{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,12,18]],"date-time":"2025-12-18T14:15:31Z","timestamp":1766067331384,"version":"3.37.3"},"reference-count":51,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","issue":"2","funder":[{"DOI":"10.13039\/501100001381","name":"National Research Foundation, Singapore, through the National Cybersecurity Research and Development Programme\/Cyber-Hardware Forensic and Assurance Evaluation Research and Development Programme","doi-asserted-by":"publisher","award":["CHFA-GC1-AW01"],"award-info":[{"award-number":["CHFA-GC1-AW01"]}],"id":[{"id":"10.13039\/501100001381","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE J. Emerg. Sel. Topics Circuits Syst."],"published-print":{"date-parts":[[2021,6]]},"DOI":"10.1109\/jetcas.2021.3076101","type":"journal-article","created":{"date-parts":[[2021,4,27]],"date-time":"2021-04-27T20:10:45Z","timestamp":1619554245000},"page":"252-266","source":"Crossref","is-referenced-by-count":7,"title":["A New Lightweight <i>In Situ<\/i> Adversarial Sample Detector for Edge Deep Neural Network"],"prefix":"10.1109","volume":"11","author":[{"given":"Si","family":"Wang","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-4590-5367","authenticated-orcid":false,"given":"Wenye","family":"Liu","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-8897-6176","authenticated-orcid":false,"given":"Chip-Hong","family":"Chang","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"doi-asserted-by":"publisher","key":"ref39","DOI":"10.1109\/TDSC.2018.2874243"},{"doi-asserted-by":"publisher","key":"ref38","DOI":"10.1109\/ISSRE.2018.00021"},{"key":"ref33","article-title":"MagNet and &#x2018;efficient defenses against adversarial attacks&#x2019; are not robust to adversarial examples","author":"carlini","year":"2017","journal-title":"arXiv 1711 08478"},{"doi-asserted-by":"publisher","key":"ref32","DOI":"10.1109\/CISS.2018.8362326"},{"key":"ref31","article-title":"Detecting adversarial samples for deep neural networks through mutation testing","author":"wang","year":"2018","journal-title":"arXiv 1805 05010"},{"year":"0","author":"metzen","article-title":"On detecting adversarial perturbations","key":"ref30"},{"doi-asserted-by":"publisher","key":"ref37","DOI":"10.1109\/ICSE.2019.00126"},{"key":"ref36","article-title":"On the (statistical) detection of adversarial examples","author":"grosse","year":"2017","journal-title":"arXiv 1702 06280"},{"doi-asserted-by":"publisher","key":"ref35","DOI":"10.1109\/CVPR.2019.00496"},{"key":"ref34","article-title":"Detecting adversarial samples from artifacts","author":"feinman","year":"2017","journal-title":"arXiv 1703 00410"},{"doi-asserted-by":"publisher","key":"ref28","DOI":"10.1145\/3052973.3053009"},{"doi-asserted-by":"publisher","key":"ref27","DOI":"10.1109\/SP.2016.41"},{"doi-asserted-by":"publisher","key":"ref29","DOI":"10.14722\/ndss.2018.23198"},{"doi-asserted-by":"publisher","key":"ref2","DOI":"10.1561\/2200000006"},{"key":"ref1","doi-asserted-by":"crossref","first-page":"436","DOI":"10.1038\/nature14539","article-title":"Deep learning","volume":"521","author":"lecun","year":"2015","journal-title":"Nature"},{"doi-asserted-by":"publisher","key":"ref20","DOI":"10.1364\/AO.29.004790"},{"key":"ref22","first-page":"10","article-title":"1.1 Computing&#x2019;s energy problem (and what we can do about it)","author":"horowitz","year":"2014","journal-title":"IEEE Int Solid-State Circuits Conf Dig Tech Papers (ISSCC)"},{"doi-asserted-by":"publisher","key":"ref21","DOI":"10.1145\/3079856.3080246"},{"year":"2019","journal-title":"DPU for Convolutional Neural Network v3 