{"id":"https://openalex.org/W3194222974","doi":"https://doi.org/10.1109/icip42928.2021.9506383","title":"Enhancing Adversarial Robustness For Image Classification By Regularizing Class Level Feature Distribution","display_name":"Enhancing Adversarial Robustness For Image Classification By Regularizing Class Level Feature Distribution","publication_year":2021,"publication_date":"2021-08-23","ids":{"openalex":"https://openalex.org/W3194222974","doi":"https://doi.org/10.1109/icip42928.2021.9506383","mag":"3194222974"},"language":"en","primary_location":{"id":"doi:10.1109/icip42928.2021.9506383","is_oa":false,"landing_page_url":"https://doi.org/10.1109/icip42928.2021.9506383","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2021 IEEE International Conference on Image Processing (ICIP)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5022741226","display_name":"Yu Cheng","orcid":"https://orcid.org/0000-0001-6717-5727"},"institutions":[{"id":"https://openalex.org/I99065089","display_name":"Tsinghua University","ror":"https://ror.org/03cve4549","country_code":"CN","type":"education","lineage":["https://openalex.org/I99065089"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Cheng Yu","raw_affiliation_strings":["Tsinghua University,Department of Electronic Engineering,China"],"affiliations":[{"raw_affiliation_string":"Tsinghua University,Department of Electronic Engineering,China","institution_ids":["https://openalex.org/I99065089"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5015660577","display_name":"Youze Xue","orcid":"https://orcid.org/0000-0002-7054-5204"},"institutions":[{"id":"https://openalex.org/I99065089","display_name":"Tsinghua University","ror":"https://ror.org/03cve4549","country_code":"CN","type":"education","lineage":["https://openalex.org/I99065089"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Youze Xue","raw_affiliation_strings":["Tsinghua University,Department of Electronic Engineering,China"],"affiliations":[{"raw_affiliation_string":"Tsinghua University,Department of Electronic Engineering,China","institution_ids":["https://openalex.org/I99065089"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100668653","display_name":"Jiansheng Chen","orcid":"https://orcid.org/0000-0002-2040-7938"},"institutions":[{"id":"https://openalex.org/I92403157","display_name":"University of Science and Technology Beijing","ror":"https://ror.org/02egmk993","country_code":"CN","type":"education","lineage":["https://openalex.org/I92403157"]},{"id":"https://openalex.org/I4210156423","display_name":"National Engineering Research Center for Information Technology in Agriculture","ror":"https://ror.org/04c3j3t84","country_code":"CN","type":"facility","lineage":["https://openalex.org/I4210156423"]},{"id":"https://openalex.org/I99065089","display_name":"Tsinghua University","ror":"https://ror.org/03cve4549","country_code":"CN","type":"education","lineage":["https://openalex.org/I99065089"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Jiansheng Chen","raw_affiliation_strings":["Tsinghua University,Department of Electronic Engineering,China","Beijing National Research Center for Information Science and Technology, China","University of Science and Technology, Beijing, China"],"affiliations":[{"raw_affiliation_string":"Tsinghua University,Department of Electronic Engineering,China","institution_ids":["https://openalex.org/I99065089"]},{"raw_affiliation_string":"Beijing National Research Center for Information Science and Technology, China","institution_ids":["https://openalex.org/I4210156423"]},{"raw_affiliation_string":"University of Science and Technology, Beijing, China","institution_ids":["https://openalex.org/I92403157"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100445368","display_name":"Yu Wang","orcid":"https://orcid.org/0000-0003-3511-0288"},"institutions":[{"id":"https://openalex.org/I99065089","display_name":"Tsinghua University","ror":"https://ror.org/03cve4549","country_code":"CN","type":"education","lineage":["https://openalex.org/I99065089"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yu Wang","raw_affiliation_strings":["Tsinghua University,Department of Electronic Engineering,China"],"affiliations":[{"raw_affiliation_string":"Tsinghua University,Department of Electronic Engineering,China","institution_ids":["https://openalex.org/I99065089"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5006236325","display_name":"Huimin Ma","orcid":"https://orcid.org/0000-0001-5383-5667"},"institutions":[{"id":"https://openalex.org/I92403157","display_name":"University of Science and Technology Beijing","ror":"https://ror.org/02egmk993","country_code":"CN","type":"education","lineage":["https://openalex.org/I92403157"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Huimin