{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,6,25]],"date-time":"2025-06-25T13:40:08Z","timestamp":1750858808528,"version":"3.41.0"},"publisher-location":"New York, NY, USA","reference-count":33,"publisher":"ACM","content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2024,12,18]]},"DOI":"10.1145\/3703323.3703336","type":"proceedings-article","created":{"date-parts":[[2025,6,25]],"date-time":"2025-06-25T12:03:28Z","timestamp":1750853008000},"page":"75-83","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":0,"title":["Ignorance is not Bliss: A Novel Ensemble Method to Counter Adversarial Attacks on Deep Learning Models"],"prefix":"10.1145","author":[{"ORCID":"https:\/\/orcid.org\/0000-0003-3694-7012","authenticated-orcid":false,"given":"Shubhajit","family":"Datta","sequence":"first","affiliation":[{"name":"Indian Institute of Technology Kharagpur, Kharagpur, IN"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-3338-2944","authenticated-orcid":false,"given":"Manaar","family":"Alam","sequence":"additional","affiliation":[{"name":"New York University Abu Dhabi, Abu Dhabi, AE"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-5060-1427","authenticated-orcid":false,"given":"Arijit","family":"Mondal","sequence":"additional","affiliation":[{"name":"IIT Patna, Patna, IN"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-6499-8346","authenticated-orcid":false,"given":"Debdeep","family":"Mukhopadhyay","sequence":"additional","affiliation":[{"name":"IIT Kharagpur, Kharagpur, India"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-3553-8834","authenticated-orcid":false,"given":"Partha P","family":"Chakrabarti","sequence":"additional","affiliation":[{"name":"Indian Institute of Technology Kharagpur, Kharagpur, IN"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2025,6,25]]},"reference":[{"key":"e_1_3_3_1_2_2","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2017.242"},{"key":"e_1_3_3_1_3_2","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.49"},{"key":"e_1_3_3_1_4_2","volume-title":"NeurIPS Datasets and Benchmarks 2021, December 2021, virtual","author":"Croce Francesco","year":"2021","unstructured":"Francesco Croce, Maksym Andriushchenko, Vikash Sehwag, Edoardo Debenedetti, Nicolas Flammarion, Mung Chiang, Prateek Mittal, and Matthias Hein. 2021. RobustBench: a standardized adversarial robustness benchmark. In NeurIPS Datasets and Benchmarks 2021, December 2021, virtual, Joaquin Vanschoren and Sai-Kit Yeung (Eds.)."},{"key":"e_1_3_3_1_5_2","series-title":"Proceedings of Machine Learning Research","volume-title":"Proceedings of the 37th International Conference on Machine Learning, ICML 2020, 13-18 July 2020, Virtual Event","volume":"119","author":"Croce Francesco","year":"2020","unstructured":"Francesco Croce and Matthias Hein. 2020. Minimally distorted Adversarial Examples with a Fast Adaptive Boundary Attack. In Proceedings of the 37th International Conference on Machine Learning, ICML 2020, 13-18 July 2020, Virtual Event(Proceedings of Machine Learning Research, Vol.\u00a0119). PMLR."},{"key":"e_1_3_3_1_6_2","series-title":"Proceedings of Machine Learning Research","first-page":"2206","volume-title":"Proceedings of the 37th International Conference on Machine Learning, ICML 2020, 13-18 July 2020, Virtual Event","volume":"119","author":"Croce Francesco","year":"2020","unstructured":"Francesco Croce and Matthias Hein. 2020. Reliable evaluation of adversarial robustness with an ensemble of diverse parameter-free attacks. In Proceedings of the 37th International Conference on Machine Learning, ICML 2020, 13-18 July 2020, Virtual Event(Proceedings of Machine Learning Research, Vol.\u00a0119). PMLR, 2206\u20132216. http:\/\/proceedings.mlr.press\/v119\/croce20b.html"},{"key":"e_1_3_3_1_7_2","volume-title":"ICML","author":"Croce Francesco","year":"2020","unstructured":"Francesco Croce and Matthias Hein. 2020. Reliable evaluation of adversarial robustness with an ensemble of diverse parameter-free attacks. In ICML."