{"id":"https://openalex.org/W4366677946","doi":"https://doi.org/10.1007/978-3-031-30823-9_11","title":"OccRob: Efficient SMT-Based Occlusion Robustness Verification of Deep Neural Networks","display_name":"OccRob: Efficient SMT-Based Occlusion Robustness Verification of Deep Neural Networks","publication_year":2023,"publication_date":"2023-01-01","ids":{"openalex":"https://openalex.org/W4366677946","doi":"https://doi.org/10.1007/978-3-031-30823-9_11"},"language":"en","primary_location":{"id":"doi:10.1007/978-3-031-30823-9_11","is_oa":true,"landing_page_url":"https://doi.org/10.1007/978-3-031-30823-9_11","pdf_url":"https://link.springer.com/content/pdf/10.1007/978-3-031-30823-9_11.pdf","source":{"id":"https://openalex.org/S106296714","display_name":"Lecture notes in computer science","issn_l":"0302-9743","issn":["0302-9743","1611-3349"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319900","host_organization_name":"Springer Science+Business Media","host_organization_lineage":["https://openalex.org/P4310319900","https://openalex.org/P4310319965"],"host_organization_lineage_names":["Springer Science+Business Media","Springer Nature"],"type":"book series"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Lecture Notes in Computer Science","raw_type":"book-chapter"},"type":"book-chapter","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"hybrid","oa_url":"https://link.springer.com/content/pdf/10.1007/978-3-031-30823-9_11.pdf","any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5041815536","display_name":"Xingwu Guo","orcid":null},"institutions":[{"id":"https://openalex.org/I4210139618","display_name":"Shanghai Key Laboratory of Trustworthy Computing","ror":"https://ror.org/030qbr085","country_code":"CN","type":"facility","lineage":["https://openalex.org/I4210139618"]},{"id":"https://openalex.org/I66867065","display_name":"East China Normal University","ror":"https://ror.org/02n96ep67","country_code":"CN","type":"education","lineage":["https://openalex.org/I66867065"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Xingwu Guo","raw_affiliation_strings":["Shanghai Key Laboratory of Trustworthy Computing, East China Normal University, Shanghai, China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Shanghai Key Laboratory of Trustworthy Computing, East China Normal University, Shanghai, China","institution_ids":["https://openalex.org/I4210139618","https://openalex.org/I66867065"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5101501759","display_name":"Ziwei Zhou","orcid":"https://orcid.org/0000-0002-2968-355X"},"institutions":[{"id":"https://openalex.org/I4210139618","display_name":"Shanghai Key Laboratory of Trustworthy Computing","ror":"https://ror.org/030qbr085","country_code":"CN","type":"facility","lineage":["https://openalex.org/I4210139618"]},{"id":"https://openalex.org/I66867065","display_name":"East China Normal University","ror":"https://ror.org/02n96ep67","country_code":"CN","type":"education","lineage":["https://openalex.org/I66867065"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Ziwei Zhou","raw_affiliation_strings":["Shanghai Key Laboratory of Trustworthy Computing, East China Normal University, Shanghai, China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Shanghai Key Laboratory of Trustworthy Computing, East China Normal University, Shanghai, China","institution_ids":["https://openalex.org/I4210139618","https://openalex.org/I66867065"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5101993716","display_name":"Yueling Zhang","orcid":"https://orcid.org/0000-0002-5290-5691"},"institutions":[{"id":"https://openalex.org/I4210139618","display_name":"Shanghai Key Laboratory of Trustworthy Computing","ror":"https://ror.org/030qbr085","country_code":"CN","type":"facility","lineage":["https://openalex.org/I4210139618"]},{"id":"https://openalex.org/I66867065","display_name":"East China Normal University","ror":"https://ror.org/02n96ep67","country_code":"CN","type":"education","lineage":["https://openalex.org/I66867065"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yueling Zhang","raw_affiliation_strings":["Shanghai Key Laboratory of Trustworthy