{"id":"https://openalex.org/W3199985018","doi":"https://doi.org/10.1109/lsp.2021.3112099","title":"Inheritance Attention Matrix-Based Universal Adversarial Perturbations on Vision Transformers","display_name":"Inheritance Attention Matrix-Based Universal Adversarial Perturbations on Vision Transformers","publication_year":2021,"publication_date":"2021-01-01","ids":{"openalex":"https://openalex.org/W3199985018","doi":"https://doi.org/10.1109/lsp.2021.3112099","mag":"3199985018"},"language":"en","primary_location":{"id":"doi:10.1109/lsp.2021.3112099","is_oa":false,"landing_page_url":"https://doi.org/10.1109/lsp.2021.3112099","pdf_url":null,"source":{"id":"https://openalex.org/S120629676","display_name":"IEEE Signal Processing Letters","issn_l":"1070-9908","issn":["1070-9908","1558-2361"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Signal Processing Letters","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5070268772","display_name":"Haoqi Hu","orcid":"https://orcid.org/0000-0002-4788-294X"},"institutions":[{"id":"https://openalex.org/I4210160248","display_name":"Shanghai Universities E-Institute for Chemical Biology","ror":"https://ror.org/03h7eyw97","country_code":"CN","type":"education","lineage":["https://openalex.org/I4210160248"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Haoqi Hu","raw_affiliation_strings":["Shanghai, China, 200444 (e-mail: curiosity@shu.edu.cn)"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Shanghai, China, 200444 (e-mail: curiosity@shu.edu.cn)","institution_ids":["https://openalex.org/I4210160248"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5027763331","display_name":"Xiaofeng Lu","orcid":"https://orcid.org/0000-0001-7412-4290"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Xiaofeng Lu","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5071724015","display_name":"Xinpeng Zhang","orcid":"https://orcid.org/0000-0001-5867-1315"},"institutions":[{"id":"https://openalex.org/I113940042","display_name":"Shanghai University","ror":"https://ror.org/006teas31","country_code":"CN","type":"education","lineage":["https://openalex.org/I113940042"]},{"id":"https://openalex.org/I141962983","display_name":"Shanghai University of Engineering Science","ror":"https://ror.org/0557b9y08","country_code":"CN","type":"education","lineage":["https://openalex.org/I141962983"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Xinpeng Zhang","raw_affiliation_strings":["School of Communication and Information Engineering, Shanghai University, Shanghai, China, 200444 (e-mail: xzhang@shu.edu.cn)"],"raw_orcid":"https://orcid.org/0000-0001-5867-1315","affiliations":[{"raw_affiliation_string":"School of Communication and Information Engineering, Shanghai University, Shanghai, China, 200444 (e-mail: xzhang@shu.edu.cn)","institution_ids":["https://openalex.org/I113940042","https://openalex.org/I141962983"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5063903925","display_name":"Tianxing Zhang","orcid":"https://orcid.org/0000-0002-9598-8212"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Tianxing Zhang","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"last","author":{"id":"https://openalex.org/A5049952420","display_name":"Guangling Sun","orcid":"https://orcid.org/0000-0001-6440-8513"},"institutions":[{"id":"https://openalex.org/I113940042","display_name":"Shanghai University","ror":"https://ror.org/006teas31","country_code":"CN","type":"education","lineage":["https://openalex.org/I113940042"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Guangling Sun","raw_affiliation_strings":["Shanghai University, shanghai, Shanghai, China, 200072 (e-mail: sunguangling@shu.edu.cn)"],"raw_orcid":"https://orcid.org/0000-0001-6440-8513","affiliations":[{"raw_affiliation_string":"Shanghai University, shanghai, Shanghai, China, 200072 (e-mail: sunguangling@shu.edu.cn)","institution_ids":["https://openalex.org/I113940042"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":5,"corresponding_author_ids":["https://openalex.org/A5070268772"],"corresponding_institution_ids":["https://openalex.org/I4210160248"],"apc_list":null,"apc_paid":null,"fwci":2.0998,"has_fulltext":false,"cited_by_count":19,"citation_normalized_percentile":{"value":0.89438909,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":94,"max":98},"biblio":{"volume":"28","issue":null,"first_page":"1923","last_page":"1927"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9853000044822693,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11515","display_name":"Bacillus and Francisella bacterial research","score":0.9668999910354614,"subfield":{"id":"https://openalex.org/subfields/1312","display_name":"Molecular Biology"},"field":{"id":"https://openalex.org/fields/13","display_name":"Biochemistry, Genetics and Molecular Biology"},"domain":{"id":"https://openalex.org/domains/1","display_name":"Life Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7285295724868774},{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.6365812420845032},{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness (evolution)","score":0.5625102519989014},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.5081753730773926},{"id":"https://openalex.org/keywords/convolutional-neural-network","display_name":"Convolutional neural network","score":0.428633451461792},{"id":"https://openalex.org/keywords/theoretical-computer-science","display_name":"Theoretical computer science","score":0.3771131634712219},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.35540691018104553}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7285295724868774},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.6365812420845032},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.5625102519989014},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.5081753730773926},{"id":"https://openalex.org/C81363708","wikidata":"https://www.wikidata.org/wiki/Q17084460","display_name":"Convolutional