{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2024,10,30]],"date-time":"2024-10-30T05:31:47Z","timestamp":1730266307156,"version":"3.28.0"},"reference-count":38,"publisher":"IEEE","license":[{"start":{"date-parts":[[2020,7,1]],"date-time":"2020-07-01T00:00:00Z","timestamp":1593561600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2020,7,1]],"date-time":"2020-07-01T00:00:00Z","timestamp":1593561600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2020,7,1]],"date-time":"2020-07-01T00:00:00Z","timestamp":1593561600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2020,7]]},"DOI":"10.1109\/ijcnn48605.2020.9207354","type":"proceedings-article","created":{"date-parts":[[2020,9,29]],"date-time":"2020-09-29T20:40:33Z","timestamp":1601412033000},"page":"1-8","source":"Crossref","is-referenced-by-count":0,"title":["MRobust: A Method for Robustness against Adversarial Attacks on Deep Neural Networks"],"prefix":"10.1109","author":[{"given":"Yi-Ling","family":"Liu","sequence":"first","affiliation":[]},{"given":"Alessio","family":"Lomuscio","sequence":"additional","affiliation":[]}],"member":"263","reference":[{"key":"ref38","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.90"},{"key":"ref33","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.1999.790410"},{"journal-title":"Neural Networks and Learning Machines","year":"2009","author":"haykin","key":"ref32"},{"journal-title":"Pattern Recognition and Machine Learning","year":"2006","author":"bishop","key":"ref31"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.49"},{"journal-title":"Convolutional Deep Belief Networks on CIFAR-10","year":"2010","author":"krizhevsky","key":"ref37"},{"article-title":"Mnist handwritten digit database","year":"1998","author":"lecun","key":"ref36"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1038\/nature16961"},{"key":"ref34","first-page":"72","article-title":"Efficient selectivity and backup operators in monte-carlo tree search","author":"coulom","year":"2006","journal-title":"Proceedings of the 5th International Conference on Computers and Games"},{"key":"ref10","article-title":"Characterizing adversarial subspaces using local intrinsic dimensionality","author":"ma","year":"2018","journal-title":"arXiv 1801 02613"},{"key":"ref11","article-title":"Transferability in machine learning: from phenomena to black-box attacks using adversarial samples","author":"papernot","year":"2016","journal-title":"arXiv 1605 07277"},{"key":"ref12","article-title":"The` space of transferable adversarial examples","author":"tramer","year":"2017","journal-title":"arXiv 1704 03453"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2017.17"},{"journal-title":"Face ID Security","year":"2017","author":"apple","key":"ref14"},{"key":"ref15","article-title":"End to end learning for self-driving cars","author":"bojarski","year":"2016","journal-title":"arXiv 1604 07316 [cs]"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1109\/MALWARE.2015.7413680"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2016.41"},{"key":"ref18","article-title":"Towards robust deep neural networks with bang","author":"rozsa","year":"2016","journal-title":"arXiv 1612 00138"},{"key":"ref19","article-title":"Ensemble adversarial training: Attacks and defenses","author":"tramer","year":"2017","journal-title":"arXiv 1705 07204"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2015.7298640"},{"key":"ref28","article-title":"Early methods for detecting adversarial images","author":"hendrycks","year":"2017","journal-title":"Proceedings of the International Conference on Learning Representations (ICLR)"},{"key":"ref27","article-title":"On the (statistical) detection of adversarial examples","author":"grosse","year":"2017","journal-title":"arXiv 1702 06280"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.282"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-41822-8_1"},{"key":"ref5","first-page":"387","article-title":"Evasion attacks against machine learning at test time","volume":"8190","author":"biggio","year":"2013","journal-title":"ECML PKDD"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2017.56"},{"key":"ref8","article-title":"Explaining and harnessing adversarial examples","author":"goodfellow","year":"2015","journal-title":"Proceedings of the International Conference on Learning Representations (ICLR)"},{"key":"ref7","article-title":"Intriguing properties of neural networks","author":"szegedy","year":"2014","journal-title":"Proceedings of the International Conference on Learning Representations (ICLR)"},{"key":"ref2","article-title":"Adversarial examples in the physical world","author":"kurakin","year":"2016","journal-title":"arXiv 1607 02533"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2018.00396"},{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1007\/s10994-010-5188-5"},{"key":"ref20","article-title":"Adversarial example defenses: Ensembles of weak defenses are not strong","author":"he","year":"2017","journal-title":"arXiv 1706 04701"},{"key":"ref22","article-title":"Feature squeezing: Detecting adversarial examples in deep neural networks","author":"xu","year":"2017","journal-title":"arXiv 1704 01155"},{"key":"ref21","article-title":"Towards deep learning models resistant to adversarial attacks","author":"madry","year":"2018","journal-title":"Proceedings of the International Conference on Learning Representations (ICLR)"},{"key":"ref24","article-title":"Towards deep neural network architectures robust to adversarial examples","author":"gu","year":"2015","journal-title":"Proceedings of the International Conference on Learning Representations (ICLR)"},{"key":"ref23","article-title":"On detecting adversarial perturbations","author":"metzen","year":"2017","journal-title":"Proceedings of the International Conference on Learning Representations (ICLR)"},{"key":"ref26","article-title":"Adversarial and clean data are not twins","author":"gong","year":"2017","journal-title":"arXiv 1704 04960"},{"key":"ref25","article-title":"Adversarial machine learning at scale","author":"kurakin","year":"2017","journal-title":"Proceedings of the International Conference on Learning Representations (ICLR)"}],"event":{"name":"2020 International Joint Conference on Neural Networks (IJCNN)","start":{"date-parts":[[2020,7,19]]},"location":"Glasgow, United Kingdom","end":{"date-parts":[[2020,7,24]]}},"container-title":["2020 International Joint Conference on Neural Networks (IJCNN)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/9200848\/9206590\/09207354.pdf?arnumber=9207354","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,6,28]],"date-time":"2022-06-28T17:56:10Z","timestamp":1656438970000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/9207354\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2020,7]]},"references-count":38,"URL":"https:\/\/doi.org\/10.1109\/ijcnn48605.2020.9207354","relation":{},"subject":[],"published":{"date-parts":[[2020,7]]}}}