{"id":"https://openalex.org/W4388953081","doi":"https://doi.org/10.1109/tmi.2023.3335098","title":"Adversarial Medical Image With Hierarchical Feature Hiding","display_name":"Adversarial Medical Image With Hierarchical Feature Hiding","publication_year":2023,"publication_date":"2023-11-23","ids":{"openalex":"https://openalex.org/W4388953081","doi":"https://doi.org/10.1109/tmi.2023.3335098","pmid":"https://pubmed.ncbi.nlm.nih.gov/37995172"},"language":"en","primary_location":{"id":"doi:10.1109/tmi.2023.3335098","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tmi.2023.3335098","pdf_url":null,"source":{"id":"https://openalex.org/S58069681","display_name":"IEEE Transactions on Medical Imaging","issn_l":"0278-0062","issn":["0278-0062","1558-254X"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Medical Imaging","raw_type":"journal-article"},"type":"article","indexed_in":["crossref","pubmed"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5101946799","display_name":"Qingsong Yao","orcid":"https://orcid.org/0000-0003-4379-6910"},"institutions":[{"id":"https://openalex.org/I19820366","display_name":"Chinese Academy of Sciences","ror":"https://ror.org/034t30j35","country_code":"CN","type":"government","lineage":["https://openalex.org/I19820366"]},{"id":"https://openalex.org/I4210090176","display_name":"Institute of Computing Technology","ror":"https://ror.org/0090r4d87","country_code":"CN","type":"facility","lineage":["https://openalex.org/I19820366","https://openalex.org/I4210090176"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Qingsong Yao","raw_affiliation_strings":["Institute of Computing Technology, Chinese Academy of Sciences, Beijing, China"],"raw_orcid":"https://orcid.org/0000-0003-4379-6910","affiliations":[{"raw_affiliation_string":"Institute of Computing Technology, Chinese Academy of Sciences, Beijing, China","institution_ids":["https://openalex.org/I4210090176","https://openalex.org/I19820366"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5052001217","display_name":"Zecheng He","orcid":"https://orcid.org/0000-0003-2639-2826"},"institutions":[{"id":"https://openalex.org/I4210128585","display_name":"META Health","ror":"https://ror.org/035h67p10","country_code":"US","type":"other","lineage":["https://openalex.org/I4210128585"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Zecheng He","raw_affiliation_strings":["Meta Reality Laboratories, Burlingame, CA, USA"],"raw_orcid":"https://orcid.org/0000-0003-2639-2826","affiliations":[{"raw_affiliation_string":"Meta Reality Laboratories, Burlingame, CA, USA","institution_ids":["https://openalex.org/I4210128585"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5101710180","display_name":"Yuexiang Li","orcid":"https://orcid.org/0000-0001-8076-2619"},"institutions":[{"id":"https://openalex.org/I160354086","display_name":"Guangxi Medical University","ror":"https://ror.org/03dveyr97","country_code":"CN","type":"education","lineage":["https://openalex.org/I160354086"]},{"id":"https://openalex.org/I2250653659","display_name":"Tencent (China)","ror":"https://ror.org/00hhjss72","country_code":"CN","type":"company","lineage":["https://openalex.org/I2250653659"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yuexiang Li","raw_affiliation_strings":["Tencent YouTu Laboratory, Jarvis Research Center, Shenzhen, China","Guangxi Key Laboratory for Genomic and Personalized Medicine, Medical AI ReSearch (MARS) Group, Guangxi Medical University, Nanning, P.R. China"],"raw_orcid":"https://orcid.org/0000-0001-8076-2619","affiliations":[{"raw_affiliation_string":"Tencent YouTu Laboratory, Jarvis Research Center, Shenzhen, China","institution_ids":["https://openalex.org/I2250653659"]},{"raw_affiliation_string":"Guangxi Key Laboratory for Genomic and Personalized Medicine, Medical AI ReSearch (MARS) Group, Guangxi Medical University, Nanning, P.R. China","institution_ids":["https://openalex.org/I160354086"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5102903209","display_name":"Yi Lin","orcid":"https://orcid.org/0000-0002-7635-2518"},"institutions":[{"id":"https://openalex.org/I200769079","display_name":"Hong Kong University of Science and Technology","ror":"https://ror.org/00q4vv597","country_code":"HK","type":"education","lineage":["https://openalex.org/I200769079"]}],"countries":["HK"],"is_corresponding":false,"raw_author_name":"Yi Lin","raw_affiliation_strings":["Department of Computer Science and Engineering, The Hong Kong University of Science and Technology, Sai Kung, Hong Kong"],"raw_orcid":"https://orcid.org/0000-0002-7635-2518","affiliations":[{"raw_affiliation_string":"Department of Computer Science