{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,11,2]],"date-time":"2025-11-02T18:46:45Z","timestamp":1762109205310,"version":"build-2065373602"},"publisher-location":"Cham","reference-count":31,"publisher":"Springer Nature Switzerland","isbn-type":[{"type":"print","value":"9783031723896"},{"type":"electronic","value":"9783031723902"}],"license":[{"start":{"date-parts":[[2024,1,1]],"date-time":"2024-01-01T00:00:00Z","timestamp":1704067200000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2024,1,1]],"date-time":"2024-01-01T00:00:00Z","timestamp":1704067200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2024]]},"DOI":"10.1007\/978-3-031-72390-2_65","type":"book-chapter","created":{"date-parts":[[2024,10,22]],"date-time":"2024-10-22T10:03:14Z","timestamp":1729591394000},"page":"698-708","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":6,"title":["PromptSmooth: Certifying Robustness of\u00a0Medical Vision-Language Models via\u00a0Prompt Learning"],"prefix":"10.1007","author":[{"given":"Noor","family":"Hussein","sequence":"first","affiliation":[]},{"given":"Fahad","family":"Shamshad","sequence":"additional","affiliation":[]},{"given":"Muzammal","family":"Naseer","sequence":"additional","affiliation":[]},{"given":"Karthik","family":"Nandakumar","sequence":"additional","affiliation":[]}],"member":"297","published-online":{"date-parts":[[2024,10,23]]},"reference":[{"key":"65_CR1","unstructured":"Athalye, A., Carlini, N., Wagner, D.: Obfuscated gradients give a false sense of security: Circumventing defenses to adversarial examples. In: International conference on machine learning. pp. 274\u2013283. PMLR (2018)"},{"key":"65_CR2","unstructured":"Azad, B., Azad, R., Eskandari, S., Bozorgpour, A., Kazerouni, A., Rekik, I., Merhof, D.: Foundational models in medical imaging: A comprehensive survey and future vision. arXiv preprint arXiv:2310.18689 (2023)"},{"key":"65_CR3","unstructured":"Carlini, N., Tramer, F., Dvijotham, K.D., Rice, L., Sun, M., Kolter, J.Z.: (certified!!) adversarial robustness for free! arXiv preprint arXiv:2206.10550 (2022)"},{"key":"65_CR4","unstructured":"Cohen, J., Rosenfeld, E., Kolter, Z.: Certified adversarial robustness via randomized smoothing. In: international conference on machine learning. pp. 1310\u20131320. PMLR (2019)"},{"key":"65_CR5","unstructured":"Dong, J., Chen, J., Xie, X., Lai, J., Chen, H.: Adversarial attack and defense for medical image analysis: Methods and applications. arXiv preprint arXiv:2303.14133 (2023)"},{"issue":"6433","key":"65_CR6","doi-asserted-by":"publisher","first-page":"1287","DOI":"10.1126\/science.aaw4399","volume":"363","author":"SG Finlayson","year":"2019","unstructured":"Finlayson, S.G., Bowers, J.D., Ito, J., Zittrain, J.L., Beam, A.L., Kohane, I.S.: Adversarial attacks on medical machine learning. Science 363(6433), 1287\u20131289 (2019)","journal-title":"Science"},{"key":"65_CR7","doi-asserted-by":"crossref","unstructured":"Gamper, J., Alemi\u00a0Koohbanani, N., Benet, K., Khuram, A., Rajpoot, N.: Pannuke: an open pan-cancer histology dataset for nuclei instance segmentation and classification. In: Digital Pathology: 15th European Congress, ECDP 2019, Warwick, UK, April 10\u201313, 2019, Proceedings 15. pp. 11\u201319. Springer (2019)","DOI":"10.1007\/978-3-030-23937-4_2"},{"key":"65_CR8","doi-asserted-by":"crossref","unstructured":"Han, T., Nebelung, S., Khader, F., Wang, T., Mueller-Franzes, C., F\u00f6rsch, S., Kleesiek, C., Bressem, K.K., et\u00a0al.: Medical foundation models are susceptible to targeted misinformation attacks. arXiv preprint arXiv:2309.17007 (2023)","DOI":"10.1038\/s41746-024-01282-7"},{"key":"65_CR9","doi-asserted-by":"crossref","unstructured":"Huang, Z., Bianchi, F., Yuksekgonul, M., Montine, T.J., Zou, J.: A visual\u2013language foundation model for pathology image analysis using medical twitter. Nature medicine 29(9), 2307\u20132316 (2023)","DOI":"10.1038\/s41591-023-02504-3"},{"key":"65_CR10","unstructured":"Ikezogwo, W., Seyfioglu, S., Ghezloo, F., Geva, D., Sheikh\u00a0Mohammed, F., Anand, P.K., Krishna, R., Shapiro, L.: Quilt-1m: One million image-text pairs for histopathology. Advances in Neural Information Processing Systems 36 (2024)"},{"issue":"1","key":"65_CR11","doi-asserted-by":"publisher","DOI":"10.1371\/journal.pmed.1002730","volume":"16","author":"JN