{"id":"https://openalex.org/W4414271187","doi":"https://doi.org/10.1109/tifs.2025.3611108","title":"Exploring Causal Information Bottleneck for Adversarial Defense","display_name":"Exploring Causal Information Bottleneck for Adversarial Defense","publication_year":2025,"publication_date":"2025-01-01","ids":{"openalex":"https://openalex.org/W4414271187","doi":"https://doi.org/10.1109/tifs.2025.3611108"},"language":"en","primary_location":{"id":"doi:10.1109/tifs.2025.3611108","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tifs.2025.3611108","pdf_url":null,"source":{"id":"https://openalex.org/S61310614","display_name":"IEEE Transactions on Information Forensics and Security","issn_l":"1556-6013","issn":["1556-6013","1556-6021"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Information Forensics and Security","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://doi.org/10.1109/TIFS.2025.3611108","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5100527127","display_name":"Jun Yan","orcid":null},"institutions":[{"id":"https://openalex.org/I116953780","display_name":"Tongji University","ror":"https://ror.org/03rc6as71","country_code":"CN","type":"education","lineage":["https://openalex.org/I116953780"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Jun Yan","raw_affiliation_strings":["College of Electronic and Information Engineering, Tongji University, Shanghai, China"],"affiliations":[{"raw_affiliation_string":"College of Electronic and Information Engineering, Tongji University, Shanghai, China","institution_ids":["https://openalex.org/I116953780"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5009657946","display_name":"Huan Hua","orcid":null},"institutions":[{"id":"https://openalex.org/I116953780","display_name":"Tongji University","ror":"https://ror.org/03rc6as71","country_code":"CN","type":"education","lineage":["https://openalex.org/I116953780"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Huan Hua","raw_affiliation_strings":["Tongji University and Hikvision Co.Ltd, Shanghai, China"],"affiliations":[{"raw_affiliation_string":"Tongji University and Hikvision Co.Ltd, Shanghai, China","institution_ids":["https://openalex.org/I116953780"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5109188830","display_name":"Weiquan Huang","orcid":"https://orcid.org/0009-0001-4976-711X"},"institutions":[{"id":"https://openalex.org/I116953780","display_name":"Tongji University","ror":"https://ror.org/03rc6as71","country_code":"CN","type":"education","lineage":["https://openalex.org/I116953780"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Weiquan Huang","raw_affiliation_strings":["School of Computer Science and Technology, Tongji University, China"],"affiliations":[{"raw_affiliation_string":"School of Computer Science and Technology, Tongji University, China","institution_ids":["https://openalex.org/I116953780"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5010754242","display_name":"Xi Fang","orcid":"https://orcid.org/0000-0002-3783-2041"},"institutions":[{"id":"https://openalex.org/I4210150405","display_name":"Hongzhiwei Technology (China)","ror":"https://ror.org/04bapa014","country_code":"CN","type":"company","lineage":["https://openalex.org/I4210150405"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Xi Fang","raw_affiliation_strings":["DP Technology Co.Ltd, Shanghai, China"],"affiliations":[{"raw_affiliation_string":"DP Technology Co.Ltd, Shanghai, China","institution_ids":["https://openalex.org/I4210150405"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5026025128","display_name":"GE Wan-cheng","orcid":"https://orcid.org/0000-0001-6659-3433"},"institutions":[{"id":"https://openalex.org/I116953780","display_name":"Tongji University","ror":"https://ror.org/03rc6as71","country_code":"CN","type":"education","lineage":["https://openalex.org/I116953780"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Wancheng Ge","raw_affiliation_strings":["College of Electronic and Information Engineering, Tongji University, Shanghai, China"],"affiliations":[{"raw_affiliation_string":"College of Electronic and Information Engineering, Tongji University, Shanghai, China","institution_ids":["https://openalex.org/I116953780"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5020501435","display_name":"Jiancheng Yang","orcid":"https://orcid.org/0000-0003-4455-7145"},"institutions":[{"id":"https://openalex.org/I4210124774","display_name":"ElFys (Finland)","ror":"https://ror.org/0277khs39","country_code":"FI","type":"company","lineage":["https://openalex.org/I4210124774"]}],"countries":["FI"],"is_corresponding":false,"raw_author_name":"Jiancheng Yang","raw_affiliation_strings":["ELLIS Institute Finland, Espoo, Finland"],"affiliations":[{"raw_affiliation_string":"ELLIS Institute Finland, Espoo, Finland","institution_ids":["https://openalex.org/I4210124774"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5100664076","display_name":"Yongwei