{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,2,21]],"date-time":"2025-02-21T01:41:10Z","timestamp":1740102070137,"version":"3.37.3"},"reference-count":17,"publisher":"IEEE","license":[{"start":{"date-parts":[[2023,6,18]],"date-time":"2023-06-18T00:00:00Z","timestamp":1687046400000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2023,6,18]],"date-time":"2023-06-18T00:00:00Z","timestamp":1687046400000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["62171244,62202009,61901237"],"award-info":[{"award-number":["62171244,62202009,61901237"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100004731","name":"Zhejiang Provincial Natural Science Foundation of China","doi-asserted-by":"publisher","award":["LY23F020011"],"award-info":[{"award-number":["LY23F020011"]}],"id":[{"id":"10.13039\/501100004731","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2023,6,18]]},"DOI":"10.1109\/ijcnn54540.2023.10191288","type":"proceedings-article","created":{"date-parts":[[2023,8,2]],"date-time":"2023-08-02T17:30:03Z","timestamp":1690997403000},"page":"1-6","source":"Crossref","is-referenced-by-count":1,"title":["Gradient Sign Inversion: Making an Adversarial Attack a Good Defense"],"prefix":"10.1109","author":[{"given":"Xiaojian","family":"Ji","sequence":"first","affiliation":[{"name":"Ningbo University,Department of Computer Science"}]},{"given":"Li","family":"Dong","sequence":"additional","affiliation":[{"name":"Ningbo University,Department of Computer Science"}]},{"given":"Rangding","family":"Wang","sequence":"additional","affiliation":[{"name":"Ningbo University,Department of Computer Science"}]},{"given":"Diqun","family":"Yan","sequence":"additional","affiliation":[{"name":"Ningbo University,Department of Computer Science"}]},{"given":"Yang","family":"Yin","sequence":"additional","affiliation":[{"name":"Geely Auto Central Research Institute"}]},{"given":"Jinyu","family":"Tian","sequence":"additional","affiliation":[{"name":"School of Computer Science and Engineering, Macau University of Science and Technology"}]}],"member":"263","reference":[{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2017.243"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.90"},{"key":"ref15","first-page":"6105","article-title":"Efficientnet: Rethinking model scaling for con-volutional neural networks","author":"tan","year":"2019","journal-title":"International Conference on Machine Learning"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.308"},{"key":"ref11","article-title":"Mitigating adversarial effects through randomization","author":"xie","year":"2017","journal-title":"ArXiv Preprint"},{"key":"ref10","article-title":"A study of the effect of jpg compression on adversarial images","author":"dziugaite","year":"2016","journal-title":"ArXiv Preprint"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1201\/9781351251389-8"},{"key":"ref1","article-title":"Explaining and harnessing adversarial examples","author":"goodfellow","year":"2014","journal-title":"ArXiv Preprint"},{"key":"ref17","article-title":"Robustart: Benchmarking robust-ness on architecture design and training techniques","author":"tang","year":"2021","journal-title":"ArXiv Preprint"},{"key":"ref16","article-title":"An image is worth 16&#x00D7;16 words: Transformers for image recognition at scale","author":"dosovitskiy","year":"2020","journal-title":"ArXiv Preprint"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2016.41"},{"key":"ref7","article-title":"Intriguing properties of neural networks","author":"szegedy","year":"2013","journal-title":"ArXiv Preprint"},{"key":"ref9","article-title":"Adversarial training for free!","volume":"32","author":"shafahi","year":"2019","journal-title":"Advances in neural information processing systems"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.49"},{"key":"ref3","article-title":"Towards deep learning models resistant to adversarial attacks","author":"madry","year":"2017","journal-title":"ArXiv Preprint"},{"key":"ref6","first-page":"1277","article-title":"Hopskipjumpattack: A query-efficient decision-based attack","author":"chen","year":"2019","journal-title":"2020 IEEE Symposium on Security and Privacy (SP)"},{"key":"ref5","article-title":"Decision-based adversarial attacks: Reliable attacks against black-box machine learning models","volume":"abs 1712 4248","author":"brendel","year":"2017","journal-title":"ArXiv"}],"event":{"name":"2023 International Joint Conference on Neural Networks (IJCNN)","start":{"date-parts":[[2023,6,18]]},"location":"Gold Coast, Australia","end":{"date-parts":[[2023,6,23]]}},"container-title":["2023 International Joint Conference on Neural Networks (IJCNN)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/10190990\/10190992\/10191288.pdf?arnumber=10191288","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2023,8,21]],"date-time":"2023-08-21T17:47:10Z","timestamp":1692640030000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/10191288\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2023,6,18]]},"references-count":17,"URL":"https:\/\/doi.org\/10.1109\/ijcnn54540.2023.10191288","relation":{},"subject":[],"published":{"date-parts":[[2023,6,18]]}}}