{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,6,18]],"date-time":"2025-06-18T04:20:30Z","timestamp":1750220430553,"version":"3.41.0"},"publisher-location":"New York, NY, USA","reference-count":9,"publisher":"ACM","license":[{"start":{"date-parts":[[2020,12,24]],"date-time":"2020-12-24T00:00:00Z","timestamp":1608768000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2020,12,24]]},"DOI":"10.1145\/3446132.3446178","type":"proceedings-article","created":{"date-parts":[[2021,3,10]],"date-time":"2021-03-10T00:15:23Z","timestamp":1615335323000},"page":"1-1","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":0,"title":["MTDNNF: Building the Security Framework for Deep Neural Network by Moving Target Defense*"],"prefix":"10.1145","author":[{"given":"Weiwei","family":"Wang","sequence":"first","affiliation":[{"name":"NUDT and Anhui Province Key Laboratory of Cyberspace SecuritySituation Awareness and Evaluation, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Xinli","family":"Xiong","sequence":"additional","affiliation":[{"name":"NUDT and Anhui Province Key Laboratory of Cyberspace SecuritySituation Awareness and Evaluation, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Songhe","family":"Wang","sequence":"additional","affiliation":[{"name":"NUDT and Anhui Province Key Laboratory of Cyberspace SecuritySituation Awareness and Evaluation, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Jingye","family":"Zhang","sequence":"additional","affiliation":[{"name":"NUDT and Anhui Province Key Laboratory of Cyberspace SecuritySituation Awareness and Evaluation, China"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2021,3,9]]},"reference":[{"key":"e_1_3_2_1_1_1","unstructured":"A. Bhagoji Daniel Cullina and P. Mittal. 2017. Dimensionality Reduction as a Defense against Evasion Attacks on Machine Learning Classifiers. ArXiv abs\/1704.02654(2017).  A. Bhagoji Daniel Cullina and P. Mittal. 2017. Dimensionality Reduction as a Defense against Evasion Attacks on Machine Learning Classifiers. ArXiv abs\/1704.02654(2017)."},{"key":"e_1_3_2_1_2_1","volume-title":"Moving Target Defense: Creating Asymmetric Uncertainty for Cyber Threats","author":"Jajodia Sushil","unstructured":"Sushil Jajodia , Anup\u00a0 K. Ghosh , Vipin Swarup , Cliff Wang , and X.\u00a0 Sean Wang . 2011. Moving Target Defense: Creating Asymmetric Uncertainty for Cyber Threats ( 1 st ed.). Springer Publishing Company, Inc orporated. Sushil Jajodia, Anup\u00a0K. Ghosh, Vipin Swarup, Cliff Wang, and X.\u00a0Sean Wang. 2011. Moving Target Defense: Creating Asymmetric Uncertainty for Cyber Threats (1st ed.). Springer Publishing Company, Incorporated.","edition":"1"},{"key":"e_1_3_2_1_3_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.282"},{"key":"e_1_3_2_1_4_1","volume-title":"Simple Black-Box Adversarial Attacks on Deep Neural Networks. In 2017 IEEE Conference on Computer Vision and Pattern Recognition Workshops (CVPRW). 1310\u20131318","author":"Narodytska N.","year":"2017","unstructured":"N. Narodytska and S. Kasiviswanathan . 2017 . Simple Black-Box Adversarial Attacks on Deep Neural Networks. In 2017 IEEE Conference on Computer Vision and Pattern Recognition Workshops (CVPRW). 1310\u20131318 . https:\/\/doi.org\/10.1109\/CVPRW. 2017 .172 N. Narodytska and S. Kasiviswanathan. 2017. Simple Black-Box Adversarial Attacks on Deep Neural Networks. In 2017 IEEE Conference on Computer Vision and Pattern Recognition Workshops (CVPRW). 1310\u20131318. https:\/\/doi.org\/10.1109\/CVPRW.2017.172"},{"key":"e_1_3_2_1_5_1","unstructured":"Nicolas Papernot Patrick McDaniel Arunesh Sinha and Michael Wellman. 2016. Towards the Science of Security and Privacy in Machine Learning. arxiv:1611.03814\u00a0[cs.CR]  Nicolas Papernot Patrick McDaniel Arunesh Sinha and Michael Wellman. 2016. Towards the Science of Security and Privacy in Machine Learning. arxiv:1611.03814\u00a0[cs.CR]"},{"key":"e_1_3_2_1_6_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2016.41"},{"key":"e_1_3_2_1_7_1","doi-asserted-by":"crossref","unstructured":"Sailik Sengupta Tathagata Chakraborti and Subbarao Kambhampati. 2019. MTDeep: Boosting the Security of Deep Neural Nets Against Adversarial Attacks with Moving Target Defense. arxiv:1705.07213\u00a0[cs.LG]  Sailik Sengupta Tathagata Chakraborti and Subbarao Kambhampati. 2019. MTDeep: Boosting the Security of Deep Neural Nets Against Adversarial Attacks with Moving Target Defense. arxiv:1705.07213\u00a0[cs.LG]","DOI":"10.1007\/978-3-030-32430-8_28"},{"key":"e_1_3_2_1_8_1","unstructured":"Florian Tram\u00e8r Alexey Kurakin Nicolas Papernot Ian Goodfellow Dan Boneh and Patrick McDaniel. 2020. Ensemble Adversarial Training: Attacks and Defenses. arxiv:1705.07204\u00a0[stat.ML]  Florian Tram\u00e8r Alexey Kurakin Nicolas Papernot Ian Goodfellow Dan Boneh and Patrick McDaniel. 2020. Ensemble Adversarial Training: Attacks and Defenses. arxiv:1705.07204\u00a0[stat.ML]"},{"key":"e_1_3_2_1_9_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.485"}],"event":{"name":"ACAI 2020: 2020 3rd International Conference on Algorithms, Computing and Artificial Intelligence","acronym":"ACAI 2020","location":"Sanya China"},"container-title":["2020 3rd International Conference on Algorithms, Computing and Artificial Intelligence"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3446132.3446178","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3446132.3446178","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,17]],"date-time":"2025-06-17T20:47:04Z","timestamp":1750193224000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3446132.3446178"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2020,12,24]]},"references-count":9,"alternative-id":["10.1145\/3446132.3446178","10.1145\/3446132"],"URL":"https:\/\/doi.org\/10.1145\/3446132.3446178","relation":{},"subject":[],"published":{"date-parts":[[2020,12,24]]},"assertion":[{"value":"2021-03-09","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}