{"id":"https://openalex.org/W3123566204","doi":"https://doi.org/10.1109/tip.2021.3050303","title":"Adversarial Attack Against Deep Saliency Models Powered by Non-Redundant Priors","display_name":"Adversarial Attack Against Deep Saliency Models Powered by Non-Redundant Priors","publication_year":2021,"publication_date":"2021-01-01","ids":{"openalex":"https://openalex.org/W3123566204","doi":"https://doi.org/10.1109/tip.2021.3050303","mag":"3123566204","pmid":"https://pubmed.ncbi.nlm.nih.gov/33444138"},"language":"en","primary_location":{"id":"doi:10.1109/tip.2021.3050303","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tip.2021.3050303","pdf_url":null,"source":{"id":"https://openalex.org/S4210173141","display_name":"IEEE Transactions on Image Processing","issn_l":"1057-7149","issn":["1057-7149","1941-0042"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Image Processing","raw_type":"journal-article"},"type":"article","indexed_in":["crossref","pubmed"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5018896720","display_name":"Zhaohui Che","orcid":"https://orcid.org/0000-0002-7323-4348"},"institutions":[{"id":"https://openalex.org/I183067930","display_name":"Shanghai Jiao Tong University","ror":"https://ror.org/0220qvk04","country_code":"CN","type":"education","lineage":["https://openalex.org/I183067930"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Zhaohui Che","raw_affiliation_strings":["Shanghai Key Laboratory of Digital Media Processing and Transmissions, Institute of Image Communication and Network Engineering, Shanghai Jiao Tong University, Shanghai, China"],"affiliations":[{"raw_affiliation_string":"Shanghai Key Laboratory of Digital Media Processing and Transmissions, Institute of Image Communication and Network Engineering, Shanghai Jiao Tong University, Shanghai, China","institution_ids":["https://openalex.org/I183067930"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5068743986","display_name":"Ali Borji","orcid":"https://orcid.org/0000-0001-8198-0335"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Ali Borji","raw_affiliation_strings":["MarkableAI Inc., Brooklyn, NY, USA"],"affiliations":[{"raw_affiliation_string":"MarkableAI Inc., Brooklyn, NY, USA","institution_ids":[]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5064168853","display_name":"Guangtao Zhai","orcid":"https://orcid.org/0000-0001-8165-9322"},"institutions":[{"id":"https://openalex.org/I183067930","display_name":"Shanghai Jiao Tong University","ror":"https://ror.org/0220qvk04","country_code":"CN","type":"education","lineage":["https://openalex.org/I183067930"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Guangtao Zhai","raw_affiliation_strings":["Shanghai Key Laboratory of Digital Media Processing and Transmissions, Institute of Image Communication and Network Engineering, Shanghai Jiao Tong University, Shanghai, China"],"affiliations":[{"raw_affiliation_string":"Shanghai Key Laboratory of Digital Media Processing and Transmissions, Institute of Image Communication and Network Engineering, Shanghai Jiao Tong University, Shanghai, China","institution_ids":["https://openalex.org/I183067930"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5018636267","display_name":"Suiyi Ling","orcid":"https://orcid.org/0000-0002-5306-9189"},"institutions":[{"id":"https://openalex.org/I97188460","display_name":"Nantes Universit\u00e9","ror":"https://ror.org/03gnr7b55","country_code":"FR","type":"education","lineage":["https://openalex.org/I97188460"]},{"id":"https://openalex.org/I4210117005","display_name":"Laboratoire des Sciences du Num\u00e9rique de Nantes","ror":"https://ror.org/02snf8m58","country_code":"FR","type":"facility","lineage":["https://openalex.org/I100445878","https://openalex.org/I1294671590","https://openalex.org/I1294671590","https://openalex.org/I1294671590","https://openalex.org/I1326498283","https://openalex.org/I205703379","https://openalex.org/I4210117005","https://openalex.org/I4210124215","https://openalex.org/I4210127572","https://openalex.org/I4210139971","https://openalex.org/I97188460","https://openalex.org/I97188460"]}],"countries":["FR"],"is_corresponding":false,"raw_author_name":"Suiyi