{"id":"https://openalex.org/W4410204244","doi":"https://doi.org/10.1109/tnnls.2025.3563855","title":"Improving the Transferability of Adversarial Examples by Feature Augmentation","display_name":"Improving the Transferability of Adversarial Examples by Feature Augmentation","publication_year":2025,"publication_date":"2025-05-08","ids":{"openalex":"https://openalex.org/W4410204244","doi":"https://doi.org/10.1109/tnnls.2025.3563855","pmid":"https://pubmed.ncbi.nlm.nih.gov/40338720"},"language":"en","primary_location":{"id":"doi:10.1109/tnnls.2025.3563855","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tnnls.2025.3563855","pdf_url":null,"source":{"id":"https://openalex.org/S4210175523","display_name":"IEEE Transactions on Neural Networks and Learning Systems","issn_l":"2162-237X","issn":["2162-237X","2162-2388"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Neural Networks and Learning Systems","raw_type":"journal-article"},"type":"article","indexed_in":["crossref","pubmed"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5101977350","display_name":"Donghua Wang","orcid":"https://orcid.org/0000-0003-4685-8232"},"institutions":[{"id":"https://openalex.org/I168879160","display_name":"Zhejiang University of Science and Technology","ror":"https://ror.org/05mx0wr29","country_code":"CN","type":"education","lineage":["https://openalex.org/I168879160"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Donghua Wang","raw_affiliation_strings":["College of Computer Science and Technology, Zhejiang University, Hangzhou, China"],"raw_orcid":"https://orcid.org/0000-0003-4685-8232","affiliations":[{"raw_affiliation_string":"College of Computer Science and Technology, Zhejiang University, Hangzhou, China","institution_ids":["https://openalex.org/I168879160"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5089866078","display_name":"Wen Yao","orcid":"https://orcid.org/0000-0001-5224-9834"},"institutions":[{"id":"https://openalex.org/I4210160531","display_name":"Chinese People's Liberation Army","ror":"https://ror.org/05tf9r976","country_code":"CN","type":"funder","lineage":["https://openalex.org/I4210160531"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Wen Yao","raw_affiliation_strings":["Defense Innovation Institute, Chinese Academy of Military Science, Beijing, China"],"raw_orcid":"https://orcid.org/0000-0001-5224-9834","affiliations":[{"raw_affiliation_string":"Defense Innovation Institute, Chinese Academy of Military Science, Beijing, China","institution_ids":["https://openalex.org/I4210160531"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5068914676","display_name":"Tingsong Jiang","orcid":"https://orcid.org/0000-0003-1637-2928"},"institutions":[{"id":"https://openalex.org/I4210160531","display_name":"Chinese People's Liberation Army","ror":"https://ror.org/05tf9r976","country_code":"CN","type":"funder","lineage":["https://openalex.org/I4210160531"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Tingsong Jiang","raw_affiliation_strings":["Defense Innovation Institute, Chinese Academy of Military Science, Beijing, China"],"raw_orcid":"https://orcid.org/0000-0003-1637-2928","affiliations":[{"raw_affiliation_string":"Defense Innovation Institute, Chinese Academy of Military Science, Beijing, China","institution_ids":["https://openalex.org/I4210160531"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5103268977","display_name":"Xiaohu Zheng","orcid":"https://orcid.org/0000-0003-4568-4277"},"institutions":[{"id":"https://openalex.org/I4210160531","display_name":"Chinese People's Liberation Army","ror":"https://ror.org/05tf9r976","country_code":"CN","type":"funder","lineage":["https://openalex.org/I4210160531"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Xiaohu Zheng","raw_affiliation_strings":["Defense Innovation Institute, Chinese Academy of Military Science, Beijing, China"],"raw_orcid":"https://orcid.org/0000-0003-4568-4277","affiliations":[{"raw_affiliation_string":"Defense Innovation Institute, Chinese Academy of Military Science, Beijing, China","institution_ids":["https://openalex.org/I4210160531"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5114357349","display_name":"Junqi Wu","orcid":"https://orcid.org/0009-0007-8744-5801"},"institutions":[{"id":"https://openalex.org/I183067930","display_name":"Shanghai Jiao Tong University","ror":"https://ror.org/0220qvk04","country_code":"CN","type":"education","lineage":["https://openalex.org/I183067930"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Junqi Wu","raw_affiliation_strings":["MoE Key Laboratory of Artificial Intelligence, AI Institute, Shanghai Jiao Tong University, Shanghai, China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"MoE Key Laboratory of Artificial