{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,3,26]],"date-time":"2025-03-26T10:52:54Z","timestamp":1742986374638,"version":"3.40.3"},"publisher-location":"Singapore","reference-count":38,"publisher":"Springer Nature Singapore","isbn-type":[{"type":"print","value":"9789819787012"},{"type":"electronic","value":"9789819787029"}],"license":[{"start":{"date-parts":[[2025,1,1]],"date-time":"2025-01-01T00:00:00Z","timestamp":1735689600000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2025,1,1]],"date-time":"2025-01-01T00:00:00Z","timestamp":1735689600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2025]]},"DOI":"10.1007\/978-981-97-8702-9_4","type":"book-chapter","created":{"date-parts":[[2025,2,7]],"date-time":"2025-02-07T14:48:28Z","timestamp":1738939708000},"page":"47-61","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":0,"title":["Enhancing Output Diversity Improves Conjugate Gradient-Based Adversarial Attacks"],"prefix":"10.1007","author":[{"ORCID":"https:\/\/orcid.org\/0000-0003-4696-2881","authenticated-orcid":false,"given":"Keiichiro","family":"Yamamura","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0009-0001-7216-2143","authenticated-orcid":false,"given":"Issa","family":"Oe","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-4979-5276","authenticated-orcid":false,"given":"Hiroki","family":"Ishikura","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-8549-641X","authenticated-orcid":false,"given":"Katsuki","family":"Fujisawa","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2025,2,8]]},"reference":[{"key":"4_CR1","unstructured":"Addepalli, S., Jain, S., Radhakrishnan, V.B.: Efficient and effective augmentation strategy for adversarial training. In: NeurIPS (2022)"},{"issue":"8","key":"4_CR2","doi-asserted-by":"publisher","first-page":"1188","DOI":"10.3390\/electronics9081188","volume":"9","author":"I Adjabi","year":"2020","unstructured":"Adjabi, I., Ouahabi, A., Benzaoui, A., Taleb-Ahmed, A.: Past, present, and future of face recognition: a review. Electronics 9(8), 1188 (2020)","journal-title":"Electronics"},{"key":"4_CR3","doi-asserted-by":"crossref","unstructured":"Akiba, T., Sano, S., Yanase, T., Ohta, T., Koyama, M.: Optuna: a next-generation hyperparameter optimization framework. In: SIGKDD (2019)","DOI":"10.1145\/3292500.3330701"},{"key":"4_CR4","unstructured":"Andriushchenko, M., Flammarion, N.: Understanding and improving fast adversarial training. In: NeurIPS (2020)"},{"key":"4_CR5","doi-asserted-by":"crossref","unstructured":"Bai, Y., Anderson, B.G., Kim, A., Sojoudi, S.: Improving the accuracy-robustness trade-off of classifiers via adaptive smoothing. arXiv preprint arXiv:2301.12554 (2023)","DOI":"10.1137\/23M1564560"},{"key":"4_CR6","doi-asserted-by":"crossref","unstructured":"Carlini, N., Wagner, D.: Audio adversarial examples: targeted attacks on speech-to-text. In: SPW (2018)","DOI":"10.1109\/SPW.2018.00009"},{"key":"4_CR7","doi-asserted-by":"crossref","unstructured":"Carlini, N., Wagner, D.A.: Towards evaluating the robustness of neural networks. In: SP (2017)","DOI":"10.1109\/SP.2017.49"},{"key":"4_CR8","unstructured":"Croce, F., et al.: Robustbench: a standardized adversarial robustness benchmark. In: NeurIPS (2021)"},{"key":"4_CR9","unstructured":"Croce, F., Hein, M.: Reliable evaluation of adversarial robustness with an ensemble of diverse parameter-free attacks. In: ICML (2020)"},{"key":"4_CR10","unstructured":"Cui, J., Tian, Z., Zhong, Z., Qi, X., Yu, B., Zhang, H.: Decoupled Kullback-Leibler divergence loss. arXiv preprint arXiv:2305.13948 (2023)"},{"key":"4_CR11","doi-asserted-by":"crossref","unstructured":"Debenedetti, E., Sehwag, V., Mittal, P.: A light recipe to train robust vision transformers. In: SaTML (2023)","DOI":"10.1109\/SaTML54575.2023.00024"},{"key":"4_CR12","unstructured":"Goodfellow, I.J., Shlens, J., Szegedy, C.: Explaining and harnessing adversarial examples. In: ICLR (2015)"},{"key":"4_CR13","unstructured":"Gowal, S., Qin, C., Uesato, J., Mann, T.A., Kohli, P.: Uncovering the limits of adversarial training against norm-bounded adversarial examples. CoRR abs\/2010.03593 (2020)"},{"key":"4_CR14","unstructured":"Gowal, S., Rebuffi, S., Wiles, O., Stimberg, F., Calian, D.A., Mann, T.A.: Improving robustness using generated data. In: NeurIPS (2021)"},{"key":"4_CR15","unstructured":"Gowal, S., Uesato, J., Qin, C., Huang, P., Mann, T.A., Kohli, P.: An alternative surrogate loss for pgd-based adversarial testing. CoRR abs\/1910.09338 (2019)"},{"key":"4_CR16","doi-asserted-by":"publisher","DOI":"10.1016\/j.array.2021.100057","volume":"10","author":"A Gupta","year":"2021","unstructured":"Gupta, A., Anpalagan, A., Guan, L., Khwaja, A.S.: Deep learning for object detection and scene perception in self-driving cars: survey, challenges, and open issues. Array 10, 100057 (2021)","journal-title":"Array"},{"key":"4_CR17","doi-asserted-by":"crossref","unstructured":"Huang, S., Lu, Z., Deb, K., Boddeti, V.N.: Revisiting residual networks for adversarial robustness: an architectural perspective. arXiv preprint arXiv:2212.11005 (2022)","DOI":"10.1109\/CVPR52729.2023.00793"},{"key":"4_CR18","unstructured":"Krizhevsky, A., Hinton, G., et\u00a0al.: Learning multiple layers of features from tiny images (2009)"},{"key":"4_CR19","doi-asserted-by":"crossref","unstructured":"Li, M., Deng, C., Li, T., Yan, J., Gao, X., Huang, H.: Towards transferable targeted attack. In: CVPR (2020)","DOI":"10.1109\/CVPR42600.2020.00072"},{"key":"4_CR20","unstructured":"Lin, W., Lucas, K., Bauer, L., Reiter, M.K., Sharif, M.: Constrained gradient descent: a powerful and principled evasion attack against neural networks. In: ICML (2022)"},{"key":"4_CR21","unstructured":"Liu, C., et al.: A comprehensive study on robustness of image classification models: benchmarking and rethinking. arXiv preprint arXiv:2302.14301 (2023)"},{"key":"4_CR22","unstructured":"Liu, R., Lin, Y., Yang, X., Ng, S.H., Divakaran, D.M., Dong, J.S.: Inferring phishing intention via webpage appearance and dynamics: a deep vision based approach. In: USENIX Security (2022)"},{"key":"4_CR23","doi-asserted-by":"crossref","unstructured":"Liu, S., Peng, F., Tang, K.: Reliable robustness evaluation via automatically constructed attack ensembles. In: AAAI (2023)","DOI":"10.1609\/aaai.v37i7.26064"},{"key":"4_CR24","doi-asserted-by":"crossref","unstructured":"Liu, Y., Cheng, Y., Gao, L., Liu, X., Zhang, Q., Song, J.: Practical evaluation of adversarial robustness via adaptive auto attack. In: CVPR (2022)","DOI":"10.1109\/CVPR52688.2022.01468"},{"key":"4_CR25","unstructured":"Madry, A., Makelov, A., Schmidt, L., Tsipras, D., Vladu, A.: Towards deep learning models resistant to adversarial attacks. In: ICLR (2018)"},{"key":"4_CR26","doi-asserted-by":"crossref","unstructured":"Mao, X., Chen, Y., Wang, S., Su, H., He, Y., Xue, H.: Composite adversarial attacks. In: AAAI (2021)","DOI":"10.1609\/aaai.v35i10.17075"},{"key":"4_CR27","unstructured":"Pang, T., Lin, M., Yang, X., Zhu, J., Yan, S.: Robustness and accuracy could be reconcilable by (proper) definition. In: ICML (2022)"},{"key":"4_CR28","unstructured":"Peng, S., et al.: Robust principles: architectural design principles for adversarially robust CNNs. In: BMVC (2023)"},{"key":"4_CR29","unstructured":"Rebuffi, S., Gowal, S., Calian, D.A., Stimberg, F., Wiles, O., Mann, T.A.: Data augmentation can improve robustness. In: NeurIPS (2021)"},{"issue":"3","key":"4_CR30","doi-asserted-by":"publisher","first-page":"211","DOI":"10.1007\/s11263-015-0816-y","volume":"115","author":"O Russakovsky","year":"2015","unstructured":"Russakovsky, O., et al.: ImageNet large scale visual recognition challenge. Int. J. Comput. Vis. 115(3), 211\u2013252 (2015). https:\/\/doi.org\/10.1007\/s11263-015-0816-y","journal-title":"Int. J. Comput. Vis."},{"key":"4_CR31","unstructured":"Sehwag, V., et al.: Robust learning meets generative models: can proxy distributions improve adversarial robustness? In: ICLR (2022)"},{"key":"4_CR32","unstructured":"Singh, N.D., Croce, F., Hein, M.: Revisiting adversarial training for imagenet: architectures, training and generalization across threat models. arXiv preprint arXiv:2303.01870 (2023)"},{"key":"4_CR33","unstructured":"Szegedy, C., et al.: Intriguing properties of neural networks. In: ICLR (2014)"},{"key":"4_CR34","unstructured":"Tashiro, Y., Song, Y., Ermon, S.: Diversity can be transferred: output diversification for white- and black-box attacks. In: NeurIPS (2020)"},{"key":"4_CR35","unstructured":"Wang, Z., Pang, T., Du, C., Lin, M., Liu, W., Yan, S.: Better diffusion models further improve adversarial training. In: ICML (2023)"},{"key":"4_CR36","unstructured":"Wong, E., Rice, L., Kolter, J.Z.: Fast is better than free: revisiting adversarial training. In: ICLR (2020)"},{"key":"4_CR37","unstructured":"Yamamura, K., et al.: Diversified adversarial attacks based on conjugate gradient method. In: ICML (2022)"},{"key":"4_CR38","doi-asserted-by":"crossref","unstructured":"Yao, Q., He, Z., Han, H., Zhou, S.K.: Miss the point: targeted adversarial attack on multiple landmark detection. In: MICCAI (2020)","DOI":"10.1007\/978-3-030-59719-1_67"}],"container-title":["Lecture Notes in Computer Science","Pattern Recognition and Artificial Intelligence"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-981-97-8702-9_4","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,2,7]],"date-time":"2025-02-07T14:48:50Z","timestamp":1738939730000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-981-97-8702-9_4"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025]]},"ISBN":["9789819787012","9789819787029"],"references-count":38,"URL":"https:\/\/doi.org\/10.1007\/978-981-97-8702-9_4","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2025]]},"assertion":[{"value":"8 February 2025","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"The authors declare no competing interests relevant to the contents of this article.","order":1,"name":"Ethics","group":{"name":"EthicsHeading","label":"Disclosure of Interests"}},{"value":"ICPRAI","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"International Conference on Pattern Recognition and Artificial Intelligence","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Jeju Island","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Korea (Republic of)","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2024","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"18 June 2024","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"21 June 2024","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"icprai2024","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"https:\/\/brain.korea.ac.kr\/icprai2024\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}