{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,8,18]],"date-time":"2026-08-18T01:42:38Z","timestamp":1787017358929,"version":"build-2736575974"},"publisher-location":"New York, NY, USA","reference-count":94,"publisher":"ACM","license":[{"start":{"date-parts":[[2024,10,21]],"date-time":"2024-10-21T00:00:00Z","timestamp":1729468800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"funder":[{"DOI":"10.13039\/https:\/\/doi.org\/10.13039\/100000001","name":"National Science Foundation","doi-asserted-by":"publisher","award":["019511, 2348452, and 231561"],"award-info":[{"award-number":["019511, 2348452, and 231561"]}],"id":[{"id":"10.13039\/https:\/\/doi.org\/10.13039\/100000001","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2024,10,21]]},"DOI":"10.1145\/3627673.3679750","type":"proceedings-article","created":{"date-parts":[[2024,10,20]],"date-time":"2024-10-20T15:34:21Z","timestamp":1729438461000},"page":"1389-1399","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":3,"title":["Towards Robust Vision Transformer via Masked Adaptive Ensemble"],"prefix":"10.1145","author":[{"ORCID":"https:\/\/orcid.org\/0000-0003-0457-2527","authenticated-orcid":false,"given":"Fudong","family":"Lin","sequence":"first","affiliation":[{"name":"University of Delaware, Newark, DE, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-3810-7877","authenticated-orcid":false,"given":"Jiadong","family":"Lou","sequence":"additional","affiliation":[{"name":"University of Delaware, Newark, DE, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-3775-3033","authenticated-orcid":false,"given":"Xu","family":"Yuan","sequence":"additional","affiliation":[{"name":"University of Delaware, Newark, DE, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-8357-6632","authenticated-orcid":false,"given":"Nian-Feng","family":"Tzeng","sequence":"additional","affiliation":[{"name":"University of Louisiana at Lafayette, Lafayette, LA, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"320","published-online":{"date-parts":[[2024,10,21]]},"reference":[{"key":"e_1_3_2_1_1_1","unstructured":"Maksym Andriushchenko and Nicolas Flammarion. 2020. Understanding and Improving Fast Adversarial Training. In NeurIPS."},{"key":"e_1_3_2_1_2_1","doi-asserted-by":"crossref","unstructured":"Anurag Arnab Mostafa Dehghani Georg Heigold Chen Sun Mario Lucic and Cordelia Schmid. 2021. ViViT: A Video Vision Transformer. In ICCV.","DOI":"10.1109\/ICCV48922.2021.00676"},{"key":"e_1_3_2_1_3_1","unstructured":"Hangbo Bao Li Dong and Furu Wei. 2022. BEiT: BERT Pre-Training of Image Transformers. In ICLR."},{"key":"e_1_3_2_1_4_1","unstructured":"Hangbo Bao Li Dong Furu Wei Wenhui Wang Nan Yang Xiaodong Liu Yu Wang Jianfeng Gao Songhao Piao Ming Zhou and Hsiao-Wuen Hon. 2020. UniLMv2: Pseudo-Masked Language Models for Unified Language Model Pre-Training. In ICML."},{"key":"e_1_3_2_1_5_1","volume-title":"Towards Evaluating the Robustness of Neural Networks. In Symposium on Security and Privacy (SP).","author":"Carlini Nicholas","unstructured":"Nicholas Carlini and David A. Wagner. 2017. Towards Evaluating the Robustness of Neural Networks. In Symposium on Security and Privacy (SP)."