{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,9]],"date-time":"2026-05-09T17:14:53Z","timestamp":1778346893947,"version":"3.51.4"},"reference-count":36,"publisher":"IEEE","license":[{"start":{"date-parts":[[2021,1,10]],"date-time":"2021-01-10T00:00:00Z","timestamp":1610236800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2021,1,10]],"date-time":"2021-01-10T00:00:00Z","timestamp":1610236800000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2021,1,10]],"date-time":"2021-01-10T00:00:00Z","timestamp":1610236800000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"DOI":"10.13039\/501100008530","name":"European Regional Development Fund","doi-asserted-by":"publisher","id":[{"id":"10.13039\/501100008530","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2021,1,10]]},"DOI":"10.1109\/icpr48806.2021.9412560","type":"proceedings-article","created":{"date-parts":[[2021,5,6]],"date-time":"2021-05-06T02:15:54Z","timestamp":1620267354000},"page":"8180-8187","source":"Crossref","is-referenced-by-count":27,"title":["Attack-agnostic Adversarial Detection on Medical Data Using Explainable Machine Learning"],"prefix":"10.1109","author":[{"given":"Matthew","family":"Watson","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Noura","family":"Al Moubayed","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref33","article-title":"Chexnet: Radiologist-level pneumonia detection on chest x-rays with deep learning","volume":"abs 1711 5225","author":"rajpurkar","year":"2017","journal-title":"CoRR"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2009.5206848"},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2017.243"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v33i01.3301590"},{"key":"ref36","first-page":"197","article-title":"Multimodal machine learning for automated icd coding","volume":"106","author":"xu","year":"2019","journal-title":"Proceedings of the 4th Machine Learning for Healthcare Conference"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1016\/j.procs.2018.05.198"},{"key":"ref34","article-title":"Auto-encoding variational bayes","author":"kingma","year":"2014","journal-title":"2nd International Conference on Learning Representations ICLR 2014"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1038\/s41591-018-0300-7"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1001\/jamainternmed.2017.3601"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1016\/S1359-6446(04)03334-3"},{"key":"ref13","article-title":"NO need to worry about adversarial examples in object detection in autonomous vehicles","volume":"abs 1707 3501","author":"lu","year":"2017","journal-title":"CoRR"},{"key":"ref14","article-title":"Artificial intelligence: How to get it right. putting policy into practice for safe data-driven innovation in health and care","author":"morley","year":"0","journal-title":"NHS"},{"key":"ref15","article-title":"Towards a rigorous science of interpretable machine learning","author":"doshi-velez","year":"2017","journal-title":"arXiv Machine Learning"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.23919\/MIPRO.2018.8400040"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.3390\/app9050909"},{"key":"ref18","author":"madry","year":"2017","journal-title":"Towards deep learning models resistant to adversarial attacks"},{"key":"ref19","article-title":"Adversarial patch","volume":"abs 1712 9665","author":"brown","year":"2017","journal-title":"CoRR"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.1038\/sdata.2016.35"},{"key":"ref4","article-title":"Explaining and harnessing adversarial examples","author":"goodfellow","year":"2015","journal-title":"3rd International Conference on Learning Representations ICLR 2015"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1002\/asmb.446"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1148\/radiol.2019191293"},{"key":"ref6","article-title":"Adversarial attacks against medical deep learning systems","volume":"abs 1804 5296","author":"finlayson","year":"2018","journal-title":"CoRR"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.1038\/s41597-019-0322-0"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1145\/3308558.3313528"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1186\/s12916-019-1426-2"},{"key":"ref7","article-title":"Understanding adversarial attacks on deep learning based medical image analysis systems","volume":"abs 1907 10456","author":"ma","year":"2019","journal-title":"CoRR"},{"key":"ref2","first-page":"1","article-title":"Deep neural networks improve radiologists' performance in breast cancer screening","author":"wu","year":"2019","journal-title":"IEEE Transactions on Medical Imaging"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1001\/jama.282.12.1163"},{"key":"ref1","first-page":"3504","article-title":"RETAIN: an interpretable predictive model for healthcare using reverse time attention mechanism","author":"choi","year":"2016","journal-title":"Advances in Neural Information Processing Systems 29 Annual Conference on Neural Information Processing Systems 2016"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.49"},{"key":"ref22","article-title":"Detecting adversarial samples from artifacts","volume":"abs 1703 410","author":"feinman","year":"2017","journal-title":"CoRR"},{"key":"ref21","article-title":"On detecting adversarial perturbations","author":"metzen","year":"2017","journal-title":"5th International Conference on Learning Representations ICLR 2017"},{"key":"ref24","article-title":"ML-LOO: detecting adversarial examples with feature attribution","volume":"abs 1906 3499","author":"yang","year":"2019","journal-title":"CoRR"},{"key":"ref23","first-page":"7167","article-title":"A simple unified framework for detecting out-of-distribution samples and adversarial attacks","author":"lee","year":"2018","journal-title":"Advances in Neural Information Processing Systems 31 Annual Conference on Neural Information Processing Systems 2018 NeurIPS 2018"},{"key":"ref26","first-page":"4765","article-title":"A unified approach to interpreting model predictions","author":"lundberg","year":"2017","journal-title":"Advances in Neural Information Processing Systems 30 Annual Conference on Neural Information Processing Systems 2017"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.3390\/electronics8080832"}],"event":{"name":"2020 25th International Conference on Pattern Recognition (ICPR)","location":"Milan, Italy","start":{"date-parts":[[2021,1,10]]},"end":{"date-parts":[[2021,1,15]]}},"container-title":["2020 25th International Conference on Pattern Recognition (ICPR)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/9411940\/9411911\/09412560.pdf?arnumber=9412560","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,5,10]],"date-time":"2022-05-10T15:40:46Z","timestamp":1652197246000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/9412560\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2021,1,10]]},"references-count":36,"URL":"https:\/\/doi.org\/10.1109\/icpr48806.2021.9412560","relation":{},"subject":[],"published":{"date-parts":[[2021,1,10]]}}}