},{"key":"e_1_3_3_1_8_2","unstructured":"Tairu\u00a0Oluwafemi Emmanuel. [n. d.]. PlantVillage Dataset \u2014 kaggle.com. https:\/\/www.kaggle.com\/datasets\/emmarex\/plantdisease. [Accessed 26-02-2024]."},{"key":"e_1_3_3_1_9_2","volume-title":"3rd International Conference on Learning Representations, ICLR 2015, San Diego, CA, USA, May 7-9, 2015, Conference Track Proceedings","author":"Goodfellow Ian\u00a0J.","year":"2015","unstructured":"Ian\u00a0J. Goodfellow, Jonathon Shlens, and Christian Szegedy. 2015. Explaining and Harnessing Adversarial Examples. In 3rd International Conference on Learning Representations, ICLR 2015, San Diego, CA, USA, May 7-9, 2015, Conference Track Proceedings, Yoshua Bengio and Yann LeCun (Eds.). http:\/\/arxiv.org\/abs\/1412.6572"},{"key":"e_1_3_3_1_10_2","unstructured":"Sanjay Kariyappa and Moinuddin\u00a0K. Qureshi. 2019. Improving Adversarial Robustness of Ensembles with Diversity Training. CoRR abs\/1901.09981 (2019). arXiv:1901.09981http:\/\/arxiv.org\/abs\/1901.09981"},{"key":"e_1_3_3_1_11_2","volume-title":"Learning Multiple Layers of Features from Tiny Images","author":"Krizhevsky Alex","year":"2009","unstructured":"Alex Krizhevsky. 2009. Learning Multiple Layers of Features from Tiny Images. Technical Report TR-2009. University of Toronto. https:\/\/www.cs.toronto.edu\/\u00a0kriz\/learning-features-2009-TR.pdf"},{"key":"e_1_3_3_1_12_2","volume-title":"ICLR 2017, Toulon, France, Workshop Track Proceedings","author":"Kurakin Alexey","year":"2017","unstructured":"Alexey Kurakin, Ian\u00a0J. Goodfellow, and Samy Bengio. 2017. Adversarial examples in the physical world. In ICLR 2017, Toulon, France, Workshop Track Proceedings. OpenReview.net."},{"key":"e_1_3_3_1_13_2","doi-asserted-by":"publisher","unstructured":"Deqiang Li and Qianmu Li. 2020. Adversarial Deep Ensemble: Evasion Attacks and Defenses for Malware Detection. IEEE Trans. Inf. Forensics Secur. 15 (2020) 3886\u20133900. 10.1109\/TIFS.2020.3003571","DOI":"10.1109\/TIFS.2020.3003571"},{"key":"e_1_3_3_1_14_2","doi-asserted-by":"publisher","unstructured":"Qi Liu and Wujie Wen. 2023. Model Compression Hardens Deep Neural Networks: A New Perspective to Prevent Adversarial Attacks. IEEE Trans. Neural Networks Learn. Syst. 34 1 (2023) 3\u201314. 10.1109\/TNNLS.2021.3089128","DOI":"10.1109\/TNNLS.2021.3089128"},{"key":"e_1_3_3_1_15_2","volume-title":"6th International Conference on Learning Representations, ICLR 2018, Vancouver, BC, Canada, Conference Track Proceedings","author":"Madry Aleksander","year":"2018","unstructured":"Aleksander Madry, Aleksandar Makelov, Ludwig Schmidt, Dimitris Tsipras, and Adrian Vladu. 2018. Towards Deep Learning Models Resistant to Adversarial Attacks. In 6th International Conference on Learning Representations, ICLR 2018, Vancouver, BC, Canada, Conference Track Proceedings. OpenReview.net."},{"key":"e_1_3_3_1_16_2","unstructured":"Paul Mooney. [n. d.]. Chest X-Ray Images (Pneumonia) \u2014 kaggle.com. https:\/\/www.kaggle.com\/datasets\/paultimothymooney\/chest-xray-pneumonia. [Accessed 26-02-2024]."},{"key":"e_1_3_3_1_17_2","series-title":"Proceedings of Machine Learning Research","volume-title":"ICML 2019, 9-15 June 2019, Long Beach, California, USA","volume":"97","author":"Pang Tianyu","year":"2019","unstructured":"Tianyu Pang and et al.2019. Improving Adversarial Robustness via Promoting Ensemble Diversity. In ICML 2019, 9-15 June 2019, Long Beach, California, USA(Proceedings of Machine Learning Research, Vol.\u00a097), Kamalika Chaudhuri and Ruslan Salakhutdinov (Eds.). PMLR."