},{"key":"e_1_3_2_1_6_1","volume-title":"Emerging Properties in Self-Supervised Vision Transformers. In International Conference on Computer Vision (ICCV).","author":"Caron Mathilde","year":"2021","unstructured":"Mathilde Caron, Hugo Touvron, Ishan Misra, Herv\u00e9 J\u00e9gou, Julien Mairal, Piotr Bojanowski, and Armand Joulin. 2021. Emerging Properties in Self-Supervised Vision Transformers. In International Conference on Computer Vision (ICCV)."},{"key":"e_1_3_2_1_7_1","unstructured":"Lin Chen Yifei Min Mingrui Zhang and Amin Karbasi. 2020. More data can expand the generalization gap between adversarially robust and standard models. In ICML."},{"key":"e_1_3_2_1_8_1","volume-title":"Hinton","author":"Chen Ting","year":"2020","unstructured":"Ting Chen, Simon Kornblith, Mohammad Norouzi, and Geoffrey E. Hinton. 2020. A Simple Framework for Contrastive Learning of Visual Representations. In ICML."},{"key":"e_1_3_2_1_9_1","unstructured":"Francesco Croce and Matthias Hein. 2020. Reliable evaluation of adversarial robustness with an ensemble of diverse parameter-free attacks. In ICML."},{"key":"e_1_3_2_1_10_1","volume-title":"Imagenet: A large-scale hierarchical image database. In CVPR.","author":"Deng Jia","year":"2009","unstructured":"Jia Deng, Wei Dong, Richard Socher, Li-Jia Li, Kai Li, and Li Fei-Fei. 2009. Imagenet: A large-scale hierarchical image database. In CVPR."},{"key":"e_1_3_2_1_11_1","unstructured":"Xiaoyi Dong Dongdong Chen Jianmin Bao Chuan Qin Lu Yuan Weiming Zhang Nenghai Yu and Dong Chen. 2020. GreedyFool: Distortion-Aware Sparse Adversarial Attack. In NeurIPS."},{"key":"e_1_3_2_1_12_1","unstructured":"Alexey Dosovitskiy Lucas Beyer Alexander Kolesnikov Dirk Weissenborn Xiaohua Zhai Thomas Unterthiner Mostafa Dehghani Matthias Minderer Georg Heigold Sylvain Gelly Jakob Uszkoreit and Neil Houlsby. 2021. An Image is Worth 16x16 Words: Transformers for Image Recognition at Scale. In ICLR."},{"key":"e_1_3_2_1_13_1","volume-title":"Multiscale Vision Transformers. In International Conference on Computer Vision (ICCV).","author":"Fan Haoqi","year":"2021","unstructured":"Haoqi Fan, Bo Xiong, Karttikeya Mangalam, Yanghao Li, Zhicheng Yan, Jitendra Malik, and Christoph Feichtenhofer. 2021. Multiscale Vision Transformers. In International Conference on Computer Vision (ICCV)."},{"key":"e_1_3_2_1_14_1","volume-title":"Hinton","author":"Frosst Nicholas","year":"2019","unstructured":"Nicholas Frosst, Nicolas Papernot, and Geoffrey E. Hinton. 2019. Analyzing and Improving Representations with the Soft Nearest Neighbor Loss. In ICML."},{"key":"e_1_3_2_1_15_1","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2023.3297056"},{"key":"e_1_3_2_1_16_1","doi-asserted-by":"crossref","unstructured":"Hao Fu Alireza Sarmadi Prashanth Krishnamurthy Siddharth Garg and Farshad Khorrami. 2023. Mitigating Backdoor Attacks on Deep Neural Networks. In Embedded Machine Learning for Cyber-Physical IoT and Edge Computing: Use Cases and Emerging Challenges. 395--431.","DOI":"10.1007\/978-3-031-40677-5_16"},{"key":"e_1_3_2_1_17_1","volume-title":"Prashanth Krishnamurthy, Siddharth Garg, and Farshad Khorrami.","author":"Fu Hao","year":"2022","unstructured":"Hao Fu, Akshaj Kumar Veldanda, Prashanth Krishnamurthy, Siddharth Garg, and Farshad Khorrami. 2022. A feature-based on-line detector to remove adversarial-backdoors by iterative demarcation. IEEE Access (2022), 5545--5558."},{"key":"e_1_3_2_1_18_1","unstructured":"Ian J. Goodfellow Jonathon Shlens and Christian Szegedy. 