{"id":"https://openalex.org/W3177280989","doi":"https://doi.org/10.1109/tip.2021.3082317","title":"Training Robust Deep Neural Networks via Adversarial Noise Propagation","display_name":"Training Robust Deep Neural Networks via Adversarial Noise Propagation","publication_year":2021,"publication_date":"2021-01-01","ids":{"openalex":"https://openalex.org/W3177280989","doi":"https://doi.org/10.1109/tip.2021.3082317","mag":"3177280989","pmid":"https://pubmed.ncbi.nlm.nih.gov/34161231"},"language":"en","primary_location":{"id":"doi:10.1109/tip.2021.3082317","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tip.2021.3082317","pdf_url":null,"source":{"id":"https://openalex.org/S4210173141","display_name":"IEEE Transactions on Image Processing","issn_l":"1057-7149","issn":["1057-7149","1941-0042"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Image Processing","raw_type":"journal-article"},"type":"article","indexed_in":["crossref","pubmed"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5014870180","display_name":"Aishan Liu","orcid":"https://orcid.org/0000-0002-4224-1318"},"institutions":[{"id":"https://openalex.org/I82880672","display_name":"Beihang University","ror":"https://ror.org/00wk2mp56","country_code":"CN","type":"education","lineage":["https://openalex.org/I82880672"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Aishan Liu","raw_affiliation_strings":["State Key Laboratory of Software Development Environment, Beihang University, Beijing, China"],"raw_orcid":"https://orcid.org/0000-0002-4224-1318","affiliations":[{"raw_affiliation_string":"State Key Laboratory of Software Development Environment, Beihang University, Beijing, China","institution_ids":["https://openalex.org/I82880672"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5024067284","display_name":"Xianglong Liu","orcid":"https://orcid.org/0000-0002-7618-3275"},"institutions":[{"id":"https://openalex.org/I82880672","display_name":"Beihang University","ror":"https://ror.org/00wk2mp56","country_code":"CN","type":"education","lineage":["https://openalex.org/I82880672"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Xianglong Liu","raw_affiliation_strings":["Beijing Advanced Innovation Center for Big Data-Based Precision Medicine, Beihang University, Beijing, China","State Key Laboratory of Software Development Environment, Beihang University, Beijing, China"],"raw_orcid":"https://orcid.org/0000-0001-8425-4195","affiliations":[{"raw_affiliation_string":"Beijing Advanced Innovation Center for Big Data-Based Precision Medicine, Beihang University, Beijing, China","institution_ids":["https://openalex.org/I82880672"]},{"raw_affiliation_string":"State Key Laboratory of Software Development Environment, Beihang University, Beijing, China","institution_ids":["https://openalex.org/I82880672"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100647856","display_name":"Hang Yu","orcid":"https://orcid.org/0000-0001-7858-8789"},"institutions":[{"id":"https://openalex.org/I82880672","display_name":"Beihang University","ror":"https://ror.org/00wk2mp56","country_code":"CN","type":"education","lineage":["https://openalex.org/I82880672"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Hang Yu","raw_affiliation_strings":["State Key Laboratory of Software Development Environment, Beihang University, Beijing, China"],"raw_orcid":"https://orcid.org/0000-0001-7858-8789","affiliations":[{"raw_affiliation_string":"State Key Laboratory of Software Development Environment, Beihang University, Beijing, China","institution_ids":["https://openalex.org/I82880672"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5024002344","display_name":"Chongzhi Zhang","orcid":"https://orcid.org/0000-0003-1378-322X"},"institutions":[{"id":"https://openalex.org/I82880672","display_name":"Beihang University","ror":"https://ror.org/00wk2mp56","country_code":"CN","type":"education","lineage":["https://openalex.org/I82880672"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Chongzhi Zhang","raw_affiliation_strings":["State Key Laboratory of Software Development Environment, Beihang University, Beijing, China"],"raw_orcid":"https://orcid.org/0000-0003-1378-322X","affiliations":[{"raw_affiliation_string":"State Key Laboratory of Software Development Environment, Beihang University, Beijing, China","institution_ids":["https://openalex.org/I82880672"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100409530","display_name":"Qiang Liu","orcid":"https://orcid.org/0000-0003-2922-3518"},"institutions":[{"id":"https://openalex.org/I86519309","display_name":"The University of Texas at