{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,4,11]],"date-time":"2026-04-11T16:24:32Z","timestamp":1775924672231,"version":"3.50.1"},"reference-count":35,"publisher":"IEEE","license":[{"start":{"date-parts":[[2020,12,10]],"date-time":"2020-12-10T00:00:00Z","timestamp":1607558400000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2020,12,10]],"date-time":"2020-12-10T00:00:00Z","timestamp":1607558400000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2020,12,10]],"date-time":"2020-12-10T00:00:00Z","timestamp":1607558400000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2020,12,10]]},"DOI":"10.1109\/bigdata50022.2020.9378303","type":"proceedings-article","created":{"date-parts":[[2021,3,19]],"date-time":"2021-03-19T21:10:21Z","timestamp":1616188221000},"page":"1081-1088","source":"Crossref","is-referenced-by-count":26,"title":["UnMask: Adversarial Detection and Defense Through Robust Feature Alignment"],"prefix":"10.1109","author":[{"given":"Scott","family":"Freitas","sequence":"first","affiliation":[]},{"given":"Shang-Tse","family":"Chen","sequence":"additional","affiliation":[]},{"given":"Zijie J.","family":"Wang","sequence":"additional","affiliation":[]},{"given":"Duen","family":"Horng Chau","sequence":"additional","affiliation":[]}],"member":"263","reference":[{"key":"ref33","article-title":"Clean-label backdoor attacks","author":"turner","year":"2018"},{"key":"ref32","article-title":"Mask r-cnn for object detection and instance segmentation on keras and tensorflow","author":"abdulla","year":"2017"},{"key":"ref31","article-title":"AdverTorch v0.1: An adversarial robustness toolbox based on pytorch","author":"ding","year":"2019"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2017.322"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2017.243"},{"key":"ref34","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.90"},{"key":"ref10","article-title":"Robustness may be at odds with accuracy","author":"tsipras","year":"2018"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2014.254"},{"key":"ref12","article-title":"The PASCAL Visual Object Classes Challenge 2010 (VOC2010) Results","author":"everingham","year":"0"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2009.5206848"},{"key":"ref14","article-title":"Microsoft COCO: Common objects in context","author":"lin","year":"2014","journal-title":"ECCV"},{"key":"ref15","article-title":"Genattack: Practical black-box attacks with gradient-free optimization","author":"alzantot","year":"2018"},{"key":"ref16","article-title":"Black-box adversarial attacks with limited queries and information","author":"ilyas","year":"2018","journal-title":"ICML"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1145\/3052973.3053009"},{"key":"ref18","article-title":"Towards deep learning models resistant to adversarial attacks","author":"madry","year":"2018","journal-title":"ICLRE"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2018.00957"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.1145\/3133956.3134057"},{"key":"ref4","article-title":"Shapeshifter: Robust physical adversarial attack on faster r-cnn object detector","author":"chen","year":"2018","journal-title":"PKDD"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2017.615"},{"key":"ref3","article-title":"Decision-based adversarial attacks: Reliable attacks against black-box machine learning models","author":"brendel","year":"2018","journal-title":"ICLRE"},{"key":"ref6","article-title":"One pixel attack for fooling deep neural networks","author":"su","year":"2017"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.1145\/3219819.3219910"},{"key":"ref5","article-title":"Adversarial examples in the physical world","author":"kurakin","year":"2016"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1145\/3027063.3053103"},{"key":"ref7","article-title":"Interactive classification for deep learning interpretation","author":"cabrera","year":"2018","journal-title":"Demo CVPR"},{"key":"ref2","article-title":"Intriguing properties of neural networks","author":"szegedy","year":"2014","journal-title":"ICLRE"},{"key":"ref9","article-title":"Adversarial examples are not bugs, they are features","author":"ilyas","year":"2019"},{"key":"ref1","article-title":"Explaining and harnessing adversarial examples","author":"goodfellow","year":"2014","journal-title":"International Conference on Learning Representations"},{"key":"ref20","article-title":"Adversarial machine learning at scale","author":"kurakin","year":"2017","journal-title":"International Conference on Learning Representations"},{"key":"ref22","article-title":"Adversary detection in neural networks via persistent homology","author":"gebhart","year":"2017"},{"key":"ref21","article-title":"Ensemble adversarial training: Attacks and defenses","author":"tramr","year":"2018","journal-title":"ICLRE"},{"key":"ref24","article-title":"Detecting adversarial samples for deep neural networks through mutation testing","author":"wang","year":"2018"},{"key":"ref23","article-title":"Detecting adversarial examples in deep networks with adaptive noise reduction","author":"liang","year":"2017"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1145\/3095713.3095753"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2018.23198"}],"event":{"name":"2020 IEEE International Conference on Big Data (Big Data)","location":"Atlanta, GA, USA","start":{"date-parts":[[2020,12,10]]},"end":{"date-parts":[[2020,12,13]]}},"container-title":["2020 IEEE International Conference on Big Data (Big Data)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/9377717\/9377728\/09378303.pdf?arnumber=9378303","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,6,27]],"date-time":"2022-06-27T15:37:50Z","timestamp":1656344270000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/9378303\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2020,12,10]]},"references-count":35,"URL":"https:\/\/doi.org\/10.1109\/bigdata50022.2020.9378303","relation":{},"subject":[],"published":{"date-parts":[[2020,12,10]]}}}