{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,3]],"date-time":"2026-06-03T16:07:05Z","timestamp":1780502825072,"version":"3.54.1"},"reference-count":63,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","issue":"6","license":[{"start":{"date-parts":[[2024,11,1]],"date-time":"2024-11-01T00:00:00Z","timestamp":1730419200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2024,11,1]],"date-time":"2024-11-01T00:00:00Z","timestamp":1730419200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2024,11,1]],"date-time":"2024-11-01T00:00:00Z","timestamp":1730419200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Trans. Dependable and Secure Comput."],"published-print":{"date-parts":[[2024,11]]},"DOI":"10.1109\/tdsc.2024.3376437","type":"journal-article","created":{"date-parts":[[2024,3,18]],"date-time":"2024-03-18T20:30:44Z","timestamp":1710793844000},"page":"5538-5552","source":"Crossref","is-referenced-by-count":1,"title":["Adversarial Learning for Coordinate Regression Through k-Layer Penetrating Representation"],"prefix":"10.1109","volume":"21","author":[{"ORCID":"https:\/\/orcid.org\/0000-0001-5932-7946","authenticated-orcid":false,"given":"Mengxi","family":"Jiang","sequence":"first","affiliation":[{"name":"School of Advanced Manufacturing, Fuzhou University, Fuzhou, China"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-9510-6574","authenticated-orcid":false,"given":"Yulei","family":"Sui","sequence":"additional","affiliation":[{"name":"University of New South Wales, Sydney, NSW, Australia"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-9731-5815","authenticated-orcid":false,"given":"Yunqi","family":"Lei","sequence":"additional","affiliation":[{"name":"Department of Computer Science, Xiamen University, Xiamen, China"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-1288-6502","authenticated-orcid":false,"given":"Xiaofei","family":"Xie","sequence":"additional","affiliation":[{"name":"School of Computing and Information Systems, Singapore Management University, Singapore"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Cuihua","family":"Li","sequence":"additional","affiliation":[{"name":"Department of Computer Science, Xiamen University, Xiamen, China"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-7300-9215","authenticated-orcid":false,"given":"Yang","family":"Liu","sequence":"additional","affiliation":[{"name":"School of Computer Science and Engineering, Nanyang Technological University, Singapore"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-8095-4637","authenticated-orcid":false,"given":"Ivor W.","family":"Tsang","sequence":"additional","affiliation":[{"name":"Centre for Frontier AI Research, Agency for Science, Technology and Research, Singapore"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"263","reference":[{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1155\/2022\/4190023"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1109\/JIOT.2020.3032896"},{"key":"ref3","first-page":"6977","article-title":"Houdini: Fooling deep structured visual and speech recognition models with adversarial examples","volume-title":"Proc. 31st Int. Conf. Neural Inf. Process. Syst.","author":"Cisse"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1016\/j.patcog.2021.108279"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2018.00957"},{"key":"ref6","article-title":"Ensemble adversarial training: Attacks and defenses","volume-title":"Proc. Int. Conf. Learn. Representations","author":"Tram\u00e8r"},{"key":"ref7","article-title":"Skip connections matter: On the transferability of adversarial examples generated with ResNets","volume-title":"Proc. Int. Conf. Learn. Representations","author":"Wu"},{"key":"ref8","first-page":"321","article-title":"Why do adversarial attacks transfer? Explaining transferability of evasion and poisoning attacks","volume-title":"Proc. 28th USENIX Conf. Secur. Symp.","author":"Demontis"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1109\/TIP.2021.3050303"},{"key":"ref10","article-title":"Transferability in machine learning: From phenomena to black-box attacks using adversarial samples","author":"Papernot","year":"2016"},{"key":"ref11","article-title":"Explaining and harnessing adversarial examples","volume-title":"Proc. Int. Conf. Learn. Representations","author":"Goodfellow"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2019.2956591"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.48550\/ARXIV.1706.06083"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1109\/ICCVW.2019.00470"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1109\/TIP.2019.2911114"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-46484-8_29"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2018.00763"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2017.51"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1109\/iccv.2019.00776"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-01231-1_33"},{"key":"ref21","article-title":"Unstructured road vanishing point detection using the convolutional neural network and heatmap regression","volume":"70","author":"Liu","year":"2020","journal-title":"IEEE Trans. Instrum. Meas."