Intelligence, AI Institute, Shanghai Jiao Tong University, Shanghai, China","institution_ids":["https://openalex.org/I183067930"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":5,"corresponding_author_ids":["https://openalex.org/A5101977350"],"corresponding_institution_ids":["https://openalex.org/I168879160"],"apc_list":null,"apc_paid":null,"fwci":2.1733,"has_fulltext":false,"cited_by_count":1,"citation_normalized_percentile":{"value":0.88266419,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":96,"max":98},"biblio":{"volume":"36","issue":"9","first_page":"17212","last_page":"17226"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9861000180244446,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9861000180244446,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/transferability","display_name":"Transferability","score":0.9683631658554077},{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.9240383505821228},{"id":"https://openalex.org/keywords/feature","display_name":"Feature (linguistics)","score":0.7351080775260925},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.6162443161010742},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.44429752230644226},{"id":"https://openalex.org/keywords/data-science","display_name":"Data science","score":0.34368863701820374},{"id":"https://openalex.org/keywords/data-mining","display_name":"Data mining","score":0.329012006521225},{"id":"https://openalex.org/keywords/pattern-recognition","display_name":"Pattern recognition (psychology)","score":0.3251965045928955},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.2768913507461548},{"id":"https://openalex.org/keywords/linguistics","display_name":"Linguistics","score":0.05537235736846924},{"id":"https://openalex.org/keywords/philosophy","display_name":"Philosophy","score":0.053458184003829956}],"concepts":[{"id":"https://openalex.org/C61272859","wikidata":"https://www.wikidata.org/wiki/Q7834031","display_name":"Transferability","level":3,"score":0.9683631658554077},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.9240383505821228},{"id":"https://openalex.org/C2776401178","wikidata":"https://www.wikidata.org/wiki/Q12050496","display_name":"Feature (linguistics)","level":2,"score":0.7351080775260925},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6162443161010742},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.44429752230644226},{"id":"https://openalex.org/C2522767166","wikidata":"https://www.wikidata.org/wiki/Q2374463","display_name":"Data science","level":1,"score":0.34368863701820374},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.329012006521225},{"id":"https://openalex.org/C153180895","wikidata":"https://www.wikidata.org/wiki/Q7148389","display_name":"Pattern recognition (psychology)","level":2,"score":0.3251965045928955},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.2768913507461548},{"id":"https://openalex.org/C41895202","wikidata":"https://www.wikidata.org/wiki/Q8162","display_name":"Linguistics","level":1,"score":0.05537235736846924},{"id":"https://openalex.org/C138885662","wikidata":"https://www.wikidata.org/wiki/Q5891","display_name":"Philosophy","level":0,"score":0.053458184003829956},{"id":"https://openalex.org/C140331021","wikidata":"https://www.wikidata.org/wiki/Q1868104","display_name":"Logit","level":2,"score":0.0}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1109/tnnls.2025.3563855","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tnnls.2025.3563855","pdf_url":null,"source":{"id":"https://openalex.org/S4210175523","display_name":"IEEE Transactions on Neural Networks and Learning Systems","issn_l":"2162-237X","issn":["2162-237X","2162-2388"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Neural Networks and Learning Systems","raw_type":"journal-article"},{"id":"pmid:40338720","is_oa":false,"landing_page_url":"https://pubmed.ncbi.nlm.nih.gov/40338720","pdf_url":null,"source":{"id":"https://openalex.org/S4306525036","display_name":"PubMed","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I1299303238","host_organization_name":"National Institutes of Health","host_organization_lineage":["https://openalex.org/I1299303238"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE transactions on neural networks and learning