI":"10.1109\/CVPR.2018.00449"},{"key":"16_CR80","doi-asserted-by":"crossref","unstructured":"Wang, X., Lin, S., Zhang, H., Zhu, Y., Zhang, Q.: Interpreting attributions and interactions of adversarial attacks. In: Proceedings of the IEEE\/CVF International Conference on Computer Vision, pp. 1095\u20131104 (2021)","DOI":"10.1109\/ICCV48922.2021.00113"},{"key":"16_CR81","doi-asserted-by":"crossref","unstructured":"Wang, X., Zhang, Z., Wu, B., Shen, F., Lu, G.: Prototype-supervised adversarial network for targeted attack of deep hashing. In: Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition, pp. 16357\u201316366 (2021)","DOI":"10.1109\/CVPR46437.2021.01609"},{"issue":"4","key":"16_CR82","doi-asserted-by":"publisher","first-page":"600","DOI":"10.1109\/TIP.2003.819861","volume":"13","author":"Z Wang","year":"2004","unstructured":"Wang, Z., Bovik, A.C., Sheikh, H.R., Simoncelli, E.P.: Image quality assessment: from error visibility to structural similarity. IEEE Trans. Image Process. 13(4), 600\u2013612 (2004)","journal-title":"IEEE Trans. Image Process."},{"key":"16_CR83","unstructured":"Welinder, P., et al.: Caltech-UCSD Birds 200. Technical report. CNS-TR-2010-001, California Institute of Technology (2010)"},{"key":"16_CR84","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"499","DOI":"10.1007\/978-3-319-46478-7_31","volume-title":"Computer Vision \u2013 ECCV 2016","author":"Y Wen","year":"2016","unstructured":"Wen, Y., Zhang, K., Li, Z., Qiao, Yu.: A discriminative feature learning approach for deep face recognition. In: Leibe, B., Matas, J., Sebe, N., Welling, M. (eds.) ECCV 2016. LNCS, vol. 9911, pp. 499\u2013515. Springer, Cham (2016). https:\/\/doi.org\/10.1007\/978-3-319-46478-7_31"},{"key":"16_CR85","unstructured":"Wong, E., Schmidt, F., Kolter, Z.: Wasserstein adversarial examples via projected sinkhorn iterations. In: International Conference on Machine Learning, pp. 6808\u20136817. PMLR (2019)"},{"key":"16_CR86","doi-asserted-by":"crossref","unstructured":"Xian, Y., Lorenz, T., Schiele, B., Akata, Z.: Feature generating networks for zero-shot learning. In: 2018 IEEE\/CVF Conference on Computer Vision and Pattern Recognition, pp. 5542\u20135551 (2018)","DOI":"10.1109\/CVPR.2018.00581"},{"key":"16_CR87","doi-asserted-by":"crossref","unstructured":"Xian, Y., Schiele, B., Akata, Z.: Zero-shot learning - the good, the bad and the ugly. In: IEEE Conference on Computer Vision and Pattern Recognition (2017)","DOI":"10.1109\/CVPR.2017.328"},{"key":"16_CR88","doi-asserted-by":"crossref","unstructured":"Xian, Y., Sharma, S., Schiele, B., Akata, Z.: F-VAEGAN-D2: a feature generating framework for any-shot learning. In: IEEE Conference on Computer Vision and Pattern Recognition (2019)","DOI":"10.1109\/CVPR.2019.01052"},{"key":"16_CR89","doi-asserted-by":"publisher","first-page":"2251","DOI":"10.1109\/TPAMI.2018.2857768","volume":"41","author":"Y Xian","year":"2017","unstructured":"Xian, Y., Lampert, C.H., Schiele, B., Akata, Z.: Zero-shot learning-a comprehensive evaluation of the good, the bad and the ugly. IEEE Trans. Pattern Anal. Mach. Intell. 41, 2251\u20132265 (2017)","journal-title":"IEEE Trans. Pattern Anal. Mach. Intell."},{"key":"16_CR90","doi-asserted-by":"crossref","unstructured":"Xiao, C., Li, B., Zhu, J.Y., He, W., Liu, M., Song, D.: Generating adversarial examples with adversarial networks. In: Proceedings of the 27th International Joint Conference on Artificial Intelligence, pp. 3905\u20133911 (2018)","DOI":"10.24963\/ijcai.2018\/543"},{"key":"16_CR91","unstructured":"Xiao, C., Zhu, J.Y., Li, B., He, W., Liu, M., Song, D.: Spatially transformed adversarial examples. arXiv preprint arXiv:1801.02612 (2018)"},{"issue":"1","key":"16_CR92","doi-asserted-by":"publisher","first-page":"3","DOI":"10.1007\/s11263-014-0748-y","volume":"119","author":"J Xiao","year":"2016","unstructured":"Xiao, J., Ehinger, K.A., Hays, J., Torralba, A., Oliva, A.: Sun database: exploring a large collection of scene categories. Int. J. Comput. Vis. 119(1), 3\u201322 (2016)","journal-title":"Int. J. Comput. Vis."},{"key":"16_CR93","doi-asserted-by":"crossref","unstructured":"Xie, C., et al.: Improving transferability of adversarial examples with input diversity. In: Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition, pp. 2730\u20132739 (2019)","DOI":"10.1109\/CVPR.2019.00284"},{"key":"16_CR94","unstructured":"Xu, K., et al.: Structured adversarial attacks: towards general implementation and better interpretability. In: International Conference on Learning Representations (2019)"},{"key":"16_CR95","doi-asserted-by":"crossref","unstructured":"Yue, Z., Wang, T., Sun, Q., Hua, X.S., Zhang, H.: Counterfactual zero-shot and open-set visual recognition. In: Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition, pp. 15404\u201315414 (2021)","DOI":"10.1109\/CVPR46437.2021.01515"},{"key":"16_CR96","doi-asserted-by":"crossref","unstructured":"Zhang, C., Benz, P., Imtiaz, T., Kweon, I.S.: CD-UAP: class discriminative universal adversarial perturbation. In: Proceedings of the AAAI Conference on Artificial Intelligence, vol. 34, pp. 6754\u20136761 (2020)","DOI":"10.1609\/aaai.v34i04.6154"},{"key":"16_CR97","doi-asserted-by":"crossref","unstructured":"Zhang, C., Benz, P., Lin, C., Karjauv, A., Wu, J., Kweon, I.S.: A survey on universal adversarial attack. arXiv preprint arXiv:2103.01498 (2021)","DOI":"10.24963\/ijcai.2021\/635"},{"issue":"1","key":"16_CR98","doi-asserted-by":"crossref","first-page":"1","DOI":"10.1186\/s13635-020-0101-7","volume":"2020","author":"H Zhang","year":"2020","unstructured":"Zhang, H., Avrithis, Y., Furon, T., Amsaleg, L.: Smooth adversarial examples. EURASIP J. Inf. Secur. 