{"id":"https://openalex.org/W2810865311","doi":"https://doi.org/10.1109/tkde.2018.2851247","title":"Adversarial Deep Learning Models with Multiple Adversaries","display_name":"Adversarial Deep Learning Models with Multiple Adversaries","publication_year":2018,"publication_date":"2018-06-28","ids":{"openalex":"https://openalex.org/W2810865311","doi":"https://doi.org/10.1109/tkde.2018.2851247","mag":"2810865311"},"language":"en","primary_location":{"id":"doi:10.1109/tkde.2018.2851247","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tkde.2018.2851247","pdf_url":null,"source":{"id":"https://openalex.org/S30698027","display_name":"IEEE Transactions on Knowledge and Data Engineering","issn_l":"1041-4347","issn":["1041-4347","1558-2191","2326-3865"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320439","host_organization_name":"IEEE Computer Society","host_organization_lineage":["https://openalex.org/P4310320439","https://openalex.org/P4310319808"],"host_organization_lineage_names":["IEEE Computer Society","Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Knowledge and Data Engineering","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"http://hdl.handle.net/10453/136227","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5043498106","display_name":"Aneesh Sreevallabh Chivukula","orcid":"https://orcid.org/0000-0002-0445-4435"},"institutions":[{"id":"https://openalex.org/I114017466","display_name":"University of Technology Sydney","ror":"https://ror.org/03f0f6041","country_code":"AU","type":"education","lineage":["https://openalex.org/I114017466"]}],"countries":["AU"],"is_corresponding":true,"raw_author_name":"Aneesh Sreevallabh Chivukula","raw_affiliation_strings":["Advanced Analytics Institute, University of Technology Sydney, Ultimo, NSW, Australia"],"affiliations":[{"raw_affiliation_string":"Advanced Analytics Institute, University of Technology Sydney, Ultimo, NSW, Australia","institution_ids":["https://openalex.org/I114017466"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5100431652","display_name":"Wei Liu","orcid":"https://orcid.org/0000-0001-6565-5815"},"institutions":[{"id":"https://openalex.org/I114017466","display_name":"University of Technology Sydney","ror":"https://ror.org/03f0f6041","country_code":"AU","type":"education","lineage":["https://openalex.org/I114017466"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"Wei Liu","raw_affiliation_strings":["Advanced Analytics Institute, University of Technology Sydney, Ultimo, NSW, Australia"],"affiliations":[{"raw_affiliation_string":"Advanced Analytics Institute, University of Technology Sydney, Ultimo, NSW, Australia","institution_ids":["https://openalex.org/I114017466"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":2,"corresponding_author_ids":["https://openalex.org/A5043498106"],"corresponding_institution_ids":["https://openalex.org/I114017466"],"apc_list":null,"apc_paid":null,"fwci":1.8615,"has_fulltext":true,"cited_by_count":29,"citation_normalized_percentile":{"value":0.89062886,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":94,"max":99},"biblio":{"volume":"31","issue":"6","first_page":"1066","last_page":"1079"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9470000267028809,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9417999982833862,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8111699819564819},{"id":"https://openalex.org/keywords/stackelberg-competition","display_name":"Stackelberg competition","score":0.6873342990875244},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.6485896110534668},{"id":"https://openalex.org/keywords/nash-equilibrium","display_name":"Nash equilibrium","score":0.643785834312439},{"id":"https://openalex.org/keywords/mnist-database","display_name":"MNIST database","score":0.6317376494407654},{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.5711439847946167},{"id":"https://openalex.org/keywords/stochastic-game","display_name":"Stochastic game","score":0.5350044965744019},{"id":"https://openalex.org/keywords/adversary","display_name":"Adversary","score":0.5152745246887207},{"id":"https://openalex.org/keywords/convolutional-neural-network","display_name":"Convolutional neural network","score":0.5118717551231384},{"id":"https://openalex.org/keywords/best-response","display_name":"Best response","score":0.48779040575027466},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.45512932538986206},{"id":"https://openalex.org/keywords/minimax","display_name":"Minimax","score":0.42272594571113586},{"id":"https://openalex.org/keywords/game-theory","display_name":"Game theory","score":0.41717085242271423},{"id":"https://openalex.org/keywords/deep-learning","display_name":"Deep learning","score":0.3786742687225342},{"id":"https://openalex.org/keywords/theoretical-computer-science","display_name":"Theoretical computer science","score":0.37056902050971985},{"id":"https://openalex.org/keywords/mathematical-optimization","display_name":"Mathematical