2015. Explaining and Harnessing Adversarial Examples. In ICLR."},{"key":"e_1_3_2_1_19_1","volume-title":"large minibatch sgd: Training imagenet in 1 hour. arXiv preprint arXiv:1706.02677","author":"Goyal Priya","year":"2017","unstructured":"Priya Goyal, Piotr Doll\u00e1r, Ross Girshick, Pieter Noordhuis, Lukasz Wesolowski, Aapo Kyrola, Andrew Tulloch, Yangqing Jia, and Kaiming He. 2017. Accurate, large minibatch sgd: Training imagenet in 1 hour. arXiv preprint arXiv:1706.02677 (2017)."},{"key":"e_1_3_2_1_20_1","unstructured":"Kaiming He Xinlei Chen Saining Xie Yanghao Li Piotr Doll\u00e1r and Ross Girshick. 2022. Masked autoencoders are scalable vision learners. In CVPR."},{"key":"e_1_3_2_1_21_1","unstructured":"Kaiming He Xiangyu Zhang Shaoqing Ren and Jian Sun. 2016. Deep Residual Learning for Image Recognition. In CVPR."},{"key":"e_1_3_2_1_22_1","doi-asserted-by":"publisher","DOI":"10.1109\/IROS55552.2023.10342263"},{"key":"e_1_3_2_1_23_1","volume-title":"Robust multi-agent reinforcement learning with state uncertainty. arXiv preprint arXiv:2307.16212","author":"He Sihong","year":"2023","unstructured":"Sihong He, Songyang Han, Sanbao Su, Shuo Han, Shaofeng Zou, and Fei Miao. 2023. Robust multi-agent reinforcement learning with state uncertainty. arXiv preprint arXiv:2307.16212 (2023)."},{"key":"e_1_3_2_1_24_1","doi-asserted-by":"publisher","DOI":"10.1109\/IROS55552.2023.10342342"},{"key":"e_1_3_2_1_25_1","doi-asserted-by":"publisher","DOI":"10.24963\/ijcai.2021\/350"},{"key":"e_1_3_2_1_26_1","doi-asserted-by":"crossref","unstructured":"Dan Hendrycks Kevin Zhao Steven Basart Jacob Steinhardt and Dawn Song. 2021. Natural Adversarial Examples. In CVPR.","DOI":"10.1109\/CVPR46437.2021.01501"},{"key":"e_1_3_2_1_27_1","volume-title":"Rethinking Spatial Dimensions of Vision Transformers. In International Conference on Computer Vision (ICCV).","author":"Heo Byeongho","year":"2021","unstructured":"Byeongho Heo, Sangdoo Yun, Dongyoon Han, Sanghyuk Chun, Junsuk Choe, and Seong Joon Oh. 2021. Rethinking Spatial Dimensions of Vision Transformers. In International Conference on Computer Vision (ICCV)."},{"key":"e_1_3_2_1_28_1","doi-asserted-by":"publisher","DOI":"10.1145\/3639592.3639600"},{"key":"e_1_3_2_1_29_1","unstructured":"Xiaojun Jia Yong Zhang Baoyuan Wu Ke Ma Jue Wang and Xiaochun Cao. 2022. LAS-AT: Adversarial Training with Learnable Attack Strategy. In CVPR."},{"key":"e_1_3_2_1_30_1","doi-asserted-by":"crossref","unstructured":"Hoki Kim Woojin Lee and Jaewook Lee. 2021. Understanding Catastrophic Overfitting in Single-step Adversarial Training. In AAAI.","DOI":"10.1609\/aaai.v35i9.16989"},{"key":"e_1_3_2_1_31_1","unstructured":"Alex Krizhevsky Geoffrey Hinton et al. 2009. Learning multiple layers of features from tiny images. (2009)."},{"key":"e_1_3_2_1_32_1","volume-title":"Hinton","author":"Krizhevsky Alex","year":"2012","unstructured":"Alex Krizhevsky, Ilya Sutskever, and Geoffrey E. Hinton. 2012. ImageNet Classification with Deep Convolutional Neural Networks. In Neural Information Processing Systems (NeurIPS)."},{"key":"e_1_3_2_1_33_1","doi-asserted-by":"crossref","unstructured":"Alexey Kurakin Ian J. Goodfellow and Samy Bengio. 