neural network","level":2,"score":0.428633451461792},{"id":"https://openalex.org/C80444323","wikidata":"https://www.wikidata.org/wiki/Q2878974","display_name":"Theoretical computer science","level":1,"score":0.3771131634712219},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.35540691018104553},{"id":"https://openalex.org/C104317684","wikidata":"https://www.wikidata.org/wiki/Q7187","display_name":"Gene","level":2,"score":0.0},{"id":"https://openalex.org/C185592680","wikidata":"https://www.wikidata.org/wiki/Q2329","display_name":"Chemistry","level":0,"score":0.0},{"id":"https://openalex.org/C55493867","wikidata":"https://www.wikidata.org/wiki/Q7094","display_name":"Biochemistry","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/lsp.2021.3112099","is_oa":false,"landing_page_url":"https://doi.org/10.1109/lsp.2021.3112099","pdf_url":null,"source":{"id":"https://openalex.org/S120629676","display_name":"IEEE Signal Processing Letters","issn_l":"1070-9908","issn":["1070-9908","1558-2361"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Signal Processing Letters","raw_type":"journal-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[{"id":"https://openalex.org/G2429589907","display_name":null,"funder_award_id":"U1936214","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"}],"funders":[{"id":"https://openalex.org/F4320321001","display_name":"National Natural Science Foundation of China","ror":"https://ror.org/01h0zpd94"}],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":47,"referenced_works":["https://openalex.org/W1522301498","https://openalex.org/W1846261984","https://openalex.org/W1945616565","https://openalex.org/W2108598243","https://openalex.org/W2117539524","https://openalex.org/W2163605009","https://openalex.org/W2194775991","https://openalex.org/W2460937040","https://openalex.org/W2543927648","https://openalex.org/W2785557471","https://openalex.org/W2962843773","https://openalex.org/W2963165363","https://openalex.org/W2963207607","https://openalex.org/W2963341956","https://openalex.org/W2963403868","https://openalex.org/W2963542740","https://openalex.org/W2964121744","https://openalex.org/W2964171870","https://openalex.org/W3033210410","https://openalex.org/W3035422918","https://openalex.org/W3092462694","https://openalex.org/W3094502228","https://openalex.org/W3096609285","https://openalex.org/W3119786062","https://openalex.org/W3122239467","https://openalex.org/W3142085127","https://openalex.org/W3143373604","https://openalex.org/W3145185940","https://openalex.org/W3170874841","https://openalex.org/W3171125843","https://openalex.org/W3176153963","https://openalex.org/W4300511536","https://openalex.org/W4385245566","https://openalex.org/W6631190155","https://openalex.org/W6640425456","https://openalex.org/W6684191040","https://openalex.org/W6719080892","https://openalex.org/W6739901393","https://openalex.org/W6748111160","https://openalex.org/W6779248606","https://openalex.org/W6780226713","https://openalex.org/W6784094891","https://openalex.org/W6784333009","https://openalex.org/W6786585107","https://openalex.org/W6788135285","https://openalex.org/W6792762529","https://openalex.org/W6798016242"],"related_works":["https://openalex.org/W2502115930","https://openalex.org/W2482350142","https://openalex.org/W4246396837","https://openalex.org/W3126451824","https://openalex.org/W1561927205","https://openalex.org/W3191453585","https://openalex.org/W4297672492","https://openalex.org/W4310988119","https://openalex.org/W4285226279","https://openalex.org/W4288019534"],"abstract_inverted_index":{"Universal":[0],"Adversarial":[1],"Perturbations":[2],"(UAPs),":[3],"which":[4,85],"is":[5,142],"type":[6],"of":[7,62,89,92,113,122,140],"image-agnostic":[8],"adversarial":[9,66],"attack,":[10],"has":[11],"been":[12,41],"deeply":[13],"investigated":[14],"for":[15],"Convolutional":[16],"Neural":[17],"Networks":[18],"due":[19],"to":[20,44,107],"its":[21],"high":[22],"efficiency.":[23],"On":[24],"the":[25,60,79,87,93,109,119,137,147,150],"other":[26],"hand,":[27],"as":[28],"an":[29,70,143],"architecture":[30],"based":[31,104],"on":[32,105,124],"self-attention":[33],"mechanism,":[34],"Vision":[35],"Transformers":[36],"(ViTs)":[37],"have":[38],"boomed":[39],"and":[40,68],"widely":[42],"applied":[43],"solve":[45],"various":[46],"computer":[47],"vision":[48],"problems":[49],"since":[50],"most":[51],"recent":[52],"years.":[53],"In":[54,131],"this":[55],"letter,":[56],"we":[57,77,98,133],"delve":[58],"into":[59],"robustness":[61,148],"ViTs":[63,125,141],"against":[64,149],"universal":[65,151],"attack":[67],"propose":[69,99],"inheritance":[71,80],"attention":[72,81],"matrix-based":[73],"UAPs":[74],"(IAM-UAP).":[75],"Specifically,":[76],"introduce":[78],"weight":[82],"matrix":[83],"(IAM),":[84],"represents":[86],"integration":[88,112],"global":[90,110],"information":[91,111],"input":[94],"patch":[95,138],"sequence.":[96],"Further,":[97],"a":[100,127],"perturbation":[101],"optimization":[102],"objective":[103],"IAM":[106],"confuse":[108],"ViTs.":[114],"The":[115],"empirical":[116],"results":[117],"confirm":[118],"attacking":[120,129],"capability":[121],"IAM-UAP":[123],"with":[126],"moderate":[128],"rate.":[130],"addition,":[132],"also":[134],"disclose":[135],"that":[136],"size":[139],"latent":[144],"factor":[145],"influencing":[146],"attack.":[152]},"counts_by_year":[{"year":2025,"cited_by_count":4},{"year":2024,"cited_by_count":4},{"year":2023,"cited_by_count":4},{"year":2022,"cited_by_count":5},{"year":2021,"cited_by_count":2}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
