{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,9]],"date-time":"2026-07-09T22:24:02Z","timestamp":1783635842397,"version":"3.55.0"},"reference-count":64,"publisher":"Elsevier BV","license":[{"start":{"date-parts":[[2026,8,1]],"date-time":"2026-08-01T00:00:00Z","timestamp":1785542400000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.elsevier.com\/tdm\/userlicense\/1.0\/"},{"start":{"date-parts":[[2026,8,1]],"date-time":"2026-08-01T00:00:00Z","timestamp":1785542400000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.elsevier.com\/legal\/tdmrep-license"},{"start":{"date-parts":[[2026,8,1]],"date-time":"2026-08-01T00:00:00Z","timestamp":1785542400000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-017"},{"start":{"date-parts":[[2026,8,1]],"date-time":"2026-08-01T00:00:00Z","timestamp":1785542400000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"},{"start":{"date-parts":[[2026,8,1]],"date-time":"2026-08-01T00:00:00Z","timestamp":1785542400000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-012"},{"start":{"date-parts":[[2026,8,1]],"date-time":"2026-08-01T00:00:00Z","timestamp":1785542400000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2026,8,1]],"date-time":"2026-08-01T00:00:00Z","timestamp":1785542400000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-004"}],"funder":[{"DOI":"10.13039\/501100019091","name":"Key Research and Development Program of Hunan Province of China","doi-asserted-by":"publisher","award":["251111212100"],"award-info":[{"award-number":["251111212100"]}],"id":[{"id":"10.13039\/501100019091","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100019091","name":"Key Research and Development Program of Hunan Province of China","doi-asserted-by":"publisher","award":["231111211900"],"award-info":[{"award-number":["231111211900"]}],"id":[{"id":"10.13039\/501100019091","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["62406293"],"award-info":[{"award-number":["62406293"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100019081","name":"Science and Technology Program of Hunan Province","doi-asserted-by":"publisher","award":["241110210300"],"award-info":[{"award-number":["241110210300"]}],"id":[{"id":"10.13039\/501100019081","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100002338","name":"Ministry of Education of the People's Republic of China","doi-asserted-by":"publisher","award":["KLCS20240211"],"award-info":[{"award-number":["KLCS20240211"]}],"id":[{"id":"10.13039\/501100002338","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":["elsevier.com","sciencedirect.com"],"crossmark-restriction":true},"short-container-title":["Knowledge-Based Systems"],"published-print":{"date-parts":[[2026,8]]},"DOI":"10.1016\/j.knosys.2026.116440","type":"journal-article","created":{"date-parts":[[2026,6,16]],"date-time":"2026-06-16T06:47:30Z","timestamp":1781592450000},"page":"116440","update-policy":"https:\/\/doi.org\/10.1016\/elsevier_cm_policy","source":"Crossref","is-referenced-by-count":0,"special_numbering":"C","title":["SA-FTM: A structure-aware feature tuning framework for enhancing targeted adversarial transferability"],"prefix":"10.1016","volume":"348","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-2356-0700","authenticated-orcid":false,"given":"Yufei","family":"Gao","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Shuai","family":"Li","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-8070-5363","authenticated-orcid":false,"given":"Yucheng","family":"Shi","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0009-0008-8369-5173","authenticated-orcid":false,"given":"Yan","family":"Cao","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-1170-3911","authenticated-orcid":false,"given":"Lei","family":"Shi","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Mengyang","family":"He","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"78","reference":[{"key":"10.1016\/j.knosys.2026.116440_b1","series-title":"Very