{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,4,11]],"date-time":"2026-04-11T04:25:07Z","timestamp":1775881507841,"version":"3.50.1"},"reference-count":36,"publisher":"Springer Science and Business Media LLC","issue":"11","license":[{"start":{"date-parts":[[2022,11,28]],"date-time":"2022-11-28T00:00:00Z","timestamp":1669593600000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springer.com\/tdm"},{"start":{"date-parts":[[2022,11,28]],"date-time":"2022-11-28T00:00:00Z","timestamp":1669593600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["Nat Comput Sci"],"DOI":"10.1038\/s43588-022-00351-9","type":"journal-article","created":{"date-parts":[[2022,11,28]],"date-time":"2022-11-28T16:02:44Z","timestamp":1669651364000},"page":"711-717","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":97,"title":["Experimental quantum adversarial learning with programmable superconducting qubits"],"prefix":"10.1038","volume":"2","author":[{"given":"Wenhui","family":"Ren","sequence":"first","affiliation":[]},{"ORCID":"https:\/\/orcid.org\/0000-0002-7137-5390","authenticated-orcid":false,"given":"Weikang","family":"Li","sequence":"additional","affiliation":[]},{"ORCID":"https:\/\/orcid.org\/0000-0002-8546-4255","authenticated-orcid":false,"given":"Shibo","family":"Xu","sequence":"additional","affiliation":[]},{"given":"Ke","family":"Wang","sequence":"additional","affiliation":[]},{"ORCID":"https:\/\/orcid.org\/0000-0002-6537-8712","authenticated-orcid":false,"given":"Wenjie","family":"Jiang","sequence":"additional","affiliation":[]},{"given":"Feitong","family":"Jin","sequence":"additional","affiliation":[]},{"given":"Xuhao","family":"Zhu","sequence":"additional","affiliation":[]},{"given":"Jiachen","family":"Chen","sequence":"additional","affiliation":[]},{"given":"Zixuan","family":"Song","sequence":"additional","affiliation":[]},{"ORCID":"https:\/\/orcid.org\/0000-0001-8908-4228","authenticated-orcid":false,"given":"Pengfei","family":"Zhang","sequence":"additional","affiliation":[]},{"given":"Hang","family":"Dong","sequence":"additional","affiliation":[]},{"ORCID":"https:\/\/orcid.org\/0000-0002-6102-0035","authenticated-orcid":false,"given":"Xu","family":"Zhang","sequence":"additional","affiliation":[]},{"given":"Jinfeng","family":"Deng","sequence":"additional","affiliation":[]},{"given":"Yu","family":"Gao","sequence":"additional","affiliation":[]},{"given":"Chuanyu","family":"Zhang","sequence":"additional","affiliation":[]},{"given":"Yaozu","family":"Wu","sequence":"additional","affiliation":[]},{"given":"Bing","family":"Zhang","sequence":"additional","affiliation":[]},{"ORCID":"https:\/\/orcid.org\/0000-0003-1093-3405","authenticated-orcid":false,"given":"Qiujiang","family":"Guo","sequence":"additional","affiliation":[]},{"ORCID":"https:\/\/orcid.org\/0000-0003-3914-4979","authenticated-orcid":false,"given":"Hekang","family":"Li","sequence":"additional","affiliation":[]},{"ORCID":"https:\/\/orcid.org\/0000-0001-6369-8010","authenticated-orcid":false,"given":"Zhen","family":"Wang","sequence":"additional","affiliation":[]},{"ORCID":"https:\/\/orcid.org\/0000-0002-0590-3327","authenticated-orcid":false,"given":"Jacob","family":"Biamonte","sequence":"additional","affiliation":[]},{"ORCID":"https:\/\/orcid.org\/0000-0002-1853-9392","authenticated-orcid":false,"given":"Chao","family":"Song","sequence":"additional","affiliation":[]},{"ORCID":"https:\/\/orcid.org\/0000-0002-1042-4646","authenticated-orcid":false,"given":"Dong-Ling","family":"Deng","sequence":"additional","affiliation":[]},{"ORCID":"https:\/\/orcid.org\/0000-0001-5380-4297","authenticated-orcid":false,"given":"H.","family":"Wang","sequence":"additional","affiliation":[]}],"member":"297","published-online":{"date-parts":[[2022,11,28]]},"reference":[{"key":"351_CR1","doi-asserted-by":"publisher","first-page":"195","DOI":"10.1038\/nature23474","volume":"549","author":"J Biamonte","year":"2017","unstructured":"Biamonte, J. et al. Quantum machine learning. Nature 549, 195\u2013202 (2017).","journal-title":"Nature"},{"key":"351_CR2","doi-asserted-by":"publisher","first-page":"074001","DOI":"10.1088\/1361-6633\/aab406","volume":"81","author":"V Dunjko","year":"2018","unstructured":"Dunjko, V. & Briegel, H. J. Machine learning and artificial intelligence in the quantum domain: a review of recent progress. Rep. Prog. Phys. 81, 074001 (2018).","journal-title":"Rep. Prog. Phys."