{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,11,21]],"date-time":"2025-11-21T18:47:34Z","timestamp":1763750854732,"version":"3.45.0"},"reference-count":29,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","license":[{"start":{"date-parts":[[2025,1,1]],"date-time":"2025-01-01T00:00:00Z","timestamp":1735689600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2025,1,1]],"date-time":"2025-01-01T00:00:00Z","timestamp":1735689600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2025,1,1]],"date-time":"2025-01-01T00:00:00Z","timestamp":1735689600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["62306227","62571405","62276198","U22A2035","U22A2096"],"award-info":[{"award-number":["62306227","62571405","62276198","U22A2035","U22A2096"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"name":"Young Talent Fund of Association for Science and Technology, Shaanxi","award":["20250143"],"award-info":[{"award-number":["20250143"]}]},{"name":"Independent Research Topic Program of Shaanxi Key Laboratory of Intelligent Policing","award":["SXZJ25ZZ02"],"award-info":[{"award-number":["SXZJ25ZZ02"]}]},{"name":"Innovation Capability Support Plan in Shaanxi Province","award":["2025ZC-KJXX-22"],"award-info":[{"award-number":["2025ZC-KJXX-22"]}]},{"name":"Scientific and Technological Innovation Teams in Shaanxi Province","award":["2025RS-CXTD-011"],"award-info":[{"award-number":["2025RS-CXTD-011"]}]},{"name":"Young Elite Scientists Sponsorship Program by CAST","award":["2022QNRC001"],"award-info":[{"award-number":["2022QNRC001"]}]},{"name":"Shaanxi Province Core Technology Research and Development Project","award":["2024QY2-GJHX-11"],"award-info":[{"award-number":["2024QY2-GJHX-11"]}]},{"name":"Open Research Project of Key Laboratory of Artificial Intelligence Ministry of Education","award":["AI202401"],"award-info":[{"award-number":["AI202401"]}]},{"DOI":"10.13039\/501100018925","name":"Overseas Expertise Introduction Center for Discipline Innovation of Food Nutrition and Human Health","doi-asserted-by":"publisher","award":["B16037"],"award-info":[{"award-number":["B16037"]}],"id":[{"id":"10.13039\/501100018925","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100012226","name":"Fundamental Research Funds for the Central Universities","doi-asserted-by":"publisher","award":["QTZX23083","QTZX23042"],"award-info":[{"award-number":["QTZX23083","QTZX23042"]}],"id":[{"id":"10.13039\/501100012226","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Trans.Inform.Forensic Secur."],"published-print":{"date-parts":[[2025]]},"DOI":"10.1109\/tifs.2025.3632217","type":"journal-article","created":{"date-parts":[[2025,11,12]],"date-time":"2025-11-12T18:40:34Z","timestamp":1762972834000},"page":"12275-12284","source":"Crossref","is-referenced-by-count":0,"title":["Toward Fair Adversarial Defense via Class Encourage-Suppress Robust Learning"],"prefix":"10.1109","volume":"20","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-6550-212X","authenticated-orcid":false,"given":"Decheng","family":"Liu","sequence":"first","affiliation":[{"name":"State Key Laboratory of Integrated Services Networks, School of Cyber Engineering, Xidian University, Xi&#x2019;an, Shaanxi, China"}]},{"ORCID":"https:\/\/orcid.org\/0009-0003-3627-2833","authenticated-orcid":false,"given":"Zhou","family":"Zhou","sequence":"additional","affiliation":[{"name":"Hangzhou Institute of Technology, Xidian University, Hangzhou, Zhejiang, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-3448-2514","authenticated-orcid":false,"given":"Chunlei","family":"Peng","sequence":"additional","affiliation":[{"name":"State Key Laboratory of Integrated Services Networks, School of Cyber Engineering, Xidian University, Xi&#x2019;an, Shaanxi, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-4695-6134","authenticated-orcid":false,"given":"Nannan","family":"Wang","sequence":"additional","affiliation":[{"name":"State Key Laboratory of Integrated Services Networks, School of Telecommunications Engineering, Xidian University, Xi&#x2019;an, Shaanxi, China"}]},{"given":"Ruimin","family":"Hu","sequence":"additional","affiliation":[{"name":"Hangzhou Institute of Technology, Xidian University, Hangzhou, Zhejiang, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-7985-0037","authenticated-orcid":false,"given":"Xinbo","family":"Gao","sequence":"additional","affiliation":[{"name":"State