{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,10,21]],"date-time":"2025-10-21T15:45:04Z","timestamp":1761061504233,"version":"3.28.0"},"reference-count":34,"publisher":"IEEE","license":[{"start":{"date-parts":[[2021,7,18]],"date-time":"2021-07-18T00:00:00Z","timestamp":1626566400000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2021,7,18]],"date-time":"2021-07-18T00:00:00Z","timestamp":1626566400000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2021,7,18]]},"DOI":"10.1109\/ijcnn52387.2021.9534307","type":"proceedings-article","created":{"date-parts":[[2021,9,21]],"date-time":"2021-09-21T20:40:52Z","timestamp":1632256852000},"page":"1-8","source":"Crossref","is-referenced-by-count":7,"title":["Impact of Spatial Frequency Based Constraints on Adversarial Robustness"],"prefix":"10.1109","author":[{"given":"Remi","family":"Bernhard","sequence":"first","affiliation":[{"name":"CEA, Leti, Mines Saint-Etienne, CEA Tech, SAS, Centre CMP,Gardanne,France,F-13541"}]},{"given":"Pierre-Alain","family":"Moellic","sequence":"additional","affiliation":[{"name":"CEA, Leti, Mines Saint-Etienne, CEA Tech, SAS, Centre CMP,Gardanne,France,F-13541"}]},{"given":"Martial","family":"Mermillod","sequence":"additional","affiliation":[{"name":"LPNC, CNRS, Universit&#x00E9; Grenoble Alpes, Universit&#x00E9; Savoie Mont Blanc,Grenoble,France"}]},{"given":"Yannick","family":"Bourrier","sequence":"additional","affiliation":[{"name":"LPNC, CNRS, Universit&#x00E9; Grenoble Alpes, Universit&#x00E9; Savoie Mont Blanc,Grenoble,France"}]},{"given":"Romain","family":"Cohendet","sequence":"additional","affiliation":[{"name":"Univ. Grenoble Alpes, CEA, List,Grenoble,France,F-38000"}]},{"given":"Miguel","family":"Solinas","sequence":"additional","affiliation":[{"name":"Univ. Grenoble Alpes, CEA, List,Grenoble,France,F-38000"}]},{"given":"Marina","family":"Reyboz","sequence":"additional","affiliation":[{"name":"Univ. Grenoble Alpes, CEA, List,Grenoble,France,F-38000"}]}],"member":"263","reference":[{"key":"ref33","article-title":"On evaluating adversarial robustness","author":"carlini","year":"2019","journal-title":"ArXiv Preprint"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2019.00284"},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2018.00474"},{"key":"ref30","article-title":"Wide residual networks","author":"zagoruyko","year":"2016","journal-title":"British Machine Vision Conference (BVCM)"},{"key":"ref34","article-title":"Overfitting in adversarially robust deep learning","author":"rice","year":"2020","journal-title":"Proceedings of the 37th International Conference on Machine Learning ICML 2020"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2019.2939352"},{"key":"ref11","article-title":"Ro-bustness may be at odds with accuracy","author":"tsipras","year":"2019","journal-title":"International Conference on Learning Representations"},{"key":"ref12","first-page":"1823","article-title":"On the connection between adversarial robustness and saliency map interpretability","author":"etmann","year":"2019","journal-title":"Proceedings of the 36th International Conference on Machine Learning ICML 2019"},{"key":"ref13","article-title":"Are perceptually-aligned gradients a general property of robust classifiers","author":"kaur","year":"2019","journal-title":"Advances in neural information processing systems"},{"key":"ref14","article-title":"Jacobian adversarially regularized networks for robustness","author":"chan","year":"2020","journal-title":"International Conference on Learning Representations"},{"key":"ref15","article-title":"Interpreting adversarially trained convolutional neural networks","author":"zhang","year":"2019","journal-title":"Proceedings of the 36th International Conference on Machine Learning"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1111\/j.1467-9280.1994.tb00500.x"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1016\/j.neucom.2010.06.002"},{"key":"ref18","article-title":"The importance of starting blurry: Simulating improved basic-level category learning in infants due to weak visual acuity","volume":"24","author":"french","year":"2002","journal-title":"Proceedings of the