and Engineering, The Hong Kong University of Science and Technology, Sai Kung, Hong Kong","institution_ids":["https://openalex.org/I200769079"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100621577","display_name":"Kai Ma","orcid":"https://orcid.org/0000-0003-2805-3692"},"institutions":[{"id":"https://openalex.org/I2250653659","display_name":"Tencent (China)","ror":"https://ror.org/00hhjss72","country_code":"CN","type":"company","lineage":["https://openalex.org/I2250653659"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Kai Ma","raw_affiliation_strings":["Tencent YouTu Laboratory, Jarvis Research Center, Shenzhen, China"],"raw_orcid":"https://orcid.org/0000-0003-2805-3692","affiliations":[{"raw_affiliation_string":"Tencent YouTu Laboratory, Jarvis Research Center, Shenzhen, China","institution_ids":["https://openalex.org/I2250653659"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5051649145","display_name":"Yefeng Zheng","orcid":"https://orcid.org/0000-0003-2195-2847"},"institutions":[{"id":"https://openalex.org/I2250653659","display_name":"Tencent (China)","ror":"https://ror.org/00hhjss72","country_code":"CN","type":"company","lineage":["https://openalex.org/I2250653659"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yefeng Zheng","raw_affiliation_strings":["Tencent YouTu Laboratory, Jarvis Research Center, Shenzhen, China"],"raw_orcid":"https://orcid.org/0000-0003-2195-2847","affiliations":[{"raw_affiliation_string":"Tencent YouTu Laboratory, Jarvis Research Center, Shenzhen, China","institution_ids":["https://openalex.org/I2250653659"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5028465673","display_name":"S. Kevin Zhou","orcid":"https://orcid.org/0000-0002-6881-4444"},"institutions":[{"id":"https://openalex.org/I19820366","display_name":"Chinese Academy of Sciences","ror":"https://ror.org/034t30j35","country_code":"CN","type":"government","lineage":["https://openalex.org/I19820366"]},{"id":"https://openalex.org/I4210090176","display_name":"Institute of Computing Technology","ror":"https://ror.org/0090r4d87","country_code":"CN","type":"facility","lineage":["https://openalex.org/I19820366","https://openalex.org/I4210090176"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"S. Kevin Zhou","raw_affiliation_strings":["University of Chinese Academic of Science, Beijing, China","School of Biomedical Engineering and Suzhou Institute for Advanced Research, University of Science and Technology of China and Institute of Computing Technology, Chinese Academy of Sciences, P.R. China"],"raw_orcid":"https://orcid.org/0000-0002-6881-4444","affiliations":[{"raw_affiliation_string":"University of Chinese Academic of Science, Beijing, China","institution_ids":[]},{"raw_affiliation_string":"School of Biomedical Engineering and Suzhou Institute for Advanced Research, University of Science and Technology of China and Institute of Computing Technology, Chinese Academy of Sciences, P.R. China","institution_ids":["https://openalex.org/I4210090176","https://openalex.org/I19820366"]}]}],"institutions":[],"countries_distinct_count":3,"institutions_distinct_count":7,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":1.2351,"has_fulltext":false,"cited_by_count":11,"citation_normalized_percentile":{"value":0.82265567,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":95,"max":99},"biblio":{"volume":"43","issue":"4","first_page":"1296","last_page":"1307"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11105","display_name":"Advanced Image Processing Techniques","score":0.9977999925613403,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11105","display_name":"Advanced Image Processing Techniques","score":0.9977999925613403,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12357","display_name":"Digital Media Forensic Detection","score":0.9970999956130981,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9923999905586243,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.6486880779266357},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.635905385017395},{"id":"https://openalex.org/keywords/feature","display_name":"Feature (linguistics)","score":0.6118363738059998},{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.6076751947402954},{"id":"https://openalex.org/keywords/image","display_name":"Image (mathematics)","score":0.5771718621253967},{"id":"https://openalex.org/keywords/medical-imaging","display_name":"Medical imaging","score":0.5465909242630005},{"id":"https://openalex.org/keywords/computer-vision","display_name":"Computer vision","score":0.5254541635513306},{"id":"https://openalex.org/keywords/pattern-recognition","display_name":"Pattern