{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,3,6]],"date-time":"2026-03-06T18:57:38Z","timestamp":1772823458680,"version":"3.50.1"},"reference-count":65,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","license":[{"start":{"date-parts":[[2023,1,1]],"date-time":"2023-01-01T00:00:00Z","timestamp":1672531200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2023,1,1]],"date-time":"2023-01-01T00:00:00Z","timestamp":1672531200000},"content-version":"am","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2023,1,1]],"date-time":"2023-01-01T00:00:00Z","timestamp":1672531200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2023,1,1]],"date-time":"2023-01-01T00:00:00Z","timestamp":1672531200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"DOI":"10.13039\/100000001","name":"National Science Foundation (NSF) CAREER Award through the Office of Advanced Cyberinfrastructure","doi-asserted-by":"publisher","award":["2046708"],"award-info":[{"award-number":["2046708"]}],"id":[{"id":"10.13039\/100000001","id-type":"DOI","asserted-by":"publisher"}]},{"name":"Rensselaer-IBM Artificial Intelligence (AI) Research Collaboration"},{"name":"IBM AI Horizons Network"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Trans. on Image Process."],"published-print":{"date-parts":[[2023]]},"DOI":"10.1109\/tip.2023.3242141","type":"journal-article","created":{"date-parts":[[2023,2,16]],"date-time":"2023-02-16T21:15:41Z","timestamp":1676582141000},"page":"1272-1284","source":"Crossref","is-referenced-by-count":12,"title":["Toward Adversarial Robustness in Unlabeled Target Domains"],"prefix":"10.1109","volume":"32","author":[{"ORCID":"https:\/\/orcid.org\/0000-0001-6516-4012","authenticated-orcid":false,"given":"Jiajin","family":"Zhang","sequence":"first","affiliation":[{"name":"Department of Biomedical Engineering and the Center for Biotechnology and Interdisciplinary Studies, Rensselaer Polytechnic Institute, Troy, NY, USA"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-5973-2343","authenticated-orcid":false,"given":"Hanqing","family":"Chao","sequence":"additional","affiliation":[{"name":"Department of Biomedical Engineering and the Center for Biotechnology and Interdisciplinary Studies, Rensselaer Polytechnic Institute, Troy, NY, USA"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-9779-2141","authenticated-orcid":false,"given":"Pingkun","family":"Yan","sequence":"additional","affiliation":[{"name":"Department of Biomedical Engineering and the Center for Biotechnology and Interdisciplinary Studies, Rensselaer Polytechnic Institute, Troy, NY, USA"}]}],"member":"263","reference":[{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.49"},{"key":"ref2","first-page":"1","article-title":"Explaining and harnessing adversarial examples","volume-title":"Proc. ICLR","author":"Goodfellow"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.48550\/ARXIV.1706.06083"},{"key":"ref4","first-page":"7472","article-title":"Theoretically principled trade-off between robustness and accuracy","volume-title":"Proc. Int. Conf. Mach. Learn.","volume":"97","author":"Zhang"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR42600.2020.00875"},{"key":"ref6","first-page":"12214","article-title":"Are labels required for improving adversarial robustness?","volume-title":"Proc. NeurIPS","author":"Alayrac"},{"key":"ref7","first-page":"1","article-title":"Adversarially robust transfer learning","volume-title":"Proc. Int. Conf. Learn. Represent.","author":"Shafahi"},{"key":"ref8","article-title":"Robustified domain adaptation","author":"Zhang","year":"2020","journal-title":"arXiv:2011.09563"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1109\/34.291440"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1109\/5.726791"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.5555\/2946645.2946704"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-15561-1_16"},{"key":"ref13","article-title":"VisDA: The visual domain adaptation challenge","author":"Peng","year":"2017","journal-title":"arXiv:1710.06924"},{"key":"ref14","first-page":"1","article-title":"Intriguing properties of neural networks","volume-title":"Proc. ICLR","author":"Szegedy"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1201\/9781351251389-8"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2018.00957"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2015.7298640"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1109\/EuroSP.2016.36"},{"key":"ref19","first-page":"2196","article-title":"Minimally distorted adversarial examples with a fast adaptive boundary attack","volume-title":"Proc. ICML","author":"Croce"},{"key":"ref20","first-page":"2958","article-title":"Adversarial weight perturbation helps robust generalization","volume-title":"Proc. Adv. Neural Inf. Process. Syst.","volume":"33","author":"Wu"},{"key":"ref21","article-title":"Adversarial logit pairing","author":"Kannan","year":"2018","journal-title":"arXiv:1803.06373"},{"key":"ref22","first-page":"11192","article-title":"Unlabeled data improves adversarial robustness","volume-title":"Proc. NeurIPS","author":"Carmon"},{"key":"ref23","article-title":"Do adversarially robust ImageNet models transfer better?","author":"Salman","year":"2020","journal-title":"arXiv:2007.08489"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2017.316"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2018.00835"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2018.00400"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2019.01053"},{"key":"ref28","article-title":"Adversarial