{"id":"https://openalex.org/W2940718416","doi":"https://doi.org/10.1109/iolts.2019.8854425","title":"TrISec: Training Data-Unaware Imperceptible Security Attacks on Deep Neural Networks","display_name":"TrISec: Training Data-Unaware Imperceptible Security Attacks on Deep Neural Networks","publication_year":2019,"publication_date":"2019-07-01","ids":{"openalex":"https://openalex.org/W2940718416","doi":"https://doi.org/10.1109/iolts.2019.8854425","mag":"2940718416"},"language":"en","primary_location":{"id":"doi:10.1109/iolts.2019.8854425","is_oa":false,"landing_page_url":"https://doi.org/10.1109/iolts.2019.8854425","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2019 IEEE 25th International Symposium on On-Line Testing and Robust System Design (IOLTS)","raw_type":"proceedings-article"},"type":"preprint","indexed_in":["arxiv","crossref"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://arxiv.org/pdf/1811.01031","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5074265316","display_name":"Faiq Khalid","orcid":"https://orcid.org/0000-0001-6263-674X"},"institutions":[{"id":"https://openalex.org/I145847075","display_name":"TU Wien","ror":"https://ror.org/04d836q62","country_code":"AT","type":"education","lineage":["https://openalex.org/I145847075"]}],"countries":["AT"],"is_corresponding":true,"raw_author_name":"Faiq Khalid","raw_affiliation_strings":["Technische Universit\u00e4t Wien (TU Wien), Vienna, Austria"],"affiliations":[{"raw_affiliation_string":"Technische Universit\u00e4t Wien (TU Wien), Vienna, Austria","institution_ids":["https://openalex.org/I145847075"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100647460","display_name":"Muhammad Abdullah Hanif","orcid":"https://orcid.org/0000-0001-9841-6132"},"institutions":[{"id":"https://openalex.org/I145847075","display_name":"TU Wien","ror":"https://ror.org/04d836q62","country_code":"AT","type":"education","lineage":["https://openalex.org/I145847075"]}],"countries":["AT"],"is_corresponding":false,"raw_author_name":"Muhammad Abdullah Hanif","raw_affiliation_strings":["Technische Universit\u00e4t Wien (TU Wien), Vienna, Austria"],"affiliations":[{"raw_affiliation_string":"Technische Universit\u00e4t Wien (TU Wien), Vienna, Austria","institution_ids":["https://openalex.org/I145847075"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5058712739","display_name":"Semeen Rehman","orcid":"https://orcid.org/0000-0002-8972-0949"},"institutions":[{"id":"https://openalex.org/I145847075","display_name":"TU Wien","ror":"https://ror.org/04d836q62","country_code":"AT","type":"education","lineage":["https://openalex.org/I145847075"]}],"countries":["AT"],"is_corresponding":false,"raw_author_name":"Semeen Rehman","raw_affiliation_strings":["Technische Universit\u00e4t Wien (TU Wien), Vienna, Austria"],"affiliations":[{"raw_affiliation_string":"Technische Universit\u00e4t Wien (TU Wien), Vienna, Austria","institution_ids":["https://openalex.org/I145847075"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5101852758","display_name":"Rehan Ahmed","orcid":"https://orcid.org/0000-0002-6950-5088"},"institutions":[{"id":"https://openalex.org/I929597975","display_name":"National University of Sciences and Technology","ror":"https://ror.org/03w2j5y17","country_code":"PK","type":"education","lineage":["https://openalex.org/I929597975"]}],"countries":["PK"],"is_corresponding":false,"raw_author_name":"Rehan Ahmed","raw_affiliation_strings":["National University of Sciences and Technology (NUST), Islamabad, Pakistan"],"affiliations":[{"raw_affiliation_string":"National University of Sciences and Technology (NUST), Islamabad, Pakistan","institution_ids":["https://openalex.org/I929597975"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5005190949","display_name":"Muhammad