{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2024,10,30]],"date-time":"2024-10-30T10:12:45Z","timestamp":1730283165120,"version":"3.28.0"},"reference-count":46,"publisher":"IEEE","license":[{"start":{"date-parts":[[2023,9,17]],"date-time":"2023-09-17T00:00:00Z","timestamp":1694908800000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2023,9,17]],"date-time":"2023-09-17T00:00:00Z","timestamp":1694908800000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2023,9,17]]},"DOI":"10.1109\/mlsp55844.2023.10285986","type":"proceedings-article","created":{"date-parts":[[2023,10,23]],"date-time":"2023-10-23T13:55:41Z","timestamp":1698069341000},"page":"1-6","source":"Crossref","is-referenced-by-count":1,"title":["A Robustness Measure for Neural Networks"],"prefix":"10.1109","author":[{"given":"Bahadir","family":"Bilgin","sequence":"first","affiliation":[{"name":"Tennessee State University,Department of Computer Science,Nashville,TN,USA"}]},{"given":"Ali","family":"Sekmen","sequence":"additional","affiliation":[{"name":"Tennessee State University,Department of Computer Science,Nashville,TN,USA"}]}],"member":"263","reference":[{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1080\/01691864.2017.1365009"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1093\/bib\/bbx044"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1186\/s11782-020-00082-6"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1007\/s10462-021-10039-7"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52688.2022.01042"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1109\/MSP.2022.3142719"},{"key":"ref7","article-title":"Robustness may be at odds with accuracy","author":"Tsipras","year":"2018","journal-title":"arXiv preprint arXiv:1805.12152"},{"key":"ref8","first-page":"8588","article-title":"A closer look at accuracy vs. robustness","volume-title":"Advances in neural information processing systems","volume":"33","author":"Yang"},{"key":"ref9","article-title":"Opportunities and challenges in deep learning adversarial robustness: A survey","author":"Silva","year":"2020","journal-title":"arXiv preprint arXiv:2007.00753"},{"key":"ref10","article-title":"Probact: A probabilistic activation function for deep neural networks","author":"Shridhar","year":"2019","journal-title":"arXiv preprint arXiv:1905.10761"},{"key":"ref11","article-title":"Explaining and harnessing adversarial examples","author":"Goodfellow","year":"2014","journal-title":"arXiv preprint arXiv:1412.6572"},{"key":"ref12","article-title":"Adversarial machine learning at scale","author":"Kurakin","year":"2016","journal-title":"arXiv preprint arXiv:1611.01236"},{"article-title":"Improving adversarial robustness requires revisiting misclassified examples","volume-title":"International Conference on Learning Representations","author":"Wang","key":"ref13"},{"key":"ref14","article-title":"Fast is better than free: Revisiting adversarial training","author":"Wong","year":"2020","journal-title":"arXiv preprint arXiv:2001.03994"},{"key":"ref15","article-title":"Ensemble adversarial training: Attacks and defenses","author":"Tramer","year":"2017","journal-title":"arXiv preprint arXiv:1705.07204"},{"key":"ref16","article-title":"Building robust ensembles via margin boosting","author":"Zhang","year":"2022","journal-title":"arXiv preprint arXiv:2206.03362"},{"key":"ref17","article-title":"Empir: Ensembles of mixed precision deep networks for increased robustness against adversarial attacks","author":"Sen","year":"2020","journal-title":"arXiv preprint arXiv:2004.10162"},{"key":"ref18","article-title":"Metric learning for adversarial robustness","volume-title":"Advances in Neural Information Processing Systems","volume":"32","author":"Mao"},{"key":"ref19","first-page":"7472","article-title":"Theoretically principled trade-off between robustness and accuracy","volume-title":"International conference on machine learning","author":"Zhang"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v32i1.11504"},{"key":"ref21","article-title":"Efficient neural network robustness certification with general activation functions","volume-title":"Advances in neural information processing systems","volume":"31","author":"Zhang"},{"key":"ref22","first-page":"5286","article-title":"Provable