Kather","year":"2019","unstructured":"Kather, J.N., Krisam, J., Charoentong, P., Luedde, T., Herpel, E., Weis, C.A., Gaiser, T., Marx, A., Valous, N.A., Ferber, D., et\u00a0al.: Predicting survival from colorectal cancer histology slides using deep learning: A retrospective multicenter study. PLoS medicine 16(1), e1002730 (2019)","journal-title":"PLoS medicine"},{"key":"65_CR12","doi-asserted-by":"publisher","first-page":"1022967","DOI":"10.3389\/fonc.2022.1022967","volume":"12","author":"K Kriegsmann","year":"2022","unstructured":"Kriegsmann, K., Lobers, F., Zgorzelski, C., Kriegsmann, J., Janssen, C., Meliss, R.R., Muley, T., Sack, U., Steinbuss, G., Kriegsmann, M.: Deep learning for the detection of anatomical tissue structures and neoplasms of the skin on scanned histopathological tissue sections. Frontiers in Oncology 12, 1022967 (2022)","journal-title":"Frontiers in Oncology"},{"key":"65_CR13","unstructured":"Kumari, A., Bhardwaj, D., Jindal, S., Gupta, S.: Trust, but verify: A survey of randomized smoothing techniques. arXiv preprint arXiv:2312.12608 (2023)"},{"key":"65_CR14","doi-asserted-by":"crossref","unstructured":"Laousy, O., Araujo, A., Chassagnon, G., Paragios, N., Revel, M.P., Vakalopoulou, M.: Certification of deep learning models for medical image segmentation. In: International Conference on Medical Image Computing and Computer-Assisted Intervention. pp. 611\u2013621. Springer (2023)","DOI":"10.1007\/978-3-031-43901-8_58"},{"key":"65_CR15","doi-asserted-by":"crossref","unstructured":"Lecuyer, M., Atlidakis, V., Geambasu, R., Hsu, D., Jana, S.: Certified robustness to adversarial examples with differential privacy. In: 2019 IEEE symposium on security and privacy (SP). pp. 656\u2013672. IEEE (2019)","DOI":"10.1109\/SP.2019.00044"},{"key":"65_CR16","doi-asserted-by":"crossref","unstructured":"Li, L., Xie, T., Li, B.: Sok: Certified robustness for deep neural networks. In: 2023 IEEE symposium on security and privacy (SP). pp. 1289\u20131310. IEEE (2023)","DOI":"10.1109\/SP46215.2023.10179303"},{"key":"65_CR17","unstructured":"Qiu, K., Zhang, H., Wu, Z., Lin, S.: Exploring transferability for randomized smoothing. arXiv preprint arXiv:2312.09020 (2023)"},{"key":"65_CR18","unstructured":"Radford, A., Kim, J.W., Hallacy, C., Ramesh, A., Goh, G., Agarwal, S., Sastry, G., Askell, A., Mishkin, P., Clark, J., et\u00a0al.: Learning transferable visual models from natural language supervision. In: International conference on machine learning. pp. 8748\u20138763. PMLR (2021)"},{"key":"65_CR19","first-page":"21945","volume":"33","author":"H Salman","year":"2020","unstructured":"Salman, H., Sun, M., Yang, G., Kapoor, A., Kolter, J.Z.: Denoised smoothing: A provable defense for pretrained classifiers. Advances in Neural Information Processing Systems 33, 21945\u201321957 (2020)","journal-title":"Advances in Neural Information Processing Systems"},{"key":"65_CR20","doi-asserted-by":"crossref","unstructured":"Shih, G., Wu, C.C., Halabi, S.S., Kohli, M.D., Prevedello, L.M., Cook, T.S., Sharma, A., Amorosa, J.K., Arteaga, V., Galperin-Aizenberg, M., et\u00a0al.: Augmenting the national institutes of health chest radiograph dataset with expert annotations of possible pneumonia. Radiology: Artificial Intelligence 1(1), e180041 (2019)","DOI":"10.1148\/ryai.2019180041"},{"key":"65_CR21","unstructured":"Shrestha, P., Amgain, S., Khanal, B., Linte, C.A., Bhattarai, B.: Medical vision language pretraining: A survey. arXiv preprint arXiv:2312.06224 (2023)"},{"key":"65_CR22","first-page":"14274","volume":"35","author":"M Shu","year":"2022","unstructured":"Shu, M., Nie, W., Huang, D.A., Yu, Z., Goldstein, T., Anandkumar, A., Xiao, C.: Test-time prompt tuning for zero-shot generalization in vision-language models. Advances in Neural Information Processing Systems 35, 14274\u201314289 (2022)","journal-title":"Advances in Neural Information Processing Systems"},{"key":"65_CR23","unstructured":"Silva-Rodriguez, J., Chakor, H., Kobbi, R., Dolz, J., Ayed, I.B.: A foundation language-image model of the retina (flair): Encoding expert knowledge in text supervision. arXiv preprint arXiv:2308.07898 (2023)"},{"key":"65_CR24","doi-asserted-by":"publisher","DOI":"10.1016\/j.cmpb.2020.105637","volume":"195","author":"J