2017. Adversarial examples in the physical world. In ICLR.","DOI":"10.1201\/9781351251389-8"},{"key":"e_1_3_2_1_34_1","unstructured":"Kimin Lee Kibok Lee Honglak Lee and Jinwoo Shin. 2018. A Simple Unified Framework for Detecting Out-of-Distribution Samples and Adversarial Attacks. In NeurIPS."},{"key":"e_1_3_2_1_35_1","doi-asserted-by":"crossref","unstructured":"Tao Li Yingwen Wu Sizhe Chen Kun Fang and Xiaolin Huang. 2022. Subspace Adversarial Training. In CVPR.","DOI":"10.1109\/CVPR52688.2022.01305"},{"key":"e_1_3_2_1_36_1","unstructured":"Yanghao Li Chao-Yuan Wu Haoqi Fan Karttikeya Mangalam Bo Xiong Jitendra Malik and Christoph Feichtenhofer. 2022. MViTv2: Improved Multiscale Vision Transformers for Classification and Detection. In Computer Vision and Pattern Recognition (CVPR)."},{"key":"e_1_3_2_1_37_1","volume-title":"Ensemble-based Interactive Imitation Learning. arXiv preprint arXiv:2312.16860","author":"Li Yichen","year":"2023","unstructured":"Yichen Li and Chicheng Zhang. 2023. Ensemble-based Interactive Imitation Learning. arXiv preprint arXiv:2312.16860 (2023)."},{"key":"e_1_3_2_1_38_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV51070.2023.00531"},{"key":"e_1_3_2_1_39_1","volume-title":"An Open and Large-Scale Dataset for Multi-Modal Climate Change-aware Crop Yield Predictions. arXiv preprint arXiv:2406.06081","author":"Lin Fudong","year":"2024","unstructured":"Fudong Lin, Kaleb Guillot, Summer Crawford, Yihe Zhang, Xu Yuan, and Nian-Feng Tzeng. 2024. An Open and Large-Scale Dataset for Multi-Modal Climate Change-aware Crop Yield Predictions. arXiv preprint arXiv:2406.06081 (2024)."},{"key":"e_1_3_2_1_40_1","doi-asserted-by":"publisher","DOI":"10.1145\/3511808.3557254"},{"key":"e_1_3_2_1_41_1","volume-title":"Comprehensive Transformer-Based Model Architecture for Real-World Storm Prediction. In Joint European Conference on Machine Learning and Knowledge Discovery in Databases (ECML-PKDD). 54--71","author":"Lin Fudong","year":"2023","unstructured":"Fudong Lin, Xu Yuan, Yihe Zhang, Purushottam Sigdel, Li Chen, Lu Peng, and Nian-Feng Tzeng. 2023. Comprehensive Transformer-Based Model Architecture for Real-World Storm Prediction. In Joint European Conference on Machine Learning and Knowledge Discovery in Databases (ECML-PKDD). 54--71."},{"key":"e_1_3_2_1_42_1","volume-title":"Slowlidar: Increasing the latency of lidar-based detection using adversarial examples. In CVPR. 5146--5155.","author":"Liu Han","year":"2023","unstructured":"Han Liu, Yuhao Wu, Zhiyuan Yu, Yevgeniy Vorobeychik, and Ning Zhang. 2023. Slowlidar: Increasing the latency of lidar-based detection using adversarial examples. In CVPR. 5146--5155."},{"key":"e_1_3_2_1_43_1","volume-title":"RIATIG: Reliable and Imperceptible Adversarial Text-to-Image Generation with Natural Prompts. In CVPR. 20585--20594.","author":"Liu Han","year":"2023","unstructured":"Han Liu, Yuhao Wu, Shixuan Zhai, Bo Yuan, and Ning Zhang. 2023. RIATIG: Reliable and Imperceptible Adversarial Text-to-Image Generation with Natural Prompts. In CVPR. 20585--20594."},{"key":"e_1_3_2_1_44_1","doi-asserted-by":"publisher","DOI":"10.1145\/3548606.3560671"},{"key":"e_1_3_2_1_45_1","doi-asserted-by":"crossref","unstructured":"Ye Liu Yaya Cheng Lianli Gao Xianglong Liu Qilong Zhang and Jingkuan Song. 2022. Practical Evaluation of Adversarial Robustness via Adaptive Auto Attack. In CVPR.","DOI":"10.1109\/CVPR52688.2022.01468"},{"key":"e_1_3_2_1_46_1","volume-title":"Swin Transformer: Hierarchical Vision Transformer using Shifted Windows. In ICCV.","author":"Liu Ze","year":"2021","unstructured":"Ze Liu, Yutong Lin, Yue Cao, Han Hu, Yixuan Wei, Zheng Zhang, Stephen Lin, and Baining Guo. 2021. Swin Transformer: Hierarchical Vision Transformer using Shifted Windows. In ICCV."