{"id":"https://openalex.org/W4406092740","doi":"https://doi.org/10.1109/iccv51701.2025.00381","title":"SAFER: Sharpness Aware Layer-Selective Finetuning for Enhanced Robustness in Vision Transformers","display_name":"SAFER: Sharpness Aware Layer-Selective Finetuning for Enhanced Robustness in Vision Transformers","publication_year":2025,"publication_date":"2025-10-19","ids":{"openalex":"https://openalex.org/W4406092740","doi":"https://doi.org/10.1109/iccv51701.2025.00381"},"language":"en","primary_location":{"id":"doi:10.1109/iccv51701.2025.00381","is_oa":false,"landing_page_url":"https://doi.org/10.1109/iccv51701.2025.00381","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2025 IEEE/CVF International Conference on Computer Vision (ICCV)","raw_type":"proceedings-article"},"type":"preprint","indexed_in":["arxiv","crossref","datacite"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://arxiv.org/pdf/2501.01529","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5114073964","display_name":"Bhavna Gopal","orcid":null},"institutions":[{"id":"https://openalex.org/I170897317","display_name":"Duke University","ror":"https://ror.org/00py81415","country_code":"US","type":"education","lineage":["https://openalex.org/I170897317"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Bhavna Gopal","raw_affiliation_strings":["Duke University,Durham,NC,USA"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Duke University,Durham,NC,USA","institution_ids":["https://openalex.org/I170897317"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5076154259","display_name":"Huanrui Yang","orcid":"https://orcid.org/0000-0002-3384-4512"},"institutions":[{"id":"https://openalex.org/I138006243","display_name":"University of Arizona","ror":"https://ror.org/03m2x1q45","country_code":"US","type":"education","lineage":["https://openalex.org/I138006243"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Huanrui Yang","raw_affiliation_strings":["University of Arizona,Tucson,AZ,USA"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"University of Arizona,Tucson,AZ,USA","institution_ids":["https://openalex.org/I138006243"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5011426186","display_name":"Mark Horton","orcid":null},"institutions":[{"id":"https://openalex.org/I170897317","display_name":"Duke University","ror":"https://ror.org/00py81415","country_code":"US","type":"education","lineage":["https://openalex.org/I170897317"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Mark Horton","raw_affiliation_strings":["Duke University,Durham,NC,USA"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Duke University,Durham,NC,USA","institution_ids":["https://openalex.org/I170897317"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5102868511","display_name":"Yiran Chen","orcid":"https://orcid.org/0009-0004-4668-4505"},"institutions":[{"id":"https://openalex.org/I170897317","display_name":"Duke University","ror":"https://ror.org/00py81415","country_code":"US","type":"education","lineage":["https://openalex.org/I170897317"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Yiran Chen","raw_affiliation_strings":["Duke University,Durham,NC,USA"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Duke University,Durham,NC,USA","institution_ids":["https://openalex.org/I170897317"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":4,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":true,"cited_by_count":0,"citation_normalized_percentile":{"value":0.00129655,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":"3999","last_page":"4008"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11992","display_name":"CCD and CMOS Imaging Sensors","score":0.9901999831199646,"subfield":{"id":"https://openalex.org/subfields/2208","display_name":"Electrical and Electronic Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11992","display_name":"CCD and CMOS Imaging Sensors","score":0.9901999831199646,"subfield":{"id":"https://openalex.org/subfields/2208","display_name":"Electrical and Electronic Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12111","display_name":"Industrial Vision Systems and Defect Detection","score":0.983299970626831,"subfield":{"id":"https://openalex.org/subfields/2209","display_name":"Industrial and Manufacturing Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12389","display_name":"Infrared Target Detection Methodologies","score":0.968500018119812,"subfield":{"id":"https://openalex.org/subfields/2202","display_name":"Aerospace Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/safer","display_name":"SAFER","score":0.80177903175354},{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness (evolution)","score":0.6939171552658081},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.4946880042552948},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.4057416617870331},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.21197861433029175},{"id":"https://openalex.org/keywords/chemistry","display_name":"Chemistry","score":0.0789145827293396}],"concepts":[{"id":"https://openalex.org/C2776654903","wikidata":"https://www.wikidata.org/wiki/Q2601463","display_name":"SAFER","level":2,"score":0.80177903175354},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.6939171552658081},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.4946880042552948},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.4057416617870331},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.21197861433029175},{"id":"https://openalex.org/C185592680","wikidata":"https://www.wikidata.org/wiki/Q2329","display_name":"Chemistry","level":0,"score":0.0789145827293396},{"id":"https://openalex.org/C55493867","wikidata":"https://www.wikidata.org/wiki/Q7094","display_name":"Biochemistry","level":1,"score":0.0},{"id":"https://openalex.org/C104317684","wikidata":"https://www.wikidata.org/wiki/Q7187","display_name":"Gene","level":2,"score":0.0}],"mesh":[],"locations_count":3,"locations":[{"id":"doi:10.1109/iccv51701.2025.00381","is_oa":false,"landing_page_url":"https://doi.org/10.1109/iccv51701.2025.00381","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2025 IEEE/CVF International Conference on Computer Vision (ICCV)","raw_type":"proceedings-article"},{"id":"pmh:oai:arXiv.org:2501.01529","is_oa":true,"landing_page_url":"http://arxiv.org/abs/2501.01529","pdf_url":"https://arxiv.org/pdf/2501.01529","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by-nc-nd","license_id":"https://openalex.org/licenses/cc-by-nc-nd","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":"text"},{"id":"doi:10.48550/arxiv.2501.01529","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2501.01529","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":null,"raw_source_name":null,"raw_type":"article"}],"best_oa_location":{"id":"pmh:oai:arXiv.org:2501.01529","is_oa":true,"landing_page_url":"http://arxiv.org/abs/2501.01529","pdf_url":"https://arxiv.org/pdf/2501.01529","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by-nc-nd","license_id":"https://openalex.org/licenses/cc-by-nc-nd","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":"text"},"sustainable_development_goals":[],"awards":[{"id":"https://openalex.org/G6624552157","display_name":null,"funder_award_id":"W911NF-23-2-0224","funder_id":"https://openalex.org/F4320338281","funder_display_name":"Army Research Office"},{"id":"https://openalex.org/G8377316191","display_name":"AI Institute for Edge Computing Leveraging Next Generation Networks (Athena)","funder_award_id":"2112562","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"}],"funders":[{"id":"https://openalex.org/F4320306076","display_name":"National Science Foundation","ror":"https://ror.org/021nxhr62"},{"id":"https://openalex.org/F4320338281","display_name":"Army Research Office","ror":"https://ror.org/05epdh915"}],"has_content":{"pdf":true,"grobid_xml":false},"content_urls":{"pdf":"https://content.openalex.org/works/W4406092740.pdf"},"referenced_works_count":0,"referenced_works":[],"related_works":["https://openalex.org/W4391375266","https://openalex.org/W2899084033","https://openalex.org/W2748952813","https://openalex.org/W2953205341","https://openalex.org/W235065745","https://openalex.org/W2029935773","https://openalex.org/W2787754950","https://openalex.org/W1572215850","https://openalex.org/W1985775355","https://openalex.org/W2352115286"],"abstract_inverted_index":{"Vision":[0],"transformers":[1],"(ViTs)":[2],"have":[3],"become":[4],"essential":[5],"backbones":[6],"in":[7,66],"advanced":[8],"computer":[9],"vision":[10],"applications":[11],"and":[12,42,58,83,114,138],"multi-modal":[13],"foundation":[14],"models.":[15],"Despite":[16],"their":[17],"strengths,":[18],"ViTs":[19,46,67],"remain":[20],"vulnerable":[21],"to":[22,26,51,93,98],"adversarial":[23,52,59,64,115],"perturbations,":[24],"comparable":[25],"or":[27],"even":[28],"exceeding":[29],"the":[30,38,78,103,106],"vulnerability":[31],"of":[32,45,76,89,105],"convolutional":[33],"neural":[34],"networks":[35],"(CNNs).":[36],"Furthermore,":[37],"large":[39],"parameter":[40],"count":[41],"complex":[43],"architecture":[44],"make":[47],"them":[48],"particularly":[49],"prone":[50],"overfitting,":[53,94],"often":[54],"compromising":[55],"both":[56,112],"clean":[57,113],"accuracy.":[60],"This":[61],"paper":[62],"mitigates":[63],"overfitting":[65],"through":[68],"a":[69,86],"novel,":[70],"layer-selective":[71],"fine-tuning":[72],"approach:":[73],"SAFER.":[74],"Instead":[75],"optimizing":[77],"entire":[79],"model,":[80],"we":[81],"identify":[82],"selectively":[84],"fine-tune":[85],"small":[87],"subset":[88],"layers":[90,100],"most":[91],"susceptible":[92],"applying":[95],"sharpness-aware":[96],"minimization":[97],"these":[99],"while":[101],"freezing":[102],"rest":[104],"model.":[107],"Our":[108],"method":[109],"consistently":[110],"enhances":[111],"accuracy":[116],"over":[117],"baseline":[118],"approaches.":[119],"Typical":[120],"improvements":[121],"are":[122],"around":[123],"5%,":[124],"with":[125],"some":[126],"cases":[127],"achieving":[128],"gains":[129],"as":[130,132],"high":[131],"20%":[133],"across":[134],"various":[135],"ViT":[136],"architectures":[137],"datasets.":[139]},"counts_by_year":[],"updated_date":"2026-06-22T08:00:12.763002","created_date":"2025-01-07T00:00:00"}
