{"id":"https://openalex.org/W4397000181","doi":"https://doi.org/10.1109/tifs.2024.3402385","title":"CSFAdv: Critical Semantic Fusion Guided Least-Effort Adversarial Example Attacks","display_name":"CSFAdv: Critical Semantic Fusion Guided Least-Effort Adversarial Example Attacks","publication_year":2024,"publication_date":"2024-01-01","ids":{"openalex":"https://openalex.org/W4397000181","doi":"https://doi.org/10.1109/tifs.2024.3402385"},"language":"en","primary_location":{"id":"doi:10.1109/tifs.2024.3402385","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tifs.2024.3402385","pdf_url":null,"source":{"id":"https://openalex.org/S61310614","display_name":"IEEE Transactions on Information Forensics and Security","issn_l":"1556-6013","issn":["1556-6013","1556-6021"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Information Forensics and Security","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5017667201","display_name":"Da-Tian Peng","orcid":"https://orcid.org/0000-0001-5313-5249"},"institutions":[{"id":"https://openalex.org/I17145004","display_name":"Northwestern Polytechnical University","ror":"https://ror.org/01y0j0j86","country_code":"CN","type":"education","lineage":["https://openalex.org/I17145004"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Da-Tian Peng","raw_affiliation_strings":["School of Cybersecurity, Northwestern Polytechnical University, Xi&#x2019;an, Shaanxi, China"],"raw_orcid":"https://orcid.org/0000-0001-5313-5249","affiliations":[{"raw_affiliation_string":"School of Cybersecurity, Northwestern Polytechnical University, Xi&#x2019;an, Shaanxi, China","institution_ids":["https://openalex.org/I17145004"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5049855723","display_name":"Jianmin Dong","orcid":"https://orcid.org/0000-0002-4815-6288"},"institutions":[{"id":"https://openalex.org/I4210123185","display_name":"Zhejiang Lab","ror":"https://ror.org/02m2h7991","country_code":"CN","type":"facility","lineage":["https://openalex.org/I4210123185"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Jianmin Dong","raw_affiliation_strings":["Intelligent Computing Infrastructure Innovation Center, Zhejiang Lab, Hangzhou, Zhejiang, China"],"raw_orcid":"https://orcid.org/0000-0002-4815-6288","affiliations":[{"raw_affiliation_string":"Intelligent Computing Infrastructure Innovation Center, Zhejiang Lab, Hangzhou, Zhejiang, China","institution_ids":["https://openalex.org/I4210123185"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5027352024","display_name":"Mingjiang Zhang","orcid":"https://orcid.org/0000-0002-8097-8169"},"institutions":[{"id":"https://openalex.org/I170215575","display_name":"National University of Defense Technology","ror":"https://ror.org/05d2yfz11","country_code":"CN","type":"education","lineage":["https://openalex.org/I170215575"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Mingjiang Zhang","raw_affiliation_strings":["College of Information and Communication, National University of Defense Technology, Wuhan, Hubei, China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"College of Information and Communication, National University of Defense Technology, Wuhan, Hubei, China","institution_ids":["https://openalex.org/I170215575"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5000957254","display_name":"Jungang Yang","orcid":"https://orcid.org/0000-0002-3127-8705"},"institutions":[{"id":"https://openalex.org/I170215575","display_name":"National University of Defense Technology","ror":"https://ror.org/05d2yfz11","country_code":"CN","type":"education","lineage":["https://openalex.org/I170215575"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Jungang Yang","raw_affiliation_strings":["College of Information and Communication, National University of Defense Technology, Wuhan, Hubei, China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"College of Information and Communication, National University of Defense Technology, Wuhan, Hubei, China","institution_ids":["https://openalex.org/I170215575"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5100422377","display_name":"Zhen Wang","orcid":"https://orcid.org/0000-0002-8182-2852"},"institutions":[{"id":"https://openalex.org/I17145004","display_name":"Northwestern Polytechnical University","ror":"https://ror.org/01y0j0j86","country_code":"CN","type":"education","lineage":["https://openalex.org/I17145004"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Zhen Wang","raw_affiliation_strings":["School of Cybersecurity, Northwestern Polytechnical University, Xi&#x2019;an, Shaanxi, China"],"raw_orcid":"https://orcid.org/0000-0002-8182-2852","affiliations":[{"raw_affiliation_string":"School of Cybersecurity, Northwestern