{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,8,5]],"date-time":"2026-08-05T09:49:01Z","timestamp":1785923341379,"version":"3.56.0"},"publisher-location":"Cham","reference-count":29,"publisher":"Springer Nature Switzerland","isbn-type":[{"value":"9783032028129","type":"print"},{"value":"9783032028136","type":"electronic"}],"license":[{"start":{"date-parts":[[2025,9,1]],"date-time":"2025-09-01T00:00:00Z","timestamp":1756684800000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2025,9,1]],"date-time":"2025-09-01T00:00:00Z","timestamp":1756684800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2026]]},"DOI":"10.1007\/978-3-032-02813-6_24","type":"book-chapter","created":{"date-parts":[[2025,8,31]],"date-time":"2025-08-31T07:15:43Z","timestamp":1756624543000},"page":"289-293","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":0,"title":["Makrut Attacks Against Black-Box Explanations"],"prefix":"10.1007","author":[{"given":"Achyut","family":"Hegde","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Maximilian","family":"Noppel","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Christian","family":"Wressnegger","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2025,9,1]]},"reference":[{"issue":"12","key":"24_CR1","doi-asserted-by":"publisher","first-page":"2439","DOI":"10.3390\/sym13122439","volume":"13","author":"TAA Abdullah","year":"2021","unstructured":"Abdullah, T.A.A., Zahid, M.S.M., Ali, W.: A review of interpretable ML in healthcare: taxonomy, applications, challenges, and future directions. Symmetry 13(12), 2439 (2021)","journal-title":"Symmetry"},{"key":"24_CR2","doi-asserted-by":"crossref","unstructured":"Ademi, L., Noppel, M., Wressnegger, C.: POMELO: black-box feature attribution with full-input, in-distribution perturbations. In: Proceedings of the World Conference on eXplainable Artificial Intelligence (XAI) (2025)","DOI":"10.1007\/978-3-032-08324-1_10"},{"key":"24_CR3","unstructured":"A\u00efvodji, U., Arai, H., Fortineau, O., Gambs, S., Hara, S., Tapp, A.: Fairwashing: the risk of rationalization. In: Proceedings of the International Conference on Machine Learning (ICML), vol.\u00a097, pp. 161\u2013170 (2019)"},{"key":"24_CR4","unstructured":"A\u00efvodji, U., Arai, H., Gambs, S., Hara, S.: Characterizing the risk of fairwashing. In: Proceedings of the Annual Conference on Neural Information Processing Systems (NeurIPS), pp. 14822\u201314834 (2021)"},{"key":"24_CR5","doi-asserted-by":"crossref","unstructured":"Bach, S., Binder, A., Montavon, G., Klauschen, F., M\u00fcller, K.R., Samek, W.: On pixel-wise explanations for non-linear classifier decisions by layer-wise relevance propagation. PLOS ONE, 46 (2015)","DOI":"10.1371\/journal.pone.0130140"},{"key":"24_CR6","doi-asserted-by":"publisher","first-page":"317","DOI":"10.1016\/j.patcog.2018.07.023","volume":"84","author":"B Biggio","year":"2018","unstructured":"Biggio, B., Roli, F.: Wild patterns: ten years after the rise of adversarial machine learning. Pattern Recogn. 84, 317\u2013331 (2018)","journal-title":"Pattern Recogn."},{"key":"24_CR7","doi-asserted-by":"crossref","unstructured":"Chen, X., Ma, H., Wan, J., Li, B., Xia, T.: Multi-view 3D object detection network for autonomous driving. In: Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition (CVPR), pp. 6526\u20136534. IEEE (2017)","DOI":"10.1109\/CVPR.2017.691"},{"key":"24_CR8","unstructured":"Chen, X., Liu, C., Li, B., Lu, K., Song, D.: Targeted backdoor attacks on deep learning systems using data poisoning. CoRR abs\/1712.05526 (2017)"},{"key":"24_CR9","doi-asserted-by":"publisher","DOI":"10.1016\/j.asoc.2020.106263","volume":"91","author":"X Dastile","year":"2020","unstructured":"Dastile, X., Celik, T., Potsane, M.: Statistical and machine learning models in credit scoring: a systematic literature survey. Appl. Soft Comput. 