{"id":"https://openalex.org/W4390970376","doi":"https://doi.org/10.1109/tifs.2024.3352837","title":"Detection of Adversarial Attacks via Disentangling Natural Images and Perturbations","display_name":"Detection of Adversarial Attacks via Disentangling Natural Images and Perturbations","publication_year":2024,"publication_date":"2024-01-01","ids":{"openalex":"https://openalex.org/W4390970376","doi":"https://doi.org/10.1109/tifs.2024.3352837"},"language":"en","primary_location":{"id":"doi:10.1109/tifs.2024.3352837","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tifs.2024.3352837","pdf_url":null,"source":{"id":"https://openalex.org/S61310614","display_name":"IEEE Transactions on Information Forensics and Security","issn_l":"1556-6013","issn":["1556-6013","1556-6021"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Information Forensics and Security","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5009097718","display_name":"Yuanyuan Qing","orcid":"https://orcid.org/0000-0002-6808-5800"},"institutions":[{"id":"https://openalex.org/I172675005","display_name":"Nanyang Technological University","ror":"https://ror.org/02e7b5302","country_code":"SG","type":"education","lineage":["https://openalex.org/I172675005"]}],"countries":["SG"],"is_corresponding":true,"raw_author_name":"Yuanyuan Qing","raw_affiliation_strings":["School of Electrical and Electronic Engineering, Nanyang Technological University, Nanyang Avenue, Singapore"],"affiliations":[{"raw_affiliation_string":"School of Electrical and Electronic Engineering, Nanyang Technological University, Nanyang Avenue, Singapore","institution_ids":["https://openalex.org/I172675005"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5072156971","display_name":"Tao Bai","orcid":"https://orcid.org/0000-0002-2034-8026"},"institutions":[{"id":"https://openalex.org/I172675005","display_name":"Nanyang Technological University","ror":"https://ror.org/02e7b5302","country_code":"SG","type":"education","lineage":["https://openalex.org/I172675005"]}],"countries":["SG"],"is_corresponding":false,"raw_author_name":"Tao Bai","raw_affiliation_strings":["School of Electrical and Electronic Engineering, Nanyang Technological University, Nanyang Avenue, Singapore"],"affiliations":[{"raw_affiliation_string":"School of Electrical and Electronic Engineering, Nanyang Technological University, Nanyang Avenue, Singapore","institution_ids":["https://openalex.org/I172675005"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5045206037","display_name":"Zhuotao Liu","orcid":"https://orcid.org/0000-0002-7532-0434"},"institutions":[{"id":"https://openalex.org/I99065089","display_name":"Tsinghua University","ror":"https://ror.org/03cve4549","country_code":"CN","type":"education","lineage":["https://openalex.org/I99065089"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Zhuotao Liu","raw_affiliation_strings":["Institute for Network Sciences and Cyberspace, Tsinghua University, Beijing, China","Institute for Network Sciences and Cyberspace of Tsinghua University, Beijing, China"],"affiliations":[{"raw_affiliation_string":"Institute for Network Sciences and Cyberspace, Tsinghua University, Beijing, China","institution_ids":["https://openalex.org/I99065089"]},{"raw_affiliation_string":"Institute for Network Sciences and Cyberspace of Tsinghua University, Beijing, China","institution_ids":["https://openalex.org/I99065089"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5043000577","display_name":"Pierre Moulin","orcid":"https://orcid.org/0000-0001-5215-8596"},"institutions":[{"id":"https://openalex.org/I157725225","display_name":"University of Illinois Urbana-Champaign","ror":"https://ror.org/047426m28","country_code":"US","type":"education","lineage":["https://openalex.org/I157725225"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Pierre Moulin","raw_affiliation_strings":["Department of Electrical and Computer Engineering, University of Illinois at Urbana&#x2014;Champaign, Champaign, IL, USA"],"affiliations":[{"raw_affiliation_string":"Department of Electrical and Computer Engineering, University of Illinois at Urbana&#x2014;Champaign, Champaign, IL, USA","institution_ids":["https://openalex.org/I157725225"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5024709593","display_name":"Bihan Wen","orcid":"https://orcid.org/0000-0002-6874-6453"},"institutions":[{"id":"https://openalex.org/I172675005","display_name":"Nanyang Technological University","ror":"https://ror.org/02e7b5302","country_code":"SG","type":"education","lineage":["https://openalex.org/I172675005"]}],"countries":["SG"],"is_corresponding":false,"raw_author_name":"Bihan Wen","raw_affiliation_strings":["School of Electrical and Electronic Engineering, Nanyang Technological University, Nanyang