{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,27]],"date-time":"2026-07-27T11:13:00Z","timestamp":1785150780621,"version":"3.55.0"},"publisher-location":"Cham","reference-count":34,"publisher":"Springer International Publishing","isbn-type":[{"value":"9783319926230","type":"print"},{"value":"9783319926247","type":"electronic"}],"license":[{"start":{"date-parts":[[2018,1,1]],"date-time":"2018-01-01T00:00:00Z","timestamp":1514764800000},"content-version":"unspecified","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2018]]},"DOI":"10.1007\/978-3-319-92624-7_9","type":"book-chapter","created":{"date-parts":[[2018,9,4]],"date-time":"2018-09-04T06:46:11Z","timestamp":1536043571000},"page":"211-234","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":11,"title":["Vulnerability Detection and Analysis in Adversarial Deep Learning"],"prefix":"10.1007","author":[{"given":"Yi","family":"Shi","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Yalin E.","family":"Sagduyu","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Kemal","family":"Davaslioglu","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Renato","family":"Levy","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2018,9,5]]},"reference":[{"key":"9_CR1","unstructured":"Stratosphere IPS (2018). https:\/\/www.stratosphereips.org . Accessed 15 Mar 2018"},{"key":"9_CR2","doi-asserted-by":"crossref","unstructured":"Silver D, Huang A, Maddison CJ, Guez A, Sifre L, Van Den Driessche G, Schrittwieser J, Antonoglou I, Panneershelvam V, Lanctot M, et al (2016) Mastering the game of Go with deep neural networks and tree search. Nature 529(7587), 484\u2013489","DOI":"10.1038\/nature16961"},{"key":"9_CR3","unstructured":"Goodfellow IJ, Shlens J, Szegedy C (2014) Explaining and harnessing adversarial examples. arXiv:1412.6572"},{"key":"9_CR4","doi-asserted-by":"crossref","unstructured":"Huang L, Joseph AD, Nelson B, Rubinstein BI, Tygar J (2011) Adversarial machine learning. In: Proceedings of the 4th ACM workshop on security and artificial intelligence. ACM, pp 43\u201358","DOI":"10.1145\/2046684.2046692"},{"key":"9_CR5","doi-asserted-by":"crossref","unstructured":"Miller B, Kantchelian A, Afroz S, Bachwani R, Dauber E, Huang L, Tschantz MC, Joseph AD, Tygar JD (2014) Adversarial active learning. In: Proceedings of the 2014 workshop on artificial intelligent and security workshop. ACM, pp 3\u201314","DOI":"10.1145\/2666652.2666656"},{"key":"9_CR6","doi-asserted-by":"crossref","unstructured":"Laskov P, Lippmann R (2010) Machine learning in adversarial environments. Springer, Berlin","DOI":"10.1007\/s10994-010-5207-6"},{"key":"9_CR7","doi-asserted-by":"crossref","unstructured":"Shi Y, Sagduyu Y, Grushin A (2017) How to steal a machine learning classifier with deep learning. In: 2017 IEEE international symposium on technologies for homeland security (HST). IEEE","DOI":"10.1109\/THS.2017.7943475"},{"key":"9_CR8","doi-asserted-by":"crossref","unstructured":"Shi Y, Sagduyu YE (2017) Evasion and causative attacks with adversarial deep learning. In: MILCOM 2017-2017 IEEE military communications conference (MILCOM). IEEE, pp 243\u2013248","DOI":"10.1109\/MILCOM.2017.8170807"},{"key":"9_CR9","unstructured":"Goodfellow I, Pouget-Abadie J, Mirza M, Xu B, Warde-Farley D, Ozair S, Courville A, Bengio Y (2014) Generative adversarial nets. In: Advances in neural information processing systems, pp 2672\u20132680"},{"key":"9_CR10","doi-asserted-by":"crossref","unstructured":"Hornik K, Stinchcombe M, White H (1989) Multilayer feedforward networks are universal