{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,4,30]],"date-time":"2025-04-30T05:08:33Z","timestamp":1745989713354},"reference-count":54,"publisher":"IEEE","license":[{"start":{"date-parts":[[2021,7,18]],"date-time":"2021-07-18T00:00:00Z","timestamp":1626566400000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2021,7,18]],"date-time":"2021-07-18T00:00:00Z","timestamp":1626566400000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2021,7,18]],"date-time":"2021-07-18T00:00:00Z","timestamp":1626566400000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2021,7,18]]},"DOI":"10.1109\/ijcnn52387.2021.9534460","type":"proceedings-article","created":{"date-parts":[[2021,9,21]],"date-time":"2021-09-21T20:40:52Z","timestamp":1632256852000},"source":"Crossref","is-referenced-by-count":8,"title":["RoCo-NAS: Robust and Compact Neural Architecture Search"],"prefix":"10.1109","author":[{"given":"Vahid","family":"Geraeinejad","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Sima","family":"Sinaei","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Mehdi","family":"Modarressi","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Masoud","family":"Daneshtalab","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref39","article-title":"Obfuscated gradients give a false sense of security: Circumventing defenses to adversarial examples","author":"athalye","year":"0","journal-title":"35th International Conference on Machine Learning (ICML)"},{"key":"ref38","doi-asserted-by":"publisher","DOI":"10.1145\/3052973.3053009"},{"key":"ref33","doi-asserted-by":"publisher","DOI":"10.1145\/3321707.3321729"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v33i01.33014780"},{"key":"ref31","article-title":"Hierarchical representations for efficient architecture search","author":"liu","year":"0","journal-title":"International Conference on Learning Representations (ICLR)"},{"key":"ref30","author":"kozma","year":"2018","journal-title":"Artificial Intelligence in the Age of Neural Networks and Brain Computing"},{"key":"ref37","article-title":"Extending defensive distillation","author":"papernot","year":"2017","journal-title":"ArXiv Preprint"},{"key":"ref36","article-title":"PixelDe-fend: Leveraging generative models to understand and defend against adversarial examples","author":"song","year":"0","journal-title":"International Conference on Learning Representations (ICLR)"},{"key":"ref35","article-title":"Opportunities and challenges in deep learning adversarial robustness: A survey","author":"silva","year":"0","journal-title":"ArXiv Preprint"},{"key":"ref34","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.49"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2015.7298594"},{"key":"ref27","first-page":"525","article-title":"Boa: The bayesian optimization algorithm","author":"pelikan","year":"1999","journal-title":"Proceedings of the 1st Annual Conference on Genetic and Evolutionary Computation - Volume 1 ser GECCO'99"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2017.154"},{"key":"ref2","article-title":"Explaining and harnessing adversarial examples","author":"goodfellow","year":"0","journal-title":"International Conference on Learning Representations (ICLR)"},{"key":"ref1","article-title":"Adversarial examples in the physical world","author":"kurakin","year":"0","journal-title":"5th International Conference on Learning Representations (ICLR)"},{"key":"ref20","article-title":"Model compression with adversarial robustness: A unified optimization framework","author":"gui","year":"0","journal-title":"Advances in Neural Information Processing Systems 2019"},{"key":"ref22","article-title":"Designing neural network architectures using reinforcement learning","author":"baker","year":"0","journal-title":"5th International Conference on Learning Representations (ICLR)"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2018.00907"},{"key":"ref24","article-title":"Network morphism","author":"wei","year":"0","journal-title":"International Conference on Machine Learning (ICML)"},{"key":"ref23","author":"watkins","year":"1989","journal-title":"Learning from delayed rewards"},{"key":"ref26","article-title":"DARTS: Differentiable architecture search","author":"liu","year":"0","journal-title":"International Conference on Learning Representations (ICLR)"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1162\/106365602320169811"},{"key":"ref50","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2017.243"},{"key":"ref51","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.90"},{"key":"ref54","article-title":"Smash: one-shot model architecture search through hypernetworks","author":"brock","year":"2017","journal-title":"ArXiv Preprint"},{"key":"ref53","article-title":"Proxylessnas: Direct neural architecture search on target task and