{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,5,30]],"date-time":"2025-05-30T05:45:52Z","timestamp":1748583952465,"version":"3.28.0"},"reference-count":52,"publisher":"IEEE","license":[{"start":{"date-parts":[[2022,7,18]],"date-time":"2022-07-18T00:00:00Z","timestamp":1658102400000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2022,7,18]],"date-time":"2022-07-18T00:00:00Z","timestamp":1658102400000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2022,7,18]]},"DOI":"10.1109\/ijcnn55064.2022.9892788","type":"proceedings-article","created":{"date-parts":[[2022,9,30]],"date-time":"2022-09-30T19:56:04Z","timestamp":1664567764000},"page":"1-8","source":"Crossref","is-referenced-by-count":3,"title":["Resilience of Bayesian Layer-Wise Explanations under Adversarial Attacks"],"prefix":"10.1109","author":[{"given":"Ginevra","family":"Carbone","sequence":"first","affiliation":[{"name":"University of Trieste,Dept. of Mathematics and Geosciences,Trieste,Italy"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Luca","family":"Bortolussi","sequence":"additional","affiliation":[{"name":"University of Trieste,Dept. of Mathematics and Geosciences,Trieste,Italy"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Guido","family":"Sanguinetti","sequence":"additional","affiliation":[{"name":"School of Informatics, University of Edinburgh,Edinburgh,United Kingdom"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"journal-title":"MNIST Handwritten Digit Database","year":"2010","author":"lecun","key":"ref39"},{"key":"ref38","article-title":"How good is the bayes posterior in deep neural networks really?","author":"wenzel","year":"2020","journal-title":"ArXiv Preprint"},{"key":"ref33","article-title":"Towards interpretable deep neural networks by leveraging adversarial examples","author":"dong","year":"2017","journal-title":"ArXiv Preprint"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.23919\/ICIF.2018.8455710"},{"key":"ref31","article-title":"A simple defense against adversarial attacks on heatmap explanations","author":"rieger","year":"2020","journal-title":"ArXiv Preprint"},{"key":"ref30","first-page":"4768","article-title":"A unified approach to interpreting model predictions","author":"lundberg","year":"0","journal-title":"Proceedings of the 31st NeurIPS"},{"key":"ref37","article-title":"Noisegrad: enhancing explanations by introducing stochasticity to model weights","author":"bykov","year":"2021","journal-title":"ArXiv Preprint"},{"key":"ref36","first-page":"10967","article-title":"On the (in) fidelity and sensitivity of explanations","volume":"32","author":"yeh","year":"0","journal-title":"NeurIPS"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v32i1.11504"},{"key":"ref34","article-title":"Towards deep learning models resistant to adversarial attacks","author":"madry","year":"2017","journal-title":"ArXiv Preprint"},{"key":"ref28","article-title":"Generalized integrated gradients: A practical method for explaining diverse ensembles","author":"merrill","year":"2019","journal-title":"ArXiv Preprint"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1186\/s13059-020-02055-7"},{"key":"ref29","first-page":"3145","article-title":"Learning important features through propagating activation differences","author":"shrikumar","year":"2017","journal-title":"ICML"},{"key":"ref2","first-page":"15602","article-title":"Robustness of bayesian neural networks to gradient-based attacks","volume":"33","author":"carbone","year":"2020","journal-title":"NeurIPS"},{"key":"ref1","article-title":"Explaining and harnessing adversarial examples","author":"goodfellow","year":"0","journal-title":"ICLRE"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2018.2870052"},{"key":"ref22","article-title":"Interpretability and explainability: A machine learning zoo mini-tour","author":"marcinkevi?s","year":"2020","journal-title":"ArXiv Preprint"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1145\/3236009"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/N16-3020"},{"key":"ref23","article-title":"Deep inside convolutional networks: Visualising image classification models and saliency maps","author":"simonyan","year":"2013","journal-title":"ArXiv Preprint"},{"key":"ref26","article-title":"How important is a neuron?","author":"dhamdhere","year":"2018","journal-title":"ArXiv Preprint"},{"key":"ref25","first-page":"3319","article-title":"Axiomatic attribution for deep