{"id":"https://openalex.org/W4388820619","doi":"https://doi.org/10.1109/ats59501.2023.10318027","title":"On Detecting and Defending AdvDrop Adversarial Attacks by Image Blurring and Adaptive Noising","display_name":"On Detecting and Defending AdvDrop Adversarial Attacks by Image Blurring and Adaptive Noising","publication_year":2023,"publication_date":"2023-10-14","ids":{"openalex":"https://openalex.org/W4388820619","doi":"https://doi.org/10.1109/ats59501.2023.10318027"},"language":"en","primary_location":{"id":"doi:10.1109/ats59501.2023.10318027","is_oa":false,"landing_page_url":"https://doi.org/10.1109/ats59501.2023.10318027","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2023 IEEE 32nd Asian Test Symposium (ATS)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5001421482","display_name":"Hequan Zhang","orcid":null},"institutions":[{"id":"https://openalex.org/I153473198","display_name":"North China Electric Power University","ror":"https://ror.org/04qr5t414","country_code":"CN","type":"education","lineage":["https://openalex.org/I153473198"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Hequan Zhang","raw_affiliation_strings":["North China Electric Power University,Department of Electronic and Communication Engineering,P.R.China","Hebei Key Laboratory of Power Internet of Things Technology, North China Electric Power University, P.R.China","Department of Electronic and Communication Engineering, North China Electric Power University, P.R.China"],"affiliations":[{"raw_affiliation_string":"North China Electric Power University,Department of Electronic and Communication Engineering,P.R.China","institution_ids":["https://openalex.org/I153473198"]},{"raw_affiliation_string":"Hebei Key Laboratory of Power Internet of Things Technology, North China Electric Power University, P.R.China","institution_ids":["https://openalex.org/I153473198"]},{"raw_affiliation_string":"Department of Electronic and Communication Engineering, North China Electric Power University, P.R.China","institution_ids":["https://openalex.org/I153473198"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5101788379","display_name":"Song Jin","orcid":"https://orcid.org/0000-0003-1556-651X"},"institutions":[{"id":"https://openalex.org/I153473198","display_name":"North China Electric Power University","ror":"https://ror.org/04qr5t414","country_code":"CN","type":"education","lineage":["https://openalex.org/I153473198"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Song Jin","raw_affiliation_strings":["North China Electric Power University,Department of Electronic and Communication Engineering,P.R.China","Department of Electronic and Communication Engineering, North China Electric Power University, P.R.China","Hebei Key Laboratory of Power Internet of Things Technology, North China Electric Power University, P.R.China"],"affiliations":[{"raw_affiliation_string":"North China Electric Power University,Department of Electronic and Communication Engineering,P.R.China","institution_ids":["https://openalex.org/I153473198"]},{"raw_affiliation_string":"Department of Electronic and Communication Engineering, North China Electric Power University, P.R.China","institution_ids":["https://openalex.org/I153473198"]},{"raw_affiliation_string":"Hebei Key Laboratory of Power Internet of Things Technology, North China Electric Power University, P.R.China","institution_ids":["https://openalex.org/I153473198"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":2,"corresponding_author_ids":["https://openalex.org/A5001421482"],"corresponding_institution_ids":["https://openalex.org/I153473198"],"apc_list":null,"apc_paid":null,"fwci":0.1748,"has_fulltext":false,"cited_by_count":1,"citation_normalized_percentile":{"value":0.57716476,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":91,"max":95},"biblio":{"volume":null,"issue":null,"first_page":"1","last_page":"6"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9991000294685364,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9991000294685364,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9861999750137329,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11515","display_name":"Bacillus and Francisella bacterial research","score":0.984000027179718,"subfield":{"id":"https://openalex.org/subfields/1312","display_name":"Molecular Biology"},"field":{"id":"https://openalex.org/fields/13","display_name":"Biochemistry, Genetics and Molecular Biology"},"domain":{"id":"https://openalex.org/domains/1","display_name":"Life Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7258625030517578},{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.6944935321807861},{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness (evolution)","score":0.6727702021598816},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.6632698774337769},{"id":"https://openalex.org/keywords/image","display_name":"Image (mathematics)","score":0.5719330906867981},{"id":"https://openalex.org/keywords/pattern-recognition","display_name":"Pattern recognition (psychology)","score":0.44053107500076294},{"id":"https://openalex.org/keywords/computer-vision","display_name":"Computer