Shafique","orcid":"https://orcid.org/0000-0002-2607-8135"},"institutions":[{"id":"https://openalex.org/I145847075","display_name":"TU Wien","ror":"https://ror.org/04d836q62","country_code":"AT","type":"education","lineage":["https://openalex.org/I145847075"]}],"countries":["AT"],"is_corresponding":false,"raw_author_name":"Muhammad Shafique","raw_affiliation_strings":["Technische Universit\u00e4t Wien (TU Wien), Vienna, Austria"],"affiliations":[{"raw_affiliation_string":"Technische Universit\u00e4t Wien (TU Wien), Vienna, Austria","institution_ids":["https://openalex.org/I145847075"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":5,"corresponding_author_ids":["https://openalex.org/A5074265316"],"corresponding_institution_ids":["https://openalex.org/I145847075"],"apc_list":null,"apc_paid":null,"fwci":2.7486,"has_fulltext":false,"cited_by_count":24,"citation_normalized_percentile":{"value":0.92468261,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":91,"max":99},"biblio":{"volume":null,"issue":null,"first_page":"188","last_page":"193"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9832000136375427,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9541000127792358,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8766624927520752},{"id":"https://openalex.org/keywords/traffic-sign-recognition","display_name":"Traffic sign recognition","score":0.8220679759979248},{"id":"https://openalex.org/keywords/inference","display_name":"Inference","score":0.7103919386863708},{"id":"https://openalex.org/keywords/preprocessor","display_name":"Preprocessor","score":0.6770483255386353},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.650337815284729},{"id":"https://openalex.org/keywords/artificial-neural-network","display_name":"Artificial neural network","score":0.5558788180351257},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.5351306796073914},{"id":"https://openalex.org/keywords/deep-learning","display_name":"Deep learning","score":0.5014762878417969},{"id":"https://openalex.org/keywords/similarity","display_name":"Similarity (geometry)","score":0.4478415846824646},{"id":"https://openalex.org/keywords/training","display_name":"Training (meteorology)","score":0.4387579560279846},{"id":"https://openalex.org/keywords/deep-neural-networks","display_name":"Deep neural networks","score":0.42535439133644104},{"id":"https://openalex.org/keywords/data-mining","display_name":"Data mining","score":0.3709639310836792},{"id":"https://openalex.org/keywords/pattern-recognition","display_name":"Pattern recognition (psychology)","score":0.3702552318572998},{"id":"https://openalex.org/keywords/sign","display_name":"Sign (mathematics)","score":0.3297353982925415},{"id":"https://openalex.org/keywords/traffic-sign","display_name":"Traffic sign","score":0.20306554436683655},{"id":"https://openalex.org/keywords/image","display_name":"Image (mathematics)","score":0.20135244727134705}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8766624927520752},{"id":"https://openalex.org/C6528762","wikidata":"https://www.wikidata.org/wiki/Q1574298","display_name":"Traffic sign recognition","level":4,"score":0.8220679759979248},{"id":"https://openalex.org/C2776214188","wikidata":"https://www.wikidata.org/wiki/Q408386","display_name":"Inference","level":2,"score":0.7103919386863708},{"id":"https://openalex.org/C34736171","wikidata":"https://www.wikidata.org/wiki/Q918333","display_name":"Preprocessor","level":2,"score":0.6770483255386353},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.650337815284729},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.5558788180351257},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.5351306796073914},{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.5014762878417969},{"id":"https://openalex.org/C103278499","wikidata":"https://www.wikidata.org/wiki/Q254465","display_name":"Similarity (geometry)","level":3,"score":0.4478415846824646},{"id":"https://openalex.org/C2777211547","wikidata":"https://www.wikidata.org/wiki/Q17141490","display_name":"Training (meteorology)","level":2,"score":0.4387579560279846},{"id":"https://openalex.org/C2984842247","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep neural networks","level":3,"score":0.42535439133644104},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.3709639310836792},{"id":"https://openalex.org/C153180895","wikidata":"https://www.wikidata.org/wiki/Q7148389","display_name":"Pattern recognition (psychology)","level":2,"score":0.3702552318572998},{"id":"https://openalex.org/C139676723","wikidata":"https://www.wikidata.org/wiki/Q1193832","display_name":"Sign (mathematics)","level":2,"score":0.3297353982925415},{"id":"https://openalex.org/C2983860417","wikidata":"https://www.wikidata.org/wiki/Q170285","display_name":"Traffic sign","level":3,"score":0.20306554436683655},{"id":"https://openalex.org/C115961682","wikidata":"https://www.wikidata.org/wiki/Q860623","display_name":"Image (mathematics)","level":2,"score":0.20135244727134705},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.0},{"id":"https://openalex.org/C134306372","wikidata":"https://www.wikidata.org/wiki/Q7754","display_name":"Mathematical analysis","level":1,"score":0.0},{"id":"https://openalex.org/C153294291","wikidata":"https://www.wikidata.org/wiki/Q25261","display_name":"Meteorology","level":1,"score":0.0},{"id":"https://openalex.org/C121332964","wikidata":"https://www.wikidata.org/wiki/Q413","display_name":"Physics","level":0,"score":0.0}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1109/iolts.2019.8854425","is_oa":false,"landing_page_url":"https://doi.org/10.1109/iolts.2019.8854425","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2019 IEEE 25th International Symposium on On-Line Testing and Robust System Design (IOLTS)","raw_type":"proceedings-article"},{"id":"pmh:oai:arXiv.org:1811.01031","is_oa":true,"landing_page_url":"http://arxiv.org/abs/1811.01031","pdf_url":"https://arxiv.org/pdf/1811.01031","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"text"}],"best_oa_location":{"id":"pmh:oai:arXiv.org:1811.01031","is_oa":true,"landing_page_url":"http://arxiv.org/abs/1811.01031","pdf_url":"https://arxiv.org/pdf/1811.01031","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"text"},"sustainable_development_goals":[{"score":0.6299999952316284,"display_name":"Peace, Justice and strong institutions","id":"https://metadata.un.org/sdg/16"}],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":58,"referenced_works":["https://openalex.org/W1673923490","https://openalex.org/W1932198206","https://openalex.org/W1945616565","https://openalex.org/W2099471712","https://openalex.org/W2117876524","https://openalex.org/W2180612164","https://openalex.org/W2243397390","https://openalex.org/W2342840547","https://openalex.org/W2528914598","https://openalex.org/W2535690855","https://openalex.org/W2555895109","https://openalex.org/W2572504188","https://openalex.org/W2603766943","https://openalex.org/W2739032812","https://openalex.org/W2746600820","https://openalex.org/W2748789698","https://openalex.org/W2755893646","https://openalex.org/W2785405530","https://openalex.org/W2788963265","https://openalex.org/W2798919674","https://openalex.org/W2886189420","https://openalex.org/W2888975495","https://openalex.org/W2897317743","https://openalex.org/W2898804478","https://openalex.org/W2899111971","https://openalex.org/W2914433962","https://openalex.org/W2962763344","https://openalex.org/W2963003451","https://openalex.org/W2963098487","https://openalex.org/W2963207607","https://openalex.org/W2963343288","https://openalex.org/W2963542245","