{"id":"https://openalex.org/W3202402610","doi":"https://doi.org/10.1109/ijcnn52387.2021.9534410","title":"Attack-Guided Efficient Robustness Verification of ReLU Neural Networks","display_name":"Attack-Guided Efficient Robustness Verification of ReLU Neural Networks","publication_year":2021,"publication_date":"2021-07-18","ids":{"openalex":"https://openalex.org/W3202402610","doi":"https://doi.org/10.1109/ijcnn52387.2021.9534410","mag":"3202402610"},"language":"en","primary_location":{"id":"doi:10.1109/ijcnn52387.2021.9534410","is_oa":false,"landing_page_url":"https://doi.org/10.1109/ijcnn52387.2021.9534410","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2021 International Joint Conference on Neural Networks (IJCNN)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5101529317","display_name":"Yiwei Zhu","orcid":"https://orcid.org/0000-0001-9524-4726"},"institutions":[{"id":"https://openalex.org/I4210139618","display_name":"Shanghai Key Laboratory of Trustworthy Computing","ror":"https://ror.org/030qbr085","country_code":"CN","type":"facility","lineage":["https://openalex.org/I4210139618"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Yiwei Zhu","raw_affiliation_strings":["Shanghai Key Laboratory of Trustworthy Computing, ECNU, Shanghai, China"],"affiliations":[{"raw_affiliation_string":"Shanghai Key Laboratory of Trustworthy Computing, ECNU, Shanghai, China","institution_ids":["https://openalex.org/I4210139618"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5009620077","display_name":"Feng Wang","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Feng Wang","raw_affiliation_strings":["Beijing Institute of System Engineering, Beijing, China"],"affiliations":[{"raw_affiliation_string":"Beijing Institute of System Engineering, Beijing, China","institution_ids":[]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5020025034","display_name":"Wenjie Wan","orcid":"https://orcid.org/0000-0002-9743-3480"},"institutions":[{"id":"https://openalex.org/I4210139618","display_name":"Shanghai Key Laboratory of Trustworthy Computing","ror":"https://ror.org/030qbr085","country_code":"CN","type":"facility","lineage":["https://openalex.org/I4210139618"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Wenjie Wan","raw_affiliation_strings":["Shanghai Key Laboratory of Trustworthy Computing, ECNU, Shanghai, China"],"affiliations":[{"raw_affiliation_string":"Shanghai Key Laboratory of Trustworthy Computing, ECNU, Shanghai, China","institution_ids":["https://openalex.org/I4210139618"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5100402983","display_name":"Min Zhang","orcid":"https://orcid.org/0000-0003-1938-2902"},"institutions":[{"id":"https://openalex.org/I4210139618","display_name":"Shanghai Key Laboratory of Trustworthy Computing","ror":"https://ror.org/030qbr085","country_code":"CN","type":"facility","lineage":["https://openalex.org/I4210139618"]},{"id":"https://openalex.org/I116953780","display_name":"Tongji University","ror":"https://ror.org/03rc6as71","country_code":"CN","type":"education","lineage":["https://openalex.org/I116953780"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Min Zhang","raw_affiliation_strings":["Shanghai Institute of Intelligent Science and Technology, Tongji University, Shanghai, China","Shanghai Key Laboratory of Trustworthy Computing, ECNU, Shanghai, China"],"affiliations":[{"raw_affiliation_string":"Shanghai Institute of Intelligent Science and Technology, Tongji University, Shanghai, China","institution_ids":["https://openalex.org/I116953780"]},{"raw_affiliation_string":"Shanghai Key Laboratory of Trustworthy Computing, ECNU, Shanghai, China","institution_ids":["https://openalex.org/I4210139618"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5101529317"],"corresponding_institution_ids":["https://openalex.org/I4210139618"],"apc_list":null,"apc_paid":null,"fwci":0.2719,"has_fulltext":false,"cited_by_count":3,"citation_normalized_percentile":{"value":0.63615037,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":91,"max":96},"biblio":{"volume":null,"issue":null,"first_page":"1","last_page":"8"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9049000144004822,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness (evolution)","score":0.8637822866439819},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8179433345794678},{"id":"https://openalex.org/keywords/scalability","display_name":"Scalability","score":0.7115258574485779},{"id":"https://openalex.org/keywords/novelty","display_name":"Novelty","score":0.7011716365814209},{"id":"https://openalex.org/keywords/speedup","display_name":"Speedup","score":0.6346341967582703},{"id":"https://openalex.org/keywords/artificial-neural-network","display_name":"Artificial neural network","score":0.6176358461380005},{"id":"https://openalex.org/keywords/deep-neural-networks","display_name":"Deep neural networks","score":0.55059415102005},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.539138913154602},{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.4778411090373993},{"id":"https://openalex.org/keywords/formal-verification","display_name":"Formal verification","score":0.4312222898006439},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.4125477075576782},{"id":"https://openalex.org/keywords/theoretical-computer-science","display_name":"Theoretical computer science","score":0.3622480034828186},{"id":"https://openalex.org/keywords/parallel-computing","display_name":"Parallel computing","score":0.07446080446243286}],"concepts":[{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.8637822866439819},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8179433345794678},{"id":"https://openalex.org/C48044578","wikidata":"https://www.wikidata.org/wiki/Q727490","display_name":"Scalability","level":2,"score":0.7115258574485779},{"id":"https://openalex.org/C2778738651","wikidata":"https://www.wikidata.org/wiki/Q16546687","display_name":"Novelty","level":2,"score":0.7011716365814209},{"id":"https://openalex.org/C68339613","wikidata":"https://www.wikidata.org/wiki/Q1549489","display_name":"Speedup","level":2,"score":0.6346341967582703},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.6176358461380005},{"id":"https://openalex.org/C2984842247","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep neural networks","level":3,"score":0.55059415102005},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.539138913154602},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.4778411090373993},{"id":"https://openalex.org/C111498074","wikidata":"https://www.wikidata.org/wiki/Q173326","display_name":"Formal verification","level":2,"score":0.4312222898006439},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.4125477075576782},{"id":"https://openalex.org/C80444323","wikidata":"https://www.wikidata.org/wiki/Q2878974","display_name":"Theoretical computer science","level":1,"score":0.3622480034828186},{"id":"https://openalex.org/C173608175","wikidata":"https://www.wikidata.org/wiki/Q232661","display_name":"Parallel computing","level":1,"score":0.07446080446243286},{"id":"https://openalex.org/C55493867","wikidata":"https://www.wikidata.org/wiki/Q7094","display_name":"Biochemistry","level":1,"score":0.0},{"id":"https://openalex.org/C138885662","wikidata":"https://www.wikidata.org/wiki/Q5891","display_name":"Philosophy","level":0,"score":0.0},{"id":"https://openalex.org/C104317684","wikidata":"https://www.wikidata.org/wiki/Q7187","display_name":"Gene","level":2,"score":0.0},{"id":"https://openalex.org/C27206212","wikidata":"https://www.wikidata.org/wiki/Q34178","display_name":"Theology","level":1,"score":0.0},{"id":"https://openalex.org/C77088390","wikidata":"https://www.wikidata.org/wiki/Q8513","display_name":"Database","level":1,"score":0.0},{"id":"https://openalex.org/C185592680","wikidata":"https://www.wikidata.org/wiki/Q2329","display_name":"Chemistry","level":0,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/ijcnn52387.2021.9534410","is_oa":false,"landing_page_url":"https://doi.org/10.1109/ijcnn52387.2021.9534410","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2021 International Joint Conference on Neural Networks (IJCNN)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/16","display_name":"Peace, Justice and strong