{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,2]],"date-time":"2026-06-02T23:09:53Z","timestamp":1780441793935,"version":"3.54.1"},"reference-count":30,"publisher":"Allerton Press","issue":"8","license":[{"start":{"date-parts":[[2022,12,1]],"date-time":"2022-12-01T00:00:00Z","timestamp":1669852800000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2022,12,1]],"date-time":"2022-12-01T00:00:00Z","timestamp":1669852800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["Aut. Control Comp. Sci."],"published-print":{"date-parts":[[2022,12]]},"DOI":"10.3103\/s0146411622080211","type":"journal-article","created":{"date-parts":[[2023,2,28]],"date-time":"2023-02-28T14:03:23Z","timestamp":1677593003000},"page":"934-941","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":6,"title":["Adversarial Machine Learning Protection Using the Example of Evasion Attacks on Medical Images"],"prefix":"10.3103","volume":"56","author":[{"given":"E. A.","family":"Rudnitskaya","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"M. A.","family":"Poltavtseva","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"1627","published-online":{"date-parts":[[2023,2,28]]},"reference":[{"key":"7549_CR1","doi-asserted-by":"publisher","first-page":"107332","DOI":"10.1016\/j.patcog.2020.107332","volume":"110","author":"X. Ma","year":"2020","unstructured":"Ma, X., Niu, Yu., Gu, L., Wang, Yi., Zhao, Yi., Bailey, J., and Lu, F., Understanding adversarial attacks on deep learning based medical image analysis systems, Pattern Recognit., 2020, vol. 110, p. 107332. \u00a0https:\/\/doi.org\/10.1016\/j.patcog.2020.107332","journal-title":"Pattern Recognit."},{"key":"7549_CR2","unstructured":"Hospital viruses: Fake cancerous nodes in CT scans, created by malware, trick radiologists, The Washington Post, 2019. https:\/\/www.washingtonpost.com\/technology\/2019\/04\/03\/hospital-viruses-fake-cancerous-nodes-ct-scans-created-by-malware-trick-radiologists\/. Cited February 15, 2021."},{"key":"7549_CR3","doi-asserted-by":"publisher","first-page":"100199","DOI":"10.1016\/j.cosrev.2019.100199","volume":"34","author":"N. Pitropakis","year":"2019","unstructured":"Pitropakis, N., Panaousis, E., Giannetsos, T., Anastasiadis, E., and Loukas, G., A taxonomy and survey of attacks against machine learning, Comput. Sci. Rev., 2019, vol. 34, p. 100199. \u00a0https:\/\/doi.org\/10.1016\/j.cosrev.2019.100199","journal-title":"Comput. Sci. Rev."},{"key":"7549_CR4","unstructured":"Chakraborty, A., Alam, M., Dey, V., Chattopadhyay, A., and Mukhopadhyay, D., Adversarial attacks and defences: a survey, 2018. arXiv:1810.00069 [cs.LG]"},{"key":"7549_CR5","doi-asserted-by":"publisher","unstructured":"Barreno, M., Nelson, B., Sears, R., Joseph, A.D., and Tygar, J.D., Can machine learning be secure?, ASIACC-S \u201906: Proc. 2006 ACM Symp. on Information, Computer and Communication Security, Taipei, Taiwan, 2006, New York: Association for Computing Machinery, 2006, pp. 16\u201325. \u00a0https:\/\/doi.org\/10.1145\/1128817.1128824","DOI":"10.1145\/1128817.1128824"},{"key":"7549_CR6","doi-asserted-by":"publisher","first-page":"12103","DOI":"10.1109\/ACCESS.2018.2805680","volume":"6","author":"Q. Liu","year":"2018","unstructured":"Liu, Q., Li, P., Zhao, W., Cai, W., Yu, S., and Leung, V.C.M., A survey on security threats and defensive