{"id":"https://openalex.org/W4387623745","doi":"https://doi.org/10.1109/tpami.2023.3323698","title":"LAFIT: Efficient and Reliable Evaluation of Adversarial Defenses With Latent Features","display_name":"LAFIT: Efficient and Reliable Evaluation of Adversarial Defenses With Latent Features","publication_year":2023,"publication_date":"2023-10-13","ids":{"openalex":"https://openalex.org/W4387623745","doi":"https://doi.org/10.1109/tpami.2023.3323698"},"language":"en","primary_location":{"id":"doi:10.1109/tpami.2023.3323698","is_oa":true,"landing_page_url":"https://doi.org/10.1109/tpami.2023.3323698","pdf_url":"https://ieeexplore.ieee.org/ielx7/34/4359286/10285432.pdf","source":{"id":"https://openalex.org/S199944782","display_name":"IEEE Transactions on Pattern Analysis and Machine Intelligence","issn_l":"0162-8828","issn":["0162-8828","1939-3539","2160-9292"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320439","host_organization_name":"IEEE Computer Society","host_organization_lineage":["https://openalex.org/P4310320439","https://openalex.org/P4310319808"],"host_organization_lineage_names":["IEEE Computer Society","Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Pattern Analysis and Machine Intelligence","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"bronze","oa_url":"https://ieeexplore.ieee.org/ielx7/34/4359286/10285432.pdf","any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5078590799","display_name":"Yunrui Yu","orcid":"https://orcid.org/0009-0001-1717-8687"},"institutions":[{"id":"https://openalex.org/I204512498","display_name":"University of Macau","ror":"https://ror.org/01r4q9n85","country_code":"MO","type":"education","lineage":["https://openalex.org/I204512498"]}],"countries":["MO"],"is_corresponding":true,"raw_author_name":"Yunrui Yu","raw_affiliation_strings":["State Key Lab of IOTSC, University of Macau, Taipa, Macau, China"],"affiliations":[{"raw_affiliation_string":"State Key Lab of IOTSC, University of Macau, Taipa, Macau, China","institution_ids":["https://openalex.org/I204512498"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5026189787","display_name":"Xitong Gao","orcid":"https://orcid.org/0000-0002-2063-2051"},"institutions":[{"id":"https://openalex.org/I19820366","display_name":"Chinese Academy of Sciences","ror":"https://ror.org/034t30j35","country_code":"CN","type":"government","lineage":["https://openalex.org/I19820366"]},{"id":"https://openalex.org/I4210145761","display_name":"Shenzhen Institutes of Advanced Technology","ror":"https://ror.org/04gh4er46","country_code":"CN","type":"facility","lineage":["https://openalex.org/I19820366","https://openalex.org/I4210145761"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Xitong Gao","raw_affiliation_strings":["Shenzhen Institute of Advanced Technology, Chinese Academy of Sciences, Shenzhen, China"],"affiliations":[{"raw_affiliation_string":"Shenzhen Institute of Advanced Technology, Chinese Academy of Sciences, Shenzhen, China","institution_ids":["https://openalex.org/I4210145761","https://openalex.org/I19820366"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5012773300","display_name":"Chengzhong Xu","orcid":"https://orcid.org/0000-0001-9480-0356"},"institutions":[{"id":"https://openalex.org/I204512498","display_name":"University of Macau","ror":"https://ror.org/01r4q9n85","country_code":"MO","type":"education","lineage":["https://openalex.org/I204512498"]}],"countries":["MO"],"is_corresponding":false,"raw_author_name":"Cheng-Zhong Xu","raw_affiliation_strings":["State Key Lab of IOTSC, University of Macau, Taipa, Macau, China"],"affiliations":[{"raw_affiliation_string":"State Key Lab of IOTSC, University of Macau, Taipa, Macau, China","institution_ids":["https://openalex.org/I204512498"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":3,"corresponding_author_ids":["https://openalex.org/A5078590799"],"corresponding_institution_ids":["https://openalex.org/I204512498"],"apc_list":null,"apc_paid":null,"fwci":0.5185,"has_fulltext":true,"cited_by_count":3,"citation_normalized_percentile":{"value":0.72252319,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":90,"max":96},"biblio":{"volume":"46","issue":"1","first_page":"354","last_page":"369"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9807999730110168,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness (evolution)","score":0.8488569855690002},{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.7934091091156006},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7759169936180115},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.6527063846588135},{"id":"https://openalex.org/keywords/convolutional-neural-network","display_name":"Convolutional neural