recognition (psychology)","score":0.49446725845336914},{"id":"https://openalex.org/keywords/image-processing","display_name":"Image processing","score":0.42991501092910767},{"id":"https://openalex.org/keywords/feature-extraction","display_name":"Feature extraction","score":0.41575872898101807}],"concepts":[{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.6486880779266357},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.635905385017395},{"id":"https://openalex.org/C2776401178","wikidata":"https://www.wikidata.org/wiki/Q12050496","display_name":"Feature (linguistics)","level":2,"score":0.6118363738059998},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.6076751947402954},{"id":"https://openalex.org/C115961682","wikidata":"https://www.wikidata.org/wiki/Q860623","display_name":"Image (mathematics)","level":2,"score":0.5771718621253967},{"id":"https://openalex.org/C31601959","wikidata":"https://www.wikidata.org/wiki/Q931309","display_name":"Medical imaging","level":2,"score":0.5465909242630005},{"id":"https://openalex.org/C31972630","wikidata":"https://www.wikidata.org/wiki/Q844240","display_name":"Computer vision","level":1,"score":0.5254541635513306},{"id":"https://openalex.org/C153180895","wikidata":"https://www.wikidata.org/wiki/Q7148389","display_name":"Pattern recognition (psychology)","level":2,"score":0.49446725845336914},{"id":"https://openalex.org/C9417928","wikidata":"https://www.wikidata.org/wiki/Q1070689","display_name":"Image processing","level":3,"score":0.42991501092910767},{"id":"https://openalex.org/C52622490","wikidata":"https://www.wikidata.org/wiki/Q1026626","display_name":"Feature extraction","level":2,"score":0.41575872898101807},{"id":"https://openalex.org/C138885662","wikidata":"https://www.wikidata.org/wiki/Q5891","display_name":"Philosophy","level":0,"score":0.0},{"id":"https://openalex.org/C41895202","wikidata":"https://www.wikidata.org/wiki/Q8162","display_name":"Linguistics","level":1,"score":0.0}],"mesh":[],"locations_count":3,"locations":[{"id":"doi:10.1109/tmi.2023.3335098","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tmi.2023.3335098","pdf_url":null,"source":{"id":"https://openalex.org/S58069681","display_name":"IEEE Transactions on Medical Imaging","issn_l":"0278-0062","issn":["0278-0062","1558-254X"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Medical Imaging","raw_type":"journal-article"},{"id":"pmid:37995172","is_oa":false,"landing_page_url":"https://pubmed.ncbi.nlm.nih.gov/37995172","pdf_url":null,"source":{"id":"https://openalex.org/S4306525036","display_name":"PubMed","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I1299303238","host_organization_name":"National Institutes of Health","host_organization_lineage":["https://openalex.org/I1299303238"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE transactions on medical imaging","raw_type":null},{"id":"pmh:oai:repository.hkust.edu.hk:1783.1-135207","is_oa":false,"landing_page_url":"http://repository.hkust.edu.hk/ir/Record/1783.1-135207","pdf_url":null,"source":{"id":"https://openalex.org/S4306401796","display_name":"Rare & Special e-Zone (The Hong Kong University of Science and Technology)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I200769079","host_organization_name":"Hong Kong University of Science and Technology","host_organization_lineage":["https://openalex.org/I200769079"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":"Article"}],"best_oa_location":null,"sustainable_development_goals":[{"score":0.7900000214576721,"display_name":"Peace, Justice and strong institutions","id":"https://metadata.un.org/sdg/16"}],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":64,"referenced_works":["https://openalex.org/W2108598243","https://openalex.org/W2187089797","https://openalex.org/W2194775991","https://openalex.org/W2243397390","https://openalex.org/W2530297498","https://openalex.org/W2561975083","https://openalex.org/W2603766943","https://openalex.org/W2607219512","https://openalex.org/W2611576673","https://openalex.org/W2618043096","https://openalex.org/W2620038827","https://openalex.org/W2768346313","https://openalex.org/W2774018344","https://openalex.org/W2774644650","https://openalex.org/W2788633781","https://openalex.org/W2793165286","https://openalex.org/W2890430415","https://openalex.org/W2892091703","https://openalex.org/W2905573335","https://openalex.org/W2924551358","https://openalex.org/W2962710014","https://openalex.org/W2963564844","https://openalex.org/W2963857521","https://openalex.org/W2964082701","https://openalex.org/W2964335429","https://openalex.org/W2969542116","https://openalex.org/W2979479162","https://