deep convolutional networks for large-scale image recognition","author":"Simonyan","year":"2014"},{"key":"10.1016\/j.knosys.2026.116440_b2","series-title":"International Conference on Medical Image Computing and Computer-Assisted Intervention","first-page":"234","article-title":"U-net: Convolutional networks for biomedical image segmentation","author":"Ronneberger","year":"2015"},{"key":"10.1016\/j.knosys.2026.116440_b3","first-page":"1028","article-title":"Perceptual-sensitive gan for generating adversarial patches","volume":"vol. 33","author":"Liu","year":"2019"},{"key":"10.1016\/j.knosys.2026.116440_b4","series-title":"Explaining and harnessing adversarial examples","author":"Goodfellow","year":"2014"},{"key":"10.1016\/j.knosys.2026.116440_b5","series-title":"Intriguing properties of neural networks","author":"Szegedy","year":"2013"},{"key":"10.1016\/j.knosys.2026.116440_b6","series-title":"Transferability in machine learning: From phenomena to black-box attacks using adversarial samples. arxiv 2016","author":"Papernot","year":"2016"},{"key":"10.1016\/j.knosys.2026.116440_b7","doi-asserted-by":"crossref","unstructured":"M. Li, C. Deng, T. Li, J. Yan, X. Gao, H. Huang, Towards transferable targeted attack, in: Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition, 2020, pp. 641\u2013649.","DOI":"10.1109\/CVPR42600.2020.00072"},{"key":"10.1016\/j.knosys.2026.116440_b8","first-page":"6115","article-title":"On success and simplicity: A second look at transferable targeted attacks","volume":"34","author":"Zhao","year":"2021","journal-title":"Adv. Neural Inf. Process. Syst."},{"key":"10.1016\/j.knosys.2026.116440_b9","unstructured":"R. Geirhos, P. Rubisch, C. Michaelis, M. Bethge, F.A. Wichmann, W. Brendel, ImageNet-trained CNNs are biased towards texture; increasing shape bias improves accuracy and robustness, in: International Conference on Learning Representations, 2018."},{"key":"10.1016\/j.knosys.2026.116440_b10","doi-asserted-by":"crossref","unstructured":"H. Wang, X. Wu, Z. Huang, E.P. Xing, High-frequency component helps explain the generalization of convolutional neural networks, in: Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition, 2020, pp. 8684\u20138694.","DOI":"10.1109\/CVPR42600.2020.00871"},{"key":"10.1016\/j.knosys.2026.116440_b11","first-page":"12116","article-title":"Do vision transformers see like convolutional neural networks?","volume":"34","author":"Raghu","year":"2021","journal-title":"Adv. Neural Inf. Process. Syst."},{"key":"10.1016\/j.knosys.2026.116440_b12","doi-asserted-by":"crossref","unstructured":"C. Xie, Z. Zhang, Y. Zhou, S. Bai, J. Wang, Z. Ren, A.L. Yuille, Improving transferability of adversarial examples with input diversity, in: Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition, 2019, pp. 2730\u20132739.","DOI":"10.1109\/CVPR.2019.00284"},{"key":"10.1016\/j.knosys.2026.116440_b13","doi-asserted-by":"crossref","unstructured":"Y. Dong, T. Pang, H. Su, J. Zhu, Evading defenses to transferable adversarial examples by translation-invariant attacks, in: Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition, 2019, pp. 4312\u20134321.","DOI":"10.1109\/CVPR.2019.00444"},{"key":"10.1016\/j.knosys.2026.116440_b14","doi-asserted-by":"crossref","unstructured":"Y. Dong, F. Liao, T. Pang, H. Su, J. Zhu, X. Hu, J. Li, Boosting adversarial attacks with momentum, in: Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition, 2018, pp. 9185\u20139193.","DOI":"10.1109\/CVPR.2018.00957"},{"key":"10.1016\/j.knosys.2026.116440_b15","doi-asserted-by":"crossref","unstructured":"X. Wang, K. He, Enhancing the transferability of adversarial attacks through variance tuning, in: Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition, 2021, pp. 1924\u20131933.","DOI":"10.1109\/CVPR46437.2021.00196"},{"key":"10.1016\/j.knosys.2026.116440_b16","doi-asserted-by":"crossref","unstructured":"J. Byun, M.