{"id":"https://openalex.org/W3159738076","doi":"https://doi.org/10.1109/icpr48806.2021.9412611","title":"F-mixup: Attack CNNs From Fourier Perspective","display_name":"F-mixup: Attack CNNs From Fourier Perspective","publication_year":2021,"publication_date":"2021-01-10","ids":{"openalex":"https://openalex.org/W3159738076","doi":"https://doi.org/10.1109/icpr48806.2021.9412611","mag":"3159738076"},"language":"en","primary_location":{"id":"doi:10.1109/icpr48806.2021.9412611","is_oa":false,"landing_page_url":"https://doi.org/10.1109/icpr48806.2021.9412611","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2020 25th International Conference on Pattern Recognition (ICPR)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5073273654","display_name":"Xiu-Chuan Li","orcid":"https://orcid.org/0000-0001-8885-717X"},"institutions":[{"id":"https://openalex.org/I4210100255","display_name":"Beijing Academy of Artificial Intelligence","ror":"https://ror.org/016a74861","country_code":"CN","type":"other","lineage":["https://openalex.org/I4210100255"]},{"id":"https://openalex.org/I4210165038","display_name":"University of Chinese Academy of Sciences","ror":"https://ror.org/05qbk4x57","country_code":"CN","type":"education","lineage":["https://openalex.org/I19820366","https://openalex.org/I4210165038"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Xiu-Chuan Li","raw_affiliation_strings":["School of Artificial Intelligence, University of Chinese Academy of Sciences, Beijing, China"],"affiliations":[{"raw_affiliation_string":"School of Artificial Intelligence, University of Chinese Academy of Sciences, Beijing, China","institution_ids":["https://openalex.org/I4210100255","https://openalex.org/I4210165038"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5082548671","display_name":"Xu-Yao Zhang","orcid":"https://orcid.org/0000-0001-9260-188X"},"institutions":[{"id":"https://openalex.org/I4210165038","display_name":"University of Chinese Academy of Sciences","ror":"https://ror.org/05qbk4x57","country_code":"CN","type":"education","lineage":["https://openalex.org/I19820366","https://openalex.org/I4210165038"]},{"id":"https://openalex.org/I4210100255","display_name":"Beijing Academy of Artificial Intelligence","ror":"https://ror.org/016a74861","country_code":"CN","type":"other","lineage":["https://openalex.org/I4210100255"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Xu-Yao Zhang","raw_affiliation_strings":["School of Artificial Intelligence, University of Chinese Academy of Sciences, Beijing, China"],"affiliations":[{"raw_affiliation_string":"School of Artificial Intelligence, University of Chinese Academy of Sciences, Beijing, China","institution_ids":["https://openalex.org/I4210100255","https://openalex.org/I4210165038"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5039310938","display_name":"Fei Yin","orcid":"https://orcid.org/0000-0002-6412-9140"},"institutions":[{"id":"https://openalex.org/I4210165038","display_name":"University of Chinese Academy of Sciences","ror":"https://ror.org/05qbk4x57","country_code":"CN","type":"education","lineage":["https://openalex.org/I19820366","https://openalex.org/I4210165038"]},{"id":"https://openalex.org/I4210100255","display_name":"Beijing Academy of Artificial Intelligence","ror":"https://ror.org/016a74861","country_code":"CN","type":"other","lineage":["https://openalex.org/I4210100255"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Fei Yin","raw_affiliation_strings":["School of Artificial Intelligence, University of Chinese Academy of Sciences, Beijing, China"],"affiliations":[{"raw_affiliation_string":"School of Artificial Intelligence, University of Chinese Academy of Sciences, Beijing, China","institution_ids":["https://openalex.org/I4210100255","https://openalex.org/I4210165038"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5100714202","display_name":"Cheng\u2010Lin Liu","orcid":"https://orcid.org/0000-0002-6743-4175"},"institutions":[{"id":"https://openalex.org/I4210100255","display_name":"Beijing Academy of Artificial Intelligence","ror":"https://ror.org/016a74861","country_code":"CN","type":"other","lineage":["https://openalex.org/I4210100255"]},{"id":"https://openalex.org/I4210165038","display_name":"University of Chinese Academy of Sciences","ror":"https://ror.org/05qbk4x57","country_code":"CN","type":"education","lineage":["https://openalex.org/I19820366","https://openalex.org/I4210165038"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Cheng-Lin Liu","raw_affiliation_strings":["School of Artificial Intelligence, University of Chinese Academy of Sciences, Beijing, China"],"affiliations":[{"raw_affiliation_string":"School of Artificial Intelligence, University of Chinese Academy of