{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,4,9]],"date-time":"2026-04-09T14:35:30Z","timestamp":1775745330387,"version":"3.50.1"},"reference-count":56,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","issue":"17","license":[{"start":{"date-parts":[[2025,9,1]],"date-time":"2025-09-01T00:00:00Z","timestamp":1756684800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2025,9,1]],"date-time":"2025-09-01T00:00:00Z","timestamp":1756684800000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2025,9,1]],"date-time":"2025-09-01T00:00:00Z","timestamp":1756684800000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"DOI":"10.13039\/501100006162","name":"Serrapilheira Institute","doi-asserted-by":"publisher","award":["Serra\u2013R-2401-47285"],"award-info":[{"award-number":["Serra\u2013R-2401-47285"]}],"id":[{"id":"10.13039\/501100006162","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100006162","name":"Funda\u00e7\u00e3o de Amparo \u00e0 Ci\u00eancia e Tecnologia do estado de Pernambuco","doi-asserted-by":"crossref","id":[{"id":"10.13039\/501100006162","id-type":"DOI","asserted-by":"crossref"}]},{"name":"Microsoft Research Ph.D. Fellowship"},{"name":"Canada Research Chair Program Tier-II entitled \u201cToward a Robust Intelligent Air Interface.\u201d"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Internet Things J."],"published-print":{"date-parts":[[2025,9,1]]},"DOI":"10.1109\/jiot.2025.3580286","type":"journal-article","created":{"date-parts":[[2025,6,20]],"date-time":"2025-06-20T13:29:33Z","timestamp":1750426173000},"page":"35195-35206","source":"Crossref","is-referenced-by-count":2,"title":["A Bayesian Neural Network for Robust Automatic Modulation Classification: Mitigating Adversarial Amplification"],"prefix":"10.1109","volume":"12","author":[{"ORCID":"https:\/\/orcid.org\/0009-0004-6748-9805","authenticated-orcid":false,"given":"Mohamed","family":"Chiheb Ben Nasr","sequence":"first","affiliation":[{"name":"Electrical Engineering Department, &#x00C9;cole de Technologie Sup&#x00E9;rieure, University of Quebec, Montreal, QC, Canada"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-1178-2648","authenticated-orcid":false,"given":"Paulo","family":"Freitas de Araujo-Filho","sequence":"additional","affiliation":[{"name":"Centro de Inform&#x00E1;tica, Universidade Federal de Pernambuco, Recife, Brazil"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-5025-6624","authenticated-orcid":false,"given":"Georges","family":"Kaddoum","sequence":"additional","affiliation":[{"name":"Electrical Engineering Department, &#x00C9;cole de Technologie Sup&#x00E9;rieure, University of Quebec, Montreal, QC, Canada"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-9434-5322","authenticated-orcid":false,"given":"Azzam","family":"Mourad","sequence":"additional","affiliation":[{"name":"Department of CS, KU 6G Research Center, Khalifa University, Abu Dhabi, UAE"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref1","volume-title":"Beyond 5G\/6G KPI measurement","author":"Dieudonne","year":"2023"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1002\/dac.4762"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1002\/9781118906507"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1109\/TVT.2020.2983143"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1109\/TVT.2018.2868698"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1109\/MCOMSTD.2018.1700061"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1109\/ICORT46471.2019.9069612"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1049\/ip-f-2.1990.0066"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1109\/MCI.2019.2954641"},{"key":"ref10","article-title":"Intriguing properties of neural networks","author":"Szegedy","year":"2014","journal-title":"arXiv:1312.6199"},{"key":"ref11","first-page":"28","article-title":"Towards deep learning models resistant to adversarial attacks","volume-title":"Proc. 6th Int. Conf. Learn. Represent. (ICLR)","author":"Madry"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1109\/LCOMM.2022.3167368"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1109\/GLOBECOM52923.2024.10901338"},{"issue":"6","key":"ref14","doi-asserted-by":"crossref","first-page":"3868","DOI":"10.1109\/TWC.2021.3124855","article-title":"Channel-aware adversarial attacks against deep learning-based wireless signal classifiers","volume":"21","author":"Kim","year":"2022","journal-title":"IEEE Trans. Wireless Commun."},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1109\/JIOT.2024.3439440"},{"key":"ref16","article-title":"Universal adversarial perturbations","author":"Moosavi-Dezfooli","year":"2016","journal-title":"arXiv:1610.08401"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1109\/TCCN.2024.3360514"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1109\/SPAWC51304.2022.9833926"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1016\/j.ins.2021.12.021"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.24963\/ijcai.2021\/591"},{"key":"ref21","article-title":"Adversarial robustness through local Lipschitzness","author":"Yang","year":"2020","journal-title":"arXiv:2003.02460"},{"issue":"4","key":"ref22","doi-asserted-by":"crossref","first-page":"920","DOI":"10.1137\/22M1478835","article-title":"Adversarial robustness of sparse local Lipschitz predictors","volume":"5","author":"Muthukumar","year":"2022","journal-title":"SIAM J. Math. Data Sci."},{"key":"ref23","article-title":"Theoretically principled trade-off between robustness and accuracy","author":"Zhang","year":"2019","journal-title":"arXiv:1901.08573"},{"key":"ref24","first-page":"1","article-title":"Robustness of Bayesian neural networks to gradient-based attacks","volume-title":"Proc. 34th Int. Conf. Neural Inf. Process. Syst.","author":"Carbone"},{"key":"ref25","doi-asserted-by":"crossref","DOI":"10.1016\/j.dsp.2024.104636","article-title":"Adversarial training for signal modulation classification based on Ulam stability theory","volume":"153","author":"Yan","year":"2024","journal-title":"Digit. Signal Process."