Ling","raw_affiliation_strings":["\u00c9quipe Image, Perception et Interaction, Laboratoire des Sciences du Num\u00e9rique de Nantes, Universit\u00e9 de Nantes, Nantes, France"],"affiliations":[{"raw_affiliation_string":"\u00c9quipe Image, Perception et Interaction, Laboratoire des Sciences du Num\u00e9rique de Nantes, Universit\u00e9 de Nantes, Nantes, France","institution_ids":["https://openalex.org/I4210117005","https://openalex.org/I97188460"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100336808","display_name":"Jing Li","orcid":"https://orcid.org/0000-0001-8645-9709"},"institutions":[{"id":"https://openalex.org/I45928872","display_name":"Alibaba Group (China)","ror":"https://ror.org/00k642b80","country_code":"CN","type":"company","lineage":["https://openalex.org/I45928872"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Jing Li","raw_affiliation_strings":["Alibaba Group, Beijing, China"],"affiliations":[{"raw_affiliation_string":"Alibaba Group, Beijing, China","institution_ids":["https://openalex.org/I45928872"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5071435827","display_name":"Yuan Tian","orcid":"https://orcid.org/0000-0001-6073-8582"},"institutions":[{"id":"https://openalex.org/I183067930","display_name":"Shanghai Jiao Tong University","ror":"https://ror.org/0220qvk04","country_code":"CN","type":"education","lineage":["https://openalex.org/I183067930"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yuan Tian","raw_affiliation_strings":["Shanghai Key Laboratory of Digital Media Processing and Transmissions, Institute of Image Communication and Network Engineering, Shanghai Jiao Tong University, Shanghai, China"],"affiliations":[{"raw_affiliation_string":"Shanghai Key Laboratory of Digital Media Processing and Transmissions, Institute of Image Communication and Network Engineering, Shanghai Jiao Tong University, Shanghai, China","institution_ids":["https://openalex.org/I183067930"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5085022758","display_name":"Guodong Guo","orcid":"https://orcid.org/0000-0001-9583-0055"},"institutions":[{"id":"https://openalex.org/I4210129579","display_name":"National Engineering Laboratory of Deep Learning Technology and Application","ror":"https://ror.org/03z8p5796","country_code":"CN","type":"facility","lineage":["https://openalex.org/I4210129579"]},{"id":"https://openalex.org/I98301712","display_name":"Baidu (China)","ror":"https://ror.org/03vs3wt56","country_code":"CN","type":"company","lineage":["https://openalex.org/I98301712"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Guodong Guo","raw_affiliation_strings":["Institute of Deep Learning, Baidu Research, Beijing, China","National Engineering Laboratory for Deep Learning Technology and Application, Beijing, China"],"affiliations":[{"raw_affiliation_string":"Institute of Deep Learning, Baidu Research, Beijing, China","institution_ids":["https://openalex.org/I98301712"]},{"raw_affiliation_string":"National Engineering Laboratory for Deep Learning Technology and Application, Beijing, China","institution_ids":["https://openalex.org/I4210129579"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5004453915","display_name":"Patrick Le Callet","orcid":"https://orcid.org/0000-0002-2143-7063"},"institutions":[{"id":"https://openalex.org/I97188460","display_name":"Nantes Universit\u00e9","ror":"https://ror.org/03gnr7b55","country_code":"FR","type":"education","lineage":["https://openalex.org/I97188460"]},{"id":"https://openalex.org/I4210117005","display_name":"Laboratoire des Sciences du Num\u00e9rique de Nantes","ror":"https://ror.org/02snf8m58","country_code":"FR","type":"facility","lineage":["https://openalex.org/I100445878","https://openalex.org/I1294671590","https://openalex.org/I1294671590","https://openalex.org/I1294671590","https://openalex.org/I1326498283","https://openalex.org/I205703379","https://openalex.org/I4210117005","https://openalex.org/I4210124215","https://openalex.org/I4210127572","https://openalex.org/I4210139971","https://openalex.org/I97188460","https://openalex.org/I97188460"]}],"countries":["FR"],"is_corresponding":false,"raw_author_name":"Patrick Le