Ma","raw_affiliation_strings":["University of Science and Technology,Beijing,China","University of Science and Technology, Beijing, China"],"affiliations":[{"raw_affiliation_string":"University of Science and Technology,Beijing,China","institution_ids":["https://openalex.org/I92403157"]},{"raw_affiliation_string":"University of Science and Technology, Beijing, China","institution_ids":["https://openalex.org/I92403157"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":5,"corresponding_author_ids":["https://openalex.org/A5022741226"],"corresponding_institution_ids":["https://openalex.org/I99065089"],"apc_list":null,"apc_paid":null,"fwci":0.5439,"has_fulltext":false,"cited_by_count":5,"citation_normalized_percentile":{"value":0.72625253,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":89,"max":97},"biblio":{"volume":null,"issue":null,"first_page":"494","last_page":"498"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T14117","display_name":"Integrated Circuits and Semiconductor Failure Analysis","score":0.9803000092506409,"subfield":{"id":"https://openalex.org/subfields/2208","display_name":"Electrical and Electronic Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9348999857902527,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.9481554627418518},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.6577986478805542},{"id":"https://openalex.org/keywords/regularization","display_name":"Regularization (linguistics)","score":0.6521236896514893},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.6283100843429565},{"id":"https://openalex.org/keywords/deep-neural-networks","display_name":"Deep neural networks","score":0.6173799633979797},{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness (evolution)","score":0.5864481329917908},{"id":"https://openalex.org/keywords/feature","display_name":"Feature (linguistics)","score":0.5637858510017395},{"id":"https://openalex.org/keywords/class","display_name":"Class (philosophy)","score":0.5381674766540527},{"id":"https://openalex.org/keywords/contextual-image-classification","display_name":"Contextual image classification","score":0.4665287137031555},{"id":"https://openalex.org/keywords/pattern-recognition","display_name":"Pattern recognition (psychology)","score":0.44718822836875916},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.4100888967514038},{"id":"https://openalex.org/keywords/artificial-neural-network","display_name":"Artificial neural network","score":0.3915826976299286},{"id":"https://openalex.org/keywords/image","display_name":"Image (mathematics)","score":0.24452027678489685}],"concepts":[{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.9481554627418518},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6577986478805542},{"id":"https://openalex.org/C2776135515","wikidata":"https://www.wikidata.org/wiki/Q17143721","display_name":"Regularization (linguistics)","level":2,"score":0.6521236896514893},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.6283100843429565},{"id":"https://openalex.org/C2984842247","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep neural networks","level":3,"score":0.6173799633979797},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.5864481329917908},{"id":"https://openalex.org/C2776401178","wikidata":"https://www.wikidata.org/wiki/Q12050496","display_name":"Feature (linguistics)","level":2,"score":0.5637858510017395},{"id":"https://openalex.org/C2777212361","wikidata":"https://www.wikidata.org/wiki/Q5127848","display_name":"Class (philosophy)","level":2,"score":0.5381674766540527},{"id":"https://openalex.org/C75294576","wikidata":"https://www.wikidata.org/wiki/Q5165192","display_name":"Contextual image classification","level":3,"score":0.4665287137031555},{"id":"https://openalex.org/C153180895","wikidata":"https://www.wikidata.org/wiki/Q7148389","display_name":"Pattern recognition (psychology)","level":2,"score":0.44718822836875916},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.4100888967514038},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.3915826976299286},{"id":"https://openalex.org/C115961682","wikidata":"https://www.wikidata.org/wiki/Q860623","display_name":"Image (mathematics)","level":2,"score":0.24452027678489685},{"id":"https://openalex.org/C185592680","wikidata":"https://www.wikidata.org/wiki/Q2329","display_name":"Chemistry","level":0,"score":0.0},{"id":"https://openalex.org/C104317684","wikidata":"https://www.wikidata.org/wiki/Q7187","display_name":"Gene","level":2,"score":0.0},{"id":"https://openalex.org/C41895202","wikidata":"https://www.wikidata.org/wiki/Q8162","display_name":"Linguistics","level":1,"score":0.0},{"id":"https://openalex.org/C55493867","wikidata":"https://www.wikidata.org/wiki/Q7094","display_name":"Biochemistry","level":1,"score":0.0},{"id":"https://openalex.org/C138885662","wikidata":"https://www.wikidata.org/wiki/Q5891","display_name":"Philosophy","level":0,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/icip42928.2021.9506383","is_oa":false,"landing_page_url":"https://doi.org/10.1109/icip42928.2021.9506383","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2021 