{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,1,21]],"date-time":"2026-01-21T10:44:08Z","timestamp":1768992248052,"version":"3.49.0"},"reference-count":47,"publisher":"IEEE","license":[{"start":{"date-parts":[[2020,12,14]],"date-time":"2020-12-14T00:00:00Z","timestamp":1607904000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2020,12,14]],"date-time":"2020-12-14T00:00:00Z","timestamp":1607904000000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2020,12,14]],"date-time":"2020-12-14T00:00:00Z","timestamp":1607904000000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"DOI":"10.13039\/100000001","name":"National Science Foundation","doi-asserted-by":"publisher","id":[{"id":"10.13039\/100000001","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2020,12,14]]},"DOI":"10.1109\/cdc42340.2020.9303984","type":"proceedings-article","created":{"date-parts":[[2021,1,13]],"date-time":"2021-01-13T07:27:32Z","timestamp":1610522852000},"page":"3194-3199","source":"Crossref","is-referenced-by-count":1,"title":["Average Margin Regularization for Classifiers"],"prefix":"10.1109","author":[{"given":"Matt","family":"Olfat","sequence":"first","affiliation":[]},{"given":"Anil","family":"Aswani","sequence":"additional","affiliation":[]}],"member":"263","reference":[{"key":"ref39","article-title":"Towards deep learning models resistant to adversarial attacks","author":"madry","year":"2017","journal-title":"arXiv preprint arXiv 1706 06083"},{"key":"ref38","doi-asserted-by":"publisher","DOI":"10.1145\/3128572.3140444"},{"key":"ref33","doi-asserted-by":"publisher","DOI":"10.1109\/TSMCC.2002.807277"},{"key":"ref32","first-page":"2532","article-title":"Relaxed clipping: A global training method for robust regression and classification","author":"yu","year":"2010","journal-title":"NeurIPS"},{"key":"ref31","first-page":"1098","article-title":"Outlier path: A homotopy algorithm for robust SVM","author":"suzumura","year":"2014","journal-title":"ICML"},{"key":"ref30","first-page":"463","article-title":"Rademacher and gaussian complexities: Risk bounds and structural results","volume":"3","author":"bartlett","year":"2002","journal-title":"Journal of Machine Learning Research"},{"key":"ref37","first-page":"1196","article-title":"Learning with noisy labels","author":"natarajan","year":"2013","journal-title":"NeurIPS"},{"key":"ref36","first-page":"97","article-title":"Support vector machines under adversarial label noise","author":"biggio","year":"2011","journal-title":"Asian Conference on Machine Learning"},{"key":"ref35","first-page":"536","article-title":"Robust support vector machine training via convex outlier ablation","volume":"6","author":"xu","year":"2006","journal-title":"AAAI"},{"key":"ref34","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2010.5540136"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1080\/10556780600883791"},{"key":"ref40","article-title":"Adversarial logit pairing","author":"kannan","year":"2018","journal-title":"arXiv preprint arXiv 1803 06373"},{"key":"ref11","article-title":"Robust classification","author":"bertsimas","year":"2017","journal-title":"J Mach Learn Res"},{"key":"ref12","article-title":"Explaining and harnessing adversarial examples","author":"goodfellow","year":"0","journal-title":"ICLR 2015"},{"key":"ref13","first-page":"1801","article-title":"Robust regression and lasso","author":"xu","year":"2009","journal-title":"NeurIPS"},{"key":"ref14","first-page":"1485","article-title":"Robustness and regularization of support vector machines","volume":"10","author":"xu","year":"2009","journal-title":"J Mach Learn Res"},{"key":"ref15","first-page":"722","article-title":"A simple geometric interpretation of SVM using stochastic adversaries","author":"livni","year":"2012","journal-title":"AISTATS"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1007\/BF00994018"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1145\/376284.375668"},{"key":"ref18","doi-asserted-by":"crossref","DOI":"10.7551\/mitpress\/4175.001.0001","author":"scholkopf","year":"2001","journal-title":"Learning With Kernels Support Vector Machines