{"id":"https://openalex.org/W4411336749","doi":"https://doi.org/10.1109/tkde.2025.3580116","title":"F2AT: Feature-Focusing Adversarial Training via Disentanglement of Natural and Perturbed Patterns","display_name":"F2AT: Feature-Focusing Adversarial Training via Disentanglement of Natural and Perturbed Patterns","publication_year":2025,"publication_date":"2025-06-16","ids":{"openalex":"https://openalex.org/W4411336749","doi":"https://doi.org/10.1109/tkde.2025.3580116"},"language":"en","primary_location":{"id":"doi:10.1109/tkde.2025.3580116","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tkde.2025.3580116","pdf_url":null,"source":{"id":"https://openalex.org/S30698027","display_name":"IEEE Transactions on Knowledge and Data Engineering","issn_l":"1041-4347","issn":["1041-4347","1558-2191","2326-3865"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320439","host_organization_name":"IEEE Computer Society","host_organization_lineage":["https://openalex.org/P4310320439","https://openalex.org/P4310319808"],"host_organization_lineage_names":["IEEE Computer Society","Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Knowledge and Data Engineering","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5057867117","display_name":"Yaguan Qian","orcid":"https://orcid.org/0000-0003-4056-9755"},"institutions":[{"id":"https://openalex.org/I168879160","display_name":"Zhejiang University of Science and Technology","ror":"https://ror.org/05mx0wr29","country_code":"CN","type":"education","lineage":["https://openalex.org/I168879160"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Yaguan Qian","raw_affiliation_strings":["School of Artificial Intelligence and Information Engineering, Zhejiang University of Science and Technology, Hangzhou, China"],"affiliations":[{"raw_affiliation_string":"School of Artificial Intelligence and Information Engineering, Zhejiang University of Science and Technology, Hangzhou, China","institution_ids":["https://openalex.org/I168879160"]}]},{"author_position":"middle","author":{"id":null,"display_name":"Chenyu Zhao","orcid":"https://orcid.org/0009-0001-2444-9908"},"institutions":[{"id":"https://openalex.org/I168879160","display_name":"Zhejiang University of Science and Technology","ror":"https://ror.org/05mx0wr29","country_code":"CN","type":"education","lineage":["https://openalex.org/I168879160"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Chenyu Zhao","raw_affiliation_strings":["School of Science, Zhejiang University of Science and Technology, Hangzhou, China"],"affiliations":[{"raw_affiliation_string":"School of Science, Zhejiang University of Science and Technology, Hangzhou, China","institution_ids":["https://openalex.org/I168879160"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5070856186","display_name":"Zhaoquan Gu","orcid":"https://orcid.org/0000-0001-7546-852X"},"institutions":[{"id":"https://openalex.org/I158809036","display_name":"Shenzhen Institute of Information Technology","ror":"https://ror.org/03wrf9427","country_code":"CN","type":"education","lineage":["https://openalex.org/I158809036"]},{"id":"https://openalex.org/I204983213","display_name":"Harbin Institute of Technology","ror":"https://ror.org/01yqg2h08","country_code":"CN","type":"education","lineage":["https://openalex.org/I204983213"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Zhaoquan Gu","raw_affiliation_strings":["School of Computer Science and Technology, Harbin Institute of Technology (Shenzhen), Shenzhen, China"],"affiliations":[{"raw_affiliation_string":"School of Computer Science and Technology, Harbin Institute of Technology (Shenzhen), Shenzhen, China","institution_ids":["https://openalex.org/I158809036","https://openalex.org/I204983213"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100612534","display_name":"Bin Wang","orcid":"https://orcid.org/0000-0002-1589-8939"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Bin Wang","raw_affiliation_strings":["Zhejiang Key Laboratory of Multidimensional Perception Technology, Application and Cybersecurity, Hangzhou, China"],"affiliations":[{"raw_affiliation_string":"Zhejiang Key Laboratory of Multidimensional Perception Technology, Application and Cybersecurity, Hangzhou, China","institution_ids":[]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5058611515","display_name":"Shouling Ji","orcid":"https://orcid.org/0000-0003-4268-372X"},"institutions":[{"id":"https://openalex.org/I168879160","display_name":"Zhejiang University of Science and