dropout regularization","author":"Saito","year":"2017","journal-title":"arXiv:1711.01575"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2018.00392"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2019.00058"},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v33i01.33015345"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v33i01.33015401"},{"key":"ref33","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-01252-6_25"},{"key":"ref34","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2018.00887"},{"key":"ref35","first-page":"1","article-title":"Generative adversarial nets","volume-title":"Proc. Adv. Neural Inf. Process. Syst.","volume":"27","author":"Goodfellow"},{"key":"ref36","first-page":"1081","article-title":"Transferability vs. discriminability: Batch spectral penalization for adversarial domain adaptation","volume-title":"Proc. Int. Conf. Mach. Learn.","author":"Chen"},{"key":"ref37","first-page":"57","article-title":"Semi-supervised classification by low density separation","volume-title":"Proc. Int. Workshop Artif. Intell. Statist.","author":"Chapelle"},{"key":"ref38","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2019.00150"},{"key":"ref39","first-page":"190","article-title":"Unsupervised model adaptation using information-theoretic criterion","volume-title":"Proc. Human Lang. Technol., Annu. Conf. North Amer. Chapter Assoc. Comput. Linguistics","author":"Rastrow"},{"key":"ref40","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2019.00970"},{"key":"ref41","article-title":"Information-theoretical learning of discriminative clusters for unsupervised domain adaptation","author":"Shi","year":"2012","journal-title":"arXiv:1206.6438"},{"key":"ref42","article-title":"A DIRT-T approach to unsupervised domain adaptation","author":"Shu","year":"2018","journal-title":"arXiv:1802.08735"},{"key":"ref43","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2019.00151"},{"key":"ref44","doi-asserted-by":"publisher","DOI":"10.1109\/TPAMI.2020.3036956"},{"key":"ref45","article-title":"Deep domain confusion: Maximizing for domain invariance","author":"Tzeng","year":"2014","journal-title":"arXiv:1412.3474"},{"key":"ref46","first-page":"97","article-title":"Learning transferable features with deep adaptation networks","volume-title":"Proc. ICML","author":"Long"},{"key":"ref47","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-49409-8_35"},{"key":"ref48","doi-asserted-by":"publisher","DOI":"10.1093\/bioinformatics\/btl242"},{"key":"ref49","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2019.00503"},{"key":"ref50","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2019.01004"},{"key":"ref51","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR42600.2020.01257"},{"key":"ref52","article-title":"Augmented cyclic adversarial learning for low resource domain adaptation","author":"Hosseini-Asl","year":"2018","journal-title":"arXiv:1807.00374"},{"key":"ref53","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV48922.2021.00906"},{"key":"ref54","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2018.00099"},{"issue":"2","key":"ref55","first-page":"896","article-title":"Pseudo-label: The simple and efficient semi-supervised learning method for deep neural networks","volume-title":"Proc. Int. Conf. Mach. Learn. Workshop","volume":"3","author":"Lee"},{"key":"ref56","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-01228-1_19"},{"key":"ref57","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2019.00718"},{"key":"ref58","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v34i04.6082"},{"key":"ref59","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR42600.2020.01070"},{"key":"ref60","article-title":"In defense of pseudo-labeling: An uncertainty-aware pseudo-label selection framework for semi-supervised learning","author":"Rizve","year":"2021","journal-title":"arXiv:2101.06329"},{"key":"ref61","first-page":"1321","article-title":"On calibration of modern neural networks","volume-title":"Proc. Int. Conf. Mach. Learn.","author":"Guo"},{"key":"ref62","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2017.572"},{"key":"ref63","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.90"},{"key":"ref64","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2006.100"},{"key":"ref65","first-page":"1","article-title":"Adversarial examples are not bugs, they are features","volume-title":"Proc. Adv. Neural Inf. Process. Syst.","volume":"32","author":"Ilyas"}],"container-title":["IEEE Transactions on Image Processing"],"original-title":[],"link":[{"URL":"https:\/\/ieeexplore.ieee.org\/ielam\/83\/9991910\/10043655-aam.pdf","content-type":"application\/pdf","content-version":"am","intended-application":"syndication"},{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/83\/9991910\/10043655.pdf?arnumber=10043655","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,4,11]],"date-time":"2024-04-11T04:32:10Z","timestamp":1712809930000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/10043655\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2023]]},"references-count":65,"URL":"https:\/\/doi.org\/10.1109\/tip.2023.3242141","relation":{},"ISSN":["1057-7149","1941-0042"],"issn-type":[{"value":"1057-7149","type":"print"},{"value":"1941-0042","type":"electronic"}],"subject":[],"published":{"date-parts":[[2023]]}}}