{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,4,28]],"date-time":"2026-04-28T14:17:58Z","timestamp":1777385878624,"version":"3.51.4"},"reference-count":34,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","issue":"6","license":[{"start":{"date-parts":[[2025,12,1]],"date-time":"2025-12-01T00:00:00Z","timestamp":1764547200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2025,12,1]],"date-time":"2025-12-01T00:00:00Z","timestamp":1764547200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2025,12,1]],"date-time":"2025-12-01T00:00:00Z","timestamp":1764547200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Trans. Netw. Serv. Manage."],"published-print":{"date-parts":[[2025,12]]},"DOI":"10.1109\/tnsm.2025.3594253","type":"journal-article","created":{"date-parts":[[2025,7,30]],"date-time":"2025-07-30T18:51:12Z","timestamp":1753901472000},"page":"5301-5310","source":"Crossref","is-referenced-by-count":3,"title":["A Random Deep Feature Selection Approach to Mitigate Transferable Adversarial Attacks"],"prefix":"10.1109","volume":"22","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-5714-8378","authenticated-orcid":false,"given":"Ehsan","family":"Nowroozi","sequence":"first","affiliation":[{"name":"Centre for Sustainable Cyber Security, University of Greenwich, London, U.K."}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-8470-3277","authenticated-orcid":false,"given":"Mohammadreza","family":"Mohammadi","sequence":"additional","affiliation":[{"name":"Smart Automation and Cyber Resilience, Digital Systems, RISE Research Institute of Sweden, Stockholm, Sweden"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-6368-1435","authenticated-orcid":false,"given":"Ahmad","family":"Rahdari","sequence":"additional","affiliation":[{"name":"School of Electrical and Computer Engineering, Shiraz University, Shiraz, Iran"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-4078-3105","authenticated-orcid":false,"given":"Rahim","family":"Taheri","sequence":"additional","affiliation":[{"name":"PAIDS Research Centre, School of Computing, University of Portsmouth, Portsmouth, U.K."}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-3612-1934","authenticated-orcid":false,"given":"Mauro","family":"Conti","sequence":"additional","affiliation":[{"name":"Department of Mathematics, University of Padua, Padua, Italy"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1145\/3664595"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1109\/TNSE.2024.3389428"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1109\/TAI.2024.3383407"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.5220\/0012038100003555"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1007\/s10994-021-06119-y"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1109\/TNSM.2022.3164354"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1109\/TSC.2023.3329081"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1109\/COMST.2023.3344808"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1155\/2022\/6458488"},{"key":"ref10","first-page":"16048","article-title":"Understanding and improving fast adversarial training","volume-title":"Proc. Adv. Neural Inf. Process. Syst.","volume":"33","author":"Andriushchenko"},{"key":"ref11","first-page":"10859","article-title":"Robust learning for data poisoning attacks","volume-title":"Proc. 38th Int. Conf. Mach. Learn.","author":"Wang"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1109\/ICASSP39728.2021.9414862"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2021.3080522"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1109\/JSAC.2021.3087242"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1007\/s10664-021-10064-8"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1109\/JIOT.2020.3005688"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1016\/j.future.2022.08.011"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1145\/3453158"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1007\/s10207-024-00903-2"},{"key":"ref20","article-title":"Explaining and harnessing adversarial examples","author":"Goodfellow","year":"2014","journal-title":"arXiv:1412.6572"},{"key":"ref21","article-title":"Ensemble adversarial training: Attacks and defenses","author":"Tram\u00e8r","year":"2017","journal-title":"arXiv:1705.07204"},{"key":"ref22","article-title":"Feature squeezing: Detecting adversarial examples in deep neural networks","author":"Xu","year":"2017","journal-title":"arXiv:1704.01155"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1145\/3128572.3140444"},{"key":"ref24","first-page":"4970","article-title":"Improving adversarial robustness via promoting ensemble diversity","volume-title":"Proc. Int. Conf. Mach. Learn.","author":"Pang"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1109\/TNSM.2023.3267831"},{"key":"ref26","article-title":"Transferability in machine learning: From phenomena to black-box attacks using adversarial samples","author":"Papernot","year":"2016","journal-title":"arXiv:1605.07277"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2019.2949286"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2020.102092"},{"key":"ref29","volume-title":"Random deep feature selection (RDFS)","author":"Nowroozi","year":"2024"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2018.2825953"},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1109\/MilCIS.2015.7348942"},{"key":"ref32","article-title":"Foolbox v0.8.0: A Python toolbox to benchmark the robustness of machine learning models","author":"Rauber","year":"2017","journal-title":"arXiv:1707.04131v3"},{"key":"ref33","article-title":"Towards deep learning models resistant to adversarial attacks","author":"Madry","year":"2017","journal-title":"arXiv:1706.06083"},{"key":"ref34","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-20320-6_11"}],"container-title":["IEEE Transactions on Network and Service Management"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/4275028\/11278396\/11104933.pdf?arnumber=11104933","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,12,5]],"date-time":"2025-12-05T18:38:32Z","timestamp":1764959912000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/11104933\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,12]]},"references-count":34,"journal-issue":{"issue":"6"},"URL":"https:\/\/doi.org\/10.1109\/tnsm.2025.3594253","relation":{},"ISSN":["1932-4537","2373-7379"],"issn-type":[{"value":"1932-4537","type":"electronic"},{"value":"2373-7379","type":"electronic"}],"subject":[],"published":{"date-parts":[[2025,12]]}}}