{"id":"https://openalex.org/W3008244299","doi":"https://doi.org/10.1109/bigdata47090.2019.9006090","title":"Denoising and Verification Cross-Layer Ensemble Against Black-box Adversarial Attacks","display_name":"Denoising and Verification Cross-Layer Ensemble Against Black-box Adversarial Attacks","publication_year":2019,"publication_date":"2019-12-01","ids":{"openalex":"https://openalex.org/W3008244299","doi":"https://doi.org/10.1109/bigdata47090.2019.9006090","mag":"3008244299"},"language":"en","primary_location":{"id":"doi:10.1109/bigdata47090.2019.9006090","is_oa":false,"landing_page_url":"https://doi.org/10.1109/bigdata47090.2019.9006090","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2019 IEEE International Conference on Big Data (Big Data)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5028240524","display_name":"Ka-Ho Chow","orcid":"https://orcid.org/0000-0001-5917-2577"},"institutions":[{"id":"https://openalex.org/I130701444","display_name":"Georgia Institute of Technology","ror":"https://ror.org/01zkghx44","country_code":"US","type":"education","lineage":["https://openalex.org/I130701444"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"Ka-Ho Chow","raw_affiliation_strings":["School of Computer Science, Georgia Institute of Technology, Atlanta, GA, USA"],"affiliations":[{"raw_affiliation_string":"School of Computer Science, Georgia Institute of Technology, Atlanta, GA, USA","institution_ids":["https://openalex.org/I130701444"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5069331320","display_name":"Wenqi Wei","orcid":"https://orcid.org/0000-0001-9177-114X"},"institutions":[{"id":"https://openalex.org/I130701444","display_name":"Georgia Institute of Technology","ror":"https://ror.org/01zkghx44","country_code":"US","type":"education","lineage":["https://openalex.org/I130701444"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Wenqi Wei","raw_affiliation_strings":["School of Computer Science, Georgia Institute of Technology, Atlanta, GA, USA"],"affiliations":[{"raw_affiliation_string":"School of Computer Science, Georgia Institute of Technology, Atlanta, GA, USA","institution_ids":["https://openalex.org/I130701444"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5060093535","display_name":"Yanzhao Wu","orcid":"https://orcid.org/0000-0001-8761-5486"},"institutions":[{"id":"https://openalex.org/I130701444","display_name":"Georgia Institute of Technology","ror":"https://ror.org/01zkghx44","country_code":"US","type":"education","lineage":["https://openalex.org/I130701444"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Yanzhao Wu","raw_affiliation_strings":["School of Computer Science, Georgia Institute of Technology, Atlanta, GA, USA"],"affiliations":[{"raw_affiliation_string":"School of Computer Science, Georgia Institute of Technology, Atlanta, GA, USA","institution_ids":["https://openalex.org/I130701444"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5100343991","display_name":"Ling Liu","orcid":"https://orcid.org/0000-0002-4138-3082"},"institutions":[{"id":"https://openalex.org/I130701444","display_name":"Georgia Institute of Technology","ror":"https://ror.org/01zkghx44","country_code":"US","type":"education","lineage":["https://openalex.org/I130701444"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Ling Liu","raw_affiliation_strings":["School of Computer Science, Georgia Institute of Technology, Atlanta, GA, USA"],"affiliations":[{"raw_affiliation_string":"School of Computer Science, Georgia Institute of Technology, Atlanta, GA, USA","institution_ids":["https://openalex.org/I130701444"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5028240524"],"corresponding_institution_ids":["https://openalex.org/I130701444"],"apc_list":null,"apc_paid":null,"fwci":2.1675,"has_fulltext":false,"cited_by_count":20,"citation_normalized_percentile":{"value":0.90918931,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":90,"max":99},"biblio":{"volume":null,"issue":null,"first_page":"1282","last_page":"1291"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9908000230789185,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9420999884605408,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8169945478439331},{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.8157228231430054},{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness (evolution)","score":0.710247278213501},{"id":"https://openalex.org/keywords/deep-neural-networks","display_name":"Deep neural networks","score":0.645635187625885},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.627575695514679},{"id":"https://openalex.org/keywords/black-box","display_name":"Black box","score":0.6201933026313782},{"id":"https://openalex.org/keywords/benchmark","display_name":"Benchmark (surveying)","score":0.6142981648445129},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.5760794878005981},{"id":"https://openalex.org/keywords/ensemble-learning","display_name":"Ensemble learning","score":0.5508062839508057},{"id":"https://openalex.org/keywords/ensemble-forecasting","display_name":"Ensemble forecasting","score":0.5375335812568665},{"id":"https://openalex.org/keywords/deep-learning","display_name":"Deep learning","score":0.40845510363578796},{"id":"https://openalex.org/keywords/pattern-recognition","display_name":"Pattern recognition (psychology)","score":0.32508349418640137}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8169945478439331},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.8157228231430054},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.710247278213501},{"id":"https://openalex.org/C2984842247","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep neural networks","level":3,"score":0.645635187625885},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.627575695514679},{"id":"https://openalex.org/C94966114","wikidata":"https://www.wikidata.org/wiki/Q29256","display_name":"Black box","level":2,"score":0.6201933026313782},{"id":"https://openalex.org/C185798385","wikidata":"https://www.wikidata.org/wiki/Q1161707","display_name":"Benchmark (surveying)","level":2,"score":0.6142981648445129},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.5760794878005981},{"id":"https://openalex.org/C45942800","wikidata":"https://www.wikidata.org/wiki/Q245652","display_name":"Ensemble learning","level":2,"score":0.5508062839508057},{"id":"https://openalex.org/C119898033","wikidata":"https://www.wikidata.org/wiki/Q3433888","display_name":"Ensemble forecasting","level":2,"score":0.5375335812568665},{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.40845510363578796},{"id":"https://openalex.org/C153180895","wikidata":"https://www.wikidata.org/wiki/Q7148389","display_name":"Pattern recognition (psychology)","level":2,"score":0.32508349418640137},{"id":"https://openalex.org/C185592680","wikidata":"https://www.wikidata.org/wiki/Q2329","display_name":"Chemistry","level":0,"score":0.0},{"id":"https://openalex.org/C13280743","wikidata":"https://www.wikidata.org/wiki/Q131089","display_name":"Geodesy","level":1,"score":0.0},{"id":"https://openalex.org/C104317684","wikidata":"https://www.wikidata.org/wiki/Q7187","display_name":"Gene","level":2,"score":0.0},{"id":"https://openalex.org/C55493867","wikidata":"https://www.wikidata.org/wiki/Q7094","display_name":"Biochemistry","level":1,"score":0.0},{"id":"https://openalex.org/C205649164","wikidata":"https://www.wikidata.org/wiki/Q1071","display_name":"Geography","level":0,"score":0.0}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1109/bigdata47090.2019.9006090","is_oa":false,"landing_page_url":"https://doi.org/10.1109/bigdata47090.2019.9006090","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2019 IEEE International Conference on Big Data (Big Data)","raw_type":"proceedings-article"},{"id":"pmh:oai:hub.hku.hk:10722/343297","is_oa":false,"landing_page_url":"https://hub.hku.hk/handle/10722/343297","pdf_url":null,"source":{"id":"https://openalex.org/S4377196271","display_name":"The HKU Scholars Hub (University of Hong Kong)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I889458895","host_organization_name":"University of Hong