https://openalex.org/W2963857521","https://openalex.org/W2963888996","https://openalex.org/W2964153729","https://openalex.org/W3099439092","https://openalex.org/W3103557498","https://openalex.org/W3103940881","https://openalex.org/W3106412272","https://openalex.org/W3118782835","https://openalex.org/W4211047985","https://openalex.org/W4211122380","https://openalex.org/W4298140072","https://openalex.org/W4300511536","https://openalex.org/W4320013936","https://openalex.org/W6637162671","https://openalex.org/W6640425456","https://openalex.org/W6704559304","https://openalex.org/W6719080892","https://openalex.org/W6739088070","https://openalex.org/W6741734642","https://openalex.org/W6743581629","https://openalex.org/W6748302153","https://openalex.org/W6750462152","https://openalex.org/W6754272107","https://openalex.org/W6755326517","https://openalex.org/W6759158195","https://openalex.org/W6785841629"],"related_works":["https://openalex.org/W4283820116","https://openalex.org/W4382897155","https://openalex.org/W3048636285","https://openalex.org/W2977842967","https://openalex.org/W2110143569","https://openalex.org/W3122938442","https://openalex.org/W4389041344","https://openalex.org/W2397288865","https://openalex.org/W4388684820","https://openalex.org/W3210342734"],"abstract_inverted_index":{"Most":[0],"of":[1,50,83],"the":[2,12,32,55,84,92,111,122,139,143,160],"data":[3,36],"manipulation":[4],"attacks":[5,38],"on":[6,88,114,134,142],"deep":[7],"neural":[8],"networks":[9],"(DNNs)":[10],"during":[11,25,31,39],"training":[13,93,123,127],"stage":[14],"introduce":[15],"a":[16,100,131],"perceptible":[17],"noise":[18],"that":[19,159],"can":[20,28,63],"be":[21,29,64],"catered":[22],"by":[23,66,75,109],"preprocessing":[24],"inference,":[26],"or":[27,72],"identified":[30],"validation":[33],"phase.":[34],"There-fore,":[35],"poisoning":[37],"inference":[40,85],"(e.g.,":[41,74],"adversarial":[42],"attacks)":[43],"are":[44],"becoming":[45],"more":[46],"popular.":[47],"However,":[48],"many":[49],"them":[51],"do":[52],"not":[53],"consider":[54],"imperceptibility":[56],"factor":[57],"in":[58,77,150,170],"their":[59],"optimization":[60],"algorithms,":[61],"and":[62,68,173],"detected":[65],"correlation":[67],"structural":[69],"similarity":[70],"analysis,":[71],"noticeable":[73],"humans)":[76],"multi-level":[78],"security":[79],"system.":[80],"Moreover,":[81],"majority":[82],"attack":[86,107,162],"rely":[87],"some":[89],"knowledge":[90],"about":[91,121],"dataset.":[94],"In":[95],"this":[96],"paper,":[97],"we":[98],"propose":[99],"novel":[101],"methodology":[102],"which":[103],"automatically":[104],"generates":[105],"imperceptible":[106,169],"images":[108,163],"using":[110,138],"back-propagation":[112],"algorithm":[113],"pre-trained":[115],"DNNs,":[116],"without":[117],"requiring":[118],"any":[119],"information":[120],"dataset":[124,149],"(i.e.,":[125],"completely":[126],"data-unaware).":[128],"We":[129],"present":[130],"case":[132],"study":[133],"traffic":[135],"sign":[136],"detection":[137],"VGGNet":[140],"trained":[141],"German":[144],"Traffic":[145],"Sign":[146],"Recognition":[147],"Benchmarks":[148],"an":[151],"autonomous":[152],"driving":[153],"use":[154],"case.":[155],"Our":[156],"results":[157],"demonstrate":[158],"generated":[161],"successfully":[164],"perform":[165],"misclassification":[166],"while":[167],"remaining":[168],"both":[171],"\u201csubjective\u201d":[172],"\u201cobjective\u201d":[174],"quality":[175],"tests.":[176]},"counts_by_year":[{"year":2025,"cited_by_count":1},{"year":2024,"cited_by_count":2},{"year":2023,"cited_by_count":2},{"year":2022,"cited_by_count":3},{"year":2021,"cited_by_count":4},{"year":2020,"cited_by_count":8},{"year":2019,"cited_by_count":4}],"updated_date":"2026-03-20T23:20:44.827607","created_date":"2019-05-03T00:00:00"}
