{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,11,20]],"date-time":"2025-11-20T19:00:54Z","timestamp":1763665254432,"version":"3.40.3"},"publisher-location":"Cham","reference-count":49,"publisher":"Springer Nature Switzerland","isbn-type":[{"type":"print","value":"9783031377440"},{"type":"electronic","value":"9783031377457"}],"license":[{"start":{"date-parts":[[2023,1,1]],"date-time":"2023-01-01T00:00:00Z","timestamp":1672531200000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2023,1,1]],"date-time":"2023-01-01T00:00:00Z","timestamp":1672531200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2023]]},"DOI":"10.1007\/978-3-031-37745-7_6","type":"book-chapter","created":{"date-parts":[[2023,7,28]],"date-time":"2023-07-28T21:01:48Z","timestamp":1690578108000},"page":"70-84","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":4,"title":["Making Generated Images Hard to\u00a0Spot: A Transferable Attack on\u00a0Synthetic Image\u00a0Detectors"],"prefix":"10.1007","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-4328-4846","authenticated-orcid":false,"given":"Xinwei","family":"Zhao","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-3986-4039","authenticated-orcid":false,"given":"Matthew C.","family":"Stamm","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2023,7,29]]},"reference":[{"doi-asserted-by":"crossref","unstructured":"Barni, M., Kallas, K., Nowroozi, E., Tondi, B.: On the transferability of adversarial examples against CNN-based image forensics. In: 2019 IEEE International Conference on Acoustics, Speech and Signal Processing, pp. 8286\u20138290 (2019)","key":"6_CR1","DOI":"10.1109\/ICASSP.2019.8683772"},{"doi-asserted-by":"crossref","unstructured":"Barni, M., Stamm, M.C., Tondi, B.: Adversarial multimedia forensics: overview and challenges ahead. In: 2018 26th European Signal Processing Conference (EUSIPCO), pp. 962\u2013966. IEEE (2018)","key":"6_CR2","DOI":"10.23919\/EUSIPCO.2018.8553305"},{"issue":"11","key":"6_CR3","doi-asserted-by":"publisher","first-page":"2691","DOI":"10.1109\/TIFS.2018.2825953","volume":"13","author":"B Bayar","year":"2018","unstructured":"Bayar, B., Stamm, M.C.: Constrained convolutional neural networks: a new approach towards general purpose image manipulation detection. IEEE Trans. Inf. Forensics Secur. 13(11), 2691\u20132706 (2018)","journal-title":"IEEE Trans. Inf. Forensics Secur."},{"issue":"5","key":"6_CR4","doi-asserted-by":"publisher","first-page":"1181","DOI":"10.1109\/TIFS.2018.2871749","volume":"14","author":"M Boroumand","year":"2018","unstructured":"Boroumand, M., Chen, M., Fridrich, J.: Deep residual network for steganalysis of digital images. IEEE Trans. Inf. Forensics Secur. 14(5), 1181\u20131193 (2018)","journal-title":"IEEE Trans. Inf. Forensics Secur."},{"key":"6_CR5","doi-asserted-by":"publisher","first-page":"1","DOI":"10.2352\/ISSN.2470-1173.2018.07.MWSF-213","volume":"30","author":"M Boroumand","year":"2018","unstructured":"Boroumand, M., Fridrich, J.: Deep learning for detecting processing history of images. Electron. Imaging 30, 1\u20139 (2018)","journal-title":"Electron. Imaging"},{"unstructured":"Brock, A., Donahue, J., Simonyan, K.: Large scale GAN training for high fidelity natural image synthesis. arXiv preprint arXiv:1809.11096 (2018)","key":"6_CR6"},{"doi-asserted-by":"publisher","unstructured":"Carlini, N., Wagner, D.: Towards evaluating the robustness of neural networks. In: 2017 IEEE Symposium on Security and Privacy, pp. 39\u201357, May 2017. https:\/\/doi.org\/10.1109\/SP.2017.49","key":"6_CR7","DOI":"10.1109\/SP.2017.49"},{"doi-asserted-by":"crossref","unstructured":"Carlini, N., Farid, H.: Evading deepfake-image detectors with white-and black-box attacks. In: Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition Workshops, pp. 658\u2013659 (2020)","key":"6_CR8","DOI":"10.1109\/CVPRW50498.2020.00337"},{"doi-asserted-by":"crossref","unstructured":"Chen, C., Zhao, X., Stamm, M.C.: MislGAN: an anti-forensic camera model falsification framework using a generative adversarial network. In: 2018 25th IEEE International