91, 106263 (2020)","journal-title":"Appl. Soft Comput."},{"issue":"21","key":"24_CR10","doi-asserted-by":"publisher","first-page":"10417","DOI":"10.3390\/app112110417","volume":"11","author":"F Gabbay","year":"2021","unstructured":"Gabbay, F., Bar-Lev, S., Montano, O., Hadad, N.: A LIME-based explainable machine learning model for predicting the severity level of COVID-19 diagnosed patients. Appl. Sci. 11(21), 10417 (2021)","journal-title":"Appl. Sci."},{"key":"24_CR11","doi-asserted-by":"publisher","first-page":"47230","DOI":"10.1109\/ACCESS.2019.2909068","volume":"7","author":"T Gu","year":"2019","unstructured":"Gu, T., Liu, K., Dolan-Gavitt, B., Garg, S.: BadNets: evaluating backdooring attacks on deep neural networks. IEEE Access 7, 47230\u201347244 (2019)","journal-title":"IEEE Access"},{"key":"24_CR12","doi-asserted-by":"crossref","unstructured":"Hanif, A., Zhang, X., Wood, S.: A survey on explainable artificial intelligence techniques and challenges. In: 2021 IEEE 25th International Enterprise Distributed Object Computing Workshop (EDOCW), pp. 81\u201389 (2021)","DOI":"10.1109\/EDOCW52865.2021.00036"},{"key":"24_CR13","doi-asserted-by":"crossref","unstructured":"Hegde, A., Noppel, M., Wressnegger, C.: Model-manipulation attacks against black-box explanations. In: Proceedings of the Annual Computer Security Applications Conference (ACSAC) (2024)","DOI":"10.1109\/ACSAC63791.2024.00081"},{"key":"24_CR14","unstructured":"Howard, J.: Imagewang. https:\/\/github.com\/fastai\/imagenette\/"},{"key":"24_CR15","unstructured":"Lu, Y., Kamath, G., Yu, Y.: Indiscriminate data poisoning attacks on neural networks. Trans. Mach. Learn. Res. 2022 (2022)"},{"key":"24_CR16","unstructured":"Lundberg, S.M., Lee, S.I.: A unified approach to interpreting model predictions. In: Proceedings of the Annual Conference on Neural Information Processing Systems (NIPS), p.\u00a010 (2017)"},{"key":"24_CR17","unstructured":"Mattu, S., Larson, J., Kirchner, L., Angwin, J.: Machine bias (2016)"},{"issue":"1","key":"24_CR18","doi-asserted-by":"publisher","first-page":"2272","DOI":"10.1038\/s41467-023-37720-5","volume":"14","author":"X Mei","year":"2023","unstructured":"Mei, X.: Interstitial lung disease diagnosis and prognosis using an AI system integrating longitudinal data. Nat. Commun. 14(1), 2272 (2023)","journal-title":"Nat. Commun."},{"key":"24_CR19","doi-asserted-by":"publisher","DOI":"10.1016\/j.asoc.2024.111307","volume":"153","author":"MK Nallakaruppan","year":"2024","unstructured":"Nallakaruppan, M.K., Balusamy, B., Shri, M.L., Malathi, V., Bhattacharyya, S.: An explainable AI framework for credit evaluation and analysis. Appl. Soft Comput. 153, 111307 (2024)","journal-title":"Appl. Soft Comput."},{"key":"24_CR20","doi-asserted-by":"crossref","unstructured":"Noppel, M., Peter, L., Wressnegger, C.: Disguising attacks with explanation-aware backdoors. In: Proceedings of the IEEE Symposium on Security and Privacy (S &P) (2023)","DOI":"10.1109\/SP46215.2023.10179308"},{"key":"24_CR21","doi-asserted-by":"crossref","unstructured":"Noppel, M., Wressnegger, C.: SoK: explainable machine learning in adversarial environments. In: Proceedings of the IEEE Symposium on Security and Privacy (S &P) (2024)","DOI":"10.1109\/SP54263.2024.00021"},{"key":"24_CR22","unstructured":"Petsiuk, V., Das, A., Saenko, K.: RISE: Randomized input sampling for explanation of black-box models. In: Proceedings of the British Machine Vision Conference (BMVC) (2018)"},{"key":"24_CR23","doi-asserted-by":"crossref","unstructured":"Ribeiro, M.T., Singh, S., Guestrin, C.: \u201cwhy should i trust you?