{"id":"https://openalex.org/W4306247941","doi":"https://doi.org/10.1109/tcyb.2022.3209175","title":"A Feature Space-Restricted Attention Attack on Medical Deep Learning Systems","display_name":"A Feature Space-Restricted Attention Attack on Medical Deep Learning Systems","publication_year":2022,"publication_date":"2022-10-14","ids":{"openalex":"https://openalex.org/W4306247941","doi":"https://doi.org/10.1109/tcyb.2022.3209175","pmid":"https://pubmed.ncbi.nlm.nih.gov/36240037"},"language":"en","primary_location":{"id":"doi:10.1109/tcyb.2022.3209175","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tcyb.2022.3209175","pdf_url":null,"source":{"id":"https://openalex.org/S4210191041","display_name":"IEEE Transactions on Cybernetics","issn_l":"2168-2267","issn":["2168-2267","2168-2275"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Cybernetics","raw_type":"journal-article"},"type":"article","indexed_in":["crossref","pubmed"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5102919523","display_name":"Zizhou Wang","orcid":"https://orcid.org/0000-0003-2234-9409"},"institutions":[{"id":"https://openalex.org/I24185976","display_name":"Sichuan University","ror":"https://ror.org/011ashp19","country_code":"CN","type":"education","lineage":["https://openalex.org/I24185976"]},{"id":"https://openalex.org/I4210125143","display_name":"Chengdu University","ror":"https://ror.org/034z67559","country_code":"CN","type":"education","lineage":["https://openalex.org/I4210125143"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Zizhou Wang","raw_affiliation_strings":["College of Computer Science, Sichuan University, Chengdu, China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"College of Computer Science, Sichuan University, Chengdu, China","institution_ids":["https://openalex.org/I4210125143","https://openalex.org/I24185976"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5063528590","display_name":"Xin Shu","orcid":"https://orcid.org/0000-0002-1457-6487"},"institutions":[{"id":"https://openalex.org/I24185976","display_name":"Sichuan University","ror":"https://ror.org/011ashp19","country_code":"CN","type":"education","lineage":["https://openalex.org/I24185976"]},{"id":"https://openalex.org/I4210125143","display_name":"Chengdu University","ror":"https://ror.org/034z67559","country_code":"CN","type":"education","lineage":["https://openalex.org/I4210125143"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Xin Shu","raw_affiliation_strings":["College of Computer Science, Sichuan University, Chengdu, China"],"raw_orcid":"https://orcid.org/0000-0002-1457-6487","affiliations":[{"raw_affiliation_string":"College of Computer Science, Sichuan University, Chengdu, China","institution_ids":["https://openalex.org/I4210125143","https://openalex.org/I24185976"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100733313","display_name":"Yan Wang","orcid":"https://orcid.org/0000-0003-3907-9388"},"institutions":[{"id":"https://openalex.org/I115228651","display_name":"Agency for Science, Technology and Research","ror":"https://ror.org/036wvzt09","country_code":"SG","type":"government","lineage":["https://openalex.org/I115228651"]},{"id":"https://openalex.org/I3004594783","display_name":"Institute of High Performance Computing","ror":"https://ror.org/02n0ejh50","country_code":"SG","type":"facility","lineage":["https://openalex.org/I115228651","https://openalex.org/I3004594783","https://openalex.org/I91275662"]}],"countries":["SG"],"is_corresponding":false,"raw_author_name":"Yan Wang","raw_affiliation_strings":["Institute of High Performance Computing, Agency for Science, Technology and Research, Fusionopolis, Singapore"],"raw_orcid":"https://orcid.org/0000-0003-3907-9388","affiliations":[{"raw_affiliation_string":"Institute of High Performance Computing, Agency for Science, Technology and Research, Fusionopolis, Singapore","institution_ids":["https://openalex.org/I3004594783","https://openalex.org/I115228651"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5017061083","display_name":"Yangqin Feng","orcid":"https://orcid.org/0000-0003-3554-8079"},"institutions":[{"id":"https://openalex.org/I115228651","display_name":"Agency for Science, Technology and Research","ror":"https://ror.org/036wvzt09","country_code":"SG","type":"government","lineage":["https://openalex.org/I115228651"]},{"id":"https://openalex.org/I3004594783","display_name":"Institute of High Performance Computing","ror":"https://ror.org/02n0ejh50","country_code":"SG","type":"facility","lineage":["https://openalex.org/I115228651","https://openalex.org/I3004594783","https://openalex.org/I91275662"]}],"countries":["SG"],"is_corresponding":false,"raw_author_name":"Yangqin