Conference on Image Processing (ICIP), pp. 535\u2013539. IEEE (2018)","key":"6_CR9","DOI":"10.1109\/ICIP.2018.8451503"},{"doi-asserted-by":"crossref","unstructured":"Choi, Y., Choi, M., Kim, M., Ha, J.W., Kim, S., Choo, J.: StarGAN: unified generative adversarial networks for multi-domain image-to-image translation. In: Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition (2018)","key":"6_CR10","DOI":"10.1109\/CVPR.2018.00916"},{"unstructured":"Choi, Y., Uh, Y., Yoo, J., Ha, J.W.: Pre-trained stargan-v2 (2019). https:\/\/github.com\/clovaai\/stargan-v2","key":"6_CR11"},{"doi-asserted-by":"crossref","unstructured":"Choi, Y., Uh, Y., Yoo, J., Ha, J.W.: StarGAN v2: diverse image synthesis for multiple domains. In: Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition (2020)","key":"6_CR12","DOI":"10.1109\/CVPR42600.2020.00821"},{"doi-asserted-by":"crossref","unstructured":"Chollet, F.: Xception: deep learning with depthwise separable convolutions. In: Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition, pp. 1251\u20131258 (2017)","key":"6_CR13","DOI":"10.1109\/CVPR.2017.195"},{"unstructured":"Cozzolino, D., Thies, J., R\u00f6ssler, A., Nie\u00dfner, M., Verdoliva, L.: SPOC: Spoofing camera fingerprints. arXiv preprint arXiv:1911.12069 (2019)","key":"6_CR14"},{"unstructured":"Cozzolino, D., Thies, J., R\u00f6ssler, A., Riess, C., Nie\u00dfner, M., Verdoliva, L.: Forensictransfer: Weakly-supervised domain adaptation for forgery detection. arXiv (2018). https:\/\/justusthies.github.io\/posts\/forensictransfer\/","key":"6_CR15"},{"unstructured":"Glorot, X., Bengio, Y.: Understanding the difficulty of training deep feedforward neural networks. In: Teh, Y.W., Titterington, M. (eds.) Proceedings of the Thirteenth International Conference on Artificial Intelligence and Statistics. Proceedings of Machine Learning Research, vol. 9, pp. 249\u2013256. PMLR, Chia Laguna Resort, Sardinia, Italy, 13\u201315 May 2010. https:\/\/proceedings.mlr.press\/v9\/glorot10a.html","key":"6_CR16"},{"unstructured":"Goodfellow, et al.: Generative adversarial nets. In: Advances in Neural Information Processing Systems, pp. 2672\u20132680 (2014)","key":"6_CR17"},{"unstructured":"Goodfellow, I.J., Shlens, J., Szegedy, C.: Explaining and harnessing adversarial examples. arXiv preprint arXiv:1412.6572 (2014)","key":"6_CR18"},{"doi-asserted-by":"crossref","unstructured":"Guera, D., Wang, Y., Bondi, L., Bestagini, P., Tubaro, S., Delp, E.J.: A counter-forensic method for CNN-based camera model identification. In: Computer Vision and Pattern Recognition Workshops (CVPRW), pp. 1840\u20131847. IEEE, July 2017","key":"6_CR19","DOI":"10.1109\/CVPRW.2017.230"},{"doi-asserted-by":"crossref","unstructured":"He, K., Zhang, X., Ren, S., Sun, J.: Deep residual learning for image recognition. In: Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition (CVPR), June 2016","key":"6_CR20","DOI":"10.1109\/CVPR.2016.90"},{"doi-asserted-by":"crossref","unstructured":"Huang, G., Liu, Z., Van Der Maaten, L., Weinberger, K.Q.: Densely connected convolutional networks. In: Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition, pp. 4700\u20134708 (2017)","key":"6_CR21","DOI":"10.1109\/CVPR.2017.243"},{"unstructured":"Karras, T., Aila, T., Laine, S., Lehtinen, J.: Progressive growing of GANs for improved quality, stability, and variation. arXiv preprint arXiv:1710.10196 (2017)","key":"6_CR22"},{"unstructured":"Karras, T., et al.: Alias-free generative adversarial networks. In: Proceedings of NeurIPS (2021)","key":"6_CR23"},{"doi-asserted-by":"crossref","unstructured":"Karras, T., Laine, S., Aila, T.: A style-based generator architecture for generative adversarial networks. In: Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition, pp. 4401\u20134410 (2019)","key":"6_CR24","DOI":"10.1109\/CVPR.2019.00453"},{"doi-asserted-by":"crossref","unstructured":"Karras, T., Laine, S., Aittala, M., Hellsten, J., Lehtinen, J., Aila, T.: Analyzing and improving the image quality of StyleGAN. In: Proceedings of CVPR (2020)","key":"6_CR25","DOI":"10.1109\/CVPR42600.2020.00813"},{"issue":"2","key":"6_CR26","doi-asserted-by":"publisher","first-page":"278","DOI":"10.1109\/LSP.2017.2782363","volume":"25","author":"D Kim","year":"2017","unstructured":"Kim, D., Jang, H.U., Mun, S.M., Choi, S., Lee, H.K.: Median filtered image restoration and anti-forensics using adversarial networks. IEEE Signal Process. Lett. 25(2), 278\u2013282 (2017)","journal-title":"IEEE Signal Process. Lett."