{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,1,21]],"date-time":"2026-01-21T10:29:08Z","timestamp":1768991348944,"version":"3.49.0"},"reference-count":22,"publisher":"IEEE","license":[{"start":{"date-parts":[[2025,10,12]],"date-time":"2025-10-12T00:00:00Z","timestamp":1760227200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2025,10,12]],"date-time":"2025-10-12T00:00:00Z","timestamp":1760227200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2025,10,12]]},"DOI":"10.1109\/cvmi66673.2025.11337590","type":"proceedings-article","created":{"date-parts":[[2026,1,19]],"date-time":"2026-01-19T20:52:59Z","timestamp":1768855979000},"page":"1-5","source":"Crossref","is-referenced-by-count":0,"title":["OPTIMISED DVERGE: Disrupting Adversarial Transferability in Black-Box Attacks"],"prefix":"10.1109","author":[{"given":"Pratham","family":"Bhatia","sequence":"first","affiliation":[{"name":"Department of IT IIIT Allahabad,Prayagraj,India"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Ishaan","family":"Oberoi","sequence":"additional","affiliation":[{"name":"Department of IT IIIT Allahabad,Prayagraj,India"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Rohan Kumar","family":"Behera","sequence":"additional","affiliation":[{"name":"Department of IT IIIT Allahabad,Prayagraj,India"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Mehak","family":"Gupta","sequence":"additional","affiliation":[{"name":"Department of IT IIIT Allahabad,Prayagraj,India"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Pranjal Kumar","family":"Singh","sequence":"additional","affiliation":[{"name":"Department of IT IIIT Allahabad,Prayagraj,India"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Anchal","family":"Singh","sequence":"additional","affiliation":[{"name":"Department of IT IIIT Allahabad,Prayagraj,India"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Krishna Pratap","family":"Singh","sequence":"additional","affiliation":[{"name":"Department of IT IIIT Allahabad,Prayagraj,India"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref1","article-title":"Explaining and harnessing adversarial examples","author":"Goodfellow","year":"2014","journal-title":"arXiv preprint"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1145\/3594869"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1016\/j.neucom.2022.10.046"},{"key":"ref4","article-title":"Deepfake generation and detection: A benchmark and survey","author":"Pei","year":"2024","journal-title":"arXiv preprint"},{"key":"ref5","article-title":"Transferability in machine learning: from phenomena to black-box attacks using adversarial samples","author":"Papernot","year":"2016","journal-title":"arXiv preprint"},{"key":"ref6","article-title":"Convergent learning: Do different neural networks learn the same representations?","author":"Li","year":"2015","journal-title":"arXiv preprint"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR46437.2021.00196"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV48922.2021.01585"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2018.00957"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v33i01.33012253"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1109\/EuroSP.2016.36"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1145\/3052973.3053009"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1109\/TPAMI.2021.3126733"},{"key":"ref14","article-title":"Efficient black-box adversarial attacks via bayesian optimization guided by a function prior","author":"Cheng","year":"2024","journal-title":"arXiv preprint"},{"key":"ref15","article-title":"Ensemble adversarial training: Attacks and defenses","author":"Tramer","year":"2017","journal-title":"arXiv preprint"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV51070.2023.00425"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-28954-6_7"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1145\/3664647.3681032"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1016\/j.patcog.2022.109037"},{"key":"ref20","article-title":"Robustness may be at odds with accuracy","author":"Tsipras","year":"2018","journal-title":"arXiv preprint"},{"key":"ref21","article-title":"Towards deep learning models resistant to adversarial attacks","author":"Madry","year":"2017","journal-title":"arXiv preprint"},{"key":"ref22","first-page":"5505","article-title":"Dverge: diversifying vulnerabilities for enhanced robust generation of ensembles","volume":"33","author":"Yang","year":"2020","journal-title":"Advances in Neural Information Processing Systems"}],"event":{"name":"2025 IEEE International Conference on Computer Vision and Machine Intelligence (CVMI)","location":"Rourkela, India","start":{"date-parts":[[2025,10,12]]},"end":{"date-parts":[[2025,10,13]]}},"container-title":["2025 IEEE International Conference on Computer Vision and Machine Intelligence (CVMI)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/11335417\/11337242\/11337590.pdf?arnumber=11337590","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,1,20]],"date-time":"2026-01-20T20:38:33Z","timestamp":1768941513000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/11337590\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,10,12]]},"references-count":22,"URL":"https:\/\/doi.org\/10.1109\/cvmi66673.2025.11337590","relation":{},"subject":[],"published":{"date-parts":[[2025,10,12]]}}}