{"id":"https://openalex.org/W4408352133","doi":"https://doi.org/10.1109/icassp49660.2025.10888268","title":"Improving Adversarial Transferability through Channel-wise Scaling and Frequency-random Dropping","display_name":"Improving Adversarial Transferability through Channel-wise Scaling and Frequency-random Dropping","publication_year":2025,"publication_date":"2025-03-12","ids":{"openalex":"https://openalex.org/W4408352133","doi":"https://doi.org/10.1109/icassp49660.2025.10888268"},"language":"en","primary_location":{"id":"doi:10.1109/icassp49660.2025.10888268","is_oa":false,"landing_page_url":"https://doi.org/10.1109/icassp49660.2025.10888268","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"ICASSP 2025 - 2025 IEEE International Conference on Acoustics, Speech and Signal Processing (ICASSP)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5100326679","display_name":"Pei Chen","orcid":"https://orcid.org/0000-0002-2017-576X"},"institutions":[{"id":"https://openalex.org/I162868743","display_name":"Tianjin University","ror":"https://ror.org/012tb2g32","country_code":"CN","type":"education","lineage":["https://openalex.org/I162868743"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Pei Chen","raw_affiliation_strings":["Tianjin University,College of Intelligence and Computing,Tianjin,China"],"affiliations":[{"raw_affiliation_string":"Tianjin University,College of Intelligence and Computing,Tianjin,China","institution_ids":["https://openalex.org/I162868743"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100736532","display_name":"Zhiyong Feng","orcid":"https://orcid.org/0000-0001-8158-7453"},"institutions":[{"id":"https://openalex.org/I162868743","display_name":"Tianjin University","ror":"https://ror.org/012tb2g32","country_code":"CN","type":"education","lineage":["https://openalex.org/I162868743"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Zhiyong Feng","raw_affiliation_strings":["Tianjin University,College of Intelligence and Computing,Tianjin,China"],"affiliations":[{"raw_affiliation_string":"Tianjin University,College of Intelligence and Computing,Tianjin,China","institution_ids":["https://openalex.org/I162868743"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100673909","display_name":"Meng Xing","orcid":"https://orcid.org/0000-0001-6082-4675"},"institutions":[{"id":"https://openalex.org/I162868743","display_name":"Tianjin University","ror":"https://ror.org/012tb2g32","country_code":"CN","type":"education","lineage":["https://openalex.org/I162868743"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Meng Xing","raw_affiliation_strings":["Tianjin University,College of Intelligence and Computing,Tianjin,China"],"affiliations":[{"raw_affiliation_string":"Tianjin University,College of Intelligence and Computing,Tianjin,China","institution_ids":["https://openalex.org/I162868743"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100395366","display_name":"Yiming Zhang","orcid":"https://orcid.org/0000-0002-5780-0709"},"institutions":[{"id":"https://openalex.org/I162868743","display_name":"Tianjin University","ror":"https://ror.org/012tb2g32","country_code":"CN","type":"education","lineage":["https://openalex.org/I162868743"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yiming Zhang","raw_affiliation_strings":["Tianjin University,College of Intelligence and Computing,Tianjin,China"],"affiliations":[{"raw_affiliation_string":"Tianjin University,College of Intelligence and Computing,Tianjin,China","institution_ids":["https://openalex.org/I162868743"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5080383203","display_name":"Jinqing Zheng","orcid":"https://orcid.org/0000-0002-1772-0085"},"institutions":[{"id":"https://openalex.org/I162868743","display_name":"Tianjin University","ror":"https://ror.org/012tb2g32","country_code":"CN","type":"education","lineage":["https://openalex.org/I162868743"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Jinqing Zheng","raw_affiliation_strings":["Tianjin University,College of Intelligence and Computing,Tianjin,China"],"affiliations":[{"raw_affiliation_string":"Tianjin University,College of Intelligence and Computing,Tianjin,China","institution_ids":["https://openalex.org/I162868743"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":5,"corresponding_author_ids":["https://openalex.org/A5100326679"],"corresponding_institution_ids":["https://openalex.org/I162868743"],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":{"value":0.05057994,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":"1","last_page":"5"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9932000041007996,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9932000041007996,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12122","display_name":"Physical Unclonable Functions (PUFs) and Hardware Security","score":0.9828000068664551,"subfield":{"id":"https://openalex.org/subfields/1708","display_name":"Hardware and Architecture"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10828","display_name":"Biometric Identification and Security","score":0.9693999886512756,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/transferability","display_name":"Transferability","score":0.8515983819961548},{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.7630174160003662},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.6564834117889404},{"id":"https://openalex.org/keywords/scaling","display_name":"Scaling","score":0.6412997245788574},{"id":"https://openalex.org/keywords/channel","display_name":"Channel (broadcasting)","score":0.4783691465854645},{"id":"https://openalex.org/keywords/computer-network","display_name":"Computer network","score":0.2433764636516571},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.20312818884849548},{"id":"https://openalex.org/keywords/mathematics","display_name":"Mathematics","score":0.2015204131603241},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.10355278849601746}],"concepts":[{"id":"https://openalex.org/C61272859","wikidata":"https://www.wikidata.org/wiki/Q7834031","display_name":"Transferability","level":3,"score":0.8515983819961548},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.7630174160003662},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6564834117889404},{"id":"https://openalex.org/C99844830","wikidata":"https://www.wikidata.org/wiki/Q102441924","display_name":"Scaling","level":2,"score":0.6412997245788574},{"id":"https://openalex.org/C127162648","wikidata":"https://www.wikidata.org/wiki/Q16858953","display_name":"Channel (broadcasting)","level":2,"score":0.4783691465854645},{"id":"https://openalex.org/C31258907","wikidata":"https://www.wikidata.org/wiki/Q1301371","display_name":"Computer network","level":1,"score":0.2433764636516571},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.20312818884849548},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.2015204131603241},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.10355278849601746},{"id":"https://openalex.org/C2524010","wikidata":"https://www.wikidata.org/wiki/Q8087","display_name":"Geometry","level":1,"score":0.0},{"id":"https://openalex.org/C140331021","wikidata":"https://www.wikidata.org/wiki/Q1868104","display_name":"Logit","level":2,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/icassp49660.2025.10888268","is_oa":false,"landing_page_url":"https://doi.org/10.1109/icassp49660.2025.10888268","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"ICASSP 2025 - 2025 IEEE International Conference on Acoustics, Speech and Signal Processing (ICASSP)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":23,"referenced_works":["https://openalex.org/W2620038827","https://openalex.org/W2774018344","https://openalex.org/W2774644650","https://openalex.org/W2962847335","https://openalex.org/W2964350391","https://openalex.org/W2969542116","https://openalex.org/W3034190247","https://openalex.org/W3127807678","https://openalex.org/W3171288285","https://openalex.org/W3186991201","https://openalex.org/W3193088178","https://openalex.org/W3193940683","https://openalex.org/W4312648479","https://openalex.org/W4312790346","https://openalex.org/W4319762875","https://openalex.org/W6640425456","https://openalex.org/W6674330103","https://openalex.org/W6729756640","https://openalex.org/W6745272055","https://openalex.org/W6746402973","https://openalex.org/W6768366551","https://openalex.org/W6771159086","https://openalex.org/W6796573939"],"related_works":["https://openalex.org/W4288055406","https://openalex.org/W4200630034","https://openalex.org/W3137894200","https://openalex.org/W3092178728","https://openalex.org/W4226402597","https://openalex.org/W3132910851","https://openalex.org/W4377864639","https://openalex.org/W4392340763","https://openalex.org/W4283325551","https://openalex.org/W4403006689"],"abstract_inverted_index":{"For":[0],"black-box":[1],"attacks,":[2],"most":[3],"existing":[4,39,183],"attack":[5],"methods":[6,42],"exhibit":[7],"weak":[8],"transferability":[9],"due":[10],"to":[11,34,79,130],"the":[12,24,35,52,55,81,90,110,117,133,143,155,159,175,182],"significant":[13],"discrepancy":[14],"between":[15],"substitute":[16],"model":[17,40,65],"and":[18,76,140],"victim":[19],"model.":[20,37,85],"We":[21],"argue":[22],"that":[23,174],"model-specific":[25],"discriminative":[26],"regions":[27],"are":[28],"a":[29,47,63,124],"key":[30],"factor":[31],"causing":[32],"overfitting":[33],"source":[36],"However,":[38],"augmentation":[41,66],"focus":[43],"on":[44,170],"augmentations":[45],"within":[46,162],"single":[48],"domain,":[49],"thereby":[50],"restricting":[51],"diversity":[53,82,144],"of":[54,83,109,135,145],"simulated":[56,84,146],"models.":[57,147],"In":[58],"this":[59],"paper,":[60],"we":[61,87,103,149],"present":[62],"novel":[64],"method":[67,177],"named":[68],"CSFD,":[69],"which":[70,96],"combines":[71],"our":[72,113],"proposed":[73,176],"channel-wise":[74],"scaling(CS)":[75],"frequency-random":[77],"dropping(FD)":[78],"enhance":[80],"Specifically,":[86],"first":[88],"scale":[89],"image":[91,111,118,136],"by":[92,122],"channel":[93],"with":[94,112],"CS,":[95],"augments":[97],"them":[98],"in":[99,119,137],"spatial":[100],"domain.":[101],"Then":[102],"randomly":[104],"remove":[105],"specific":[106],"frequency":[107,120],"patterns":[108],"FD,":[114],"further":[115],"augmenting":[116],"domain":[121],"introducing":[123],"loss-preserving":[125],"transformation.":[126],"This":[127],"enables":[128],"us":[129],"fully":[131],"exploit":[132],"properties":[134],"different":[138],"domains":[139],"largely":[141],"increases":[142],"Additionally,":[148],"inject":[150],"random":[151],"noise":[152],"perturbations":[153],"into":[154],"sample,":[156],"effectively":[157],"exploring":[158],"decision":[160],"boundary":[161],"an":[163],"extended":[164],"data":[165],"distribution":[166],"space.":[167],"Extensive":[168],"experiments":[169],"ImageNet":[171],"dataset":[172],"show":[173],"has":[178],"better":[179],"performance":[180],"than":[181],"methods.":[184]},"counts_by_year":[],"updated_date":"2025-12-21T01:58:51.020947","created_date":"2025-10-10T00:00:00"}