Computing, East China Normal University, Shanghai, China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Shanghai Key Laboratory of Trustworthy Computing, East China Normal University, Shanghai, China","institution_ids":["https://openalex.org/I4210139618","https://openalex.org/I66867065"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5044509944","display_name":"Guy Katz","orcid":"https://orcid.org/0000-0001-5292-801X"},"institutions":[{"id":"https://openalex.org/I197251160","display_name":"Hebrew University of Jerusalem","ror":"https://ror.org/03qxff017","country_code":"IL","type":"education","lineage":["https://openalex.org/I197251160"]}],"countries":["IL"],"is_corresponding":false,"raw_author_name":"Guy Katz","raw_affiliation_strings":["The Hebrew University of Jerusalem, Jerusalem, Israel"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"The Hebrew University of Jerusalem, Jerusalem, Israel","institution_ids":["https://openalex.org/I197251160"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5100402983","display_name":"Min Zhang","orcid":"https://orcid.org/0000-0003-1938-2902"},"institutions":[{"id":"https://openalex.org/I4210139618","display_name":"Shanghai Key Laboratory of Trustworthy Computing","ror":"https://ror.org/030qbr085","country_code":"CN","type":"facility","lineage":["https://openalex.org/I4210139618"]},{"id":"https://openalex.org/I66867065","display_name":"East China Normal University","ror":"https://ror.org/02n96ep67","country_code":"CN","type":"education","lineage":["https://openalex.org/I66867065"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Min Zhang","raw_affiliation_strings":["Shanghai Key Laboratory of Trustworthy Computing, East China Normal University, Shanghai, China"],"raw_orcid":"https://orcid.org/0000-0003-1938-2902","affiliations":[{"raw_affiliation_string":"Shanghai Key Laboratory of Trustworthy Computing, East China Normal University, Shanghai, China","institution_ids":["https://openalex.org/I4210139618","https://openalex.org/I66867065"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":5,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":{"value":5000,"currency":"EUR","value_usd":5392},"apc_paid":{"value":5000,"currency":"EUR","value_usd":5392},"fwci":5.4874,"has_fulltext":true,"cited_by_count":11,"citation_normalized_percentile":{"value":0.96312957,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":95,"max":98},"biblio":{"volume":null,"issue":null,"first_page":"208","last_page":"226"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T14117","display_name":"Integrated Circuits and Semiconductor Failure Analysis","score":0.98089998960495,"subfield":{"id":"https://openalex.org/subfields/2208","display_name":"Electrical and Electronic Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9746000170707703,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness (evolution)","score":0.8835975527763367},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8397722244262695},{"id":"https://openalex.org/keywords/deep-neural-networks","display_name":"Deep neural networks","score":0.6724463701248169},{"id":"https://openalex.org/keywords/artificial-neural-network","display_name":"Artificial neural network","score":0.612849235534668},{"id":"https://openalex.org/keywords/counterexample","display_name":"Counterexample","score":0.5143774151802063},{"id":"https://openalex.org/keywords/occlusion","display_name":"Occlusion","score":0.42338889837265015},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.4171309769153595},{"id":"https://openalex.org/keywords/mathematics","display_name":"Mathematics","score":0.06372514367103577}],"concepts":[{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.8835975527763367},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8397722244262695},{"id":"https://openalex.org/C2984842247","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep neural