institutions","score":0.5099999904632568}],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":44,"referenced_works":["https://openalex.org/W1507872748","https://openalex.org/W1673923490","https://openalex.org/W1945616565","https://openalex.org/W2073576149","https://openalex.org/W2112796928","https://openalex.org/W2167510172","https://openalex.org/W2543296129","https://openalex.org/W2594877703","https://openalex.org/W2721006554","https://openalex.org/W2750384547","https://openalex.org/W2786163515","https://openalex.org/W2789524546","https://openalex.org/W2794609696","https://openalex.org/W2798356176","https://openalex.org/W2802557767","https://openalex.org/W2807040120","https://openalex.org/W2890472662","https://openalex.org/W2900153411","https://openalex.org/W2950029838","https://openalex.org/W2955566917","https://openalex.org/W2962692913","https://openalex.org/W2962700793","https://openalex.org/W2963054787","https://openalex.org/W2963440492","https://openalex.org/W2963600714","https://openalex.org/W2998574230","https://openalex.org/W3000638052","https://openalex.org/W3026742379","https://openalex.org/W3036286896","https://openalex.org/W4205950066","https://openalex.org/W4293846201","https://openalex.org/W6637162671","https://openalex.org/W6640425456","https://openalex.org/W6684372118","https://openalex.org/W6739868092","https://openalex.org/W6740406300","https://openalex.org/W6743688258","https://openalex.org/W6748277150","https://openalex.org/W6750745550","https://openalex.org/W6751161574","https://openalex.org/W6751834733","https://openalex.org/W6754619240","https://openalex.org/W6754681091","https://openalex.org/W6760757228"],"related_works":["https://openalex.org/W2950183588","https://openalex.org/W3080754722","https://openalex.org/W4383221314","https://openalex.org/W3093978547","https://openalex.org/W2953536436","https://openalex.org/W3203790781","https://openalex.org/W2997056298","https://openalex.org/W4313346231","https://openalex.org/W2738001131","https://openalex.org/W4285785480"],"abstract_inverted_index":{"Nowadays":[0],"the":[1,46,64,79,116],"robustness":[2,47,80],"of":[3,48,63,81,86],"Deep":[4],"Neural":[5],"Networks":[6],"(DNN)":[7],"is":[8,16,89,162],"gaining":[9],"much":[10],"more":[11],"attention":[12],"than":[13],"ever.":[14],"That":[15],"because":[17],"DNNs":[18],"are":[19,52,113,125],"intensively":[20],"adopted":[21,127],"in":[22],"safety-critical":[23],"AI-enabled":[24],"applications":[25],"such":[26],"as":[27],"autonomous":[28],"driving":[29],"and":[30],"authentication":[31],"control.":[32],"Formal":[33],"methods":[34],"have":[35],"been":[36],"proved":[37],"to":[38,41,45,58,96,149],"be":[39],"effective":[40],"provide":[42],"provable":[43],"guarantee":[44],"DNNs.":[49],"However,":[50],"they":[51],"suffering":[53],"from":[54],"bad":[55],"scalability":[56],"due":[57],"intrinsic":[59],"high":[60],"computational":[61],"complexity":[62],"verification":[65,108,141],"problem.":[66,109],"In":[67,110],"this":[68],"paper,":[69],"we":[70,91,103,112],"propose":[71],"a":[72],"novel":[73],"attack-guided":[74],"approach":[75,88,138],"for":[76,128],"efficiently":[77],"verifying":[78],"neural":[82,117],"networks.":[83,169],"The":[84,132,160],"novelty":[85],"our":[87,137],"that":[90,119,136],"use":[92],"existing":[93],"attack":[94],"approaches":[95],"generate":[97],"coarse":[98],"adversarial":[99,158],"examples,":[100],"by":[101,147],"which":[102,124],"can":[104,155],"significantly":[105],"simply":[106],"final":[107],"particular,":[111],"focused":[114],"on":[115,144,165],"networks":[118],"take":[120],"ReLU":[121],"activation":[122],"functions,":[123],"widely":[126],"solving":[129,146],"classification":[130],"problems.":[131],"experimental":[133],"results":[134],"show":[135],"outperforms":[139],"those":[140,166],"tools":[142],"based":[143],"constraint":[145],"up":[148],"69":[150],"times":[151],"speedup,":[152],"while":[153],"it":[154],"compute":[156],"minimum":[157],"examples.":[159],"improvement":[161],"particularly":[163],"significant":[164],"adversarially":[167],"trained":[168]},"counts_by_year":[{"year":2025,"cited_by_count":1},{"year":2024,"cited_by_count":2}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