Technology","ror":"https://ror.org/05mx0wr29","country_code":"CN","type":"education","lineage":["https://openalex.org/I168879160"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Shouling Ji","raw_affiliation_strings":["School of Computer Science and Technology, Zhejiang University, Hangzhou, China"],"affiliations":[{"raw_affiliation_string":"School of Computer Science and Technology, Zhejiang University, Hangzhou, China","institution_ids":["https://openalex.org/I168879160"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100777576","display_name":"Wei Wang","orcid":"https://orcid.org/0000-0002-5974-1589"},"institutions":[{"id":"https://openalex.org/I87445476","display_name":"Xi'an Jiaotong University","ror":"https://ror.org/017zhmm22","country_code":"CN","type":"education","lineage":["https://openalex.org/I87445476"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Wei Wang","raw_affiliation_strings":["Ministry of Education Key Lab for Intelligent Networks and Network Security, Xi&#x2019;an Jiaotong University, Xi&#x2019;an, China","Ministry of Education Key Lab for Intelligent Networks and Network Security, Xi&#x0027;an Jiaotong University, Xi&#x0027;an, China"],"affiliations":[{"raw_affiliation_string":"Ministry of Education Key Lab for Intelligent Networks and Network Security, Xi&#x2019;an Jiaotong University, Xi&#x2019;an, China","institution_ids":["https://openalex.org/I87445476"]},{"raw_affiliation_string":"Ministry of Education Key Lab for Intelligent Networks and Network Security, Xi&#x0027;an Jiaotong University, Xi&#x0027;an, China","institution_ids":["https://openalex.org/I87445476"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5049750015","display_name":"Yanchun Zhang","orcid":"https://orcid.org/0000-0002-5094-5980"},"institutions":[{"id":"https://openalex.org/I71270174","display_name":"Victoria University","ror":"https://ror.org/04j757h98","country_code":"AU","type":"education","lineage":["https://openalex.org/I71270174"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"Yanchun Zhang","raw_affiliation_strings":["School of Computer Science and Mathematics, Victoria University, Melbourne, VIC, Australia","School of Computer Science and Mathematics, Victoria University, Melbourne, Australia"],"affiliations":[{"raw_affiliation_string":"School of Computer Science and Mathematics, Victoria University, Melbourne, VIC, Australia","institution_ids":["https://openalex.org/I71270174"]},{"raw_affiliation_string":"School of Computer Science and Mathematics, Victoria University, Melbourne, Australia","institution_ids":["https://openalex.org/I71270174"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":7,"corresponding_author_ids":["https://openalex.org/A5057867117"],"corresponding_institution_ids":["https://openalex.org/I168879160"],"apc_list":null,"apc_paid":null,"fwci":14.141,"has_fulltext":false,"cited_by_count":6,"citation_normalized_percentile":{"value":0.9858343,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":96,"max":100},"biblio":{"volume":"37","issue":"9","first_page":"5201","last_page":"5213"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9947999715805054,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9947999715805054,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12357","display_name":"Digital Media Forensic Detection","score":0.9915000200271606,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T13114","display_name":"Image Processing Techniques and Applications","score":0.9904000163078308,"subfield":{"id":"https://openalex.org/subfields/2214","display_name":"Media Technology"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.8274352550506592},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7610677480697632},{"id":"https://openalex.org/keywords/feature","display_name":"Feature (linguistics)","score":0.6635705828666687},{"id":"https://openalex.org/keywords/natural","display_name":"Natural (archaeology)","score":0.593883216381073},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.5244731903076172},{"id":"https://openalex.org/keywords/training","display_name":"Training (meteorology)","score":0.4858371913433075},{"id":"https://openalex.org/keywords/training-set","display_name":"Training set","score":0.4196755886077881},{"id":"https://openalex.org/keywords/pattern-recognition","display_name":"Pattern recognition (psychology)","score":0.40505683422088623},{"id":"https://openalex.org/keywords/physics","display_name":"Physics","score":0.07306507229804993}],"concepts":[{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.8274352550506592},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7610677480697632},{"id":"https://openalex.org/C2776401178","wikidata":"https://www.wikidata.org/wiki/Q12050496","display_name":"Feature (linguistics)","level":2,"score":0.6635705828666687},{"id":"https://openalex.org/C2776608160","wikidata":"https://www.wikidata.org/wiki/Q4785462","display_name":"Natural (archaeology)","level":2,"score":0.593883216381073},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.5244731903076172},{"id":"https://openalex.org/C2777211547","wikidata":"https://www.wikidata.org/wiki/Q17141490","display_name":"Training (meteorology)","level":2,"score":0.4858371913433075},{"id":"https://openalex.org/C51632099","wikidata":"https://www.wikidata.org/wiki/Q3985153","display_name":"Training set","level":2,"score":0.4196755886077881},{"id":"https://openalex.org/C153180895","wikidata":"https://www.wikidata.org/wiki/Q7148389","display_name":"Pattern recognition (psychology)","level":2,"score":0.40505683422088623},{"id":"https://openalex.org/C121332964","wikidata":"https://www.wikidata.org/wiki/Q413","display_name":"Physics","level":0,"score":0.07306507229804993},{"id":"https://openalex.org/C41895202","wikidata":"https://www.wikidata.org/wiki/Q8162","display_name":"Linguistics","level":1,"score":0.0},{"id":"https://openalex.org/C153294291","wikidata":"https://www.wikidata.org/wiki/Q25261","display_name":"Meteorology","level":1,"score":0.0},{"id":"https://openalex.org/C166957645","wikidata":"https://www.wikidata.org/wiki/Q23498","display_name":"Archaeology","level":1,"score":0.0},{"id":"https://openalex.org/C95457728","wikidata":"https://www.wikidata.org/wiki/Q309","display_name":"History","level":0,"score":0.0},{"id":"https://openalex.org/C138885662","wikidata":"https://www.wikidata.org/wiki/Q5891","display_name":"Philosophy","level":0,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/tkde.2025.3580116","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tkde.2025.3580116","pdf_url":null,"source":{"id":"https://openalex.org/S30698027","display_name":"IEEE Transactions on Knowledge and Data Engineering","issn_l":"1041-4347","issn":["1041-4347","1558-2191","2326-3865"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320439","host_organization_name":"IEEE Computer Society","host_organization_lineage":["https://openalex.org/P4310320439","https://openalex.org/P4310319808"],"host_organization_lineage_names":["IEEE Computer Society","Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Knowledge and Data Engineering","raw_type":"journal-article"}],"best_oa_location":null,"sustainable_development_goals":[{"display_name":"Reduced inequalities","score":0.7099999785423279,"id":"https://metadata.un.org/sdg/10"}],"awards":[{"id":"https://openalex.org/G2902468357","display_name":null,"funder_award_id":"62372137","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G3550020321","display_name":null,"funder_award_id":"U21A20463","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G4868500656","display_name":null,"funder_award_id":"U24A20336","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G4930386054","display_name":null,"funder_award_id":"62472335","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G6047521378","display_name":null,"funder_award_id":"62476250","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G8283732743","display_name":null,"funder_award_id":"U244120033","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"}],"funders":[{"id":"https://openalex.org/F4320321001","display_name":"National Natural Science Foundation of China","ror":"https://ror.org/01h0zpd94"}],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":72,"referenced_works":["https://openalex.org/W1651818244","https://openalex.org/W1659118978","https://openalex.org/W1989369247","https://openalex.org/W2114771311","https://openalex.org/W2155109614","https://openalex.org/W2194775991","https://openalex.org/W2282821441","https://openalex.org/W2551176409","https://openalex.org/W2618043096","https://openalex.org/W2618099328","https://openalex.org/W2746600820","https://openalex.org/W2774018344","https://openalex.org/W2774644650","https://openalex.org/W2810865311","https://openalex.org/W2895097814","https://openalex.org/W2962847335","https://openalex.org/W2962858109","https://openalex.org/W2963003451","https://openalex.org/W2963857521","https://openalex.org/W2964045208","https://openalex.org/W2964082701","https://openalex.org/W2964137095","https://openalex.