Avenue, Singapore"],"affiliations":[{"raw_affiliation_string":"School of Electrical and Electronic Engineering, Nanyang Technological University, Nanyang Avenue, Singapore","institution_ids":["https://openalex.org/I172675005"]}]}],"institutions":[],"countries_distinct_count":3,"institutions_distinct_count":5,"corresponding_author_ids":["https://openalex.org/A5009097718"],"corresponding_institution_ids":["https://openalex.org/I172675005"],"apc_list":null,"apc_paid":null,"fwci":6.3711,"has_fulltext":false,"cited_by_count":18,"citation_normalized_percentile":{"value":0.96861867,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":98,"max":99},"biblio":{"volume":"19","issue":null,"first_page":"2814","last_page":"2825"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9825000166893005,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T14117","display_name":"Integrated Circuits and Semiconductor Failure Analysis","score":0.9728999733924866,"subfield":{"id":"https://openalex.org/subfields/2208","display_name":"Electrical and Electronic Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.7466962337493896},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7047242522239685},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.581736147403717},{"id":"https://openalex.org/keywords/inference","display_name":"Inference","score":0.4603429138660431},{"id":"https://openalex.org/keywords/image","display_name":"Image (mathematics)","score":0.42719414830207825},{"id":"https://openalex.org/keywords/algorithm","display_name":"Algorithm","score":0.34512513875961304},{"id":"https://openalex.org/keywords/pattern-recognition","display_name":"Pattern recognition (psychology)","score":0.33616459369659424},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.32991036772727966}],"concepts":[{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.7466962337493896},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7047242522239685},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.581736147403717},{"id":"https://openalex.org/C2776214188","wikidata":"https://www.wikidata.org/wiki/Q408386","display_name":"Inference","level":2,"score":0.4603429138660431},{"id":"https://openalex.org/C115961682","wikidata":"https://www.wikidata.org/wiki/Q860623","display_name":"Image (mathematics)","level":2,"score":0.42719414830207825},{"id":"https://openalex.org/C11413529","wikidata":"https://www.wikidata.org/wiki/Q8366","display_name":"Algorithm","level":1,"score":0.34512513875961304},{"id":"https://openalex.org/C153180895","wikidata":"https://www.wikidata.org/wiki/Q7148389","display_name":"Pattern recognition (psychology)","level":2,"score":0.33616459369659424},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.32991036772727966}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1109/tifs.2024.3352837","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tifs.2024.3352837","pdf_url":null,"source":{"id":"https://openalex.org/S61310614","display_name":"IEEE Transactions on Information Forensics and Security","issn_l":"1556-6013","issn":["1556-6013","1556-6021"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Information Forensics and Security","raw_type":"journal-article"},{"id":"pmh:oai:dr.ntu.edu.sg:10356/178082","is_oa":false,"landing_page_url":"https://hdl.handle.net/10356/178082","pdf_url":null,"source":{"id":"https://openalex.org/S4306402609","display_name":"DR-NTU (Nanyang Technological University)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I172675005","host_organization_name":"Nanyang Technological University","host_organization_lineage":["https://openalex.org/I172675005"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"Journal Article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":75,"referenced_works":["https://openalex.org/W1673923490","https://openalex.org/W1686810756","https://openalex.org/W1945616565","https://openalex.org/W2053186076","https://openalex.org/W2097117768","https://openalex.org/W2111842831","https://openalex.org/W2127905518","https://openalex.org/W2194775991","https://openalex.org/W2230740169","https://openalex.org/W2243397390","https://openalex.org/W2612637113","https://openalex.org/W2618043096","https://openalex.org/W2887603965","https://openalex.org/W2913848079","https://openalex.org/W2959364614","https://openalex.org/W2963100962","https://openalex.org/W2963263347","https://openalex.org/W2963389226","https://openalex.org/W2963564844","https://openalex.org/W2963857521","https://openalex.org/W2966145398","https://openalex.org/W3009460750","https://openalex.org/W3021182036","https://openalex.org/W3034190247","https://openalex.org/W3034621581","https://openalex.org/W3035467354","https://openalex.org/W3035524670","https://openalex.org/W3098881644","https://openalex.org/W3118608800","https://openalex.org/W3159890710","https