{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,3,31]],"date-time":"2025-03-31T21:45:28Z","timestamp":1743457528711},"reference-count":76,"publisher":"Springer Science and Business Media LLC","issue":"7","license":[{"start":{"date-parts":[[2021,1,3]],"date-time":"2021-01-03T00:00:00Z","timestamp":1609632000000},"content-version":"tdm","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"},{"start":{"date-parts":[[2021,1,3]],"date-time":"2021-01-03T00:00:00Z","timestamp":1609632000000},"content-version":"vor","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["Multimed Tools Appl"],"published-print":{"date-parts":[[2021,3]]},"DOI":"10.1007\/s11042-020-10261-5","type":"journal-article","created":{"date-parts":[[2021,1,3]],"date-time":"2021-01-03T15:02:30Z","timestamp":1609686150000},"page":"10985-11014","update-policy":"http:\/\/dx.doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":7,"title":["An adversarial attack detection method in deep neural networks based on re-attacking approach"],"prefix":"10.1007","volume":"80","author":[{"given":"Morteza Ali","family":"Ahmadi","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Rouhollah","family":"Dianat","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Hossein","family":"Amirkhani","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2021,1,3]]},"reference":[{"key":"10261_CR1","unstructured":"Athalye A, Carlini N, Wagner D (2018) Obfuscated gradients give a false sense of security: circumventing defenses to adversarial examples. arXiv preprint arXiv:180200420"},{"key":"10261_CR2","doi-asserted-by":"crossref","unstructured":"Behjati M, Moosavi-Dezfooli S-M, Baghshah MS, Frossard P (2019) Universal adversarial attacks on text classifiers. In: ICASSP 2019\u20132019 IEEE International Conference on Acoustics, Speech and Signal Processing (ICASSP). IEEE, pp 7345\u20137349","DOI":"10.1109\/ICASSP.2019.8682430"},{"key":"10261_CR3","doi-asserted-by":"crossref","unstructured":"Bhagoji AN, Cullina D, Sitawarin C, Mittal P (2018) Enhancing robustness of machine learning systems via data transformations. In: Information Sciences and Systems (CISS), 52nd Annual Conference on, 2018. IEEE, pp 1\u20135","DOI":"10.1109\/CISS.2018.8362326"},{"key":"10261_CR4","unstructured":"Buckman J, Roy A, Raffel C, Goodfellow I (2018) Thermometer encoding: one hot way to resist adversarial examples."},{"key":"10261_CR5","doi-asserted-by":"crossref","unstructured":"Cao X, Gong NZ (2017) Mitigating evasion attacks to deep neural networks via region-based classification. In: Proceedings of the 33rd Annual Computer Security Applications Conference. ACM, pp 278\u2013287","DOI":"10.1145\/3134600.3134606"},{"key":"10261_CR6","doi-asserted-by":"crossref","unstructured":"Carlini N, Wagner D (2017) Towards evaluating the robustness of neural networks. In: Security and Privacy (SP), 2017 IEEE Symposium on. IEEE, pp 39\u201357","DOI":"10.1109\/SP.2017.49"},{"key":"10261_CR7","doi-asserted-by":"crossref","unstructured":"Carlini N, Wagner D (2017) Adversarial examples are not easily detected: Bypassing ten detection methods. In: Proceedings of the 10th ACM Workshop on Artificial Intelligence and Security. ACM, pp 3\u201314","DOI":"10.1145\/3128572.3140444"},{"issue":"3","key":"10261_CR8","doi-asserted-by":"publisher","first-page":"2815","DOI":"10.1007\/s11042-018-5853-4","volume":"78","author":"F Carrara","year":"2019","unstructured":"Carrara F, Falchi F, Caldelli R, Amato G, Becarelli R (2019) Adversarial image detection in deep neural networks. Multimed Tools Appl 78(3):2815\u20132835","journal-title":"Multimed Tools Appl"},{"key":"10261_CR9","unstructured":"Chakraborty A, Alam M, Dey V, Chattopadhyay A, Mukhopadhyay D (2018) Adversarial attacks and defences: a survey. arXiv preprint arXiv:181000069"},{"key":"10261_CR10","doi-asserted-by":"publisher","first-page":"326","DOI":"10.1016\/j.cose.2017.11.007","volume":"73","author":"S Chen","year":"2018","unstructured":"Chen S, Xue M, Fan L, Hao S, Xu L, Zhu H, Li B (2018) Automated poisoning attacks and defenses in malware detection systems: an adversarial machine learning approach. Comput Security 73:326\u2013344","journal-title":"Comput Security"},{"key":"10261_CR11","unstructured":"Chollet F (2015) Keras. GitHub. https:\/\/github.com\/fchollet\/keras."