{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,1,19]],"date-time":"2026-01-19T07:57:14Z","timestamp":1768809434641,"version":"3.49.0"},"reference-count":53,"publisher":"Springer Science and Business Media LLC","issue":"14","license":[{"start":{"date-parts":[[2024,3,2]],"date-time":"2024-03-02T00:00:00Z","timestamp":1709337600000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2024,3,2]],"date-time":"2024-03-02T00:00:00Z","timestamp":1709337600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"funder":[{"name":"National Natural Science Foundation Joint Fund Key Project","award":["U21A20485"],"award-info":[{"award-number":["U21A20485"]}]}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["Neural Comput &amp; Applic"],"published-print":{"date-parts":[[2024,5]]},"DOI":"10.1007\/s00521-024-09438-y","type":"journal-article","created":{"date-parts":[[2024,3,2]],"date-time":"2024-03-02T12:02:07Z","timestamp":1709380927000},"page":"8109-8123","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":5,"title":["On the adversarial robustness of generative autoencoders in the latent space"],"prefix":"10.1007","volume":"36","author":[{"given":"Mingfei","family":"Lu","sequence":"first","affiliation":[]},{"ORCID":"https:\/\/orcid.org\/0000-0003-1710-3818","authenticated-orcid":false,"given":"Badong","family":"Chen","sequence":"additional","affiliation":[]}],"member":"297","published-online":{"date-parts":[[2024,3,2]]},"reference":[{"key":"9438_CR1","unstructured":"Kingma DP, Welling M (2013) Auto-encoding variational bayes. arXiv preprint arXiv:1312.6114"},{"key":"9438_CR2","unstructured":"Rezende DJ, Mohamed S, Wierstra D (2014) Stochastic backpropagation and approximate inference in deep generative models. In: International conference on machine learning, pp 1278\u20131286. PMLR"},{"key":"9438_CR3","unstructured":"Makhzani A, Shlens J, Jaitly N, Goodfellow I, Frey B (2015) Adversarial autoencoders. arXiv preprint arXiv:1511.05644"},{"key":"9438_CR4","unstructured":"Ghosh P, Sajjadi MS, Vergari A, Black M (2020) From variational to deterministic autoencoders. In: 8th international conference on learning representations, pp 1\u201325"},{"key":"9438_CR5","unstructured":"Zhou L, Cai C, Gao Y, Su S, Wu J (2018) Variational autoencoder for low bit-rate image compression. In: Proceedings of the IEEE conference on computer vision and pattern recognition workshops, pp 2617\u20132620"},{"key":"9438_CR6","doi-asserted-by":"crossref","unstructured":"Liu Z-S, Siu W-C, Wang L-W (2021) Variational autoencoder for reference based image super-resolution. In: Proceedings of the IEEE\/CVF conference on computer vision and pattern recognition, pp 516\u2013525","DOI":"10.1109\/CVPRW53098.2021.00063"},{"key":"9438_CR7","doi-asserted-by":"publisher","first-page":"59","DOI":"10.1016\/j.ins.2019.03.066","volume":"490","author":"M Jang","year":"2019","unstructured":"Jang M, Seo S, Kang P (2019) Recurrent neural network-based semantic variational autoencoder for sequence-to-sequence learning. Inf Sci 490:59\u201373","journal-title":"Inf Sci"},{"key":"9438_CR8","doi-asserted-by":"crossref","unstructured":"Semeniuta S, Severyn A, Barth E (2017) A hybrid convolutional variational autoencoder for text generation. In: Proceedings of the 2017 conference on empirical methods in natural language processing, pp 627\u2013637","DOI":"10.18653\/v1\/D17-1066"},{"issue":"3","key":"9438_CR9","doi-asserted-by":"publisher","first-page":"1177","DOI":"10.1109\/TNNLS.2020.2980749","volume":"32","author":"L Li","year":"2020","unstructured":"Li L, Yan J, Wang H, Jin Y (2020) Anomaly detection of time series with smoothness-inducing sequential variational auto-encoder. IEEE Transact Neural Netw Learn Syst 32(3):1177\u20131191","journal-title":"IEEE Transact Neural Netw Learn Syst"},{"issue":"4","key":"9438_CR10","doi-asserted-by":"publisher","first-page":"610","DOI":"10.3390\/math10040610","volume":"10","author":"X-B Jin","year":"2022","unstructured":"Jin X-B, Gong W-T, Kong J-L, Bai Y-T, Su T-L (2022) Pfvae: a planar flow-based variational auto-encoder prediction model for time series data. Mathematics 10(4):610","journal-title":"Mathematics"},{"key":"9438_CR11","unstructured":"Schott L, Rauber J, Bethge M, Brendel W (2019) Towards the first