{"id":"https://openalex.org/W4321487910","doi":"https://doi.org/10.1109/tnnls.2023.3244172","title":"Relationship Between Nonsmoothness in Adversarial Training, Constraints of Attacks, and Flatness in the Input Space","display_name":"Relationship Between Nonsmoothness in Adversarial Training, Constraints of Attacks, and Flatness in the Input Space","publication_year":2023,"publication_date":"2023-02-22","ids":{"openalex":"https://openalex.org/W4321487910","doi":"https://doi.org/10.1109/tnnls.2023.3244172","pmid":"https://pubmed.ncbi.nlm.nih.gov/37027693"},"language":"en","primary_location":{"id":"doi:10.1109/tnnls.2023.3244172","is_oa":true,"landing_page_url":"https://doi.org/10.1109/tnnls.2023.3244172","pdf_url":"https://ieeexplore.ieee.org/ielx7/5962385/6104215/10049380.pdf","source":{"id":"https://openalex.org/S4210175523","display_name":"IEEE Transactions on Neural Networks and Learning Systems","issn_l":"2162-237X","issn":["2162-237X","2162-2388"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Neural Networks and Learning Systems","raw_type":"journal-article"},"type":"article","indexed_in":["crossref","pubmed"],"open_access":{"is_oa":true,"oa_status":"hybrid","oa_url":"https://ieeexplore.ieee.org/ielx7/5962385/6104215/10049380.pdf","any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5010327448","display_name":"Sekitoshi Kanai","orcid":"https://orcid.org/0000-0003-4383-4454"},"institutions":[{"id":"https://openalex.org/I2251713219","display_name":"NTT (Japan)","ror":"https://ror.org/00berct97","country_code":"JP","type":"company","lineage":["https://openalex.org/I2251713219"]}],"countries":["JP"],"is_corresponding":true,"raw_author_name":"Sekitoshi Kanai","raw_affiliation_strings":["Nippon Telegraph and Telephone Corporation (NTT), Tokyo, Japan"],"raw_orcid":"https://orcid.org/0000-0003-4383-4454","affiliations":[{"raw_affiliation_string":"Nippon Telegraph and Telephone Corporation (NTT), Tokyo, Japan","institution_ids":["https://openalex.org/I2251713219"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5037036505","display_name":"Masanori Yamada","orcid":"https://orcid.org/0000-0002-6493-8554"},"institutions":[{"id":"https://openalex.org/I2251713219","display_name":"NTT (Japan)","ror":"https://ror.org/00berct97","country_code":"JP","type":"company","lineage":["https://openalex.org/I2251713219"]}],"countries":["JP"],"is_corresponding":false,"raw_author_name":"Masanori Yamada","raw_affiliation_strings":["Nippon Telegraph and Telephone Corporation (NTT), Tokyo, Japan"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Nippon Telegraph and Telephone Corporation (NTT), Tokyo, Japan","institution_ids":["https://openalex.org/I2251713219"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5008365433","display_name":"Hiroshi Takahashi","orcid":"https://orcid.org/0000-0001-5102-2830"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Hiroshi Takahashi","raw_affiliation_strings":["NTT Docomo, Tokyo, Japan"],"raw_orcid":"https://orcid.org/0000-0001-5102-2830","affiliations":[{"raw_affiliation_string":"NTT Docomo, Tokyo, Japan","institution_ids":[]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5006786260","display_name":"Yuki Yamanaka","orcid":null},"institutions":[{"id":"https://openalex.org/I2251713219","display_name":"NTT (Japan)","ror":"https://ror.org/00berct97","country_code":"JP","type":"company","lineage":["https://openalex.org/I2251713219"]}],"countries":["JP"],"is_corresponding":false,"raw_author_name":"Yuki Yamanaka","raw_affiliation_strings":["Nippon Telegraph and Telephone Corporation (NTT), Tokyo, Japan"],"raw_orcid":"https://orcid.org/0000-0002-9527-1721","affiliations":[{"raw_affiliation_string":"Nippon Telegraph and Telephone Corporation (NTT), Tokyo, Japan","institution_ids":["https://openalex.org/I2251713219"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5086509276","display_name":"Yasutoshi Ida","orcid":"https://orcid.org/0000-0003-4279-9503"},"institutions":[{"id":"https://openalex.org/I2251713219","display_name":"NTT (Japan)","ror":"https://ror.org/00berct97","country_code":"JP","type":"company","lineage":["https://openalex.org/I2251713219"]}],"countries":["JP"],"is_corresponding":false,"raw_author_name":"Yasutoshi Ida","raw_affiliation_strings":["Nippon Telegraph and Telephone Corporation (NTT), Tokyo, Japan"],"raw_orcid":"https://orcid.org/0000-0003-4279-9503","affiliations":[{"raw_affiliation_string":"Nippon Telegraph and Telephone Corporation (NTT), Tokyo, Japan","institution_ids":["https://openalex.org/I2251713219"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":5,"corresponding_author_ids":["https://openalex.org/A5010327448"],"corresponding_institution_ids":["https://openalex.org/I2251713219"],"apc_list":null,"apc_paid":null,"fwci":1.3341,"has_fulltext":true,"cited_by_count":8,"citation_normalized_percentile":{"value":0.83795596,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":95,"max":99},"biblio":{"volume":"35","issue":"8","first_page":"10817","last_page":"10831"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9580000042915344,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.949999988079071,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.7872662544250488},{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness (evolution)","score":0.5906422138214111},{"id":"https://openalex.org/keywords/constraint","display_name":"Constraint (computer-aided design)","score":0.545749843120575},{"id":"https://openalex.org/keywords/notation","display_name":"Notation","score":0.4482104480266571},{"id":"https://openalex.org/keywords/inference","display_name":"Inference","score":0.44789984822273254},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.41785645484924316},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.41328567266464233},{"id":"https://openalex.org/keywords/algorithm","display_name":"Algorithm","score":0.3916904032230377},{"id":"https://openalex.org/keywords/mathematics","display_name":"Mathematics","score":0.37272435426712036},{"id":"https://openalex.org/keywords/discrete-mathematics","display_name":"Discrete mathematics","score":0.32405906915664673},{"id":"https://openalex.org/keywords/arithmetic","display_name":"Arithmetic","score":0.1495656967163086},{"id":"https://openalex.org/keywords/geometry","display_name":"Geometry","score":0.08799085021018982},{"id":"https://openalex.org/keywords/biology","display_name":"Biology","score":0.0719565749168396}],"concepts":[{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.7872662544250488},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.5906422138214111},{"id":"https://openalex.org/C2776036281","wikidata":"https://www.wikidata.org/wiki/Q48769818","display_name":"Constraint (computer-aided design)","level":2,"score":0.545749843120575},{"id":"https://openalex.org/C45357846","wikidata":"https://www.wikidata.org/wiki/Q2001982","display_name":"Notation","level":2,"score":0.4482104480266571},{"id":"https://openalex.org/C2776214188","wikidata":"https://www.wikidata.org/wiki/Q408386","display_name":"Inference","level":2,"score":0.44789984822273254},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.41785645484924316},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.41328567266464233},{"id":"https://openalex.org/C11413529","wikidata":"https://www.wikidata.org/wiki/Q8366","display_name":"Algorithm","level":1,"score":0.3916904032230377},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.37272435426712036},{"id":"https://openalex.org/C118615104","wikidata":"https://www.wikidata.org/wiki/Q121416","display_name":"Discrete mathematics","level":1,"score":0.32405906915664673},{"id":"https://openalex.org/C94375191","wikidata":"https://www.wikidata.org/wiki/Q11205","display_name":"Arithmetic","level":1,"score":0.1495656967163086},{"id":"https://openalex.org/C2524010","wikidata":"https://www.wikidata.org/wiki/Q8087","display_name":"Geometry","level":1,"score":0.08799085021018982},{"id":"https://openalex.org/C86803240","wikidata":"https://www.wikidata.org/wiki/Q420","display_name":"Biology","level":0,"score":0.0719565749168396},{"id":"https://openalex.org/C104317684","wikidata":"https://www.wikidata.org/wiki/Q7187","display_name":"Gene","level":2,"score":0.0},{"id":"https://openalex.org/C55493867","wikidata":"https://www.wikidata.org/wiki/Q7094","display_name":"Biochemistry","level":1,"score":0.0}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1109/tnnls.2023.3244172","is_oa":true,"landing_page_url":"https://doi.org/10.1109/tnnls.2023.3244172","pdf_url":"https://ieeexplore.ieee.org/ielx7/5962385/6104215/10049380.pdf","source":{"id":"https://openalex.org/S4210175523","display_name":"IEEE Transactions on Neural Networks and Learning Systems","issn_l":"2162-237X","issn":["2162-237X","2162-2388"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Neural Networks and Learning Systems","raw_type":"journal-article"},{"id":"pmid:37027693","is_oa":false,"landing_page_url":"https://pubmed.ncbi.nlm.nih.gov/37027693","pdf_url":null,"source":{"id":"https://openalex.org/S4306525036","display_name":"PubMed","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I1299303238","host_organization_name":"National Institutes of Health","host_organization_lineage":["https://openalex.org/I1299303238"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE transactions on neural networks and learning systems","raw_type":null}],"best_oa_location":{"id":"doi:10.1109/tnnls.2023.3244172","is_oa":true,"landing_page_url":"https://doi.org/10.1109/tnnls.2023.3244172","pdf_url":"https://ieeexplore.ieee.org/ielx7/5962385/6104215/10049380.pdf","source":{"id":"https://openalex.org/S4210175523","display_name":"IEEE Transactions on Neural Networks and Learning