},{"key":"351_CR3","doi-asserted-by":"publisher","first-page":"48","DOI":"10.1063\/PT.3.4164","volume":"72","author":"SD Sarma","year":"2019","unstructured":"Sarma, S. D., Deng, D.-L. & Duan, L.-M. Machine learning meets quantum physics. Phys. Today 72, 48 (2019).","journal-title":"Phys. Today"},{"key":"351_CR4","doi-asserted-by":"crossref","unstructured":"Eykholt, K. et al. Robust physical-world attacks on deep learning visual classification. In Proc. IEEE Conference on Computer Vision and Pattern Recognition 1625\u20131634 (IEEE, 2018).","DOI":"10.1109\/CVPR.2018.00175"},{"key":"351_CR5","doi-asserted-by":"publisher","first-page":"1287","DOI":"10.1126\/science.aaw4399","volume":"363","author":"SG Finlayson","year":"2019","unstructured":"Finlayson, S. G. et al. Adversarial attacks on medical machine learning. Science 363, 1287\u20131289 (2019).","journal-title":"Science"},{"key":"351_CR6","doi-asserted-by":"publisher","first-page":"033212","DOI":"10.1103\/PhysRevResearch.2.033212","volume":"2","author":"S Lu","year":"2020","unstructured":"Lu, S., Duan, L.-M. & Deng, D.-L. Quantum adversarial machine learning. Phys. Rev. Res. 2, 033212 (2020).","journal-title":"Phys. Rev. Res."},{"key":"351_CR7","doi-asserted-by":"publisher","first-page":"062331","DOI":"10.1103\/PhysRevA.101.062331","volume":"101","author":"N Liu","year":"2020","unstructured":"Liu, N. & Wittek, P. Vulnerability of quantum classification to adversarial perturbations. Phys. Rev. A 101, 062331 (2020).","journal-title":"Phys. Rev. A"},{"key":"351_CR8","doi-asserted-by":"publisher","first-page":"nwab130","DOI":"10.1093\/nsr\/nwab130","volume":"9","author":"W Gong","year":"2021","unstructured":"Gong, W. & Deng, D.-L. Universal adversarial examples and perturbations for quantum classifiers. Natl Sci. Rev. 9, nwab130 (2021).","journal-title":"Natl Sci. Rev."},{"key":"351_CR9","doi-asserted-by":"crossref","unstructured":"Guan, J., Fang, W. & Ying, M. in Computer Aided Verification, Lecture Notes in Computer Science (eds Silva, A. & Leino, K. R. M.) 151\u2013174 (Springer, 2021).","DOI":"10.1007\/978-3-030-81685-8_7"},{"key":"351_CR10","doi-asserted-by":"publisher","first-page":"042427","DOI":"10.1103\/PhysRevA.103.042427","volume":"103","author":"H Liao","year":"2021","unstructured":"Liao, H., Convy, I., Huggins, W. J. & Whaley, K. B. Robust in practice: adversarial attacks on quantum machine learning. Phys. Rev. A 103, 042427 (2021).","journal-title":"Phys. Rev. A"},{"key":"351_CR11","doi-asserted-by":"publisher","first-page":"582","DOI":"10.22331\/q-2021-11-17-582","volume":"5","author":"MC Caro","year":"2021","unstructured":"Caro, M. C., Gil-Fuster, E., Meyer, J. J., Eisert, J. & Sweke, R. Encoding-dependent generalization bounds for parametrized quantum circuits. Quantum 5, 582 (2021).","journal-title":"Quantum"},{"key":"351_CR12","unstructured":"Haug, T., Self, C. N. & Kim, M. S. Large-scale quantum machine learning. Preprint at https:\/\/arxiv.org\/abs\/2108.01039 (2021)."},{"key":"351_CR13","doi-asserted-by":"publisher","first-page":"226","DOI":"10.22331\/q-2020-02-06-226","volume":"4","author":"A P\u00e9rez-Salinas","year":"2020","unstructured":"P\u00e9rez-Salinas, A., Cervera-Lierta, A., Gil-Fuster, E. & Latorre, J. I. Data re-uploading for a universal quantum classifier. Quantum 4, 226 (2020).","journal-title":"Quantum"},{"key":"351_CR14","first-page":"18","volume":"3","author":"S Aubry","year":"1980","unstructured":"Aubry, S. & Andr\u00e9, G. Analyticity breaking and Anderson localization in incommensurate lattices. Ann. Israel Phys. Soc. 3, 18 (1980).","journal-title":"Ann. Israel Phys. Soc."