{"id":"https://openalex.org/W4402352182","doi":"https://doi.org/10.1109/ijcnn60899.2024.10651354","title":"Ensemble Adversarial Defense via Integration of Multiple Dispersed Low Curvature Models","display_name":"Ensemble Adversarial Defense via Integration of Multiple Dispersed Low Curvature Models","publication_year":2024,"publication_date":"2024-06-30","ids":{"openalex":"https://openalex.org/W4402352182","doi":"https://doi.org/10.1109/ijcnn60899.2024.10651354"},"language":"en","primary_location":{"id":"doi:10.1109/ijcnn60899.2024.10651354","is_oa":false,"landing_page_url":"https://doi.org/10.1109/ijcnn60899.2024.10651354","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2024 International Joint Conference on Neural Networks (IJCNN)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5101323899","display_name":"Kaikang Zhao","orcid":null},"institutions":[{"id":"https://openalex.org/I76569877","display_name":"Southeast University","ror":"https://ror.org/04ct4d772","country_code":"CN","type":"education","lineage":["https://openalex.org/I76569877"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Kaikang Zhao","raw_affiliation_strings":["Southeast University,Nanjing,China"],"affiliations":[{"raw_affiliation_string":"Southeast University,Nanjing,China","institution_ids":["https://openalex.org/I76569877"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5076428337","display_name":"Xi Chen","orcid":"https://orcid.org/0000-0001-6149-2270"},"institutions":[{"id":"https://openalex.org/I169689159","display_name":"PLA Information Engineering University","ror":"https://ror.org/00mm1qk40","country_code":"CN","type":"education","lineage":["https://openalex.org/I169689159"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Xi Chen","raw_affiliation_strings":["PLA Information Engineering University,Zhengzhou,China"],"affiliations":[{"raw_affiliation_string":"PLA Information Engineering University,Zhengzhou,China","institution_ids":["https://openalex.org/I169689159"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5064832662","display_name":"Wei Huang","orcid":"https://orcid.org/0000-0002-5862-3126"},"institutions":[{"id":"https://openalex.org/I4210155350","display_name":"Purple Mountain Laboratories","ror":"https://ror.org/04zcbk583","country_code":"CN","type":"facility","lineage":["https://openalex.org/I4210155350"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Wei Huang","raw_affiliation_strings":["Purple Mountain Laboratories,Nanjing,China"],"affiliations":[{"raw_affiliation_string":"Purple Mountain Laboratories,Nanjing,China","institution_ids":["https://openalex.org/I4210155350"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5101323900","display_name":"Liuxin Ding","orcid":null},"institutions":[{"id":"https://openalex.org/I76569877","display_name":"Southeast University","ror":"https://ror.org/04ct4d772","country_code":"CN","type":"education","lineage":["https://openalex.org/I76569877"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Liuxin Ding","raw_affiliation_strings":["Southeast University,Nanjing,China"],"affiliations":[{"raw_affiliation_string":"Southeast University,Nanjing,China","institution_ids":["https://openalex.org/I76569877"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5011947851","display_name":"Xianglong Kong","orcid":"https://orcid.org/0000-0002-2448-2214"},"institutions":[{"id":"https://openalex.org/I4210155350","display_name":"Purple Mountain Laboratories","ror":"https://ror.org/04zcbk583","country_code":"CN","type":"facility","lineage":["https://openalex.org/I4210155350"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Xianglong Kong","raw_affiliation_strings":["Purple Mountain Laboratories,Nanjing,China"],"affiliations":[{"raw_affiliation_string":"Purple Mountain Laboratories,Nanjing,China","institution_ids":["https://openalex.org/I4210155350"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5100403375","display_name":"Fan Zhang","orcid":"https://orcid.org/0000-0001-5894-3237"},"institutions":[{"id":"https://openalex.org/I4210091712","display_name":"Zhengzhou University of Science and Technology","ror":"https://ror.org/00b3j7936","country_code":"CN","type":"education","lineage":["https://openalex.org/I4210091712"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Fan Zhang","raw_affiliation_strings":["NDSC,Zhengzhou,China"],"affiliations":[{"raw_affiliation_string":"NDSC,Zhengzhou,China","institution_ids":["https://openalex.org/I4210091712"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":6,"corresponding_author_ids":["https://openalex.org/A5101323899"],"corresponding_institution_ids":["https://openalex.org/I76569877"],"apc_list":null,"apc_paid":null,"fwci":0.3626,"has_fulltext":false,"cited_by_count":1,"citation_normalized_percentile":{"value":0.66445132,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":91,"max":95},"biblio":{"volume":null,"issue":null,"first_page":"1","last_page":"9"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9901999831199646,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12153","display_name":"Advanced Optical Sensing Technologies","score":0.9824000000953674,"subfield":{"id":"https://openalex.org/subfields/3105","display_name":"Instrumentation"},"field":{"id":"https://openalex.org/fields/31","display_name":"Physics and