{"id":"https://openalex.org/W3090494374","doi":"https://doi.org/10.1109/ijcnn48605.2020.9206656","title":"Adversarial Robustness of Model Sets","display_name":"Adversarial Robustness of Model Sets","publication_year":2020,"publication_date":"2020-07-01","ids":{"openalex":"https://openalex.org/W3090494374","doi":"https://doi.org/10.1109/ijcnn48605.2020.9206656","mag":"3090494374"},"language":"en","primary_location":{"id":"doi:10.1109/ijcnn48605.2020.9206656","is_oa":false,"landing_page_url":"https://doi.org/10.1109/ijcnn48605.2020.9206656","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2020 International Joint Conference on Neural Networks (IJCNN)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":null,"any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5072561603","display_name":"Istv\u00e1n Megyeri","orcid":"https://orcid.org/0000-0002-7918-6295"},"institutions":[{"id":"https://openalex.org/I227486990","display_name":"University of Szeged","ror":"https://ror.org/01pnej532","country_code":"HU","type":"education","lineage":["https://openalex.org/I227486990"]}],"countries":["HU"],"is_corresponding":true,"raw_author_name":"Istvan Megyeri","raw_affiliation_strings":["University of Szeged, Szeged, Hungary"],"affiliations":[{"raw_affiliation_string":"University of Szeged, Szeged, Hungary","institution_ids":["https://openalex.org/I227486990"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5033782938","display_name":"Istv\u00e1n Heged\u0171s","orcid":"https://orcid.org/0000-0002-5356-2192"},"institutions":[{"id":"https://openalex.org/I227486990","display_name":"University of Szeged","ror":"https://ror.org/01pnej532","country_code":"HU","type":"education","lineage":["https://openalex.org/I227486990"]}],"countries":["HU"],"is_corresponding":false,"raw_author_name":"Istvan Hegedus","raw_affiliation_strings":["University of Szeged, Szeged, Hungary"],"affiliations":[{"raw_affiliation_string":"University of Szeged, Szeged, Hungary","institution_ids":["https://openalex.org/I227486990"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5054208211","display_name":"M\u00e1rk Jelasity","orcid":"https://orcid.org/0000-0001-9363-1482"},"institutions":[{"id":"https://openalex.org/I227486990","display_name":"University of Szeged","ror":"https://ror.org/01pnej532","country_code":"HU","type":"education","lineage":["https://openalex.org/I227486990"]}],"countries":["HU"],"is_corresponding":false,"raw_author_name":"Mark Jelasity","raw_affiliation_strings":["MTA-SZTE Research Group on AI, University of Szeged, Szeged, Hungary"],"affiliations":[{"raw_affiliation_string":"MTA-SZTE Research Group on AI, University of Szeged, Szeged, Hungary","institution_ids":["https://openalex.org/I227486990"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":3,"corresponding_author_ids":["https://openalex.org/A5072561603"],"corresponding_institution_ids":["https://openalex.org/I227486990"],"apc_list":null,"apc_paid":null,"fwci":0.4078,"has_fulltext":false,"cited_by_count":4,"citation_normalized_percentile":{"value":0.70253802,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":89,"max":96},"biblio":{"volume":null,"issue":null,"first_page":"1","last_page":"8"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9968000054359436,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11307","display_name":"Domain Adaptation and Few-Shot Learning","score":0.994700014591217,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.7667622566223145},{"id":"https://openalex.org/keywords/perturbation","display_name":"Perturbation (astronomy)","score":0.7224184274673462},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.6899402141571045},{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness (evolution)","score":0.567277729511261},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.46438464522361755},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.39681708812713623},{"id":"https://openalex.org/keywords/algorithm","display_name":"Algorithm","score":0.3792620897293091},{"id":"https://openalex.org/keywords/theoretical-computer-science","display_name":"Theoretical computer