networks","level":3,"score":0.6724463701248169},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.612849235534668},{"id":"https://openalex.org/C162838799","wikidata":"https://www.wikidata.org/wiki/Q596077","display_name":"Counterexample","level":2,"score":0.5143774151802063},{"id":"https://openalex.org/C2776268601","wikidata":"https://www.wikidata.org/wiki/Q968808","display_name":"Occlusion","level":2,"score":0.42338889837265015},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.4171309769153595},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.06372514367103577},{"id":"https://openalex.org/C164705383","wikidata":"https://www.wikidata.org/wiki/Q10379","display_name":"Cardiology","level":1,"score":0.0},{"id":"https://openalex.org/C55493867","wikidata":"https://www.wikidata.org/wiki/Q7094","display_name":"Biochemistry","level":1,"score":0.0},{"id":"https://openalex.org/C71924100","wikidata":"https://www.wikidata.org/wiki/Q11190","display_name":"Medicine","level":0,"score":0.0},{"id":"https://openalex.org/C185592680","wikidata":"https://www.wikidata.org/wiki/Q2329","display_name":"Chemistry","level":0,"score":0.0},{"id":"https://openalex.org/C104317684","wikidata":"https://www.wikidata.org/wiki/Q7187","display_name":"Gene","level":2,"score":0.0},{"id":"https://openalex.org/C118615104","wikidata":"https://www.wikidata.org/wiki/Q121416","display_name":"Discrete mathematics","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1007/978-3-031-30823-9_11","is_oa":true,"landing_page_url":"https://doi.org/10.1007/978-3-031-30823-9_11","pdf_url":"https://link.springer.com/content/pdf/10.1007/978-3-031-30823-9_11.pdf","source":{"id":"https://openalex.org/S106296714","display_name":"Lecture notes in computer science","issn_l":"0302-9743","issn":["0302-9743","1611-3349"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319900","host_organization_name":"Springer Science+Business Media","host_organization_lineage":["https://openalex.org/P4310319900","https://openalex.org/P4310319965"],"host_organization_lineage_names":["Springer Science+Business Media","Springer Nature"],"type":"book series"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Lecture Notes in Computer Science","raw_type":"book-chapter"}],"best_oa_location":{"id":"doi:10.1007/978-3-031-30823-9_11","is_oa":true,"landing_page_url":"https://doi.org/10.1007/978-3-031-30823-9_11","pdf_url":"https://link.springer.com/content/pdf/10.1007/978-3-031-30823-9_11.pdf","source":{"id":"https://openalex.org/S106296714","display_name":"Lecture notes in computer science","issn_l":"0302-9743","issn":["0302-9743","1611-3349"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319900","host_organization_name":"Springer Science+Business Media","host_organization_lineage":["https://openalex.org/P4310319900","https://openalex.org/P4310319965"],"host_organization_lineage_names":["Springer Science+Business Media","Springer Nature"],"type":"book series"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Lecture Notes in Computer Science","raw_type":"book-chapter"},"sustainable_development_goals":[],"awards":[{"id":"https://openalex.org/G2530119350","display_name":null,"funder_award_id":"20DZ1100300","funder_id":"https://openalex.org/F4320321885","funder_display_name":"Science and Technology Commission of Shanghai Municipality"},{"id":"https://openalex.org/G4575208957","display_name":null,"funder_award_id":"61872144","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G5676270524","display_name":null,"funder_award_id":"2020AAA0107800","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G6956063465","display_name":null,"funder_award_id":"62161146001","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G7058271836","display_name":null,"funder_award_id":"20DZ1100300","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G7068220248","display_name":null,"funder_award_id":"3420/21","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G7611692203","display_name":null,"funder_award_id":"22510750100","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"}],"funders":[{"id":"https://openalex.org/F4320321001","display_name":"National Natural Science Foundation of China","ror":"https://ror.org/01h0zpd94"},{"id":"https://openalex.org/F4320321885","display_name":"Science and Technology Commission of Shanghai Municipality","ror":"https://ror.org/03kt66j61"},{"id":"https://openalex.org/F4320322252","display_name":"Israel Science