},{"key":"351_CR15","doi-asserted-by":"publisher","first-page":"eaat9004","DOI":"10.1126\/sciadv.aat9004","volume":"4","author":"X Gao","year":"2018","unstructured":"Gao, X., Zhang, Z.-Y. & Duan, L.-M. A quantum machine learning algorithm based on generative models. Sci. Adv. 4, eaat9004 (2018).","journal-title":"Sci. Adv."},{"key":"351_CR16","doi-asserted-by":"publisher","first-page":"1013","DOI":"10.1038\/s41567-021-01287-z","volume":"17","author":"Y Liu","year":"2021","unstructured":"Liu, Y., Arunachalam, S. & Temme, K. A rigorous and robust quantum speed-up in supervised machine learning. Nat. Phys. 17, 1013\u20131017 (2021).","journal-title":"Nat. Phys."},{"key":"351_CR17","doi-asserted-by":"publisher","first-page":"229","DOI":"10.1038\/s41586-021-03242-7","volume":"591","author":"V Saggio","year":"2021","unstructured":"Saggio, V. et al. Experimental quantum speed-up in reinforcement learning agents. Nature 591, 229\u2013233 (2021).","journal-title":"Nature"},{"key":"351_CR18","doi-asserted-by":"publisher","first-page":"1182","DOI":"10.1126\/science.abn7293","volume":"376","author":"H-Y Huang","year":"2022","unstructured":"Huang, H.-Y. et al. Quantum advantage in learning from experiments. Science 376, 1182\u20131186 (2022).","journal-title":"Science"},{"key":"351_CR19","unstructured":"Ledoux, M. in The Concentration of Measure Phenomenon 89 (American Mathematical Society, 2001)."},{"key":"351_CR20","doi-asserted-by":"publisher","first-page":"220301","DOI":"10.1007\/s11433-021-1793-6","volume":"65","author":"W Li","year":"2022","unstructured":"Li, W. & Deng, D.-L. Recent advances for quantum classifiers. Sci. China Phys. Mech. Astron. 65, 220301 (2022).","journal-title":"Sci. China Phys. Mech. Astron."},{"key":"351_CR21","doi-asserted-by":"crossref","unstructured":"Papernot, N., McDaniel, P., Wu, X., Jha, S. & Swami, A. Distillation as a defense to adversarial perturbations against deep neural networks. In Proc. 2016 IEEE Symposium on Security and Privacy (SP) 582\u2013597 (IEEE, 2016).","DOI":"10.1109\/SP.2016.41"},{"key":"351_CR22","unstructured":"Samangouei, P., Kabkab, M. & Chellappa, R. Defense-GAN: protecting classifiers against adversarial attacks using generative models. In Proc. 6th International Conference on Learning Representations (ICLR, 2018); https:\/\/arxiv.org\/abs\/1805.06605"},{"key":"351_CR23","doi-asserted-by":"publisher","first-page":"209","DOI":"10.1038\/s41586-019-0980-2","volume":"567","author":"V Havl\u00ed\u010dek","year":"2019","unstructured":"Havl\u00ed\u010dek, V. et al. Supervised learning with quantum-enhanced feature spaces. Nature 567, 209\u2013212 (2019).","journal-title":"Nature"},{"key":"351_CR24","unstructured":"Gong, M. et al. Quantum neuronal sensing of quantum many-body states on a 61-qubit programmable superconducting processor. Preprint at https:\/\/arxiv.org\/abs\/2201.05957 (2022)."},{"key":"351_CR25","doi-asserted-by":"publisher","DOI":"10.1038\/s41467-022-31679-5","volume":"13","author":"J Herrmann","year":"2022","unstructured":"Herrmann, J. et al. Realizing quantum convolutional neural networks on a superconducting quantum processor to recognize quantum phases. Nat. Commun. 13, 4144 (2022).","journal-title":"Nat. Commun."},{"key":"351_CR26","doi-asserted-by":"publisher","first-page":"032309","DOI":"10.1103\/PhysRevA.98.032309","volume":"98","author":"K Mitarai","year":"2018","unstructured":"Mitarai, K., Negoro, M., Kitagawa, M. & Fujii, K. Quantum circuit learning. Phys. Rev. A 98, 032309 (2018).","journal-title":"Phys. Rev. A"},{"key":"351_CR27","doi-asserted-by":"publisher","first-page":"150503","DOI":"10.1103\/PhysRevLett.118.150503","volume":"118","author":"J Li","year":"2017","unstructured":"Li, J., Yang, X., Peng, X. & Sun, C.-P. Hybrid quantum-classical approach to quantum optimal control. Phys. Rev. Lett. 118, 150503 (2017).","journal-title":"Phys. Rev. Lett."