{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,12,29]],"date-time":"2025-12-29T11:39:17Z","timestamp":1767008357250,"version":"3.44.0"},"publisher-location":"New York, NY, USA","reference-count":70,"publisher":"ACM","license":[{"start":{"date-parts":[[2023,11,15]],"date-time":"2023-11-15T00:00:00Z","timestamp":1700006400000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0\/"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2023,11,15]]},"DOI":"10.1145\/3576915.3616605","type":"proceedings-article","created":{"date-parts":[[2023,11,21]],"date-time":"2023-11-21T12:35:13Z","timestamp":1700570113000},"page":"431-445","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":2,"title":["Good-looking but Lacking Faithfulness: Understanding Local Explanation Methods through Trend-based Testing"],"prefix":"10.1145","author":[{"ORCID":"https:\/\/orcid.org\/0000-0003-0629-9800","authenticated-orcid":false,"given":"Jinwen","family":"He","sequence":"first","affiliation":[{"name":"SKLOIS, IIE, CAS &amp; School of Cyber Security, UCAS, Beijing, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-5624-2987","authenticated-orcid":false,"given":"Kai","family":"Chen","sequence":"additional","affiliation":[{"name":"SKLOIS, IIE, CAS &amp; School of Cyber Security, UCAS, Beijing, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-6388-2571","authenticated-orcid":false,"given":"Guozhu","family":"Meng","sequence":"additional","affiliation":[{"name":"SKLOIS, IIE, CAS &amp; School of Cyber Security, UCAS, Beijing, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0009-0007-7269-0011","authenticated-orcid":false,"given":"Jiangshan","family":"Zhang","sequence":"additional","affiliation":[{"name":"SKLOIS, IIE, CAS &amp; School of Cyber Security, UCAS, Beijing, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0009-0001-1727-1590","authenticated-orcid":false,"given":"Congyi","family":"Li","sequence":"additional","affiliation":[{"name":"SKLOIS, IIE, CAS &amp; School of Cyber Security, UCAS, Beijing, China"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2023,11,21]]},"reference":[{"volume-title":"SLIC Superpixels Compared to State-of-the-Art Superpixel Methods","author":"Achanta Radhakrishna","key":"e_1_3_2_1_1_1","unstructured":"Radhakrishna Achanta, Appu Shaji, Kevin Smith, Aurelien Lucchi, Pascal Fua, and Sabine S\u00fcsstrunk. 2012. SLIC Superpixels Compared to State-of-the-Art Superpixel Methods. In IEEE Transactions on Pattern Analysis and Machine Intelligence."},{"key":"e_1_3_2_1_2_1","volume-title":"6th International Conference on Learning Representations, ICLR.","author":"Adebayo Julius","year":"2018","unstructured":"Julius Adebayo, Justin Gilmer, Ian J. Goodfellow, and Been Kim. 2018a. Local Explanation Methods for Deep Neural Networks Lack Sensitivity to Parameter Values. In 6th International Conference on Learning Representations, ICLR."},{"key":"e_1_3_2_1_3_1","doi-asserted-by":"publisher","DOI":"10.5555\/3327546.3327621"},{"key":"e_1_3_2_1_4_1","volume-title":"Debugging Tests for Model Explanations. In 34th International Conference on Neural Information Processing Systems (NIPS'20)","author":"Adebayo Julius","year":"2020","unstructured":"Julius Adebayo, Michael Muelly, Ilaria Liccardi, and Been Kim. 2020. Debugging Tests for Model Explanations. In 34th International Conference on Neural Information Processing Systems (NIPS'20)."},{"key":"e_1_3_2_1_5_1","unstructured":"Robert John Nicholas Baldock Hartmut Maennel and Behnam Neyshabur. 2021. Deep Learning Through the Lens of Example Difficulty. In Advances in Neural Information Processing Systems."},{"volume-title":"Pearson Correlation Coefficient","author":"Benesty Jacob","key":"e_1_3_2_1_6_1","unstructured":"Jacob Benesty, Jingdong Chen, Yiteng Huang, and Israel Cohen. 