techniques of machine learning: A data driven view, IEEE Access, 2018, vol. 6, pp. 12103\u201312117. \u00a0https:\/\/doi.org\/10.1109\/ACCESS.2018.2805680","journal-title":"IEEE Access"},{"key":"7549_CR7","doi-asserted-by":"publisher","first-page":"1287","DOI":"10.1126\/science.aaw4399","volume":"363","author":"S.G. Finlayso","year":"2019","unstructured":"Finlayso, S.G., Bowers, J.D., Ito, J., Zittrain, J.L., Beam, A.L., and Kohane, I.S., Adversarial attacks on medical machine learning, Science, 2019, vol. 363, no. 6433, pp.\u00a01287\u20131289. \u00a0https:\/\/doi.org\/10.1126\/science.aaw4399","journal-title":"Science"},{"key":"7549_CR8","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-02628-8_10","volume-title":"Vulnerability analysis of chest x-ray image classification against adversarial attacks, Understanding and Interpreting Machine Learning in Medical Image Computing Applications","author":"S.A. Taghanaki","year":"2018","unstructured":"Taghanaki, S.A., Das, A., Hamarneh, G., Vulnerability analysis of chest x-ray image classification against adversarial attacks, Understanding and Interpreting Machine Learning in Medical Image Computing Applications, Stoyanov, D., Taylor, Z., Kia, S.M., Eds., Lecture Notes in Computer Science, vol. 11038, Cham: Springer, 2018, pp.\u00a087\u201394. \u00a0https:\/\/doi.org\/10.1007\/978-3-030-02628-8_10"},{"key":"7549_CR9","first-page":"14","volume":"16","author":"D.M. Voynov","year":"2019","unstructured":"Voynov, D.M. and Kovalev, V.A., Experimental assessment of adversarial attacks to the deep neural networks in medical image recognition, Informatika, 2019, vol. 16, no. 3, pp. 14\u201322.","journal-title":"Informatika"},{"key":"7549_CR10","doi-asserted-by":"publisher","first-page":"9","DOI":"10.1186\/s12880-020-00530-y","volume":"21","author":"H. Hirano","year":"2021","unstructured":"Hirano, H., Minagi, A., and Takemoto, K., Universal adversarial attacks on deep neural networks for medical image classification, BMC Med. Imaging, 2021, vol. 21, p. 9. \u00a0https:\/\/doi.org\/10.1186\/s12880-020-00530-y","journal-title":"BMC Med. Imaging"},{"key":"7549_CR11","doi-asserted-by":"publisher","first-page":"346","DOI":"10.1016\/j.eng.2019.12.012","volume":"6","author":"K. Ren","year":"2020","unstructured":"Ren, K., Zheng, T., Qin, Z., and Liu, X., Adversarial attacks and defenses in deep learning, Engineering, 2020, vol. 6, no. 3, pp. 346\u2013360.https:\/\/doi.org\/10.1016\/j.eng.2019.12.012","journal-title":"Engineering"},{"key":"7549_CR12","unstructured":"Tramer, F., Kurakin, A., Papernot, N., Goodfellow, I., Boneh, D., and McDaniel, P., Ensemble adversarial training: attacks and defenses, 6th Int. Conf. on Learning Representations, ICLR 2018\u2013Conf. Track Proc., Vancouver, 2018."},{"key":"7549_CR13","doi-asserted-by":"publisher","unstructured":"Liu, X. and Hsieh, Cho-J., Rob-GAN: generator, discriminator, and adversarial attacker, 2019 IEEE\/CVF Conf. on Computer Vision and Pattern Recognition (CVPR), Long Beach, 2019, IEEE, 2019, pp. 11226\u201311235. \u00a0https:\/\/doi.org\/10.1109\/CVPR.2019.01149","DOI":"10.1109\/CVPR.2019.01149"},{"key":"7549_CR14","unstructured":"Xie, C., Wang, J., Zhang, Z., Ren, Z., and Yuille, A., Mitigating adversarial effects through randomization, 6th\u00a0Int. Conf. on Learning Representations, ICLR 2018\u2013Conf. Track Proc., Vancouver, 2018."