{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,12,8]],"date-time":"2025-12-08T22:40:50Z","timestamp":1765233650591,"version":"3.37.3"},"reference-count":50,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","license":[{"start":{"date-parts":[[2023,1,1]],"date-time":"2023-01-01T00:00:00Z","timestamp":1672531200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by-nc-nd\/4.0\/"}],"funder":[{"name":"Innovation Project of Guangxi Graduate Education","award":["2023YCXS061"],"award-info":[{"award-number":["2023YCXS061"]}]},{"DOI":"10.13039\/501100013091","name":"Science and Technology Major Project of Guangxi","doi-asserted-by":"publisher","award":["Guike AA22068072"],"award-info":[{"award-number":["Guike AA22068072"]}],"id":[{"id":"10.13039\/501100013091","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Access"],"published-print":{"date-parts":[[2023]]},"DOI":"10.1109\/access.2023.3335094","type":"journal-article","created":{"date-parts":[[2023,11,20]],"date-time":"2023-11-20T19:29:10Z","timestamp":1700508550000},"page":"131651-131660","source":"Crossref","is-referenced-by-count":4,"title":["Crafting Targeted Universal Adversarial Perturbations: Considering Images as Noise"],"prefix":"10.1109","volume":"11","author":[{"ORCID":"https:\/\/orcid.org\/0000-0001-8174-608X","authenticated-orcid":false,"given":"Huijiao","family":"Wang","sequence":"first","affiliation":[{"name":"School of Computer Science and Information Security, Guilin University of Electronic Technology, Guilin, China"}]},{"ORCID":"https:\/\/orcid.org\/0009-0009-6091-852X","authenticated-orcid":false,"given":"Ding","family":"Cai","sequence":"additional","affiliation":[{"name":"School of Computer Science and Information Security, Guilin University of Electronic Technology, Guilin, China"}]},{"given":"Li","family":"Wang","sequence":"additional","affiliation":[{"name":"School of Computer Science and Information Security, Guilin University of Electronic Technology, Guilin, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-0323-901X","authenticated-orcid":false,"given":"Zhuo","family":"Xiong","sequence":"additional","affiliation":[{"name":"School of Computer Science and Information Security, Guilin University of Electronic Technology, Guilin, China"}]}],"member":"263","reference":[{"key":"ref1","article-title":"Intriguing properties of neural networks","author":"Szegedy","year":"2013","journal-title":"arXiv:1312.6199"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2017.17"},{"key":"ref3","article-title":"Explaining and harnessing adversarial examples","author":"Goodfellow","year":"2014","journal-title":"arXiv:1412.6572"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2019.00284"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2018.00957"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1201\/9781351251389-8"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR46437.2021.00196"},{"key":"ref8","article-title":"Towards deep learning models resistant to adversarial attacks","author":"Madry","year":"2017","journal-title":"arXiv:1706.06083"},{"key":"ref9","first-page":"274","article-title":"Obfuscated gradients give a false sense of security: Circumventing defenses to adversarial examples","volume-title":"Proc. Int. Conf. Mach. Learn.","author":"Athalye"},{"key":"ref10","article-title":"Exploring the space of adversarial images","author":"Tabacof","year":"2015","journal-title":"arXiv:1510.05328"},{"key":"ref11","article-title":"A boundary tilting persepective on the phenomenon of adversarial examples","author":"Tanay","year":"2016","journal-title":"arXiv:1608.07690"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.282"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.49"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1145\/3052973.3053009"},{"key":"ref15","article-title":"Delving into transferable adversarial examples and black-box attacks","author":"Liu","year":"2016","journal-title":"arXiv:1611.02770"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR42600.2020.00031"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1109\/TEVC.2022.3151373"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1016\/j.patcog.2022.108985"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2018.00465"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2018.00893"},{"key":"ref21","article-title":"Fast feature fool: A data independent approach to universal adversarial perturbations","author":"Mopuri","year":"2017","journal-title":"arXiv:1707.05572"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1109\/TPAMI.2018.2861800"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-01240-3_2"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2019.00303"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-58621-8_46"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v36i2.20023"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV48922.2021.00777"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.1109\/IJCNN54540.2023.10191632"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.1007\/s10994-023-06306-z"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV51070.2023.00409"},{"key":"ref31","article-title":"A method for computing class-wise universal adversarial perturbations","author":"Gupta","year":"2019","journal-title":"arXiv:1912.00466"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-69538-5_18"},{"key":"ref33","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR42600.2020.01453"},{"key":"ref34","doi-asserted-by":"publisher","DOI":"10.1109\/IJCNN54540.2023.10191447"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v37i3.25377"},{"key":"ref36","doi-asserted-by":"publisher","DOI":"10.3390\/rs14225833"},{"key":"ref37","doi-asserted-by":"publisher","DOI":"10.1109\/TIP.2022.3202366"},{"key":"ref38","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v36i1.19982"},{"key":"ref39","article-title":"Phantom sponges: Exploiting non-maximum suppression to attack deep object detectors","author":"Shapira","year":"2022","journal-title":"arXiv:2205.13618"},{"key":"ref40","doi-asserted-by":"publisher","DOI":"10.1145\/3065386"},{"key":"ref41","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2009.5206848"},{"key":"ref42","doi-asserted-by":"publisher","DOI":"10.1109\/TPAMI.2017.2723009"},{"key":"ref43","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2015.7298594"},{"key":"ref44","article-title":"Very deep convolutional networks for large-scale image recognition","author":"Simonyan","year":"2014","journal-title":"arXiv:1409.1556"},{"key":"ref45","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.90"},{"key":"ref46","first-page":"10347","article-title":"Training data-efficient image transformers & distillation through attention","volume-title":"Proc. Int. Conf. Mach. Learn.","author":"Touvron"},{"key":"ref47","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-031-20053-3_27"},{"key":"ref48","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV48922.2021.00986"},{"key":"ref49","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52688.2022.01170"},{"key":"ref50","doi-asserted-by":"publisher","DOI":"10.1073\/pnas.2015509117"}],"container-title":["IEEE Access"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/6287639\/10005208\/10323453.pdf?arnumber=10323453","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,3,2]],"date-time":"2024-03-02T21:57:13Z","timestamp":1709416633000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/10323453\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2023]]},"references-count":50,"URL":"https:\/\/doi.org\/10.1109\/access.2023.3335094","relation":{},"ISSN":["2169-3536"],"issn-type":[{"type":"electronic","value":"2169-3536"}],"subject":[],"published":{"date-parts":[[2023]]}}}