://openalex.org/W3175402282","https://openalex.org/W3176164880","https://openalex.org/W4242728350","https://openalex.org/W4293584023","https://openalex.org/W4293846201","https://openalex.org/W4295803779","https://openalex.org/W4297573953","https://openalex.org/W4297775537","https://openalex.org/W4297779775","https://openalex.org/W4381325153","https://openalex.org/W4394663350","https://openalex.org/W6628154416","https://openalex.org/W6631190155","https://openalex.org/W6637162671","https://openalex.org/W6637373629","https://openalex.org/W6640425456","https://openalex.org/W6674494535","https://openalex.org/W6677968238","https://openalex.org/W6680757391","https://openalex.org/W6683389101","https://openalex.org/W6689238212","https://openalex.org/W6717697761","https://openalex.org/W6725672702","https://openalex.org/W6726497184","https://openalex.org/W6729482032","https://openalex.org/W6729756640","https://openalex.org/W6733645847","https://openalex.org/W6734483310","https://openalex.org/W6734787559","https://openalex.org/W6736640963","https://openalex.org/W6737664043","https://openalex.org/W6746286392","https://openalex.org/W6747819456","https://openalex.org/W6748475379","https://openalex.org/W6751772990","https://openalex.org/W6752760542","https://openalex.org/W6752931940","https://openalex.org/W6755310938","https://openalex.org/W6758975236","https://openalex.org/W6761687776","https://openalex.org/W6765202659","https://openalex.org/W6787972765","https://openalex.org/W6790250994","https://openalex.org/W6790428421","https://openalex.org/W6864274290"],"related_works":["https://openalex.org/W2502115930","https://openalex.org/W4246396837","https://openalex.org/W2482350142","https://openalex.org/W3176240006","https://openalex.org/W3126451824","https://openalex.org/W1561927205","https://openalex.org/W3191453585","https://openalex.org/W4297672492","https://openalex.org/W4288019534","https://openalex.org/W4310988119"],"abstract_inverted_index":{"The":[0,92,149],"vulnerability":[1],"of":[2,30,67,102,121,146],"deep":[3],"neural":[4],"networks":[5],"against":[6],"adversarial":[7,14,68,81,103,147,193],"attacks,":[8],"<italic":[9,74,159,166],"xmlns:mml=\"http://www.w3.org/1998/Math/MathML\"":[10,75,160,167],"xmlns:xlink=\"http://www.w3.org/1999/xlink\">i.e</i>":[11,161],".,":[12,77,162],"imperceptible":[13],"perturbations":[15,69,120],"can":[16,56,88],"easily":[17],"give":[18],"rise":[19],"to":[20,27,52,115,180],"wrong":[21],"predictions,":[22],"poses":[23],"a":[24,37,111],"huge":[25],"threat":[26],"the":[28,65,100,130,136,181],"security":[29],"their":[31],"real-world":[32],"deployments.":[33],"In":[34],"this":[35],"paper,":[36],"novel":[38],"Adversarial":[39],"Detection":[40],"method":[41],"via":[42],"Disentangling":[43],"Natural":[44],"images":[45,54,118],"and":[46,119,165,183],"Perturbations":[47],"(ADDNP)":[48],"is":[49,141,153],"proposed.":[50],"Compared":[51,179],"natural":[53,117],"that":[55],"typically":[57],"be":[58,89],"modeled":[59],"by":[60,84,125],"lower-dimensional":[61],"subspaces":[62],"or":[63],"manifolds,":[64],"distributions":[66],"are":[70],"much":[71],"more":[72,199],"complex,":[73],"xmlns:xlink=\"http://www.w3.org/1999/xlink\">e.g</i>":[76],"one":[78],"normal":[79,106],"example\u2019s":[80],"counterparts":[82],"generated":[83],"different":[85],"attack":[86,177],"strategies":[87],"significantly":[90],"distinct.":[91],"proposed":[93,150],"ADDNP":[94,151,187],"exploits":[95],"such":[96],"distinct":[97],"properties":[98],"for":[99],"detection":[101,185],"attacks":[104],"amongst":[105],"examples.":[107],"Specifically,":[108],"we":[109],"use":[110],"dual-branch":[112],"disentangling":[113],"framework":[114],"encode":[116],"inputs":[122],"separately,":[123],"followed":[124],"joint":[126],"reconstruction.":[127],"During":[128],"inference,":[129],"reconstruction":[131],"discrepancy":[132],"(RD)":[133],"measured":[134],"in":[135],"learned":[137],"latent":[138],"feature":[139],"space":[140],"used":[142],"as":[143],"an":[144],"indicator":[145],"perturbations.":[148],"algorithm":[152],"evaluated":[154],"on":[155,192,198],"three":[156],"popular":[157,176],"datasets,":[158],"CIFAR-10,":[163],"CIFAR-100,":[164],"xmlns:xlink=\"http://www.w3.org/1999/xlink\">mini</i>":[168],"ImageNet":[169],"with":[170,195],"increasing":[171],"data":[172],"complexity,":[173],"across":[174],"multiple":[175],"strategies.":[178],"existing":[182],"state-of-the-art":[184],"methods,":[186],"has":[188],"demonstrated":[189],"promising":[190],"performance":[191],"detection,":[194],"significant":[196],"improvements":[197],"challenging":[200],"datasets.":[201]},"counts_by_year":[{"year":2026,"cited_by_count":2},{"year":2025,"cited_by_count":11},{"year":2024,"cited_by_count":5}],"updated_date":"2026-03-21T08:13:44.787528","created_date":"2025-10-10T00:00:00"}