Feng","raw_affiliation_strings":["Institute of High Performance Computing, Agency for Science, Technology and Research, Fusionopolis, Singapore"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Institute of High Performance Computing, Agency for Science, Technology and Research, Fusionopolis, Singapore","institution_ids":["https://openalex.org/I3004594783","https://openalex.org/I115228651"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5037608200","display_name":"Lei Zhang","orcid":"https://orcid.org/0000-0002-9702-6738"},"institutions":[{"id":"https://openalex.org/I24185976","display_name":"Sichuan University","ror":"https://ror.org/011ashp19","country_code":"CN","type":"education","lineage":["https://openalex.org/I24185976"]},{"id":"https://openalex.org/I4210125143","display_name":"Chengdu University","ror":"https://ror.org/034z67559","country_code":"CN","type":"education","lineage":["https://openalex.org/I4210125143"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Lei Zhang","raw_affiliation_strings":["College of Computer Science, Sichuan University, Chengdu, China"],"raw_orcid":"https://orcid.org/0000-0002-9702-6738","affiliations":[{"raw_affiliation_string":"College of Computer Science, Sichuan University, Chengdu, China","institution_ids":["https://openalex.org/I4210125143","https://openalex.org/I24185976"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5100388188","display_name":"Yi Zhang","orcid":"https://orcid.org/0000-0002-5867-9322"},"institutions":[{"id":"https://openalex.org/I24185976","display_name":"Sichuan University","ror":"https://ror.org/011ashp19","country_code":"CN","type":"education","lineage":["https://openalex.org/I24185976"]},{"id":"https://openalex.org/I4210125143","display_name":"Chengdu University","ror":"https://ror.org/034z67559","country_code":"CN","type":"education","lineage":["https://openalex.org/I4210125143"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Zhang Yi","raw_affiliation_strings":["College of Computer Science, Sichuan University, Chengdu, China"],"raw_orcid":"https://orcid.org/0000-0002-5867-9322","affiliations":[{"raw_affiliation_string":"College of Computer Science, Sichuan University, Chengdu, China","institution_ids":["https://openalex.org/I4210125143","https://openalex.org/I24185976"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":6,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":2.4972,"has_fulltext":false,"cited_by_count":20,"citation_normalized_percentile":{"value":0.90764622,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":90,"max":99},"biblio":{"volume":"53","issue":"8","first_page":"5323","last_page":"5335"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9995999932289124,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9995999932289124,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9703999757766724,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11515","display_name":"Bacillus and Francisella bacterial research","score":0.9495999813079834,"subfield":{"id":"https://openalex.org/subfields/1312","display_name":"Molecular Biology"},"field":{"id":"https://openalex.org/fields/13","display_name":"Biochemistry, Genetics and Molecular Biology"},"domain":{"id":"https://openalex.org/domains/1","display_name":"Life Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.8224372863769531},{"id":"https://openalex.org/keywords/deep-learning","display_name":"Deep learning","score":0.7699994444847107},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.7022918462753296},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.6781287789344788},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.5920045375823975},{"id":"https://openalex.org/keywords/artificial-neural-network","display_name":"Artificial neural network","score":0.5181421041488647},{"id":"https://openalex.org/keywords/software-deployment","display_name":"Software deployment","score":0.49636775255203247},{"id":"https://openalex.org/keywords/feature-vector","display_name":"Feature vector","score":0.47630202770233154},{"id":"https://openalex.org/keywords/generalization","display_name":"Generalization","score":0.4593657851219177},{"id":"https://openalex.org/keywords/exploit","display_name":"Exploit","score":0.45015591382980347},{"id":"https://openalex.org/keywords/data-science","display_name":"Data