Foundation","ror":"https://ror.org/04sazxf24"}],"has_content":{"pdf":true,"grobid_xml":false},"content_urls":{"pdf":"https://content.openalex.org/works/W4366677946.pdf"},"referenced_works_count":34,"referenced_works":["https://openalex.org/W2002427601","https://openalex.org/W2171074980","https://openalex.org/W2543296129","https://openalex.org/W2594877703","https://openalex.org/W2616028256","https://openalex.org/W2765424254","https://openalex.org/W2784158897","https://openalex.org/W2794609696","https://openalex.org/W2798302089","https://openalex.org/W2900153411","https://openalex.org/W2917325587","https://openalex.org/W2957311447","https://openalex.org/W2963327228","https://openalex.org/W2963998105","https://openalex.org/W2981408674","https://openalex.org/W2981639301","https://openalex.org/W2982540258","https://openalex.org/W2990945337","https://openalex.org/W2992496131","https://openalex.org/W2998709064","https://openalex.org/W3034215083","https://openalex.org/W3091633490","https://openalex.org/W3102139284","https://openalex.org/W3103557498","https://openalex.org/W3107828565","https://openalex.org/W3140205966","https://openalex.org/W3168226009","https://openalex.org/W3186232356","https://openalex.org/W4211137390","https://openalex.org/W4211230886","https://openalex.org/W4366677946","https://openalex.org/W6600466347","https://openalex.org/W6601667473","https://openalex.org/W6618372016"],"related_works":["https://openalex.org/W2349952486","https://openalex.org/W1489260687","https://openalex.org/W2775700832","https://openalex.org/W2587222766","https://openalex.org/W4379116102","https://openalex.org/W3210882018","https://openalex.org/W2970990331","https://openalex.org/W3207178610","https://openalex.org/W3211782752","https://openalex.org/W4309864825"],"abstract_inverted_index":{"Abstract":[0],"Occlusion":[1],"is":[2,100],"a":[3,18,105,112,144],"prevalent":[4],"and":[5,64,97,117,148,167,176],"easily":[6],"realizable":[7],"semantic":[8],"perturbation":[9],"to":[10,43,49,68,179],"deep":[11],"neural":[12,115,126,135],"networks":[13,116,127],"(DNNs).":[14],"It":[15],"can":[16,128],"fool":[17],"DNN":[19],"into":[20],"misclassifying":[21],"an":[22],"input":[23],"image":[24],"by":[25],"occluding":[26],"some":[27],"segments,":[28],"possibly":[29],"resulting":[30],"in":[31,37,143,169],"severe":[32],"errors.":[33],"Therefore,":[34],"DNNs":[35,58,184],"planted":[36],"safety-critical":[38],"systems":[39],"should":[40],"be":[41,44,129],"verified":[42,131],"robust":[45],"against":[46,173],"occlusions":[47,110],"prior":[48],"deployment.":[50],"However,":[51],"most":[52],"existing":[53],"robustness":[54,87,94,172],"verification":[55,95,137],"approaches":[56],"for":[57,82,108],"are":[59,65,185],"focused":[60],"on":[61,153],"non-semantic":[62],"perturbations":[63],"not":[66,186],"suited":[67],"the":[69,77,85,92,124],"occlusion":[70,86,93,158],"case.":[71],"In":[72],"this":[73],"paper,":[74],"we":[75,103],"propose":[76],"first":[78],"efficient,":[79],"SMT-based":[80,134],"approach":[81,107,142],"formally":[83],"verifying":[84,170],"of":[88,114],"DNNs.":[89],"We":[90,139],"formulate":[91],"problem":[96],"prove":[98],"it":[99],"NP-complete.":[101],"Then,":[102],"devise":[104],"novel":[106],"encoding":[109],"as":[111],"part":[113],"introduce":[118],"two":[119],"acceleration":[120],"techniques":[121],"so":[122],"that":[123],"extended":[125],"efficiently":[130],"using":[132],"off-the-shelf,":[133],"network":[136],"tools.":[138],"implement":[140],"our":[141,164],"prototype":[145],"called":[146],"OccRob":[147],"extensively":[149],"evaluate":[150],"its":[151,177],"performance":[152],"benchmark":[154],"datasets":[155],"with":[156],"various":[157,174],"variants.":[159],"The":[160],"experimental":[161],"results":[162],"demonstrate":[163],"approach\u2019s":[165],"effectiveness":[166],"efficiency":[168],"DNNs\u2019":[171],"occlusions,":[175],"ability":[178],"generate":[180],"counterexamples":[181],"when":[182],"these":[183],"robust.":[187]},"counts_by_year":[{"year":2025,"cited_by_count":2},{"year":2024,"cited_by_count":3},{"year":2023,"cited_by_count":6}],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2025-10-10T00:00:00"}