2009. Pearson Correlation Coefficient. Springer Berlin Heidelberg, Berlin, Heidelberg."},{"volume-title":"Quarantine: Sparsity Can Uncover the Trojan Attack Trigger for Free. In 2022 IEEE\/CVF Conference on Computer Vision and Pattern Recognition (CVPR).","author":"Chen T.","key":"e_1_3_2_1_7_1","unstructured":"T. Chen, Z. Zhang, Y. Zhang, S. Chang, S. Liu, and Z. Wang. 2022. Quarantine: Sparsity Can Uncover the Trojan Attack Trigger for Free. In 2022 IEEE\/CVF Conference on Computer Vision and Pattern Recognition (CVPR)."},{"key":"e_1_3_2_1_8_1","doi-asserted-by":"publisher","DOI":"10.1145\/3485832.3485837"},{"key":"e_1_3_2_1_9_1","unstructured":"Piotr Dabkowski and Yarin Gal. 2017. Real Time Image Saliency for Black Box Classifiers. In Advances in Neural Information Processing Systems."},{"key":"e_1_3_2_1_10_1","volume-title":"Opportunities and Challenges in Explainable Artificial Intelligence (XAI): A Survey. arxiv","author":"Das Arun","year":"2006","unstructured":"Arun Das and Paul Rad. 2020. Opportunities and Challenges in Explainable Artificial Intelligence (XAI): A Survey. arxiv: 2006.11371 [cs.CV]"},{"key":"e_1_3_2_1_11_1","unstructured":"Finale Doshi-Velez and Been Kim. 2017. Towards A Rigorous Science of Interpretable Machine Learning. arxiv: 1702.08608 [stat.ML]"},{"key":"e_1_3_2_1_12_1","volume-title":"Marble: Model-based Robustness Analysis of Stateful Deep Learning Systems. In 35th ACM International Conference on Automated Software Engineering (ASE).","author":"Du Xiaoning","year":"2020","unstructured":"Xiaoning Du, Yi Li, Xiaofei Xie, Lei Ma, Yang Liu, and Jianjun Zhao. 2020. Marble: Model-based Robustness Analysis of Stateful Deep Learning Systems. In 35th ACM International Conference on Automated Software Engineering (ASE)."},{"key":"e_1_3_2_1_13_1","unstructured":"M. Everingham L. Van Gool C. K. I. Williams J. Winn and A. Zisserman. [n. d.]."},{"key":"e_1_3_2_1_14_1","volume-title":"One Step Further: Evaluating Interpreters Using Metamorphic Testing. In 31st ACM SIGSOFT International Symposium on Software Testing and Analysis (ISSTA).","author":"Fan Ming","year":"2022","unstructured":"Ming Fan, Jiali Wei, Wuxia Jin, Zhou Xu, Wenying Wei, and Ting Liu. 2022. One Step Further: Evaluating Interpreters Using Metamorphic Testing. In 31st ACM SIGSOFT International Symposium on Software Testing and Analysis (ISSTA)."},{"key":"e_1_3_2_1_15_1","doi-asserted-by":"publisher","DOI":"10.1145\/3548606.3559392"},{"key":"e_1_3_2_1_16_1","volume-title":"Explaining and Harnessing Adversarial Examples. In 3rd International Conference on Learning Representations, ICLR","author":"Goodfellow Ian J.","year":"2015","unstructured":"Ian J. Goodfellow, Jonathon Shlens, and Christian Szegedy. [n.,d.]. Explaining and Harnessing Adversarial Examples. In 3rd International Conference on Learning Representations, ICLR 2015. http:\/\/arxiv.org\/abs\/1412.6572"},{"key":"e_1_3_2_1_17_1","volume-title":"IEEE International Conference on Acoustics, Speech and Signal Processing - Proceedings","volume":"38","author":"Graves Alex","year":"2013","unstructured":"Alex Graves, Abdel-rahman Mohamed, and Geoffrey Hinton. 2013. Speech Recognition with Deep Recurrent Neural Networks. ICASSP, IEEE International Conference on Acoustics, Speech and Signal Processing - Proceedings, Vol. 38 (03 2013)."},{"key":"e_1_3_2_1_18_1","unstructured":"Tianyu Gu Brendan Dolan-Gavitt and Siddharth Garg. 2017. BadNets: Identifying Vulnerabilities in the Machine Learning Model Supply Chain. (2017)."