{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2024,10,30]],"date-time":"2024-10-30T00:14:39Z","timestamp":1730247279652,"version":"3.28.0"},"reference-count":23,"publisher":"IEEE","license":[{"start":{"date-parts":[[2019,9,1]],"date-time":"2019-09-01T00:00:00Z","timestamp":1567296000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2019,9,1]],"date-time":"2019-09-01T00:00:00Z","timestamp":1567296000000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2019,9,1]],"date-time":"2019-09-01T00:00:00Z","timestamp":1567296000000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2019,9]]},"DOI":"10.1109\/icip.2019.8802996","type":"proceedings-article","created":{"date-parts":[[2019,8,26]],"date-time":"2019-08-26T15:32:48Z","timestamp":1566833568000},"page":"884-888","source":"Crossref","is-referenced-by-count":1,"title":["Reinforcing the Robustness of a Deep Neural Network to Adversarial Examples by Using Color Quantization of Training Image Data"],"prefix":"10.1109","author":[{"given":"Shuntaro","family":"Miyazato","sequence":"first","affiliation":[]},{"given":"Xueting","family":"Wang","sequence":"additional","affiliation":[]},{"given":"Toshihiko","family":"Yamasaki","sequence":"additional","affiliation":[]},{"given":"Kiyoharu","family":"Aizawa","sequence":"additional","affiliation":[]}],"member":"263","reference":[{"key":"ref10","article-title":"Towards deep learning models resistant to adversarial attacks","author":"madry","year":"2018","journal-title":"ICLRE"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2016.41"},{"key":"ref12","first-page":"6542","article-title":"Lipschitz-margin training: Scalable certification of perturbation invariance for deep neural networks","author":"tsuzuku","year":"2018","journal-title":"NIPS"},{"key":"ref13","article-title":"Dorefa-net: Training low bitwidth convolutional neural networks with low bitwidth gradients","volume":"abs 1606 6160","author":"zhou","year":"2016","journal-title":"CoRR"},{"key":"ref14","article-title":"Countering adversarial images using input transformations","author":"galloway","year":"2018","journal-title":"ICLRE"},{"key":"ref15","article-title":"Countering adversarial images using input transformations","author":"guo","year":"2018","journal-title":"ICLRE"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2018.23198"},{"key":"ref17","article-title":"Early methods for detecting adversarial images","author":"hendrycks","year":"2017","journal-title":"ICLR Workshop"},{"key":"ref18","first-page":"274","article-title":"Obfuscated gradients give a false sense of security: Circumventing defenses to adversarial examples","author":"athalye","year":"2018","journal-title":"ICML"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.49"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2017.153"},{"key":"ref3","first-page":"1625","article-title":"Robust physical-world attacks on deep learning models","author":"eykholt","year":"2017","journal-title":"CVPR"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1145\/3052973.3053009"},{"key":"ref5","article-title":"Explaining and harnessing adversarial examples","author":"goodfellow","year":"2015","journal-title":"ICLRE"},{"key":"ref8","article-title":"Transferability in machine learning: from phenomena to black-box attacks using adversarial samples","volume":"abs 1605 7277","author":"papernot","year":"2016","journal-title":"CoRR"},{"key":"ref7","article-title":"Ensemble adversarial training: Attacks and defenses","author":"tramr","year":"2018","journal-title":"ICLRE"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2014.81"},{"key":"ref1","first-page":"1097","article-title":"Imagenet classification with deep convolutional neural networks","author":"krizhevsky","year":"2012","journal-title":"NIPS"},{"key":"ref9","first-page":"15","article-title":"Adversarial example defense: Ensembles of weak defenses are not strong","author":"he","year":"2017","journal-title":"WOOT"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.90"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2017.243"},{"key":"ref21","article-title":"Very deep convolutional networks for large-scale image recognition","author":"simonyan","year":"2015","journal-title":"ICLRE"},{"key":"ref23","article-title":"Learning multiple layers of features from tiny images","author":"krizhevsky","year":"2009","journal-title":"Technical Report"}],"event":{"name":"2019 IEEE International Conference on Image Processing (ICIP)","start":{"date-parts":[[2019,9,22]]},"location":"Taipei, Taiwan","end":{"date-parts":[[2019,9,25]]}},"container-title":["2019 IEEE International Conference on Image Processing (ICIP)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/8791230\/8799366\/08802996.pdf?arnumber=8802996","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,7,18]],"date-time":"2022-07-18T11:19:59Z","timestamp":1658143199000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/8802996\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2019,9]]},"references-count":23,"URL":"https:\/\/doi.org\/10.1109\/icip.2019.8802996","relation":{},"subject":[],"published":{"date-parts":[[2019,9]]}}}