{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,3,26]],"date-time":"2025-03-26T00:21:13Z","timestamp":1742948473160,"version":"3.40.3"},"publisher-location":"Cham","reference-count":42,"publisher":"Springer Nature Switzerland","isbn-type":[{"type":"print","value":"9783031477140"},{"type":"electronic","value":"9783031477157"}],"license":[{"start":{"date-parts":[[2024,1,1]],"date-time":"2024-01-01T00:00:00Z","timestamp":1704067200000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2024,1,1]],"date-time":"2024-01-01T00:00:00Z","timestamp":1704067200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2024]]},"DOI":"10.1007\/978-3-031-47715-7_12","type":"book-chapter","created":{"date-parts":[[2024,1,29]],"date-time":"2024-01-29T20:02:44Z","timestamp":1706558564000},"page":"157-174","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":0,"title":["Adversarial Robustness of Multi-bit Convolutional Neural Networks"],"prefix":"10.1007","author":[{"given":"Lukas","family":"Frickenstein","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Shambhavi Balamuthu","family":"Sampath","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Pierpaolo","family":"Mori","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Manoj-Rohit","family":"Vemparala","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Nael","family":"Fasfous","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Alexander","family":"Frickenstein","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Christian","family":"Unger","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Claudio","family":"Passerone","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Walter","family":"Stechele","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2024,1,30]]},"reference":[{"key":"12_CR1","doi-asserted-by":"crossref","unstructured":"Ahn, S., Hu, S.X., Damianou, A.C., Lawrence, N.D., Dai, Z.: Variational information distillation for knowledge transfer. In: The IEEE\/CVF Conference on Computer Vision and Pattern Recognition (CVPR), pp. 9155\u20139163 (2019)","DOI":"10.1109\/CVPR.2019.00938"},{"key":"12_CR2","doi-asserted-by":"publisher","first-page":"14410","DOI":"10.1109\/ACCESS.2018.2807385","volume":"6","author":"N Akhtar","year":"2018","unstructured":"Akhtar, N., Mian, A.S.: Threat of adversarial attacks on deep learning in computer vision: a survey. IEEE Access 6, 14410\u201314430 (2018)","journal-title":"IEEE Access"},{"key":"12_CR3","unstructured":"Athalye, A., Carlini, N., Wagner, D.A.: Obfuscated gradients give a false sense of security: circumventing defenses to adversarial examples. In: ICML, pp. 274\u2013283 (2018)"},{"key":"12_CR4","unstructured":"Bengio, Y., L\u00e9onard, N., Courville, A.C.: Estimating or Propagating Gradients Through Stochastic Neurons for Conditional Computation (2013). arXiv:abs\/1308.3432"},{"key":"12_CR5","unstructured":"Carlini, N., Athalye, A., Papernot, N., Brendel, W., Rauber, J., Tsipras, D., Goodfellow, I.J., Madry, A., Kurakin, A.: On Evaluating Adversarial Robustness (2019). CoRR, arXiv:abs\/1902.06705"},{"key":"12_CR6","unstructured":"Choi, J., Wang, Z., Venkataramani, S., Chuang, P.I.-J., Srinivasan, V., Gopalakrishnan, K: PACT: Parameterized Clipping Activation for Quantized Neural Networks (July 2018). arXiv:1805.06085 [cs]"},{"key":"12_CR7","unstructured":"Courbariaux, M., Bengio, Y.: BinaryNet: Training Deep Neural Networks with Weights and Activations Constrained to +1 or -1 (2016). arXiv:abs\/1602.02830"},{"key":"12_CR8","unstructured":"Darabi, S., Belbahri, M., Courbariaux, M., Nia, V.P.: BNN+: Improved Binary Network Training (Jan 2018). arXiv:abs\/1812.11800"},{"key":"12_CR9","doi-asserted-by":"crossref","unstructured":"Fasfous, N., Vemparala, M.