Astronomy"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.7897458076477051},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.593871533870697},{"id":"https://openalex.org/keywords/curvature","display_name":"Curvature","score":0.5868362188339233},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.338306188583374},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.3293154835700989},{"id":"https://openalex.org/keywords/mathematics","display_name":"Mathematics","score":0.17151209712028503},{"id":"https://openalex.org/keywords/geometry","display_name":"Geometry","score":0.06757354736328125}],"concepts":[{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.7897458076477051},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.593871533870697},{"id":"https://openalex.org/C195065555","wikidata":"https://www.wikidata.org/wiki/Q214881","display_name":"Curvature","level":2,"score":0.5868362188339233},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.338306188583374},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.3293154835700989},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.17151209712028503},{"id":"https://openalex.org/C2524010","wikidata":"https://www.wikidata.org/wiki/Q8087","display_name":"Geometry","level":1,"score":0.06757354736328125}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/ijcnn60899.2024.10651354","is_oa":false,"landing_page_url":"https://doi.org/10.1109/ijcnn60899.2024.10651354","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2024 International Joint Conference on Neural Networks (IJCNN)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[{"id":"https://openalex.org/F4320324856","display_name":"Southeast University","ror":"https://ror.org/04ct4d772"},{"id":"https://openalex.org/F4320335777","display_name":"National Key Research and Development Program of China","ror":null}],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":43,"referenced_works":["https://openalex.org/W1686810756","https://openalex.org/W1945616565","https://openalex.org/W1994616650","https://openalex.org/W2106390255","https://openalex.org/W2194775991","https://openalex.org/W2408141691","https://openalex.org/W2768346313","https://openalex.org/W2774018344","https://openalex.org/W2788463493","https://openalex.org/W2795727551","https://openalex.org/W2887603965","https://openalex.org/W2911510572","https://openalex.org/W2950073527","https://openalex.org/W2962847335","https://openalex.org/W2963026800","https://openalex.org/W2963389226","https://openalex.org/W2969542116","https://openalex.org/W2970561365","https://openalex.org/W3086034503","https://openalex.org/W3109447255","https://openalex.org/W3123662205","https://openalex.org/W3167121676","https://openalex.org/W3176432129","https://openalex.org/W4226058100","https://openalex.org/W4283830621","https://openalex.org/W4293846201","https://openalex.org/W4386074714","https://openalex.org/W4390619859","https://openalex.org/W6637373629","https://openalex.org/W6640425456","https://openalex.org/W6714069269","https://openalex.org/W6729756640","https://openalex.org/W6739868092","https://openalex.org/W6748240843","https://openalex.org/W6752827690","https://openalex.org/W6758458550","https://openalex.org/W6758779121","https://openalex.org/W6759424558","https://openalex.org/W6774469542","https://openalex.org/W6782631215","https://openalex.org/W6789494985","https://openalex.org/W6796935005","https://openalex.org/W6838596257"],"related_works":["https://openalex.org/W4391375266","https://openalex.org/W2748952813","https://openalex.org/W2502115930","https://openalex.org/W2482350142","https://openalex.org/W4246396837","https://openalex.org/W3126451824","https://openalex.org/W1561927205","https://openalex.org/W3191453585","https://openalex.org/W4297672492","https://openalex.org/W4310988119"],"abstract_inverted_index":{"The":[0,19],"integration":[1],"of":[2,5,32,53,73,144,177,182],"an":[3],"ensemble":[4,74,84,136,169],"deep":[6],"learning":[7],"models":[8],"has":[9],"been":[10],"extensively":[11],"explored":[12],"to":[13,28,58,82,140,154],"enhance":[14,83],"defense":[15],"against":[16,174],"adversarial":[17,38,68,75,104],"attacks.":[18],"diversity":[20,47,65,85],"among":[21,146],"sub-models":[22],"increases":[23],"the":[24,30,33,37,60,71,96,107,122,142,180],"attack":[25,88],"cost":[26],"required":[27],"deceive":[29],"majority":[31],"ensemble,":[34],"thereby":[35],"improving":[36],"robustness.":[39,105],"While":[40],"existing":[41],"approaches":[42],"mainly":[43],"center":[44],"on":[45],"increasing":[46],"in":[48,103,111],"feature":[49],"representations":[50],"or":[51],"dispersion":[52],"first-order":[54],"gradients":[55,113],"with":[56],"respect":[57],"input,":[59],"limited":[61],"correlation":[62],"between":[63],"these":[64],"metrics":[66],"and":[67],"robustness":[69,173],"constrains":[70],"performance":[72],"defense.":[76],"In":[77],"this":[78],"work,":[79],"we":[80,120],"aim":[81],"by":[86],"reducing":[87],"transferability.":[89],"We":[90,149],"identify":[91],"second-order":[92,112],"gradients,":[93],"which":[94],"depict":[95],"loss":[97],"curvature,":[98],"as":[99],"a":[100,151,175],"key":[101],"factor":[102],"Computing":[106],"Hessian":[108],"matrix":[109],"involved":[110],"is":[114],"computationally":[115],"expensive.":[116],"To":[117],"address":[118],"this,":[119],"approximate":[121],"Hessian-vector":[123],"product":[124],"using":[125],"differential":[126],"approximation.":[127],"Given":[128],"that":[129,167],"low":[130],"curvature":[131,145],"provides":[132],"better":[133],"robustness,":[134],"our":[135,168,183],"model":[137,170],"was":[138],"designed":[139],"consider":[141],"influence":[143],"different":[147],"sub-models.":[148],"introduce":[150],"novel":[152],"regularizer":[153],"train":[155],"multiple":[156],"more-diverse":[157],"low-curvature":[158],"network":[159],"models.":[160],"Extensive":[161],"experiments":[162],"across":[163],"various":[164],"datasets":[165],"demonstrate":[166],"exhibits":[171],"superior":[172],"range":[176],"attacks,":[178],"underscoring":[179],"effectiveness":[181],"approach.":[184]},"counts_by_year":[{"year":2025,"cited_by_count":1}],"updated_date":"2025-12-27T23:08:20.325037","created_date":"2025-10-10T00:00:00"}
