{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,4,14]],"date-time":"2026-04-14T15:52:44Z","timestamp":1776181964106,"version":"3.50.1"},"reference-count":31,"publisher":"IEEE","license":[{"start":{"date-parts":[[2025,7,8]],"date-time":"2025-07-08T00:00:00Z","timestamp":1751932800000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2025,7,8]],"date-time":"2025-07-08T00:00:00Z","timestamp":1751932800000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2025,7,8]]},"DOI":"10.23919\/acc63710.2025.11107955","type":"proceedings-article","created":{"date-parts":[[2025,8,21]],"date-time":"2025-08-21T18:17:51Z","timestamp":1755800271000},"page":"5202-5209","source":"Crossref","is-referenced-by-count":1,"title":["Optimism Induction Attack on Deep Reinforcement Learning with Control Barrier Function Safety Filter for Autonomous Driving"],"prefix":"10.23919","author":[{"given":"Saeedeh","family":"Lohrasbi","sequence":"first","affiliation":[{"name":"University of Waterloo,Department of Systems Design Engineering,Canada"}]},{"given":"Ladan","family":"Khoshnevisan","sequence":"additional","affiliation":[{"name":"University of Waterloo,Department of Mechanical and Mechatronics Engineering,Canada"}]},{"given":"Apurva","family":"Narayan","sequence":"additional","affiliation":[{"name":"University of Waterloo,Department of Systems Design Engineering,Canada"}]},{"given":"Nasser Lashgarian","family":"Azad","sequence":"additional","affiliation":[{"name":"University of Waterloo,Department of Systems Design Engineering,Canada"}]},{"given":"Pulei","family":"Xiong","sequence":"additional","affiliation":[{"name":"University of Waterloo,Department of Systems Design Engineering,Canada"}]}],"member":"263","reference":[{"key":"ref1","article-title":"Reinforcement learning: An introduction","author":"Sutton","year":"2018","journal-title":"A Bradford Book"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1016\/j.jksuci.2022.03.013"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1109\/TITS.2021.3054625"},{"key":"ref4","article-title":"Adversarial attacks on neural network policies","author":"Huang","year":"2017"},{"key":"ref5","article-title":"Explaining and harnessing adversarial examples","author":"Goodfellow","year":"2014"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1109\/ITSC.2019.8917192"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1109\/IV47402.2020.9304647"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1109\/TITS.2020.3024655"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2022.3192019"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1109\/TIV.2020.3012947"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1109\/TITS.2021.3115235"},{"key":"ref12","article-title":"Proximal policy optimization algorithms","author":"Schulman","year":"2017"},{"key":"ref13","article-title":"Adversarial machine learning at scale","author":"Kurakin","year":"2016"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.49"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.282"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1145\/3128572.3140448"},{"key":"ref17","article-title":"Delving into transferable adversarial examples and black-box attacks","author":"Liu","year":"2016"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1109\/TAI.2021.3111139"},{"key":"ref19","first-page":"21 024","article-title":"Robust deep reinforcement learning against adversarial perturbations on state observations","volume":"33","author":"Zhang","year":"2020","journal-title":"Advances in Neural Information Processing Systems"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1145\/3394486.3403089"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2022.3174963"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v34i04.5887"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1109\/TII.2021.3071405"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1109\/TrustCom\/BigDataSE.2018.00079"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1109\/ITSC.2018.8569635"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2019.2908998"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1109\/TIV.2024.3449830"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.5220\/0012187700003543"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.1109\/IV55152.2023.10186386"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.1016\/j.ifacol.2022.10.276"},{"key":"ref31","article-title":"Dynamic modeling and parameter identification of a plug-in hybrid electric vehicle","volume-title":"Master\u2019s thesis","author":"Buggaveeti","year":"2017"}],"event":{"name":"2025 American Control Conference (ACC)","location":"Denver, CO, USA","start":{"date-parts":[[2025,7,8]]},"end":{"date-parts":[[2025,7,10]]}},"container-title":["2025 American Control Conference (ACC)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/11107441\/11107442\/11107955.pdf?arnumber=11107955","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,8,22]],"date-time":"2025-08-22T05:47:09Z","timestamp":1755841629000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/11107955\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,7,8]]},"references-count":31,"URL":"https:\/\/doi.org\/10.23919\/acc63710.2025.11107955","relation":{},"subject":[],"published":{"date-parts":[[2025,7,8]]}}}