{"id":"https://openalex.org/W4385482697","doi":"https://doi.org/10.1109/ijcnn54540.2023.10191447","title":"Class-Balanced Universal Perturbations for Adversarial Training","display_name":"Class-Balanced Universal Perturbations for Adversarial Training","publication_year":2023,"publication_date":"2023-06-18","ids":{"openalex":"https://openalex.org/W4385482697","doi":"https://doi.org/10.1109/ijcnn54540.2023.10191447"},"language":"en","primary_location":{"id":"doi:10.1109/ijcnn54540.2023.10191447","is_oa":false,"landing_page_url":"http://dx.doi.org/10.1109/ijcnn54540.2023.10191447","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2023 International Joint Conference on Neural Networks (IJCNN)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5112972463","display_name":"Kexue Ma","orcid":null},"institutions":[{"id":"https://openalex.org/I4210139618","display_name":"Shanghai Key Laboratory of Trustworthy Computing","ror":"https://ror.org/030qbr085","country_code":"CN","type":"facility","lineage":["https://openalex.org/I4210139618"]},{"id":"https://openalex.org/I66867065","display_name":"East China Normal University","ror":"https://ror.org/02n96ep67","country_code":"CN","type":"education","lineage":["https://openalex.org/I66867065"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Kexue Ma","raw_affiliation_strings":["East China Normal University,Shanghai Key Laboratory of Trustworthy Computing,Shanghai,China","Shanghai Key Laboratory of Trustworthy Computing, East China Normal University, Shanghai, China"],"affiliations":[{"raw_affiliation_string":"East China Normal University,Shanghai Key Laboratory of Trustworthy Computing,Shanghai,China","institution_ids":["https://openalex.org/I4210139618","https://openalex.org/I66867065"]},{"raw_affiliation_string":"Shanghai Key Laboratory of Trustworthy Computing, East China Normal University, Shanghai, China","institution_ids":["https://openalex.org/I4210139618","https://openalex.org/I66867065"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5027627793","display_name":"Guitao Cao","orcid":"https://orcid.org/0000-0002-4059-4806"},"institutions":[{"id":"https://openalex.org/I66867065","display_name":"East China Normal University","ror":"https://ror.org/02n96ep67","country_code":"CN","type":"education","lineage":["https://openalex.org/I66867065"]},{"id":"https://openalex.org/I4210139618","display_name":"Shanghai Key Laboratory of Trustworthy Computing","ror":"https://ror.org/030qbr085","country_code":"CN","type":"facility","lineage":["https://openalex.org/I4210139618"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Guitao Cao","raw_affiliation_strings":["East China Normal University,Shanghai Key Laboratory of Trustworthy Computing,Shanghai,China","Shanghai Key Laboratory of Trustworthy Computing, East China Normal University, Shanghai, China"],"affiliations":[{"raw_affiliation_string":"East China Normal University,Shanghai Key Laboratory of Trustworthy Computing,Shanghai,China","institution_ids":["https://openalex.org/I4210139618","https://openalex.org/I66867065"]},{"raw_affiliation_string":"Shanghai Key Laboratory of Trustworthy Computing, East China Normal University, Shanghai, China","institution_ids":["https://openalex.org/I4210139618","https://openalex.org/I66867065"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5111008337","display_name":"Mengqian Xu","orcid":"https://orcid.org/0009-0003-9782-4347"},"institutions":[{"id":"https://openalex.org/I4210139618","display_name":"Shanghai Key Laboratory of Trustworthy Computing","ror":"https://ror.org/030qbr085","country_code":"CN","type":"facility","lineage":["https://openalex.org/I4210139618"]},{"id":"https://openalex.org/I66867065","display_name":"East China Normal University","ror":"https://ror.org/02n96ep67","country_code":"CN","type":"education","lineage":["https://openalex.org/I66867065"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Mengqian Xu","raw_affiliation_strings":["East China Normal University,Shanghai Key Laboratory of Trustworthy Computing,Shanghai,China","Shanghai Key Laboratory of Trustworthy Computing, East China Normal University, Shanghai, China"],"affiliations":[{"raw_affiliation_string":"East China Normal University,Shanghai Key Laboratory of Trustworthy Computing,Shanghai,China","institution_ids":["https://openalex.org/I4210139618","https://openalex.org/I66867065"]},{"raw_affiliation_string":"Shanghai Key Laboratory of Trustworthy Computing, East China Normal University, Shanghai, China","institution_ids":["https://openalex.org/I4210139618","https://openalex.org/I66867065"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5074104093","display_name":"Chunwei Wu","orcid":"https://orcid.org/0000-0001-6209-3714"},"institutions":[{"id":"https://openalex.org/I66867065","display_name":"East China Normal University","ror":"https://ror.org/02n96ep67","country_code":"CN","type":"education","lineage":["https://openalex.org/I66867065"]},{"id":"https://openalex.org/I4210139618","display_name":"Shanghai Key Laboratory of Trustworthy