IEEE International Conference on Image Processing (ICIP)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[{"id":"https://openalex.org/F4320321001","display_name":"National Natural Science Foundation of China","ror":"https://ror.org/01h0zpd94"},{"id":"https://openalex.org/F4320335843","display_name":"Beijing Science and Technology Planning Project","ror":null}],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":35,"referenced_works":["https://openalex.org/W603908379","https://openalex.org/W1673923490","https://openalex.org/W1836465849","https://openalex.org/W1932198206","https://openalex.org/W2102605133","https://openalex.org/W2187089797","https://openalex.org/W2302255633","https://openalex.org/W2618530766","https://openalex.org/W2786163515","https://openalex.org/W2791953061","https://openalex.org/W2913266441","https://openalex.org/W2963001136","https://openalex.org/W2963988212","https://openalex.org/W2964197269","https://openalex.org/W2964201752","https://openalex.org/W2972267366","https://openalex.org/W2996344901","https://openalex.org/W3009542902","https://openalex.org/W3108058995","https://openalex.org/W3118608800","https://openalex.org/W4293846201","https://openalex.org/W6618372016","https://openalex.org/W6637162671","https://openalex.org/W6638667902","https://openalex.org/W6698183232","https://openalex.org/W6739868092","https://openalex.org/W6745272055","https://openalex.org/W6748204703","https://openalex.org/W6748277150","https://openalex.org/W6748965907","https://openalex.org/W6759129252","https://openalex.org/W6766725774","https://openalex.org/W6767248609","https://openalex.org/W6772461460","https://openalex.org/W6774469542"],"related_works":["https://openalex.org/W2950183588","https://openalex.org/W3080754722","https://openalex.org/W3093978547","https://openalex.org/W2953536436","https://openalex.org/W3203790781","https://openalex.org/W4313346231","https://openalex.org/W2738001131","https://openalex.org/W4285785480","https://openalex.org/W2997056298","https://openalex.org/W4298079292"],"abstract_inverted_index":{"Recent":[0],"researches":[1],"have":[2],"shown":[3],"that":[4,57,188],"deep":[5],"neural":[6,171],"networks":[7],"(DNNs)":[8],"are":[9],"vulnerable":[10],"to":[11,22,82,141],"adversarial":[12,29,33,51,58,88,111,136,150,158,167,184,209],"examples.":[13,30,52,97,210],"Adversarial":[14],"training":[15,34,155,185,195],"is":[16,191],"practically":[17],"the":[18,24,39,43,55,61,64,84,91,99,102,106,115,122,126,129,133,170,199],"most":[19],"effective":[20],"approach":[21],"improve":[23],"robustness":[25],"of":[26,63,67,87,108,135,204],"DNNs":[27,68],"against":[28],"However,":[31],"conventional":[32],"methods":[35,201],"only":[36],"focus":[37],"on":[38,47,182],"classification":[40,93,203],"results":[41],"or":[42],"instance":[44],"level":[45],"relationship":[46],"feature":[48,65,85,134,179],"representations":[49,66],"for":[50,69,121,193,202],"Inspired":[53],"by":[54],"fact":[56],"examples":[59,89,112,137],"break":[60],"distinguishability":[62],"different":[70],"classes,":[71],"we":[72,160],"propose":[73],"Intra":[74],"and":[75,113,119,153,164,169,177,197,208],"Inter":[76],"Class":[77],"Feature":[78],"Regularization":[79],"$(\\mathrm{I}^{2}$":[80],"FR)":[81],"make":[83],"distribution":[86],"maintain":[90],"same":[92,123],"property":[94],"as":[95],"clean":[96,117,206],"On":[98,125],"one":[100],"hand,":[101,128],"intra-class":[103],"regularization":[104,131],"restricts":[105],"distance":[107],"features":[109],"between":[110],"both":[114,149,205],"corresponding":[116],"data":[118,207],"samples":[120],"class.":[124],"other":[127,142],"inter-class":[130],"prevents":[132],"from":[138],"getting":[139],"close":[140],"classes.":[143],"By":[144],"adding":[145],"$\\mathrm{I}^{2}$":[146,189],"FR":[147,190],"in":[148,157],"example":[151],"generation":[152],"model":[154],"steps":[156],"training,":[159],"can":[161],"get":[162],"stronger":[163],"more":[165,175],"diverse":[166],"examples,":[168],"network":[172],"learns":[173],"a":[174],"distinguishable":[176],"reasonable":[178],"distribution.":[180],"Experiments":[181],"various":[183],"frameworks":[186,196],"demonstrate":[187],"adaptive":[192],"multiple":[194],"outperforms":[198],"state-of-the-art":[200]},"counts_by_year":[{"year":2025,"cited_by_count":1},{"year":2023,"cited_by_count":3},{"year":2022,"cited_by_count":1}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