},{"key":"e_1_3_2_1_47_1","volume-title":"SGDR: Stochastic Gradient Descent with Warm Restarts. In ICLR.","author":"Loshchilov Ilya","year":"2017","unstructured":"Ilya Loshchilov and Frank Hutter. 2017. SGDR: Stochastic Gradient Descent with Warm Restarts. In ICLR."},{"key":"e_1_3_2_1_48_1","unstructured":"Ilya Loshchilov and Frank Hutter. 2019. Decoupled Weight Decay Regularization. In ICLR."},{"key":"e_1_3_2_1_49_1","volume-title":"American Medical Informatics Association Annual Symposium (AMIA).","author":"Lyu Weimin","year":"2022","unstructured":"Weimin Lyu, Xinyu Dong, Rachel Wong, Songzhu Zheng, Kayley Abell-Hart, Fushen Wang, and Chao Chen. 2022. A Multimodal Transformer: Fusing Clinical Notes with Structured EHR Data for Interpretable In-Hospital Mortality Prediction. In American Medical Informatics Association Annual Symposium (AMIA)."},{"key":"e_1_3_2_1_50_1","doi-asserted-by":"crossref","unstructured":"Weimin Lyu Songzhu Zheng Tengfei Ma and Chao Chen. 2022. A Study of the Attention Abnormality in Trojaned BERTs. In NAACL. 4727--4741.","DOI":"10.18653\/v1\/2022.naacl-main.348"},{"key":"e_1_3_2_1_51_1","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2019.23415"},{"key":"e_1_3_2_1_52_1","unstructured":"Aleksander Madry Aleksandar Makelov Ludwig Schmidt Dimitris Tsipras and Adrian Vladu. 2018. Towards Deep Learning Models Resistant to Adversarial Attacks. In ICLR."},{"key":"e_1_3_2_1_53_1","unstructured":"Yifei Min Lin Chen and Amin Karbasi. 2021. The curious case of adversarially robust models: More data can help double descend or hurt generalization. In Uncertainty in Artificial Intelligence."},{"key":"e_1_3_2_1_54_1","doi-asserted-by":"crossref","unstructured":"Seyed-Mohsen Moosavi-Dezfooli Alhussein Fawzi and Pascal Frossard. 2016. Deepfool: a simple and accurate method to fool deep neural networks. In CVPR.","DOI":"10.1109\/CVPR.2016.282"},{"key":"e_1_3_2_1_55_1","volume-title":"The Limitations of Deep Learning in Adversarial Settings. In European Symposium on Security and Privacy (EuroS&P).","author":"Papernot Nicolas","year":"2016","unstructured":"Nicolas Papernot, Patrick D. McDaniel, Somesh Jha, Matt Fredrikson, Z. Berkay Celik, and Ananthram Swami. 2016. The Limitations of Deep Learning in Adversarial Settings. In European Symposium on Security and Privacy (EuroS&P)."},{"key":"e_1_3_2_1_56_1","unstructured":"Maura Pintor Fabio Roli Wieland Brendel and Battista Biggio. 2021. Fast Minimum-norm Adversarial Attacks through Adaptive Norm Constraints. In NeurIPS."},{"key":"e_1_3_2_1_57_1","volume-title":"Exploring the limits of transfer learning with a unified text-to-text transformer. The Journal of Machine Learning Research","author":"Raffel Colin","year":"2020","unstructured":"Colin Raffel, Noam Shazeer, Adam Roberts, Katherine Lee, Sharan Narang, Michael Matena, Yanqi Zhou, Wei Li, and Peter J Liu. 2020. Exploring the limits of transfer learning with a unified text-to-text transformer. The Journal of Machine Learning Research (2020)."