Sciences, Beijing, China","institution_ids":["https://openalex.org/I4210100255","https://openalex.org/I4210165038"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5073273654"],"corresponding_institution_ids":["https://openalex.org/I4210100255","https://openalex.org/I4210165038"],"apc_list":null,"apc_paid":null,"fwci":0.8158,"has_fulltext":false,"cited_by_count":8,"citation_normalized_percentile":{"value":0.77520996,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":89,"max":97},"biblio":{"volume":null,"issue":null,"first_page":"541","last_page":"548"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9739000201225281,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T14117","display_name":"Integrated Circuits and Semiconductor Failure Analysis","score":0.967199981212616,"subfield":{"id":"https://openalex.org/subfields/2208","display_name":"Electrical and Electronic Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/frequency-domain","display_name":"Frequency domain","score":0.7761759757995605},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7585869431495667},{"id":"https://openalex.org/keywords/convolutional-neural-network","display_name":"Convolutional neural network","score":0.7524906396865845},{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness (evolution)","score":0.6913242340087891},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.6481145620346069},{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.6160431504249573},{"id":"https://openalex.org/keywords/fourier-domain","display_name":"Fourier domain","score":0.5703208446502686},{"id":"https://openalex.org/keywords/deep-neural-networks","display_name":"Deep neural networks","score":0.482302188873291},{"id":"https://openalex.org/keywords/deep-learning","display_name":"Deep learning","score":0.48129191994667053},{"id":"https://openalex.org/keywords/fourier-transform","display_name":"Fourier transform","score":0.4792237877845764},{"id":"https://openalex.org/keywords/spatial-frequency","display_name":"Spatial frequency","score":0.4766277074813843},{"id":"https://openalex.org/keywords/domain","display_name":"Domain (mathematical analysis)","score":0.46461713314056396},{"id":"https://openalex.org/keywords/pattern-recognition","display_name":"Pattern recognition (psychology)","score":0.41814225912094116},{"id":"https://openalex.org/keywords/artificial-neural-network","display_name":"Artificial neural network","score":0.41679179668426514},{"id":"https://openalex.org/keywords/computer-vision","display_name":"Computer vision","score":0.34867674112319946},{"id":"https://openalex.org/keywords/mathematics","display_name":"Mathematics","score":0.14205175638198853}],"concepts":[{"id":"https://openalex.org/C19118579","wikidata":"https://www.wikidata.org/wiki/Q786423","display_name":"Frequency domain","level":2,"score":0.7761759757995605},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7585869431495667},{"id":"https://openalex.org/C81363708","wikidata":"https://www.wikidata.org/wiki/Q17084460","display_name":"Convolutional neural network","level":2,"score":0.7524906396865845},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.6913242340087891},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.6481145620346069},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.6160431504249573},{"id":"https://openalex.org/C3019555358","wikidata":"https://www.wikidata.org/wiki/Q786423","display_name":"Fourier domain","level":3,"score":0.5703208446502686},{"id":"https://openalex.org/C2984842247","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep neural networks","level":3,"score":0.482302188873291},{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.48129191994667053},{"id":"https://openalex.org/C102519508","wikidata":"https://www.wikidata.org/wiki/Q6520159","display_name":"Fourier transform","level":2,"score":0.4792237877845764},{"id":"https://openalex.org/C100921725","wikidata":"https://www.wikidata.org/wiki/Q1650811","display_name":"Spatial frequency","level":2,"score":0.4766277074813843},{"id":"https://openalex.org/C36503486","wikidata":"https://www.wikidata.org/wiki/Q11235244","display_name":"Domain (mathematical analysis)","level":2,"score":0.46461713314056396},{"id":"https://openalex.org/C153180895","wikidata":"https://www.wikidata.org/wiki/Q7148389","display_name":"Pattern recognition (psychology)","level":2,"score":0.41814225912094116},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.41679179668426514},{"id":"https://openalex.org/C31972630","wikidata":"https://www.wikidata.org/wiki/Q844240","display_name":"Computer vision","level":1,"score":0.34867674112319946},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.14205175638198853},{"id":"https://openalex.org/C104317684","wikidata":"https://www.wikidata.org/wiki/Q7187","display_name":"Gene","level":2,"score":0.0},{"id":"https://openalex.org/C121332964","wikidata":"https://www.wikidata.org/wiki/Q413","display_name":"Physics","level":0,"score":0.0},{"id":"https://openalex.org/C120665830","wikidata":"https://www.wikidata.org/wiki/Q14620","display_name":"Optics","level":1,"score":0.0},{"id":"https://openalex.org/C185592680","wikidata":"https://www.wikidata.org/wiki/Q2329","display_name":"Chemistry","level":0,"score":0.0},{"id":"https://openalex.org/C55493867","wikidata":"https://www.wikidata.org/wiki/Q7094","display_name":"Biochemistry","level":1,"score":0.0},{"id":"https://openalex.org/C134306372","wikidata":"https://www.wikidata.org/wiki/Q7754","display_name":"Mathematical