Wang","orcid":"https://orcid.org/0000-0001-9712-8964"},"institutions":[{"id":"https://openalex.org/I860388503","display_name":"Sias University","ror":"https://ror.org/02z8rzb71","country_code":"CN","type":"education","lineage":["https://openalex.org/I860388503"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yongwei Wang","raw_affiliation_strings":["CMIC and SIAS, Zhejiang University, China"],"affiliations":[{"raw_affiliation_string":"CMIC and SIAS, Zhejiang University, China","institution_ids":["https://openalex.org/I860388503"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":7,"corresponding_author_ids":["https://openalex.org/A5100527127"],"corresponding_institution_ids":["https://openalex.org/I116953780"],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":{"value":0.13695154,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":"1","last_page":"1"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9663000106811523,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9663000106811523,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.916700005531311},{"id":"https://openalex.org/keywords/spurious-relationship","display_name":"Spurious relationship","score":0.70660001039505},{"id":"https://openalex.org/keywords/information-bottleneck-method","display_name":"Information bottleneck method","score":0.6208999752998352},{"id":"https://openalex.org/keywords/bottleneck","display_name":"Bottleneck","score":0.5949000120162964},{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness (evolution)","score":0.5455999970436096},{"id":"https://openalex.org/keywords/inference","display_name":"Inference","score":0.5080999732017517},{"id":"https://openalex.org/keywords/artificial-neural-network","display_name":"Artificial neural network","score":0.4668999910354614},{"id":"https://openalex.org/keywords/convolutional-neural-network","display_name":"Convolutional neural network","score":0.45190000534057617}],"concepts":[{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.916700005531311},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7950000166893005},{"id":"https://openalex.org/C97256817","wikidata":"https://www.wikidata.org/wiki/Q1462316","display_name":"Spurious relationship","level":2,"score":0.70660001039505},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.6358000040054321},{"id":"https://openalex.org/C60008888","wikidata":"https://www.wikidata.org/wiki/Q6031013","display_name":"Information bottleneck method","level":3,"score":0.6208999752998352},{"id":"https://openalex.org/C2780513914","wikidata":"https://www.wikidata.org/wiki/Q18210350","display_name":"Bottleneck","level":2,"score":0.5949000120162964},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.5455999970436096},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.5372999906539917},{"id":"https://openalex.org/C2776214188","wikidata":"https://www.wikidata.org/wiki/Q408386","display_name":"Inference","level":2,"score":0.5080999732017517},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.4668999910354614},{"id":"https://openalex.org/C81363708","wikidata":"https://www.wikidata.org/wiki/Q17084460","display_name":"Convolutional neural network","level":2,"score":0.45190000534057617},{"id":"https://openalex.org/C2778403875","wikidata":"https://www.wikidata.org/wiki/Q20312394","display_name":"Adversarial machine learning","level":3,"score":0.38580000400543213},{"id":"https://openalex.org/C2984842247","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep neural networks","level":3,"score":0.37560001015663147},{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.36579999327659607},{"id":"https://openalex.org/C184337299","wikidata":"https://www.wikidata.org/wiki/Q1437428","display_name":"Semantics (computer science)","level":2,"score":0.3425000011920929},{"id":"https://openalex.org/C158600405","wikidata":"https://www.wikidata.org/wiki/Q5054566","display_name":"Causal inference","level":2,"score":0.31709998846054077},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.30799999833106995},{"id":"https://openalex.org/C2776135515","wikidata":"https://www.wikidata.org/wiki/Q17143721","display_name":"Regularization (linguistics)","level":2,"score":0.2930000126361847},{"id":"https://openalex.org/C57273362","wikidata":"https://www.wikidata.org/wiki/Q576722","display_name":"Decoding methods","level":2,"score":0.28529998660087585},{"id":"https://openalex.org/C195324797","wikidata":"https://www.wikidata.org/wiki/Q33742","display_name":"Natural language","level":2,"score":0.2678000032901764},{"id":"https://openalex.org/C2779458634","wikidata":"https://www.wikidata.org/wiki/Q24963715","display_name":"Debiasing","level":2,"score":0.2637999951839447},{"id":"https://openalex.org/C22019652","wikidata":"https://www.wikidata.org/wiki/Q331309","display_name":"Overfitting","level":3,"score":0.26010000705718994},{"id":"https://openalex.org/C190502265","wikidata":"https://www.wikidata.org/wiki/Q17069496","display_name":"MNIST