},{"key":"10261_CR12","unstructured":"Dhillon GS, Azizzadenesheli K, Lipton ZC, Bernstein J, Kossaifi J, Khanna A, Anandkumar A (2018) Stochastic activation pruning for robust adversarial defense. arXiv preprint arXiv:180301442"},{"key":"10261_CR13","unstructured":"Eykholt K, Evtimov I, Fernandes E, Li B, Rahmati A, Xiao C, Prakash A, Kohno T, Song D (2017) Robust physical-world attacks on deep learning models. arXiv preprint arXiv:170708945"},{"issue":"14","key":"10261_CR14","doi-asserted-by":"publisher","first-page":"20409","DOI":"10.1007\/s11042-019-7353-6","volume":"78","author":"W Fan","year":"2019","unstructured":"Fan W, Sun G, Su Y, Liu Z, Lu X (2019) Integration of statistical detector and Gaussian noise injection detector for adversarial example detection in deep neural networks. Multimed Tools Appl 78(14):20409\u201320429","journal-title":"Multimed Tools Appl"},{"key":"10261_CR15","unstructured":"Fawzi A, Moosavi-Dezfooli S-M, Frossard P Robustness of classifiers: from adversarial to random noise. In: Advances in Neural Information Processing Systems, 2016. pp. 1632\u20131640"},{"key":"10261_CR16","unstructured":"Feinman R, Curtin RR, Shintre S, Gardner AB (2017) Detecting adversarial samples from artifacts. arXiv preprint arXiv:170300410"},{"key":"10261_CR17","doi-asserted-by":"crossref","unstructured":"Folz J, Palacio S, Hees J (2020) Dengel A Adversarial defense based on structure-to-signal autoencoders. In: 2020 IEEE winter conference on applications of computer vision (WACV). IEEE 3568\u20133577","DOI":"10.1109\/WACV45572.2020.9093310"},{"key":"10261_CR18","unstructured":"Ghiasi A, Shafahi A, Goldstein T 2020 Breaking certified defenses: semantic adversarial examples with spoofed robustness certificates. In: International Conference on Learning Representations."},{"key":"10261_CR19","first-page":"22","volume-title":"Ratha NK DNDNet: reconfiguring CNN for adversarial robustness","author":"A Goel","year":"2020","unstructured":"Goel A, Agarwal A, Vatsa M, Singh R (2020) Ratha NK DNDNet: reconfiguring CNN for adversarial robustness. Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition Workshops, In, pp 22\u201323"},{"key":"10261_CR20","unstructured":"Gong Z, Wang W, Ku W-S (2017) Adversarial and clean data are not twins. arXiv preprint arXiv:170404960"},{"key":"10261_CR21","volume-title":"Szegedy C explaining and harnessing adversarial examples","author":"IJ Goodfellow","year":"2015","unstructured":"Goodfellow IJ, Shlens J (2015) Szegedy C explaining and harnessing adversarial examples. In, ICLR"},{"key":"10261_CR22","doi-asserted-by":"crossref","unstructured":"Graves A, Mohamed A-R, Hinton G (2013) Speech recognition with deep recurrent neural networks. In: 2013 IEEE international conference on acoustics, speech and signal processing. IEEE, pp 6645\u20136649","DOI":"10.1109\/ICASSP.2013.6638947"},{"key":"10261_CR23","unstructured":"Grosse K, Manoharan P, Papernot N, Backes M, McDaniel P (2017) On the (statistical) detection of adversarial examples. arXiv preprint arXiv:170206280"},{"key":"10261_CR24","doi-asserted-by":"publisher","first-page":"372","DOI":"10.1016\/j.cose.2019.06.012","volume":"86","author":"AS Hashemi","year":"2019","unstructured":"Hashemi AS, Mozaffari S (2019) Secure deep neural networks using adversarial image generation and training with noise-GAN. Comput Securit 86:372\u2013387","journal-title":"Comput Securit"},{"key":"10261_CR25","volume-title":"ICLR","author":"D