},{"key":"e_1_3_2_1_58_1","doi-asserted-by":"crossref","unstructured":"Jayaram Raghuram Varun Chandrasekaran Somesh Jha and Suman Banerjee. 2021. A General Framework For Detecting Anomalous Inputs to DNN Classifiers. In ICML.","DOI":"10.2478\/popets-2021-0032"},{"key":"e_1_3_2_1_59_1","doi-asserted-by":"crossref","unstructured":"Robin Rombach Andreas Blattmann Dominik Lorenz Patrick Esser and Bj\u00f6rn Ommer. 2022. High-Resolution Image Synthesis with Latent Diffusion Models. In CVPR.","DOI":"10.1109\/CVPR52688.2022.01042"},{"key":"e_1_3_2_1_60_1","unstructured":"Kevin Roth Yannic Kilcher and Thomas Hofmann. 2019. The Odds are Odd: A Statistical Test for Detecting Adversarial Examples. In ICML."},{"key":"e_1_3_2_1_61_1","doi-asserted-by":"crossref","unstructured":"Kangrui Ruan and Xuan Di. 2022. Learning human driving behaviors with sequential causal imitation learning. In AAAI. 4583--4592.","DOI":"10.1609\/aaai.v36i4.20382"},{"key":"e_1_3_2_1_62_1","doi-asserted-by":"publisher","DOI":"10.3390\/computers13060151"},{"key":"e_1_3_2_1_63_1","volume-title":"International Conference on Learning Representations (ICLR).","author":"Ruan Kangrui","year":"2023","unstructured":"Kangrui Ruan, Junzhe Zhang, Xuan Di, and Elias Bareinboim. 2023. Causal imitation learning via inverse reinforcement learning. In International Conference on Learning Representations (ICLR)."},{"key":"e_1_3_2_1_64_1","volume-title":"Hinton","author":"Salakhutdinov Ruslan","year":"2007","unstructured":"Ruslan Salakhutdinov and Geoffrey E. Hinton. 2007. Learning a Nonlinear Embedding by Preserving Class Neighbourhood Structure. In AISTATS."},{"key":"e_1_3_2_1_65_1","doi-asserted-by":"crossref","unstructured":"Ramprasaath R. Selvaraju Michael Cogswell Abhishek Das Ramakrishna Vedantam Devi Parikh and Dhruv Batra. 2017. Grad-CAM: Visual Explanations from Deep Networks via Gradient-Based Localization. In ICCV.","DOI":"10.1109\/ICCV.2017.74"},{"key":"e_1_3_2_1_66_1","unstructured":"Ali Shafahi Mahyar Najibi Amin Ghiasi Zheng Xu John P. Dickerson Christoph Studer Larry S. Davis Gavin Taylor and Tom Goldstein. 2019. Adversarial training for free!. In NeurIPS."},{"key":"e_1_3_2_1_67_1","unstructured":"Fatemeh Sheikholeslami Ali Lotfi and J. Zico Kolter. 2021. Provably robust classification of adversarial examples with detection. In ICLR."},{"key":"e_1_3_2_1_68_1","unstructured":"Karen Simonyan and Andrew Zisserman. 2015. Very Deep Convolutional Networks for Large-Scale Image Recognition. In ICLR Yoshua Bengio and Yann LeCun (Eds.)."},{"key":"e_1_3_2_1_69_1","volume-title":"Electronic and Automation Control Conference (IAEAC)","volume":"7","author":"Song Han","year":"2024","unstructured":"Han Song, Cong Liu, and Huafeng Dai. 2024. BundledSLAM: An Accurate Visual SLAM System Using Multiple Cameras. In 2024 IEEE 7th Advanced Information Technology, Electronic and Automation Control Conference (IAEAC), Vol. 7. 106--111."},{"key":"e_1_3_2_1_70_1","volume-title":"ETA-INIT: Enhancing the Translation Accuracy for Stereo Visual-Inertial SLAM Initialization. arXiv preprint arXiv:2405.15082","author":"Song Han","year":"2024","unstructured":"Han Song, Zhongche Qu, Zhi Zhang, Zihan Ye, and Cong Liu. 2024. ETA-INIT: Enhancing the Translation Accuracy for Stereo Visual-Inertial SLAM Initialization. arXiv preprint arXiv:2405.15082 (2024)."