optimization","score":0.2585866451263428},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.16763582825660706},{"id":"https://openalex.org/keywords/mathematical-economics","display_name":"Mathematical economics","score":0.1381402611732483},{"id":"https://openalex.org/keywords/mathematics","display_name":"Mathematics","score":0.13201728463172913}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8111699819564819},{"id":"https://openalex.org/C199510392","wikidata":"https://www.wikidata.org/wiki/Q1184602","display_name":"Stackelberg competition","level":2,"score":0.6873342990875244},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.6485896110534668},{"id":"https://openalex.org/C46814582","wikidata":"https://www.wikidata.org/wiki/Q23389","display_name":"Nash equilibrium","level":2,"score":0.643785834312439},{"id":"https://openalex.org/C190502265","wikidata":"https://www.wikidata.org/wiki/Q17069496","display_name":"MNIST database","level":3,"score":0.6317376494407654},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.5711439847946167},{"id":"https://openalex.org/C22171661","wikidata":"https://www.wikidata.org/wiki/Q1074380","display_name":"Stochastic game","level":2,"score":0.5350044965744019},{"id":"https://openalex.org/C41065033","wikidata":"https://www.wikidata.org/wiki/Q2825412","display_name":"Adversary","level":2,"score":0.5152745246887207},{"id":"https://openalex.org/C81363708","wikidata":"https://www.wikidata.org/wiki/Q17084460","display_name":"Convolutional neural network","level":2,"score":0.5118717551231384},{"id":"https://openalex.org/C32407928","wikidata":"https://www.wikidata.org/wiki/Q2733833","display_name":"Best response","level":3,"score":0.48779040575027466},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.45512932538986206},{"id":"https://openalex.org/C149728462","wikidata":"https://www.wikidata.org/wiki/Q751319","display_name":"Minimax","level":2,"score":0.42272594571113586},{"id":"https://openalex.org/C177142836","wikidata":"https://www.wikidata.org/wiki/Q44455","display_name":"Game theory","level":2,"score":0.41717085242271423},{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.3786742687225342},{"id":"https://openalex.org/C80444323","wikidata":"https://www.wikidata.org/wiki/Q2878974","display_name":"Theoretical computer science","level":1,"score":0.37056902050971985},{"id":"https://openalex.org/C126255220","wikidata":"https://www.wikidata.org/wiki/Q141495","display_name":"Mathematical optimization","level":1,"score":0.2585866451263428},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.16763582825660706},{"id":"https://openalex.org/C144237770","wikidata":"https://www.wikidata.org/wiki/Q747534","display_name":"Mathematical economics","level":1,"score":0.1381402611732483},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.13201728463172913}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1109/tkde.2018.2851247","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tkde.2018.2851247","pdf_url":null,"source":{"id":"https://openalex.org/S30698027","display_name":"IEEE Transactions on Knowledge and Data Engineering","issn_l":"1041-4347","issn":["1041-4347","1558-2191","2326-3865"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320439","host_organization_name":"IEEE Computer Society","host_organization_lineage":["https://openalex.org/P4310320439","https://openalex.org/P4310319808"],"host_organization_lineage_names":["IEEE Computer Society","Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Knowledge and Data Engineering","raw_type":"journal-article"},{"id":"pmh:oai:opus.lib.uts.edu.au:10453/136227","is_oa":true,"landing_page_url":"http://hdl.handle.net/10453/136227","pdf_url":"http://hdl.handle.net/10453/136227","source":{"id":"https://openalex.org/S4306401357","display_name":"UTS ePRESS (University of Technology Sydney)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I114017466","host_organization_name":"University of Technology Sydney","host_organization_lineage":["https://openalex.org/I114017466"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":"Journal Article"}],"best_oa_location":{"id":"pmh:oai:opus.lib.uts.edu.au:10453/136227","is_oa":true,"landing_page_url":"http://hdl.handle.net/10453/136227","pdf_url":"http://hdl.handle.net/10453/136227","source":{"id":"https://openalex.org/S4306401357","display_name":"UTS ePRESS (University of Technology Sydney)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I114017466","host_organization_name":"University of Technology Sydney","host_organization_lineage":["https://openalex.org/I114017466"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":"Journal Article"},"sustainable_development_goals":[{"display_name":"Peace, Justice and strong