{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,2,19]],"date-time":"2026-02-19T02:15:30Z","timestamp":1771467330394,"version":"3.50.1"},"reference-count":43,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","license":[{"start":{"date-parts":[[2024,1,1]],"date-time":"2024-01-01T00:00:00Z","timestamp":1704067200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2024,1,1]],"date-time":"2024-01-01T00:00:00Z","timestamp":1704067200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2024,1,1]],"date-time":"2024-01-01T00:00:00Z","timestamp":1704067200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Trans.Inform.Forensic Secur."],"published-print":{"date-parts":[[2024]]},"DOI":"10.1109\/tifs.2024.3402309","type":"journal-article","created":{"date-parts":[[2024,5,17]],"date-time":"2024-05-17T17:24:30Z","timestamp":1715966670000},"page":"5464-5475","source":"Crossref","is-referenced-by-count":2,"title":["Vulnerability of Deep Forest to Adversarial Attacks"],"prefix":"10.1109","volume":"19","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-1997-5209","authenticated-orcid":false,"given":"Ziad","family":"Ali","sequence":"first","affiliation":[{"name":"Computer Engineering Department, College of Engineering and Petroleum, Kuwait University, Kuwait City, Kuwait"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-9494-8809","authenticated-orcid":false,"given":"Ameer","family":"Mohammed","sequence":"additional","affiliation":[{"name":"Computer Engineering Department, College of Engineering and Petroleum, Kuwait University, Kuwait City, Kuwait"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-0673-7324","authenticated-orcid":false,"given":"Imtiaz","family":"Ahmad","sequence":"additional","affiliation":[{"name":"Computer Engineering Department, College of Engineering and Petroleum, Kuwait University, Kuwait City, Kuwait"}]}],"member":"263","reference":[{"key":"ref1","article-title":"Intriguing properties of neural networks","volume-title":"Proc. 2nd Int. Conf. Learn. Represent. (ICLR)","author":"Szegedy"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-66399-9_4"},{"key":"ref3","article-title":"Explaining and harnessing adversarial examples","volume-title":"Proc. 3rd Int. Conf. Learn. Represent. (ICLR)","author":"Goodfellow"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1109\/SPW.2018.00009"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1109\/TNNLS.2018.2886017"},{"key":"ref6","article-title":"On evaluating adversarial robustness","author":"Carlini","year":"2019","journal-title":"arXiv:1902.06705"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-56877-1_7"},{"key":"ref8","article-title":"Transferability in machine learning: From phenomena to black-box attacks using adversarial samples","author":"Papernot","year":"2016","journal-title":"arXiv:1605.07277"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1145\/3128572.3140448"},{"key":"ref10","article-title":"Query-efficient hard-label black-box attack: An optimization-based approach","volume-title":"Proc. 7th Int. Conf. Learn. Represent. (ICLR)","author":"Cheng"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1093\/nsr\/nwy108"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1023\/A:1010933404324"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1145\/2939672.2939785"},{"key":"ref14","first-page":"2387","article-title":"Evasion and hardening of tree ensemble classifiers","volume-title":"Proc. 33rd Int. Conf. Mach. Learn. (ICML)","volume":"48","author":"Kantchelian"},{"key":"ref15","first-page":"16165","article-title":"An efficient adversarial attack for tree ensembles","volume-title":"Proc. Adv. Neural Inf. Process. Syst.","volume":"33","author":"Zhang"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1109\/JBHI.2020.3019505"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1038\/s41598-021-95957-w"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2020.2983317"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1148\/radiol.2020200490"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1016\/j.cell.2008.12.044"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2020.3004968"},{"key":"ref22","volume-title":"Color Science","volume":"8","author":"Wyszecki","year":"1982"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1016\/j.jspr.2015.01.006"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.3390\/s17051124"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1016\/j.rsase.2018.10.016"},{"key":"ref26","first-page":"12317","article-title":"Robustness verification of tree-based models","volume-title":"Proc. Adv. Neural Inf. Process. Syst.","volume":"32","author":"Chen"},{"key":"ref27","first-page":"1122","article-title":"Robust decision trees against adversarial examples","volume-title":"Proc. 36th Int. Conf. Mach. Learn. (ICML)","volume":"97","author":"Chen"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.1007\/s10618-020-00694-9"},{"key":"ref29","first-page":"10586","article-title":"Efficient training of robust decision trees against adversarial examples","volume-title":"Proc. Int. Conf. Mach. Learn.","author":"Vos"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.1109\/CVPRW.2019.00019"},{"key":"ref31","first-page":"1633","article-title":"On adaptive attacks to adversarial example defenses","volume-title":"Proc. Adv. Neural Inf. Process. Syst., Annu. Conf. Neural Inf. Process. Syst. (NeurIPS)","author":"Tram\u00e8r"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v33i01.33015869"},{"key":"ref33","doi-asserted-by":"publisher","DOI":"10.1145\/3128572.3140444"},{"key":"ref34","first-page":"21692","article-title":"Detecting adversarial examples is (nearly) as hard as classifying them","volume-title":"Proc. Int. Conf. Mach. Learn.","author":"Tramer"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.49"},{"key":"ref36","doi-asserted-by":"publisher","DOI":"10.48550\/ARXIV.1706.06083"},{"key":"ref37","article-title":"Ensemble adversarial training: Attacks and defenses","volume-title":"Proc. 6th Int. Conf. Learn. Represent. (ICLR)","author":"Tram\u00e8r"},{"key":"ref38","article-title":"Improving adversarial robustness requires revisiting misclassified examples","volume-title":"Proc. Int. Conf. Learn. Represent.","author":"Wang"},{"key":"ref39","volume-title":"Learning Multiple Layers of Features From Tiny Images","author":"Krizhevsky","year":"2009"},{"key":"ref40","volume-title":"The MNIST Database of Handwritten Digits","author":"LeCun","year":"1998"},{"key":"ref41","article-title":"Fashion-MNIST: A novel image dataset for benchmarking machine learning algorithms","author":"Xiao","year":"2017","journal-title":"arXiv:1708.07747"},{"key":"ref42","article-title":"Adam: A method for stochastic optimization","volume-title":"Proc. 3rd Int. Conf. Learn. Represent. (ICLR)","author":"Kingma"},{"key":"ref43","first-page":"11190","article-title":"Unlabeled data improves adversarial robustness","volume-title":"Proc. Adv. Neural Inf. Process. Syst.","volume":"32","author":"Carmon"}],"container-title":["IEEE Transactions on Information Forensics and Security"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/10206\/10319981\/10534117.pdf?arnumber=10534117","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,5,23]],"date-time":"2024-05-23T04:53:37Z","timestamp":1716440017000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/10534117\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024]]},"references-count":43,"URL":"https:\/\/doi.org\/10.1109\/tifs.2024.3402309","relation":{},"ISSN":["1556-6013","1556-6021"],"issn-type":[{"value":"1556-6013","type":"print"},{"value":"1556-6021","type":"electronic"}],"subject":[],"published":{"date-parts":[[2024]]}}}