adversarially robust neural network model on mnist. In: Seventh international conference on learning representations (ICLR 2019), pp 1\u201316"},{"key":"9438_CR12","unstructured":"Willetts MJ, Camuto A, Rainforth T, Roberts S, Holmes CC (2020) Improving vaes\u2019 robustness to adversarial attack. In: International conference on learning representations, pp 1\u201310"},{"key":"9438_CR13","unstructured":"Leeb F, Bauer S, Sch\u00f6lkopf B (2021) Interventional assays for the latent space of autoencoders. arXiv preprint arXiv:2106.16091"},{"key":"9438_CR14","unstructured":"Rezende DJ, Viola F (2018) Taming vaes. arXiv preprint arXiv:1810.00597"},{"key":"9438_CR15","unstructured":"Connor M, Canal G, Rozell C (2021) Variational autoencoder with learned latent structure. In: International conference on artificial intelligence and statistics, pp 2359\u20132367. PMLR"},{"key":"9438_CR16","unstructured":"Lucas J, Tucker G, Grosse R, Norouzi M (2019) Understanding posterior collapse in generative latent variable models. In: Deep generative models for highly structured data, DGS@ICLR 2019 Workshop, pp. 1\u201316"},{"issue":"10","key":"9438_CR17","doi-asserted-by":"publisher","first-page":"2498","DOI":"10.1162\/NECO_a_00181","volume":"23","author":"E Doi","year":"2011","unstructured":"Doi E, Lewicki MS (2011) Characterization of minimum error linear coding with sensory and neural noise. Neural Comput 23(10):2498\u20132510","journal-title":"Neural Comput"},{"key":"9438_CR18","doi-asserted-by":"crossref","unstructured":"Liu J, Zhao H, Ma D, Mei K, Wei J (2022) Opening the black box of deep neural networks in physical layer communication. In: 2022 IEEE wireless communications and networking conference (WCNC), pp 435\u2013440. IEEE","DOI":"10.1109\/WCNC51071.2022.9771675"},{"key":"9438_CR19","doi-asserted-by":"crossref","unstructured":"Kos J, Fischer I, Song D (2018) Adversarial examples for generative models. In: 2018 IEEE security and privacy workshops (spw), pp 36\u201342. IEEE","DOI":"10.1109\/SPW.2018.00014"},{"key":"9438_CR20","doi-asserted-by":"crossref","unstructured":"Ghosh P, Losalka A, Black MJ (2019) Resisting adversarial attacks using gaussian mixture variational autoencoders. In: Proceedings of the AAAI conference on artificial intelligence, vol 33, pp 541\u2013548","DOI":"10.1609\/aaai.v33i01.3301541"},{"key":"9438_CR21","doi-asserted-by":"crossref","unstructured":"Sun C, Chen S, Cai J, Huang X (2020) Type i attack for generative models. In: 2020 IEEE international conference on image processing (ICIP), pp 593\u2013597. IEEE","DOI":"10.1109\/ICIP40778.2020.9191032"},{"key":"9438_CR22","unstructured":"Kuzina A, Welling M, Tomczak JM (2021) Diagnosing vulnerability of variational auto-encoders to adversarial attacks. arXiv preprint arXiv:2103.06701"},{"key":"9438_CR23","doi-asserted-by":"crossref","unstructured":"Osada G, Ahsan B, Bora RP, Nishide T (2020) Regularization with latent space virtual adversarial training. In: European conference on computer vision, pp 565\u2013581. Springer","DOI":"10.1007\/978-3-030-58452-8_33"},{"key":"9438_CR24","doi-asserted-by":"crossref","unstructured":"Yu Y, Gao X, Xu C-Z (2021) Lafeat: Piercing through adversarial defenses with latent features. In: Proceedings of the IEEE\/CVF conference on computer vision and pattern recognition, pp 5735\u20135745","DOI":"10.1109\/CVPR46437.2021.00568"},{"key":"9438_CR25","doi-asserted-by":"crossref","unstructured":"Park GY, Lee SW (2021) Reliably fast adversarial training via latent adversarial perturbation. In: Proceedings of the IEEE\/CVF international conference on computer vision, pp 7758\u20137767","DOI":"10.1109\/ICCV48922.2021.00766"},{"key":"9438_CR26","unstructured":"Higgins I, Matthey L, Pal A, Burgess C, Glorot X, Botvinick M, Mohamed S, Lerchner A (2017) Beta-vae: Learning basic visual concepts with a constrained variational framework. In: 5th International conference on learning representations, ICLR 2017\u2013conference track proceedings, pp 1\u201322"},{"key":"9438_CR27","unstructured":"Chen RT, Li X, Grosse RB, Duvenaud DK (2018) Isolating sources of disentanglement in variational autoencoders. Adv Neural Inf Process Syst 31"},{"key":"9438_CR28","unstructured":"Tschannen M, Bachem O, Lucic M (2018) Recent advances in