Hendrycks","year":"2016","unstructured":"Hendrycks D, Gimpel K (2016) Early methods for detecting adversarial images. In: ICLR"},{"key":"10261_CR26","first-page":"1635","volume-title":"Weinberger KQ a new defense against adversarial images: turning a weakness into a strength","author":"S Hu","year":"2019","unstructured":"Hu S, Yu T, Guo C, Chao W-L (2019) Weinberger KQ a new defense against adversarial images: turning a weakness into a strength. Advances in Neural Information Processing Systems, In, pp 1635\u20131646"},{"key":"10261_CR27","doi-asserted-by":"publisher","first-page":"247","DOI":"10.1016\/j.cose.2016.11.016","volume":"65","author":"H Kandi","year":"2017","unstructured":"Kandi H, Mishra D, Gorthi SRS (2017) Exploring the learning capabilities of convolutional neural networks for robust image watermarking. Comput Securit 65:247\u2013268","journal-title":"Comput Securit"},{"key":"10261_CR28","unstructured":"Krizhevsky A, Hinton G (2009) Learning multiple layers of features from tiny images. Citeseer,"},{"key":"10261_CR29","first-page":"1097","volume-title":"Advances in neural information processing systems","author":"A Krizhevsky","year":"2012","unstructured":"Krizhevsky A, Sutskever I (2012) Hinton GE Imagenet classification with deep convolutional neural networks. In: Advances in neural information processing systems, pp 1097\u20131105"},{"key":"10261_CR30","unstructured":"Kurakin A, Goodfellow I, Bengio S (2016) Adversarial machine learning at scale. arXiv preprint arXiv:161101236"},{"key":"10261_CR31","unstructured":"Kurakin A, Goodfellow I, Bengio S (2016) Adversarial examples in the physical world. arXiv preprint arXiv:160702533"},{"issue":"11","key":"10261_CR32","doi-asserted-by":"publisher","first-page":"2278","DOI":"10.1109\/5.726791","volume":"86","author":"Y LeCun","year":"1998","unstructured":"LeCun Y, Bottou L, Bengio Y, Haffner P (1998) Gradient-based learning applied to document recognition. Proc IEEE 86(11):2278\u20132324","journal-title":"Proc IEEE"},{"key":"10261_CR33","doi-asserted-by":"crossref","unstructured":"Li X, Li F Adversarial examples detection in deep networks with convolutional filter statistics. In: Proceedings of the IEEE International Conference on Computer Vision, 2017. pp. 5764\u20135772","DOI":"10.1109\/ICCV.2017.615"},{"key":"10261_CR34","unstructured":"Li J, Monroe W, Jurafsky D (2016) Understanding neural networks through representation erasure. arXiv preprint arXiv:161208220"},{"key":"10261_CR35","unstructured":"Li S, Ye D, Jiang S, Liu C, Niu X, Luo X (2018) Anti-steganalysis for image on convolutional neural networks. Multimed Tools Appl:1\u201317"},{"key":"10261_CR36","unstructured":"Lin Z, Shi Y, Xue Z (2018) Idsgan: generative adversarial networks for attack generation against intrusion detection. arXiv preprint arXiv:180902077"},{"issue":"1\u20133","key":"10261_CR37","doi-asserted-by":"publisher","first-page":"503","DOI":"10.1007\/BF01589116","volume":"45","author":"DC Liu","year":"1989","unstructured":"Liu DC, Nocedal J (1989) On the limited memory BFGS method for large scale optimization. Math Program 45(1\u20133):503\u2013528","journal-title":"Math Program"},{"issue":"22","key":"10261_CR38","doi-asserted-by":"publisher","first-page":"24009","DOI":"10.1007\/s11042-016-4178-4","volume":"76","author":"J-X Liu","year":"2017","unstructured":"Liu J-X, X-b W, Yuan L-M, Xu H-X (2017) A robust approach of watermarking in contourlet domain based on probabilistic neural network. Multimed Tools Appl 76(22):24009\u201324026","journal-title":"Multimed Tools Appl"},{"key":"10261_CR39","unstructured":"Ma X, Li B, Wang Y, Erfani SM, Wijewickrema S, Schoenebeck G, Song D, Houle ME, Bailey J (2018) Characterizing adversarial subspaces using local intrinsic dimensionality. arXiv preprint arXiv:180102613"},{"key":"10261_CR40","unstructured":"Madry A, Makelov A, Schmidt L, Tsipras