approximators. Neural Netw 2(5):359\u2013366","DOI":"10.1016\/0893-6080(89)90020-8"},{"key":"9_CR11","doi-asserted-by":"crossref","unstructured":"Cybenko G (1989) Approximation by superpositions of a sigmoidal function. Math Control Signals Syst 2(4):303\u2013314","DOI":"10.1007\/BF02551274"},{"key":"9_CR12","unstructured":"LeCun Y et al (1989) Generalization and network design strategies. Connectionism in perspective, pp 143\u2013155"},{"key":"9_CR13","doi-asserted-by":"crossref","unstructured":"Hochreiter S, Schmidhuber J (1997) Long short-term memory. Neural Comput 9(8):1735\u20131780","DOI":"10.1162\/neco.1997.9.8.1735"},{"key":"9_CR14","doi-asserted-by":"crossref","unstructured":"Rumelhart DE, Hinton GE, Williams RJ (1985) Learning internal representations by error propagation. Technical report, University of California, San Diego, La Jolla, Institute for Cognitive Science","DOI":"10.21236\/ADA164453"},{"key":"9_CR15","unstructured":"Microsoft Cognitive Toolkit (CNTK) (2018). https:\/\/docs.microsoft.com\/en-us\/cognitive-toolkit . Accessed 15 Mar 2018"},{"key":"9_CR16","unstructured":"Abadi M, Agarwal A, Barham P, Brevdo E, Chen Z, Citro C, Corrado GS, Davis A, Dean J, Devin M et al (2016) Tensorflow: large-scale machine learning on heterogeneous distributed systems. arXiv:1603.04467"},{"key":"9_CR17","doi-asserted-by":"crossref","unstructured":"Barreno M, Nelson B, Sears R, Joseph AD, Tygar JD (2006) Can machine learning be secure? In: Proceedings of the 2006 ACM symposium on information, computer and communications security. ACM, pp 16\u201325","DOI":"10.1145\/1128817.1128824"},{"key":"9_CR18","doi-asserted-by":"crossref","unstructured":"Ateniese G, Mancini LV, Spognardi A, Villani A, Vitali D, Felici G (2015) Hacking smart machines with smarter ones: how to extract meaningful data from machine learning classifiers. Int J Secur Netw 10(3):137\u2013150","DOI":"10.1504\/IJSN.2015.071829"},{"key":"9_CR19","doi-asserted-by":"crossref","unstructured":"Fredrikson M, Jha S, Ristenpart T (2015) Model inversion attacks that exploit confidence information and basic countermeasures. In: Proceedings of the 22nd ACM SIGSAC conference on computer and communications security. ACM, pp 1322\u20131333","DOI":"10.1145\/2810103.2813677"},{"key":"9_CR20","unstructured":"Tram\u00e8r F, Zhang F, Juels A, Reiter MK, Ristenpart T (2016) Stealing machine learning models via prediction APIs. In: USENIX security symposium, pp 601\u2013618"},{"key":"9_CR21","doi-asserted-by":"crossref","unstructured":"Biggio B, Corona I, Maiorca D, Nelson B, \u0160rndi\u0107 N, Laskov P, Giacinto G, Roli F (2013) Evasion attacks against machine learning at test time. In: Joint European conference on machine learning and knowledge discovery in databases. Springer, Berlin, pp 387\u2013402","DOI":"10.1007\/978-3-642-40994-3_25"},{"key":"9_CR22","doi-asserted-by":"crossref","unstructured":"Papernot N, McDaniel P, Goodfellow I, Jha S, Celik ZB, Swami A (2016) Practical black-box attacks against deep learning systems using adversarial examples","DOI":"10.1145\/3052973.3053009"},{"key":"9_CR23","unstructured":"Kurakin A, Goodfellow I, Bengio S (2016) Adversarial examples in the physical world. arXiv:1607.02533"},{"key":"9_CR24","doi-asserted-by":"crossref","unstructured":"Papernot N, McDaniel P, Jha S, Fredrikson M, Celik ZB, Swami A (2016) The limitations of deep learning in adversarial settings. In: 2016 IEEE European symposium on security and privacy (EuroS&P). IEEE, pp 372\u2013387","DOI":"10.1109\/EuroSP.2016.36"},{"key":"9_CR25","doi-asserted-by":"crossref","unstructured":"Pi