},{"key":"e_1_3_2_1_19_1","doi-asserted-by":"publisher","DOI":"10.1145\/3243734.3243792"},{"key":"e_1_3_2_1_20_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.90"},{"key":"e_1_3_2_1_21_1","volume-title":"Towards Security Threats of Deep Learning Systems: A Survey","author":"He Yingzhe","year":"2020","unstructured":"Yingzhe He, Guozhu Meng, Kai Chen, Xingbo Hu, and Jinwen He. 2020. Towards Security Threats of Deep Learning Systems: A Survey. IEEE Transactions on Software Engineering (2020)."},{"key":"e_1_3_2_1_22_1","volume-title":"Using Self-Supervised Learning Can Improve Model Robustness and Uncertainty. Advances in Neural Information Processing Systems (NeurIPS)","author":"Hendrycks Dan","year":"2019","unstructured":"Dan Hendrycks, Mantas Mazeika, Saurav Kadavath, and Dawn Song. 2019. Using Self-Supervised Learning Can Improve Model Robustness and Uncertainty. Advances in Neural Information Processing Systems (NeurIPS) (2019)."},{"key":"e_1_3_2_1_23_1","unstructured":"Sara Hooker Dumitru Erhan Pieter-Jan Kindermans and Been Kim. 2019. A Benchmark for Interpretability Methods in Deep Neural Networks. In Advances in Neural Information Processing Systems."},{"key":"e_1_3_2_1_24_1","unstructured":"Andrew G. Howard Menglong Zhu Bo Chen Dmitry Kalenichenko Weijun Wang Tobias Weyand Marco Andreetto and Hartwig Adam. 2017. MobileNets: Efficient Convolutional Neural Networks for Mobile Vision Applications. (2017)."},{"key":"e_1_3_2_1_25_1","volume-title":"10th International Conference on Learning Representations, ICLR","author":"Hsieh Cheng-Yu","year":"2021","unstructured":"Cheng-Yu Hsieh, Chih-Kuan Yeh, Xuanqing Liu, Pradeep Ravikumar, Seungyeon Kim, Sanjiv Kumar, and Cho-Jui Hsieh. 2021. Evaluations and Methods for Explanation through Robustness Analysis. In 10th International Conference on Learning Representations, ICLR 2021."},{"key":"e_1_3_2_1_26_1","doi-asserted-by":"publisher","DOI":"10.1007\/s10115-021-01605-0"},{"volume-title":"Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition.","author":"Huang Gao","key":"e_1_3_2_1_27_1","unstructured":"Gao Huang, Zhuang Liu, Laurens van der Maaten, and Kilian Q Weinberger. 2017. Densely Connected Convolutional Networks. In Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition."},{"key":"e_1_3_2_1_28_1","unstructured":"Andrew Ilyas Shibani Santurkar Dimitris Tsipras Logan Engstrom Brandon Tran and Aleksander Madry. 2019. Adversarial Examples Are Not Bugs They Are Features. In Advances in Neural Information Processing Systems."},{"key":"e_1_3_2_1_29_1","unstructured":"Jeya Vikranth Jeyakumar Joseph Noor Yu-Hsi Cheng Luis Garcia and Mani Srivastava. 2020. How Can I Explain This to You? An Empirical Study of Deep Neural Network Explanation Methods. In Advances in Neural Information Processing Systems."},{"key":"e_1_3_2_1_30_1","volume-title":"Captum: A unified and generic model interpretability library for PyTorch. arxiv","author":"Kokhlikyan Narine","year":"2020","unstructured":"Narine Kokhlikyan, Vivek Miglani, Miguel Martin, Edward Wang, Bilal Alsallakh, Jonathan Reynolds, Alexander Melnikov, Natalia Kliushkina, Carlos Araya, Siqi Yan, and Orion Reblitz-Richardson. 2020. Captum: A unified and generic model interpretability library for PyTorch. arxiv: 2009.07896"},{"key":"e_1_3_2_1_31_1","unstructured":"Alex Krizhevsky. 2012. Learning Multiple Layers of Features from Tiny Images. University of Toronto (05 2012)."},{"key":"e_1_3_2_1_32_1","doi-asserted-by":"publisher","DOI":"10.5555\/3327546.3327680"},{"key":"e_1_3_2_1_33_1","doi-asserted-by":"publisher","DOI":"10.1145\/2939672.2939874"},{"key":"e_1_3_2_1_34_1","unstructured":"Ya Le and Xuan Yang. 2015. Tiny ImageNet Visual Recognition Challenge."},{"key":"e_1_3_2_1_35_1","volume-title":"Proc. IEEE","author":"Lecun Y.","year":"1998","unstructured":"Y. Lecun, L. Bottou, Y. Bengio, and P. Haffner. 1998. Gradient-based learning applied to document recognition. Proc. IEEE (1998)."