0","key":"ref24"},{"doi-asserted-by":"publisher","key":"ref23","DOI":"10.1109\/JSSC.2016.2636225"},{"doi-asserted-by":"publisher","key":"ref26","DOI":"10.1109\/EuroSP.2018.00035"},{"doi-asserted-by":"publisher","key":"ref25","DOI":"10.1109\/CVPR.2016.282"},{"doi-asserted-by":"publisher","key":"ref50","DOI":"10.1109\/CVPR.2016.90"},{"doi-asserted-by":"publisher","key":"ref51","DOI":"10.1109\/TCSI.2020.3030663"},{"doi-asserted-by":"publisher","key":"ref10","DOI":"10.1109\/AsianHOST47458.2019.9006702"},{"doi-asserted-by":"publisher","key":"ref11","DOI":"10.1109\/ISCAS45731.2020.9180476"},{"doi-asserted-by":"publisher","key":"ref40","DOI":"10.1007\/978-3-642-12510-2_13"},{"doi-asserted-by":"publisher","key":"ref12","DOI":"10.1145\/3373376.3378532"},{"doi-asserted-by":"publisher","key":"ref13","DOI":"10.1145\/3240765.3240791"},{"key":"ref14","first-page":"3146","article-title":"LightGBM: A highly efficient gradient boosting decision tree","author":"ke","year":"2017","journal-title":"Proc Adv Neural Inf Process Syst"},{"year":"0","author":"goodfellow","article-title":"Explaining and harnessing adversarial examples","key":"ref15"},{"key":"ref16","first-page":"1","article-title":"Adversarial machine learning at scale","author":"kurakin","year":"2017","journal-title":"Proc Int Conf Learn Represent (ICLR)"},{"doi-asserted-by":"publisher","key":"ref17","DOI":"10.1109\/SP.2017.49"},{"doi-asserted-by":"publisher","key":"ref18","DOI":"10.1109\/CVPR.2017.17"},{"key":"ref19","first-page":"734","article-title":"Shift-invariant pattern recognition neural network and its optical architecture","author":"zhang","year":"1988","journal-title":"Proc Annu Conf Jpn Soc Appl Phys"},{"doi-asserted-by":"publisher","key":"ref4","DOI":"10.1109\/MICRO.2014.58"},{"doi-asserted-by":"publisher","key":"ref3","DOI":"10.1109\/CVPRW.2014.106"},{"doi-asserted-by":"publisher","key":"ref6","DOI":"10.1109\/JPROC.2017.2761740"},{"doi-asserted-by":"publisher","key":"ref5","DOI":"10.1109\/JSSC.2016.2616357"},{"doi-asserted-by":"publisher","key":"ref8","DOI":"10.1109\/ACCESS.2018.2807385"},{"doi-asserted-by":"publisher","key":"ref7","DOI":"10.1109\/TNNLS.2018.2808319"},{"doi-asserted-by":"publisher","key":"ref49","DOI":"10.1109\/CVPR.2009.5206848"},{"year":"0","author":"szegedy","article-title":"Intriguing properties of neural networks","key":"ref9"},{"doi-asserted-by":"publisher","key":"ref46","DOI":"10.1109\/21.97458"},{"key":"ref45","article-title":"Very deep convolutional networks for large-scale image recognition","author":"simonyan","year":"2014","journal-title":"arXiv 1409 1556"},{"year":"2020","journal-title":"Isolation Methods in Zynq UltraScale+ MPSoCs Application Note","key":"ref48"},{"year":"2019","journal-title":"DNNDK User Guide","key":"ref47"},{"key":"ref42","first-page":"1","article-title":"Reverse engineering convolutional neural networks through side-channel information leaks","author":"hua","year":"2018","journal-title":"Proc 55th ACM\/ESDA\/IEEE Design Autom Conf (DAC)"},{"doi-asserted-by":"publisher","key":"ref41","DOI":"10.1109\/DAC18072.2020.9218577"},{"doi-asserted-by":"publisher","key":"ref44","DOI":"10.1145\/2810103.2813677"},{"key":"ref43","first-page":"601","article-title":"Stealing machine learning models via prediction APIs","author":"tram\u00e8r","year":"2016","journal-title":"Proc 25th USENIX Secur Symp (USENIX Secur )"}],"container-title":["IEEE Journal on Emerging and Selected Topics in Circuits and Systems"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/5503868\/9453100\/09416697.pdf?arnumber=9416697","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2021,10,26]],"date-time":"2021-10-26T20:18:55Z","timestamp":1635279535000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/9416697\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2021,6]]},"references-count":51,"journal-issue":{"issue":"2"},"URL":"https:\/\/doi.org\/10.1109\/jetcas.2021.3076101","relation":{},"ISSN":["2156-3357","2156-3365"],"issn-type":[{"type":"print","value":"2156-3357"},{"type":"electronic","value":"2156-3365"}],"subject":[],"published":{"date-parts":[[2021,6]]}}}