Key Laboratory of Integrated Services Networks, School of Electronic Engineering, Xidian University, Xi&#x2019;an, Shaanxi, China"}]}],"member":"263","reference":[{"key":"ref1","first-page":"2553","article-title":"Deep neural networks for object detection","volume-title":"Proc. Adv. Neural Inf. Process. Syst.","volume":"26","author":"Szegedy"},{"key":"ref2","article-title":"Convolutional networks for images, speech, and time series","volume":"3361","author":"LeCun","year":"1998","journal-title":"The Handbook of Brain Theory and Neural Networks"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2012.6248110"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1145\/3065386"},{"key":"ref5","article-title":"Semantic image segmentation with deep convolutional nets and fully connected CRFs","author":"Chen","year":"2014","journal-title":"arXiv:1412.7062"},{"key":"ref6","article-title":"Intriguing properties of neural networks","author":"Szegedy","year":"2013","journal-title":"arXiv:1312.6199"},{"key":"ref7","article-title":"Explaining and harnessing adversarial examples","author":"Goodfellow","year":"2014","journal-title":"arXiv:1412.6572"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.48550\/ARXIV.1706.06083"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.49"},{"key":"ref10","first-page":"2206","article-title":"Reliable evaluation of adversarial robustness with an ensemble of diverse parameter-free attacks","volume-title":"Proc. Int. Conf. Mach. Learn.","author":"Croce"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1007\/s11633-019-1211-x"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2024.3359820"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2024.3516554"},{"article-title":"Learning multiple layers of features from tiny images","year":"2009","author":"Krizhevsky","key":"ref14"},{"key":"ref15","first-page":"2958","article-title":"Adversarial weight perturbation helps robust generalization","volume-title":"Proc. NIPS","author":"Wu"},{"key":"ref16","first-page":"7472","article-title":"Theoretically principled trade-off between robustness and accuracy","volume-title":"Proc. 36th Int. Conf. Mach. Learn. (ICML)","volume":"97","author":"Zhang"},{"key":"ref17","first-page":"11278","article-title":"Attacks which do not kill training make adversarial learning stronger","volume-title":"Proc. 37th Int. Conf. Mach. Learn.","author":"Zhang"},{"key":"ref18","article-title":"On the convergence and robustness of adversarial training","author":"Wang","year":"2021","journal-title":"arXiv:2112.08304"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52688.2022.01304"},{"key":"ref20","first-page":"11492","article-title":"To be robust or to be fair: Towards fairness in adversarial training","volume-title":"Proc. Int. Conf. Mach. Learn.","author":"Xu"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52729.2023.00792"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v37i12.26749"},{"key":"ref23","article-title":"DAFA: Distance-aware fair adversarial training","author":"Lee","year":"2024","journal-title":"arXiv:2401.12532"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52733.2024.02337"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v37i12.26769"},{"key":"ref26","first-page":"23803","article-title":"Cross-entropy loss functions: Theoretical analysis and applications","volume-title":"Proc. Int. Conf. Mach. Learn.","author":"Mao"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1214\/aoms\/1177729694"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.1145\/3447548.3467403"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-46493-0_38"}],"container-title":["IEEE Transactions on Information Forensics and Security"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/10206\/10810755\/11244123.pdf?arnumber=11244123","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,11,21]],"date-time":"2025-11-21T18:41:31Z","timestamp":1763750491000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/11244123\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025]]},"references-count":29,"URL":"https:\/\/doi.org\/10.1109\/tifs.2025.3632217","relation":{},"ISSN":["1556-6013","1556-6021"],"issn-type":[{"type":"print","value":"1556-6013"},{"type":"electronic","value":"1556-6021"}],"subject":[],"published":{"date-parts":[[2025]]}}}