},{"key":"e_1_3_2_1_36_1","unstructured":"Yiming Li Yanjie Li Yalei Lv Yong Jiang and Shu-Tao Xia. 2021a. Hidden Backdoor Attack against Semantic Segmentation Models. (2021). [arXiv]2103.04038"},{"volume-title":"Vulnerability Detection with Fine-Grained Interpretations. In ACM Joint Meeting on European Software Engineering Conference and Symposium on the Foundations of Software Engineering.","author":"Li Yi","key":"e_1_3_2_1_37_1","unstructured":"Yi Li, Shaohua Wang, and Tien N. Nguyen. 2021b. Vulnerability Detection with Fine-Grained Interpretations. In ACM Joint Meeting on European Software Engineering Conference and Symposium on the Foundations of Software Engineering."},{"key":"e_1_3_2_1_38_1","volume-title":"VulDeePecker: A Deep Learning-Based System for Vulnerability Detection. In 25th Annual Network and Distributed System Security Symposium, NDSS.","author":"Li Zhen","year":"2018","unstructured":"Zhen Li, Deqing Zou, Shouhuai Xu, Xinyu Ou, Hai Jin, Sujuan Wang, Zhijun Deng, and Yuyi Zhong. 2018. VulDeePecker: A Deep Learning-Based System for Vulnerability Detection. In 25th Annual Network and Distributed System Security Symposium, NDSS."},{"key":"e_1_3_2_1_39_1","unstructured":"Tsung-Yi Lin Michael Maire Serge J. Belongie Lubomir D. Bourdev Ross B. Girshick James Hays Pietro Perona Deva Ramanan Piotr Doll\u00e1r and C. Lawrence Zitnick. 2014. Microsoft COCO: Common Objects in Context. (2014)."},{"key":"e_1_3_2_1_40_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2015.7298965"},{"volume-title":"Proceedings of the 31st International Conference on Neural Information Processing Systems (NIPS'17)","author":"Scott","key":"e_1_3_2_1_41_1","unstructured":"Scott M. Lundberg and Su-In Lee. 2017. A Unified Approach to Interpreting Model Predictions. In Proceedings of the 31st International Conference on Neural Information Processing Systems (NIPS'17)."},{"volume-title":"Learning Word Vectors for Sentiment Analysis","author":"Maas Andrew L.","key":"e_1_3_2_1_42_1","unstructured":"Andrew L. Maas, Raymond E. Daly, Peter T. Pham, Dan Huang, Andrew Y. Ng, and Christopher Potts. 2011. Learning Word Vectors for Sentiment Analysis. In Association for Computational Linguistics: Human Language Technologies."},{"key":"e_1_3_2_1_43_1","doi-asserted-by":"publisher","DOI":"10.1145\/3029806.3029823"},{"key":"e_1_3_2_1_44_1","volume-title":"International Conference on Learning Representations.","author":"Nagarajan Vaishnavh","year":"2021","unstructured":"Vaishnavh Nagarajan, Anders Andreassen, and Behnam Neyshabur. 2021. Understanding the failure modes of out-of-distribution generalization. In International Conference on Learning Representations."},{"key":"e_1_3_2_1_45_1","volume-title":"How do Humans Understand Explanations from Machine Learning Systems? An Evaluation of the Human-Interpretability of Explanation. CoRR","author":"Narayanan Menaka","year":"2018","unstructured":"Menaka Narayanan, Emily Chen, Jeffrey He, Been Kim, Sam Gershman, and Finale Doshi-Velez. 2018. How do Humans Understand Explanations from Machine Learning Systems? An Evaluation of the Human-Interpretability of Explanation. CoRR (2018)."},{"key":"e_1_3_2_1_46_1","unstructured":"Jie Ren Die Zhang Yisen Wang Lu Chen Zhanpeng Zhou Yiting Chen Xu Cheng Xin Wang Meng Zhou Jie Shi and Quanshi Zhang. 2021. Towards a Unified Game-Theoretic View of Adversarial Perturbations and Robustness. In Advances in Neural Information Processing Systems."},{"key":"e_1_3_2_1_47_1","doi-asserted-by":"publisher","DOI":"10.1145\/2939672.2939778"},{"key":"e_1_3_2_1_48_1","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v32i1.11491"},{"key":"e_1_3_2_1_49_1","doi-asserted-by":"publisher","DOI":"10.1109\/MALWARE.2015.7413680"},{"key":"e_1_3_2_1_50_1","doi-asserted-by":"publisher","unstructured":"M. Schuster and K.K. Paliwal. 