{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,11]],"date-time":"2026-06-11T16:02:02Z","timestamp":1781193722383,"version":"3.54.1"},"publisher-location":"Cham","reference-count":38,"publisher":"Springer Nature Switzerland","isbn-type":[{"value":"9783032280787","type":"print"},{"value":"9783032280794","type":"electronic"}],"license":[{"start":{"date-parts":[[2026,1,1]],"date-time":"2026-01-01T00:00:00Z","timestamp":1767225600000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2026,1,1]],"date-time":"2026-01-01T00:00:00Z","timestamp":1767225600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2026]]},"DOI":"10.1007\/978-3-032-28079-4_14","type":"book-chapter","created":{"date-parts":[[2026,6,11]],"date-time":"2026-06-11T15:31:25Z","timestamp":1781191885000},"page":"311-333","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":0,"title":["Adversarial Robustness of\u00a0Time-Series Classification for\u00a0Crystal Collimator Alignment"],"prefix":"10.1007","author":[{"ORCID":"https:\/\/orcid.org\/0009-0006-2890-2809","authenticated-orcid":false,"given":"Xaver","family":"Fink","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0009-0005-9318-7285","authenticated-orcid":false,"given":"Borja","family":"Fern\u00e1ndez Adiego","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-2092-1977","authenticated-orcid":false,"given":"Daniele","family":"Mirarchi","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-1294-2076","authenticated-orcid":false,"given":"Eloise","family":"Matheson","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"\u00c1lvaro","family":"Garc\u00eda Gonz\u00e1les","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Gianmarco","family":"Ricci","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-6143-1926","authenticated-orcid":false,"given":"Joost-Pieter","family":"Katoen","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2026,6,12]]},"reference":[{"key":"14_CR1","unstructured":"Athalye, A., Engstrom, L., Ilyas, A., Kwok, K.: Synthesizing robust adversarial examples. In: ICML. Proceedings of Machine Learning Research, vol. 80, pp. 284\u2013293. PMLR (2018)"},{"key":"14_CR2","unstructured":"Bagnall, A.J., et al.: The UEA multivariate time series classification archive (2018). CoRR abs\/1811.00075 (2018)"},{"key":"14_CR3","doi-asserted-by":"crossref","unstructured":"Bai, T., Luo, J., Zhao, J., Wen, B., Wang, Q.: Recent advances in adversarial training for adversarial robustness. In: IJCAI, pp. 4312\u20134321. ijcai.org (2021)","DOI":"10.24963\/ijcai.2021\/591"},{"key":"14_CR4","doi-asserted-by":"crossref","unstructured":"Bartocci, E., et al.: Specification-based monitoring of cyber-physical systems: a survey on theory, tools and applications. In: Lectures on Runtime Verification, Lecture Notes in Computer Science, vol. 10457, pp. 135\u2013175. Springer (2018)","DOI":"10.1007\/978-3-319-75632-5_5"},{"key":"14_CR5","doi-asserted-by":"crossref","unstructured":"Belkhouja, T., Doppa, J.R.: adversarial framework with certified robustness for time-series domain via statistical features (Extended Abstract). In: IJCAI, pp. 6845\u20136850. ijcai.org (2023)","DOI":"10.24963\/ijcai.2023\/767"},{"key":"14_CR6","doi-asserted-by":"publisher","unstructured":"Benedikt, M., et al.: Future circular collider feasibility study report volume 2: accelerators, technical infrastructure and safety. Technical Report, CERN Document Server (2025). https:\/\/doi.org\/10.17181\/CERN.EBAY.7W4X, http:\/\/cds.cern.ch\/record\/2928793","DOI":"10.17181\/CERN.EBAY.7W4X"},{"issue":"3","key":"14_CR7","doi-asserted-by":"crossref","first-page":"329","DOI":"10.1007\/s10009-023-00703-4","volume":"25","author":"C Brix","year":"2023","unstructured":"Brix, C., M\u00fcller, M.N., Bak, S., Johnson, T.T., Liu, C.: First three years of the international verification of neural networks competition (VNN-COMP). Int. J. Softw. Tools Technol. Transf. 