science","score":0.38157621026039124},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.36536315083503723},{"id":"https://openalex.org/keywords/mathematics","display_name":"Mathematics","score":0.13161271810531616}],"concepts":[{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.8224372863769531},{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.7699994444847107},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.7022918462753296},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6781287789344788},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.5920045375823975},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.5181421041488647},{"id":"https://openalex.org/C105339364","wikidata":"https://www.wikidata.org/wiki/Q2297740","display_name":"Software deployment","level":2,"score":0.49636775255203247},{"id":"https://openalex.org/C83665646","wikidata":"https://www.wikidata.org/wiki/Q42139305","display_name":"Feature vector","level":2,"score":0.47630202770233154},{"id":"https://openalex.org/C177148314","wikidata":"https://www.wikidata.org/wiki/Q170084","display_name":"Generalization","level":2,"score":0.4593657851219177},{"id":"https://openalex.org/C165696696","wikidata":"https://www.wikidata.org/wiki/Q11287","display_name":"Exploit","level":2,"score":0.45015591382980347},{"id":"https://openalex.org/C2522767166","wikidata":"https://www.wikidata.org/wiki/Q2374463","display_name":"Data science","level":1,"score":0.38157621026039124},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.36536315083503723},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.13161271810531616},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.0},{"id":"https://openalex.org/C134306372","wikidata":"https://www.wikidata.org/wiki/Q7754","display_name":"Mathematical analysis","level":1,"score":0.0}],"mesh":[{"descriptor_ui":"D000077321","descriptor_name":"Deep Learning","qualifier_ui":null,"qualifier_name":null,"is_major_topic":true},{"descriptor_ui":"D000077321","descriptor_name":"Deep Learning","qualifier_ui":null,"qualifier_name":null,"is_major_topic":true},{"descriptor_ui":"D000077321","descriptor_name":"Deep Learning","qualifier_ui":null,"qualifier_name":null,"is_major_topic":true},{"descriptor_ui":"D016571","descriptor_name":"Neural Networks, Computer","qualifier_ui":null,"qualifier_name":null,"is_major_topic":false},{"descriptor_ui":"D016571","descriptor_name":"Neural Networks, Computer","qualifier_ui":null,"qualifier_name":null,"is_major_topic":false},{"descriptor_ui":"D016571","descriptor_name":"Neural Networks, Computer","qualifier_ui":null,"qualifier_name":null,"is_major_topic":false}],"locations_count":2,"locations":[{"id":"doi:10.1109/tcyb.2022.3209175","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tcyb.2022.3209175","pdf_url":null,"source":{"id":"https://openalex.org/S4210191041","display_name":"IEEE Transactions on Cybernetics","issn_l":"2168-2267","issn":["2168-2267","2168-2275"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Cybernetics","raw_type":"journal-article"},{"id":"pmid:36240037","is_oa":false,"landing_page_url":"https://pubmed.ncbi.nlm.nih.gov/36240037","pdf_url":null,"source":{"id":"https://openalex.org/S4306525036","display_name":"PubMed","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I1299303238","host_organization_name":"National Institutes of Health","host_organization_lineage":["https://openalex.org/I1299303238"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE transactions on cybernetics","raw_type":null}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[{"id":"https://openalex.org/G2445850327","display_name":null,"funder_award_id":"62025601","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"}],"funders":[{"id":"https://openalex.org/F4320321001","display_name":"National Natural Science Foundation of China","ror":"https://ror.org/01h0zpd94"}],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":70,"referenced_works":["https://openalex.org/W1945616565","https://openalex.org/W1968111725","https://openalex.org/W2017257315","https://openalex.org/W2154651644","https://openalex.org/W2180612164","https://openalex.org/W2194775991","https://openalex.org/W2274565976","https://openalex.org/W2558050786","https://openalex.org/W2611650229","https://openalex.org/W2620038827","https://openalex.org/W2739748921","https://openalex.org/W2765424254","https://openalex.org/W2790772420","https://openalex.org/W2793968687","https://openalex.org/W2798251715","https://openalex.org/W2799209711","https://openalex.org/W2890430415","https://openalex.org/W2908201961","https://openalex.org/W2913266441","https://openalex.org/W2917610807","https://openalex.org/W2924551358","https://openalex.org/W2942810103","https://openalex.org/W2950776302","https://openalex.org/W2950782995","https://openalex.org/W2951727855","https://openalex.org/W2963143631","https://openalex.org/W2963446712","https://openalex.org/W2963448658","https://openalex.org/W2963744840