{"id":"https://openalex.org/W4402980421","doi":"https://doi.org/10.1109/icme57554.2024.10688210","title":"Enhancing the Transferability of Adversarial Examples with Noise Injection Augmentation","display_name":"Enhancing the Transferability of Adversarial Examples with Noise Injection Augmentation","publication_year":2024,"publication_date":"2024-07-15","ids":{"openalex":"https://openalex.org/W4402980421","doi":"https://doi.org/10.1109/icme57554.2024.10688210"},"language":"en","primary_location":{"id":"doi:10.1109/icme57554.2024.10688210","is_oa":false,"landing_page_url":"http://dx.doi.org/10.1109/icme57554.2024.10688210","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2024 IEEE International Conference on Multimedia and Expo (ICME)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5035352956","display_name":"Yiheng Duan","orcid":null},"institutions":[{"id":"https://openalex.org/I37461747","display_name":"Wuhan University","ror":"https://ror.org/033vjfk17","country_code":"CN","type":"education","lineage":["https://openalex.org/I37461747"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Yiheng Duan","raw_affiliation_strings":["Wuhan University,School of Cyber Science and Engineering,Wuhan,China"],"affiliations":[{"raw_affiliation_string":"Wuhan University,School of Cyber Science and Engineering,Wuhan,China","institution_ids":["https://openalex.org/I37461747"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5060410658","display_name":"Yunjie Ge","orcid":"https://orcid.org/0000-0001-6158-3180"},"institutions":[{"id":"https://openalex.org/I37461747","display_name":"Wuhan University","ror":"https://ror.org/033vjfk17","country_code":"CN","type":"education","lineage":["https://openalex.org/I37461747"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yunjie Ge","raw_affiliation_strings":["Wuhan University,School of Cyber Science and Engineering,Wuhan,China"],"affiliations":[{"raw_affiliation_string":"Wuhan University,School of Cyber Science and Engineering,Wuhan,China","institution_ids":["https://openalex.org/I37461747"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100398252","display_name":"Zixuan Wang","orcid":"https://orcid.org/0000-0002-9122-9390"},"institutions":[{"id":"https://openalex.org/I37461747","display_name":"Wuhan University","ror":"https://ror.org/033vjfk17","country_code":"CN","type":"education","lineage":["https://openalex.org/I37461747"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Zixuan Wang","raw_affiliation_strings":["Wuhan University,School of Cyber Science and Engineering,Wuhan,China"],"affiliations":[{"raw_affiliation_string":"Wuhan University,School of Cyber Science and Engineering,Wuhan,China","institution_ids":["https://openalex.org/I37461747"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5101872220","display_name":"Jiayi Yu","orcid":"https://orcid.org/0000-0002-4204-172X"},"institutions":[{"id":"https://openalex.org/I37461747","display_name":"Wuhan University","ror":"https://ror.org/033vjfk17","country_code":"CN","type":"education","lineage":["https://openalex.org/I37461747"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Jiayi Yu","raw_affiliation_strings":["Wuhan University,School of Cyber Science and Engineering,Wuhan,China"],"affiliations":[{"raw_affiliation_string":"Wuhan University,School of Cyber Science and Engineering,Wuhan,China","institution_ids":["https://openalex.org/I37461747"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5103231923","display_name":"Shenyi Zhang","orcid":"https://orcid.org/0009-0000-2140-7131"},"institutions":[{"id":"https://openalex.org/I37461747","display_name":"Wuhan University","ror":"https://ror.org/033vjfk17","country_code":"CN","type":"education","lineage":["https://openalex.org/I37461747"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Shenyi Zhang","raw_affiliation_strings":["Wuhan University,School of Cyber Science and Engineering,Wuhan,China"],"affiliations":[{"raw_affiliation_string":"Wuhan University,School of Cyber Science and Engineering,Wuhan,China","institution_ids":["https://openalex.org/I37461747"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5102735309","display_name":"Libing Wu","orcid":"https://orcid.org/0000-0002-6863-3280"},"institutions":[{"id":"https://openalex.org/I37461747","display_name":"Wuhan University","ror":"https://ror.org/033vjfk17","country_code":"CN","type":"education","lineage":["https://openalex.org/I37461747"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Libing Wu","raw_affiliation_strings":["Wuhan University,School of Cyber Science and Engineering,Wuhan,China"],"affiliations":[{"raw_affiliation_string":"Wuhan University,School of Cyber Science and Engineering,Wuhan,China","institution_ids":["https://openalex.org/I37461747"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":6,"corresponding_author_ids":["https://openalex.org/A5035352956"],"corresponding_institution_ids":["https://openalex.org/I37461747"],"apc_list":null,"apc_paid":null,"fwci":0.3637,"has_fulltext":false,"cited_by_count":1,"citation_normalized_percentile":{"value":0.67334485,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":91,"max":95},"biblio":{"volume":null,"issue":null,"first_page":"1","last_page":"6"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9592000246047974,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9592000246047974,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10904","display_name":"Embedded Systems Design Techniques","score":0.9366000294685364,"subfield":{"id":"https://openalex.org/subfields/1708","display_name":"Hardware and Architecture"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12495","display_name":"Electrostatic Discharge in Electronics","score":0.9169999957084656,"subfield":{"id":"https://openalex.org/subfields/2208","display_name":"Electrical