D, Vladu A (2017) Towards deep learning models resistant to adversarial attacks. arXiv preprint arXiv:170606083"},{"key":"10261_CR41","doi-asserted-by":"crossref","unstructured":"Mao X, Chen Y, Li Y, He Y, Xue H (2020) Learning to Characterize Adversarial Subspaces. In: ICASSP 2020\u20132020 IEEE International Conference on Acoustics, Speech and Signal Processing (ICASSP). IEEE, pp 2438\u20132442","DOI":"10.1109\/ICASSP40776.2020.9052933"},{"key":"10261_CR42","doi-asserted-by":"publisher","first-page":"101537","DOI":"10.1016\/j.cose.2019.05.014","volume":"88","author":"F Menet","year":"2020","unstructured":"Menet F, Berthier P, Gagnon M, Fernandez JM (2020) Spartan networks: self-feature-squeezing neural networks for increased robustness in adversarial settings. Comput Security 88:101537","journal-title":"Comput Security"},{"key":"10261_CR43","doi-asserted-by":"crossref","unstructured":"Meng D, Chen H (2017)Magnet: a two-pronged defense against adversarial examples. In: Proceedings of the 2017 ACM SIGSAC conference on computer and communications security. ACM 135\u2013147","DOI":"10.1145\/3133956.3134057"},{"key":"10261_CR44","first-page":"2574","volume-title":"Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition","author":"S-M Moosavi-Dezfooli","year":"2016","unstructured":"Moosavi-Dezfooli S-M, Fawzi A (2016) Frossard P Deepfool: a simple and accurate method to fool deep neural networks. In: Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition, pp 2574\u20132582"},{"key":"10261_CR45","doi-asserted-by":"crossref","unstructured":"Mundra K, Modpur R, Chattopadhyay A, Kar IN (2020) Adversarial Image Detection in Cyber-Physical Systems. In: Proceedings of the 1st ACM Workshop on Autonomous and Intelligent Mobile Systems. pp 1\u20135","DOI":"10.1145\/3377283.3377285"},{"issue":"11","key":"10261_CR46","doi-asserted-by":"publisher","first-page":"2640","DOI":"10.1109\/TIFS.2017.2718479","volume":"12","author":"M Osadchy","year":"2017","unstructured":"Osadchy M, Hernandez-Castro J, Gibson S, Dunkelman O, P\u00e9rez-Cabo D (2017) No bot expects the DeepCAPTCHA! Introducing immutable adversarial examples, with applications to CAPTCHA generation. IEEE Trans Inform Forensics Securit 12(11):2640\u20132653","journal-title":"IEEE Trans Inform Forensics Securit"},{"key":"10261_CR47","doi-asserted-by":"crossref","unstructured":"Papernot N, McDaniel P, Jha S, Fredrikson M, Celik ZB, Swami A (2016) The limitations of deep learning in adversarial settings. In: Security and Privacy (EuroS&P), IEEE European Symposium on, 2016. IEEE, pp 372\u2013387","DOI":"10.1109\/EuroSP.2016.36"},{"key":"10261_CR48","doi-asserted-by":"crossref","unstructured":"Papernot N, McDaniel P, Jha S, Fredrikson M, Celik ZB, Swami A (2016) The limitations of deep learning in adversarial settings. In: 2016 IEEE European Symposium on Security and Privacy (EuroS&P). IEEE, pp 372\u2013387","DOI":"10.1109\/EuroSP.2016.36"},{"key":"10261_CR49","unstructured":"Paszke A, Gross S, Chintala S, Chanan G, Yang E, DeVito Z, Lin Z, Desmaison A, Antiga L, Lerer A (2017) Automatic differentiation in pytorch. Paper presented at the NIPS Autodiff Workshop,"},{"key":"10261_CR50","doi-asserted-by":"crossref","unstructured":"Pei X, Yu L, Tian S (2020) AMalNet: a deep learning framework based on graph convolutional networks for malware detection. Comput Security:101792","DOI":"10.1016\/j.cose.2020.101792"},{"issue":"12","key":"10261_CR51","doi-asserted-by":"publisher","first-page":"15751","DOI":"10.1007\/s11042-018-7031-0","volume":"78","author":"M Rashid","year":"2019","unstructured":"Rashid M, Khan MA, Sharif M, Raza M, Sarfraz MM, Afza F (2019) Object detection and classification: a joint selection and fusion strategy of deep convolutional neural network and SIFT point features. Multimed Tools Appl 78(12):15751\u201315777","journal-title":"Multimed Tools Appl"},{"key":"10261_CR52","unstructured":"Rauber J, Brendel W, Bethge M (2017) Foolbox v0. 