{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,3,7]],"date-time":"2026-03-07T18:04:57Z","timestamp":1772906697319,"version":"3.50.1"},"publisher-location":"New York, NY, USA","reference-count":18,"publisher":"ACM","license":[{"start":{"date-parts":[[2024,6,23]],"date-time":"2024-06-23T00:00:00Z","timestamp":1719100800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2024,6,23]]},"DOI":"10.1145\/3649329.3655682","type":"proceedings-article","created":{"date-parts":[[2024,11,7]],"date-time":"2024-11-07T19:27:22Z","timestamp":1731007642000},"page":"1-6","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":2,"title":["AdvHunter: Detecting Adversarial Perturbations in Black-Box Neural Networks through Hardware Performance Counters"],"prefix":"10.1145","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-3338-2944","authenticated-orcid":false,"given":"Manaar","family":"Alam","sequence":"first","affiliation":[{"name":"New York University Abu Dhabi, Abu Dhabi, Abu Dhabi, United Arab Emirates"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-6899-0651","authenticated-orcid":false,"given":"Michail","family":"Maniatakos","sequence":"additional","affiliation":[{"name":"New York University Abu Dhabi, Abu Dhabi, Abu Dhabi, United Arab Emirates"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2024,11,7]]},"reference":[{"key":"e_1_3_2_1_1_1","doi-asserted-by":"publisher","DOI":"10.1145\/3316781.3322465"},{"key":"e_1_3_2_1_2_1","first-page":"1","article-title":"2023. Revisiting model's uncertainty and confidences for adversarial example detection","volume":"53","author":"Ahmed Aldahdooh","year":"2023","unstructured":"Ahmed Aldahdooh et al. 2023. Revisiting model's uncertainty and confidences for adversarial example detection. Applied Intelligence 53, 1 (2023), 509--531.","journal-title":"Applied Intelligence"},{"key":"e_1_3_2_1_3_1","volume-title":"19th Annual International Conference on Supercomputing, ICS","author":"Reza","year":"2005","unstructured":"Reza Azimi et al. 2005. Online performance analysis by statistical sampling of microprocessor performance counters. In 19th Annual International Conference on Supercomputing, ICS 2005, Cambridge, Massachusetts, USA."},{"key":"e_1_3_2_1_4_1","volume-title":"Ensemble-in-One: Ensemble Learning within Random Gated Networks for Enhanced Adversarial Robustness. In 37th AAAI Conference on Artificial Intelligence, AAAI","author":"Yi","year":"2023","unstructured":"Yi Cai et al. 2023. Ensemble-in-One: Ensemble Learning within Random Gated Networks for Enhanced Adversarial Robustness. In 37th AAAI Conference on Artificial Intelligence, AAAI 2023, Washington, DC, USA."},{"key":"e_1_3_2_1_5_1","first-page":"1","article-title":"2021. A survey on adversarial attacks and defences","volume":"6","author":"Anirban Chakraborty","year":"2021","unstructured":"Anirban Chakraborty et al. 2021. A survey on adversarial attacks and defences. CAAI Transactions on Intelligence Technology 6, 1 (2021), 25--45.","journal-title":"CAAI Transactions on Intelligence Technology"},{"key":"e_1_3_2_1_6_1","volume-title":"11th International Conference on Learning Representations, ICLR","author":"Jacob","year":"2023","unstructured":"Jacob Clarysse et al. 2023. Why adversarial training can hurt robust accuracy. In 11th International Conference on Learning Representations, ICLR 2023, Kigali, Rwanda."},{"key":"e_1_3_2_1_7_1","volume-title":"ACM Asia Conference on Computer and Communications Security, ASIA CCS","author":"Ruyi","year":"2023","unstructured":"Ruyi Ding et al. 2023. EMShepherd: Detecting Adversarial Samples via Side-channel Leakage. In ACM Asia Conference on Computer and Communications Security, ASIA CCS 2023, Melbourne, VIC, Australia."},{"key":"e_1_3_2_1_8_1","volume-title":"Boosting Adversarial Attacks With Momentum. In IEEE Conference on Computer Vision and Pattern Recognition, CVPR","author":"Yinpeng","year":"2018","unstructured":"Yinpeng Dong et al. 2018. Boosting Adversarial Attacks With Momentum. In IEEE Conference on Computer Vision and Pattern Recognition, CVPR 2018, Salt Lake City, UT, USA."},{"key":"e_1_3_2_1_9_1","volume-title":"Explaining and Harnessing Adversarial Examples. In 3rd International Conference on Learning Representations, ICLR","author":"Ian","year":"2015","unstructured":"Ian J. Goodfellow et al. 2015. Explaining and Harnessing Adversarial Examples. In 3rd International Conference on Learning Representations, ICLR 2015, San Diego, CA, USA."