{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,4,9]],"date-time":"2026-04-09T21:45:10Z","timestamp":1775771110213,"version":"3.50.1"},"reference-count":26,"publisher":"IEEE","license":[{"start":{"date-parts":[[2024,5,6]],"date-time":"2024-05-06T00:00:00Z","timestamp":1714953600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2024,5,6]],"date-time":"2024-05-06T00:00:00Z","timestamp":1714953600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"DOI":"10.13039\/100000001","name":"NSF","doi-asserted-by":"publisher","award":["2228725"],"award-info":[{"award-number":["2228725"]}],"id":[{"id":"10.13039\/100000001","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2024,5,6]]},"DOI":"10.1109\/host55342.2024.10545406","type":"proceedings-article","created":{"date-parts":[[2024,6,6]],"date-time":"2024-06-06T13:21:52Z","timestamp":1717680112000},"page":"1-11","source":"Crossref","is-referenced-by-count":1,"title":["QNAD: Quantum Noise Injection for Adversarial Defense in Deep Neural Networks"],"prefix":"10.1109","author":[{"given":"Shamik","family":"Kundu","sequence":"first","affiliation":[{"name":"University of Texas at Dallas,TX"}]},{"given":"Navnil","family":"Choudhury","sequence":"additional","affiliation":[{"name":"University of Texas at Dallas,TX"}]},{"given":"Sanjay","family":"Das","sequence":"additional","affiliation":[{"name":"University of Texas at Dallas,TX"}]},{"given":"Arnab","family":"Raha","sequence":"additional","affiliation":[{"name":"Intel Corporation,Santa Clara,CA"}]},{"given":"Kanad","family":"Basu","sequence":"additional","affiliation":[{"name":"University of Texas at Dallas,TX"}]}],"member":"263","reference":[{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1038\/nature14539"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1155\/2018\/7068349"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1109\/MCI.2018.2840738"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1145\/2988450.2988454"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1088\/0034-4885\/61\/2\/002"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1088\/1361-6633\/aab406"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1038\/nature23474"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1103\/RevModPhys.82.1155"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-662-09642-0"},{"key":"ref10","author":"Madry","year":"2017","journal-title":"Towards deep learning models resistant to adversarial attacks"},{"key":"ref11","author":"Goodfellow","year":"2014","journal-title":"Explaining and harnessing adversarial examples"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2019.00068"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-01234-2_23"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR42600.2020.00132"},{"key":"ref15","author":"Xie","year":"2020","journal-title":"Smooth adversarial training"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1109\/DAC18074.2021.9586202"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1109\/DAC18074.2021.9586233"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1038\/s41567-019-0648-8"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1109\/ICTC49870.2020.9289439"},{"key":"ref20","first-page":"251","article-title":"Quclassi: A hybrid deep neural network architecture based on quantum state fidelity","volume-title":"Proceedings of Machine Learning and Systems","volume":"4","author":"Stein","year":"2022"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1038\/s41467-020-20729-5"},{"key":"ref22","author":"Madry","year":"2017","journal-title":"Towards deep learning models resistant to adversarial attacks"},{"key":"ref23","author":"Xie","year":"2017","journal-title":"Mitigating adversarial effects through randomization"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1145\/3464420"},{"key":"ref25","article-title":"Revisiting loss landscape for adversarial robustness","volume-title":"CoRR","volume":"abs\/2004.05884","author":"Wu","year":"2020"},{"key":"ref26","doi-asserted-by":"crossref","first-page":"7054","DOI":"10.18653\/v1\/2022.findings-emnlp.523","article-title":"Weight perturbation as defense against adversarial word substitutions","volume-title":"Findings of the Association for Computational Linguistics: EMNLP 2022","author":"Xu","year":"2022"}],"event":{"name":"2024 IEEE International Symposium on Hardware Oriented Security and Trust (HOST)","location":"Tysons Corner, VA, USA","start":{"date-parts":[[2024,5,6]]},"end":{"date-parts":[[2024,5,9]]}},"container-title":["2024 IEEE International Symposium on Hardware Oriented Security and Trust (HOST)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/10545333\/10545347\/10545406.pdf?arnumber=10545406","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,1,27]],"date-time":"2026-01-27T04:35:14Z","timestamp":1769488514000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/10545406\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024,5,6]]},"references-count":26,"URL":"https:\/\/doi.org\/10.1109\/host55342.2024.10545406","relation":{},"subject":[],"published":{"date-parts":[[2024,5,6]]}}}