network","score":0.6331192255020142},{"id":"https://openalex.org/keywords/adversary","display_name":"Adversary","score":0.5281132459640503},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.5197298526763916},{"id":"https://openalex.org/keywords/deep-learning","display_name":"Deep learning","score":0.5177825689315796},{"id":"https://openalex.org/keywords/gradient-descent","display_name":"Gradient descent","score":0.5037173628807068},{"id":"https://openalex.org/keywords/deep-neural-networks","display_name":"Deep neural networks","score":0.4985978603363037},{"id":"https://openalex.org/keywords/artificial-neural-network","display_name":"Artificial neural network","score":0.369417279958725},{"id":"https://openalex.org/keywords/pattern-recognition","display_name":"Pattern recognition (psychology)","score":0.35484999418258667},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.18932124972343445}],"concepts":[{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.8488569855690002},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.7934091091156006},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7759169936180115},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.6527063846588135},{"id":"https://openalex.org/C81363708","wikidata":"https://www.wikidata.org/wiki/Q17084460","display_name":"Convolutional neural network","level":2,"score":0.6331192255020142},{"id":"https://openalex.org/C41065033","wikidata":"https://www.wikidata.org/wiki/Q2825412","display_name":"Adversary","level":2,"score":0.5281132459640503},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.5197298526763916},{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.5177825689315796},{"id":"https://openalex.org/C153258448","wikidata":"https://www.wikidata.org/wiki/Q1199743","display_name":"Gradient descent","level":3,"score":0.5037173628807068},{"id":"https://openalex.org/C2984842247","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep neural networks","level":3,"score":0.4985978603363037},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.369417279958725},{"id":"https://openalex.org/C153180895","wikidata":"https://www.wikidata.org/wiki/Q7148389","display_name":"Pattern recognition (psychology)","level":2,"score":0.35484999418258667},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.18932124972343445},{"id":"https://openalex.org/C185592680","wikidata":"https://www.wikidata.org/wiki/Q2329","display_name":"Chemistry","level":0,"score":0.0},{"id":"https://openalex.org/C55493867","wikidata":"https://www.wikidata.org/wiki/Q7094","display_name":"Biochemistry","level":1,"score":0.0},{"id":"https://openalex.org/C104317684","wikidata":"https://www.wikidata.org/wiki/Q7187","display_name":"Gene","level":2,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/tpami.2023.3323698","is_oa":true,"landing_page_url":"https://doi.org/10.1109/tpami.2023.3323698","pdf_url":"https://ieeexplore.ieee.org/ielx7/34/4359286/10285432.pdf","source":{"id":"https://openalex.org/S199944782","display_name":"IEEE Transactions on Pattern Analysis and Machine Intelligence","issn_l":"0162-8828","issn":["0162-8828","1939-3539","2160-9292"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320439","host_organization_name":"IEEE Computer Society","host_organization_lineage":["https://openalex.org/P4310320439","https://openalex.org/P4310319808"],"host_organization_lineage_names":["IEEE Computer Society","Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Pattern Analysis and Machine Intelligence","raw_type":"journal-article"}],"best_oa_location":{"id":"doi:10.1109/tpami.2023.3323698","is_oa":true,"landing_page_url":"https://doi.org/10.1109/tpami.2023.3323698","pdf_url":"https://ieeexplore.ieee.org/ielx7/34/4359286/10285432.pdf","source":{"id":"https://openalex.org/S199944782","display_name":"IEEE Transactions on Pattern Analysis and Machine Intelligence","issn_l":"0162-8828","issn":["0162-8828","1939-3539","2160-9292"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320439","host_organization_name":"IEEE Computer Society","host_organization_lineage":["https://openalex.org/P4310320439","https://openalex.org/P4310319808"],"host_organization_lineage_names":["IEEE Computer Society","Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Pattern Analysis and Machine Intelligence","raw_type":"journal-article"},"sustainable_development_goals":[{"display_name":"Peace, Justice and strong institutions","score":0.4099999964237213,"id":"https://metadata.un.org/sdg/16"}],"awards":[{"id":"https://openalex.org/G137162417","display_name":null,"funder_award_id":"2020B151513000","funder_id":"https://openalex.org/F4320337111","funder_display_name":"Basic and Applied Basic Research Foundation of Guangdong Province"},{"id":"https://openalex.org/G1501130358","display_name":null,"funder_award_id":"62376263","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G3992403265","display_name":null,"funder_award_id":"2020B1515130004","funder_id":"https://openalex.org/F4320337111","funder_display_name":"Basic