{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2024,10,29]],"date-time":"2024-10-29T19:34:56Z","timestamp":1730230496126,"version":"3.28.0"},"reference-count":20,"publisher":"IEEE","license":[{"start":{"date-parts":[[2021,6,6]],"date-time":"2021-06-06T00:00:00Z","timestamp":1622937600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2021,6,6]],"date-time":"2021-06-06T00:00:00Z","timestamp":1622937600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2021,6,6]],"date-time":"2021-06-06T00:00:00Z","timestamp":1622937600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2021,6,6]]},"DOI":"10.1109\/icassp39728.2021.9414573","type":"proceedings-article","created":{"date-parts":[[2021,5,13]],"date-time":"2021-05-13T19:53:45Z","timestamp":1620935625000},"page":"4015-4019","source":"Crossref","is-referenced-by-count":0,"title":["Towards an Intrinsic Definition of Robustness for a Classifier"],"prefix":"10.1109","author":[{"given":"Theo","family":"Giraudon","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Vincent","family":"Gripon","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Matthias","family":"Lowe","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Franck","family":"Vermet","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"year":"2014","author":"goodfellow","article-title":"Explaining and harnessing adversarial examples","key":"ref10"},{"year":"2017","author":"tram\u00e8r","article-title":"Ensemble adversarial training: Attacks and defenses","key":"ref11"},{"key":"ref12","first-page":"2096","article-title":"Domain-adversarial training of neural networks","volume":"17","author":"ganin","year":"2016","journal-title":"The Journal of Machine Learning Research"},{"year":"2019","author":"cohen","article-title":"Certified adversarial robustness via randomized smoothing","key":"ref13"},{"key":"ref14","first-page":"11289","article-title":"Provably robust deep learning via adversarially trained smoothed classifiers","author":"salman","year":"2019","journal-title":"Advances in neural information processing systems"},{"key":"ref15","first-page":"854","article-title":"Parseval networks: Improving robustness to adversarial examples","author":"cisse","year":"0"},{"year":"2018","author":"qian","article-title":"L2-nonexpansive neural networks","key":"ref16"},{"year":"2018","author":"raghunathan","article-title":"Certified defenses against adversarial examples","key":"ref17"},{"year":"2018","author":"weng","article-title":"Proven: Certifying robustness of neural networks with a probabilistic approach","key":"ref18"},{"year":"2020","author":"giraudon","article-title":"Towards an intrinsic definition of robustness for a classifier","key":"ref19"},{"doi-asserted-by":"publisher","key":"ref4","DOI":"10.1016\/j.conb.2018.11.002"},{"doi-asserted-by":"publisher","key":"ref3","DOI":"10.1109\/MCI.2018.2840738"},{"key":"ref6","first-page":"2574","article-title":"Deepfool: a simple and accurate method to fool deep neural networks","author":"moosavi-dezfooli","year":"2016","journal-title":"Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition"},{"key":"ref5","article-title":"Intriguing properties of neural networks","author":"szegedy","year":"2013","journal-title":"arXiv preprint arXiv 1312 6199"},{"year":"2019","author":"hendrycks","article-title":"Benchmarking neural network robustness to common corruptions and perturbations","key":"ref8"},{"doi-asserted-by":"publisher","key":"ref7","DOI":"10.1145\/3128572.3140448"},{"key":"ref2","article-title":"Playing atari with deep reinforcement learning","author":"mnih","year":"2013","journal-title":"arXiv preprint arXiv 1312 5602"},{"doi-asserted-by":"publisher","key":"ref1","DOI":"10.1109\/ICCV.2015.123"},{"year":"2018","author":"ruan","article-title":"Global robustness evaluation of deep neural networks with provable guarantees for the l_0 norm","key":"ref9"},{"year":"2017","author":"madry","article-title":"Towards deep learning models resistant to adversarial attacks","key":"ref20"}],"event":{"name":"ICASSP 2021 - 2021 IEEE International Conference on Acoustics, Speech and Signal Processing (ICASSP)","start":{"date-parts":[[2021,6,6]]},"location":"Toronto, ON, Canada","end":{"date-parts":[[2021,6,11]]}},"container-title":["ICASSP 2021 - 2021 IEEE International Conference on Acoustics, Speech and Signal Processing (ICASSP)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/9413349\/9413350\/09414573.pdf?arnumber=9414573","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,5,10]],"date-time":"2022-05-10T15:40:56Z","timestamp":1652197256000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/9414573\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2021,6,6]]},"references-count":20,"URL":"https:\/\/doi.org\/10.1109\/icassp39728.2021.9414573","relation":{},"subject":[],"published":{"date-parts":[[2021,6,6]]}}}