Regularization Optimization and Beyond"},{"key":"ref19","first-page":"281","article-title":"Adaptive margin support vector machines","author":"weston","year":"1999","journal-title":"NeurIPS"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.1145\/1143844.1143870"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1016\/j.patcog.2018.07.023"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1145\/1015330.1015344"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1145\/1014052.1014066"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1109\/MSP.2011.67"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.1198\/016214505000000781"},{"key":"ref5","article-title":"Malicious control system cyber security attack case study&#x2013;Maroochy water services, australia","author":"abrams","year":"0","journal-title":"MITRE 2008"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1016\/j.jnca.2017.10.017"},{"key":"ref7","article-title":"Research challenges for the security of control systems","author":"c\u00e1rdenas","year":"2008","journal-title":"HOTSEC"},{"key":"ref2","article-title":"Fundamental limits on adversarial robustness","author":"fawzi","year":"2015","journal-title":"Proc ICML Deep Learn Workshop"},{"key":"ref9","first-page":"555","article-title":"A robust minimax approach to classification","volume":"3","author":"lanckriet","year":"2002","journal-title":"Journal of Machine Learning Research"},{"key":"ref1","article-title":"Intriguing properties of neural networks","author":"szegedy","year":"0","journal-title":"ICLR 2014"},{"key":"ref46","first-page":"793","article-title":"On the complexity of linear prediction: Risk bounds, margin bounds, and regularization","author":"kakade","year":"2009","journal-title":"NeurIPS"},{"key":"ref20","first-page":"161","article-title":"Support vector classification with input data uncertainty","author":"bi","year":"2005","journal-title":"NeurIPS"},{"key":"ref45","doi-asserted-by":"publisher","DOI":"10.1080\/01621459.2013.827984"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.2197\/ipsjtcva.1.83"},{"key":"ref47","article-title":"MNIST hand-written digit database","volume":"2","author":"lecun","year":"2010","journal-title":"AT&T Labs"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-04268-3_38"},{"key":"ref42","first-page":"2399","article-title":"Manifold regularization: A geometric framework for learning from labeled and unlabeled examples","volume":"7","author":"belkin","year":"2006","journal-title":"JMLR"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1137\/0520094"},{"key":"ref41","article-title":"Certified defenses against adversarial examples","author":"raghunathan","year":"2018","journal-title":"arXiv preprint arXiv 1801 09344"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1016\/j.cviu.2008.09.003"},{"key":"ref44","doi-asserted-by":"publisher","DOI":"10.1214\/10-AOS823"},{"key":"ref26","article-title":"There is no free lunch in adversarial robustness (but there are unexpected benefits)","author":"tsipras","year":"2018","journal-title":"arXiv preprint arXiv 1805 12152"},{"key":"ref43","doi-asserted-by":"publisher","DOI":"10.1214\/074921707000000148"},{"key":"ref25","first-page":"6587","article-title":"Off-line and on-line vigilance estimation based on linear dynamical system and manifold learning","author":"shi","year":"2010","journal-title":"EMBC"}],"event":{"name":"2020 59th IEEE Conference on Decision and Control (CDC)","location":"Jeju, Korea (South)","start":{"date-parts":[[2020,12,14]]},"end":{"date-parts":[[2020,12,18]]}},"container-title":["2020 59th IEEE Conference on Decision and Control (CDC)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/9303728\/9303729\/09303984.pdf?arnumber=9303984","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,8,22]],"date-time":"2024-08-22T08:01:17Z","timestamp":1724313677000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/9303984\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2020,12,14]]},"references-count":47,"URL":"https:\/\/doi.org\/10.1109\/cdc42340.2020.9303984","relation":{},"subject":[],"published":{"date-parts":[[2020,12,14]]}}}