25(3), 329\u2013339 (2023)","journal-title":"Int. J. Softw. Tools Technol. Transf."},{"key":"14_CR8","doi-asserted-by":"crossref","unstructured":"Carlini, N., Wagner, D.A.: Audio adversarial examples: targeted attacks on speech-to-text. In: IEEE Symposium on Security and PrivacyWorkshops, pp. 1\u20137. IEEE Computer Society (2018)","DOI":"10.1109\/SPW.2018.00009"},{"key":"14_CR9","unstructured":"Cohen, J., Rosenfeld, E., Kolter, J.Z.: certified adversarial robustness via randomized smoothing. In: ICML. Proceedings of Machine Learning Research, vol. 97, pp. 1310\u20131320. PMLR (2019)"},{"key":"14_CR10","doi-asserted-by":"publisher","unstructured":"Dau, H.A., et al.: The UCR time series archive. IEEE\/CAA J. Automatica Sinica 6(6), 1293\u20131305 (2019). https:\/\/doi.org\/10.1109\/JAS.2019.1911747, https:\/\/ieeexplore.ieee.org\/document\/8894743\/","DOI":"10.1109\/JAS.2019.1911747"},{"key":"14_CR11","doi-asserted-by":"crossref","unstructured":"Ding, D., Zhang, M., Feng, F., Huang, Y., Jiang, E., Yang, M.: Black-box adversarial attack on time series classification. In: AAAI, pp. 7358\u20137368. AAAI Press (2023)","DOI":"10.1609\/aaai.v37i6.25896"},{"key":"14_CR12","doi-asserted-by":"crossref","unstructured":"Dix, M., et al.: Measuring the robustness of ML models against data quality issues in industrial time series data. In: INDIN, pp. 1\u20138.IEEE (2023","DOI":"10.1109\/INDIN51400.2023.10218129"},{"key":"14_CR13","doi-asserted-by":"crossref","unstructured":"Eykholt, K., et al.: Robust physical-world attacks on deep learning visual classification. In: CVPR, pp. 1625\u20131634. Computer Vision Foundation\/IEEE Computer Society (2018)","DOI":"10.1109\/CVPR.2018.00175"},{"key":"14_CR14","unstructured":"Goodfellow, I.J., Shlens, J., Szegedy, C.: explaining and harnessing adversarial examples. In: ICLR (Poster) (2015)"},{"key":"14_CR15","doi-asserted-by":"publisher","unstructured":"Han, X., Hu, Y., Foschini, L., Chinitz, L., Jankelson, L., Ranganath, R.: Deep learning models for electrocardiograms are susceptible to adversarial attack. Nat. Med. 26(3), 360\u2013363 (2020). https:\/\/doi.org\/10.1038\/s41591-020-0791-x, https:\/\/www.nature.com\/articles\/s41591-020-0791-x","DOI":"10.1038\/s41591-020-0791-x"},{"key":"14_CR16","doi-asserted-by":"publisher","unstructured":"Holzer, E., et al.: Beam loss monitoring system for the LHC. In: IEEE Nuclear Science Symposium Conference Record, 2005, vol.\u00a02, pp. 1052\u20131056 (2005). https:\/\/doi.org\/10.1109\/NSSMIC.2005.1596433, https:\/\/ieeexplore.ieee.org\/document\/1596433\/","DOI":"10.1109\/NSSMIC.2005.1596433"},{"key":"14_CR17","doi-asserted-by":"crossref","unstructured":"Jiang, L., Ma, X., Chen, S., Bailey, J., Jiang, Y.G.: Black-box adversarial attacks on video recognition models. In: ACM Multimedia, pp. 864\u2013872. ACM (2019)","DOI":"10.1145\/3343031.3351088"},{"key":"14_CR18","doi-asserted-by":"crossref","unstructured":"Katz, G., Barrett, C.W., Dill, D.L., Julian, K., Kochenderfer, M.J.: Reluplex: an efficient smt solver for verifying deep neural networks. In: CAV (1). Lecture Notes in Computer Science, vol. 10426, pp. 97\u2013117. Springer (2017)","DOI":"10.1007\/978-3-319-63387-9_5"},{"key":"14_CR19","doi-asserted-by":"crossref","first-page":"109133","DOI":"10.1109\/ACCESS.2020.3001287","volume":"8","author":"H Li","year":"2020","unstructured":"Li, H., Cui, Y., Wang, S., Liu, J., Qin, J., Yang, Y.: Multivariate financial time-series prediction with certified robustness. IEEE Access 8, 