database","level":3,"score":0.259799987077713},{"id":"https://openalex.org/C43126263","wikidata":"https://www.wikidata.org/wiki/Q128751","display_name":"Source code","level":2,"score":0.2508000135421753}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1109/tifs.2025.3611108","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tifs.2025.3611108","pdf_url":null,"source":{"id":"https://openalex.org/S61310614","display_name":"IEEE Transactions on Information Forensics and Security","issn_l":"1556-6013","issn":["1556-6013","1556-6021"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Information Forensics and Security","raw_type":"journal-article"},{"id":"pmh:oai:aaltodoc.aalto.fi:123456789/141850","is_oa":true,"landing_page_url":"https://doi.org/10.1109/TIFS.2025.3611108","pdf_url":null,"source":{"id":"https://openalex.org/S4306401663","display_name":"Aaltodoc (Aalto University)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I9927081","host_organization_name":"Aalto University","host_organization_lineage":["https://openalex.org/I9927081"],"host_organization_lineage_names":[],"type":"repository"},"license":"other-oa","license_id":"https://openalex.org/licenses/other-oa","version":"acceptedVersion","is_accepted":true,"is_published":false,"raw_source_name":null,"raw_type":"acceptedVersion"}],"best_oa_location":{"id":"pmh:oai:aaltodoc.aalto.fi:123456789/141850","is_oa":true,"landing_page_url":"https://doi.org/10.1109/TIFS.2025.3611108","pdf_url":null,"source":{"id":"https://openalex.org/S4306401663","display_name":"Aaltodoc (Aalto University)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I9927081","host_organization_name":"Aalto University","host_organization_lineage":["https://openalex.org/I9927081"],"host_organization_lineage_names":[],"type":"repository"},"license":"other-oa","license_id":"https://openalex.org/licenses/other-oa","version":"acceptedVersion","is_accepted":true,"is_published":false,"raw_source_name":null,"raw_type":"acceptedVersion"},"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":0,"referenced_works":[],"related_works":[],"abstract_inverted_index":{"Information":[0],"bottleneck":[1],"(IB)":[2],"is":[3,230],"a":[4,83,160,225],"promising":[5],"defense":[6,78,85],"solution":[7],"against":[8,189],"adversarial":[9,64,95,187,191,202,208],"attacks":[10,192],"on":[11,173],"deep":[12],"neural":[13,47],"networks.":[14],"However,":[15],"these":[16],"methods":[17],"often":[18],"suffer":[19],"from":[20],"spurious":[21,43],"correlations.":[22],"A":[23],"correlation":[24],"exists":[25],"between":[26],"the":[27,30,38,46,76,89,94,101,123,128,136,141,148,153,164,171,186],"prediction":[28],"and":[29,52,111,122,146,178,207,221],"non-robust":[31,112,124,144],"features,":[32],"yet":[33],"it":[34],"does":[35],"not":[36],"reflect":[37],"causal":[39,73,107],"relationship":[40],"well.":[41],"Such":[42],"correlations":[44],"induce":[45],"networks":[48],"to":[49,92,118,127,152,194,216],"learn":[50],"fragile":[51],"incomprehensible":[53],"(non-robust)":[54],"features.":[55,113],"This":[56,66],"issue":[57,70],"limits":[58],"its":[59],"potential":[60],"for":[61,106],"further":[62],"improving":[63],"robustness.":[65,96],"paper":[67],"addresses":[68],"this":[69,134],"by":[71],"incorporating":[72],"inference":[74],"into":[75,103],"IB-based":[77],"framework.":[79],"Specifically,":[80],"we":[81],"propose":[82],"novel":[84],"method":[86,99,138,183,199],"that":[87,181],"use":[88],"instrumental":[90],"variables":[91],"enhance":[93],"Our":[97,197,228],"proposed":[98,168],"divides":[100],"features":[102,116,125,145,150],"two":[104],"parts":[105],"effect":[108],"estimation:":[109],"robust":[110,115,149],"The":[114],"relate":[117],"understanding":[119],"semantic":[120,154],"information,":[121],"link":[126],"vulnerable":[129],"style":[130],"information.":[131],"By":[132],"employing":[133],"framework,":[135],"IB":[137],"can":[139,200,213],"mitigate":[140],"influence":[142],"of":[143,156,163,166],"extract":[147],"linking":[151],"information":[155],"objects.":[157],"We":[158],"conduct":[159],"thorough":[161],"analysis":[162],"effectiveness":[165],"our":[167,182],"method.":[169],"Notably,":[170],"experiments":[172],"MNIST,":[174],"FashionMNIST,":[175],"CIFAR-10,":[176],"CIFAR-100,":[177],"Tiny-ImageNet":[179],"demonstrate":[180],"significantly":[184],"boosts":[185],"robustness":[188,203],"multiple":[190],"compared":[193],"previous":[195],"methods.":[196],"regularization":[198],"improve":[201],"in":[204],"both":[205,217],"natural":[206],"training":[209],"frameworks.":[210],"Besides,":[211],"CausalIB":[212],"be":[214],"applied":[215],"Convolutional":[218],"Neural":[219],"Networks":[220],"Vision":[222],"Transformers":[223],"as":[224],"plug-and-play":[226],"module.":[227],"code":[229],"available":[231],"at":[232],"https://github.com/HydrogenWasser/CausalIB.":[233]},"counts_by_year":[],"updated_date":"2026-03-07T16:01:11.037858","created_date":"2025-10-10T00:00:00"}