Systems","issn_l":"2162-237X","issn":["2162-237X","2162-2388"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Neural Networks and Learning Systems","raw_type":"journal-article"},"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"grobid_xml":true,"pdf":true},"content_urls":{"pdf":"https://content.openalex.org/works/W4321487910.pdf","grobid_xml":"https://content.openalex.org/works/W4321487910.grobid-xml"},"referenced_works_count":60,"referenced_works":["https://openalex.org/W1673923490","https://openalex.org/W1945616565","https://openalex.org/W2194775991","https://openalex.org/W2552194003","https://openalex.org/W2768956845","https://openalex.org/W2776855315","https://openalex.org/W2884367402","https://openalex.org/W2963178695","https://openalex.org/W2963389226","https://openalex.org/W2963470657","https://openalex.org/W2963857521","https://openalex.org/W2964137095","https://openalex.org/W3005347330","https://openalex.org/W3019166713","https://openalex.org/W3082548577","https://openalex.org/W3090787324","https://openalex.org/W3118584401","https://openalex.org/W3118608800","https://openalex.org/W3126500113","https://openalex.org/W3134621603","https://openalex.org/W3168997536","https://openalex.org/W3177409747","https://openalex.org/W3208910075","https://openalex.org/W4221161114","https://openalex.org/W4241368925","https://openalex.org/W4289744111","https://openalex.org/W4293846201","https://openalex.org/W4320930577","https://openalex.org/W6630841318","https://openalex.org/W6637162671","https://openalex.org/W6638214083","https://openalex.org/W6640425456","https://openalex.org/W6684471329","https://openalex.org/W6703116779","https://openalex.org/W6729595453","https://openalex.org/W6729756640","https://openalex.org/W6736987314","https://openalex.org/W6747043858","https://openalex.org/W6747536865","https://openalex.org/W6753552644","https://openalex.org/W6758684365","https://openalex.org/W6759129252","https://openalex.org/W6762707182","https://openalex.org/W6764942769","https://openalex.org/W6772129282","https://openalex.org/W6772461460","https://openalex.org/W6774469542","https://openalex.org/W6774681163","https://openalex.org/W6778944205","https://openalex.org/W6779640401","https://openalex.org/W6782207003","https://openalex.org/W6782237813","https://openalex.org/W6783674534","https://openalex.org/W6784426856","https://openalex.org/W6790195079","https://openalex.org/W6791106756","https://openalex.org/W6802302390","https://openalex.org/W6803971153","https://openalex.org/W6804237116","https://openalex.org/W6810259881"],"related_works":["https://openalex.org/W2502115930","https://openalex.org/W2482350142","https://openalex.org/W4246396837","https://openalex.org/W3126451824","https://openalex.org/W1561927205","https://openalex.org/W3191453585","https://openalex.org/W4297672492","https://openalex.org/W4310988119","https://openalex.org/W4285226279","https://openalex.org/W4288019534"],"abstract_inverted_index":{"Adversarial":[0],"training":[1,49],"(AT)":[2],"is":[3,17,55],"a":[4],"promising":[5],"method":[6],"to":[7,112],"improve":[8],"the":[9,29,32,38,41,48,58,66,71,84,101,106,114,121,130,133,151],"robustness":[10],"against":[11],"adversarial":[12,61,117,145],"attacks.":[13],"However,":[14],"its":[15],"performance":[16,135,152],"not":[18],"still":[19],"satisfactory":[20],"in":[21,44,105,120],"practice":[22],"compared":[23],"with":[24],"standard":[25],"training.":[26],"To":[27,127],"reveal":[28,52],"cause":[30,80],"of":[31,34,40,60,68,136,153],"difficulty":[33],"AT,":[35,45,137],"we":[36,94,138],"analyze":[37],"smoothness":[39],"loss":[42,103,118,146],"function":[43],"which":[46],"determines":[47],"performance.":[50],"We":[51],"that":[53,129,143],"nonsmoothness":[54,81,131],"caused":[56],"by":[57,147],"constraint":[59,78],"attacks":[62],"and":[63,140],"depends":[64],"on":[65],"type":[67],"constraint.":[69,91],"Specifically,":[70],"<inline-formula":[72,85],"xmlns:mml=\"http://www.w3.org/1998/Math/MathML\"":[73,86,108,123],"xmlns:xlink=\"http://www.w3.org/1999/xlink\">":[74,87],"<tex-math":[75,88],"notation=\"LaTeX\">$L_\\infty$</tex-math>":[76],"</inline-formula>":[77,90],"can":[79],"more":[82],"than":[83],"notation=\"LaTeX\">$L_2$</tex-math>":[89],"In":[92],"addition,":[93],"found":[95],"an":[96],"interesting":[97],"property":[98],"for":[99],"AT:":[100],"flatter":[102],"surface":[104,119],"<italic":[107,122],"xmlns:xlink=\"http://www.w3.org/1999/xlink\">input":[109],"space</i>":[110,125],"tends":[111],"have":[113],"less":[115],"smooth":[116,144],"xmlns:xlink=\"http://www.w3.org/1999/xlink\">parameter":[124],".":[126],"confirm":[128],"causes":[132],"poor":[134],"theoretically":[139],"experimentally":[141],"show":[142],"EntropySGD":[148],"(EnSGD)":[149],"improves":[150],"AT.":[154]},"counts_by_year":[{"year":2026,"cited_by_count":1},{"year":2024,"cited_by_count":7}],"updated_date":"2026-05-16T08:24:45.110214","created_date":"2025-10-10T00:00:00"}