-J. Kwon, S. Cho, Y. Kim, C. Kim, Introducing competition to boost the transferability of targeted adversarial examples through clean feature mixup, in: Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition, 2023, pp. 24648\u201324657.","DOI":"10.1109\/CVPR52729.2023.02361"},{"key":"10.1016\/j.knosys.2026.116440_b17","doi-asserted-by":"crossref","unstructured":"K. Liang, X. Dai, Y. Li, D. Wang, B. Xiao, Improving Transferable Targeted Attacks with Feature Tuning Mixup, in: Proceedings of the Computer Vision and Pattern Recognition Conference, 2025, pp. 25802\u201325811.","DOI":"10.1109\/CVPR52734.2025.02403"},{"key":"10.1016\/j.knosys.2026.116440_b18","series-title":"Artificial Intelligence Safety and Security","first-page":"99","article-title":"Adversarial examples in the physical world","author":"Kurakin","year":"2018"},{"key":"10.1016\/j.knosys.2026.116440_b19","series-title":"Nesterov accelerated gradient and scale invariance for adversarial attacks","author":"Lin","year":"2019"},{"key":"10.1016\/j.knosys.2026.116440_b20","doi-asserted-by":"crossref","unstructured":"X. Wang, X. He, J. Wang, K. He, Admix: Enhancing the transferability of adversarial attacks, in: Proceedings of the IEEE\/CVF International Conference on Computer Vision, 2021, pp. 16158\u201316167.","DOI":"10.1109\/ICCV48922.2021.01585"},{"key":"10.1016\/j.knosys.2026.116440_b21","doi-asserted-by":"crossref","DOI":"10.1016\/j.knosys.2025.113325","article-title":"Improving the transferability of adversarial examples through semantic-mixup inputs","volume":"316","author":"Gan","year":"2025","journal-title":"Knowl.-Based Syst."},{"key":"10.1016\/j.knosys.2026.116440_b22","series-title":"Low frequency adversarial perturbation","author":"Guo","year":"2018"},{"key":"10.1016\/j.knosys.2026.116440_b23","series-title":"European Conference on Computer Vision","first-page":"549","article-title":"Frequency domain model augmentation for adversarial attack","author":"Long","year":"2022"},{"key":"10.1016\/j.knosys.2026.116440_b24","doi-asserted-by":"crossref","DOI":"10.1016\/j.knosys.2024.112152","article-title":"Boosting transferability of adversarial samples via saliency distribution and frequency domain enhancement","volume":"300","author":"Wang","year":"2024","journal-title":"Knowl.-Based Syst."},{"key":"10.1016\/j.knosys.2026.116440_b25","first-page":"6494","article-title":"Facl-attack: Frequency-aware contrastive learning for transferable adversarial attacks","volume":"vol. 38","author":"Yang","year":"2024"},{"key":"10.1016\/j.knosys.2026.116440_b26","doi-asserted-by":"crossref","DOI":"10.1016\/j.ins.2023.119273","article-title":"Crafting transferable adversarial examples via contaminating the salient feature variance","volume":"644","author":"Ren","year":"2023","journal-title":"Inform. Sci."},{"key":"10.1016\/j.knosys.2026.116440_b27","first-page":"6731","article-title":"Improving integrated gradient-based transferable adversarial examples by refining the integration path","volume":"vol. 39","author":"Ren","year":"2025"},{"key":"10.1016\/j.knosys.2026.116440_b28","doi-asserted-by":"crossref","unstructured":"Y. Ren, Z. Zhao, C. Lin, B. Yang, L. Zhou, Z. Liu, C. Shen, Improving adversarial transferability on vision transformers via forward propagation refinement, in: Proceedings of the Computer Vision and Pattern Recognition Conference, 2025, pp. 25071\u201325080.","DOI":"10.1109\/CVPR52734.2025.02334"},{"key":"10.1016\/j.knosys.2026.116440_b29","doi-asserted-by":"crossref","unstructured":"J. Byun, S. Cho, M.-J. Kwon, H.