science","score":0.36244258284568787}],"concepts":[{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.7667622566223145},{"id":"https://openalex.org/C177918212","wikidata":"https://www.wikidata.org/wiki/Q803623","display_name":"Perturbation (astronomy)","level":2,"score":0.7224184274673462},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6899402141571045},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.567277729511261},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.46438464522361755},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.39681708812713623},{"id":"https://openalex.org/C11413529","wikidata":"https://www.wikidata.org/wiki/Q8366","display_name":"Algorithm","level":1,"score":0.3792620897293091},{"id":"https://openalex.org/C80444323","wikidata":"https://www.wikidata.org/wiki/Q2878974","display_name":"Theoretical computer science","level":1,"score":0.36244258284568787},{"id":"https://openalex.org/C185592680","wikidata":"https://www.wikidata.org/wiki/Q2329","display_name":"Chemistry","level":0,"score":0.0},{"id":"https://openalex.org/C55493867","wikidata":"https://www.wikidata.org/wiki/Q7094","display_name":"Biochemistry","level":1,"score":0.0},{"id":"https://openalex.org/C104317684","wikidata":"https://www.wikidata.org/wiki/Q7187","display_name":"Gene","level":2,"score":0.0},{"id":"https://openalex.org/C121332964","wikidata":"https://www.wikidata.org/wiki/Q413","display_name":"Physics","level":0,"score":0.0},{"id":"https://openalex.org/C62520636","wikidata":"https://www.wikidata.org/wiki/Q944","display_name":"Quantum mechanics","level":1,"score":0.0}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1109/ijcnn48605.2020.9206656","is_oa":false,"landing_page_url":"https://doi.org/10.1109/ijcnn48605.2020.9206656","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2020 International Joint Conference on Neural Networks (IJCNN)","raw_type":"proceedings-article"},{"id":"pmh:oai:publicatio.bibl.u-szeged.hu:19681","is_oa":true,"landing_page_url":null,"pdf_url":null,"source":{"id":"https://openalex.org/S4306400436","display_name":"SZTE Publicatio Repozit\u00f3rium (University of Szeged)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I227486990","host_organization_name":"University of Szeged","host_organization_lineage":["https://openalex.org/I227486990"],"host_organization_lineage_names":[],"type":"repository"},"license":"other-oa","license_id":"https://openalex.org/licenses/other-oa","version":"acceptedVersion","is_accepted":true,"is_published":false,"raw_source_name":"","raw_type":"K\u00f6nyv r\u00e9sze"}],"best_oa_location":{"id":"pmh:oai:publicatio.bibl.u-szeged.hu:19681","is_oa":true,"landing_page_url":null,"pdf_url":null,"source":{"id":"https://openalex.org/S4306400436","display_name":"SZTE Publicatio Repozit\u00f3rium (University of Szeged)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I227486990","host_organization_name":"University of Szeged","host_organization_lineage":["https://openalex.org/I227486990"],"host_organization_lineage_names":[],"type":"repository"},"license":"other-oa","license_id":"https://openalex.org/licenses/other-oa","version":"acceptedVersion","is_accepted":true,"is_published":false,"raw_source_name":"","raw_type":"K\u00f6nyv r\u00e9sze"},"sustainable_development_goals":[],"awards":[{"id":"https://openalex.org/G3880621598","display_name":null,"funder_award_id":"TUDFO/47138-1/2019-ITM","funder_id":"https://openalex.org/F4320328991","funder_display_name":"Innov\u00e1ci\u00f3s \u00e9s Technol\u00f3giai Miniszt\u00e9rium"},{"id":"https://openalex.org/G7200774062","display_name":null,"funder_award_id":"TUDFO/47138-1/2019","funder_id":"https://openalex.org/F4320328991","funder_display_name":"Innov\u00e1ci\u00f3s \u00e9s Technol\u00f3giai Miniszt\u00e9rium"},{"id":"https://openalex.org/G8029400101","display_name":null,"funder_award_id":"TUDFO/47138-1/2019-ITM","funder_id":"https://openalex.org/F4320336675","funder_display_name":"National Research, Development and Innovation Office"}],"funders":[{"id":"https://openalex.org/F4320328991","display_name":"Innov\u00e1ci\u00f3s \u00e9s Technol\u00f3giai Miniszt\u00e9rium","ror":"https://ror.org/02ey3ab96"},{"id":"https://openalex.org/F4320336675","display_name":"National Research, Development and Innovation