},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1016\/j.neucom.2021.01.027"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.5244\/C.30.86"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1016\/j.cag.2019.09.002"},{"key":"ref25","article-title":"On the robustness of human pose estimation","volume-title":"Proc. IEEE Conf. Comput. Vis. Pattern Recognit. Workshops","author":"Shah"},{"key":"ref26","article-title":"A theoretical framework for robustness of (deep) classifiers against adversarial examples","volume-title":"Proc. Int. Conf. Learn. Representations","author":"Wang"},{"key":"ref27","article-title":"Adversarial manipulation of deep representations","volume-title":"Proc. Int. Conf. Learn. Representations","author":"Sabour"},{"key":"ref28","doi-asserted-by":"crossref","DOI":"10.1201\/9781351251389-8","article-title":"Adversarial examples in the physical world","volume-title":"Proc. Int. Conf. Learn. Representations","author":"Kurakin"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.1109\/TPAMI.2018.2858821"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.282"},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1109\/EuroSP.2016.36"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.49"},{"key":"ref33","doi-asserted-by":"publisher","DOI":"10.1145\/3128572.3140444"},{"key":"ref34","article-title":"Dimensionality reduction as a defense against evasion attacks on machine learning classifiers","author":"Bhagoji","year":"2017"},{"key":"ref35","article-title":"Principal component properties of adversarial samples","author":"Jere","year":"2019"},{"key":"ref36","doi-asserted-by":"publisher","DOI":"10.48550\/ARXIV.1404.7828"},{"key":"ref37","article-title":"Deep inside convolutional networks: Visualising image classification models and saliency maps","volume-title":"Proc. Int. Conf. Learn. Representations","author":"Simonyan"},{"key":"ref38","article-title":"Intriguing properties of neural networks","volume-title":"Proc. Int. Conf. Learn. Representations","author":"Szegedy"},{"key":"ref39","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2017.17"},{"key":"ref40","doi-asserted-by":"publisher","DOI":"10.24963\/ijcai.2017\/525"},{"key":"ref41","doi-asserted-by":"publisher","DOI":"10.24963\/ijcai.2018\/524"},{"key":"ref42","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2017.601"},{"key":"ref43","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2014.471"},{"key":"ref44","doi-asserted-by":"publisher","DOI":"10.1109\/TPAMI.2013.248"},{"key":"ref45","doi-asserted-by":"publisher","DOI":"10.5194\/gmd-7-1247-2014"},{"key":"ref46","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2018.00057"},{"key":"ref47","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-36708-4_39"},{"key":"ref48","first-page":"1762","article-title":"A Bayesian part-based approach to 3D human pose and camera estimation","volume-title":"Proc. 23rd Int. Conf. Pattern Recognit.","author":"Jiang"},{"key":"ref49","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2014.471"},{"key":"ref50","first-page":"3866","article-title":"NATTACK: Learning the distributions of adversarial examples for an improved black-box attack on deep neural networks","volume-title":"Proc. 36th Int. Conf. Mach. Learn.","author":"Li"},{"key":"ref51","doi-asserted-by":"publisher","DOI":"10.1109\/ICPR48806.2021.9413204"},{"key":"ref52","doi-asserted-by":"publisher","DOI":"10.1109\/SPW.2018.00009"},{"key":"ref53","article-title":"Query-efficient meta attack to deep neural networks","volume-title":"Proc. Int. Conf. Learn. Representations","author":"Du"},{"key":"ref54","doi-asserted-by":"publisher","DOI":"10.1049\/iet-cvi.2019.0378"},{"key":"ref55","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2020.3014390"},{"key":"ref56","article-title":"Learning with a strong adversary","author":"Huang","year":"2015"},{"key":"ref57","article-title":"XAI for cybersecurity: State of the art, challenges, open issues and future directions","author":"Srivastava","year":"2022"},{"key":"ref58","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2018.2807385"},{"key":"ref59","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2021.3088661"},{"key":"ref60","doi-asserted-by":"publisher","DOI":"10.1109\/TEVC.2019.2890858"},{"key":"ref61","doi-asserted-by":"publisher","DOI":"10.1109\/CVPRW.2017.172"},{"key":"ref62","doi-asserted-by":"crossref","DOI":"10.14722\/ndss.2018.23291","article-title":"Trojaning attack on neural networks","volume-title":"Proc. Netw. Distrib. Syst. Secur. Symp.","author":"Liu"},{"key":"ref63","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2019.00930"}],"container-title":["IEEE Transactions on Dependable and Secure Computing"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/8858\/10750463\/10470416.pdf?arnumber=10470416","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,11,27]],"date-time":"2024-11-27T00:02:36Z","timestamp":1732665756000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/10470416\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024,11]]},"references-count":63,"journal-issue":{"issue":"6"},"URL":"https:\/\/doi.org\/10.1109\/tdsc.2024.3376437","relation":{},"ISSN":["1545-5971","1941-0018","2160-9209"],"issn-type":[{"value":"1545-5971","type":"print"},{"value":"1941-0018","type":"electronic"},{"value":"2160-9209","type":"electronic"}],"subject":[],"published":{"date-parts":[[2024,11]]}}}