{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,4,7]],"date-time":"2026-04-07T16:11:34Z","timestamp":1775578294632,"version":"3.50.1"},"reference-count":58,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","issue":"5","license":[{"start":{"date-parts":[[2025,9,1]],"date-time":"2025-09-01T00:00:00Z","timestamp":1756684800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2025,9,1]],"date-time":"2025-09-01T00:00:00Z","timestamp":1756684800000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2025,9,1]],"date-time":"2025-09-01T00:00:00Z","timestamp":1756684800000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["U22A2096"],"award-info":[{"award-number":["U22A2096"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["62036007"],"award-info":[{"award-number":["62036007"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["62306227"],"award-info":[{"award-number":["62306227"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"name":"Scientific and Technological Innovation Teams in Shaanxi Province","award":["2025RS-CXTD-011"],"award-info":[{"award-number":["2025RS-CXTD-011"]}]},{"name":"Shaanxi Province Core Technology Research and Development Project","award":["2024QY2-GJHX-11"],"award-info":[{"award-number":["2024QY2-GJHX-11"]}]},{"DOI":"10.13039\/501100012226","name":"Fundamental Research Funds for the Central Universities","doi-asserted-by":"publisher","award":["QTZX23042"],"award-info":[{"award-number":["QTZX23042"]}],"id":[{"id":"10.13039\/501100012226","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Trans. Dependable and Secure Comput."],"published-print":{"date-parts":[[2025,9]]},"DOI":"10.1109\/tdsc.2025.3573294","type":"journal-article","created":{"date-parts":[[2025,5,23]],"date-time":"2025-05-23T13:07:19Z","timestamp":1748005639000},"page":"5688-5700","source":"Crossref","is-referenced-by-count":2,"title":["A Knowledge-Guided Adversarial Defense for Resisting Malicious Visual Manipulation"],"prefix":"10.1109","volume":"22","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-0694-3603","authenticated-orcid":false,"given":"Dawei","family":"Zhou","sequence":"first","affiliation":[{"name":"State Key Laboratory of Integrated Services Networks, School of Telecommunications Engineering, Xidian University, Xi&#x2019;an, China"}]},{"given":"Zhigang","family":"Su","sequence":"additional","affiliation":[{"name":"State Key Laboratory of Integrated Services Networks, School of Telecommunications Engineering, Xidian University, Xi&#x2019;an, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-6550-212X","authenticated-orcid":false,"given":"Decheng","family":"Liu","sequence":"additional","affiliation":[{"name":"State Key Laboratory of Integrated Services Networks, School of Cyber Engineering, Xidian University, Xi&#x2019;an, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-9640-6472","authenticated-orcid":false,"given":"Tongliang","family":"Liu","sequence":"additional","affiliation":[{"name":"School of Computer Science, Facult of Engineering, The University of Sydney, Darlington, NSW, Australia"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-4695-6134","authenticated-orcid":false,"given":"Nannan","family":"Wang","sequence":"additional","affiliation":[{"name":"State Key Laboratory of Integrated Services Networks, School of Telecommunications Engineering, Xidian University, Xi&#x2019;an, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-7985-0037","authenticated-orcid":false,"given":"Xinbo","family":"Gao","sequence":"additional","affiliation":[{"name":"School of Electronic Engineering, Xidian University, Xi&#x2019;an, China"}]}],"member":"263","reference":[{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1145\/3422622"},{"key":"ref2","article-title":"Auto-encoding variational bayes","author":"Kingma","year":"2013"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1109\/TIP.2019.2916751"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1109\/IJCNN.2019.8851881"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR46437.2021.00853"},{"key":"ref6","article-title":"CycleGAN, a master of steganography","author":"Chu","year":"2017"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2018.00916"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1109\/iccv51070.2023.02112"},{"key":"ref9","article-title":"DeepFakes: A new threat to face recognition? Assessment and detection","author":"Korshunov","year":"2018"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1016\/j.inffus.2020.06.014"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1007\/s11263-013-0688-y"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2019.00009"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-58610-2_6"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR42600.2020.00582"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1145\/3425780"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-66823-5_14"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1109\/WACVW50321.2020.9096939"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.24963\/ijcai.2022\/107"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-031-19781-9_4"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v35i2.16254"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-24797-2_4"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1126\/science.1248506"},{"issue":"04","key":"ref23","first-page":"2014","article-title":"Eight (no, nine!) problems with Big Data","volume":"6","author":"Marcus","year":"2014","journal-title":"New York Times"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1201\/9781003143376"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.3102\/00346543058004375"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1007\/s10648-013-9243-1"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1109\/TKDE.2017.2720168"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.1109\/TIP.2003.819861"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.1002\/9780470035948"},{"key":"ref30","article-title":"Progressive growing of GANs for improved quality, stability, and variation","volume-title":"Proc. Int. Conf. Learn. Representations","author":"Karras"},{"key":"ref31","article-title":"Large scale GAN training for high fidelity natural image synthesis","volume-title":"Proc. Int. Conf. Learn. Representations","author":"Brock"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR42600.2020.00813"},{"key":"ref33","doi-asserted-by":"publisher","DOI":"10.48550\/ARXIV.2106.12423"},{"key":"ref34","doi-asserted-by":"publisher","DOI":"10.1109\/TNNLS.2022.3233025"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1109\/WIFS.2017.8267641"},{"key":"ref36","first-page":"38","article-title":"Protecting world leaders against deep fakes","volume-title":"Proc. IEEE Conf. Comput. Vis. Pattern Recognit. Workshops","author":"Agarwal"},{"key":"ref37","article-title":"Generalized zero and few-shot transfer for facial forgery detection","author":"Aneja","year":"2020"},{"key":"ref38","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV48922.2021.01483"},{"key":"ref39","article-title":"Explaining and harnessing adversarial examples","author":"Goodfellow","year":"2014"},{"key":"ref40","article-title":"Towards deep learning models resistant to adversarial attacks","author":"Madry","year":"2017"},{"key":"ref41","doi-asserted-by":"publisher","DOI":"10.1109\/ICPR.2010.579"},{"key":"ref42","doi-asserted-by":"publisher","DOI":"10.1109\/TIP.2011.2109730"},{"key":"ref43","doi-asserted-by":"publisher","DOI":"10.1109\/CVPRW.2018.00211"},{"key":"ref44","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2018.00068"},{"key":"ref45","doi-asserted-by":"publisher","DOI":"10.4236\/jcc.2019.73002"},{"key":"ref46","article-title":"Perceptually constrained adversarial attacks","author":"Hameed","year":"2021"},{"key":"ref47","article-title":"PyTorch face landmark: A fast and accurate facial landmark detector","author":"Chen","year":"2021"},{"key":"ref48","article-title":"Very deep convolutional networks for large-scale image recognition","author":"Simonyan","year":"2014"},{"key":"ref49","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.265"},{"key":"ref50","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2015.425"},{"key":"ref51","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2017.244"},{"key":"ref52","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV48922.2021.00658"},{"key":"ref53","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-031-19784-0_14"},{"key":"ref54","doi-asserted-by":"publisher","DOI":"10.1109\/TPAMI.1986.4767851"},{"issue":"5","key":"ref55","first-page":"1516","article-title":"An improved canny algorithm for edge detection","volume":"7","author":"Zhou","year":"2011","journal-title":"J. Comput. Inf. Syst."},{"key":"ref56","doi-asserted-by":"publisher","DOI":"10.1109\/LSP.2016.2603342"},{"key":"ref57","doi-asserted-by":"publisher","DOI":"10.1109\/TIP.2022.3211736"},{"key":"ref58","article-title":"A theory of transfer-based black-box attacks: Explanation and implications","volume-title":"Proc. Adv. Neural Inf. Process. Syst.","author":"Chen"}],"container-title":["IEEE Transactions on Dependable and Secure Computing"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/8858\/11150357\/11014539.pdf?arnumber=11014539","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,9,4]],"date-time":"2025-09-04T18:53:06Z","timestamp":1757011986000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/11014539\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,9]]},"references-count":58,"journal-issue":{"issue":"5"},"URL":"https:\/\/doi.org\/10.1109\/tdsc.2025.3573294","relation":{},"ISSN":["1545-5971","1941-0018","2160-9209"],"issn-type":[{"value":"1545-5971","type":"print"},{"value":"1941-0018","type":"electronic"},{"value":"2160-9209","type":"electronic"}],"subject":[],"published":{"date-parts":[[2025,9]]}}}