Silva-Rodr\u00edguez","year":"2020","unstructured":"Silva-Rodr\u00edguez, J., Colomer, A., Sales, M.A., Molina, R., Naranjo, V.: Going deeper through the gleason scoring scale: An automatic end-to-end system for histology prostate grading and cribriform pattern detection. Computer methods and programs in biomedicine 195, 105637 (2020)","journal-title":"Computer methods and programs in biomedicine"},{"key":"65_CR25","doi-asserted-by":"crossref","unstructured":"Tawsifur, R., Amith, K., Yazan, Q., Anas, T., Serkan, K., Abul, K.S.B., Tariqul, I.M., Somaya, A.M.: Zughaier susu m, khan muhammad salman, et al. Exploring the effect of image enhancement techniques on covid-19 detection using chest x-ray images. Computers in biology and medicine 132, 104319 (2021)","DOI":"10.1016\/j.compbiomed.2021.104319"},{"key":"65_CR26","doi-asserted-by":"crossref","unstructured":"Wang, Z., Wu, Z., Agarwal, D., Sun, J.: Medclip: Contrastive learning from unpaired medical images and text. arXiv preprint arXiv:2210.10163 (2022)","DOI":"10.18653\/v1\/2022.emnlp-main.256"},{"key":"65_CR27","doi-asserted-by":"crossref","unstructured":"Zhang, J., Kapse, S., Ma, K., Prasanna, P., Saltz, J., Vakalopoulou, M., Samaras, D.: Prompt-mil: Boosting multi-instance learning schemes via task-specific prompt tuning. arXiv preprint arXiv:2303.12214 (2023)","DOI":"10.1007\/978-3-031-43993-3_60"},{"key":"65_CR28","unstructured":"Zhao, Y., Pang, T., Du, C., Yang, X., Li, C., Cheung, N.M.M., Lin, M.: On evaluating adversarial robustness of large vision-language models. Advances in Neural Information Processing Systems 36 (2024)"},{"key":"65_CR29","unstructured":"Zhao, Z., Liu, Y., Wu, H., Li, Y., Wang, S., Teng, L., Liu, D., Li, X., Cui, Z., Wang, Q., et\u00a0al.: Clip in medical imaging: A comprehensive survey. arXiv preprint arXiv:2312.07353 (2023)"},{"key":"65_CR30","doi-asserted-by":"crossref","unstructured":"Zhong, Y., Xu, M., Liang, K., Chen, K., Wu, M.: Ariadne\u2019s thread: Using text prompts to improve segmentation of infected areas from chest x-ray images. In: International Conference on Medical Image Computing and Computer-Assisted Intervention. pp. 724\u2013733. Springer (2023)","DOI":"10.1007\/978-3-031-43901-8_69"},{"issue":"9","key":"65_CR31","doi-asserted-by":"publisher","first-page":"2337","DOI":"10.1007\/s11263-022-01653-1","volume":"130","author":"K Zhou","year":"2022","unstructured":"Zhou, K., Yang, J., Loy, C.C., Liu, Z.: Learning to prompt for vision-language models. International Journal of Computer Vision 130(9), 2337\u20132348 (2022)","journal-title":"International Journal of Computer Vision"}],"container-title":["Lecture Notes in Computer Science","Medical Image Computing and Computer Assisted Intervention \u2013 MICCAI 2024"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-031-72390-2_65","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,11,30]],"date-time":"2024-11-30T01:09:50Z","timestamp":1732928990000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-031-72390-2_65"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024]]},"ISBN":["9783031723896","9783031723902"],"references-count":31,"URL":"https:\/\/doi.org\/10.1007\/978-3-031-72390-2_65","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2024]]},"assertion":[{"value":"23 October 2024","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"The authors have no competing interests to declare that are relevant to the content of this article.","order":1,"name":"Ethics","group":{"name":"EthicsHeading","label":"Disclosure of Interests"}},{"value":"MICCAI","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"International Conference on Medical Image Computing and Computer-Assisted Intervention","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Marrakesh","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Morocco","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2024","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"7 October 2024","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"11 October 2024","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"27","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"miccai2024","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"https:\/\/conferences.miccai.org\/2024\/en\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}