analysis","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/icpr48806.2021.9412611","is_oa":false,"landing_page_url":"https://doi.org/10.1109/icpr48806.2021.9412611","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2020 25th International Conference on Pattern Recognition (ICPR)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[{"id":"https://openalex.org/G103427903","display_name":null,"funder_award_id":"2019141","funder_id":"https://openalex.org/F4320322847","funder_display_name":"Youth Innovation Promotion Association of the Chinese Academy of Sciences"}],"funders":[{"id":"https://openalex.org/F4320322847","display_name":"Youth Innovation Promotion Association of the Chinese Academy of Sciences","ror":"https://ror.org/031141b54"}],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":36,"referenced_works":["https://openalex.org/W639708223","https://openalex.org/W1673923490","https://openalex.org/W1686810756","https://openalex.org/W1945616565","https://openalex.org/W2122787031","https://openalex.org/W2151965738","https://openalex.org/W2163605009","https://openalex.org/W2167034998","https://openalex.org/W2194775991","https://openalex.org/W2243397390","https://openalex.org/W2567330569","https://openalex.org/W2603766943","https://openalex.org/W2613718673","https://openalex.org/W2618530766","https://openalex.org/W2765407302","https://openalex.org/W2765424254","https://openalex.org/W2883712957","https://openalex.org/W2915002466","https://openalex.org/W2950782995","https://openalex.org/W2962700793","https://openalex.org/W2963062382","https://openalex.org/W2963207607","https://openalex.org/W2963268689","https://openalex.org/W2963857521","https://openalex.org/W2964153729","https://openalex.org/W2964159205","https://openalex.org/W2971028215","https://openalex.org/W2988396473","https://openalex.org/W3007384386","https://openalex.org/W3034175346","https://openalex.org/W3103557498","https://openalex.org/W3118608800","https://openalex.org/W6682262322","https://openalex.org/W6750404860","https://openalex.org/W6759580348","https://openalex.org/W6763810570"],"related_works":["https://openalex.org/W2950183588","https://openalex.org/W3080754722","https://openalex.org/W4383221314","https://openalex.org/W3093978547","https://openalex.org/W2953536436","https://openalex.org/W3203790781","https://openalex.org/W4313346231","https://openalex.org/W2738001131","https://openalex.org/W4285785480","https://openalex.org/W2997056298"],"abstract_inverted_index":{"Recent":[0],"research":[1],"has":[2],"revealed":[3],"that":[4,106,138,147],"deep":[5,157],"neural":[6,57],"networks":[7,58],"are":[8,102],"highly":[9],"vulnerable":[10],"to":[11,64,84,97,110,155],"adversarial":[12,20],"examples.":[13],"In":[14,127],"this":[15],"paper,":[16],"different":[17],"from":[18],"most":[19],"attacks":[21],"which":[22,118],"directly":[23],"modify":[24],"pixels":[25],"in":[26,35,153],"spatial":[27],"domain,":[28,37,117],"we":[29,129,145],"propose":[30],"a":[31,161],"novel":[32],"black-box":[33],"attack":[34,134],"frequency":[36,76,95,116],"named":[38],"as":[39],"f-mixup,":[40],"based":[41],"on":[42,73,113],"the":[43,66,74,114,121],"property":[44],"of":[45,68,163],"natural":[46,61],"images":[47,62],"and":[48,55,93,104,125,136],"perception":[49],"disparity":[50],"between":[51,123],"human-visual":[52],"system":[53],"(HVS)":[54],"convolutional":[56],"(CNNs):":[59],"First,":[60],"tend":[63,109],"have":[65],"bulk":[67],"their":[69],"Fourier":[70],"spectrums":[71],"concentrated":[72],"low":[75,92],"domain;":[77],"Second,":[78],"HVS":[79],"is":[80],"much":[81],"less":[82],"sensitive":[83],"high":[85,94],"frequencies":[86],"while":[87],"CNNs":[88,108,158],"can":[89,149],"utilize":[90],"both":[91],"information":[96],"make":[98,156],"predictions.":[99],"Extensive":[100],"experiments":[101],"conducted":[103],"show":[105,146],"deeper":[107],"concentrate":[111],"more":[112],"higher":[115],"may":[119],"explain":[120],"contradiction":[122],"robustness":[124],"accuracy.":[126],"addition,":[128],"compared":[130],"f-mixup":[131,148],"with":[132],"existing":[133],"methods":[135],"observed":[137],"our":[139],"approach":[140],"possesses":[141],"great":[142],"advantages.":[143],"Finally,":[144],"be":[150],"also":[151],"incorporated":[152],"training":[154],"defensible":[159],"against":[160],"kind":[162],"perturbations":[164],"effectively.":[165]},"counts_by_year":[{"year":2025,"cited_by_count":2},{"year":2024,"cited_by_count":3},{"year":2023,"cited_by_count":1},{"year":2022,"cited_by_count":2}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