institutions","id":"https://metadata.un.org/sdg/16","score":0.7900000214576721}],"awards":[],"funders":[{"id":"https://openalex.org/F4320328094","display_name":"RoZetta","ror":null}],"has_content":{"grobid_xml":true,"pdf":true},"content_urls":{"pdf":"https://content.openalex.org/works/W2810865311.pdf","grobid_xml":"https://content.openalex.org/works/W2810865311.grobid-xml"},"referenced_works_count":43,"referenced_works":["https://openalex.org/W176207675","https://openalex.org/W1652603594","https://openalex.org/W1883420340","https://openalex.org/W1965052658","https://openalex.org/W2047237187","https://openalex.org/W2050215344","https://openalex.org/W2095577883","https://openalex.org/W2096633407","https://openalex.org/W2097350013","https://openalex.org/W2099471712","https://openalex.org/W2107397716","https://openalex.org/W2109300365","https://openalex.org/W2112507308","https://openalex.org/W2114296159","https://openalex.org/W2123585936","https://openalex.org/W2144906988","https://openalex.org/W2150295936","https://openalex.org/W2151298633","https://openalex.org/W2163605009","https://openalex.org/W2166348281","https://openalex.org/W2167731287","https://openalex.org/W2274565976","https://openalex.org/W2603766943","https://openalex.org/W2605195953","https://openalex.org/W2783155279","https://openalex.org/W2799148064","https://openalex.org/W2962879692","https://openalex.org/W2963226019","https://openalex.org/W2963684088","https://openalex.org/W3103940881","https://openalex.org/W3111818035","https://openalex.org/W4295274059","https://openalex.org/W4295521014","https://openalex.org/W4320013936","https://openalex.org/W4394644156","https://openalex.org/W6639568328","https://openalex.org/W6676935882","https://openalex.org/W6684191040","https://openalex.org/W6685352114","https://openalex.org/W6718140377","https://openalex.org/W6735913928","https://openalex.org/W6736155344","https://openalex.org/W6864546407"],"related_works":["https://openalex.org/W2950475743","https://openalex.org/W2928289619","https://openalex.org/W1984394557","https://openalex.org/W2328458106","https://openalex.org/W2733656312","https://openalex.org/W2780264559","https://openalex.org/W2581115878","https://openalex.org/W1975256383","https://openalex.org/W4297941371","https://openalex.org/W4295981394"],"abstract_inverted_index":{"We":[0,184],"develop":[1],"an":[2],"adversarial":[3,90,192,208,212],"learning":[4,240],"algorithm":[5,88],"for":[6,154,177],"supervised":[7],"classification":[8,100],"in":[9,16,85,111,237],"general":[10],"and":[11,33,128,168,214,231],"Convolutional":[12],"Neural":[13],"Networks":[14],"(CNN)":[15],"particular.":[17],"The":[18,48,87,105,158,211,225],"algorithm's":[19],"objective":[20],"is":[21,43,51,79,109,152,174,204,218],"to":[22,26,52,182,198,206],"produce":[23],"small":[24],"changes":[25,84],"the":[27,39,46,58,99,103,129,141,155,187,191],"data":[28,41,60,209,213],"distribution":[29,42],"defined":[30],"over":[31,189],"positive":[32,68],"negative":[34,71],"class":[35],"labels":[36,69],"so":[37],"that":[38,61,132,228],"resulting":[40],"misclassified":[44],"by":[45,92,195],"CNN.":[47,104],"theoretical":[49],"goal":[50],"determine":[53],"a":[54,76,94,133,144,162,200],"manipulating":[55],"change":[56],"on":[57,220],"input":[59],"finds":[62,161],"learner":[63,130,179,188],"decision":[64],"boundaries":[65],"where":[66],"many":[67],"become":[70],"labels.":[72],"Then":[73],"we":[74],"propose":[75,199],"CNN":[77,202,216],"which":[78,172,203],"secure":[80,201],"against":[81,242],"such":[82],"unforeseen":[83],"data.":[86,224],"generates":[89],"manipulations":[91,193],"formulating":[93],"multiplayer":[95,106],"stochastic":[96,107],"game":[97,108,119,151,229],"targeting":[98],"performance":[101,217,243],"of":[102,113,121,143,164],"expressed":[110],"terms":[112],"multiple":[114,196,250],"two-player":[115,150],"sequential":[116,145],"games.":[117],"Each":[118],"consists":[120],"interactions":[122],"between":[123],"two":[124],"players-an":[125],"intelligent":[126],"adversary":[127,181],"CNN-such":[131],"player's":[134],"payoff":[135],"function":[136],"increases":[137],"with":[138],"interactions.":[139],"Following":[140],"convergence":[142],"noncooperative":[146],"Stackelberg":[147],"game,":[148],"each":[149],"solved":[153],"Nash":[156,159],"equilibrium.":[157],"equilibrium":[160],"pair":[163],"strategies":[165],"(learner":[166],"weights":[167],"evolutionary":[169,232],"operations)":[170],"from":[171,249],"there":[173],"no":[175],"incentive":[176],"either":[178],"or":[180],"deviate.":[183],"then":[185],"retrain":[186],"all":[190],"generated":[194],"players":[197],"robust":[205],"subsequent":[207],"manipulations.":[210],"corresponding":[215],"evaluated":[219],"MNIST":[221],"handwritten":[222],"digits":[223],"results":[226],"suggest":[227],"theory":[230],"algorithms":[233],"are":[234],"very":[235],"effective":[236],"securing":[238],"deep":[239],"models":[241],"vulnerabilities":[244],"simulated":[245],"as":[246],"attack":[247],"scenarios":[248],"adversaries.":[251]},"counts_by_year":[{"year":2025,"cited_by_count":3},{"year":2024,"cited_by_count":2},{"year":2023,"cited_by_count":4},{"year":2022,"cited_by_count":8},{"year":2021,"cited_by_count":7},{"year":2020,"cited_by_count":2},{"year":2019,"cited_by_count":2}],"updated_date":"2026-04-05T17:49:38.594831","created_date":"2025-10-10T00:00:00"}