systems","raw_type":null}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":56,"referenced_works":["https://openalex.org/W70115053","https://openalex.org/W2194775991","https://openalex.org/W2243397390","https://openalex.org/W2549139847","https://openalex.org/W2774018344","https://openalex.org/W2774644650","https://openalex.org/W2962711307","https://openalex.org/W2962847335","https://openalex.org/W2963150697","https://openalex.org/W2963178695","https://openalex.org/W2963384482","https://openalex.org/W2963446712","https://openalex.org/W2963448658","https://openalex.org/W2963542245","https://openalex.org/W2963726920","https://openalex.org/W2963857521","https://openalex.org/W2969542116","https://openalex.org/W2991496458","https://openalex.org/W2998279441","https://openalex.org/W3012737746","https://openalex.org/W3034190247","https://openalex.org/W3096609285","https://openalex.org/W3107235539","https://openalex.org/W3127807678","https://openalex.org/W3138516171","https://openalex.org/W3145185940","https://openalex.org/W3171288285","https://openalex.org/W3185095134","https://openalex.org/W3186991201","https://openalex.org/W3200450146","https://openalex.org/W4213135969","https://openalex.org/W4214636423","https://openalex.org/W4214669216","https://openalex.org/W4293011327","https://openalex.org/W4312648479","https://openalex.org/W4312790346","https://openalex.org/W4313141826","https://openalex.org/W4323896829","https://openalex.org/W4362468242","https://openalex.org/W4362474101","https://openalex.org/W4377101008","https://openalex.org/W4377971268","https://openalex.org/W4385731908","https://openalex.org/W4386066565","https://openalex.org/W4386075987","https://openalex.org/W4386076244","https://openalex.org/W4386702852","https://openalex.org/W4387546320","https://openalex.org/W4387642891","https://openalex.org/W4390285099","https://openalex.org/W4390640130","https://openalex.org/W4390872450","https://openalex.org/W4390872973","https://openalex.org/W4390874575","https://openalex.org/W4391951790","https://openalex.org/W4395448418"],"related_works":["https://openalex.org/W4288055406","https://openalex.org/W4200630034","https://openalex.org/W3137894200","https://openalex.org/W3092178728","https://openalex.org/W4226402597","https://openalex.org/W3132910851","https://openalex.org/W4377864639","https://openalex.org/W4409346678","https://openalex.org/W4392340763","https://openalex.org/W4283325551"],"abstract_inverted_index":{"Adversarial":[0],"transferability":[1,195],"is":[2],"a":[3,53,99,163],"significant":[4],"property":[5],"of":[6,15,120,127,143,216,223],"adversarial":[7,12,36,41,83,110,128,194],"examples,":[8,129],"which":[9,34,169],"renders":[10],"the":[11,20,26,40,65,75,81,121,125,133,140,144,148,175,179,184,205,214],"example":[13],"capable":[14],"attacking":[16],"unknown":[17],"models.":[18],"However,":[19],"models":[21,72,212],"with":[22],"different":[23,32,151],"architectures":[24],"on":[25,31,86,158,188,204,227],"same":[27],"task":[28],"would":[29],"concentrate":[30],"information,":[33],"weakens":[35],"transferability.":[37,111],"To":[38],"enhance":[39],"transferability,":[42],"input":[43,50,228],"transformation-based":[44,229],"attacks":[45,69,91,230],"perform":[46],"random":[47,115,165],"transformation":[48],"over":[49],"to":[51,73,78,108,117,174],"find":[52],"better":[54,193],"result":[55],"that":[56,80,159],"can":[57],"resist":[58],"such":[59],"transformations,":[60],"but":[61,89,101],"these":[62,87],"methods":[63],"ignore":[64],"model":[66,123,145],"discrepancy;":[67],"ensemble":[68,90],"fuse":[70],"multiple":[71],"shrink":[74],"search":[76],"space":[77],"ensure":[79],"found":[82],"examples":[84],"work":[85],"models,":[88,190],"are":[92],"resource-intensive.":[93],"In":[94],"this":[95],"article,":[96],"we":[97,137,161,182,220],"propose":[98],"simple":[100],"effective":[102],"feature":[103],"augmentation":[104],"attack":[105,186],"(FAUG)":[106],"method":[107],"improve":[109],"We":[112],"dynamically":[113],"add":[114],"noise":[116,141,154,166,171],"intermediate":[118],"features":[119,177],"target":[122,134],"during":[124],"generation":[126,167],"thereby":[130],"avoiding":[131],"overfitting":[132],"model.":[135],"Specifically,":[136],"first":[138],"explore":[139],"tolerance":[142],"and":[146,153,210,225,231],"disclose":[147],"discrepancy":[149],"under":[150],"layers":[152],"strengths.":[155],"Then,":[156],"based":[157],"analysis,":[160],"devise":[162],"dynamic":[164],"method,":[168,218],"determines":[170],"strength":[172],"according":[173],"produced":[176],"in":[178,192],"mini-batch.":[180],"Finally,":[181],"exploit":[183],"gradient-based":[185],"algorithm":[187],"featureaugmented":[189],"resulting":[191],"without":[196],"introducing":[197],"extra":[198],"computation":[199],"costs.":[200],"Extensive":[201],"experiments":[202],"conducted":[203],"ImageNet":[206],"dataset":[207],"across":[208],"CNN":[209],"Transformer":[211],"corroborate":[213],"efficacy":[215],"our":[217],"e.g.,":[219],"achieve":[221],"improvement":[222],"+30.67%":[224],"+5.57%":[226],"combination":[232],"methods,":[233],"respectively.":[234]},"counts_by_year":[{"year":2026,"cited_by_count":1}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