and Electronic Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/transferability","display_name":"Transferability","score":0.9271997213363647},{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.9180648326873779},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.6728646755218506},{"id":"https://openalex.org/keywords/noise","display_name":"Noise (video)","score":0.6183601021766663},{"id":"https://openalex.org/keywords/noise-measurement","display_name":"Noise measurement","score":0.4266183078289032},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.33004066348075867},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.22026759386062622},{"id":"https://openalex.org/keywords/noise-reduction","display_name":"Noise reduction","score":0.19569838047027588}],"concepts":[{"id":"https://openalex.org/C61272859","wikidata":"https://www.wikidata.org/wiki/Q7834031","display_name":"Transferability","level":3,"score":0.9271997213363647},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.9180648326873779},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6728646755218506},{"id":"https://openalex.org/C99498987","wikidata":"https://www.wikidata.org/wiki/Q2210247","display_name":"Noise (video)","level":3,"score":0.6183601021766663},{"id":"https://openalex.org/C29265498","wikidata":"https://www.wikidata.org/wiki/Q7047719","display_name":"Noise measurement","level":3,"score":0.4266183078289032},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.33004066348075867},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.22026759386062622},{"id":"https://openalex.org/C163294075","wikidata":"https://www.wikidata.org/wiki/Q581861","display_name":"Noise reduction","level":2,"score":0.19569838047027588},{"id":"https://openalex.org/C140331021","wikidata":"https://www.wikidata.org/wiki/Q1868104","display_name":"Logit","level":2,"score":0.0},{"id":"https://openalex.org/C115961682","wikidata":"https://www.wikidata.org/wiki/Q860623","display_name":"Image (mathematics)","level":2,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/icme57554.2024.10688210","is_oa":false,"landing_page_url":"http://dx.doi.org/10.1109/icme57554.2024.10688210","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2024 IEEE International Conference on Multimedia and Expo (ICME)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[{"id":"https://openalex.org/F4320314997","display_name":"Strong","ror":"https://ror.org/041vyzr56"}],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":13,"referenced_works":["https://openalex.org/W2119112357","https://openalex.org/W2183341477","https://openalex.org/W2302255633","https://openalex.org/W2774644650","https://openalex.org/W2962847335","https://openalex.org/W2962872506","https://openalex.org/W2963037989","https://openalex.org/W2963446712","https://openalex.org/W2969542116","https://openalex.org/W2997583194","https://openalex.org/W3037492894","https://openalex.org/W4312648479","https://openalex.org/W4313141826"],"related_works":["https://openalex.org/W4288055406","https://openalex.org/W4200630034","https://openalex.org/W3137894200","https://openalex.org/W3092178728","https://openalex.org/W4226402597","https://openalex.org/W3132910851","https://openalex.org/W4377864639","https://openalex.org/W4392340763","https://openalex.org/W4283325551","https://openalex.org/W2997056298"],"abstract_inverted_index":{"Transfer-based":[0],"adversarial":[1,42,91,141],"attacks":[2,25,43,142],"highlight":[3],"a":[4,21,45,76],"critical":[5],"security":[6],"concern":[7],"in":[8],"the":[9,28,86,89,97,108,123,135,160],"vulnerability":[10],"of":[11,88,103,111,125,138],"deep":[12],"neural":[13],"networks":[14],"(DNNs).":[15],"By":[16],"generating":[17],"deceptive":[18],"inputs":[19],"on":[20,170,176],"surrogate":[22,98],"model,":[23],"these":[24],"efficiently":[26],"transfer":[27],"malicious":[29],"examples":[30,92],"to":[31,60,106,168],"target":[32],"models,":[33],"even":[34],"those":[35],"with":[36,122,159],"different":[37],"architectures.":[38],"However,":[39],"current":[40],"transfer-based":[41,162],"face":[44],"significant":[46],"challenge.":[47],"Existing":[48],"strategies,":[49],"including":[50],"gradient":[51],"optimization,":[52],"input":[53],"transformation,":[54],"and":[55,68,147,154,174],"model":[56,126],"ensemble":[57],"methods,":[58],"struggle":[59],"strike":[61],"an":[62],"effective":[63],"balance":[64],"between":[65],"computational":[66],"cost":[67],"transferability.":[69],"To":[70],"alleviate":[71],"this":[72],"issue,":[73],"we":[74,115],"introduce":[75],"novel":[77],"method,":[78],"dubbed":[79],"Noise":[80],"Injection":[81],"Augmentation":[82],"(NIA).":[83],"NIA":[84,104,121,132,164],"enhances":[85,134],"transferability":[87,118,167],"generated":[90],"by":[93,119,151],"introducing":[94],"randomness":[95],"into":[96],"models.":[99,178],"The":[100],"key":[101],"idea":[102,124],"is":[105],"explore":[107],"regularization":[109],"properties":[110],"noise":[112],"injection.":[113],"Furthermore,":[114],"achieve":[116],"stronger":[117],"combining":[120],"self-ensemble.":[127],"Extensive":[128],"experiments":[129],"show":[130],"that":[131],"significantly":[133],"attack":[136],"performance":[137],"various":[139],"potent":[140],"such":[143],"as":[144],"MI-FGSM,":[145],"MDTI-FGSM,":[146],"S<sup":[148],"xmlns:mml=\"http://www.w3.org/1998/Math/MathML\"":[149],"xmlns:xlink=\"http://www.w3.org/1999/xlink\">2</sup>I-FGSM":[150],"28%,":[152],"20.4%,":[153],"18.6%.":[155],"On":[156],"average,":[157],"combined":[158],"state-of-the-art":[161],"attack,":[163],"further":[165],"improves":[166],"93.8%":[169],"normally":[171],"trained":[172],"models":[173],"72%":[175],"robust":[177]},"counts_by_year":[{"year":2025,"cited_by_count":1}],"updated_date":"2025-12-27T23:08:20.325037","created_date":"2025-10-10T00:00:00"}