openalex.org/W2980248764","https://openalex.org/W3007264885","https://openalex.org/W3021182036","https://openalex.org/W3027789868","https://openalex.org/W3034214559","https://openalex.org/W3035182590","https://openalex.org/W3074741277","https://openalex.org/W3094636577","https://openalex.org/W3097255416","https://openalex.org/W3102720581","https://openalex.org/W3118608800","https://openalex.org/W3134475970","https://openalex.org/W3138558221","https://openalex.org/W3203801990","https://openalex.org/W4247765127","https://openalex.org/W4293584023","https://openalex.org/W4293846201","https://openalex.org/W4300725094","https://openalex.org/W4386076613","https://openalex.org/W6631190155","https://openalex.org/W6637162671","https://openalex.org/W6637373629","https://openalex.org/W6640425456","https://openalex.org/W6685943642","https://openalex.org/W6725195833","https://openalex.org/W6729756640","https://openalex.org/W6734483310","https://openalex.org/W6734787559","https://openalex.org/W6736987314","https://openalex.org/W6747819456","https://openalex.org/W6748475379","https://openalex.org/W6748711285","https://openalex.org/W6749162425","https://openalex.org/W6752760542","https://openalex.org/W6754108890","https://openalex.org/W6774469542","https://openalex.org/W6774549192"],"related_works":["https://openalex.org/W2502115930","https://openalex.org/W2482350142","https://openalex.org/W4246396837","https://openalex.org/W3126451824","https://openalex.org/W1561927205","https://openalex.org/W3191453585","https://openalex.org/W4297672492","https://openalex.org/W4310988119","https://openalex.org/W4285226279","https://openalex.org/W2619203976"],"abstract_inverted_index":{"Deep":[0],"learning":[1],"based":[2],"methods":[3],"for":[4,64],"medical":[5,65,74,117,173,201,219],"images":[6],"can":[7,132],"be":[8,133],"easily":[9],"compromised":[10],"by":[11,88,119],"adversarial":[12,29,83,159,200],"examples":[13],"(AEs),":[14],"posing":[15],"a":[16,94,107,128,141,147],"great":[17],"security":[18],"flaw":[19],"in":[20,42,47,93,102,161,229],"clinical":[21],"decision-making.":[22],"It":[23],"has":[24],"been":[25],"discovered":[26],"that":[27,81],"conventional":[28,73,82,151],"attacks":[30,84,209],"like":[31],"PGD":[32],"which":[33,131,154,214],"optimize":[34],"the":[35,43,58,61,70,86,103,114,158,162,186,216],"classification":[36],"logits,":[37],"are":[38],"easy":[39],"to":[40,99,112,135,150,156,224],"distinguish":[41],"feature":[44,104,144,160,164],"space,":[45],"resulting":[46],"accurate":[48],"reactive":[49,62,220],"defenses.":[50],"To":[51],"better":[52],"understand":[53],"this":[54,125],"phenomenon":[55],"and":[56,177,222],"reassess":[57],"reliability":[59],"of":[60,72,116,188,198,218],"defenses":[63,228],"AEs,":[66],"we":[67,77],"thoroughly":[68],"investigate":[69],"characteristic":[71],"AEs.":[75,137],"Specifically,":[76],"first":[78],"theoretically":[79],"prove":[80],"change":[85],"outputs":[87],"continuously":[89],"optimizing":[90],"vulnerable":[91],"features":[92],"fixed":[95],"direction,":[96],"thereby":[97],"leading":[98],"outlier":[100],"representations":[101],"space.":[105],"Then,":[106],"stress":[108],"test":[109],"is":[110,127,169],"conducted":[111],"reveal":[113],"vulnerability":[115,126],"images,":[118],"comparing":[120],"with":[121,179],"natural":[122],"images.":[123],"Interestingly,":[124],"double-edged":[129],"sword,":[130],"exploited":[134],"hide":[136,157],"We":[138],"then":[139],"propose":[140],"simple-yet-effective":[142],"hierarchical":[143],"constraint":[145],"(HFC),":[146],"novel":[148],"add-on":[149],"white-box":[152],"attacks,":[153],"assists":[155],"target":[163],"distribution.":[165],"The":[166,182],"proposed":[167],"method":[168],"evaluated":[170],"on":[171],"three":[172],"datasets,":[174],"both":[175],"2D":[176],"3D,":[178],"different":[180],"modalities.":[181],"experimental":[183],"results":[184],"demonstrate":[185],"superiority":[187],"HFC,":[189],"<italic":[190],"xmlns:mml=\"http://www.w3.org/1998/Math/MathML\"":[191,211],"xmlns:xlink=\"http://www.w3.org/1999/xlink\">i.e</i>":[192],".,":[193],"it":[194],"bypasses":[195],"an":[196],"array":[197],"state-of-the-art":[199],"AE":[202],"detectors":[203],"more":[204,226],"efficiently":[205],"than":[206],"competing":[207],"adaptive":[208],"<sup":[210],"xmlns:xlink=\"http://www.w3.org/1999/xlink\">1</sup>":[212],",":[213],"reveals":[215],"deficiencies":[217],"defense":[221],"allows":[223],"develop":[225],"robust":[227],"future.":[230]},"counts_by_year":[{"year":2026,"cited_by_count":1},{"year":2025,"cited_by_count":6},{"year":2024,"cited_by_count":4}],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2025-10-10T00:00:00"}