},{"key":"7549_CR15","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-01234-2_23","volume-title":"Liu, X., Cheng, M., Zhang, H., and Hsieh, Cho-J., Towards robust neural networks via random self-ensemble, Computer Vision\u2013ECCV 2018","year":"2018","unstructured":"Liu, X., Cheng, M., Zhang, H., and Hsieh, Cho-J., Towards robust neural networks via random self-ensemble, Computer Vision\u2013ECCV 2018, Ferrari, V., Hebert, M., Sminchisescu, C., and Weiss, Y., Eds., Lecture Notes in Computer Science, vol. 11211, Cham: Springer, 2018, pp. 381\u2013397. \u00a0https:\/\/doi.org\/10.1007\/978-3-030-01234-2_23"},{"key":"7549_CR16","unstructured":"Dhillon GS, Azizzadenesheli K, Lipton ZC, Bernstein J, Kossaifi J, Khanna A, and Anandkumar, A., Stochastic activation pruning for robust adversarial defense, 6th Int. Conf. on Learning Representations, ICLR 2018\u2013Conf. Track Proc., Vancouver, 2018."},{"key":"7549_CR17","doi-asserted-by":"publisher","unstructured":"Xu, W., Evans, D., and Qi, Y., Feature squeezing: detecting adversarial examples in deep neural networks, Network and Distributed Systems Security Symp. (NDSS), San Diego, Calif., 2018. \u00a0https:\/\/doi.org\/10.14722\/ndss.2018.23198","DOI":"10.14722\/ndss.2018.23198"},{"key":"7549_CR18","unstructured":"Samangouei, P., Kabkab, M., and Chellappa, R., Defense-GAN: protecting classifiers against adversarial attacks using generative models, 6th Int. Conf. on Learning Representations, ICLR 2018\u2013Conf. Track Proc., Vancouver, 2018."},{"key":"7549_CR19","unstructured":"Shen, S., Jin, G., Gao, K., and Zhang, Y., APE-GAN: Adversarial perturbation elimination with GA, 2017. arXiv:1707.05474 [cs.CV]"},{"key":"7549_CR20","doi-asserted-by":"publisher","unstructured":"Carlini, N. and Wagner, D., Towards evaluating the robustness of neural networks, Proc. 2017 IEEE Symp. on Security and Privacy (SP), San Jose, Calif., 2017, IEEE, 2017, pp. 39\u201357. \u00a0https:\/\/doi.org\/10.1109\/SP.2017.49","DOI":"10.1109\/SP.2017.49"},{"key":"7549_CR21","doi-asserted-by":"publisher","unstructured":"Meng, D. and Chen, H., MagNet: A two-pronged defense against adversarial examples, CCS \u201917: Proc. 2017 ACM SIGSAC Conf. on Computer and Communications Security, Dallas, 2017, New York: Association for Computing Machinery, 2017, pp. 135\u2013147. \u00a0https:\/\/doi.org\/10.1145\/3133956.3134057","DOI":"10.1145\/3133956.3134057"},{"key":"7549_CR22","doi-asserted-by":"publisher","unstructured":"Liao, F., Liang, M., Dong, Y., Pang, T., Hu, X., and Zhu, J., Defense against adversarial attacks using high-level representation guided denoiser, 2018 IEEE\/CVF Conf. on Computer Vision and Pattern Recognition, Salt Lake City, Utah, 2018, IEEE, 2018, pp. 1778\u20131787. \u00a0https:\/\/doi.org\/10.1109\/CVPR.2018.00191","DOI":"10.1109\/CVPR.2018.00191"},{"key":"7549_CR23","unstructured":"TensorFlow library. https:\/\/www.tensorflow.org\/. Cited January 25, 2021."},{"key":"7549_CR24","unstructured":"Curated chest X-ray image dataset for COVID-19 detection, Kaggle. https:\/\/www.kaggle.com\/unaissait\/curated-chest-xray-image-dataset-for-covid19?select=Curated+X-Ray+Dataset. Cited February 20, 2021."},{"key":"7549_CR25","unstructured":"Chest Xray for COVID-19 detection, Kaggle, https:\/\/www.kaggle.com\/fusicfenta\/chest-xray-for-covid19-detection\/. Cited February 20, 2021."