networks","author":"sundararajan","year":"2017","journal-title":"ICML"},{"key":"ref50","doi-asserted-by":"publisher","DOI":"10.1063\/1.1699114"},{"journal-title":"Monte Carlo Sampling Methods using Markov Chains and their Applications","year":"1970","author":"hastings","key":"ref51"},{"key":"ref52","doi-asserted-by":"publisher","DOI":"10.1201\/9780367806934"},{"key":"ref10","article-title":"Explanations can be manipulated and geometry is to blame","author":"dombrowski","year":"2019","journal-title":"ArXiv Preprint"},{"key":"ref11","first-page":"314","article-title":"Fairwashing explanations with off-manifold detergent","author":"anders","year":"2020","journal-title":"ICML"},{"key":"ref40","article-title":"Fashion-mnist: a novel image dataset for benchmarking machine learning algorithms","author":"xiao","year":"2017","journal-title":"ArXiv Preprint"},{"key":"ref12","first-page":"22","article-title":"Neural networks as interacting particle systems: Asymptotic convexity of the loss landscape and universal scaling of the approximation error","volume":"1050","author":"rotskoff","year":"2018","journal-title":"Stat"},{"key":"ref13","first-page":"1675","article-title":"Gradient descent finds global minima of deep neural networks","author":"du","year":"2019","journal-title":"ICML"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1073\/pnas.1806579115"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1109\/TNNLS.2016.2599820"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1016\/j.patcog.2016.11.008"},{"key":"ref17","article-title":"Adversarial examples in the physical world","volume":"abs 1607 2533","author":"kurakin","year":"2016","journal-title":"CoRR"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1201\/b10905-6"},{"journal-title":"Graphical models exponential families and variational inference","year":"2008","author":"wainwright","key":"ref19"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v33i01.33013681"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1371\/journal.pone.0130140"},{"key":"ref6","article-title":"Towards robust interpretability with self-explaining neural networks","author":"alvarez-melis","year":"2018","journal-title":"ArXiv Preprint"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-28954-6_14"},{"key":"ref8","article-title":"How much can i trust you?-quantifying uncertainties in explaining neural networks","author":"bykov","year":"2020","journal-title":"ArXiv Preprint"},{"key":"ref7","article-title":"Interpretable deep learning under fire","author":"zhang","year":"2020","journal-title":"29th USENIX"},{"key":"ref49","article-title":"A conceptual introduction to hamiltonian monte carlo","author":"betancourt","year":"2017","journal-title":"ArXiv Preprint"},{"key":"ref9","article-title":"Fooling neural network interpretations via adversarial model manipulation","author":"heo","year":"2019","journal-title":"ArXiv Preprint"},{"key":"ref46","doi-asserted-by":"publisher","DOI":"10.1007\/978-1-4419-9982-5"},{"journal-title":"Bayesian-torch Bayesian neural network layers for uncertainty estimation","year":"2020","author":"krishnan","key":"ref45"},{"key":"ref48","doi-asserted-by":"publisher","DOI":"10.1201\/b14835"},{"key":"ref47","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-28954-6_10"},{"key":"ref42","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2009.5206848"},{"key":"ref41","volume":"55","author":"krizhevsky","year":"2014","journal-title":"CIFAR-10 Dataset"},{"key":"ref44","article-title":"Understanding measures of uncertainty for adversarial example detection","author":"smith","year":"2018","journal-title":"ArXiv Preprint"},{"key":"ref43","first-page":"1050","article-title":"Dropout as a bayesian approximation: Representing model uncertainty in deep learning","author":"gal","year":"2016","journal-title":"ICML"}],"event":{"name":"2022 International Joint Conference on Neural Networks (IJCNN)","start":{"date-parts":[[2022,7,18]]},"location":"Padua, Italy","end":{"date-parts":[[2022,7,23]]}},"container-title":["2022 International Joint Conference on Neural Networks (IJCNN)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/9891857\/9889787\/09892788.pdf?arnumber=9892788","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,11,3]],"date-time":"2022-11-03T22:56:51Z","timestamp":1667516211000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/9892788\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2022,7,18]]},"references-count":52,"URL":"https:\/\/doi.org\/10.1109\/ijcnn55064.2022.9892788","relation":{},"subject":[],"published":{"date-parts":[[2022,7,18]]}}}