},{"unstructured":"Kurakin, A., Goodfellow, I., Bengio, S., et al.: Adversarial examples in the physical world (2016)","key":"6_CR27"},{"unstructured":"Madry, A., Makelov, A., Schmidt, L., Tsipras, D., Vladu, A.: Towards deep learning models resistant to adversarial attacks. arXiv preprint arXiv:1706.06083 (2017)","key":"6_CR28"},{"doi-asserted-by":"publisher","unstructured":"Marra, F., Gragnaniello, D., Cozzolino, D., Verdoliva, L.: Detection of GAN-generated fake images over social networks. In: 2018 IEEE Conference on Multimedia Information Processing and Retrieval (MIPR), pp. 384\u2013389 (2018). https:\/\/doi.org\/10.1109\/MIPR.2018.00084","key":"6_CR29","DOI":"10.1109\/MIPR.2018.00084"},{"doi-asserted-by":"publisher","unstructured":"Marra, F., Gragnaniello, D., Verdoliva, L., Poggi, G.: Do GANs leave artificial fingerprints? In: 2019 IEEE Conference on Multimedia Information Processing and Retrieval (MIPR), pp. 506\u2013511 (2019). https:\/\/doi.org\/10.1109\/MIPR.2019.00103","key":"6_CR30","DOI":"10.1109\/MIPR.2019.00103"},{"doi-asserted-by":"publisher","unstructured":"Marra, F., Saltori, C., Boato, G., Verdoliva, L.: Incremental learning for the detection and classification of GAN-generated images. In: 2019 IEEE International Workshop on Information Forensics and Security (WIFS), pp. 1\u20136 (2019). https:\/\/doi.org\/10.1109\/WIFS47025.2019.9035099","key":"6_CR31","DOI":"10.1109\/WIFS47025.2019.9035099"},{"doi-asserted-by":"crossref","unstructured":"McCloskey, S., Albright, M.: Detecting GAN-generated imagery using color cues. arXiv preprint arXiv:1812.08247 (2018)","key":"6_CR32","DOI":"10.1109\/ICIP.2019.8803661"},{"unstructured":"Nair, V., Hinton, G.E.: Rectified linear units improve restricted Boltzmann machines. In: Proceedings of the 27th International Conference on Machine Learning (ICML-2010), pp. 807\u2013814 (2010)","key":"6_CR33"},{"issue":"5","key":"6_CR34","first-page":"1","volume":"2019","author":"L Nataraj","year":"2019","unstructured":"Nataraj, L., Mohammed, T.M., Manjunath, B., Chandrasekaran, S., Flenner, A., Bappy, J.H., Roy-Chowdhury, A.K.: Detecting GAN generated fake images using co-occurrence matrices. Electron. Imaging 2019(5), 1\u2013532 (2019)","journal-title":"Electron. Imaging"},{"unstructured":"Nvidia Research Lab: Public database of styleGAN (2019). https:\/\/github.com\/NVlabs\/stylegan","key":"6_CR35"},{"unstructured":"Nvidia Research Lab: Public database of styleGAN2 (2019). https:\/\/github.com\/NVlabs\/stylegan2","key":"6_CR36"},{"unstructured":"Papernot, N., et al.: Technical report on the cleverhans v2.1.0 adversarial examples library. arXiv preprint arXiv:1610.00768 (2018)","key":"6_CR37"},{"doi-asserted-by":"crossref","unstructured":"Papernot, N., McDaniel, P., Jha, S., Fredrikson, M., Celik, Z.B., Swami, A.: The limitations of deep learning in adversarial settings. In: 2016 IEEE European Symposium on Security and Privacy (EuroS &P), pp. 372\u2013387. IEEE (2016)","key":"6_CR38","DOI":"10.1109\/EuroSP.2016.36"},{"doi-asserted-by":"crossref","unstructured":"Park, T., Liu, M.Y., Wang, T.C., Zhu, J.Y.: GauGAN: semantic image synthesis with spatially adaptive normalization. In: ACM SIGGRAPH 2019 Real-Time Live!, pp. 1\u20131. Association for Computing Machinery (2019)","key":"6_CR39","DOI":"10.1145\/3306305.3332370"},{"unstructured":"Szegedy, C., et al.: Intriguing properties of neural networks (2014)","key":"6_CR40"},{"doi-asserted-by":"publisher","unstructured":"Tuama, A., Comby, F., Chaumont, M.: Camera model identification with the use of deep convolutional neural networks. In: International Workshop on Information Forensics and Security (WIFS), pp. 1\u20136. IEEE, December 