-S. Kim, C. Kim, Improving the transferability of targeted adversarial examples through object-based diverse input, in: Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition, 2022, pp. 15244\u201315253.","DOI":"10.1109\/CVPR52688.2022.01481"},{"key":"10.1016\/j.knosys.2026.116440_b30","series-title":"Towards deep learning models resistant to adversarial attacks","author":"Madry","year":"2017"},{"key":"10.1016\/j.knosys.2026.116440_b31","doi-asserted-by":"crossref","unstructured":"M. Naseer, S. Khan, M. Hayat, F.S. Khan, F. Porikli, A self-supervised approach for adversarial robustness, in: Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition, 2020, pp. 262\u2013271.","DOI":"10.1109\/CVPR42600.2020.00034"},{"key":"10.1016\/j.knosys.2026.116440_b32","series-title":"Diffusion models for adversarial purification","author":"Nie","year":"2022"},{"key":"10.1016\/j.knosys.2026.116440_b33","doi-asserted-by":"crossref","unstructured":"Q. Huang, I. Katsman, H. He, Z. Gu, S. Belongie, S.-N. Lim, Enhancing adversarial example transferability with an intermediate level attack, in: Proceedings of the IEEE\/CVF International Conference on Computer Vision, 2019, pp. 4733\u20134742.","DOI":"10.1109\/ICCV.2019.00483"},{"key":"10.1016\/j.knosys.2026.116440_b34","doi-asserted-by":"crossref","unstructured":"Z. Wang, H. Guo, Z. Zhang, W. Liu, Z. Qin, K. Ren, Feature importance-aware transferable adversarial attacks, in: Proceedings of the IEEE\/CVF International Conference on Computer Vision, 2021, pp. 7639\u20137648.","DOI":"10.1109\/ICCV48922.2021.00754"},{"key":"10.1016\/j.knosys.2026.116440_b35","doi-asserted-by":"crossref","unstructured":"J. Zhang, W. Wu, J.-t. Huang, Y. Huang, W. Wang, Y. Su, M.R. Lyu, Improving adversarial transferability via neuron attribution-based attacks, in: Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition, 2022, pp. 14993\u201315002.","DOI":"10.1109\/CVPR52688.2022.01457"},{"key":"10.1016\/j.knosys.2026.116440_b36","doi-asserted-by":"crossref","first-page":"29845","DOI":"10.52202\/068431-2164","article-title":"Boosting the transferability of adversarial attacks with reverse adversarial perturbation","volume":"35","author":"Qin","year":"2022","journal-title":"Adv. Neural Inf. Process. Syst."},{"key":"10.1016\/j.knosys.2026.116440_b37","series-title":"Boosting the targeted transferability of adversarial examples via salient region & weighted feature drop","author":"Xu","year":"2024"},{"key":"10.1016\/j.knosys.2026.116440_b38","series-title":"ICASSP 2024-2024 IEEE International Conference on Acoustics, Speech and Signal Processing","first-page":"4475","article-title":"Enhancing targeted transferability via feature space fine-tuning","author":"Zeng","year":"2024"},{"key":"10.1016\/j.knosys.2026.116440_b39","doi-asserted-by":"crossref","DOI":"10.1016\/j.knosys.2025.114469","article-title":"DMFP: Dynamic multiscale feature perturbations for transferable adversarial attacks","author":"Cheng","year":"2025","journal-title":"Knowl.-Based Syst."},{"key":"10.1016\/j.knosys.2026.116440_b40","doi-asserted-by":"crossref","unstructured":"B. Zhou, A. Khosla, A. Lapedriza, A. Oliva, A. Torralba, Learning deep features for discriminative localization, in: Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition, 2016, pp. 2921\u20132929.","DOI":"10.1109\/CVPR.2016.319"},{"key":"10.1016\/j.knosys.2026.116440_b41","doi-asserted-by":"crossref","unstructured":"R.R. Selvaraju, M. Cogswell, A. Das, R. Vedantam, D. Parikh, D. Batra, Grad-cam: Visual explanations from deep networks via gradient-based localization, in: Proceedings of the IEEE International Conference on Computer Vision, 2017, pp. 618\u2013626.","DOI":"10.1109\/ICCV.2017.74"},{"key":"10.1016\/j.knosys.2026.116440_b42","first-page":"23296","article-title":"Intriguing properties of vision transformers","volume":"34","author":"Naseer","year":"2021","journal-title":"Adv. Neural Inf. Process. Syst."