-R., Frickenstein, A., Badawy, M., Hundhausen, F., H\u00f6fer, J., Naveen-Shankar\u00a0Nagaraja, C.U., V\u00f6gel, H.-J., Becker, J., Asfour, T., Stechele, W.: Binary-LoRAX: low-power and runtime adaptable XNOR classifier for semi-autonomous grasping with prosthetic hands. In: International Conference on Robotics and Automation (2021)","DOI":"10.1109\/ICRA48506.2021.9561045"},{"key":"12_CR10","doi-asserted-by":"crossref","unstructured":"Fasfous, N., Vemparala, M.-R., Frickenstein, A., Frickenstein, L., Badawy, M., Stechele, W.: BinaryCoP: binary neural network-based COVID-19 face-mask wear and positioning predictor on edge devices. In: IPDPS-RAW (2021)","DOI":"10.1109\/IPDPSW52791.2021.00024"},{"key":"12_CR11","doi-asserted-by":"crossref","unstructured":"Frickenstein, A., Vemparala, M.R., Mayr, J., Nagaraja, N.S., Unger, C., Tombari, F., Stechele, W.: Binary DAD-Net: binarized driveable area detection network for autonomous driving. In: 2020 IEEE International Conference on Robotics and Automation, pp. 2295\u20132301 (2020)","DOI":"10.1109\/ICRA40945.2020.9197119"},{"key":"12_CR12","unstructured":"Galloway, A., Taylor, G.W., Moussa, M.: Attacking binarized neural networks. In: International Conference on Learning Representations (ICLR) (2018)"},{"key":"12_CR13","doi-asserted-by":"crossref","unstructured":"Goldblum, M., Fowl, L., Feizi, S., Goldstein, T.: Adversarially robust distillation. In: Conference of Association for the Advancement of Artificial Intelligence (AAAI), vol.\u00a034 (2020)","DOI":"10.1609\/aaai.v34i04.5816"},{"key":"12_CR14","unstructured":"Goodfellow, I., Shlens, J., Szegedy, C.: Explaining and harnessing adversarial examples. In: International Conference on Learning Representations (ICLR) (2015)"},{"key":"12_CR15","doi-asserted-by":"crossref","unstructured":"Guo, M., Yang, Y., Rui, X., Liu, Z.: When nas meets robustness: In search of robust architectures against adversarial attacks (2019)","DOI":"10.1109\/CVPR42600.2020.00071"},{"key":"12_CR16","unstructured":"Guo, Y., Yao, A., Chen, Y.: Dynamic network surgery for efficient DNNs. In: Lee, D.D., Sugiyama, M., Luxburg, U.V., Guyon, I., Garnett, R. (eds.) Advances in Neural Information Processing Systems (NeurIPS), vol.\u00a029, pp. 1379\u20131387. Curran Associates, Inc. (2016)"},{"key":"12_CR17","unstructured":"Han, S., Pool, J., Tran, J., Dally, W.: Learning both weights and connections for efficient neural network. In: Cortes, C., Lawrence, N., Lee, D., Sugiyama, M., Garnett, R. (eds.) Advances in Neural Information Processing Systems (NeurIPS), vol.\u00a028, pp. 1135\u20131143. Curran Associates, Inc. (2015)"},{"key":"12_CR18","doi-asserted-by":"crossref","unstructured":"He, K., Zhang, X., Ren, S., Sun, J.: Deep residual learning for image recognition. In: The IEEE\/CVF Conference on Computer Vision and Pattern Recognition (CVPR), pp. 770\u2013778 (Jun 2016)","DOI":"10.1109\/CVPR.2016.90"},{"key":"12_CR19","doi-asserted-by":"crossref","unstructured":"He, Y., Lin, J., Liu, Z., Wang, H., Li, L.-J., Han, S.: AMC: AutoML for model compression and acceleration on mobile devices. In: Proceedings of the European Conference on Computer Vision (ECCV), vol. 7, pp. 815\u2013832 (2018)","DOI":"10.1007\/978-3-030-01234-2_48"},{"key":"12_CR20","unstructured":"Hinton, G., Vinyals, O., Dean, J.: Distilling the knowledge in a neural network. In: NIPS Deep Learning and Representation Learning Workshop (2015)"},{"key":"12_CR21","doi-asserted-by":"crossref","unstructured":"Huang, Q., Kevin Zhou, S.., You, S., Neumann, U.: Learning to prune filters in convolutional neural networks. In: IEEE Winter Conference on Applications of Computer Vision (WACV), pp. 709\u2013718 (2018)","DOI":"10.1109\/WACV.2018.00083"},{"key":"12_CR22","doi-asserted-by":"crossref","unstructured":"Jacob, B., Kligys, S., Chen, B., Zhu, M., Tang, M., Howard, A., Adam, H., Kalenichenko, D.: Quantization and training of neural networks for efficient integer-arithmetic-only inference. In: Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition (CVPR) (June 2018)","DOI":"10.1109\/CVPR.2018.00286"},{"key":"12_CR23","unstructured":"Krizhevsky, A.: Learning Multiple Layers of Features from Tiny Images. University of Toronto (May 2012)"},{"key":"12_CR24","unstructured":"Kundu, S., Nazemi, M., Beerel, P.A., Pedram, M.: Dnr: a tunable robust pruning framework through dynamic network rewiring of dnns. In: Proceedings of the 26th Asia and South Pacific Design Automation Conference, ASPDAC\u201921, pp. 344\u2013350. Association for Computing Machinery, New York, NY, USA (2021)"},{"key":"12_CR25","unstructured":"Lin, J., Gan, C., Han, S.: Defensive quantization: when efficiency meets robustness. In: International Conference on Learning Representations (ICLR) (2019)"},{"key":"12_CR26","unstructured":"Lin, X., Zhao, C., Pan, W.: Towards accurate binary convolutional neural network. In: Guyon, I., Luxburg, U.V., Bengio, S., Wallach, H., Fergus, R., Vishwanathan, S., Garnett, R. (eds.) Advances in Neural Information Processing Systems (NeurIPS), vol.\u00a030, pp. 345\u2013353. Curran Associates, Inc. (2017)"},{"key":"12_CR27","doi-asserted-by":"crossref","unstructured":"Liu, Z., Wu, B., Luo, W., Yang, X., Liu, W., Cheng, K.-T.: Bi-Real Net: enhancing the performance of 1-bit CNNs with improved representational capability and advanced training algorithm. In: Proceedings of the European Conference on Computer Vision (ECCV) (Sept 2018)","DOI":"10.1007\/978-3-030-01267-0_44"},{"key":"12_CR28","unstructured":"Madry, A., Makelov, A., Schmidt, L., Tsipras, D., Vladu, A.: Towards deep learning models resistant to adversarial attacks. In: International Conference on Learning Representations (ICLR) (2018)"},{"key":"12_CR29","doi-asserted-by":"crossref","unstructured":"Vemparala, M.R., Frickenstein, A., Fasfous, N., Frickenstein, L., Zhao, Q., Kuhn, S.F., Ehrhardt, D., Wu, Y., Unger, C., Nagaraja, N.S., Stechele, W.: Breakingbed-breaking binary and efficient deep neural networks by adversarial attacks. In: Intelligent Systems Conference (2021)","DOI":"10.1007\/978-3-030-82193-7_10"},{"key":"12_CR30","unstructured":"Vemparala, M.R., Fasfous, N., Frickenstein, L., Frickenstein, A., Singh, A., Salihu, D., Unger, C., Nagaraja, N.-S., Stechele, W.: Hardware-aware mixed-precision neural networks using in-train quantization. In: British Machine Vision Conference (2021)"},{"key":"12_CR31","doi-asserted-by":"crossref","unstructured":"Rastegari, M., Ordonez, V., Redmon, J., Farhadi, A.: XNOR-Net: imagenet classification using binary convolutional neural networks. In: Leibe, B., Matas, J., Sebe, N., Welling, M. (eds.) Proceedings of the European Conference on Computer Vision (ECCV), vol.\u00a014, pp. 525\u2013542. Springer International Publishing, Cham (2016)","DOI":"10.1007\/978-3-319-46493-0_32"},{"issue":"3","key":"12_CR32","doi-asserted-by":"publisher","first-page":"211","DOI":"10.1007\/s11263-015-0816-y","volume":"115","author":"O Russakovsky","year":"2015","unstructured":"Russakovsky, O., Deng, J., Su, H., Krause, J., Satheesh, S., Ma, S., Huang, Z., Karpathy, A., Khosla, A., Bernstein, M., Berg, A.C., Fei-Fei, L.: ImageNet large scale visual recognition challenge. Int. J. Comput. Vision 115(3), 211\u2013252 (2015). https:\/\/doi.org\/10.1007\/s11263-015-0816-y","journal-title":"Int. J. Comput. Vision"},{"key":"12_CR33","unstructured":"Shafahi, A., Najibi, M., Ghiasi, M.A., Xu, Z., Dickerson, J., Studer, C., Davis, L.S., Taylor, G., Goldstein, T.: Adversarial training for free! In: Wallach, H., Larochelle, H., Beygelzimer, A., d\u2019 Alch\u00e9-Buc, F., Fox, E., Garnett, R. (eds.) Advances in Neural Information Processing Systems (NeurIPS), vol.