defenses against adversarial examples via the convex outer adversarial polytope","volume-title":"International conference on machine learning","author":"Wong"},{"key":"ref23","article-title":"Certified defenses against adversarial examples","author":"Raghunathan","year":"2018","journal-title":"arXiv preprint arXiv:1801.09344"},{"key":"ref24","article-title":"Evaluating the robustness of neural networks: An extreme value theory approach","author":"Weng","year":"2018","journal-title":"arXiv preprint arXiv:1801.10578"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.282"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1145\/3052973.3053009"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1145\/3128572.3140448"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.1109\/SP40000.2020.00045"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.1162\/neco.1994.6.5.851"},{"key":"ref30","article-title":"The modern mathematics of deep learning","volume":"abs\/2105.04026","author":"Berner","year":"2021","journal-title":"CoRR"},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1109\/BigData55660.2022.10020561"},{"key":"ref32","article-title":"Robustbench: a standardized adversarial robustness benchmark","author":"Croce","year":"2020","journal-title":"arXiv preprint arXiv:2010.09670"},{"key":"ref33","doi-asserted-by":"publisher","DOI":"10.1109\/BigData55660.2022.10020561"},{"key":"ref34","doi-asserted-by":"publisher","DOI":"10.1007\/s44163-021-00013-1"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1090\/S0025-5718-1973-0348991-3"},{"key":"ref36","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-58574-7_14"},{"key":"ref37","article-title":"Mma training: Direct input space margin maximization through adversarial training","author":"Weiguang Ding","year":"2018","journal-title":"arXiv preprint arXiv:1812.02637"},{"key":"ref38","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2019.00445"},{"key":"ref39","first-page":"8093","article-title":"Overfitting in adversarially robust deep learning","volume-title":"International Conference on Machine Learning","author":"Rice"},{"journal-title":"Robustness (python library)","year":"2019","author":"Engstrom","key":"ref40"},{"key":"ref41","first-page":"2958","article-title":"Adversarial weight perturbation helps robust generalization","volume-title":"Advances in Neural Information Processing Systems","volume":"33","author":"Wu"},{"key":"ref42","article-title":"Robust learning meets generative models: Can proxy distributions improve adversarial robustness?","author":"Sehwag","year":"2021","journal-title":"arXiv preprint arXiv:2104.09425"},{"key":"ref43","article-title":"Uncovering the limits of adversarial training against norm-bounded adversarial examples","author":"Gowal","year":"2020","journal-title":"arXiv preprint arXiv:2010.03593"},{"key":"ref44","article-title":"Fixing data augmentation to improve adversarial robustness","author":"Rebuffi","year":"2021","journal-title":"arXiv preprint arXiv:2103.01946"},{"article-title":"Helperbased adversarial training: Reducing excessive margin to achieve a better accuracy vs. robustness trade-off","volume-title":"ICML 2021 Workshop on Adversarial Machine Learning","author":"Rade","key":"ref45"},{"key":"ref46","article-title":"Better diffusion models further improve adversarial training","author":"Wang","year":"2023","journal-title":"arXiv preprint arXiv:2302.04638"}],"event":{"name":"2023 IEEE 33rd International Workshop on Machine Learning for Signal Processing (MLSP)","start":{"date-parts":[[2023,9,17]]},"location":"Rome, Italy","end":{"date-parts":[[2023,9,20]]}},"container-title":["2023 IEEE 33rd International Workshop on Machine Learning for Signal Processing (MLSP)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/10285838\/10285858\/10285986.pdf?arnumber=10285986","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,1,11]],"date-time":"2024-01-11T23:00:27Z","timestamp":1705014027000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/10285986\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2023,9,17]]},"references-count":46,"URL":"https:\/\/doi.org\/10.1109\/mlsp55844.2023.10285986","relation":{},"subject":[],"published":{"date-parts":[[2023,9,17]]}}}