{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,8,30]],"date-time":"2025-08-30T16:59:17Z","timestamp":1756573157051,"version":"3.37.3"},"reference-count":17,"publisher":"IEEE","license":[{"start":{"date-parts":[[2021,9,19]],"date-time":"2021-09-19T00:00:00Z","timestamp":1632009600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2021,9,19]],"date-time":"2021-09-19T00:00:00Z","timestamp":1632009600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"DOI":"10.13039\/100012338","name":"Alan Turing Institute","doi-asserted-by":"publisher","id":[{"id":"10.13039\/100012338","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100000266","name":"Engineering and Physical Sciences Research Council","doi-asserted-by":"publisher","id":[{"id":"10.13039\/501100000266","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2021,9,19]]},"DOI":"10.1109\/icip42928.2021.9506451","type":"proceedings-article","created":{"date-parts":[[2021,8,23]],"date-time":"2021-08-23T21:08:41Z","timestamp":1629752921000},"page":"3073-3077","source":"Crossref","is-referenced-by-count":4,"title":["On the Reversibility of Adversarial Attacks"],"prefix":"10.1109","author":[{"given":"Chau Yi","family":"Li","sequence":"first","affiliation":[{"name":"Queen Mary University of London,Centre for Intelligent Sensing,UK"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Ricardo","family":"Sanchez-Matilla","sequence":"additional","affiliation":[{"name":"Queen Mary University of London,Centre for Intelligent Sensing,UK"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Ali Shahin","family":"Shamsabadi","sequence":"additional","affiliation":[{"name":"Queen Mary University of London,Centre for Intelligent Sensing,UK"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Riccardo","family":"Mazzon","sequence":"additional","affiliation":[{"name":"Queen Mary University of London,Centre for Intelligent Sensing,UK"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Andrea","family":"Cavallaro","sequence":"additional","affiliation":[{"name":"Queen Mary University of London,Centre for Intelligent Sensing,UK"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref10","article-title":"Ensemble adversarial training: Attacks and defenses","author":"tram\u00e8r","year":"2018","journal-title":"International Conference on Learning Representations"},{"key":"ref11","article-title":"Adversarial machine learning at scale","author":"kurakin","year":"2017","journal-title":"International Conference on Learning Representations"},{"key":"ref12","article-title":"Adversarial examples in the physical world","author":"kurakin","year":"2017","journal-title":"International Conference on Learning Representations Workshops Track"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2019.00284"},{"key":"ref14","first-page":"2574","article-title":"DeepFool: A simple and accurate method to fool deep neural networks","author":"moosavi-dezfooli","year":"2016","journal-title":"Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2019.00930"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1109\/5.726791"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1109\/TPAMI.2017.2723009"},{"key":"ref4","article-title":"Explaining and harnessing adversarial examples","author":"goodfellow","year":"2015","journal-title":"International Conference on Learning Representations"},{"key":"ref3","article-title":"Intriguing properties of neural networks","author":"szegedy","year":"2014","journal-title":"International Conference on Learning Representations"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1109\/ICASSP.2019.8682225"},{"key":"ref5","article-title":"The space of transferable adversarial examples","author":"tram\u00e8r","year":"2017","journal-title":"arXiv preprint arXiv 1704 03453"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1109\/EuroSP.2016.36"},{"key":"ref7","article-title":"Robustness to adversarial examples through an ensemble of specialists","author":"abbasi","year":"2017","journal-title":"arXiv preprint arXiv 1702 06156"},{"key":"ref2","first-page":"1097","article-title":"ImageNet classification with deep convolutional neural networks","volume":"25","author":"krizhevsky","year":"2012","journal-title":"Proceedings of the Advances in Neural Information Processing Systems"},{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.90"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.49"}],"event":{"name":"2021 IEEE International Conference on Image Processing (ICIP)","start":{"date-parts":[[2021,9,19]]},"location":"Anchorage, AK, USA","end":{"date-parts":[[2021,9,22]]}},"container-title":["2021 IEEE International Conference on Image Processing (ICIP)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/9506008\/9506009\/09506451.pdf?arnumber=9506451","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,12,6]],"date-time":"2022-12-06T23:58:36Z","timestamp":1670371116000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/9506451\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2021,9,19]]},"references-count":17,"URL":"https:\/\/doi.org\/10.1109\/icip42928.2021.9506451","relation":{},"subject":[],"published":{"date-parts":[[2021,9,19]]}}}