{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,1,15]],"date-time":"2026-01-15T23:19:13Z","timestamp":1768519153600,"version":"3.49.0"},"reference-count":40,"publisher":"IEEE","license":[{"start":{"date-parts":[[2025,12,14]],"date-time":"2025-12-14T00:00:00Z","timestamp":1765670400000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2025,12,14]],"date-time":"2025-12-14T00:00:00Z","timestamp":1765670400000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"DOI":"10.13039\/501100017607","name":"Shenzhen Fundamental Research Program","doi-asserted-by":"publisher","award":["JCYJ20220818102414030"],"award-info":[{"award-number":["JCYJ20220818102414030"]}],"id":[{"id":"10.13039\/501100017607","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2025,12,14]]},"DOI":"10.1109\/icpads67057.2025.11323102","type":"proceedings-article","created":{"date-parts":[[2026,1,14]],"date-time":"2026-01-14T20:36:54Z","timestamp":1768423014000},"page":"1-9","source":"Crossref","is-referenced-by-count":0,"title":["Black-Box Adversarial Robustness Testing with Partial Observation for Multi-Agent Reinforcement Learning"],"prefix":"10.1109","author":[{"given":"Bang","family":"Zhang","sequence":"first","affiliation":[{"name":"Institute of Cyberspace Security, School of Computer Science and Technology, Harbin Institute of Technology,Guangdong Provincial Key Laboratory of Novel Security Intelligence Technologies,Shenzhen,Guangdong,China,518055"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Wenjian","family":"Luo","sequence":"additional","affiliation":[{"name":"Institute of Cyberspace Security, School of Computer Science and Technology, Harbin Institute of Technology,Guangdong Provincial Key Laboratory of Novel Security Intelligence Technologies,Shenzhen,Guangdong,China,518055"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Kesheng","family":"Chen","sequence":"additional","affiliation":[{"name":"Institute of Cyberspace Security, School of Computer Science and Technology, Harbin Institute of Technology,Guangdong Provincial Key Laboratory of Novel Security Intelligence Technologies,Shenzhen,Guangdong,China,518055"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Yujiang","family":"Liu","sequence":"additional","affiliation":[{"name":"Institute of Cyberspace Security, School of Computer Science and Technology, Harbin Institute of Technology,Guangdong Provincial Key Laboratory of Novel Security Intelligence Technologies,Shenzhen,Guangdong,China,518055"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Shuhan","family":"Qi","sequence":"additional","affiliation":[{"name":"Institute of Cyberspace Security, School of Computer Science and Technology, Harbin Institute of Technology,Guangdong Provincial Key Laboratory of Novel Security Intelligence Technologies,Shenzhen,Guangdong,China,518055"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Xuan","family":"Wang","sequence":"additional","affiliation":[{"name":"Institute of Cyberspace Security, School of Computer Science and Technology, Harbin Institute of Technology,Guangdong Provincial Key Laboratory of Novel Security Intelligence Technologies,Shenzhen,Guangdong,China,518055"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1109\/ICCW.2019.8756984"},{"key":"ref2","article-title":"Safe, multiagent, reinforcement learning for autonomous driving","author":"Shalev-Shwartz","year":"2016","journal-title":"arXiv preprint arXiv"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1109\/TITS.2019.2901791"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-26250-1_25"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1007\/s11432-021-3688-y"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1109\/SPW50608.2020.00027"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1109\/CVPRW56347.2022.00022"},{"key":"ref8","article-title":"Sparse adversarial attack in multi-agent reinforcement learning","author":"Hu","year":"2022","journal-title":"arXiv preprint arXiv"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.3233\/faia230632"},{"issue":"178","key":"ref10","first-page":"1","article-title":"Monotonic value function factorisation for deep multi-agent reinforcement learning","volume":"21","author":"Rashid","year":"2020","journal-title":"Journal of Machine Learning Research"},{"key":"ref11","first-page":"24611","article-title":"The surprising effectiveness of ppo in cooperative multi-agent games","volume":"35","author":"Yu","year":"2022","journal-title":"Advances