},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2024.3361172"},{"key":"ref27","article-title":"Understanding measures of uncertainty for adversarial example detection","author":"Smith","year":"2018","journal-title":"arXiv:1803.08533"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.1038\/s41598-017-17876-z"},{"key":"ref29","article-title":"A survey of black-box adversarial attacks on computer vision models","author":"Bhambri","year":"2020","journal-title":"arXiv:1912.01667"},{"key":"ref30","doi-asserted-by":"crossref","first-page":"317","DOI":"10.1016\/j.patcog.2018.07.023","article-title":"Wild patterns: Ten years after the rise of adversarial machine learning","volume":"84","author":"Biggio","year":"2018","journal-title":"Pattern Recognit."},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1109\/JIOT.2023.3281400"},{"key":"ref32","article-title":"A simple unified framework for detecting out-of-distribution samples and adversarial attacks","author":"Lee","year":"2018","journal-title":"arXiv:1807.03888"},{"key":"ref33","doi-asserted-by":"publisher","DOI":"10.1109\/LWC.2021.3083099"},{"key":"ref34","article-title":"CAT: Customized adversarial training for improved robustness","author":"Cheng","year":"2020","journal-title":"arXiv:2002.06789"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1109\/COMST.2021.3136132"},{"issue":"1","key":"ref36","doi-asserted-by":"crossref","first-page":"77","DOI":"10.1109\/COMST.2022.3205184","article-title":"Adversarial machine learning in wireless communications using RF data: A review","volume":"25","author":"Adesina","year":"2020","journal-title":"IEEE Comm. Surveys Tuts."},{"key":"ref37","first-page":"1613","article-title":"Weight uncertainty in neural networks","volume-title":"Proc. 32nd Int. Conf. Mach. Learn. (ICML)","author":"Blundell"},{"key":"ref38","first-page":"1050","article-title":"Dropout as a Bayesian approximation: Representing model uncertainty in deep learning","volume-title":"Proc. 33rd Int. Conf. Mach. Learn. (ICML)","author":"Gal"},{"key":"ref39","article-title":"Adversarial examples detection in deep networks with dropout randomization","author":"Li","year":"2017","journal-title":"arXiv:1712.02823"},{"key":"ref40","first-page":"2218","article-title":"Multiplicative Normalizing flows for variational Bayesian neural networks","volume-title":"Proc. 34th Int. Conf. Mach. Learn. (ICML)","author":"Louizos"},{"key":"ref41","article-title":"Adv-BNN: Improved adversarial defense through Bayesian neural networks","author":"Liu","year":"2018","journal-title":"arXiv:1810.01279"},{"key":"ref42","doi-asserted-by":"publisher","DOI":"10.1201\/9781351251389-8"},{"key":"ref43","first-page":"2206","article-title":"Reliable evaluation of adversarial robustness with an ensemble of diverse parameter-free attacks","volume-title":"Proc. 37th Int. Conf. Mach. Learn.","author":"Croce"},{"key":"ref44","doi-asserted-by":"crossref","first-page":"1028","DOI":"10.1007\/s11263-019-01213-0","article-title":"Scaling up the Randomized gradient-free adversarial attack reveals overestimation of robustness using established attacks","volume":"128","author":"Croce","year":"2020","journal-title":"Int. J. Comput. Vis."},{"key":"ref45","article-title":"Logit pairing methods can fool gradient-based attacks","author":"Mosbach","year":"2018","journal-title":"arXiv:1810.12042"},{"key":"ref46","first-page":"582","article-title":"Distillation as a defense to adversarial perturbations against deep neural networks","volume-title":"Proc. IEEE Symp. Security Privacy (SP)","author":"Papernot"},{"key":"ref47","first-page":"1","article-title":"Radio machine learning Dataset generation with GNU radio","volume-title":"Proc. GNU Radio Conf.","author":"O\u2019Shea"},{"key":"ref48","doi-asserted-by":"publisher","DOI":"10.1109\/JSTSP.2018.2797022"},{"key":"ref49","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-44188-7_16"},{"key":"ref50","doi-asserted-by":"publisher","DOI":"10.1109\/LWC.2020.2999453"},{"issue":"1","key":"ref51","doi-asserted-by":"crossref","first-page":"213","DOI":"10.1109\/LWC.2018.2867459","article-title":"Adversarial attacks on deep-learning based radio signal classification","volume":"8","author":"Sadeghi","year":"2019","journal-title":"IEEE Wireless Comm. Lett."},{"key":"ref52","doi-asserted-by":"publisher","DOI":"10.1109\/GCWkshps50303.2020.9367473"},{"key":"ref53","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2020.3025441"},{"key":"ref54","doi-asserted-by":"publisher","DOI":"10.1109\/ISCC55528.2022.9912830"},{"key":"ref55","volume-title":"Deep learning based automatic modulation recognition: Models, datasets, and challenges","volume":"129","author":"Zhang","year":"2022"},{"key":"ref56","article-title":"Decision-based adversarial attacks: Reliable attacks against black-box machine learning models","author":"Brendel","year":"2017","journal-title":"arXiv:1712.04248"}],"container-title":["IEEE Internet of Things Journal"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/6488907\/11134518\/11045330.pdf?arnumber=11045330","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,8,23]],"date-time":"2025-08-23T04:29:09Z","timestamp":1755923349000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/11045330\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,9,1]]},"references-count":56,"journal-issue":{"issue":"17"},"URL":"https:\/\/doi.org\/10.1109\/jiot.2025.3580286","relation":{},"ISSN":["2327-4662","2372-2541"],"issn-type":[{"value":"2327-4662","type":"electronic"},{"value":"2372-2541","type":"electronic"}],"subject":[],"published":{"date-parts":[[2025,9,1]]}}}