8.0: a python toolbox to benchmark the robustness of machine learning models. arXiv preprint arXiv:1707041315"},{"key":"10261_CR53","first-page":"91","volume-title":"Advances in neural information processing systems","author":"S Ren","year":"2015","unstructured":"Ren S, He K, Girshick R (2015) Sun J faster r-cnn: towards real-time object detection with region proposal networks. In: Advances in neural information processing systems, pp 91\u201399"},{"key":"10261_CR54","doi-asserted-by":"crossref","unstructured":"Ren Z, Chen G, Lu W (2019) Malware visualization methods based on deep convolution neural networks. Multimedia Tools Appl:1\u201319","DOI":"10.1007\/s11042-019-08310-9"},{"key":"10261_CR55","unstructured":"Roth K, Kilcher Y, Hofmann T (2019) The odds are odd: a statistical test for detecting adversarial examples. In: International Conference on Machine Learning."},{"issue":"3","key":"10261_CR56","doi-asserted-by":"publisher","first-page":"211","DOI":"10.1007\/s11263-015-0816-y","volume":"115","author":"O Russakovsky","year":"2015","unstructured":"Russakovsky O, Deng J, Su H, Krause J, Satheesh S, Ma S, Huang Z, Karpathy A, Khosla A, Bernstein M (2015) Imagenet large scale visual recognition challenge. Int J Comput Vis 115(3):211\u2013252","journal-title":"Int J Comput Vis"},{"key":"10261_CR57","unstructured":"Samangouei P, Kabkab M (2018) Chellappa R defense-GAN: protecting classifiers against adversarial attacks using generative models. In: International Conference on Learning Representations."},{"key":"10261_CR58","doi-asserted-by":"crossref","unstructured":"Sharma M, Sheet D, Biswas P (2020) Spatiotemporal deep networks for detecting abnormality in videos. Multimed Tools Appl:1\u201332","DOI":"10.1007\/s11042-020-08786-w"},{"key":"10261_CR59","unstructured":"Simonyan K, Zisserman A (2014) Very deep convolutional networks for large-scale image recognition. arXiv preprint arXiv:14091556"},{"key":"10261_CR60","unstructured":"Sitawarin C, Wagner D (2019) Defending against adversarial examples with K-nearest neighbor. arXiv preprint arXiv:190609525"},{"issue":"1","key":"10261_CR61","doi-asserted-by":"publisher","first-page":"25","DOI":"10.1109\/LOCS.2020.2990897","volume":"3","author":"KS Sivamani","year":"2020","unstructured":"Sivamani KS, Sahay R, El Gamal A (2020) Non-intrusive detection of adversarial deep learning attacks via observer networks. IEEE Lett Comp Soc 3(1):25\u201328","journal-title":"IEEE Lett Comp Soc"},{"key":"10261_CR62","unstructured":"Szegedy C, Zaremba W, Sutskever I, Bruna J, Erhan D, Goodfellow I, Fergus R (2013) Intriguing properties of neural networks. arXiv preprint arXiv:13126199"},{"key":"10261_CR63","doi-asserted-by":"crossref","unstructured":"Szegedy C, Vanhoucke V, Ioffe S, Shlens J, Wojna Z 2016 Rethinking the inception architecture for computer vision. In: Proceedings of the IEEE conference on computer vision and pattern recognition. pp. 2818\u20132826","DOI":"10.1109\/CVPR.2016.308"},{"key":"10261_CR64","doi-asserted-by":"crossref","unstructured":"Taheri R, Javidan R, Pooranian Z (2020) Adversarial android malware detection for mobile multimedia applications in IoT environments. Multimed Tools Appl:1\u201317","DOI":"10.1007\/s11042-020-08804-x"},{"key":"10261_CR65","unstructured":"Tang S, Huang X, Chen M, Sun C, Yang J (2019) Adversarial attack type I: cheat classifiers by significant changes. IEEE Trans Pattern Anal Mach Intell:1"},{"key":"10261_CR66","doi-asserted-by":"crossref","unstructured":"Theagarajan R, Bhanu B 2020 Defending black box facial recognition classifiers against adversarial attacks. In: Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition Workshops. pp. 812\u2013813","DOI":"10.1109\/CVPRW50498.2020.00414"},{"key":"10261_CR67","doi-asserted-by":"crossref","unstructured":"Wang