1997. Bidirectional recurrent neural networks. IEEE Transactions on Signal Processing (1997). https:\/\/doi.org\/10.1109\/78.650093","DOI":"10.1109\/78.650093"},{"key":"e_1_3_2_1_51_1","volume-title":"Explanation-Guided Backdoor Poisoning Attacks Against Malware Classifiers. In 30th USENIX Security Symposium. USENIX Association, 1487--1504","author":"Severi Giorgio","year":"2021","unstructured":"Giorgio Severi, Jim Meyer, Scott Coull, and Alina Oprea. 2021. Explanation-Guided Backdoor Poisoning Attacks Against Malware Classifiers. In 30th USENIX Security Symposium. USENIX Association, 1487--1504."},{"key":"e_1_3_2_1_52_1","volume-title":"Proceedings of the 34th International Conference on Machine Learning -","volume":"70","author":"Shrikumar Avanti","year":"2017","unstructured":"Avanti Shrikumar, Peyton Greenside, and Anshul Kundaje. 2017. Learning Important Features through Propagating Activation Differences. In Proceedings of the 34th International Conference on Machine Learning - Volume 70."},{"key":"e_1_3_2_1_53_1","volume-title":"Deep Inside Convolutional Networks: Visualising Image Classification Models and Saliency Maps. In 2nd International Conference on Learning Representations, ICLR.","author":"Simonyan Karen","year":"2014","unstructured":"Karen Simonyan, Andrea Vedaldi, and Andrew Zisserman. 2014. Deep Inside Convolutional Networks: Visualising Image Classification Models and Saliency Maps. In 2nd International Conference on Learning Representations, ICLR."},{"key":"e_1_3_2_1_54_1","volume-title":"SmoothGrad: removing noise by adding noise. CoRR","author":"Smilkov Daniel","year":"2017","unstructured":"Daniel Smilkov, Nikhil Thorat, Been Kim, Fernanda B. Vi\u00e9gas, and Martin Wattenberg. 2017. SmoothGrad: removing noise by adding noise. CoRR (2017)."},{"key":"e_1_3_2_1_55_1","volume-title":"Proceedings of the 34th International Conference on Machine Learning. http:\/\/proceedings.mlr.press\/v70\/sundararajan17a.html","author":"Sundararajan Mukund","year":"2017","unstructured":"Mukund Sundararajan, Ankur Taly, and Qiqi Yan. 2017. Axiomatic Attribution for Deep Networks. In Proceedings of the 34th International Conference on Machine Learning. http:\/\/proceedings.mlr.press\/v70\/sundararajan17a.html"},{"volume-title":"Proceedings of the 27th International Conference on Neural Information Processing Systems","author":"Sutskever Ilya","key":"e_1_3_2_1_56_1","unstructured":"Ilya Sutskever, Oriol Vinyals, and Quoc V. Le. 2014. Sequence to Sequence Learning with Neural Networks. In Proceedings of the 27th International Conference on Neural Information Processing Systems (Montreal, Canada). 3104--3112."},{"key":"e_1_3_2_1_57_1","volume-title":"International Conference on Neural Information Processing Systems.","author":"Vaswani Ashish","year":"2017","unstructured":"Ashish Vaswani, Noam Shazeer, Niki Parmar, Jakob Uszkoreit, Llion Jones, Aidan N. Gomez, \u0141ukasz Kaiser, and Illia Polosukhin. 2017. Attention is All You Need. In International Conference on Neural Information Processing Systems."},{"volume-title":"Neural Cleanse: Identifying and Mitigating Backdoor Attacks in Neural Networks. In IEEE Symposium on Security and Privacy.","author":"Wang Bolun","key":"e_1_3_2_1_58_1","unstructured":"Bolun Wang, Yuanshun Yao, Shawn Shan, Huiying Li, Bimal Viswanath, Haitao Zheng, and Ben Y. Zhao. 2019. Neural Cleanse: Identifying and Mitigating Backdoor Attacks in Neural Networks. In IEEE Symposium on Security and Privacy."},{"key":"e_1_3_2_1_59_1","volume-title":"Interpreting Attributions and Interactions of Adversarial Attacks. In IEEE\/CVF International Conference on Computer Vision, ICCV.","author":"Wang Xin","year":"2021","unstructured":"Xin Wang, Shuyun Lin, Hao Zhang, Yufei Zhu, and Quanshi Zhang. 