109133\u2013109143 (2020)","journal-title":"IEEE Access"},{"key":"14_CR20","doi-asserted-by":"crossref","unstructured":"Lopez-Miguel, I.D., Adiego, B.F., Ghawash, F., Vi\u00f1uela, E.B.: Verification of neural networks meets plc code: an LHC cooling tower control system at CERN. In: EANN. Communications in Computer and Information Science, vol. 1826, pp. 420\u2013432. Springer (2023)","DOI":"10.1007\/978-3-031-34204-2_35"},{"key":"14_CR21","unstructured":"Madry, A., Makelov, A., Schmidt, L., Tsipras, D., Vladu, A.: Towards deep learning models resistant to adversarial attacks. In: ICLR (Poster). OpenReview.net (2018)"},{"key":"14_CR22","doi-asserted-by":"publisher","unstructured":"Malara, A., ATLAS and CMS collaborations: exploring jets: substructure and flavour tagging in CMS and ATLAS. In: Proceedings of 12th Large Hadron Collider Physics Conference \u2014 PoS(LHCP2024), p.\u00a0150. Sissa Medialab, Boston, USA (2024). https:\/\/doi.org\/10.22323\/1.478.0150, https:\/\/pos.sissa.it\/478\/150","DOI":"10.22323\/1.478.0150"},{"key":"14_CR23","doi-asserted-by":"crossref","unstructured":"Mode, G.R., Hoque, K.A.: Adversarial examples in deep learning for multivariate time series regression. In: AIPR, pp. 1\u201310. IEEE (2020)","DOI":"10.1109\/AIPR50011.2020.9425190"},{"key":"14_CR24","doi-asserted-by":"crossref","unstructured":"Mohapatra, J., Weng, T.W., Chen, P.Y., Liu, S., Daniel, L.: Towards verifying robustness of neural networks against a family of semantic perturbations. In: CVPR, pp. 241\u2013249. Computer Vision Foundation\/IEEE (2020)","DOI":"10.1109\/CVPR42600.2020.00032"},{"key":"14_CR25","doi-asserted-by":"publisher","unstructured":"Nicolae, M.I., et al.: Adversarial robustness toolbox v1.0.0 (2019). https:\/\/doi.org\/10.48550\/arXiv.1807.01069, http:\/\/arxiv.org\/abs\/1807.01069, arXiv:1807.01069","DOI":"10.48550\/arXiv.1807.01069"},{"key":"14_CR26","doi-asserted-by":"crossref","unstructured":"Papernot, N., McDaniel, P.D., Swami, A., Harang, R.E.: Crafting adversarial input sequences for recurrent neural networks. In: MILCOM, pp. 49\u201354. IEEE (2016)","DOI":"10.1109\/MILCOM.2016.7795300"},{"key":"14_CR27","doi-asserted-by":"crossref","unstructured":"Paterson, C., Wu, H., Grese, J., Calinescu, R., Pasareanu, C.S., Barrett, C.W.: DeepCert: verification of contextually relevant robustness for neural network image classifiers. In: SAFECOMP, LNCS, vol. 12852, pp. 3\u201317. Springer (2021)","DOI":"10.1007\/978-3-030-83903-1_5"},{"issue":"53","key":"14_CR28","doi-asserted-by":"crossref","first-page":"2607","DOI":"10.21105\/joss.02607","volume":"5","author":"J Rauber","year":"2020","unstructured":"Rauber, J., Zimmermann, R., Bethge, M., Brendel, W.: Foolbox native: fast adversarial attacks to benchmark the robustness of machine learning models in PyTorch, tensorflow, and JAX. J. Open Source Softw. 5(53), 2607 (2020)","journal-title":"J. Open Source Softw."},{"key":"14_CR29","doi-asserted-by":"publisher","unstructured":"Redaelli, S., et al.: Crystal collimation of heavy-ion beams at the large hadron collider. Phys. Rev. Accelerators Beams 28(5), 051001 (2025). https:\/\/doi.org\/10.1103\/PhysRevAccelBeams.28.051001, https:\/\/link.aps.org\/doi\/10.1103\/PhysRevAccelBeams.28.051001","DOI":"10.1103\/PhysRevAccelBeams.28.051001"},{"key":"14_CR30","doi-asserted-by":"publisher","unstructured":"Ricci, G., et al.: Machine learning based crystal collimator alignment optimization. Phys. Rev. Accelerators Beams 27(9), 093001 (2024). https:\/\/doi.org\/10.1103\/PhysRevAccelBeams.27.093001, https:\/\/link.aps.org\/doi\/10.1103\/PhysRevAccelBeams.27.093001","DOI":"10.1103\/PhysRevAccelBeams.27.093001"},{"key":"14_CR31","doi-asserted-by":"publisher","unstructured":"Sarkar, U., CMS Collaboration: run 3 performance and advances in heavy-flavor jet tagging in CMS. In: Proceedings of 42nd International Conference on High Energy Physics \u2014 PoS(ICHEP2024), p.