Kong","host_organization_lineage":["https://openalex.org/I889458895"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"Conference_Paper"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":59,"referenced_works":["https://openalex.org/W1019462315","https://openalex.org/W1673923490","https://openalex.org/W1945616565","https://openalex.org/W1966976587","https://openalex.org/W1983320747","https://openalex.org/W2025768430","https://openalex.org/W2135184018","https://openalex.org/W2145094598","https://openalex.org/W2146337213","https://openalex.org/W2151503710","https://openalex.org/W2163605009","https://openalex.org/W2180612164","https://openalex.org/W2243397390","https://openalex.org/W2331128040","https://openalex.org/W2408141691","https://openalex.org/W2460937040","https://openalex.org/W2603766943","https://openalex.org/W2607219512","https://openalex.org/W2612983688","https://openalex.org/W2614634292","https://openalex.org/W2618043096","https://openalex.org/W2620038827","https://openalex.org/W2774018344","https://openalex.org/W2810080315","https://openalex.org/W2951696358","https://openalex.org/W2963001136","https://openalex.org/W2963207607","https://openalex.org/W2963446712","https://openalex.org/W2963744840","https://openalex.org/W2963857521","https://openalex.org/W2963895533","https://openalex.org/W2964082701","https://openalex.org/W2964153729","https://openalex.org/W2964197269","https://openalex.org/W2964253222","https://openalex.org/W2997574889","https://openalex.org/W3007103623","https://openalex.org/W3102720581","https://openalex.org/W3106099468","https://openalex.org/W4293846201","https://openalex.org/W4294214983","https://openalex.org/W4300511536","https://openalex.org/W6637162671","https://openalex.org/W6638484148","https://openalex.org/W6640425456","https://openalex.org/W6680588873","https://openalex.org/W6681096077","https://openalex.org/W6681686951","https://openalex.org/W6682614849","https://openalex.org/W6684191040","https://openalex.org/W6702130928","https://openalex.org/W6714069269","https://openalex.org/W6719080892","https://openalex.org/W6737496325","https://openalex.org/W6739868092","https://openalex.org/W6745272055","https://openalex.org/W6748204703","https://openalex.org/W6753140532","https://openalex.org/W6786600665"],"related_works":["https://openalex.org/W2950183588","https://openalex.org/W3080754722","https://openalex.org/W4383221314","https://openalex.org/W3093978547","https://openalex.org/W2953536436","https://openalex.org/W3009622996","https://openalex.org/W3203790781","https://openalex.org/W4313346231","https://openalex.org/W2738001131","https://openalex.org/W4285785480"],"abstract_inverted_index":{"Deep":[0],"neural":[1],"networks":[2],"(DNNs)":[3],"have":[4,37],"demonstrated":[5],"impressive":[6],"performance":[7],"on":[8,99],"many":[9],"challenging":[10],"machine":[11],"learning":[12],"tasks.":[13],"However,":[14],"DNNs":[15],"are":[16],"vulnerable":[17],"to":[18,27,40,83],"adversarial":[19,42,92,124],"inputs":[20,43,125],"generated":[21],"by":[22,78],"adding":[23],"maliciously":[24],"crafted":[25],"perturbations":[26],"the":[28,47,85,88,134],"benign":[29],"inputs.":[30],"As":[31],"a":[32,60,119],"growing":[33],"number":[34],"of":[35,44,87,122,136],"attacks":[36,98],"been":[38,52],"reported":[39],"generate":[41],"varying":[45],"sophistication,":[46],"defense-attack":[48],"arms":[49],"race":[50],"has":[51],"accelerated.":[53],"In":[54],"this":[55],"paper,":[56],"we":[57,103],"present":[58],"MODEF,":[59],"cross-layer":[61],"model":[62,70,75,80,90],"diversity":[63],"ensemble":[64,72,77],"framework.":[65],"MODEF":[66,106],"intelligently":[67],"combines":[68],"unsupervised":[69],"denoising":[71],"with":[73,113,130],"supervised":[74],"verification":[76],"quantifying":[79],"diversity,":[81],"aiming":[82],"boost":[84],"robustness":[86],"target":[89],"against":[91],"examples.":[93],"Evaluated":[94],"using":[95],"eleven":[96],"representative":[97],"popular":[100],"benchmark":[101],"datasets,":[102],"show":[104],"that":[105],"achieves":[107],"remarkable":[108],"defense":[109,115],"success":[110],"rates,":[111],"compared":[112],"existing":[114],"methods,":[116],"and":[117,126],"provides":[118],"superior":[120],"capability":[121],"repairing":[123],"making":[127],"correct":[128],"predictions":[129],"high":[131],"accuracy":[132],"in":[133],"presence":[135],"black-box":[137],"attacks.":[138]},"counts_by_year":[{"year":2025,"cited_by_count":2},{"year":2024,"cited_by_count":1},{"year":2023,"cited_by_count":2},{"year":2022,"cited_by_count":3},{"year":2021,"cited_by_count":4},{"year":2020,"cited_by_count":7},{"year":2019,"cited_by_count":1}],"updated_date":"2026-03-18T14:38:29.013473","created_date":"2025-10-10T00:00:00"}