vision","score":0.3975749611854553}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7258625030517578},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.6944935321807861},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.6727702021598816},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.6632698774337769},{"id":"https://openalex.org/C115961682","wikidata":"https://www.wikidata.org/wiki/Q860623","display_name":"Image (mathematics)","level":2,"score":0.5719330906867981},{"id":"https://openalex.org/C153180895","wikidata":"https://www.wikidata.org/wiki/Q7148389","display_name":"Pattern recognition (psychology)","level":2,"score":0.44053107500076294},{"id":"https://openalex.org/C31972630","wikidata":"https://www.wikidata.org/wiki/Q844240","display_name":"Computer vision","level":1,"score":0.3975749611854553},{"id":"https://openalex.org/C104317684","wikidata":"https://www.wikidata.org/wiki/Q7187","display_name":"Gene","level":2,"score":0.0},{"id":"https://openalex.org/C55493867","wikidata":"https://www.wikidata.org/wiki/Q7094","display_name":"Biochemistry","level":1,"score":0.0},{"id":"https://openalex.org/C185592680","wikidata":"https://www.wikidata.org/wiki/Q2329","display_name":"Chemistry","level":0,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/ats59501.2023.10318027","is_oa":false,"landing_page_url":"https://doi.org/10.1109/ats59501.2023.10318027","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2023 IEEE 32nd Asian Test Symposium (ATS)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":15,"referenced_works":["https://openalex.org/W1976865876","https://openalex.org/W2432142698","https://openalex.org/W2592864539","https://openalex.org/W2612372205","https://openalex.org/W2618043096","https://openalex.org/W2618492571","https://openalex.org/W2764207251","https://openalex.org/W2888233014","https://openalex.org/W2963490782","https://openalex.org/W2964082701","https://openalex.org/W3105009650","https://openalex.org/W3177320218","https://openalex.org/W3201579356","https://openalex.org/W4293846201","https://openalex.org/W4300725094"],"related_works":["https://openalex.org/W2502115930","https://openalex.org/W2482350142","https://openalex.org/W4246396837","https://openalex.org/W3176240006","https://openalex.org/W3126451824","https://openalex.org/W1561927205","https://openalex.org/W3191453585","https://openalex.org/W4297672492","https://openalex.org/W4288019534","https://openalex.org/W4310988119"],"abstract_inverted_index":{"AdvDrop,":[0,49],"a":[1,39,66,99,143,200],"recently":[2],"emerged":[3],"adversarial":[4,8,21,61,90,146],"attack":[5,22],"method,":[6,165],"generates":[7],"samples":[9,62,132,147],"by":[10,151,160,214],"dropping":[11],"information":[12,174],"from":[13,137],"the":[14,19,43,86,102,105,109,114,117,119,127,130,135,145,153,156,163,172,185,191,195,215,234,237],"clean":[15,131],"images.":[16],"Compared":[17],"with":[18,74,179],"traditional":[20],"based":[23,34,69],"on":[24,70,126,206,224],"adding":[25],"perturbation,":[26],"AdvDrop":[27,60],"is":[28,94],"more":[29,205],"robust":[30],"against":[31],"current":[32,238],"de-noising":[33],"defense":[35,67,164,222],"techniques,":[36],"which":[37],"poses":[38],"great":[40],"threat":[41],"to":[42,58,84,97,101,113,170],"security":[44],"of":[45,89,104,116,129,155,187],"DNNs.":[46],"To":[47],"defend":[48],"this":[50,182],"paper":[51],"proposes":[52,65],"an":[53],"image":[54,107,140,192,197,208],"blurring":[55,93,120],"detection":[56,220],"method":[57,68],"detect":[59],"and":[63,76,221,226,233],"also":[64],"adaptive":[71,168],"noising":[72,169],"combined":[73],"fast":[75],"flexible":[77],"denoising":[78],"convolution":[79],"neural":[80],"network":[81],"(FFDNet)":[82],"filtering":[83],"restore":[85],"correct":[87],"class":[88],"samples.":[91],"Image":[92],"first":[95],"conducted":[96],"add":[98],"mask":[100],"spectrum":[103],"input":[106],"in":[108,175,190],"frequency":[110],"domain.":[111],"Thanks":[112],"robustness":[115],"DNN,":[118],"operation":[121],"has":[122],"no":[123],"significant":[124],"impact":[125],"accuracy":[128],"but":[133],"prevents":[134],"attackers":[136],"extracting":[138],"useful":[139],"features.":[141],"As":[142,199],"result,":[144,201],"can":[148,203],"be":[149],"detected":[150],"analyzing":[152],"consistency":[154],"predicted":[157],"classification":[158],"output":[159],"DNN.":[161],"In":[162],"we":[166],"introduce":[167],"enhance":[171],"high-frequency":[173],"each":[176],"image.":[177],"Combined":[178],"FFDNet":[180],"filtering,":[181],"strategy":[183],"increases":[184],"diversity":[186],"local":[188],"changes":[189],"while":[193],"preserving":[194],"overall":[196],"structure.":[198],"DNN":[202,231],"focus":[204],"essential":[207],"features":[209],"rather":[210],"than":[211],"those":[212],"created":[213],"attacker.":[216],"We":[217],"evaluated":[218],"our":[219],"methods":[223],"Cifar-10":[225],"ImageNet":[227],"datasets":[228],"for":[229],"some":[230],"models,":[232],"results":[235],"surpassed":[236],"state-of-the-art":[239],"methods..":[240]},"counts_by_year":[{"year":2025,"cited_by_count":1}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
