{"id":"https://openalex.org/W4402351055","doi":"https://doi.org/10.1109/ijcnn60899.2024.10650104","title":"STMS: An Out-Of-Distribution Model Stealing Method Based on Causality","display_name":"STMS: An Out-Of-Distribution Model Stealing Method Based on Causality","publication_year":2024,"publication_date":"2024-06-30","ids":{"openalex":"https://openalex.org/W4402351055","doi":"https://doi.org/10.1109/ijcnn60899.2024.10650104"},"language":"en","primary_location":{"id":"doi:10.1109/ijcnn60899.2024.10650104","is_oa":false,"landing_page_url":"https://doi.org/10.1109/ijcnn60899.2024.10650104","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2024 International Joint Conference on Neural Networks (IJCNN)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5019816545","display_name":"Yunfei Yang","orcid":"https://orcid.org/0000-0002-0703-4241"},"institutions":[{"id":"https://openalex.org/I4210165038","display_name":"University of Chinese Academy of Sciences","ror":"https://ror.org/05qbk4x57","country_code":"CN","type":"education","lineage":["https://openalex.org/I19820366","https://openalex.org/I4210165038"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yunfei Yang","raw_affiliation_strings":["University of Chinese Academy of Sciences,School of Cyber Security,Beijing,China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"University of Chinese Academy of Sciences,School of Cyber Security,Beijing,China","institution_ids":["https://openalex.org/I4210165038"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100369449","display_name":"Xiaojun Chen","orcid":"https://orcid.org/0000-0002-8017-6844"},"institutions":[{"id":"https://openalex.org/I4210165038","display_name":"University of Chinese Academy of Sciences","ror":"https://ror.org/05qbk4x57","country_code":"CN","type":"education","lineage":["https://openalex.org/I19820366","https://openalex.org/I4210165038"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Xiaojun Chen","raw_affiliation_strings":["University of Chinese Academy of Sciences,School of Cyber Security,Beijing,China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"University of Chinese Academy of Sciences,School of Cyber Security,Beijing,China","institution_ids":["https://openalex.org/I4210165038"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100567246","display_name":"Zhendong Zhao","orcid":"https://orcid.org/0000-0003-0003-019X"},"institutions":[{"id":"https://openalex.org/I4210165038","display_name":"University of Chinese Academy of Sciences","ror":"https://ror.org/05qbk4x57","country_code":"CN","type":"education","lineage":["https://openalex.org/I19820366","https://openalex.org/I4210165038"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Zhendong Zhao","raw_affiliation_strings":["University of Chinese Academy of Sciences,School of Cyber Security,Beijing,China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"University of Chinese Academy of Sciences,School of Cyber Security,Beijing,China","institution_ids":["https://openalex.org/I4210165038"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5074107460","display_name":"Yuexin Xuan","orcid":"https://orcid.org/0000-0001-7887-2309"},"institutions":[{"id":"https://openalex.org/I4210165038","display_name":"University of Chinese Academy of Sciences","ror":"https://ror.org/05qbk4x57","country_code":"CN","type":"education","lineage":["https://openalex.org/I19820366","https://openalex.org/I4210165038"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yuexin Xuan","raw_affiliation_strings":["University of Chinese Academy of Sciences,School of Cyber Security,Beijing,China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"University of Chinese Academy of Sciences,School of Cyber Security,Beijing,China","institution_ids":["https://openalex.org/I4210165038"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5004676015","display_name":"Bisheng Tang","orcid":"https://orcid.org/0000-0001-6849-3233"},"institutions":[{"id":"https://openalex.org/I4210165038","display_name":"University of Chinese Academy of Sciences","ror":"https://ror.org/05qbk4x57","country_code":"CN","type":"education","lineage":["https://openalex.org/I19820366","https://openalex.org/I4210165038"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Bisheng Tang","raw_affiliation_strings":["University of Chinese Academy