},{"key":"7549_CR26","unstructured":"COVID-19 chest X-ray image dataset, Kaggle. https:\/\/www.kaggle.com\/alifrahman\/covid19-chest-xray-image-dataset\/. Cited February 20, 2021."},{"key":"7549_CR27","unstructured":"COVID-19 radiography database, Kaggle. https:\/\/www.kaggle.com\/tawsifurrahman\/covid19-radiography-database\/. Cited February 20, 2021."},{"key":"7549_CR28","doi-asserted-by":"publisher","unstructured":"Zegzhda, D.P., Pavlenko, E., and Shtyrkina, A., Cybersecurity and control sustainability in digital economy and advanced production, The Economics of Digital Transformation, Devezas, T., Leit\u00e3o, J., Sarygulov, A., Eds., Studies on Entrepreneurship, Structural Change and Industrial Dynamics, Cham: Springer, 2021, pp.\u00a0173\u2013185. https:\/\/doi.org\/10.1007\/978-3-030-59959-1_11","DOI":"10.1007\/978-3-030-59959-1_11"},{"key":"7549_CR29","doi-asserted-by":"publisher","unstructured":"Dakhnovich, A., Moskvin, D., and Zegzhda, D., An approach for providing industrial control system sustainability in the age of digital transformation, IOP Conf. Ser.: Mater. Sci. Eng., 2019, vol. 497, p. 012006. \u00a0https:\/\/doi.org\/10.1088\/1757-899X\/497\/1\/012006","DOI":"10.1088\/1757-899X\/497\/1\/012006"},{"key":"7549_CR30","doi-asserted-by":"publisher","first-page":"983","DOI":"10.3103\/S014641162008012X","volume":"54","author":"A.D. Fatin","year":"2020","unstructured":"Fatin, A.D., Pavlenko, E.Yu., and Poltavtseva, M.A., A survey of mathematical methods for security analysis of cyberphysical systems, Autom. Control Comput. Sci., 2020, vol. 54, no. 8, pp. 983\u2013987. \u00a0https:\/\/doi.org\/10.3103\/S014641162008012X","journal-title":"Autom. Control Comput. Sci."}],"container-title":["Automatic Control and Computer Sciences"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.3103\/S0146411622080211.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/article\/10.3103\/S0146411622080211","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.3103\/S0146411622080211.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,3,15]],"date-time":"2026-03-15T22:04:04Z","timestamp":1773612244000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.3103\/S0146411622080211"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2022,12]]},"references-count":30,"journal-issue":{"issue":"8","published-print":{"date-parts":[[2022,12]]}},"alternative-id":["7549"],"URL":"https:\/\/doi.org\/10.3103\/s0146411622080211","relation":{},"ISSN":["0146-4116","1558-108X"],"issn-type":[{"value":"0146-4116","type":"print"},{"value":"1558-108X","type":"electronic"}],"subject":[],"published":{"date-parts":[[2022,12]]},"assertion":[{"value":"11 April 2022","order":1,"name":"received","label":"Received","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"18 April 2022","order":2,"name":"revised","label":"Revised","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"23 May 2022","order":3,"name":"accepted","label":"Accepted","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"28 February 2023","order":4,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"The authors declare that they have no conflicts of interest.","order":1,"name":"Ethics","group":{"name":"EthicsHeading","label":"CONFLICT OF INTEREST"}}]}}