},{"key":"e_1_3_2_1_10_1","volume-title":"Fast Adversarial Training with Dynamic Batch-level Attack Control. In 60th ACM\/IEEE Design Automation Conference, DAC","author":"Jaewon","year":"2023","unstructured":"Jaewon Jung et al. 2023. Fast Adversarial Training with Dynamic Batch-level Attack Control. In 60th ACM\/IEEE Design Automation Conference, DAC 2023, San Francisco, CA, USA."},{"key":"e_1_3_2_1_11_1","volume-title":"Defending Against Model Stealing Attacks With Adaptive Misinformation. In IEEE\/CVF Conference on Computer Vision and Pattern Recognition, CVPR","author":"Kariyappa Sanjay","year":"2020","unstructured":"Sanjay Kariyappa and Moinuddin K. Qureshi. 2020. Defending Against Model Stealing Attacks With Adaptive Misinformation. In IEEE\/CVF Conference on Computer Vision and Pattern Recognition, CVPR 2020, Seattle, WA, USA."},{"key":"e_1_3_2_1_12_1","volume-title":"McLachlan and David Peel","author":"Geoffrey","year":"2000","unstructured":"Geoffrey J. McLachlan and David Peel. 2000. Finite Mixture Models. Wiley."},{"key":"e_1_3_2_1_13_1","volume-title":"IEEE Conference on Computer Vision and Pattern Recognition, CVPR","author":"Seyed-Mohsen","year":"2016","unstructured":"Seyed-Mohsen Moosavi-Dezfooli et al. 2016. DeepFool: A Simple and Accurate Method to Fool Deep Neural Networks. In IEEE Conference on Computer Vision and Pattern Recognition, CVPR 2016, Las Vegas, NV, USA."},{"key":"e_1_3_2_1_14_1","first-page":"14","article-title":"2023","volume":"55","author":"Daryna Oliynyk","year":"2023","unstructured":"Daryna Oliynyk et al. 2023. I Know What You Trained Last Summer: A Survey on Stealing Machine Learning Models and Defences. Comput. Surveys 55, 14 (2023), 324:1--324:41.","journal-title":"Comput. Surveys"},{"key":"e_1_3_2_1_15_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.patcog.2022.108889"},{"key":"e_1_3_2_1_16_1","volume-title":"Detecting Adversarial Examples Is (Nearly) As Hard As Classifying Them. In International Conference on Machine Learning, ICML","author":"Tram\u00e8r Florian","year":"2022","unstructured":"Florian Tram\u00e8r. 2022. Detecting Adversarial Examples Is (Nearly) As Hard As Classifying Them. In International Conference on Machine Learning, ICML 2022, Baltimore, Maryland, USA."},{"key":"e_1_3_2_1_17_1","volume-title":"Beating Attackers At Their Own Games: Adversarial Example Detection Using Adversarial Gradient Directions. In 35th AAAI Conference on Artificial Intelligence, AAAI","author":"Yuhang","year":"2021","unstructured":"Yuhang Wu et al. 2021. Beating Attackers At Their Own Games: Adversarial Example Detection Using Adversarial Gradient Directions. In 35th AAAI Conference on Artificial Intelligence, AAAI 2021, Virtual Event."},{"key":"e_1_3_2_1_18_1","volume-title":"29th Annual Network and Distributed System Security Symposium, NDSS","author":"Yijun","year":"2022","unstructured":"Yijun Yang et al. 2022. What You See is Not What the Network Infers: Detecting Adversarial Examples Based on Semantic Contradiction. In 29th Annual Network and Distributed System Security Symposium, NDSS 2022, San Diego, CA, USA."}],"event":{"name":"DAC '24: 61st ACM\/IEEE Design Automation Conference","location":"San Francisco CA USA","acronym":"DAC '24","sponsor":["SIGDA ACM Special Interest Group on Design Automation","IEEE-CEDA","SIGBED ACM Special Interest Group on Embedded Systems"]},"container-title":["Proceedings of the 61st ACM\/IEEE Design Automation Conference"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3649329.3655682","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3649329.3655682","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,19]],"date-time":"2025-06-19T01:17:48Z","timestamp":1750295868000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3649329.3655682"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024,6,23]]},"references-count":18,"alternative-id":["10.1145\/3649329.3655682","10.1145\/3649329"],"URL":"https:\/\/doi.org\/10.1145\/3649329.3655682","relation":{},"subject":[],"published":{"date-parts":[[2024,6,23]]},"assertion":[{"value":"2024-11-07","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}