Callet","raw_affiliation_strings":["\u00c9quipe Image, Perception et Interaction, Laboratoire des Sciences du Num\u00e9rique de Nantes, Universit\u00e9 de Nantes, Nantes, France"],"affiliations":[{"raw_affiliation_string":"\u00c9quipe Image, Perception et Interaction, Laboratoire des Sciences du Num\u00e9rique de Nantes, Universit\u00e9 de Nantes, Nantes, France","institution_ids":["https://openalex.org/I4210117005","https://openalex.org/I97188460"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":8,"corresponding_author_ids":["https://openalex.org/A5018896720"],"corresponding_institution_ids":["https://openalex.org/I183067930"],"apc_list":null,"apc_paid":null,"fwci":2.7193,"has_fulltext":false,"cited_by_count":26,"citation_normalized_percentile":{"value":0.91582918,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":89,"max":99},"biblio":{"volume":"30","issue":null,"first_page":"1973","last_page":"1988"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9994999766349792,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9994999766349792,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10036","display_name":"Advanced Neural Network Applications","score":0.9940000176429749,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11605","display_name":"Visual Attention and Saliency Detection","score":0.9940000176429749,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.6501998901367188},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.6192266345024109},{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness (evolution)","score":0.5569714903831482},{"id":"https://openalex.org/keywords/redundancy","display_name":"Redundancy (engineering)","score":0.45144224166870117},{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.4318857789039612},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.36512789130210876}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6501998901367188},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.6192266345024109},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.5569714903831482},{"id":"https://openalex.org/C152124472","wikidata":"https://www.wikidata.org/wiki/Q1204361","display_name":"Redundancy (engineering)","level":2,"score":0.45144224166870117},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.4318857789039612},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.36512789130210876},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.0},{"id":"https://openalex.org/C104317684","wikidata":"https://www.wikidata.org/wiki/Q7187","display_name":"Gene","level":2,"score":0.0},{"id":"https://openalex.org/C185592680","wikidata":"https://www.wikidata.org/wiki/Q2329","display_name":"Chemistry","level":0,"score":0.0},{"id":"https://openalex.org/C55493867","wikidata":"https://www.wikidata.org/wiki/Q7094","display_name":"Biochemistry","level":1,"score":0.0}],"mesh":[],"locations_count":3,"locations":[{"id":"doi:10.1109/tip.2021.3050303","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tip.2021.3050303","pdf_url":null,"source":{"id":"https://openalex.org/S4210173141","display_name":"IEEE Transactions on Image Processing","issn_l":"1057-7149","issn":["1057-7149","1941-0042"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Image Processing","raw_type":"journal-article"},{"id":"pmid:33444138","is_oa":false,"landing_page_url":"https://pubmed.ncbi.nlm.nih.gov/33444138","pdf_url":null,"source":{"id":"https://openalex.org/S4306525036","display_name":"PubMed","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I1299303238","host_organization_name":"National Institutes of Health","host_organization_lineage":["https://openalex.org/I1299303238"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE transactions on image processing : a publication of the IEEE Signal Processing Society","raw_type":null},{"id":"pmh:oai:HAL:hal-03652608v1","is_oa":false,"landing_page_url":"https://hal.science/hal-03652608","pdf_url":null,"source":{"id":"https://openalex.org/S4306402512","display_name":"HAL (Le Centre pour la Communication Scientifique Directe)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I1294671590","host_organization_name":"Centre National de la Recherche