{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,11,22]],"date-time":"2025-11-22T06:01:04Z","timestamp":1763791264224,"version":"3.45.0"},"reference-count":29,"publisher":"IEEE","license":[{"start":{"date-parts":[[2025,10,27]],"date-time":"2025-10-27T00:00:00Z","timestamp":1761523200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2025,10,27]],"date-time":"2025-10-27T00:00:00Z","timestamp":1761523200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2025,10,27]]},"DOI":"10.1109\/isncc66965.2025.11250426","type":"proceedings-article","created":{"date-parts":[[2025,11,21]],"date-time":"2025-11-21T18:39:45Z","timestamp":1763750385000},"page":"1-8","source":"Crossref","is-referenced-by-count":0,"title":["Multi-Scenario Simulation of Machine Learning Based Vision Attacks in CARLA"],"prefix":"10.1109","author":[{"given":"Lanai","family":"Huang","sequence":"first","affiliation":[{"name":"Shanghai Jiao Tong University,Shanghai,China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Winston","family":"Ellis","sequence":"additional","affiliation":[{"name":"University of Bristol,Bristol,UK"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Sana","family":"Belguith","sequence":"additional","affiliation":[{"name":"University of Bristol,Bristol,UK"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"issue":"1","key":"ref1","doi-asserted-by":"crossref","first-page":"45","DOI":"10.5198\/jtlu.2019.1405","article-title":"Understanding autonomous vehicles","volume":"12","author":"Faisal","year":"2019","journal-title":"Journal of transport and land use"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1126\/science.aaa8415"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1016\/j.aap.2021.106322"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1073\/pnas.1513271113"},{"key":"ref5","article-title":"Explaining and harnessing adversarial examples","author":"Goodfellow","year":"2014","journal-title":"arXiv preprint arXiv:1412.6572"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.282"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v32i1.11672"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v33i01.33011028"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2018.00175"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1109\/TPAMI.2022.3176760"},{"key":"ref11","first-page":"3896","article-title":"Adversarial camera stickers: A physical camera-based attack on deep learning systems","volume-title":"International conference on machine learning","author":"Li"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1109\/TVT.2020.3031576"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1109\/AIPR50011.2020.9425267"},{"key":"ref14","first-page":"274","article-title":"Obfuscated gradients give a false sense of security: Circumventing defenses to adversarial examples","volume-title":"International conference on machine learning","author":"Athalye"},{"key":"ref15","first-page":"1","article-title":"Carla: An open urban driving simulator","volume-title":"Conference on robot learning","author":"Dosovitskiy"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1109\/ITSC48978.2021.9564825"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1016\/j.sysarc.2020.101766"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1016\/j.micpro.2020.103201"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1109\/ICCC59590.2023.10507270"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1016\/j.egyr.2021.08.126"},{"key":"ref21","first-page":"2484","article-title":"Simple black-box adversarial attacks","volume-title":"International conference on machine learning","author":"Guo"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1109\/SP40000.2020.00045"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1109\/TVT.2021.3061065"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1109\/LRA.2023.3280813"},{"key":"ref25","article-title":"Towards deep learning models resistant to adversarial attacks","author":"Madry","year":"2017","journal-title":"arXiv preprint arXiv:1706.06083"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-58592-1_29"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1145\/3128572.3140448"},{"key":"ref28","article-title":"Runtime stealthy perception attacks against dnn-based adaptive cruise control systems","author":"Zhou","year":"2023","journal-title":"arXiv preprint arXiv:2307.08939"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.1145\/3551349.3559528"}],"event":{"name":"2025 International Symposium on Networks, Computers and Communications (ISNCC)","start":{"date-parts":[[2025,10,27]]},"location":"Paris, France","end":{"date-parts":[[2025,10,29]]}},"container-title":["2025 International Symposium on Networks, Computers and Communications (ISNCC)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/11250373\/11250375\/11250426.pdf?arnumber=11250426","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,11,22]],"date-time":"2025-11-22T05:56:35Z","timestamp":1763790995000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/11250426\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,10,27]]},"references-count":29,"URL":"https:\/\/doi.org\/10.1109\/isncc66965.2025.11250426","relation":{},"subject":[],"published":{"date-parts":[[2025,10,27]]}}}