2016. https:\/\/doi.org\/10.1109\/WIFS.2016.7823908","key":"6_CR41","DOI":"10.1109\/WIFS.2016.7823908"},{"doi-asserted-by":"crossref","unstructured":"Wang, S.Y., Wang, O., Zhang, R., Owens, A., Efros, A.A.: CNN-generated images are surprisingly easy to spot... for now. In: Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition, pp. 8695\u20138704 (2020)","key":"6_CR42","DOI":"10.1109\/CVPR42600.2020.00872"},{"unstructured":"Yu, F., Seff, A., Zhang, Y., Song, S., Funkhouser, T., Xiao, J.: LSUN: Construction of a large-scale image dataset using deep learning with humans in the loop (2016)","key":"6_CR43"},{"doi-asserted-by":"publisher","unstructured":"Yu, N., Davis, L., Fritz, M.: Attributing fake images to GANs: Learning and analyzing GAN fingerprints. In: 2019 IEEE\/CVF International Conference on Computer Vision (ICCV), pp. 7555\u20137565 (2019). https:\/\/doi.org\/10.1109\/ICCV.2019.00765","key":"6_CR44","DOI":"10.1109\/ICCV.2019.00765"},{"issue":"9","key":"6_CR45","doi-asserted-by":"publisher","first-page":"2805","DOI":"10.1109\/TNNLS.2018.2886017","volume":"30","author":"X Yuan","year":"2019","unstructured":"Yuan, X., He, P., Zhu, Q., Li, X.: Adversarial examples: attacks and defenses for deep learning. IEEE Trans. Neural Netw. Learn. Syst. 30(9), 2805\u20132824 (2019)","journal-title":"IEEE Trans. Neural Netw. Learn. Syst."},{"doi-asserted-by":"publisher","unstructured":"Zhan, Y., Chen, Y., Zhang, Q., Kang, X.: Image forensics based on transfer learning and convolutional neural network. In: Proceedings of the 5th ACM Workshop on Information Hiding and Multimedia Security, pp. 165\u2013170 (2017). https:\/\/doi.org\/10.1145\/3082031.3083250","key":"6_CR46","DOI":"10.1145\/3082031.3083250"},{"doi-asserted-by":"crossref","unstructured":"Zhang, X., Karaman, S., Chang, S.F.: Detecting and simulating artifacts in GAN fake images. In: 2019 IEEE International Workshop on Information Forensics and Security (WIFS), pp. 1\u20136. IEEE (2019)","key":"6_CR47","DOI":"10.1109\/WIFS47025.2019.9035107"},{"issue":"4","key":"6_CR48","first-page":"1","volume":"2020","author":"X Zhao","year":"2020","unstructured":"Zhao, X., Stamm, M.C.: The effect of class definitions on the transferability of adversarial attacks against forensic CNNs. Electron. Imaging 2020(4), 1\u2013119 (2020)","journal-title":"Electron. Imaging"},{"doi-asserted-by":"crossref","unstructured":"Zhu, J.Y., Park, T., Isola, P., Efros, A.A.: Unpaired image-to-image translation using cycle-consistent adversarial networks. In: Proceedings of the IEEE International Conference on Computer Vision, pp. 2223\u20132232 (2017)","key":"6_CR49","DOI":"10.1109\/ICCV.2017.244"}],"container-title":["Lecture Notes in Computer Science","Pattern Recognition, Computer Vision, and Image Processing. ICPR 2022 International Workshops and Challenges"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-031-37745-7_6","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2023,7,28]],"date-time":"2023-07-28T21:06:28Z","timestamp":1690578388000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-031-37745-7_6"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2023]]},"ISBN":["9783031377440","9783031377457"],"references-count":49,"URL":"https:\/\/doi.org\/10.1007\/978-3-031-37745-7_6","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2023]]},"assertion":[{"value":"29 July 2023","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"ICPR","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"International Conference on Pattern Recognition","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Montr\u00e9al, QC","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Canada","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2022","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"21 August 2022","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"25 August 2022","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"icpr2022","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"https:\/\/iapr.org\/icpr2022","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}