},{"key":"10.1016\/j.knosys.2026.116440_b43","series-title":"Domain generalization with mixstyle","author":"Zhou","year":"2021"},{"key":"10.1016\/j.knosys.2026.116440_b44","doi-asserted-by":"crossref","unstructured":"X. Huang, S. Belongie, Arbitrary style transfer in real-time with adaptive instance normalization, in: Proceedings of the IEEE International Conference on Computer Vision, 2017, pp. 1501\u20131510.","DOI":"10.1109\/ICCV.2017.167"},{"key":"10.1016\/j.knosys.2026.116440_b45","series-title":"Are convolutional neural networks or transformers more like human vision?","author":"Tuli","year":"2021"},{"key":"10.1016\/j.knosys.2026.116440_b46","series-title":"European Conference on Computer Vision","first-page":"818","article-title":"Visualizing and understanding convolutional networks","author":"Zeiler","year":"2014"},{"key":"10.1016\/j.knosys.2026.116440_b47","series-title":"International Conference on Machine Learning","first-page":"5301","article-title":"On the spectral bias of neural networks","author":"Rahaman","year":"2019"},{"key":"10.1016\/j.knosys.2026.116440_b48","doi-asserted-by":"crossref","unstructured":"Y. Chen, H. Fan, B. Xu, Z. Yan, Y. Kalantidis, M. Rohrbach, S. Yan, J. Feng, Drop an octave: Reducing spatial redundancy in convolutional neural networks with octave convolution, in: Proceedings of the IEEE\/CVF International Conference on Computer Vision, 2019, pp. 3435\u20133444.","DOI":"10.1109\/ICCV.2019.00353"},{"key":"10.1016\/j.knosys.2026.116440_b49","article-title":"Svcca: Singular vector canonical correlation analysis for deep learning dynamics and interpretability","volume":"30","author":"Raghu","year":"2017","journal-title":"Adv. Neural Inf. Process. Syst."},{"key":"10.1016\/j.knosys.2026.116440_b50","series-title":"Learning multiple layers of features from tiny images","author":"Krizhevsky","year":"2009"},{"key":"10.1016\/j.knosys.2026.116440_b51","doi-asserted-by":"crossref","unstructured":"K. He, X. Zhang, S. Ren, J. Sun, Deep residual learning for image recognition, in: Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition, 2016, pp. 770\u2013778.","DOI":"10.1109\/CVPR.2016.90"},{"key":"10.1016\/j.knosys.2026.116440_b52","doi-asserted-by":"crossref","unstructured":"G. Huang, Z. Liu, L. Van Der Maaten, K.Q. Weinberger, Densely connected convolutional networks, in: Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition, 2017, pp. 4700\u20134708.","DOI":"10.1109\/CVPR.2017.243"},{"key":"10.1016\/j.knosys.2026.116440_b53","doi-asserted-by":"crossref","unstructured":"F. Chollet, Xception: Deep learning with depthwise separable convolutions, in: Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition, 2017, pp. 1251\u20131258.","DOI":"10.1109\/CVPR.2017.195"},{"key":"10.1016\/j.knosys.2026.116440_b54","doi-asserted-by":"crossref","unstructured":"M. Sandler, A. Howard, M. Zhu, A. Zhmoginov, L.-C. Chen, Mobilenetv2: Inverted residuals and linear bottlenecks, in: Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition, 2018, pp. 4510\u20134520.","DOI":"10.1109\/CVPR.2018.00474"},{"key":"10.1016\/j.knosys.2026.116440_b55","series-title":"International Conference on Machine Learning","first-page":"6105","article-title":"Efficientnet: Rethinking model scaling for convolutional neural networks","author":"Tan","year":"2019"},{"key":"10.1016\/j.knosys.2026.116440_b56","article-title":"Inception-v4, inception-resnet and the impact of residual connections on learning","volume":"vol. 31","author":"Szegedy","year":"2017"},{"key":"10.1016\/j.knosys.2026.116440_b57","doi-asserted-by":"crossref","unstructured":"C. Szegedy, V. Vanhoucke, S. Ioffe, J. Shlens, Z. Wojna, Rethinking the inception architecture for computer