Austin","ror":"https://ror.org/00hj54h04","country_code":"US","type":"education","lineage":["https://openalex.org/I86519309"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Qiang Liu","raw_affiliation_strings":["The University of Texas at Austin, Austin, TX, USA"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"The University of Texas at Austin, Austin, TX, USA","institution_ids":["https://openalex.org/I86519309"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5074103823","display_name":"Dacheng Tao","orcid":"https://orcid.org/0000-0001-7225-5449"},"institutions":[{"id":"https://openalex.org/I4210103986","display_name":"Jingdong (China)","ror":"https://ror.org/01dkjkq64","country_code":"CN","type":"company","lineage":["https://openalex.org/I4210103986"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Dacheng Tao","raw_affiliation_strings":["JD Explore Academy at JD.com, Beijing, China"],"raw_orcid":"https://orcid.org/0000-0001-7225-5449","affiliations":[{"raw_affiliation_string":"JD Explore Academy at JD.com, Beijing, China","institution_ids":["https://openalex.org/I4210103986"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":6,"corresponding_author_ids":["https://openalex.org/A5014870180"],"corresponding_institution_ids":["https://openalex.org/I82880672"],"apc_list":null,"apc_paid":null,"fwci":9.6548,"has_fulltext":false,"cited_by_count":104,"citation_normalized_percentile":{"value":0.98403032,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":89,"max":100},"biblio":{"volume":"30","issue":null,"first_page":"5769","last_page":"5781"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9768000245094299,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10036","display_name":"Advanced Neural Network Applications","score":0.9538000226020813,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.8588303327560425},{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness (evolution)","score":0.8262948393821716},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7396206259727478},{"id":"https://openalex.org/keywords/mnist-database","display_name":"MNIST database","score":0.7117460370063782},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.6938892006874084},{"id":"https://openalex.org/keywords/deep-neural-networks","display_name":"Deep neural networks","score":0.655728816986084},{"id":"https://openalex.org/keywords/deep-learning","display_name":"Deep learning","score":0.6386567950248718},{"id":"https://openalex.org/keywords/artificial-neural-network","display_name":"Artificial neural network","score":0.5839115977287292},{"id":"https://openalex.org/keywords/artificial-noise","display_name":"Artificial noise","score":0.5766951441764832},{"id":"https://openalex.org/keywords/noise","display_name":"Noise (video)","score":0.49546897411346436},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.425546258687973},{"id":"https://openalex.org/keywords/pattern-recognition","display_name":"Pattern recognition (psychology)","score":0.3350127339363098},{"id":"https://openalex.org/keywords/physical-layer","display_name":"Physical layer","score":0.09143558144569397},{"id":"https://openalex.org/keywords/wireless","display_name":"Wireless","score":0.09041258692741394},{"id":"https://openalex.org/keywords/image","display_name":"Image (mathematics)","score":0.07778593897819519}],"concepts":[{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.8588303327560425},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.8262948393821716},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7396206259727478},{"id":"https://openalex.org/C190502265","wikidata":"https://www.wikidata.org/wiki/Q17069496","display_name":"MNIST database","level":3,"score":0.7117460370063782},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.6938892006874084},{"id":"https://openalex.org/C2984842247","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep neural networks","level":3,"score":0.655728816986084},{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.6386567950248718},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.5839115977287292},{"id":"https://openalex.org/C2780909371","wikidata":"https://www.wikidata.org/wiki/Q4801092","display_name":"Artificial noise","level":4,"score":0.5766951441764832},{"id":"https://openalex.org/C99498987","wikidata":"https://www.wikidata.org/wiki/Q2210247","display_name":"Noise (video)","level":3,"score":0.49546897411346436},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.425546258687973},{"id":"https://openalex.org/C153180895","wikidata":"https://www.wikidata.org/wiki/Q7148389","display_name":"Pattern recognition (psychology)","level":2,"score":0.3350127339363098},{"id":"https://openalex.org/C19247436","wikidata":"https://www.wikidata.org/wiki/Q192727","display_name":"Physical