},{"key":"e_1_3_2_1_71_1","volume-title":"Striving for Simplicity: The All Convolutional Net. In ICLR Workshop.","author":"Springenberg Jost Tobias","unstructured":"Jost Tobias Springenberg, Alexey Dosovitskiy, Thomas Brox, and Martin A. Riedmiller. 2015. Striving for Simplicity: The All Convolutional Net. In ICLR Workshop."},{"key":"e_1_3_2_1_72_1","unstructured":"Zhan Tong Yibing Song Jue Wang and Limin Wang. 2022. VideoMAE: Masked Autoencoders are Data-Efficient Learners for Self-Supervised Video Pre-Training. In NeurIPS."},{"key":"e_1_3_2_1_73_1","unstructured":"Hugo Touvron Matthieu Cord Matthijs Douze Francisco Massa Alexandre Sablayrolles and Herv\u00e9 J\u00e9gou. 2021. Training data-efficient image transformers & distillation through attention. In ICML."},{"key":"e_1_3_2_1_74_1","unstructured":"Florian Tram\u00e8r. 2022. Detecting Adversarial Examples Is (Nearly) As Hard As Classifying Them. In ICML."},{"key":"e_1_3_2_1_75_1","unstructured":"Florian Tram\u00e8r Nicholas Carlini Wieland Brendel and Aleksander Madry. 2020. On Adaptive Attacks to Adversarial Example Defenses. In NeurIPS."},{"key":"e_1_3_2_1_76_1","volume-title":"McDaniel","author":"Tram\u00e8r Florian","year":"2018","unstructured":"Florian Tram\u00e8r, Alexey Kurakin, Nicolas Papernot, Ian J. Goodfellow, Dan Boneh, and Patrick D. McDaniel. 2018. Ensemble Adversarial Training: Attacks and Defenses. In ICLR."},{"key":"e_1_3_2_1_77_1","volume-title":"Visualizing Data using t-SNE. Journal of Machine Learning Research (JMLR)","author":"van der Maaten Laurens","year":"2008","unstructured":"Laurens van der Maaten and Geoffrey Hinton. 2008. Visualizing Data using t-SNE. Journal of Machine Learning Research (JMLR) (2008)."},{"key":"e_1_3_2_1_78_1","unstructured":"Ashish Vaswani Noam Shazeer Niki Parmar Jakob Uszkoreit Llion Jones Aidan N. Gomez Lukasz Kaiser and Illia Polosukhin. 2017. Attention is All you Need. In NeurIPS."},{"key":"e_1_3_2_1_79_1","unstructured":"Haotao Wang Aston Zhang Shuai Zheng Xingjian Shi Mu Li and Zhangyang Wang. 2022. Removing Batch Normalization Boosts Adversarial Training. In ICML."},{"key":"e_1_3_2_1_80_1","doi-asserted-by":"crossref","unstructured":"Wenhai Wang Enze Xie Xiang Li Deng-Ping Fan Kaitao Song Ding Liang Tong Lu Ping Luo and Ling Shao. 2021. Pyramid Vision Transformer: A Versatile Backbone for Dense Prediction without Convolutions. In ICCV.","DOI":"10.1109\/ICCV48922.2021.00061"},{"key":"e_1_3_2_1_81_1","volume-title":"PVT v2: Improved baselines with Pyramid Vision Transformer. Comput. Vis. Media","author":"Wang Wenhai","year":"2022","unstructured":"Wenhai Wang, Enze Xie, Xiang Li, Deng-Ping Fan, Kaitao Song, Ding Liang, Tong Lu, Ping Luo, and Ling Shao. 2022. PVT v2: Improved baselines with Pyramid Vision Transformer. Comput. Vis. Media (2022)."},{"key":"e_1_3_2_1_82_1","unstructured":"Eric Wong Leslie Rice and J. Zico Kolter. 2020. Fast is better than free: Revisiting adversarial training. In ICLR."},{"key":"e_1_3_2_1_83_1","doi-asserted-by":"publisher","DOI":"10.1109\/ISDFS58141.2023.10131839"},{"key":"e_1_3_2_1_84_1","volume-title":"Botshape: A Novel Social Bots Detection Approach Via Behavioral Patterns. In International Conference on Data Mining & Knowledge Management Process.","author":"Wu Jun","year":"2023","unstructured":"Jun Wu, Xuesong Ye, and Chengjie Mou. 2023. Botshape: A Novel Social Bots Detection Approach Via Behavioral Patterns. In International Conference on Data Mining & Knowledge Management Process."