autoencoder-based representation learning. arXiv preprint arXiv:1812.05069"},{"issue":"1","key":"9438_CR29","first-page":"723","volume":"13","author":"A Gretton","year":"2012","unstructured":"Gretton A, Borgwardt KM, Rasch MJ, Sch\u00f6lkopf B, Smola A (2012) A kernel two-sample test. J Mach Learn Res 13(1):723\u2013773","journal-title":"J Mach Learn Res"},{"key":"9438_CR30","doi-asserted-by":"publisher","DOI":"10.1007\/978-1-4419-1570-2","volume-title":"Information theoretic learning: Renyi\u2019s entropy and kernel perspectives","author":"JC Principe","year":"2010","unstructured":"Principe JC (2010) Information theoretic learning: Renyi\u2019s entropy and kernel perspectives. Springer, NY"},{"key":"9438_CR31","doi-asserted-by":"crossref","unstructured":"Santana E, Emigh M, Principe JC (2016) Information theoretic-learning auto-encoder. In: 2016 international joint conference on neural networks (IJCNN), pp 3296\u20133301. IEEE","DOI":"10.1109\/IJCNN.2016.7727620"},{"key":"9438_CR32","doi-asserted-by":"publisher","first-page":"104","DOI":"10.1016\/j.neunet.2019.05.003","volume":"117","author":"S Yu","year":"2019","unstructured":"Yu S, Principe JC (2019) Understanding autoencoders with information theoretic concepts. Neural Netw 117:104\u2013123","journal-title":"Neural Netw"},{"key":"9438_CR33","doi-asserted-by":"publisher","first-page":"515","DOI":"10.1109\/TSP.2020.3045206","volume":"69","author":"Y Jin","year":"2020","unstructured":"Jin Y, Lai L (2020) On the adversarial robustness of hypothesis testing. IEEE Transact Signal Process 69:515\u2013530","journal-title":"IEEE Transact Signal Process"},{"issue":"3","key":"9438_CR34","doi-asserted-by":"publisher","first-page":"117","DOI":"10.1007\/BF01891203","volume":"2","author":"P Royston","year":"1992","unstructured":"Royston P (1992) Approximating the shapiro-wilk w-test for non-normality. Stat Comput 2(3):117\u2013119","journal-title":"Stat Comput"},{"key":"9438_CR35","doi-asserted-by":"crossref","unstructured":"Oussidi A, Elhassouny A (2018) Deep generative models: survey. In: 2018 International conference on intelligent systems and computer vision (ISCV), pp 1\u20138. IEEE","DOI":"10.1109\/ISACV.2018.8354080"},{"key":"9438_CR36","doi-asserted-by":"crossref","unstructured":"Ding Y, Shi Y, Chen B, Lin C, Lu H, Li J, Tang R, Wang D (2021) Semi-deterministic and contrastive variational graph autoencoder for recommendation. In: Proceedings of the 30th ACM international conference on information & knowledge management, pp 382\u2013391","DOI":"10.1145\/3459637.3482390"},{"key":"9438_CR37","doi-asserted-by":"crossref","unstructured":"Wu C, Wang PZ, Wang WY (2019) Couple-VAE: mitigating the encoder-decoder incompatibility in variational text modeling with coupled deterministic networks. ICLR 2019 under review, https:\/\/openreview.net\/","DOI":"10.18653\/v1\/2020.acl-main.316"},{"key":"9438_CR38","unstructured":"Polykovskiy D, Vetrov D (2020) Deterministic decoding for discrete data in variational autoencoders. In: International conference on artificial intelligence and statistics, pp 3046\u20133056. PMLR"},{"key":"9438_CR39","first-page":"8753","volume":"33","author":"S Norouzi","year":"2020","unstructured":"Norouzi S, Fleet DJ, Norouzi M (2020) Exemplar vae: linking generative models, nearest neighbor retrieval, and data augmentation. Adv Neural Inf Process Syst 33:8753\u20138764","journal-title":"Adv Neural Inf Process Syst"},{"key":"9438_CR40","unstructured":"Gondim-Ribeiro G, Tabacof P, Valle E (2018) Adversarial attacks on variational autoencoders. arXiv preprint arXiv:1806.04646"},{"key":"9438_CR41","unstructured":"Berthelot D, Raffel C, Roy A, Goodfellow I (2018) Understanding and improving interpolation in autoencoders via an adversarial regularizer. In: International conference on learning representations, pp 1\u201319"},{"key":"9438_CR42","unstructured":"Madry A, Makelov A, Schmidt L, Tsipras D, Vladu A (2018) Towards deep learning models resistant to adversarial attacks. In: International conference on learning representations, pp 1\u201328"},{"key":"9438_CR43","doi-asserted-by":"crossref","unstructured":"Hore A, Ziou D (2010) Image quality metrics: Psnr vs. ssim. In: 2010 20th international conference on pattern recognition, pp 