layer","level":3,"score":0.09143558144569397},{"id":"https://openalex.org/C555944384","wikidata":"https://www.wikidata.org/wiki/Q249","display_name":"Wireless","level":2,"score":0.09041258692741394},{"id":"https://openalex.org/C115961682","wikidata":"https://www.wikidata.org/wiki/Q860623","display_name":"Image (mathematics)","level":2,"score":0.07778593897819519},{"id":"https://openalex.org/C55493867","wikidata":"https://www.wikidata.org/wiki/Q7094","display_name":"Biochemistry","level":1,"score":0.0},{"id":"https://openalex.org/C76155785","wikidata":"https://www.wikidata.org/wiki/Q418","display_name":"Telecommunications","level":1,"score":0.0},{"id":"https://openalex.org/C104317684","wikidata":"https://www.wikidata.org/wiki/Q7187","display_name":"Gene","level":2,"score":0.0},{"id":"https://openalex.org/C185592680","wikidata":"https://www.wikidata.org/wiki/Q2329","display_name":"Chemistry","level":0,"score":0.0}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1109/tip.2021.3082317","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tip.2021.3082317","pdf_url":null,"source":{"id":"https://openalex.org/S4210173141","display_name":"IEEE Transactions on Image Processing","issn_l":"1057-7149","issn":["1057-7149","1941-0042"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Image Processing","raw_type":"journal-article"},{"id":"pmid:34161231","is_oa":false,"landing_page_url":"https://pubmed.ncbi.nlm.nih.gov/34161231","pdf_url":null,"source":{"id":"https://openalex.org/S4306525036","display_name":"PubMed","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I1299303238","host_organization_name":"National Institutes of Health","host_organization_lineage":["https://openalex.org/I1299303238"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE transactions on image processing : a publication of the IEEE Signal Processing Society","raw_type":null}],"best_oa_location":null,"sustainable_development_goals":[{"score":0.8299999833106995,"id":"https://metadata.un.org/sdg/16","display_name":"Peace, Justice and strong institutions"}],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":121,"referenced_works":["https://openalex.org/W639708223","https://openalex.org/W1673923490","https://openalex.org/W1836465849","https://openalex.org/W1883420340","https://openalex.org/W1892947258","https://openalex.org/W1945616565","https://openalex.org/W1988115241","https://openalex.org/W2024011160","https://openalex.org/W2108598243","https://openalex.org/W2119821739","https://openalex.org/W2133564696","https://openalex.org/W2141473882","https://openalex.org/W2160815625","https://openalex.org/W2163605009","https://openalex.org/W2193413348","https://openalex.org/W2274565976","https://openalex.org/W2342045095","https://openalex.org/W2460937040","https://openalex.org/W2508457857","https://openalex.org/W2560358147","https://openalex.org/W2612573399","https://openalex.org/W2620038827","https://openalex.org/W2735607295","https://openalex.org/W2765233338","https://openalex.org/W2765384636","https://openalex.org/W2774018344","https://openalex.org/W2774644650","https://openalex.org/W2785557471","https://openalex.org/W2786118190","https://openalex.org/W2787733970","https://openalex.org/W2799032899","https://openalex.org/W2807398060","https://openalex.org/W2897355816","https://openalex.org/W2905423756","https://openalex.org/W2913190747","https://openalex.org/W2913266441","https://openalex.org/W2913848079","https://openalex.org/W2949117887","https://openalex.org/W2962759300","https://openalex.org/W2962761044","https://openalex.org/W2962972504","https://openalex.org/W2963001136","https://openalex.org/W2963060032","https://openalex.org/W2963143631","https://openalex.org/W2963207607","https://openalex.org/W2963389226","https://openalex.org/W2963566318","https://openalex.org/W2963744840","https://openalex.org/W2963857521","https://openalex.org/W2963920068","https://openalex.org/W2964013229","https://openalex.org/W2964082701","https://openalex.org/W2964116600","https://openalex.org/W2964153729","https://openalex.org/W2964159205","https://openalex.org/W2964171870","https://openalex.org/W2964253222","https://openalex.org/W2964294232","https://openalex.org/W2964308564","https://openalex.org/W2965470910","https://openalex.org/W2970115835","https://openalex.org/W2970407040","https://openalex.org/W2989576588","https://openalex.org/W2991526369","https://openalex.org/W3009542902","https://openalex.org/W3034994123","https://openalex.org/W3037492894","https://openalex.org/W3107990944","https://openalex.org/W3108324072","https://openalex.org/W3113162324","https://openalex.org/W3118608800","https://openalex.org/W3125135622","https