{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,1,21]],"date-time":"2025-01-21T07:10:22Z","timestamp":1737443422035,"version":"3.33.0"},"reference-count":35,"publisher":"IEEE","license":[{"start":{"date-parts":[[2024,10,6]],"date-time":"2024-10-06T00:00:00Z","timestamp":1728172800000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2024,10,6]],"date-time":"2024-10-06T00:00:00Z","timestamp":1728172800000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["62176160,62376161,62376162,62106044"],"award-info":[{"award-number":["62176160,62376161,62376162,62106044"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100004608","name":"Natural Science Foundation of Jiangsu Province","doi-asserted-by":"publisher","award":["BK20210221"],"award-info":[{"award-number":["BK20210221"]}],"id":[{"id":"10.13039\/501100004608","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2024,10,6]]},"DOI":"10.1109\/smc54092.2024.10831681","type":"proceedings-article","created":{"date-parts":[[2025,1,20]],"date-time":"2025-01-20T18:39:20Z","timestamp":1737398360000},"page":"4358-4364","source":"Crossref","is-referenced-by-count":0,"title":["On the Adversarial Robustness of Hierarchical Classification"],"prefix":"10.1109","author":[{"given":"Ran","family":"Wang","sequence":"first","affiliation":[{"name":"School of Mathematical Sciences, Shenzhen University,Shenzhen,China,518060"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Simeng","family":"Zeng","sequence":"additional","affiliation":[{"name":"School of Mathematical Sciences, Shenzhen University,Shenzhen,China,518060"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Wenhui","family":"Wu","sequence":"additional","affiliation":[{"name":"College of Electronic and Information Engineering, Shenzhen University,Shenzhen,China,518060"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Yuheng","family":"Jia","sequence":"additional","affiliation":[{"name":"School of Computer Science and Engineering, Southeast University,Nanjing,China,211189"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Wing W. Y.","family":"Ng","sequence":"additional","affiliation":[{"name":"School of Computer Science and Engineering, South China University of Technology,Guangzhou,China,510006"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Xizhao","family":"Wang","sequence":"additional","affiliation":[{"name":"College of Computer Science and Software Engineering, Shenzhen University,Shenzhen,China,518060"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref1","article-title":"Intriguing properties of neural networks","author":"Szegedy","year":"2014","journal-title":"ICLR"},{"key":"ref2","article-title":"Explaining and harnessing adversarial examples","author":"Goodfellow","year":"2015","journal-title":"ICLR"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.48550\/ARXIV.1706.06083"},{"key":"ref4","article-title":"Improving adversarial robustness requires revisiting misclassified examples","author":"Wang","year":"2019","journal-title":"ICLR"},{"key":"ref5","article-title":"Fast is better than free: Revisiting adversarial training","author":"Wong","year":"2020","journal-title":"ICLR"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2019.00044"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1016\/j.neunet.2023.12.041"},{"key":"ref8","first-page":"7472","article-title":"Theoretically principled trade-off between robustness and accuracy","author":"Zhang","year":"2019","journal-title":"ICML"},{"key":"ref9","article-title":"Unlabeled data improves adversarial robustness","volume":"32","author":"Carmon","year":"2019","journal-title":"NIPS"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2018.00191"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2018.00357"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1109\/TIP.2015.2457337"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1016\/j.patcog.2017.01.029"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1007\/s10618-010-0175-9"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1093\/bioinformatics\/btk048"},{"key":"ref16","first-page":"8","article-title":"A hierarchical approach to automatic musical genre classification","volume-title":"6th International Conference on Digital Audio Effects","author":"Burred","year":"2003"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1007\/s10115-015-0885-9"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2019.00670"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR42600.2020.00869"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52688.2022.00725"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2018.00436"},{"key":"ref22","article-title":"Matching networks for one shot learning","author":"Vinyals","year":"2016","journal-title":"NIPS"},{"journal-title":"Learning multiple layers of features from tiny images","year":"2009","author":"Krizhevsky","key":"ref23"},{"journal-title":"examples in the physical world","year":"2016","author":"Kurakin","key":"ref24"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2018.00957"},{"key":"ref26","first-page":"2206","article-title":"Reliable evaluation of adversarial robustness with an ensemble of diverse parameter-free attacks","volume":"119","author":"Croce","year":"2020","journal-title":"ICML"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2019.00348"},{"key":"ref28","first-page":"3047","article-title":"Weight-covariance alignment for adversarially robust neural networks","author":"Eustratiadis","year":"2021","journal-title":"ICML"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.1016\/j.cviu.2022.103599"},{"key":"ref30","article-title":"Adversarial training for free!","author":"Shafahi","year":"2019","journal-title":"NIPS"},{"journal-title":"simple fine-tuning is all you need: Towards robust deep learning via adversarial fine-tuning","year":"2020","author":"Jeddi","key":"ref31"},{"key":"ref32","article-title":"Understanding robust overfitting of adversarial training and beyond","author":"Yu","year":"2022","journal-title":"ICML"},{"key":"ref33","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52688.2022.01484"},{"key":"ref34","doi-asserted-by":"publisher","DOI":"10.3390\/s23063252"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1016\/j.imavis.2023.104722"}],"event":{"name":"2024 IEEE International Conference on Systems, Man, and Cybernetics (SMC)","start":{"date-parts":[[2024,10,6]]},"location":"Kuching, Malaysia","end":{"date-parts":[[2024,10,10]]}},"container-title":["2024 IEEE International Conference on Systems, Man, and Cybernetics (SMC)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/10830919\/10830920\/10831681.pdf?arnumber=10831681","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,1,21]],"date-time":"2025-01-21T06:32:48Z","timestamp":1737441168000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/10831681\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024,10,6]]},"references-count":35,"URL":"https:\/\/doi.org\/10.1109\/smc54092.2024.10831681","relation":{},"subject":[],"published":{"date-parts":[[2024,10,6]]}}}