org/W2969542116","https://openalex.org/W2984699060","https://openalex.org/W2991429372","https://openalex.org/W3015625436","https://openalex.org/W3034537217","https://openalex.org/W3107235539","https://openalex.org/W3160274714","https://openalex.org/W3171288285","https://openalex.org/W3191453585","https://openalex.org/W3216683580","https://openalex.org/W4293846201","https://openalex.org/W4319993272","https://openalex.org/W4366241503","https://openalex.org/W4383754176","https://openalex.org/W4385154961","https://openalex.org/W4400771068","https://openalex.org/W4404563014","https://openalex.org/W4405316528","https://openalex.org/W6637162671","https://openalex.org/W6637373629","https://openalex.org/W6640425456","https://openalex.org/W6725508424","https://openalex.org/W6729756640","https://openalex.org/W6737443998","https://openalex.org/W6748711285","https://openalex.org/W6748965907","https://openalex.org/W6755678156","https://openalex.org/W6756444276","https://openalex.org/W6759129252","https://openalex.org/W6759375130","https://openalex.org/W6759424558","https://openalex.org/W6759580348","https://openalex.org/W6761839128","https://openalex.org/W6767248609","https://openalex.org/W6767666165","https://openalex.org/W6769361715","https://openalex.org/W6769467494","https://openalex.org/W6772461460","https://openalex.org/W6774469542","https://openalex.org/W6779631978","https://openalex.org/W6779823529","https://openalex.org/W6783646676","https://openalex.org/W6784426856","https://openalex.org/W6787972765","https://openalex.org/W6791106756","https://openalex.org/W6810041867","https://openalex.org/W6810259881","https://openalex.org/W6841059102","https://openalex.org/W6843085938","https://openalex.org/W6849353467"],"related_works":["https://openalex.org/W2502115930","https://openalex.org/W2482350142","https://openalex.org/W4246396837","https://openalex.org/W2619203976","https://openalex.org/W4394050964","https://openalex.org/W3211393740","https://openalex.org/W3208049411","https://openalex.org/W3022908591","https://openalex.org/W4285706568","https://openalex.org/W2551249631"],"abstract_inverted_index":{"Deep":[0],"neural":[1],"networks":[2],"(DNNs)":[3],"are":[4],"vulnerable":[5],"to":[6,16,54,81,150],"adversarial":[7,33,43,48,76,87,102,178],"examples":[8,88,92,103],"crafted":[9],"by":[10,109],"well-designed":[11],"perturbations.":[12],"This":[13],"could":[14],"lead":[15],"disastrous":[17],"results":[18,171],"on":[19,152],"critical":[20],"applications":[21],"such":[22],"as":[23],"self-driving":[24],"cars,":[25],"surveillance":[26],"security,":[27],"and":[28,62,91,106,120,159,177],"medical":[29],"diagnosis.":[30],"At":[31],"present,":[32],"training":[34,77],"is":[35,51,73],"one":[36],"of":[37,163],"the":[38,101,114,121,148,153,161,174],"most":[39],"effective":[40],"defenses":[41],"against":[42],"examples.":[44],"However,":[45],"in":[46,144],"traditional":[47,75],"training,":[49],"it":[50,79,146],"still":[52,66],"difficult":[53,80],"achieve":[55],"a":[56],"good":[57],"trade-off":[58],"between":[59],"clean":[60,175],"accuracy":[61,176],"robustness":[63,179],"since":[64],"DNNs":[65],"learn":[67,83],"spurious":[68,164],"features.":[69],"The":[70,169],"intrinsic":[71],"reason":[72],"that":[74,145,173],"makes":[78],"fully":[82],"core":[84,154],"features":[85,155,165],"from":[86,141,156,166],"when":[89],"noise":[90],"cannot":[93],"be":[94,189],"disentangled.":[95],"In":[96],"this":[97],"paper,":[98],"we":[99],"disentangle":[100],"into":[104],"natural":[105,118,157],"perturbed":[107,125,167],"patterns":[108,119,158],"bit-plane":[110],"slicing.":[111],"We":[112,128],"assume":[113],"higher":[115],"bit-planes":[116,123],"represent":[117,124],"lower":[122],"patterns,":[126],"respectively.":[127],"propose":[129],"Feature-Focusing":[130],"Adversarial":[131],"Training":[132],"(F":[133],"<inline-formula":[134,183],"xmlns:mml=\"http://www.w3.org/1998/Math/MathML\"":[135,184],"xmlns:xlink=\"http://www.w3.org/1999/xlink\"><tex-math":[136,185],"notation=\"LaTeX\">$^{2}$</tex-math></inline-formula>":[137,186],"AT),":[138],"which":[139],"differs":[140],"previous":[142],"work":[143],"enforces":[147],"model":[149],"focus":[151],"reduce":[160],"impact":[162],"patterns.":[168],"experimental":[170],"demonstrated":[172],"with":[180],"our":[181],"F":[182],"AT":[187],"can":[188],"significantly":[190],"improved.":[191]},"counts_by_year":[{"year":2026,"cited_by_count":3},{"year":2025,"cited_by_count":3}],"updated_date":"2026-04-09T08:11:56.329763","created_date":"2025-06-17T00:00:00"}