Polytechnical University, Xi&#x2019;an, Shaanxi, China","institution_ids":["https://openalex.org/I17145004"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":5,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":1.2219,"has_fulltext":false,"cited_by_count":4,"citation_normalized_percentile":{"value":0.81914417,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":94,"max":96},"biblio":{"volume":"19","issue":null,"first_page":"5940","last_page":"5955"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9984999895095825,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9984999895095825,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9506999850273132,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9495000243186951,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8273437023162842},{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.7557621598243713},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.4391687512397766},{"id":"https://openalex.org/keywords/semantics","display_name":"Semantics (computer science)","score":0.43584901094436646},{"id":"https://openalex.org/keywords/natural-language-processing","display_name":"Natural language processing","score":0.39233046770095825},{"id":"https://openalex.org/keywords/programming-language","display_name":"Programming language","score":0.1401037573814392}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8273437023162842},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.7557621598243713},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.4391687512397766},{"id":"https://openalex.org/C184337299","wikidata":"https://www.wikidata.org/wiki/Q1437428","display_name":"Semantics (computer science)","level":2,"score":0.43584901094436646},{"id":"https://openalex.org/C204321447","wikidata":"https://www.wikidata.org/wiki/Q30642","display_name":"Natural language processing","level":1,"score":0.39233046770095825},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.1401037573814392}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/tifs.2024.3402385","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tifs.2024.3402385","pdf_url":null,"source":{"id":"https://openalex.org/S61310614","display_name":"IEEE Transactions on Information Forensics and Security","issn_l":"1556-6013","issn":["1556-6013","1556-6021"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Information Forensics and Security","raw_type":"journal-article"}],"best_oa_location":null,"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/10","score":0.47999998927116394,"display_name":"Reduced inequalities"}],"awards":[{"id":"https://openalex.org/G3798114921","display_name":null,"funder_award_id":"171105","funder_id":"https://openalex.org/F4320334945","funder_display_name":"Fok Ying Tong Education Foundation"},{"id":"https://openalex.org/G4668225214","display_name":null,"funder_award_id":"62025602","funder_id":"https://openalex.org/F4320336125","funder_display_name":"National Science Fund for Distinguished Young Scholars"}],"funders":[{"id":"https://openalex.org/F4320334945","display_name":"Fok Ying Tong Education Foundation","ror":"https://ror.org/01mv9t934"},{"id":"https://openalex.org/F4320336125","display_name":"National Science Fund for Distinguished Young Scholars","ror":null},{"id":"https://openalex.org/F4320336811","display_name":"Science Fund for Distinguished Young Scholars of Chongqing","ror":null}],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":55,"referenced_works":["https://openalex.org/W1901129140","https://openalex.org/W2051434435","https://openalex.org/W2112796928","https://openalex.org/W2117539524","https://openalex.org/W2180612164","https://openalex.org/W2243397390","https://openalex.org/W2295107390","https://openalex.org/W2543927648","https://openalex.org/W2607219512","https://openalex.org/W2745565856","https://openalex.org/W2765793020","https://openalex.org/W2774644650","https://openalex.org/W2891828758","https://openalex.org/W2916286792","https://openalex.org/W2919115771","https://openalex.org/W2953834312","https://openalex.org/W2954420970","https://openalex.org/W2962858109","https://openalex.org/W2963542245","https://openalex.org/W2963857521","https://openalex.org/W2964152294","https://openalex.org/W2979544394","https://openalex.org/W2985282977","https://openalex.org/W3000152496","https://openalex.org/W3015646845","https://openalex.org/W3034196143","https://openalex.org/W3035567932","https://openalex.org/W3035584216","https://openalex.org/W3036286896","https://openalex.org/W3094138310","https://openalex.org/W3102720581","https://openalex.org/W3107942585","https://openalex.org/W3110144845","https://openalex.org/W3118608800","https://openalex.org/W3159541505","https://openalex.org/W3166521888","https://openalex.org/W3176482836","https://openalex.org/W3202761833","https://openalex.org/W4293846201","https://openalex.org/W6631190155","https://openalex.org/W6637162671","https://openalex.org/W6640425456","https://openalex.org/W6677995690","https://openalex.org/W6684372118","https://openalex.org/W6685133223","https://openalex.org/W6731927902","https://openalex.org/W6741036071","https://openalex.org/W6751839145","https://openalex.org/W6766931891","https://openalex.org/W6771683604","https://openalex.org/W6782259796","https://openalex.org/W6785111086","https://openalex.org/W6787972765","https://openalex.org/W6794756470","https://openalex.org/W6922480057"],"related_works":["https://openalex.org/W4391375266","https://openalex.org/W2748952813","https://openalex.org/W2502115930","https://openalex.org/W2482350142","https://openalex.org/W4246396837","https://openalex.org/W3126451824","https://openalex.org/W1561927205","https://openalex.org/W3191453585","https://openalex.org/W4297672492","https://openalex.org/W3204019825"],"abstract_inverted_index":{"Extensive":[0],"studies":[1],"have":[2],"revealed":[3],"that":[4,38],"the":[5,29,43,53,87,91,97,108,113,117,144,152,158,164,171,185,192,222,250,267],"prevalent":[6],"deep":[7],"neural":[8],"networks":[9],"(DNNs)":[10],"are":[11,57],"vulnerable":[12],"to":[13,52,73,95,134,177,202,220],"adversarial":[14,22,49,174,213],"examples":[15],"in":[16,27,150,265],"image":[17,232],"recognition":[18],"tasks.":[19],"However,":[20],"previous":[21],"example":[23,83],"attacks":[24,40,259],"always":[25],"work":[26],"either":[28],"global":[30],"semantic":[31,35,55,93,100,155],"space":[32],"or":[33],"local":[34],"attributes,":[36],"resulting":[37],"these":[39],"may":[41],"violate":[42],"sophisticated":[44],"attackers\u2019":[45],"least-effort":[46,81,146],"intentions,":[47],"whereas":[48],"perturbations":[50,168],"due":[51],"explicit":[54],"variations":[56],"probably":[58],"perceived":[59],"by":[60,188],"human":[61],"vision.":[62],"In":[63],"this":[64,179],"paper,":[65],"we":[66,183,216],"propose":[67],"a":[68,75,136,204],"two-phase":[69],"optimization":[70,139],"modeling":[71],"framework":[72],"devise":[74],"novel":[76],"Critical":[77],"Semantic":[78],"Fusion":[79],"guided":[80],"Adversarial":[82],"attack":[84],"(CSFAdv).":[85],"Specifically,":[86],"first":[88],"phase":[89,115],"fuses":[90],"coarse-&fine-grained":[92],"maps":[94],"localize":[96],"latent":[98],"critical":[99,154],"attention":[101],"region":[102],"(CSAR)":[103],"from":[104,243],"genuine":[105],"image.":[106,214],"Under":[107],"friendly":[109],"guidance":[110],"of":[111,161,167,190,224,230,252,257],"CSAR-feasibility,":[112],"second":[114],"absorbs":[116],"ReLU-penalization,":[118],"<italic":[119,127],"xmlns:mml=\"http://www.w3.org/1998/Math/MathML\"":[120,123,128,131],"xmlns:xlink=\"http://www.w3.org/1999/xlink\">L</i>":[121,129],"<sub":[122,130],"xmlns:xlink=\"http://www.w3.org/1999/xlink\">0</sub>":[124],"-regularization":[125],"and":[126,169,198,239,260],"xmlns:xlink=\"http://www.w3.org/1999/xlink\">\u221e</sub>":[132],"-limitation":[133],"formulate":[135],"Top-1&Top-2":[137],"misclassification":[138],"problem,":[140],"which":[141],"can":[142],"characterize":[143],"holistic":[145],"tampering":[147],"behaviors":[148],"embodied":[149],"localizing":[151],"most":[153,172],"space,":[156],"doctoring":[157],"least":[159],"amounts":[160],"pixels,":[162],"injecting":[163],"limited":[165],"amplitudes":[166],"launching":[170],"readily":[173],"attacks.":[175],"Further,":[176],"solve":[178],"NP-hard":[180],"problem":[181],"mildly,":[182],"adapt":[184],"gradient":[186,197,206],"renewal":[187],"means":[189],"merging":[191],"momentum":[193],"(past":[194],"gradient),":[195],"present":[196],"Hessian":[199],"(future":[200],"gradient)":[201],"formalize":[203],"generalized":[205],"descent":[207],"algorithm":[208],"for":[209],"generating":[210],"an":[211],"optimal":[212],"Finally,":[215],"perform":[217],"numerical":[218],"experiments":[219],"verify":[221],"validity":[223],"our":[225],"CSFAdv":[226,253],"against":[227],"seven":[228],"types":[229],"DNN-based":[231],"classifiers":[233],"on":[234,249],"three":[235],"public":[236],"ImageNet,":[237],"MNIST":[238],"CIFAR10.":[240],"Empirical":[241],"illustrations":[242],"ten":[244],"evaluations":[245],"indices":[246],"shed":[247],"light":[248],"superiority":[251],"over":[254],"eight":[255],"kinds":[256],"state-of-the-art":[258],"also":[261],"offer":[262],"key":[263],"clues":[264],"reinforcing":[266],"DNNs\u2019":[268],"robustness.":[269]},"counts_by_year":[{"year":2025,"cited_by_count":2},{"year":2024,"cited_by_count":2}],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2025-10-10T00:00:00"}