Computing","ror":"https://ror.org/030qbr085","country_code":"CN","type":"facility","lineage":["https://openalex.org/I4210139618"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Chunwei Wu","raw_affiliation_strings":["East China Normal University,Shanghai Key Laboratory of Trustworthy Computing,Shanghai,China","Shanghai Key Laboratory of Trustworthy Computing, East China Normal University, Shanghai, China"],"affiliations":[{"raw_affiliation_string":"East China Normal University,Shanghai Key Laboratory of Trustworthy Computing,Shanghai,China","institution_ids":["https://openalex.org/I4210139618","https://openalex.org/I66867065"]},{"raw_affiliation_string":"Shanghai Key Laboratory of Trustworthy Computing, East China Normal University, Shanghai, China","institution_ids":["https://openalex.org/I4210139618","https://openalex.org/I66867065"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5104779969","display_name":"Hong Wang","orcid":"https://orcid.org/0000-0002-6749-8400"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Hong Wang","raw_affiliation_strings":["Shanghai Research Institute of Microwave Equipment,Shanghai,China","Shanghai Research Institute of Microwave Equipment, Shanghai, China"],"affiliations":[{"raw_affiliation_string":"Shanghai Research Institute of Microwave Equipment,Shanghai,China","institution_ids":[]},{"raw_affiliation_string":"Shanghai Research Institute of Microwave Equipment, Shanghai, China","institution_ids":[]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5100625024","display_name":"Wenming Cao","orcid":"https://orcid.org/0000-0002-8174-6167"},"institutions":[{"id":"https://openalex.org/I180726961","display_name":"Shenzhen University","ror":"https://ror.org/01vy4gh70","country_code":"CN","type":"education","lineage":["https://openalex.org/I180726961"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Wenming Cao","raw_affiliation_strings":["College of Information Engineering, Shenzhen University,Shenzhen,China","College of Information Engineering, Shenzhen University, Shenzhen, China"],"affiliations":[{"raw_affiliation_string":"College of Information Engineering, Shenzhen University,Shenzhen,China","institution_ids":["https://openalex.org/I180726961"]},{"raw_affiliation_string":"College of Information Engineering, Shenzhen University, Shenzhen, China","institution_ids":["https://openalex.org/I180726961"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":6,"corresponding_author_ids":["https://openalex.org/A5112972463"],"corresponding_institution_ids":["https://openalex.org/I4210139618","https://openalex.org/I66867065"],"apc_list":null,"apc_paid":null,"fwci":0.1746,"has_fulltext":false,"cited_by_count":1,"citation_normalized_percentile":{"value":0.54391209,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":89,"max":94},"biblio":{"volume":"97","issue":null,"first_page":"1","last_page":"8"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9995999932289124,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9995999932289124,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11515","display_name":"Bacillus and Francisella bacterial research","score":0.9839000105857849,"subfield":{"id":"https://openalex.org/subfields/1312","display_name":"Molecular Biology"},"field":{"id":"https://openalex.org/fields/13","display_name":"Biochemistry, Genetics and Molecular Biology"},"domain":{"id":"https://openalex.org/domains/1","display_name":"Life Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.983299970626831,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.8539929389953613},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.6740905046463013},{"id":"https://openalex.org/keywords/classifier","display_name":"Classifier (UML)","score":0.5989043116569519},{"id":"https://openalex.org/keywords/perturbation","display_name":"Perturbation (astronomy)","score":0.5155556201934814},{"id":"https://openalex.org/keywords/mathematical-optimization","display_name":"Mathematical optimization","score":0.4787663519382477},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.4175449013710022},{"id":"https://openalex.org/keywords/mathematics","display_name":"Mathematics","score":0.27251434326171875}],"concepts":[{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.8539929389953613},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6740905046463013},{"id":"https://openalex.org/C95623464","wikidata":"https://www.wikidata.org/wiki/Q1096149","display_name":"Classifier (UML)","level":2,"score":0.5989043116569519},{"id":"https://openalex.org/C177918212","wikidata":"https://www.wikidata.org/wiki/Q803623","display_name":"Perturbation (astronomy)","level":2,"score":0.5155556201934814},{"id":"https://openalex.org/C126255220","wikidata":"https://www.wikidata.org/wiki/Q141495","display_name":"Mathematical optimization","level":1,"score":0.4787663519382477},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.4175449013710022},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.27251434326171875},{"id":"https://openalex.org/C121332964","wikidata":"https://www.wikidata.org/wiki/Q413","display_name":"Physics","level":0,"score":0.0},{"id":"https://openalex.org/C62520636","wikidata":"https://www.wikidata.org/wiki/Q944","display_name":"Quantum