{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,12,23]],"date-time":"2025-12-23T10:04:24Z","timestamp":1766484264710},"reference-count":26,"publisher":"IEEE","license":[{"start":{"date-parts":[[2023,10,30]],"date-time":"2023-10-30T00:00:00Z","timestamp":1698624000000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2023,10,30]],"date-time":"2023-10-30T00:00:00Z","timestamp":1698624000000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2023,10,30]]},"DOI":"10.1109\/milcom58377.2023.10356375","type":"proceedings-article","created":{"date-parts":[[2023,12,25]],"date-time":"2023-12-25T14:37:01Z","timestamp":1703515021000},"page":"710-715","source":"Crossref","is-referenced-by-count":1,"title":["Adversarial Pixel and Patch Detection Using Attribution Analysis"],"prefix":"10.1109","author":[{"given":"Chase","family":"Walker","sequence":"first","affiliation":[{"name":"University of Central Florida,Department of ECE,Orlando,FL,USA"}]},{"given":"Dominic","family":"Simon","sequence":"additional","affiliation":[{"name":"University of Central Florida,Department of ECE,Orlando,FL,USA"}]},{"given":"Sumit Kumar","family":"Jha","sequence":"additional","affiliation":[{"name":"Florida International University,Knights Foundation School of Computing and Information Sciences"}]},{"given":"Rickard","family":"Ewetz","sequence":"additional","affiliation":[{"name":"University of Central Florida,Department of ECE,Orlando,FL,USA"}]}],"member":"263","reference":[{"year":"2014","author":"Szegedy","journal-title":"Intriguing properties of neural networks","key":"ref1"},{"year":"2019","author":"Madry","journal-title":"Towards deep learning models resistant to adversarial attacks","key":"ref2"},{"year":"2018","author":"Karmon","journal-title":"Lavan: Localized and visible adversarial noise","key":"ref3"},{"year":"2021","author":"Li","journal-title":"Generative dynamic patch attack","key":"ref4"},{"year":"2019","author":"Saadatpanah","journal-title":"Adversarial attacks on copyright detection systems","key":"ref5"},{"doi-asserted-by":"publisher","key":"ref6","DOI":"10.1007\/978-3-030-58558-7_39"},{"year":"2014","author":"Simonyan","article-title":"Deep inside convolutional networks: Visualising image classification models and saliency maps","key":"ref7"},{"doi-asserted-by":"publisher","key":"ref8","DOI":"10.1007\/s10144-009-0162-4"},{"year":"2023","author":"Walker","article-title":"Integrated decision gradients: Compute your attributions where the model makes its decision","key":"ref9"},{"doi-asserted-by":"publisher","key":"ref10","DOI":"10.7312\/haza92762-003"},{"key":"ref11","first-page":"1135","article-title":"\"why should i trust you?","volume-title":"explaining the predictions of any classifier,\" in Proceedings of the 22nd ACM SIGKDD international conference on knowledge discovery and data mining","author":"Ribeiro"},{"year":"2017","author":"Ancona","article-title":"Towards better understanding of gradient-based attribution methods for deep neural networks","key":"ref12"},{"doi-asserted-by":"publisher","key":"ref13","DOI":"10.1609\/aaai.v34i04.6140"},{"year":"2019","author":"Jha","article-title":"Attribution-driven causal analysis for detection of adversarial examples","key":"ref14"},{"year":"2014","author":"Goodfellow","article-title":"Explaining and harnessing adversarial examples","key":"ref15"},{"doi-asserted-by":"publisher","key":"ref16","DOI":"10.1109\/CVPR52688.2022.01455"},{"doi-asserted-by":"publisher","key":"ref17","DOI":"10.1007\/s11263-015-0816-y"},{"year":"2017","author":"Metzen","article-title":"On detecting adversarial perturbations","key":"ref18"},{"doi-asserted-by":"publisher","key":"ref19","DOI":"10.1109\/IJCNN52387.2021.9533442"},{"key":"ref20","article-title":"Scalecert: Scalable certified defense against adversarial patches with sparse superficial layers","author":"Han","year":"2021","journal-title":"Advances in Neural Information Processing Systems"},{"doi-asserted-by":"publisher","key":"ref21","DOI":"10.1109\/CVPR.2016.90"},{"year":"2020","author":"Kokhlikyan","article-title":"Captum: A unified and generic model interpretability library for pytorch","key":"ref22"},{"volume-title":"Proceedings of the 33rd International Conference on Neural Information Processing Systems","author":"Paszke","article-title":"Pytorch: An imperative style, high-performance deep learning library","key":"ref23"},{"year":"2020","author":"Kim","article-title":"Torchattacks: A pytorch repository for adversarial attacks","key":"ref24"},{"volume-title":"30th USENIX Security Symposium (USENIX Security)","author":"Xiang","article-title":"Patchguard: A provably robust defense against adversarial patches via small receptive fields and masking","key":"ref25"},{"year":"2021","author":"Xiang","article-title":"Patchguard++: Efficient provable attack detection against adversarial patches","key":"ref26"}],"event":{"name":"MILCOM 2023 - 2023 IEEE Military Communications Conference (MILCOM)","start":{"date-parts":[[2023,10,30]]},"location":"Boston, MA, USA","end":{"date-parts":[[2023,11,3]]}},"container-title":["MILCOM 2023 - 2023 IEEE Military Communications Conference (MILCOM)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/10356123\/10356124\/10356375.pdf?arnumber=10356375","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,1,12]],"date-time":"2024-01-12T15:20:10Z","timestamp":1705072810000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/10356375\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2023,10,30]]},"references-count":26,"URL":"https:\/\/doi.org\/10.1109\/milcom58377.2023.10356375","relation":{},"subject":[],"published":{"date-parts":[[2023,10,30]]}}}