://openalex.org/W4239510810","https://openalex.org/W4242059867","https://openalex.org/W4288359148","https://openalex.org/W4288404646","https://openalex.org/W4293846201","https://openalex.org/W4294149583","https://openalex.org/W4300167250","https://openalex.org/W4300511536","https://openalex.org/W4300677102","https://openalex.org/W4394663350","https://openalex.org/W6637162671","https://openalex.org/W6638667902","https://openalex.org/W6639568328","https://openalex.org/W6640425456","https://openalex.org/W6679434410","https://openalex.org/W6680850120","https://openalex.org/W6684191040","https://openalex.org/W6687566353","https://openalex.org/W6694611762","https://openalex.org/W6719080892","https://openalex.org/W6729756640","https://openalex.org/W6730503085","https://openalex.org/W6736987314","https://openalex.org/W6738471743","https://openalex.org/W6739868092","https://openalex.org/W6744679260","https://openalex.org/W6745272055","https://openalex.org/W6746402973","https://openalex.org/W6747920752","https://openalex.org/W6748111160","https://openalex.org/W6748475379","https://openalex.org/W6748711285","https://openalex.org/W6749464311","https://openalex.org/W6750707585","https://openalex.org/W6752444042","https://openalex.org/W6755310938","https://openalex.org/W6757555829","https://openalex.org/W6758448228","https://openalex.org/W6758975236","https://openalex.org/W6759129252","https://openalex.org/W6761839128","https://openalex.org/W6764982603","https://openalex.org/W6766568290","https://openalex.org/W6774469542","https://openalex.org/W6779517208","https://openalex.org/W6780580498","https://openalex.org/W6784515117","https://openalex.org/W6787972765","https://openalex.org/W6864274290"],"related_works":["https://openalex.org/W2950183588","https://openalex.org/W3080754722","https://openalex.org/W2618574054","https://openalex.org/W3093978547","https://openalex.org/W3203790781","https://openalex.org/W2997056298","https://openalex.org/W2738001131","https://openalex.org/W4285785480","https://openalex.org/W3127875750","https://openalex.org/W4383221314"],"abstract_inverted_index":{"In":[0],"practice,":[1],"deep":[2,35,142,185],"neural":[3],"networks":[4],"have":[5,26],"been":[6,28],"found":[7],"to":[8,11,30,52,128,156],"be":[9,104,148],"vulnerable":[10],"various":[12,197],"types":[13,57],"of":[14,47,58,111,165],"noise,":[15],"such":[16],"as":[17],"adversarial":[18,23,32,44,153,189,198],"examples":[19],"and":[20,131,175,190,193],"corruption.":[21],"Various":[22],"defense":[24,199],"methods":[25,155],"accordingly":[27],"developed":[29],"improve":[31,158],"robustness":[33,130,160,183],"for":[34,184],"models.":[36],"However,":[37],"simply":[38],"training":[39,84,114,154],"on":[40,170],"data":[41],"mixed":[42],"with":[43,151],"examples,":[45],"most":[46],"these":[48],"models":[49,186],"still":[50],"fail":[51],"defend":[53],"against":[54,187],"the":[55,62,95,109,112,163,181],"generalized":[56],"noise.":[59],"Motivated":[60],"by":[61,107,161],"fact":[63],"that":[64,121,178],"hidden":[65,96,123,166],"layers":[66,97,124,136],"play":[67],"a":[68,74,80,99],"highly":[69],"important":[70],"role":[71],"in":[72,98],"maintaining":[73],"robust":[75],"model,":[76],"this":[77],"paper":[78],"proposes":[79],"simple":[81],"yet":[82],"powerful":[83],"algorithm,":[85],"named":[86],"Adversarial":[87],"Noise":[88],"Propagation":[89],"(ANP),":[90],"which":[91],"injects":[92],"noise":[93],"into":[94],"layer-wise":[100],"manner.":[101],"ANP":[102,179],"can":[103,147],"implemented":[105],"efficiently":[106],"exploiting":[108,162],"nature":[110],"backward-forward":[113],"style.":[115],"Through":[116],"thorough":[117],"investigations,":[118],"we":[119],"determine":[120],"different":[122,126],"make":[125],"contributions":[127],"model":[129,159],"clean":[132],"accuracy,":[133],"while":[134],"shallow":[135],"are":[137],"comparatively":[138],"more":[139],"critical":[140],"than":[141],"layers.":[143,167],"Moreover,":[144],"our":[145],"framework":[146],"easily":[149],"combined":[150],"other":[152],"further":[157],"potential":[164],"Extensive":[168],"experiments":[169],"MNIST,":[171],"CIFAR-10,":[172],"CIFAR-10-C,":[173],"CIFAR-10-P,":[174],"ImageNet":[176],"demonstrate":[177],"enables":[180],"strong":[182],"both":[188],"corrupted":[191],"ones,":[192],"also":[194],"significantly":[195],"outperforms":[196],"methods.":[200]},"counts_by_year":[{"year":2026,"cited_by_count":7},{"year":2025,"cited_by_count":27},{"year":2024,"cited_by_count":24},{"year":2023,"cited_by_count":26},{"year":2022,"cited_by_count":17},{"year":2021,"cited_by_count":2},{"year":2020,"cited_by_count":1}],"updated_date":"2026-04-29T09:16:38.111599","created_date":"2025-10-10T00:00:00"}