B, Zou F, Liu X (2020) New algorithm to generate the adversarial example of image. Optik:164477","DOI":"10.1016\/j.ijleo.2020.164477"},{"key":"10261_CR68","doi-asserted-by":"crossref","unstructured":"Wang D, Dong L, Wang R, Yan D, Wang J (2020) Targeted speech adversarial example generation with generative adversarial network. IEEE Access","DOI":"10.1109\/ACCESS.2020.3006130"},{"key":"10261_CR69","unstructured":"Xie C, Wang J, Zhang Z, Ren Z, Yuille A (2017) Mitigating adversarial effects through randomization. arXiv preprint arXiv:171101991"},{"key":"10261_CR70","unstructured":"Xu W, Evans D, Qi Y (2017) Feature squeezing: detecting adversarial examples in deep neural networks. arXiv preprint arXiv:170401155"},{"key":"10261_CR71","doi-asserted-by":"publisher","first-page":"302","DOI":"10.1016\/j.ins.2020.05.099","volume":"537","author":"J Xu","year":"2020","unstructured":"Xu J, Liu H, Wu D, Zhou F, Gao C-z, Jiang L (2020) Generating universal adversarial perturbation with ResNet. Inf Sci 537:302\u2013312","journal-title":"Inf Sci"},{"key":"10261_CR72","doi-asserted-by":"crossref","unstructured":"Yang P, Chen J, Hsieh C-J, Wang J-L, Jordan MI2020 ML-LOO: Detecting adversarial examples with feature attribution. In: AAAI. pp. 6639\u20136647","DOI":"10.1609\/aaai.v34i04.6140"},{"key":"10261_CR73","doi-asserted-by":"crossref","unstructured":"Yuan X, He P, Zhu Q, Li X (2019) Adversarial examples: attacks and defenses for deep learning. IEEE transactions on neural networks and learning systems","DOI":"10.1109\/TNNLS.2018.2886017"},{"key":"10261_CR74","doi-asserted-by":"publisher","first-page":"4804","DOI":"10.1109\/TIP.2020.2975918","volume":"29","author":"Y Zhang","year":"2020","unstructured":"Zhang Y, Tian X, Li Y, Wang X, Tao D (2020) Principal Component Adversarial Example. IEEE Trans Image Process 29:4804\u20134815","journal-title":"IEEE Trans Image Process"},{"key":"10261_CR75","doi-asserted-by":"crossref","unstructured":"Zheng T, Chen C, Ren K Distributionally adversarial attack. In: Proceedings of the AAAI Conference on Artificial Intelligence, 2019. pp. 2253\u20132260","DOI":"10.1609\/aaai.v33i01.33012253"},{"key":"10261_CR76","doi-asserted-by":"crossref","unstructured":"Z\u00fcgner D, Akbarnejad A, G\u00fcnnemann S (2018) Adversarial attacks on neural networks for graph data. In: Proceedings of the 24th ACM SIGKDD International Conference on Knowledge Discovery & Data Mining. pp 2847\u20132856","DOI":"10.1145\/3219819.3220078"}],"container-title":["Multimedia Tools and Applications"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/s11042-020-10261-5.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"http:\/\/link.springer.com\/article\/10.1007\/s11042-020-10261-5\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/s11042-020-10261-5.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2021,4,18]],"date-time":"2021-04-18T16:13:48Z","timestamp":1618762428000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/s11042-020-10261-5"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2021,1,3]]},"references-count":76,"journal-issue":{"issue":"7","published-print":{"date-parts":[[2021,3]]}},"alternative-id":["10261"],"URL":"https:\/\/doi.org\/10.1007\/s11042-020-10261-5","relation":{},"ISSN":["1380-7501","1573-7721"],"issn-type":[{"type":"print","value":"1380-7501"},{"type":"electronic","value":"1573-7721"}],"subject":[],"published":{"date-parts":[[2021,1,3]]},"assertion":[{"value":"16 May 2020","order":1,"name":"received","label":"Received","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"8 October 2020","order":2,"name":"revised","label":"Revised","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"9 December 2020","order":3,"name":"accepted","label":"Accepted","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"3 January 2021","order":4,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}}]}}