Annual Meeting of the Cognitive Science Society"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1145\/3219819.3219910"},{"key":"ref28","article-title":"Reading digits in natural images with unsupervised feature learning","author":"netzer","year":"2011","journal-title":"NIPS Workshop on Deep Learning and Unsupervised Feature Learning"},{"key":"ref4","article-title":"A fourier perspective on model robustness in computer vision","volume":"32","author":"yin","year":"2019","journal-title":"Advances in neural information processing systems"},{"key":"ref27","article-title":"Learning multiple layers of features from tiny images","author":"krizhevsky","year":"2009","journal-title":"University of Toronto Tech Rep"},{"key":"ref3","first-page":"125","article-title":"Adversarial examples are not bugs, they are features","author":"ilyas","year":"2019","journal-title":"Advances in neural information processing systems"},{"key":"ref6","article-title":"Theoretically principled trade-off between robustness and accuracy","author":"zhang","year":"2019","journal-title":"Proceedings of the 36th International Conference on Machine Learning ICML 2019"},{"key":"ref29","article-title":"Very deep convolutional networks for large-scale image recognition","author":"simonyan","year":"2015","journal-title":"International Conference on Learning Representations"},{"key":"ref5","article-title":"Towards deep learning models resistant to adversarial attacks","author":"madry","year":"2018","journal-title":"International Conference on Learning Representations"},{"key":"ref8","article-title":"Certified adversarial robustness via randomized smoothing","author":"cohen","year":"2019","journal-title":"Proceedings of the ICML International Conference on Machine Learning"},{"key":"ref7","article-title":"Using pre-training can improve model robustness and uncertainty","author":"hendrycks","year":"2019","journal-title":"Proceedings of the 36th International Conference on Machine Learning ICML 2019"},{"key":"ref2","article-title":"Measuring the tendency of cnns to learn surface statistical regularities","author":"jo","year":"2017","journal-title":"ArXiv Preprint"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1145\/3133956.3134057"},{"key":"ref1","article-title":"Intriguing properties of neural networks","author":"szegedy","year":"2014","journal-title":"International Conference on Learning Representations"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2019.00095"},{"key":"ref22","article-title":"Towards achieving adversarial robustness by enforcing feature consistency across bit planes","author":"addepalli","year":"2020","journal-title":"IEEE Conf Computer Vision and Pattern Recognition"},{"key":"ref21","article-title":"Adversarial defense by suppressing high-frequency components","author":"zhang","year":"2019","journal-title":"ArXiv Preprint"},{"key":"ref24","article-title":"Imagenet - trained CNNs are biased towards texture; increasing shape bias improves accuracy and robustness","author":"geirhos","year":"2019","journal-title":"International Conference on Learning Representations"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR42600.2020.00871"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.24963\/ijcai.2019\/470"},{"key":"ref25","article-title":"To-wards frequency-based explanation for robust cnn","author":"wang","year":"2020","journal-title":"ArXiv Preprint"}],"event":{"name":"2021 International Joint Conference on Neural Networks (IJCNN)","start":{"date-parts":[[2021,7,18]]},"location":"Shenzhen, China","end":{"date-parts":[[2021,7,22]]}},"container-title":["2021 International Joint Conference on Neural Networks (IJCNN)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/9533266\/9533267\/09534307.pdf?arnumber=9534307","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,8,2]],"date-time":"2022-08-02T23:33:40Z","timestamp":1659483220000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/9534307\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2021,7,18]]},"references-count":34,"URL":"https:\/\/doi.org\/10.1109\/ijcnn52387.2021.9534307","relation":{},"subject":[],"published":{"date-parts":[[2021,7,18]]}}}