Scientifique","host_organization_lineage":["https://openalex.org/I1294671590"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"IEEE Transactions on Image Processing, 2021, 30, pp.1973-1988. &#x27E8;10.1109/TIP.2021.3050303&#x27E9;","raw_type":"Journal articles"}],"best_oa_location":null,"sustainable_development_goals":[{"score":0.5600000023841858,"id":"https://metadata.un.org/sdg/1","display_name":"No poverty"}],"awards":[{"id":"https://openalex.org/G2098762469","display_name":null,"funder_award_id":"U1908210","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G4054117750","display_name":null,"funder_award_id":"61831015","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"}],"funders":[{"id":"https://openalex.org/F4320321001","display_name":"National Natural Science Foundation of China","ror":"https://ror.org/01h0zpd94"}],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":105,"referenced_works":["https://openalex.org/W284368147","https://openalex.org/W1510835000","https://openalex.org/W1522301498","https://openalex.org/W1540330701","https://openalex.org/W1572655503","https://openalex.org/W1673923490","https://openalex.org/W1934890906","https://openalex.org/W1945616565","https://openalex.org/W1980287119","https://openalex.org/W2032007016","https://openalex.org/W2051434435","https://openalex.org/W2055111849","https://openalex.org/W2063608179","https://openalex.org/W2064076655","https://openalex.org/W2065699608","https://openalex.org/W2111602053","https://openalex.org/W2164084182","https://openalex.org/W2212216676","https://openalex.org/W2243397390","https://openalex.org/W2288514685","https://openalex.org/W2336525740","https://openalex.org/W2474210745","https://openalex.org/W2522986997","https://openalex.org/W2558906385","https://openalex.org/W2570685808","https://openalex.org/W2583180462","https://openalex.org/W2596367596","https://openalex.org/W2603766943","https://openalex.org/W2604505099","https://openalex.org/W2612135493","https://openalex.org/W2738450183","https://openalex.org/W2746600820","https://openalex.org/W2765424254","https://openalex.org/W2766108848","https://openalex.org/W2774018344","https://openalex.org/W2774644650","https://openalex.org/W2783237807","https://openalex.org/W2795727551","https://openalex.org/W2810134417","https://openalex.org/W2883285025","https://openalex.org/W2887906331","https://openalex.org/W2895097814","https://openalex.org/W2952104986","https://openalex.org/W2962713901","https://openalex.org/W2962846186","https://openalex.org/W2962965915","https://openalex.org/W2963062382","https://openalex.org/W2963207607","https://openalex.org/W2963542245","https://openalex.org/W2963595196","https://openalex.org/W2963771536","https://openalex.org/W2963800363","https://openalex.org/W2963828885","https://openalex.org/W2963857521","https://openalex.org/W2963920068","https://openalex.org/W2963955657","https://openalex.org/W2964082701","https://openalex.org/W2964121744","https://openalex.org/W2964153729","https://openalex.org/W2964171870","https://openalex.org/W2964205597","https://openalex.org/W2964253222","https://openalex.org/W2965198951","https://openalex.org/W2968044287","https://openalex.org/W2970257215","https://openalex.org/W2971126145","https://openalex.org/W2979442772","https://openalex.org/W2982109374","https://openalex.org/W3006076803","https://openalex.org/W3101840568","https://openalex.org/W3103557498","https://openalex.org/W3104218734","https://openalex.org/W3105966669","https://openalex.org/W3106412272","https://openalex.org/W3111709374","https://openalex.org/W3122238731","https://openalex.org/W3142870886","https://openalex.org/W4237230284","https://openalex.org/W4250589301","https://openalex.org/W4293529028","https://openalex.org/W4293846201","https://openalex.org/W4300511536","https://openalex.org/W4301967114","https://openalex.org/W6610281778","https://openalex.org/W6631190155","https://openalex.org/W6637162671","https://openalex.org/W6640425456","https://openalex.org/W6685943642","https://openalex.org/W6703437051","https://openalex.org/W6719080892","https://openalex.org/W6731927902","https://openalex.org/W6732940373","https://openalex.org/W6735641298","https://openalex.org/W6739