2366\u20132369. IEEE","DOI":"10.1109\/ICPR.2010.579"},{"issue":"4","key":"9438_CR44","doi-asserted-by":"publisher","first-page":"600","DOI":"10.1109\/TIP.2003.819861","volume":"13","author":"Z Wang","year":"2004","unstructured":"Wang Z, Bovik AC, Sheikh HR, Simoncelli EP (2004) Image quality assessment: from error visibility to structural similarity. IEEE Transact Image Process 13(4):600\u2013612","journal-title":"IEEE Transact Image Process"},{"key":"9438_CR45","unstructured":"Salimans T, Goodfellow I, Zaremba W, Cheung V, Radford A, Chen X (2016) Improved techniques for training gans. Adv Neural Inf Process Syst 29"},{"key":"9438_CR46","unstructured":"Heusel M, Ramsauer H, Unterthiner T, Nessler B, Hochreiter S (2017) Gans trained by a two time-scale update rule converge to a local nash equilibrium. Adv Neural Inf Process Syst 30"},{"key":"9438_CR47","doi-asserted-by":"crossref","unstructured":"Zhang R, Isola P, Efros AA, Shechtman E, Wang O (2018) The unreasonable effectiveness of deep features as a perceptual metric. In: Proceedings of the IEEE conference on computer vision and pattern recognition, pp 586\u2013595","DOI":"10.1109\/CVPR.2018.00068"},{"issue":"11","key":"9438_CR48","doi-asserted-by":"publisher","first-page":"2278","DOI":"10.1109\/5.726791","volume":"86","author":"Y LeCun","year":"1998","unstructured":"LeCun Y, Bottou L, Bengio Y, Haffner P (1998) Gradient-based learning applied to document recognition. Proc IEEE 86(11):2278\u20132324","journal-title":"Proc IEEE"},{"key":"9438_CR49","unstructured":"Xiao H, Rasul K, Vollgraf R (2017) Fashion-mnist: a novel image dataset for benchmarking machine learning algorithms. arXiv preprint arXiv:1708.07747"},{"key":"9438_CR50","doi-asserted-by":"crossref","unstructured":"Liu Z, Luo P, Wang X, Tang X (2015) Deep learning face attributes in the wild. In: Proceedings of the IEEE international conference on computer vision, pp 3730\u20133738","DOI":"10.1109\/ICCV.2015.425"},{"issue":"11","key":"9438_CR51","first-page":"2579","volume":"9","author":"L Maaten","year":"2008","unstructured":"Maaten L, Hinton G (2008) Visualizing data using T-SNE. J Mach Learn Res 9(11):2579\u20132605","journal-title":"J Mach Learn Res"},{"issue":"8","key":"9438_CR52","doi-asserted-by":"publisher","first-page":"1798","DOI":"10.1109\/TPAMI.2013.50","volume":"35","author":"Y Bengio","year":"2013","unstructured":"Bengio Y, Courville A, Vincent P (2013) Representation learning: a review and new perspectives. IEEE Transact Pattern Anal Mach Intell 35(8):1798\u20131828","journal-title":"IEEE Transact Pattern Anal Mach Intell"},{"key":"9438_CR53","unstructured":"Willetts M, Camuto A, Roberts S, Holmes C (2019) Disentangling improves vaes\u2019 robustness to adversarial attacks. arXiv preprint arXiv:1906.00230, 2019. 2"}],"container-title":["Neural Computing and Applications"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s00521-024-09438-y.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/article\/10.1007\/s00521-024-09438-y\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s00521-024-09438-y.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,4,13]],"date-time":"2024-04-13T20:19:43Z","timestamp":1713039583000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/s00521-024-09438-y"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024,3,2]]},"references-count":53,"journal-issue":{"issue":"14","published-print":{"date-parts":[[2024,5]]}},"alternative-id":["9438"],"URL":"https:\/\/doi.org\/10.1007\/s00521-024-09438-y","relation":{},"ISSN":["0941-0643","1433-3058"],"issn-type":[{"value":"0941-0643","type":"print"},{"value":"1433-3058","type":"electronic"}],"subject":[],"published":{"date-parts":[[2024,3,2]]},"assertion":[{"value":"20 July 2023","order":1,"name":"received","label":"Received","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"15 January 2024","order":2,"name":"accepted","label":"Accepted","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"2 March 2024","order":3,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}},{"order":1,"name":"Ethics","group":{"name":"EthicsHeading","label":"Declarations"}},{"value":"The authors declare that they have no conflict of interest.","order":2,"name":"Ethics","group":{"name":"EthicsHeading","label":"Conflict of interest"}}]}}