in neural information processing systems"},{"key":"ref12","article-title":"Evaluating robustness of cooperative marl: A model-based approach","author":"Pham","year":"2022","journal-title":"arXiv preprint arXiv"},{"key":"ref13","article-title":"Value-decomposition networks for cooperative multi-agent learning","author":"Sunehag","year":"2017","journal-title":"arXiv preprint arXiv"},{"key":"ref14","article-title":"The starcraft multi-agent challenge","author":"Samvelyan","year":"2019","journal-title":"arXiv preprint arXiv"},{"key":"ref15","article-title":"Actor-critic algorithms","volume":"12","author":"Konda","year":"1999","journal-title":"Advances in neural information processing systems"},{"key":"ref16","article-title":"Playing atari with deep reinforcement learning","author":"Mnih","year":"2013","journal-title":"arXiv preprint arXiv"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1038\/nature14236"},{"key":"ref18","article-title":"Deep recurrent q-learning for partially observable mdps","volume-title":"2015 aaai fall symposium series","author":"Hausknecht","year":"2015"},{"key":"ref19","article-title":"Intriguing properties of neural networks","author":"Szegedy","year":"2013","journal-title":"arXiv preprint arXiv"},{"key":"ref20","article-title":"Explaining and harnessing adversarial examples","author":"Goodfellow","year":"2014","journal-title":"arXiv preprint arXiv"},{"key":"ref21","article-title":"Towards deep learning models resistant to adversarial attacks","author":"Madry","year":"2017","journal-title":"arXiv preprint arXiv"},{"key":"ref22","article-title":"Adversarial machine learning at scale","author":"Kurakin","year":"2016","journal-title":"arXiv preprint arXiv"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.49"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.282"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1145\/3128572.3140448"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v33i01.3301742"},{"key":"ref27","article-title":"Decision-based adversarial attacks: Reliable attacks against black-box machine learning models","author":"Brendel","year":"2017","journal-title":"arXiv preprint arXiv"},{"key":"ref28","article-title":"Transferability in machine learning: from phenomena to black-box attacks using adversarial samples","author":"Papernot","year":"2016","journal-title":"arXiv preprint arXiv"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.3390\/s23073625"},{"key":"ref30","article-title":"Adversarial policies: Attacking deep reinforcement learning","author":"Gleave","year":"2019","journal-title":"arXiv preprint arXiv"},{"key":"ref31","article-title":"Adversarial attacks on neural network policies","author":"Huang","year":"2017","journal-title":"arXiv preprint arXiv"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.24963\/ijcai.2017\/525"},{"key":"ref33","doi-asserted-by":"publisher","DOI":"10.1016\/j.neunet.2025.107747"},{"key":"ref34","article-title":"What is the solution for state-adversarial multi-agent reinforcement learning?","author":"Han","year":"2022","journal-title":"arXiv preprint arXiv"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1109\/TNNLS.2023.3278715"},{"key":"ref36","doi-asserted-by":"publisher","DOI":"10.1109\/WACV56688.2023.00141"},{"key":"ref37","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2019.00509"},{"key":"ref38","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v34i01.5432"},{"key":"ref39","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR46437.2021.01360"},{"key":"ref40","doi-asserted-by":"publisher","DOI":"10.1109\/TSMC.2024.3454118"}],"event":{"name":"2025 IEEE 31th International Conference on Parallel and Distributed Systems (ICPADS)","location":"Hefei, China","start":{"date-parts":[[2025,12,14]]},"end":{"date-parts":[[2025,12,18]]}},"container-title":["2025 IEEE 31th International Conference on Parallel and Distributed Systems (ICPADS)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/11322805\/11322871\/11323102.pdf?arnumber=11323102","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,1,15]],"date-time":"2026-01-15T07:09:29Z","timestamp":1768460969000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/11323102\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,12,14]]},"references-count":40,"URL":"https:\/\/doi.org\/10.1109\/icpads67057.2025.11323102","relation":{},"subject":[],"published":{"date-parts":[[2025,12,14]]}}}