{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,2,21]],"date-time":"2025-02-21T01:28:34Z","timestamp":1740101314259,"version":"3.37.3"},"reference-count":27,"publisher":"IEEE","license":[{"start":{"date-parts":[[2022,12,17]],"date-time":"2022-12-17T00:00:00Z","timestamp":1671235200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2022,12,17]],"date-time":"2022-12-17T00:00:00Z","timestamp":1671235200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"DOI":"10.13039\/100000183","name":"Army Research Office","doi-asserted-by":"publisher","id":[{"id":"10.13039\/100000183","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/100016311","name":"Arm","doi-asserted-by":"publisher","id":[{"id":"10.13039\/100016311","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2022,12,17]]},"DOI":"10.1109\/bigdata55660.2022.10021089","type":"proceedings-article","created":{"date-parts":[[2023,1,26]],"date-time":"2023-01-26T19:35:23Z","timestamp":1674761723000},"page":"1310-1315","source":"Crossref","is-referenced-by-count":0,"title":["Exploring the Target Distribution for Surrogate-Based Black-Box Attacks"],"prefix":"10.1109","author":[{"given":"Raha","family":"Moraffah","sequence":"first","affiliation":[{"name":"Arizona State University,Computer Science &#x0026; Engineering,Tempe,AZ,USA"}]},{"given":"Paras","family":"Sheth","sequence":"additional","affiliation":[{"name":"Arizona State University,Computer Science &#x0026; Engineering,Tempe,AZ,USA"}]},{"given":"Huan","family":"Liu","sequence":"additional","affiliation":[{"name":"Arizona State University,Computer Science &#x0026; Engineering,Tempe,AZ,USA"}]}],"member":"263","reference":[{"article-title":"Explaining and harnessing adversarial examples","year":"2014","author":"Goodfellow","key":"ref1"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.49"},{"key":"ref3","article-title":"Simple black-box adversarial attacks","author":"Guo","year":"2019","journal-title":"ICML"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-58592-1_29"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR46437.2021.01166"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1145\/3052973.3053009"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52688.2022.01492"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR42600.2020.00031"},{"key":"ref9","article-title":"Stealing machine learning models via prediction {APIs}","author":"Tram\u00e8r","year":"2016","journal-title":"USENIX"},{"article-title":"Delving into transferable adversarial examples and black-box attacks","year":"2016","author":"Liu","key":"ref10"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2018.00038"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2019.00509"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2019.00444"},{"article-title":"Transferable perturbations of deep feature distributions","year":"2020","author":"Inkawhich","key":"ref14"},{"key":"ref15","article-title":"Perturbing across the feature hierarchy to improve standard and strict blackbox attack transferability","author":"Inkawhich","year":"2020","journal-title":"NeurIPs"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2019.00723"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR46437.2021.00196"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2019.00284"},{"key":"ref19","article-title":"Hermes attack: Steal {DNN} models with lossless inference accuracy","author":"Zhu","year":"2021","journal-title":"USENIX)"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR46437.2021.00473"},{"article-title":"Auto-encoding variational bayes","year":"2013","author":"Kingma","key":"ref21"},{"key":"ref22","article-title":"Learning disentangled representations with semi-supervised deep generative models","author":"Paige","year":"2017","journal-title":"NeurIPs"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1056\/NEJMoa1210384"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v35i8.16909"},{"article-title":"Learning multiple layers of features from tiny images","year":"2009","author":"Krizhevsky","key":"ref25"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.90"},{"article-title":"Very deep convolutional networks for large-scale image recognition","year":"2014","author":"Simonyan","key":"ref27"}],"event":{"name":"2022 IEEE International Conference on Big Data (Big Data)","start":{"date-parts":[[2022,12,17]]},"location":"Osaka, Japan","end":{"date-parts":[[2022,12,20]]}},"container-title":["2022 IEEE International Conference on Big Data (Big Data)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/10020192\/10020156\/10021089.pdf?arnumber=10021089","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,2,13]],"date-time":"2024-02-13T08:01:51Z","timestamp":1707811311000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/10021089\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2022,12,17]]},"references-count":27,"URL":"https:\/\/doi.org\/10.1109\/bigdata55660.2022.10021089","relation":{},"subject":[],"published":{"date-parts":[[2022,12,17]]}}}