\u00a032, pp. 3358\u20133369. Curran Associates, Inc. (2019)"},{"key":"12_CR34","doi-asserted-by":"crossref","unstructured":"Sharify, S., et\u00a0al.: Loom: exploiting weight and activation precisions to accelerate convolutional neural networks. In: DAC (2018)","DOI":"10.1145\/3195970.3196072"},{"key":"12_CR35","unstructured":"Shelhamer, E., Long, J., Darrell, T.: Fully convolutional networks for semantic segmentation. In: The IEEE Conference on Computer Vision and Pattern Recognition (CVPR), pp. 3431\u20133440 (2015)"},{"key":"12_CR36","unstructured":"Szegedy, C., Zaremba, W., Sutskever, I., Bruna, J., Erhan, D., Goodfellow, I.J., Fergus, R.: Intriguing properties of neural networks. In: Bengio, Y., LeCun, Y. (eds.) International Conference on Learning Representations (ICLR) (2014)"},{"key":"12_CR37","doi-asserted-by":"crossref","unstructured":"Tang, W., Hua, G., Wang, L.: How to train a compact binary neural network with high accuracy? In: Proceedings of the Conference on Artificial Intelligence (AAAI), vol.\u00a031, pp. 2625\u20132631. AAAI Press (2017)","DOI":"10.1609\/aaai.v31i1.10862"},{"key":"12_CR38","unstructured":"Tian, Y., Krishnan, D., Isola, P: Contrastive representation distillation. In: International Conference on Learning Representations (ICLR), vol.\u00a08 (2020)"},{"key":"12_CR39","unstructured":"Tram\u00e8r, F., Papernot, N., Goodfellow, I., Boneh, D., McDaniel, P.: The Space of Transferable Adversarial Examples (2017)"},{"key":"12_CR40","unstructured":"Wong, E., Rice, L., Zico Kolter, J.: Fast is better than free: Revisiting adversarial training. In: International Conference on Learning Representations (ICLR) (2020)"},{"key":"12_CR41","unstructured":"Zhang, H., Yu, Y., Jiao, J., Xing, E.P., El Ghaoui, L., Jordan, M.I.: Theoretically principled trade-off between robustness and accuracy. In: Chaudhuri, K., Salakhutdinov, R. (eds.) Proceedings of the International Conference on Machine Learning, (ICML). Proceedings of Machine Learning Research, vol. 97, pp. 7472\u20137482. PMLR (2019)"},{"key":"12_CR42","unstructured":"Zhou, S., Yuxin, W., Ni, Z., Zhou, X., Wen, H., Zou, Y.: Training low bitwidth convolutional neural networks with low bitwidth gradients, Dorefa-net (2018)"}],"container-title":["Lecture Notes in Networks and Systems","Intelligent Systems and Applications"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-031-47715-7_12","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,1,29]],"date-time":"2024-01-29T20:04:26Z","timestamp":1706558666000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-031-47715-7_12"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024]]},"ISBN":["9783031477140","9783031477157"],"references-count":42,"URL":"https:\/\/doi.org\/10.1007\/978-3-031-47715-7_12","relation":{},"ISSN":["2367-3370","2367-3389"],"issn-type":[{"type":"print","value":"2367-3370"},{"type":"electronic","value":"2367-3389"}],"subject":[],"published":{"date-parts":[[2024]]},"assertion":[{"value":"30 January 2024","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"IntelliSys","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Intelligent Systems Conference","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Amsterdam","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"The Netherlands","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2023","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"7 September 2023","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"8 September 2023","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"intellisys12023","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}