{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,4,20]],"date-time":"2025-04-20T18:02:16Z","timestamp":1745172136249,"version":"3.37.3"},"reference-count":31,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","license":[{"start":{"date-parts":[[2019,1,1]],"date-time":"2019-01-01T00:00:00Z","timestamp":1546300800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/OAPA.html"}],"funder":[{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["61672436","61601376","61571372","61372139"],"award-info":[{"award-number":["61672436","61601376","61571372","61372139"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100012226","name":"Fundamental Research Funds for the Central Universities","doi-asserted-by":"crossref","award":["XDJK2016A001","XDJK2017A005"],"award-info":[{"award-number":["XDJK2016A001","XDJK2017A005"]}],"id":[{"id":"10.13039\/501100012226","id-type":"DOI","asserted-by":"crossref"}]},{"name":"Fundamental Science and Advanced Technology Research Foundation of Chongqing","award":["cstc2017jcyjBX0050","cstc2016jcyjA0547"],"award-info":[{"award-number":["cstc2017jcyjBX0050","cstc2016jcyjA0547"]}]},{"DOI":"10.13039\/501100002858","name":"China Postdoctoral Science Foundation","doi-asserted-by":"publisher","award":["2018T110937"],"award-info":[{"award-number":["2018T110937"]}],"id":[{"id":"10.13039\/501100002858","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100009976","name":"Chongqing Postdoctoral Science Special Foundation","doi-asserted-by":"publisher","award":["Xm2017039"],"award-info":[{"award-number":["Xm2017039"]}],"id":[{"id":"10.13039\/501100009976","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Access"],"published-print":{"date-parts":[[2019]]},"DOI":"10.1109\/access.2018.2889409","type":"journal-article","created":{"date-parts":[[2018,12,24]],"date-time":"2018-12-24T18:12:08Z","timestamp":1545675128000},"page":"5695-5706","source":"Crossref","is-referenced-by-count":7,"title":["Markov Chain Based Efficient Defense Against Adversarial Examples in Computer Vision"],"prefix":"10.1109","volume":"7","author":[{"given":"Yue","family":"Zhou","sequence":"first","affiliation":[]},{"given":"Xiaofang","family":"Hu","sequence":"additional","affiliation":[]},{"given":"Lidan","family":"Wang","sequence":"additional","affiliation":[]},{"ORCID":"https:\/\/orcid.org\/0000-0002-0040-3796","authenticated-orcid":false,"given":"Shukai","family":"Duan","sequence":"additional","affiliation":[]},{"given":"Yiran","family":"Chen","sequence":"additional","affiliation":[]}],"member":"263","reference":[{"journal-title":"Technical report on the cleverhans v2 1 0 adversarial examples library","year":"2016","author":"papernot","key":"ref31"},{"journal-title":"Rethinking the inception architecture for computer vision","year":"2015","author":"szegedy","key":"ref30"},{"journal-title":"Generating Adversarial Malware Examples for Black-Box Attacks Based on GAN","year":"2017","author":"hu","key":"ref10"},{"journal-title":"Explaining and Harnessing Adversarial Examples","year":"2015","author":"goodfellow","key":"ref11"},{"journal-title":"PixelDefend Leveraging generative models to understand and defend against adversarial examples","year":"2017","author":"song","key":"ref12"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1162\/neco.1989.1.4.541"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2009.5206848"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1137\/040615079"},{"journal-title":"Boosting adversarial attacks with momentum","year":"2017","author":"dong","key":"ref16"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1109\/EuroSP.2016.36"},{"journal-title":"Towards Evaluating the Robustness of Neural Networks","year":"2016","author":"carlini","key":"ref18"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2017.615"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2007.916010"},{"journal-title":"Intriguing properties of neural networks","year":"2014","author":"szegedy","key":"ref4"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1109\/ICIP.2010.5652660"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1016\/S0167-4048(99)80131-X"},{"journal-title":"Adversarial examples in the physical world","year":"2016","author":"kurakin","key":"ref6"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.1109\/TSP.2005.855406"},{"journal-title":"Transferability in machine learning from phenomena to black-box attacks using adversarial samples","year":"2016","author":"papernot","key":"ref5"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/D17-1215"},{"journal-title":"Synthesizing robust adversarial examples","year":"2017","author":"athalye","key":"ref7"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1109\/MSP.2012.2205597"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1109\/SPW.2018.00009"},{"key":"ref1","first-page":"1097","article-title":"ImageNet classification with deep convolutional neural networks","author":"krizhevsky","year":"2012","journal-title":"Proc Adv Neural Inf Process Syst"},{"journal-title":"Countering adversarial images using input transformations","year":"2017","author":"guo","key":"ref20"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2016.41"},{"journal-title":"Ensemble adversarial training Attacks and defenses","year":"2017","author":"tram\u00e8r","key":"ref21"},{"journal-title":"Adversarial examples are not easily detected Bypassing ten detection methods","year":"2017","author":"carlini","key":"ref24"},{"journal-title":"Thermometer encoding One hot way to resist adversarial examples","year":"2018","author":"buckman","key":"ref23"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2018.2807385"},{"journal-title":"Obfuscated gradients give a false sense of security Circumventing defenses to adversarial examples","year":"2018","author":"athalye","key":"ref25"}],"container-title":["IEEE Access"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/6287639\/8600701\/08586862.pdf?arnumber=8586862","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,1,12]],"date-time":"2022-01-12T11:37:02Z","timestamp":1641987422000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/8586862\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2019]]},"references-count":31,"URL":"https:\/\/doi.org\/10.1109\/access.2018.2889409","relation":{},"ISSN":["2169-3536"],"issn-type":[{"type":"electronic","value":"2169-3536"}],"subject":[],"published":{"date-parts":[[2019]]}}}