},{"key":"e_1_3_3_1_18_2","unstructured":"Nicolas Papernot Fartash Faghri Nicholas Carlini Ian Goodfellow Reuben Feinman Alexey Kurakin Cihang Xie Yash Sharma Tom Brown Aurko Roy Alexander Matyasko Vahid Behzadan Karen Hambardzumyan Zhishuai Zhang Yi-Lin Juang Zhi Li Ryan Sheatsley Abhibhav Garg Jonathan Uesato Willi Gierke Yinpeng Dong David Berthelot Paul Hendricks Jonas Rauber and Rujun Long. 2018. Technical Report on the CleverHans v2.1.0 Adversarial Examples Library. arXiv preprint arXiv:1610.00768 (2018)."},{"key":"e_1_3_3_1_19_2","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2019.00669"},{"key":"e_1_3_3_1_20_2","unstructured":"Aditi Raghunathan Sang\u00a0Michael Xie Fanny Yang John\u00a0C. Duchi and Percy Liang. 2019. Adversarial Training Can Hurt Generalization. CoRR abs\/1906.06032 (2019). arXiv:1906.06032"},{"key":"e_1_3_3_1_21_2","volume-title":"Advances in Neural Information Processing Systems 33: Annual Conference on Neural Information Processing Systems 2020, NeurIPS 2020, December 6-12, 2020, virtual","author":"Shah Harshay","year":"2020","unstructured":"Harshay Shah, Kaustav Tamuly, Aditi Raghunathan, Prateek Jain, and Praneeth Netrapalli. 2020. The Pitfalls of Simplicity Bias in Neural Networks. In Advances in Neural Information Processing Systems 33: Annual Conference on Neural Information Processing Systems 2020, NeurIPS 2020, December 6-12, 2020, virtual, Hugo Larochelle, Marc\u2019Aurelio Ranzato, Raia Hadsell, Maria-Florina Balcan, and Hsuan-Tien Lin (Eds.). https:\/\/proceedings.neurips.cc\/paper\/2020\/hash\/6cfe0e6127fa25df2a0ef2ae1067d915-Abstract.html"},{"key":"e_1_3_3_1_22_2","doi-asserted-by":"publisher","DOI":"10.1145\/3474369.3486878"},{"key":"e_1_3_3_1_23_2","unstructured":"Thilo Strauss Markus Hanselmann Andrej Junginger and Holger Ulmer. 2017. Ensemble Methods as a Defense to Adversarial Perturbations Against Deep Neural Networks. CoRR abs\/1709.03423 (2017). arxiv:1709.03423"},{"key":"e_1_3_3_1_24_2","series-title":"Proceedings of Machine Learning Research","first-page":"3319","volume-title":"Proceedings of the 34th International Conference on Machine Learning, ICML 2017, Sydney, NSW, Australia, 6-11 August 2017","volume":"70","author":"Sundararajan Mukund","year":"2017","unstructured":"Mukund Sundararajan, Ankur Taly, and Qiqi Yan. 2017. Axiomatic Attribution for Deep Networks. In Proceedings of the 34th International Conference on Machine Learning, ICML 2017, Sydney, NSW, Australia, 6-11 August 2017(Proceedings of Machine Learning Research, Vol.\u00a070), Doina Precup and Yee\u00a0Whye Teh (Eds.). PMLR, 3319\u20133328. http:\/\/proceedings.mlr.press\/v70\/sundararajan17a.html"},{"key":"e_1_3_3_1_25_2","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.308"},{"key":"e_1_3_3_1_26_2","volume-title":"2nd International Conference on Learning Representations, ICLR 2014, Banff, AB, Canada, April 14-16, 2014, Conference Track Proceedings","author":"Szegedy Christian","year":"2014","unstructured":"Christian Szegedy, Wojciech Zaremba, Ilya Sutskever, Joan Bruna, Dumitru Erhan, Ian\u00a0J. Goodfellow, and Rob Fergus. 2014. Intriguing properties of neural networks. In 2nd International Conference on Learning Representations, ICLR 2014, Banff, AB, Canada, April 14-16, 2014, Conference Track Proceedings, Yoshua Bengio and Yann LeCun (Eds.). http:\/\/arxiv.org\/abs\/1312.6199"},{"key":"e_1_3_3_1_27_2","volume-title":"6th International Conference on Learning Representations, ICLR 2018, Vancouver, BC, Canada, April 30 - May 3, 2018, Conference Track Proceedings","author":"Tram\u00e8r Florian","year":"2018","unstructured":"Florian Tram\u00e8r, Alexey Kurakin, Nicolas Papernot, Ian\u00a0J. Goodfellow, Dan Boneh, and Patrick\u00a0D. McDaniel. 2018. Ensemble Adversarial Training: Attacks and Defenses. In 6th International Conference on Learning Representations, ICLR 2018, Vancouver, BC, Canada, April 30 - May 3, 2018, Conference Track Proceedings. OpenReview.net."