Office","ror":null}],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":34,"referenced_works":["https://openalex.org/W1673923490","https://openalex.org/W1945616565","https://openalex.org/W1981745143","https://openalex.org/W2035421116","https://openalex.org/W2117539524","https://openalex.org/W2243397390","https://openalex.org/W2570685808","https://openalex.org/W2612445135","https://openalex.org/W2620038827","https://openalex.org/W2736941579","https://openalex.org/W2912070915","https://openalex.org/W2963163009","https://openalex.org/W2963178695","https://openalex.org/W2963207607","https://openalex.org/W2963355098","https://openalex.org/W2963446712","https://openalex.org/W2963744840","https://openalex.org/W2963857521","https://openalex.org/W2964081807","https://openalex.org/W2964153729","https://openalex.org/W2964253222","https://openalex.org/W2979878901","https://openalex.org/W3126164961","https://openalex.org/W4293846201","https://openalex.org/W4297775537","https://openalex.org/W6637162671","https://openalex.org/W6640425456","https://openalex.org/W6731927902","https://openalex.org/W6737664043","https://openalex.org/W6739868092","https://openalex.org/W6741414320","https://openalex.org/W6750968397","https://openalex.org/W6758779121","https://openalex.org/W6789971718"],"related_works":["https://openalex.org/W2502115930","https://openalex.org/W2482350142","https://openalex.org/W4246396837","https://openalex.org/W3126451824","https://openalex.org/W1561927205","https://openalex.org/W3191453585","https://openalex.org/W4297672492","https://openalex.org/W4310988119","https://openalex.org/W4285226279","https://openalex.org/W4288019534"],"abstract_inverted_index":{"Machine":[0],"learning":[1],"models":[2,27,51,63,72,158,192],"are":[3,127],"vulnerable":[4],"to":[5,47,61,143,174,209],"very":[6],"small":[7,36],"adversarial":[8,218],"input":[9],"perturbations.":[10],"Here,":[11,135],"we":[12,136],"study":[13],"the":[14,18,53,57,62,116,157,161,203],"question":[15],"of":[16,20,26,151,187,193],"whether":[17],"list":[19,25],"predictions":[21],"made":[22],"by":[23,33,74],"a":[24,34,41,78,84,96,103,110,122,145],"can":[28],"also":[29],"be":[30,175],"changed":[31],"arbitrarily":[32],"single":[35,85],"perturbation.":[37,124],"Clearly,":[38],"this":[39,131],"is":[40,141,207],"harder":[42],"problem":[43,133],"since":[44],"one":[45,107],"has":[46,68],"simultaneously":[48],"mislead":[49],"several":[50,69,149],"using":[52,182],"same":[54,117,162],"perturbation,":[55],"where":[56],"target":[58,163,168,171,217],"classes":[59,172],"assigned":[60],"might":[64,82,108],"differ.":[65],"This":[66],"attack":[67,152],"applications":[70],"over":[71],"designed":[73,173],"different":[75,104,166],"manufacturers":[76],"for":[77,130],"similar":[79],"purpose.":[80],"One":[81],"want":[83,109],"perturbation":[86,111,146],"that":[87,112,140,147,214],"acts":[88],"differently":[89],"on":[90],"each":[91,100,114],"model;":[92],"like":[93],"only":[94],"mis-leading":[95],"subset,":[97],"or":[98,165,170],"making":[99],"model":[101,115,184],"predict":[102],"label.":[105],"Also,":[106],"misleads":[113],"way":[118],"and":[119,196],"thereby":[120],"create":[121],"transferable":[123],"Current":[125],"approaches":[126],"not":[128],"applicable":[129],"general":[132],"directly.":[134],"propose":[137],"an":[138],"algorithm":[139,181],"able":[142,208],"find":[144,210],"satisfies":[148],"kinds":[150],"patterns.":[153],"For":[154],"example,":[155],"all":[156,202],"could":[159],"have":[160],"class,":[164],"random":[167],"classes,":[169],"maximally":[176],"contradicting.":[177],"We":[178,198],"evaluated":[179],"our":[180,205,216],"three":[183],"sets":[185],"consisting":[186],"publicly":[188],"available":[189],"pre-trained":[190],"ImageNet":[191],"varying":[194],"capacity":[195],"architecture.":[197],"demonstrate":[199],"that,":[200],"in":[201],"scenarios,":[204],"method":[206],"visually":[211],"insignificant":[212],"perturbations":[213],"achieve":[215],"patterns":[219],"<sup":[220],"xmlns:mml=\"http://www.w3.org/1998/Math/MathML\"":[221],"xmlns:xlink=\"http://www.w3.org/1999/xlink\">1</sup>":[222],".":[223]},"counts_by_year":[{"year":2024,"cited_by_count":1},{"year":2023,"cited_by_count":2},{"year":2021,"cited_by_count":1}],"updated_date":"2026-04-10T15:06:20.359241","created_date":"2025-10-10T00:00:00"}
