{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,9,11]],"date-time":"2025-09-11T18:45:07Z","timestamp":1757616307769,"version":"3.44.0"},"reference-count":40,"publisher":"IEEE","license":[{"start":{"date-parts":[[2019,11,1]],"date-time":"2019-11-01T00:00:00Z","timestamp":1572566400000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2019,11,1]],"date-time":"2019-11-01T00:00:00Z","timestamp":1572566400000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2019,11]]},"DOI":"10.1109\/bibm47256.2019.8982954","type":"proceedings-article","created":{"date-parts":[[2020,2,7]],"date-time":"2020-02-07T02:49:51Z","timestamp":1581043791000},"page":"1-6","source":"Crossref","is-referenced-by-count":0,"title":["Regularized Adversarial Training (RAT) for Robust Cellular Electron Cryo Tomograms Classification"],"prefix":"10.1109","author":[{"given":"Xindi","family":"Wu","sequence":"first","affiliation":[{"name":"Carnegie Mellon University,Computational Biology Department,Pittsburgh,USA"}]},{"given":"Yijun","family":"Mao","sequence":"additional","affiliation":[{"name":"Institute of Artificial Intelligence and Robotics, Xi&#x0027;an Jiaotong University,Xi&#x0027;an,China"}]},{"given":"Haohan","family":"Wang","sequence":"additional","affiliation":[{"name":"Language Technologies Institute, Carnegie Mellon University,Pittsburgh,USA"}]},{"given":"Xiangrui","family":"Zeng","sequence":"additional","affiliation":[{"name":"Carnegie Mellon University,Computational Biology Department,Pittsburgh,USA"}]},{"given":"Xin","family":"Gao","sequence":"additional","affiliation":[{"name":"Computational Bioscience Research Center, King Abdullah University of Science and Technology,Saudi Arabia"}]},{"given":"Eric P.","family":"Xing","sequence":"additional","affiliation":[{"name":"Carnegie Mellon University,Machine Learning Department,Pittsburgh,USA"}]},{"given":"Min","family":"Xu","sequence":"additional","affiliation":[{"name":"Carnegie Mellon University,Computational Biology Department,Pittsburgh,USA"}]}],"member":"263","reference":[{"journal-title":"Foolbox A python toolbox to benchmark the robustness of machine learning models","year":"2017","author":"rauber","key":"ref39"},{"journal-title":"Improving Neural Networks by Preventing Co-adaptation of Feature Detectors","year":"2012","author":"hinton","key":"ref38"},{"journal-title":"Explaining and Harnessing Adversarial Examples","year":"2014","author":"goodfellow","key":"ref33"},{"journal-title":"Empiar-10048","year":"0","key":"ref32"},{"journal-title":"Theoretically principled trade-off between robustness and accuracy","year":"2019","author":"zhang","key":"ref31"},{"journal-title":"Towards deep learning models resistant to adversarial attacks","year":"2017","author":"madry","key":"ref30"},{"key":"ref37","doi-asserted-by":"publisher","DOI":"10.7554\/eLife.34257"},{"key":"ref36","doi-asserted-by":"publisher","DOI":"10.1214\/aoms\/1177729694"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1016\/j.neucom.2018.04.027"},{"key":"ref34","doi-asserted-by":"publisher","DOI":"10.1109\/ICDM.2015.84"},{"journal-title":"Intriguing properties of neural networks","year":"2013","author":"szegedy","key":"ref10"},{"journal-title":"Decision-Based Adversarial Attacks Reliable Attacks Against Black-Box Machine Learning Models","year":"2017","author":"brendel","key":"ref40"},{"key":"ref11","article-title":"Explaining and harnessing adversarial examples (2014)","author":"goodfellow","year":"0","journal-title":"International Conference on Learning Representations"},{"journal-title":"High frequency component helps explain the generalization of convolutional neural networks","year":"2019","author":"wang","key":"ref12"},{"journal-title":"Adversarial attacks against medical deep learning systems","year":"2018","author":"finlayson","key":"ref13"},{"key":"ref14","first-page":"145","article-title":"Some investigations on robustness of deep learning in limited angle tomography","author":"huang","year":"0","journal-title":"International Conference on Medical Image Computing and Computer-Assisted Intervention"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1093\/bib\/bbx044"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1142\/9789813279827_0006"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1109\/ICME.2017.8019301"},{"key":"ref18","article-title":"Learning robust representations by projecting superficial statistics out","author":"wang","year":"0","journal-title":"International Conference on Learning Representations"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.282"},{"journal-title":"On detecting adversarial perturbations","year":"2017","author":"metzen","key":"ref28"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1186\/1752-0509-6-S1-S18"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1145\/3133956.3134057"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1016\/j.jsb.2012.02.014"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1016\/j.str.2015.06.026"},{"key":"ref29","article-title":"Adversarial example defense: Ensembles of weak defenses are not strong","author":"he","year":"0","journal-title":"11 th USENIX Workshop on Offensive Technologies ( WOOT 17)"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1109\/ISB.2011.6033166"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1007\/s00138-018-0949-4"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1093\/bioinformatics\/btx230"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1109\/ISBI.2014.6868001"},{"journal-title":"Deep learning for genomics A concise overview","year":"2018","author":"yue","key":"ref9"},{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1016\/j.jmb.2015.09.030"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.24963\/ijcai.2018\/543"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1109\/TEVC.2019.2890858"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.49"},{"journal-title":"Targeted backdoor attacks on deep learning systems using data poisoning","year":"2017","author":"chen","key":"ref24"},{"journal-title":"Adversarial machine learning at scale","year":"2016","author":"kurakin","key":"ref23"},{"journal-title":"Generative adversarial trainer Defense to adversarial perturbations with GAN","year":"2017","author":"lee","key":"ref26"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2018.00357"}],"event":{"name":"2019 IEEE International Conference on Bioinformatics and Biomedicine (BIBM)","start":{"date-parts":[[2019,11,18]]},"location":"San Diego, CA, USA","end":{"date-parts":[[2019,11,21]]}},"container-title":["2019 IEEE International Conference on Bioinformatics and Biomedicine (BIBM)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/8965270\/8982928\/08982954.pdf?arnumber=8982954","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,9,5]],"date-time":"2025-09-05T18:11:10Z","timestamp":1757095870000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/8982954\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2019,11]]},"references-count":40,"URL":"https:\/\/doi.org\/10.1109\/bibm47256.2019.8982954","relation":{},"subject":[],"published":{"date-parts":[[2019,11]]}}}