{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2024,9,7]],"date-time":"2024-09-07T22:35:15Z","timestamp":1725748515086},"reference-count":24,"publisher":"IEEE","license":[{"start":{"date-parts":[[2021,9,19]],"date-time":"2021-09-19T00:00:00Z","timestamp":1632009600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2021,9,19]],"date-time":"2021-09-19T00:00:00Z","timestamp":1632009600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2021,9,19]]},"DOI":"10.1109\/icip42928.2021.9506464","type":"proceedings-article","created":{"date-parts":[[2021,8,23]],"date-time":"2021-08-23T17:08:41Z","timestamp":1629738521000},"page":"3048-3052","source":"Crossref","is-referenced-by-count":2,"title":["Robust Decision-Based Black-Box Adversarial Attack via Coarse-To-Fine Random Search"],"prefix":"10.1109","author":[{"given":"Byeong Cheon","family":"Kim","sequence":"first","affiliation":[{"name":"School of Electrical Engineering,Image and Video Systems Lab,KAIST,South Korea"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Youngjoon","family":"Yu","sequence":"additional","affiliation":[{"name":"School of Electrical Engineering,Image and Video Systems Lab,KAIST,South Korea"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Yong Man","family":"Ro","sequence":"additional","affiliation":[{"name":"School of Electrical Engineering,Image and Video Systems Lab,KAIST,South Korea"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1145\/3128572.3140448"},{"key":"ref11","article-title":"Query-efficient hard-label black-box attack: An optimization-based approach","author":"cheng","year":"2018","journal-title":"arXiv preprint 1807 04457"},{"key":"ref12","article-title":"Sign-opt: A query-efficient hard-label adversarial attack","author":"cheng","year":"2019","journal-title":"arXiv preprint 1909 10773"},{"key":"ref13","article-title":"Simple black-box adversarial attacks","author":"guo","year":"2019","journal-title":"arXiv preprint 1905 07121"},{"key":"ref14","first-page":"484","article-title":"Square attack: a query-efficient black-box adversarial attack via random search","author":"andriushchenko","year":"2020","journal-title":"ECCV"},{"key":"ref15","article-title":"Bayesopt adversarial attack","author":"ru","year":"2019","journal-title":"International Conference on Learning Representations"},{"key":"ref16","article-title":"Decision-based adversarial attacks: Reliable attacks against black-box machine learning models","author":"brendel","year":"2017","journal-title":"arXiv preprint arXiv 1712 04248"},{"key":"ref17","article-title":"Obfuscated gradients give a false sense of security: Circumventing defenses to adversarial examples","author":"athalye","year":"2018","journal-title":"arXiv preprint arXiv 1802 00420"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR42600.2020.00040"},{"key":"ref19","article-title":"Gradientless descent: High-dimensional zeroth-order optimization","author":"golovin","year":"2019","journal-title":"arXiv preprint arXiv 1911 11698"},{"key":"ref4","article-title":"Explaining and harnessing adversarial examples","author":"goodfellow","year":"2014","journal-title":"arXiv preprint arXiv 1412 6572"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.308"},{"key":"ref6","article-title":"Robust ensemble model training via random layer sampling against adversarial attack","author":"lee","year":"2020","journal-title":"arXiv preprint arXiv 2005 10545"},{"key":"ref5","article-title":"Mitigating adversarial effects through randomization","author":"xie","year":"2017","journal-title":"arXiv preprint 1711"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1145\/3321707.3321749"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1109\/ICASSP39728.2021.9413772"},{"key":"ref2","article-title":"Wide residual networks","author":"zagoruyko","year":"2016","journal-title":"arXiv preprint arXiv 1605 07146"},{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.90"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1145\/3052973.3053009"},{"key":"ref20","doi-asserted-by":"crossref","DOI":"10.1016\/j.eng.2019.12.012","article-title":"Adversarial attacks and defenses in deep learning","author":"ren","year":"2020","journal-title":"Engineering"},{"key":"ref22","article-title":"Delving into transferable adversarial examples and black-box attacks","author":"liu","year":"2016","journal-title":"arXiv preprint 1611 02770"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2021.3076225"},{"key":"ref24","article-title":"A study of the effect of jpg compression on adversarial images","author":"dziugaite","year":"2016","journal-title":"arXiv preprint arXiv 1608 00853"},{"key":"ref23","article-title":"Black-box adversarial attacks with limited queries and information","author":"ilyas","year":"2018","journal-title":"arXiv preprint 1804 08598"}],"event":{"name":"2021 IEEE International Conference on Image Processing (ICIP)","start":{"date-parts":[[2021,9,19]]},"location":"Anchorage, AK, USA","end":{"date-parts":[[2021,9,22]]}},"container-title":["2021 IEEE International Conference on Image Processing (ICIP)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/9506008\/9506009\/09506464.pdf?arnumber=9506464","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,12,6]],"date-time":"2022-12-06T18:58:56Z","timestamp":1670353136000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/9506464\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2021,9,19]]},"references-count":24,"URL":"https:\/\/doi.org\/10.1109\/icip42928.2021.9506464","relation":{},"subject":[],"published":{"date-parts":[[2021,9,19]]}}}