2020(1), 1\u201312 (2020)","journal-title":"EURASIP J. Inf. Secur."},{"key":"16_CR99","doi-asserted-by":"crossref","unstructured":"Zhang, L., Huang, S., Liu, W.: Intra-class part swapping for fine-grained image classification. In: Proceedings of the IEEE\/CVF Winter Conference on Applications of Computer Vision, pp. 3209\u20133218 (2021)","DOI":"10.1109\/WACV48630.2021.00325"},{"key":"16_CR100","doi-asserted-by":"crossref","unstructured":"Zhang, L., Huang, S., Liu, W., Tao, D.: Learning a mixture of granularity-specific experts for fine-grained categorization. In: IEEE International Conference on Computer Vision (2019)","DOI":"10.1109\/ICCV.2019.00842"},{"key":"16_CR101","doi-asserted-by":"crossref","unstructured":"Zhang, Z., Saligrama, V.: Zero-shot learning via joint latent similarity embedding. In: IEEE Conference on Computer Vision and Pattern Recognition (2016)","DOI":"10.1109\/CVPR.2016.649"},{"key":"16_CR102","doi-asserted-by":"crossref","unstructured":"Zhao, X., et al.: Recognizing part attributes with insufficient data. In: IEEE International Conference on Computer Vision (2019)","DOI":"10.1109\/ICCV.2019.00044"},{"key":"16_CR103","doi-asserted-by":"crossref","unstructured":"Zhao, Y., Yan, K., Huang, F., Li, J.: Graph-based high-order relation discovery for fine-grained recognition. In: Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition, pp. 15079\u201315088 (2021)","DOI":"10.1109\/CVPR46437.2021.01483"},{"key":"16_CR104","doi-asserted-by":"crossref","unstructured":"Zhao, Z., Liu, Z., Larson, M.: Towards large yet imperceptible adversarial image perturbations with perceptual color distance. In: Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition, pp. 1039\u20131048 (2020)","DOI":"10.1109\/CVPR42600.2020.00112"},{"key":"16_CR105","doi-asserted-by":"crossref","unstructured":"Zheng, H., Fu, J., Mei, T., Luo, J.: Learning multi-attention convolutional neural network for fine-grained image recognition. In: IEEE International Conference on Computer Vision (2017)","DOI":"10.1109\/ICCV.2017.557"},{"key":"16_CR106","doi-asserted-by":"crossref","unstructured":"Zheng, H., Fu, J., Zha, Z.J., Luo, J.: Looking for the devil in the details: learning trilinear attention sampling network for fine-grained image recognition. In: IEEE Conference on Computer Vision and Pattern Recognition (2019)","DOI":"10.1109\/CVPR.2019.00515"}],"container-title":["Lecture Notes in Computer Science","Computer Vision \u2013 ECCV 2022"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-031-20065-6_16","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,10,7]],"date-time":"2024-10-07T03:38:36Z","timestamp":1728272316000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-031-20065-6_16"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2022]]},"ISBN":["9783031200649","9783031200656"],"references-count":106,"URL":"https:\/\/doi.org\/10.1007\/978-3-031-20065-6_16","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"value":"0302-9743","type":"print"},{"value":"1611-3349","type":"electronic"}],"subject":[],"published":{"date-parts":[[2022]]},"assertion":[{"value":"3 November 2022","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"ECCV","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"European Conference on Computer Vision","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Tel Aviv","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Israel","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2022","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"23 October 2022","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"27 October 2022","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"17","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"eccv2022","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"https:\/\/eccv2022.ecva.net\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Double-blind","order":1,"name":"type","label":"Type","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"CMT","order":2,"name":"conference_management_system","label":"Conference Management System","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"5804","order":3,"name":"number_of_submissions_sent_for_review","label":"Number of Submissions Sent for Review","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"1645","order":4,"name":"number_of_full_papers_accepted","label":"Number of Full Papers Accepted","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"0","order":5,"name":"number_of_short_papers_accepted","label":"Number of Short Papers Accepted","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"28% - The value is computed by the equation \"Number of Full Papers Accepted \/ Number of Submissions Sent for Review * 100\" and then rounded to a whole number.","order":6,"name":"acceptance_rate_of_full_papers","label":"Acceptance Rate of Full Papers","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"3.21","order":7,"name":"average_number_of_reviews_per_paper","label":"Average Number of Reviews per Paper","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"3.91","order":8,"name":"average_number_of_papers_per_reviewer","label":"Average Number of Papers per Reviewer","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"Yes","order":9,"name":"external_reviewers_involved","label":"External Reviewers Involved","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}}]}}