of Sciences,School of Cyber Security,Beijing,China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"University of Chinese Academy of Sciences,School of Cyber Security,Beijing,China","institution_ids":["https://openalex.org/I4210165038"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5100404008","display_name":"Xiaoying Li","orcid":"https://orcid.org/0000-0001-6449-1505"},"institutions":[{"id":"https://openalex.org/I4210165038","display_name":"University of Chinese Academy of Sciences","ror":"https://ror.org/05qbk4x57","country_code":"CN","type":"education","lineage":["https://openalex.org/I19820366","https://openalex.org/I4210165038"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Xiaoying Li","raw_affiliation_strings":["University of Chinese Academy of Sciences,School of Cyber Security,Beijing,China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"University of Chinese Academy of Sciences,School of Cyber Security,Beijing,China","institution_ids":["https://openalex.org/I4210165038"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":6,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":0.3055,"has_fulltext":false,"cited_by_count":1,"citation_normalized_percentile":{"value":0.64366851,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":91,"max":95},"biblio":{"volume":null,"issue":null,"first_page":"1","last_page":"8"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.998199999332428,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.998199999332428,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9969000220298767,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12072","display_name":"Machine Learning and Algorithms","score":0.9927999973297119,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.6742048859596252},{"id":"https://openalex.org/keywords/causality","display_name":"Causality (physics)","score":0.5762122273445129},{"id":"https://openalex.org/keywords/distribution","display_name":"Distribution (mathematics)","score":0.4371330440044403},{"id":"https://openalex.org/keywords/mathematics","display_name":"Mathematics","score":0.10817191004753113}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6742048859596252},{"id":"https://openalex.org/C64357122","wikidata":"https://www.wikidata.org/wiki/Q1149766","display_name":"Causality (physics)","level":2,"score":0.5762122273445129},{"id":"https://openalex.org/C110121322","wikidata":"https://www.wikidata.org/wiki/Q865811","display_name":"Distribution (mathematics)","level":2,"score":0.4371330440044403},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.10817191004753113},{"id":"https://openalex.org/C62520636","wikidata":"https://www.wikidata.org/wiki/Q944","display_name":"Quantum mechanics","level":1,"score":0.0},{"id":"https://openalex.org/C134306372","wikidata":"https://www.wikidata.org/wiki/Q7754","display_name":"Mathematical analysis","level":1,"score":0.0},{"id":"https://openalex.org/C121332964","wikidata":"https://www.wikidata.org/wiki/Q413","display_name":"Physics","level":0,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/ijcnn60899.2024.10650104","is_oa":false,"landing_page_url":"https://doi.org/10.1109/ijcnn60899.2024.10650104","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2024 International Joint Conference on Neural Networks (IJCNN)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"display_name":"Reduced inequalities","score":0.4399999976158142,"id":"https://metadata.un.org/sdg/10"}],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":69,"referenced_works":["https://openalex.org/W2100600008","https://openalex.org/W2108018401","https://openalex.org/W2112552549","https://openalex.org/W2144902422","https://openalex.org/W2146152876","https://openalex.org/W2194775991","https://openalex.org/W2325939864","https://openalex.org/W2335728318","https://openalex.org/W2350778671","https://openalex.org/W2535690855","https://openalex.org/W2547875792","https://openalex.org/W2551176409","https://openalex.org/W2603766943","https://openalex.org/W2612637113","https://openalex.org/W2763549966","https://openalex.org/W2766355270","https://openalex.org/W2790376986","https://openalex.org/W2807992610","https://openalex.org/W2963303354","https://openalex.org/W2963844355","https://openalex.org/W2969695741","https://openalex.org/W2981207549","https://openalex.org/W2982802