L, Lu Z, Sagduyu Y, Chen S (2016) Defending active learning against adversarial inputs in automated document classification. In: 2016 IEEE global conference on signal and information processing (GlobalSIP). IEEE, pp 257\u2013261","DOI":"10.1109\/GlobalSIP.2016.7905843"},{"key":"9_CR26","doi-asserted-by":"crossref","unstructured":"Papernot N, McDaniel P, Goodfellow I, Jha S, Celik ZB, Swami A (2017) Practical black-box attacks against machine learning. In: Proceedings of the 2017 ACM on asia conference on computer and communications security. ACM, pp 506\u2013519","DOI":"10.1145\/3052973.3053009"},{"key":"9_CR27","unstructured":"Flower Image Dataset (2018). https:\/\/www.tensorflow.org\/tutorials\/image_retraining . Accessed 15 Mar 2018"},{"key":"9_CR28","unstructured":"Szegedy C, Zaremba W, Sutskever I, Bruna J, Erhan D, Goodfellow I, Fergus R (2013) Intriguing properties of neural networks. arXiv:1312.6199"},{"key":"9_CR29","doi-asserted-by":"crossref","unstructured":"Nguyen A, Yosinski J, Clune J (2015) Deep neural networks are easily fooled: high confidence predictions for unrecognizable images. In: Proceedings of the IEEE conference on computer vision and pattern recognition, pp 427\u2013436","DOI":"10.1109\/CVPR.2015.7298640"},{"key":"9_CR30","doi-asserted-by":"crossref","unstructured":"Moosavi\u00a0Dezfooli SM, Fawzi A, Frossard P (2016) Deepfool: a simple and accurate method to fool deep neural networks. In: Proceedings of 2016 IEEE conference on computer vision and pattern recognition (CVPR)","DOI":"10.1109\/CVPR.2016.282"},{"key":"9_CR31","doi-asserted-by":"crossref","unstructured":"Haykin S (2005) Cognitive radio: brain-empowered wireless communications. IEEE J Sel Areas Commun 23(2):201\u2013220","DOI":"10.1109\/JSAC.2004.839380"},{"key":"9_CR32","doi-asserted-by":"crossref","unstructured":"Soltani S, Sagduyu Y, Shi Y, Li J, Feldman J, Matyjas J (2015) Distributed cognitive radio network architecture, SDR implementation and emulation testbed. In: MILCOM 2015-2015 IEEE military communications conference. IEEE, pp 438\u2013443","DOI":"10.1109\/MILCOM.2015.7357482"},{"key":"9_CR33","doi-asserted-by":"crossref","unstructured":"Davaslioglu K, Sagduyu YE (2018) Generative adversarial learning for spectrum sensing. In: Accepted to IEEE international conference on communications (ICC). IEEE","DOI":"10.1109\/ICC.2018.8422223"},{"key":"9_CR34","doi-asserted-by":"crossref","unstructured":"Shi Y, Sagduyu YE, Erpek T, Davaslioglu K, Lu Z, Li JH (2018) Adversarial deep learning for cognitive radio security: jamming attack and defense strategies. In: IEEE international communications conference workshop on promises and challenges of machine learning in communication networks. IEEE","DOI":"10.1109\/ICCW.2018.8403655"}],"container-title":["Computer Communications and Networks","Guide to Vulnerability Analysis for Computer Networks and Systems"],"original-title":[],"link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-319-92624-7_9","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2019,10,23]],"date-time":"2019-10-23T11:37:01Z","timestamp":1571830621000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-319-92624-7_9"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2018]]},"ISBN":["9783319926230","9783319926247"],"references-count":34,"URL":"https:\/\/doi.org\/10.1007\/978-3-319-92624-7_9","relation":{},"ISSN":["1617-7975","2197-8433"],"issn-type":[{"value":"1617-7975","type":"print"},{"value":"2197-8433","type":"electronic"}],"subject":[],"published":{"date-parts":[[2018]]}}}