\u201d: explaining the predictions of any classifier. In: Proceedings of the ACM SIGKDD International Conference on Knowledge Discovery and Data Mining (KDD) (2016)","DOI":"10.1145\/2939672.2939778"},{"key":"24_CR24","doi-asserted-by":"crossref","unstructured":"Selvaraju, R.R., Cogswell, M., Das, A., Vedantam, R., Parikh, D., Batra, D.: Grad-CAM: visual explanations from deep networks via gradient-based localization. Int. J. Comput. Vis. 128(2) (2020)","DOI":"10.1007\/s11263-019-01228-7"},{"key":"24_CR25","unstructured":"Simonyan, K., Vedaldi, A., Zisserman, A.: Deep inside convolutional networks: visualising image classification models and saliency maps. In: Proceedings of the International Conference on Learning Representations (ICLR) Workshop Track Proceedings (2014)"},{"key":"24_CR26","doi-asserted-by":"crossref","unstructured":"Slack, D., Hilgard, S., Jia, E., Singh, S., Lakkaraju, H.: Fooling LIME and SHAP: adversarial attacks on post hoc explanation methods. In: Proceedings of the AAAI\/ACM Conference on AI, Ethics, and Society (AIES), pp. 180\u2013186 (2020)","DOI":"10.1145\/3375627.3375830"},{"key":"24_CR27","unstructured":"Sundararajan, M., Taly, A., Yan, Q.: Axiomatic attribution for deep networks. In: Proceedings of the International Conference on Machine Learning (ICML), vol.\u00a070, pp. 3319\u20133328 (2017)"},{"issue":"1","key":"24_CR28","doi-asserted-by":"publisher","first-page":"10","DOI":"10.1186\/s40708-024-00222-1","volume":"11","author":"V Vimbi","year":"2024","unstructured":"Vimbi, V., Shaffi, N., Mahmud, M.: Interpreting artificial intelligence models: a systematic review on the application of LIME and SHAP in Alzheimer\u2019s disease detection. Brain Inform. 11(1), 10 (2024)","journal-title":"Brain Inform."},{"issue":"16","key":"24_CR29","doi-asserted-by":"publisher","first-page":"2681","DOI":"10.3390\/diagnostics13162681","volume":"13","author":"Y Wu","year":"2023","unstructured":"Wu, Y., Zhang, L., Bhatti, U.A., Huang, M.: Interpretable machine learning for personalized medical recommendations: a LIME-based approach. Diagnostics 13(16), 2681 (2023)","journal-title":"Diagnostics"}],"container-title":["Lecture Notes in Computer Science","KI 2025: Advances in Artificial Intelligence"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-032-02813-6_24","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,8,5]],"date-time":"2026-08-05T09:43:15Z","timestamp":1785922995000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-032-02813-6_24"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,9,1]]},"ISBN":["9783032028129","9783032028136"],"references-count":29,"URL":"https:\/\/doi.org\/10.1007\/978-3-032-02813-6_24","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"value":"0302-9743","type":"print"},{"value":"1611-3349","type":"electronic"}],"subject":[],"published":{"date-parts":[[2025,9,1]]},"assertion":[{"value":"1 September 2025","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"KI","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"German Conference on Artificial Intelligence (K\u00fcnstliche Intelligenz)","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Potsdam","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Germany","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2025","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"16 September 2025","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"19 September 2025","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"48","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"ki2025","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"https:\/\/ki2025.gi.de\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}