},{"key":"351_CR28","doi-asserted-by":"publisher","first-page":"032331","DOI":"10.1103\/PhysRevA.99.032331","volume":"99","author":"M Schuld","year":"2019","unstructured":"Schuld, M., Bergholm, V., Gogolin, C., Izaac, J. & Killoran, N. Evaluating analytic gradients on quantum hardware. Phys. Rev. A 99, 032331 (2019).","journal-title":"Phys. Rev. A"},{"key":"351_CR29","doi-asserted-by":"publisher","first-page":"1779","DOI":"10.1038\/s41467-021-22030-5","volume":"12","author":"APM Place","year":"2021","unstructured":"Place, A. P. M. et al. New material platform for superconducting transmon qubits with coherence times exceeding 0.3 milliseconds. Nat. Commun. 12, 1779 (2021).","journal-title":"Nat. Commun."},{"key":"351_CR30","first-page":"021058","volume":"11","author":"Y Sung","year":"2021","unstructured":"Sung, Y. et al. Realization of high-fidelity CZ and ZZ-free iSWAP gates with a tunable coupler. Phys. Rev. X 11, 021058 (2021).","journal-title":"Phys. Rev. X"},{"key":"351_CR31","doi-asserted-by":"publisher","first-page":"120504","DOI":"10.1103\/PhysRevLett.125.120504","volume":"125","author":"B Foxen","year":"2020","unstructured":"Foxen, B. et al. Demonstrating a continuous set of two-qubit gates for near-term quantum algorithms. Phys. Rev. Lett. 125, 120504 (2020).","journal-title":"Phys. Rev. Lett."},{"key":"351_CR32","doi-asserted-by":"publisher","first-page":"498","DOI":"10.1148\/radiol.2018180736","volume":"290","author":"SS Halabi","year":"2019","unstructured":"Halabi, S. S. et al. The RSNA pediatric bone age machine learning challenge. Radiology 290, 498\u2013503 (2019).","journal-title":"Radiology"},{"key":"351_CR33","doi-asserted-by":"publisher","first-page":"1045","DOI":"10.1007\/s10278-013-9622-7","volume":"26","author":"K Clark","year":"2013","unstructured":"Clark, K. et al. The Cancer Imaging Archive (TCIA): maintaining and operating a public information repository. J. Digit. Imaging 26, 1045\u20131057 (2013).","journal-title":"J. Digit. Imaging"},{"key":"351_CR34","doi-asserted-by":"publisher","first-page":"141","DOI":"10.1109\/MSP.2012.2211477","volume":"29","author":"L Deng","year":"2012","unstructured":"Deng, L. The MNIST database of handwritten digit images for machine learning research. IEEE Signal Process. Mag. 29, 141\u2013142 (2012).","journal-title":"IEEE Signal Process. Mag."},{"key":"351_CR35","unstructured":"Kurakin, A., Goodfellow, I. J. & Bengio, S. Adversarial machine learning at scale. In International Conference on Learning Representations (ICLR, 2017)."},{"key":"351_CR36","doi-asserted-by":"publisher","unstructured":"Li, W. Data and codes for the paper titled \u2018Experimental quantum adversarial learning with superconducting qubits\u2019 (Zenodo, 2022): https:\/\/doi.org\/10.5281\/zenodo.7134599","DOI":"10.5281\/zenodo.7134599"}],"container-title":["Nature Computational Science"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/www.nature.com\/articles\/s43588-022-00351-9.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/www.nature.com\/articles\/s43588-022-00351-9","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/www.nature.com\/articles\/s43588-022-00351-9.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,11,28]],"date-time":"2022-11-28T17:14:04Z","timestamp":1669655644000},"score":1,"resource":{"primary":{"URL":"https:\/\/www.nature.com\/articles\/s43588-022-00351-9"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2022,11,28]]},"references-count":36,"journal-issue":{"issue":"11","published-online":{"date-parts":[[2022,11]]}},"alternative-id":["351"],"URL":"https:\/\/doi.org\/10.1038\/s43588-022-00351-9","relation":{},"ISSN":["2662-8457"],"issn-type":[{"value":"2662-8457","type":"electronic"}],"subject":[],"published":{"date-parts":[[2022,11,28]]},"assertion":[{"value":"23 June 2022","order":1,"name":"received","label":"Received","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"10 October 2022","order":2,"name":"accepted","label":"Accepted","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"28 November 2022","order":3,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"The authors declare no competing interests.","order":1,"name":"Ethics","group":{"name":"EthicsHeading","label":"Competing interests"}}]}}