hardware","author":"cai","year":"0","journal-title":"International Conference on Learning Representations (ICLR)"},{"key":"ref52","first-page":"arxiv","article-title":"Adversarial robustness assessment: Why both l0 and l? attacks are necessary","author":"kotyan","year":"2019","journal-title":"ArXiv e-prints"},{"key":"ref10","article-title":"Towards deep learning models resistant to adversarial attacks","author":"madry","year":"0","journal-title":"International Conference on Learning Representations (ICLR)"},{"key":"ref11","article-title":"Intriguing properties of neural networks","author":"szegedy","year":"0","journal-title":"International Conference on Learning Representations (ICLR)"},{"key":"ref40","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2017.56"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.282"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2017.17"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1109\/TEVC.2019.2890858"},{"key":"ref15","article-title":"Synthesizing robust adversarial examples","author":"athalye","year":"0","journal-title":"35th International Conference on Machine Learning (ICML)"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1109\/ICCVW.2019.00243"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2019.00138"},{"key":"ref18","article-title":"Efficient Neural Architecture Search via parameter Sharing","author":"pham","year":"0","journal-title":"35th International Conference on Machine Learning (ICML)"},{"key":"ref19","article-title":"Adversarial robustness may be at odds with simplicity","author":"nakkiran","year":"2019","journal-title":"ArXiv Preprint"},{"key":"ref4","article-title":"Adversarial Logit Pairing","author":"kannan","year":"0","journal-title":"Conference on Neural Information Processing Systems (NIPS)"},{"key":"ref3","article-title":"Towards deep learning models resistant to adversarial attacks","author":"madry","year":"0","journal-title":"International Conference on Learning Representations (ICLR)"},{"key":"ref6","article-title":"Mitigating adversarial effects through randomization","author":"xie","year":"0","journal-title":"International Conference on Learning Representations (ICLR)"},{"key":"ref5","article-title":"Theoretically principled trade-off between robustness and accuracy","author":"zhang","year":"0","journal-title":"International Conference on Machine Learning (ICML)"},{"key":"ref8","article-title":"ME-Net: Towards effective adversarial robustness with matrix estimation","author":"yang","year":"0","journal-title":"International Conference on Machine Learning (ICML)"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2019.00059"},{"key":"ref49","article-title":"A fast elitist nondominated sorting genetic algorithm for multi-objective optimization: NSGA-II","author":"deb","year":"2000","journal-title":"Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics)"},{"key":"ref9","article-title":"Intriguing properties of adversarial training at scale","author":"xie","year":"0","journal-title":"International Conference on Learning Representations (ICLR)"},{"key":"ref46","article-title":"Adversarially robust neural architectures","author":"dong","year":"2020","journal-title":"ArXiv Preprint"},{"key":"ref45","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR42600.2020.00071"},{"key":"ref48","doi-asserted-by":"publisher","DOI":"10.1016\/j.ejor.2017.02.015"},{"key":"ref47","article-title":"Understanding and simplifying one-shot architecture search","author":"bender","year":"0","journal-title":"35th International Conference on Machine Learning (ICML)"},{"key":"ref42","article-title":"On the (statistical) detection of adversarial examples","author":"grosse","year":"2017","journal-title":"ArXiv Preprint"},{"key":"ref41","author":"bhagoji","year":"2018","journal-title":"Dimensionality Reduction as a Defense against Evasion Attacks on Machine Learning Classifier"},{"key":"ref44","doi-asserted-by":"publisher","DOI":"10.1145\/3377929.3389962"},{"key":"ref43","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2018.23198"}],"event":{"name":"2021 International Joint Conference on Neural Networks (IJCNN)","location":"Shenzhen, China","start":{"date-parts":[[2021,7,18]]},"end":{"date-parts":[[2021,7,22]]}},"container-title":["2021 International Joint Conference on Neural Networks (IJCNN)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/9533266\/9533267\/09534460.pdf?arnumber=9534460","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,5,10]],"date-time":"2022-05-10T15:46:17Z","timestamp":1652197577000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/9534460\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2021,7,18]]},"references-count":54,"URL":"https:\/\/doi.org\/10.1109\/ijcnn52387.2021.9534460","relation":{},"subject":[],"published":{"date-parts":[[2021,7,18]]}}}