},{"key":"e_1_3_3_1_28_2","unstructured":"Raj Vardhan Ninghao Liu Phakpoom Chinprutthiwong Weijie Fu Zhenyu Hu Xia\u00a0Ben Hu and Guofei Gu. 2021. ExAD: An Ensemble Approach for Explanation-based Adversarial Detection. CoRR abs\/2103.11526 (2021). arxiv:2103.11526"},{"key":"e_1_3_3_1_29_2","doi-asserted-by":"publisher","DOI":"10.1007\/978-981-99-4742-3_1"},{"key":"e_1_3_3_1_30_2","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2019.00059"},{"key":"e_1_3_3_1_31_2","volume-title":"ICLR 2018, Vancouver, BC, Canada, Conference Track Proceedings","author":"Xie Cihang","year":"2018","unstructured":"Cihang Xie, Jianyu Wang, Zhishuai Zhang, Zhou Ren, and Alan\u00a0L. Yuille. 2018. Mitigating Adversarial Effects Through Randomization. In ICLR 2018, Vancouver, BC, Canada, Conference Track Proceedings. OpenReview.net."},{"key":"e_1_3_3_1_32_2","volume-title":"Advances in Neural Information Processing Systems 33: Annual Conference on Neural Information Processing Systems 2020, NeurIPS 2020, December 6-12, 2020, virtual","author":"Yang Huanrui","year":"2020","unstructured":"Huanrui Yang, Jingyang Zhang, Hongliang Dong, Nathan Inkawhich, Andrew Gardner, Andrew Touchet, Wesley Wilkes, Heath Berry, and Hai Li. 2020. DVERGE: Diversifying Vulnerabilities for Enhanced Robust Generation of Ensembles. In Advances in Neural Information Processing Systems 33: Annual Conference on Neural Information Processing Systems 2020, NeurIPS 2020, December 6-12, 2020, virtual, Hugo Larochelle, Marc\u2019Aurelio Ranzato, Raia Hadsell, Maria-Florina Balcan, and Hsuan-Tien Lin (Eds.). https:\/\/proceedings.neurips.cc\/paper\/2020\/hash\/3ad7c2ebb96fcba7cda0cf54a2e802f5-Abstract.html"},{"key":"e_1_3_3_1_33_2","first-page":"17642","volume-title":"Advances in Neural Information Processing Systems 34: Annual Conference on Neural Information Processing Systems 2021, NeurIPS 2021, December 6-14, 2021, virtual","author":"Yang Zhuolin","year":"2021","unstructured":"Zhuolin Yang, Linyi Li, Xiaojun Xu, Shiliang Zuo, Qian Chen, Pan Zhou, Benjamin I.\u00a0P. Rubinstein, Ce Zhang, and Bo Li. 2021. TRS: Transferability Reduced Ensemble via Promoting Gradient Diversity and Model Smoothness. In Advances in Neural Information Processing Systems 34: Annual Conference on Neural Information Processing Systems 2021, NeurIPS 2021, December 6-14, 2021, virtual, Marc\u2019Aurelio Ranzato, Alina Beygelzimer, Yann\u00a0N. Dauphin, Percy Liang, and Jennifer\u00a0Wortman Vaughan (Eds.). 17642\u201317655. https:\/\/proceedings.neurips.cc\/paper\/2021\/hash\/937936029af671cf479fa893db91cbdd-Abstract.html"},{"key":"e_1_3_3_1_34_2","doi-asserted-by":"publisher","unstructured":"Zhong-Qiu Zhao Peng Zheng Shou-tao Xu and Xindong Wu. 2019. Object Detection With Deep Learning: A Review. IEEE Trans. Neural Networks Learn. Syst. 30 11 (2019) 3212\u20133232. 10.1109\/TNNLS.2018.2876865","DOI":"10.1109\/TNNLS.2018.2876865"}],"event":{"name":"CODS-COMAD 2024: 8th International Conference on Data Science and Management of Data (12th ACM IKDD CODS and 30th COMAD)","location":"Jodhpur India","acronym":"CODS-COMAD Dec '24"},"container-title":["Proceedings of the 8th International Conference on Data Science and Management of Data (12th ACM IKDD CODS and 30th COMAD)"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3703323.3703336","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,25]],"date-time":"2025-06-25T13:05:23Z","timestamp":1750856723000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3703323.3703336"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024,12,18]]},"references-count":33,"alternative-id":["10.1145\/3703323.3703336","10.1145\/3703323"],"URL":"https:\/\/doi.org\/10.1145\/3703323.3703336","relation":{},"subject":[],"published":{"date-parts":[[2024,12,18]]},"assertion":[{"value":"2025-06-25","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}