},{"key":"e_1_3_2_1_85_1","volume-title":"Jordan","author":"Yang Puyudi","year":"2020","unstructured":"Puyudi Yang, Jianbo Chen, Cho-Jui Hsieh, Jane-Ling Wang, and Michael I. Jordan. 2020. ML-LOO: Detecting Adversarial Examples with Feature Attribution. In AAAI."},{"key":"e_1_3_2_1_86_1","volume-title":"Vechev","author":"Yao Chengyuan","year":"2021","unstructured":"Chengyuan Yao, Pavol Bielik, Petar Tsankov, and Martin T. Vechev. 2021. Automated Discovery of Adaptive Attacks on Adversarial Defenses. In NeurIPS."},{"key":"e_1_3_2_1_87_1","volume-title":"Vechev","author":"Yao Chengyuan","year":"2021","unstructured":"Chengyuan Yao, Pavol Bielik, Petar Tsankov, and Martin T. Vechev. 2021. Automated Discovery of Adaptive Attacks on Adversarial Defenses. In NeurIPS, Marc'Aurelio Ranzato, Alina Beygelzimer, Yann N. Dauphin, Percy Liang, and Jennifer Wortman Vaughan (Eds.)."},{"key":"e_1_3_2_1_88_1","volume-title":"Rohde","author":"Yin Xuwang","year":"2020","unstructured":"Xuwang Yin, Soheil Kolouri, and Gustavo K. Rohde. 2020. GAT: Generative Adversarial Training for Adversarial Example Detection and Robust Classification. In ICLR."},{"key":"e_1_3_2_1_89_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV48922.2021.00060"},{"key":"e_1_3_2_1_90_1","volume-title":"Laurent El Ghaoui, and Michael I. Jordan","author":"Zhang Hongyang","year":"2019","unstructured":"Hongyang Zhang, Yaodong Yu, Jiantao Jiao, Eric P. Xing, Laurent El Ghaoui, and Michael I. Jordan. 2019. Theoretically Principled Trade-off between Robustness and Accuracy. In ICML."},{"key":"e_1_3_2_1_91_1","unstructured":"Mingkang Zhu Tianlong Chen and Zhangyang Wang. 2021. Sparse and Imperceptible Adversarial Attack via a Homotopy Algorithm. In ICML."},{"key":"e_1_3_2_1_92_1","doi-asserted-by":"publisher","DOI":"10.1145\/3480433.3480442"},{"key":"e_1_3_2_1_93_1","doi-asserted-by":"crossref","unstructured":"Jun Zhuang and Mohammad Al Hasan. 2022. Defending graph convolutional networks against dynamic graph perturbations via bayesian self-supervision. In AAAI. 4405--4413.","DOI":"10.1609\/aaai.v36i4.20362"},{"key":"e_1_3_2_1_94_1","doi-asserted-by":"publisher","DOI":"10.1145\/3511808.3557437"}],"event":{"name":"CIKM '24: The 33rd ACM International Conference on Information and Knowledge Management","location":"Boise ID USA","acronym":"CIKM '24","sponsor":["SIGIR ACM Special Interest Group on Information Retrieval"]},"container-title":["Proceedings of the 33rd ACM International Conference on Information and Knowledge Management"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3627673.3679750","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3627673.3679750","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,18]],"date-time":"2025-06-18T20:58:27Z","timestamp":1750280307000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3627673.3679750"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024,10,21]]},"references-count":94,"alternative-id":["10.1145\/3627673.3679750","10.1145\/3627673"],"URL":"https:\/\/doi.org\/10.1145\/3627673.3679750","relation":{},"subject":[],"published":{"date-parts":[[2024,10,21]]},"assertion":[{"value":"2024-10-21","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}