868092","https://openalex.org/W6745847742","https://openalex.org/W6746402973","https://openalex.org/W6747706139","https://openalex.org/W6750404860","https://openalex.org/W6752906774","https://openalex.org/W6753044988","https://openalex.org/W6754376045","https://openalex.org/W6763636181","https://openalex.org/W6764550947","https://openalex.org/W6773713311","https://openalex.org/W6786623346"],"related_works":["https://openalex.org/W2961085424","https://openalex.org/W4306674287","https://openalex.org/W3046775127","https://openalex.org/W3107602296","https://openalex.org/W3170094116","https://openalex.org/W4386462264","https://openalex.org/W4313488044","https://openalex.org/W3209574120","https://openalex.org/W4312192474","https://openalex.org/W4210805261"],"abstract_inverted_index":{"Saliency":[0],"detection":[1],"is":[2],"an":[3,20,82,169],"effective":[4],"front-end":[5],"process":[6],"to":[7,23,52,120,128,173,185,242,269],"many":[8],"security-related":[9],"tasks,":[10],"e.g.":[11],"automatic":[12],"drive":[13],"and":[14,64,72,91,167,233,260],"tracking.":[15],"Adversarial":[16],"attack":[17,70,145,231],"serves":[18],"as":[19,163],"efficient":[21,83],"surrogate":[22],"evaluate":[24],"the":[25,45,48,57,86,92,112,116,129,138,147,150,156,164,175,179,187,191,199,210,220,227,244,270,274],"robustness":[26,245,267],"of":[27,40,124,133,149,190,201,209,246,258],"deep":[28,249],"saliency":[29,250,271],"models":[30,90,162,251],"before":[31],"they":[32],"are":[33,62],"deployed":[34],"in":[35,115,183],"real":[36],"world.":[37],"However,":[38],"most":[39],"current":[41],"adversarial":[42,54,151],"attacks":[43],"exploit":[44,155],"gradients":[46],"spanning":[47,137],"entire":[49,139],"image":[50],"space":[51,119],"craft":[53],"examples,":[55],"ignoring":[56],"fact":[58],"that":[59],"natural":[60],"images":[61],"high-dimensional":[63],"spatially":[65],"over-redundant,":[66],"thus":[67],"causing":[68],"expensive":[69],"cost":[71,113],"poor":[73],"perceptibility.":[74],"To":[75],"circumvent":[76],"these":[77],"issues,":[78],"this":[79],"paper":[80],"builds":[81],"bridge":[84],"between":[85,230],"accessible":[87],"partially-white-box":[88,108,144],"source":[89,161],"unknown":[93],"black-box":[94,192,261],"target":[95,193],"models.":[96],"The":[97,195],"proposed":[98],"method":[99,225],"includes":[100],"two":[101],"steps:":[102],"1)":[103],"We":[104,154],"design":[105],"a":[106,122,239,265],"new":[107,266],"attack,":[109],"which":[110,263],"defines":[111],"function":[114],"compact":[117],"hidden":[118],"punish":[121],"fraction":[123],"feature":[125],"activations":[126],"corresponding":[127],"salient":[130],"regions,":[131],"instead":[132],"punishing":[134],"every":[135],"pixel":[136],"dense":[140],"output":[141],"space.":[142],"This":[143],"reduces":[146],"redundancy":[148],"perturbation.":[152],"2)":[153],"non-redundant":[157,180,196],"perturbations":[158],"from":[159],"some":[160,202],"prior":[165,181,211],"cues,":[166,212],"use":[168],"iterative":[170],"zeroth-order":[171],"optimizer":[172],"compute":[174],"directional":[176],"derivatives":[177],"along":[178],"directions,":[182],"order":[184],"estimate":[186],"actual":[188],"gradient":[189],"model.":[194],"priors":[197],"boost":[198],"update":[200],"\"critical\"":[203],"pixels":[204,217],"locating":[205,218],"at":[206,219],"non-zero":[207],"coordinates":[208,222],"while":[213],"keeping":[214],"other":[215],"redundant":[216],"zero":[221],"unaffected.":[223],"Our":[224],"achieves":[226],"best":[228],"tradeoff":[229],"ability":[232],"perturbation":[234],"redundancy.":[235],"Finally,":[236],"we":[237],"conduct":[238],"comprehensive":[240],"experiment":[241],"test":[243],"18":[247],"state-of-the-art":[248],"against":[252],"16":[253],"malicious":[254],"attacks,":[255],"under":[256],"both":[257],"white-box":[259],"settings,":[262],"contributes":[264],"benchmark":[268],"community":[272],"for":[273],"first":[275],"time.":[276]},"counts_by_year":[{"year":2025,"cited_by_count":5},{"year":2024,"cited_by_count":4},{"year":2023,"cited_by_count":7},{"year":2022,"cited_by_count":7},{"year":2021,"cited_by_count":2},{"year":2020,"cited_by_count":1}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