\u00a0992. Sissa Medialab, Prague, Czech Republic (2025). https:\/\/doi.org\/10.22323\/1.476.0992, https:\/\/pos.sissa.it\/476\/992","DOI":"10.22323\/1.476.0992"},{"key":"14_CR32","unstructured":"Szegedy, C., et al.: Intriguing properties of neural networks. In: ICLR (Poster) (2014)"},{"key":"14_CR33","unstructured":"Uesato, J., O\u2019Donoghue, B., Kohli, P., Oord, A.V.D.: Adversarial risk and the dangers of evaluating against weak attacks. In: ICML. Proceedings of Machine Learning Research, vol.\u00a080, pp. 5032\u20135041. PMLR (2018)"},{"key":"14_CR34","doi-asserted-by":"publisher","unstructured":"Wang, S., et al.: Beta-CROWN: efficient bound propagation with per-neuron split constraints for complete and incomplete neural network robustness verification (2021). https:\/\/doi.org\/10.48550\/arXiv.2103.06624, http:\/\/arxiv.org\/abs\/2103.06624, arXiv:2103.06624 [cs]","DOI":"10.48550\/arXiv.2103.06624"},{"key":"14_CR35","doi-asserted-by":"crossref","unstructured":"Wang, Z., Yan, W., Oates, T.: Time series classification from scratch with deep neural networks: a strong baseline. In: IJCNN, pp. 1578\u20131585. IEEE (2017)","DOI":"10.1109\/IJCNN.2017.7966039"},{"key":"14_CR36","doi-asserted-by":"crossref","unstructured":"Wu, H., et al.: Marabou 2.0: a versatile formal analyzer of neural networks. In: CAV (2). LNCS, vol. 14682, pp. 249\u2013264. Springer (2024)","DOI":"10.1007\/978-3-031-65630-9_13"},{"key":"14_CR37","doi-asserted-by":"crossref","first-page":"794","DOI":"10.1016\/j.ins.2021.11.007","volume":"587","author":"T Wu","year":"2022","unstructured":"Wu, T., Wang, X., Qiao, S., Xian, X., Liu, Y., Zhang, L.: Small perturbations are enough: adversarial attacks on time series prediction. Inf. Sci. 587, 794\u2013812 (2022)","journal-title":"Inf. Sci."},{"key":"14_CR38","doi-asserted-by":"crossref","unstructured":"Z\u00fcgner, D., Akbarnejad, A., G\u00fcnnemann, S.: Adversarial attacks on neural networks for graph data. In: IJCAI, pp. 6246\u20136250. ijcai.org (2019)","DOI":"10.24963\/ijcai.2019\/872"}],"container-title":["Lecture Notes in Computer Science","NASA Formal Methods"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-032-28079-4_14","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,6,11]],"date-time":"2026-06-11T15:31:35Z","timestamp":1781191895000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-032-28079-4_14"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2026]]},"ISBN":["9783032280787","9783032280794"],"references-count":38,"URL":"https:\/\/doi.org\/10.1007\/978-3-032-28079-4_14","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"value":"0302-9743","type":"print"},{"value":"1611-3349","type":"electronic"}],"subject":[],"published":{"date-parts":[[2026]]},"assertion":[{"value":"12 June 2026","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"NFM","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"NASA Formal Methods Symposium","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Los Angeles, CA","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"USA","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2026","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"5 May 2026","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"7 May 2026","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"18","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"nfm2026","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"https:\/\/nfm2026.github.io\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}