2021. Interpreting Attributions and Interactions of Adversarial Attacks. In IEEE\/CVF International Conference on Computer Vision, ICCV."},{"key":"e_1_3_2_1_60_1","doi-asserted-by":"publisher","DOI":"10.1109\/TIP.2003.819861"},{"volume-title":"Evaluating Explanation Methods for Deep Learning in Security. In IEEE European Symposium on Security and Privacy (EuroS&P).","author":"Warnecke A.","key":"e_1_3_2_1_61_1","unstructured":"A. Warnecke, D. Arp, C. Wressnegger, and K. Rieck. 2020. Evaluating Explanation Methods for Deep Learning in Security. In IEEE European Symposium on Security and Privacy (EuroS&P)."},{"key":"e_1_3_2_1_62_1","volume-title":"International Conference on Learning Representations.","author":"Xiao Kai Yuanqing","year":"2021","unstructured":"Kai Yuanqing Xiao, Logan Engstrom, Andrew Ilyas, and Aleksander Madry. 2021. Noise or Signal: The Role of Image Backgrounds in Object Recognition. In International Conference on Learning Representations."},{"key":"e_1_3_2_1_63_1","volume-title":"Benchmarking Attribution Methods with Relative Feature Importance. CoRR","author":"Yang Mengjiao","year":"2019","unstructured":"Mengjiao Yang and Been Kim. 2019. Benchmarking Attribution Methods with Relative Feature Importance. CoRR (2019)."},{"key":"e_1_3_2_1_64_1","volume-title":"Zeiler and Rob Fergus","author":"Matthew","year":"2014","unstructured":"Matthew D. Zeiler and Rob Fergus. 2014. Visualizing and understanding convolutional networks. In In Computer Vision??CCV 2014."},{"key":"e_1_3_2_1_65_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.neucom.2019.04.093"},{"key":"e_1_3_2_1_66_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR46437.2021.00533"},{"key":"e_1_3_2_1_67_1","volume-title":"29th USENIX Security Symposium (USENIX Security 20)","author":"Zhang Xinyang","year":"2020","unstructured":"Xinyang Zhang, Ningfei Wang, Hua Shen, Shouling Ji, Xiapu Luo, and Ting Wang. 2020. Interpretable Deep Learning under Fire. In 29th USENIX Security Symposium (USENIX Security 20). USENIX Association, 1659--1676."},{"key":"e_1_3_2_1_68_1","volume-title":"Places: A 10 million Image Database for Scene Recognition","author":"Zhou Bolei","year":"2017","unstructured":"Bolei Zhou, Agata Lapedriza, Aditya Khosla, Aude Oliva, and Antonio Torralba. 2017. Places: A 10 million Image Database for Scene Recognition. IEEE Transactions on Pattern Analysis and Machine Intelligence (2017)."},{"key":"e_1_3_2_1_69_1","doi-asserted-by":"publisher","DOI":"10.1145\/3501256"},{"key":"e_1_3_2_1_70_1","doi-asserted-by":"publisher","DOI":"10.1145\/3429444"}],"event":{"name":"CCS '23: ACM SIGSAC Conference on Computer and Communications Security","sponsor":["SIGSAC ACM Special Interest Group on Security, Audit, and Control"],"location":"Copenhagen Denmark","acronym":"CCS '23"},"container-title":["Proceedings of the 2023 ACM SIGSAC Conference on Computer and Communications Security"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3576915.3616605","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3576915.3616605","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,8,21]],"date-time":"2025-08-21T01:45:20Z","timestamp":1755740720000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3576915.3616605"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2023,11,15]]},"references-count":70,"alternative-id":["10.1145\/3576915.3616605","10.1145\/3576915"],"URL":"https:\/\/doi.org\/10.1145\/3576915.3616605","relation":{},"subject":[],"published":{"date-parts":[[2023,11,15]]},"assertion":[{"value":"2023-11-21","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}