","https://openalex.org/W2963857521","https://openalex.org/W2971376088","https://openalex.org/W2981597369","https://openalex.org/W2981873476","https://openalex.org/W2998279916","https://openalex.org/W3009542902","https://openalex.org/W3021182036","https://openalex.org/W3046918297","https://openalex.org/W3101156210","https://openalex.org/W3102651566","https://openalex.org/W3102785203","https://openalex.org/W3103557498","https://openalex.org/W3107235539","https://openalex.org/W3119446329","https://openalex.org/W3135005580","https://openalex.org/W4206469693","https://openalex.org/W4211106488","https://openalex.org/W4226269514","https://openalex.org/W4247200422","https://openalex.org/W4288359148","https://openalex.org/W4293846201","https://openalex.org/W4293865127","https://openalex.org/W4300511536","https://openalex.org/W4320013936","https://openalex.org/W6640425456","https://openalex.org/W6694611762","https://openalex.org/W6719080892","https://openalex.org/W6729482032","https://openalex.org/W6739868092","https://openalex.org/W6741832134","https://openalex.org/W6748475379","https://openalex.org/W6750223653","https://openalex.org/W6751045465","https://openalex.org/W6759129252","https://openalex.org/W6759580348","https://openalex.org/W6761472960","https://openalex.org/W6761839128","https://openalex.org/W6766331231","https://openalex.org/W6774469542","https://openalex.org/W6786394082","https://openalex.org/W6788262918"],"related_works":["https://openalex.org/W17155033","https://openalex.org/W3207760230","https://openalex.org/W1496222301","https://openalex.org/W4312814274","https://openalex.org/W1590307681","https://openalex.org/W2536018345","https://openalex.org/W4285370786","https://openalex.org/W2296488620","https://openalex.org/W2502115930","https://openalex.org/W2358353312"],"abstract_inverted_index":{"Deep":[0],"neural":[1],"network":[2,127],"has":[3],"shown":[4],"a":[5,14,19,124],"powerful":[6],"performance":[7,171],"in":[8,60,85,207,214],"the":[9,24,47,51,61,150,155,160,164,175,208],"medical":[10,190,224],"image":[11],"analysis":[12],"of":[13,16,21,93,174,189,204,210,223],"variety":[15],"diseases.":[17],"However,":[18],"number":[20],"studies":[22],"over":[23],"past":[25],"few":[26],"years":[27],"have":[28,55],"demonstrated":[29,180],"that":[30,196],"these":[31,65],"deep":[32,58,82,211,225],"learning":[33,59,83,212,226],"systems":[34,84,213,227],"can":[35,140,199],"be":[36],"vulnerable":[37],"to":[38,46,114,132,135,145,228,234],"well-designed":[39],"adversarial":[40,66,79,104,118,126],"attacks,":[41],"with":[42,128,159],"minor":[43],"disruptions":[44],"added":[45],"input.":[48],"Since":[49],"both":[50],"public":[52],"and":[53,72,98,168,172,232],"academia":[54],"focused":[56],"on":[57,81,123,149,185],"health":[62],"information":[63,162],"economy,":[64],"attacks":[67,80],"would":[68],"prove":[69],"more":[70,116,166],"important":[71],"raise":[73],"security":[74],"concerns.":[75],"In":[76],"this":[77,147,197],"article,":[78],"medicine":[86],"are":[87,179],"analyzed":[88],"from":[89],"two":[90],"different":[91,187],"points":[92],"view:":[94],"1)":[95],"white":[96],"box":[97],"2)":[99],"black":[100],"box.":[101],"A":[102],"fast":[103],"sample":[105],"generation":[106],"method,":[107],"Feature":[108],"Space-Restricted":[109],"Attention":[110],"Attack":[111],"is":[112,121,194],"proposed":[113,176],"explore":[115],"confusing":[117],"samples.":[119],"It":[120],"based":[122],"generative":[125],"bound":[129],"classification":[130,161],"space":[131],"generate":[133],"perturbations":[134],"achieve":[136],"attacks.":[137,235],"Meanwhile,":[138],"it":[139,193,218],"employ":[141],"an":[142],"attention":[143],"mechanism":[144],"focus":[146],"perturbation":[148,156],"lesion":[151],"region.":[152],"This":[153],"enables":[154],"closely":[157],"associated":[158],"making":[163],"attack":[165,177],"efficient":[167],"invisible.":[169],"The":[170],"specificity":[173],"method":[178],"by":[181],"conducting":[182],"extensive":[183],"experiments":[184],"three":[186],"types":[188],"images.":[191],"Finally,":[192],"expected":[195],"work":[198],"assist":[200],"practitioners":[201],"become":[202],"being":[203],"current":[205],"weaknesses":[206],"deployment":[209],"clinical":[215],"settings.":[216],"And,":[217],"further":[219],"investigates":[220],"domain-specific":[221],"features":[222],"enhance":[229],"model":[230],"generalization":[231],"resistance":[233]},"counts_by_year":[{"year":2026,"cited_by_count":2},{"year":2025,"cited_by_count":4},{"year":2024,"cited_by_count":9},{"year":2023,"cited_by_count":4},{"year":2022,"cited_by_count":1}],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2025-10-10T00:00:00"}