vision, in: Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition, 2016, pp. 2818\u20132826.","DOI":"10.1109\/CVPR.2016.308"},{"key":"10.1016\/j.knosys.2026.116440_b58","series-title":"An image is worth 16x16 words: Transformers for image recognition at scale","author":"Dosovitskiy","year":"2020"},{"key":"10.1016\/j.knosys.2026.116440_b59","doi-asserted-by":"crossref","unstructured":"B. Graham, A. El-Nouby, H. Touvron, P. Stock, A. Joulin, H. J\u00e9gou, M. Douze, Levit: a vision transformer in convnet\u2019s clothing for faster inference, in: Proceedings of the IEEE\/CVF International Conference on Computer Vision, 2021, pp. 12259\u201312269.","DOI":"10.1109\/ICCV48922.2021.01204"},{"key":"10.1016\/j.knosys.2026.116440_b60","series-title":"International Conference on Machine Learning","first-page":"2286","article-title":"Convit: Improving vision transformers with soft convolutional inductive biases","author":"d\u2019Ascoli","year":"2021"},{"key":"10.1016\/j.knosys.2026.116440_b61","first-page":"9355","article-title":"Twins: Revisiting the design of spatial attention in vision transformers","volume":"34","author":"Chu","year":"2021","journal-title":"Adv. Neural Inf. Process. Syst."},{"key":"10.1016\/j.knosys.2026.116440_b62","doi-asserted-by":"crossref","unstructured":"B. Heo, S. Yun, D. Han, S. Chun, J. Choe, S.J. Oh, Rethinking spatial dimensions of vision transformers, in: Proceedings of the IEEE\/CVF International Conference on Computer Vision, 2021, pp. 11936\u201311945.","DOI":"10.1109\/ICCV48922.2021.01172"},{"key":"10.1016\/j.knosys.2026.116440_b63","doi-asserted-by":"crossref","unstructured":"Z. Liu, H. Hu, Y. Lin, Z. Yao, Z. Xie, Y. Wei, J. Ning, Y. Cao, Z. Zhang, L. Dong, et al., Swin transformer v2: Scaling up capacity and resolution, in: Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition, 2022, pp. 12009\u201312019.","DOI":"10.1109\/CVPR52688.2022.01170"},{"key":"10.1016\/j.knosys.2026.116440_b64","series-title":"European Conference on Computer Vision","first-page":"563","article-title":"Improving the transferability of adversarial examples with resized-diverse-inputs, diversity-ensemble and region fitting","author":"Zou","year":"2020"}],"container-title":["Knowledge-Based Systems"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/api.elsevier.com\/content\/article\/PII:S0950705126011664?httpAccept=text\/xml","content-type":"text\/xml","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/api.elsevier.com\/content\/article\/PII:S0950705126011664?httpAccept=text\/plain","content-type":"text\/plain","content-version":"vor","intended-application":"text-mining"}],"deposited":{"date-parts":[[2026,7,9]],"date-time":"2026-07-09T22:07:03Z","timestamp":1783634823000},"score":1,"resource":{"primary":{"URL":"https:\/\/linkinghub.elsevier.com\/retrieve\/pii\/S0950705126011664"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2026,8]]},"references-count":64,"alternative-id":["S0950705126011664"],"URL":"https:\/\/doi.org\/10.1016\/j.knosys.2026.116440","relation":{},"ISSN":["0950-7051"],"issn-type":[{"value":"0950-7051","type":"print"}],"subject":[],"published":{"date-parts":[[2026,8]]},"assertion":[{"value":"Elsevier","name":"publisher","label":"This article is maintained by"},{"value":"SA-FTM: A structure-aware feature tuning framework for enhancing targeted adversarial transferability","name":"articletitle","label":"Article Title"},{"value":"Knowledge-Based Systems","name":"journaltitle","label":"Journal Title"},{"value":"https:\/\/doi.org\/10.1016\/j.knosys.2026.116440","name":"articlelink","label":"CrossRef DOI link to publisher maintained version"},{"value":"article","name":"content_type","label":"Content Type"},{"value":"\u00a9 2026 Published by Elsevier B.V.","name":"copyright","label":"Copyright"}],"article-number":"116440"}}