130","https://openalex.org/W2996649838","https://openalex.org/W2997146418","https://openalex.org/W2997591099","https://openalex.org/W2997746169","https://openalex.org/W2998043922","https://openalex.org/W3034530016","https://openalex.org/W3035616549","https://openalex.org/W3096831136","https://openalex.org/W3098590676","https://openalex.org/W3112263620","https://openalex.org/W3118608800","https://openalex.org/W3127260909","https://openalex.org/W3174136778","https://openalex.org/W3175685622","https://openalex.org/W3178659068","https://openalex.org/W3180303049","https://openalex.org/W3183724334","https://openalex.org/W3196850540","https://openalex.org/W4206212643","https://openalex.org/W4214502238","https://openalex.org/W4221146082","https://openalex.org/W4225887991","https://openalex.org/W4286239317","https://openalex.org/W4287186155","https://openalex.org/W4290473204","https://openalex.org/W4312343407","https://openalex.org/W4382317858","https://openalex.org/W4387250121","https://openalex.org/W6675134017","https://openalex.org/W6676264761","https://openalex.org/W6676726796","https://openalex.org/W6681302627","https://openalex.org/W6729448088","https://openalex.org/W6746195791","https://openalex.org/W6751569023","https://openalex.org/W6772101090","https://openalex.org/W6774150056","https://openalex.org/W6781511523","https://openalex.org/W6787972765","https://openalex.org/W6790544463","https://openalex.org/W6790889838","https://openalex.org/W6800440403","https://openalex.org/W6810504383","https://openalex.org/W6811242705","https://openalex.org/W6839783833","https://openalex.org/W6983402278"],"related_works":["https://openalex.org/W4391375266","https://openalex.org/W2748952813","https://openalex.org/W2390279801","https://openalex.org/W2358668433","https://openalex.org/W4396701345","https://openalex.org/W2376932109","https://openalex.org/W2001405890","https://openalex.org/W2081494945","https://openalex.org/W2389053294","https://openalex.org/W4396696052"],"abstract_inverted_index":{"Machine":[0],"learning,":[1,4],"particularly":[2],"deep":[3],"is":[5,139],"extensively":[6],"applied":[7,171],"in":[8,81],"various":[9],"real-life":[10],"scenarios.":[11],"However,":[12],"recent":[13],"research":[14],"has":[15],"highlighted":[16],"the":[17,37,46,54,64,99,104,110,123,129,144,174],"severe":[18],"infringement":[19],"of":[20,41,49,53,63,106,128,176,189],"privacy":[21],"and":[22,39,67,76,125,137,154,163,181],"intellectual":[23],"property":[24],"caused":[25],"by":[26],"model":[27,56,79,88,111,131,178],"stealing":[28,57,80,89,112,152,179],"attacks.":[29],"Therefore,":[30],"more":[31,119],"researchers":[32],"are":[33,132],"dedicated":[34],"to":[35,44,73,172,186],"studying":[36],"principles":[38],"methods":[40,180],"such":[42],"attacks":[43,58],"promote":[45],"security":[47],"development":[48],"artificial":[50],"intelligence.":[51],"Most":[52],"existing":[55],"rely":[59],"on":[60,94,160],"prior":[61,158],"information":[62],"attacked":[65],"models":[66],"consider":[68],"ideal":[69],"conditions.":[70],"In":[71],"order":[72],"better":[74,151],"understand":[75],"defend":[77],"against":[78],"real-world":[82],"scenarios,":[83],"we":[84,102],"propose":[85],"a":[86,140],"novel":[87],"method,":[90],"named":[91],"STMS,":[92],"based":[93],"causal":[95],"inference":[96],"learning.":[97,191],"For":[98],"first":[100],"time,":[101],"introduce":[103],"problem":[105],"out-of-distribution":[107],"generalization":[108,155],"into":[109],"domain.":[113],"The":[114],"proposed":[115],"approach":[116],"operates":[117],"under":[118],"challenging":[120],"conditions,":[121],"where":[122],"training":[124],"testing":[126,145],"data":[127],"target":[130],"unknown,":[133],"black-box,":[134],"hard-label":[135],"outputs,":[136],"there":[138],"distribution":[141],"shift":[142],"during":[143],"phase.":[146],"STMS":[147],"achieves":[148],"comparable":[149],"or":[150],"accuracy":[153],"performance":[156],"than":[157],"works":[159],"multiple":[161],"datasets":[162],"tasks.":[164],"Moreover,":[165],"this":[166],"universal":[167],"framework":[168],"can":[169,182],"be":[170,184],"improve":[173],"effectiveness":[175],"other":[177,187],"also":[183],"migrated":[185],"areas":[188],"machine":[190]},"counts_by_year":[{"year":2025,"cited_by_count":1}],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2025-10-10T00:00:00"}