mechanics","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/ijcnn54540.2023.10191447","is_oa":false,"landing_page_url":"http://dx.doi.org/10.1109/ijcnn54540.2023.10191447","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2023 International Joint Conference on Neural Networks (IJCNN)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[{"id":"https://openalex.org/G6159160774","display_name":null,"funder_award_id":"61871186,61771322","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"}],"funders":[{"id":"https://openalex.org/F4320321001","display_name":"National Natural Science Foundation of China","ror":"https://ror.org/01h0zpd94"}],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":47,"referenced_works":["https://openalex.org/W1945616565","https://openalex.org/W2117539524","https://openalex.org/W2243397390","https://openalex.org/W2543927648","https://openalex.org/W2912070915","https://openalex.org/W2963165363","https://openalex.org/W2963184668","https://openalex.org/W2963539306","https://openalex.org/W2963542245","https://openalex.org/W2963560523","https://openalex.org/W2963809642","https://openalex.org/W2963855547","https://openalex.org/W2963857521","https://openalex.org/W2964171870","https://openalex.org/W2971848556","https://openalex.org/W2976345833","https://openalex.org/W2997502936","https://openalex.org/W2998421476","https://openalex.org/W3034643863","https://openalex.org/W3096831136","https://openalex.org/W3102097413","https://openalex.org/W3104032928","https://openalex.org/W3106835084","https://openalex.org/W3119268974","https://openalex.org/W3168907554","https://openalex.org/W3175786209","https://openalex.org/W3190041646","https://openalex.org/W3201137430","https://openalex.org/W4224951842","https://openalex.org/W4229459649","https://openalex.org/W4283817929","https://openalex.org/W4288363925","https://openalex.org/W4293846201","https://openalex.org/W4312331157","https://openalex.org/W4312840203","https://openalex.org/W4313141826","https://openalex.org/W6640425456","https://openalex.org/W6719080892","https://openalex.org/W6739868092","https://openalex.org/W6743771705","https://openalex.org/W6747749088","https://openalex.org/W6758779121","https://openalex.org/W6761100157","https://openalex.org/W6768008261","https://openalex.org/W6773304887","https://openalex.org/W6785895317","https://openalex.org/W6810268487"],"related_works":["https://openalex.org/W4220812973","https://openalex.org/W2903917280","https://openalex.org/W3004372499","https://openalex.org/W4297742296","https://openalex.org/W4205705013","https://openalex.org/W2901368259","https://openalex.org/W3198184493","https://openalex.org/W1858327386","https://openalex.org/W2735135478","https://openalex.org/W2474469336"],"abstract_inverted_index":{"Universal":[0],"attack":[1,48,72,150],"generates":[2],"image-agnostic":[3],"perturbation":[4,8,28,124],"called":[5],"universal":[6,27,116,156,173],"adversarial":[7,37,68,111,129,159],"(UAP),":[9],"which":[10,89],"can":[11],"be":[12],"added":[13],"to":[14,21,34,113,172],"all":[15],"samples":[16,97],"in":[17,44,110,167],"the":[18,23,32,40,45,61,64,92,99,119,132,148,155],"data":[19],"distribution":[20,95,102],"fool":[22],"classifier.":[24],"However,":[25],"a":[26,79,137],"will":[29],"likely":[30],"mislead":[31],"classifier":[33],"identify":[35],"most":[36],"examples":[38],"as":[39],"same":[41],"label,":[42],"resulting":[43],"imbalance":[46],"of":[47,63],"strength":[49,73],"between":[50,96],"classes.":[51],"In":[52],"this":[53],"paper,":[54],"we":[55,77,106],"propose":[56],"class-balanced":[57,108,120,149,162],"UAPs":[58],"that":[59,147],"enlarge":[60],"dispersion":[62],"predicted":[65,93,100],"labels":[66],"for":[67],"examples.":[69],"To":[70],"ensure":[71],"and":[74,86,98,170],"balance":[75],"simultaneously,":[76],"design":[78],"novel":[80],"diversity":[81],"objective":[82],"containing":[83],"probability":[84,101],"calibration":[85],"penalty":[87],"regularizer,":[88],"fully":[90],"considers":[91],"label":[94],"within":[103],"samples.":[104],"Furthermore,":[105],"apply":[107],"attacks":[109],"training":[112,130,160],"defend":[114],"against":[115],"perturbations":[117],"since":[118],"UAP":[121,163],"provides":[122],"diverse":[123],"directions.":[125],"We":[126],"correspondingly":[127],"reformulate":[128],"from":[131],"min-max":[133],"optimization":[134],"problem":[135],"into":[136],"new":[138],"two-stage":[139],"framework.":[140],"Experiments":[141],"on":[142],"several":[143],"benchmark":[144],"datasets":[145],"demonstrate":[146],"achieves":[151,164],"better":[152],"performance":[153],"than":[154],"attack,":[157],"while":[158],"with":[161],"state-of-the-art":[165],"results":[166],"clean":[168],"accuracy":[169],"robustness":[171],"perturbations.":[174]},"counts_by_year":[{"year":2023,"cited_by_count":1}],"updated_date":"2025-12-21T23:12:01.093139","created_date":"2025-10-10T00:00:00"}