and Applied Basic Research Foundation of Guangdong Province"},{"id":"https://openalex.org/G76066946","display_name":null,"funder_award_id":"0015/2019/AKP","funder_id":"https://openalex.org/F4320323893","funder_display_name":"Fundo para o Desenvolvimento das Ci\u00eancias e da Tecnologia"}],"funders":[{"id":"https://openalex.org/F4320321001","display_name":"National Natural Science Foundation of China","ror":"https://ror.org/01h0zpd94"},{"id":"https://openalex.org/F4320322841","display_name":"Universidade de Macau","ror":"https://ror.org/01r4q9n85"},{"id":"https://openalex.org/F4320323893","display_name":"Fundo para o Desenvolvimento das Ci\u00eancias e da Tecnologia","ror":"https://ror.org/05vna4324"},{"id":"https://openalex.org/F4320337111","display_name":"Basic and Applied Basic Research Foundation of Guangdong Province","ror":null}],"has_content":{"pdf":true,"grobid_xml":true},"content_urls":{"pdf":"https://content.openalex.org/works/W4387623745.pdf","grobid_xml":"https://content.openalex.org/works/W4387623745.grobid-xml"},"referenced_works_count":97,"referenced_works":["https://openalex.org/W2145607950","https://openalex.org/W2243397390","https://openalex.org/W2510597476","https://openalex.org/W2571766204","https://openalex.org/W2603766943","https://openalex.org/W2763160469","https://openalex.org/W2774644650","https://openalex.org/W2781800156","https://openalex.org/W2889977670","https://openalex.org/W2911510572","https://openalex.org/W2913848079","https://openalex.org/W2939411050","https://openalex.org/W2947874337","https://openalex.org/W2962807143","https://openalex.org/W2963448658","https://openalex.org/W2963542245","https://openalex.org/W2963693747","https://openalex.org/W2963809642","https://openalex.org/W2963857521","https://openalex.org/W2964449891","https://openalex.org/W2981016037","https://openalex.org/W2983219069","https://openalex.org/W2984699060","https://openalex.org/W2986674980","https://openalex.org/W3009751875","https://openalex.org/W3012575288","https://openalex.org/W3034445502","https://openalex.org/W3035106315","https://openalex.org/W3045766264","https://openalex.org/W3088161853","https://openalex.org/W3090036562","https://openalex.org/W3090285675","https://openalex.org/W3092171228","https://openalex.org/W3103340107","https://openalex.org/W3107235539","https://openalex.org/W3113092146","https://openalex.org/W3122730565","https://openalex.org/W3163963286","https://openalex.org/W3179916154","https://openalex.org/W4229494842","https://openalex.org/W4287864863","https://openalex.org/W4288086177","https://openalex.org/W4299811618","https://openalex.org/W4312692109","https://openalex.org/W6631190155","https://openalex.org/W6637162671","https://openalex.org/W6638667902","https://openalex.org/W6640425456","https://openalex.org/W6719080892","https://openalex.org/W6729756640","https://openalex.org/W6739868092","https://openalex.org/W6748475379","https://openalex.org/W6755310938","https://openalex.org/W6758458550","https://openalex.org/W6758779121","https://openalex.org/W6758930985","https://openalex.org/W6758975236","https://openalex.org/W6759129252","https://openalex.org/W6761100157","https://openalex.org/W6762707182","https://openalex.org/W6762775584","https://openalex.org/W6762938612","https://openalex.org/W6764942769","https://openalex.org/W6765597837","https://openalex.org/W6766331231","https://openalex.org/W6766477303","https://openalex.org/W6766725774","https://openalex.org/W6767478848","https://openalex.org/W6768838613","https://openalex.org/W6771468614","https://openalex.org/W6771749062","https://openalex.org/W6771809012","https://openalex.org/W6772053814","https://openalex.org/W6772461460","https://openalex.org/W6774097037","https://openalex.org/W6774341790","https://openalex.org/W6774469542","https://openalex.org/W6774549192","https://openalex.org/W6774575851","https://openalex.org/W6774681163","https://openalex.org/W6775090988","https://openalex.org/W6775186109","https://openalex.org/W6780186808","https://openalex.org/W6783133732","https://openalex.org/W6783533957","https://openalex.org/W6783646676","https://openalex.org/W6783873723","https://openalex.org/W6783953417","https://openalex.org/W6784426856","https://openalex.org/W6788494687","https://openalex.org/W6791230746","https://openalex.org/W6797105193","https://openalex.org/W6802302390","https://openalex.org/W6804000844","https://openalex.org/W6810259881","https://openalex.org/W6835441300","https://openalex.org/W6973559833"],"related_works":["https://openalex.org/W4320018150","https://openalex.org/W2918664383","https://openalex.org/W2040808657","https://openalex.org/W4320855730","https://openalex.org/W3123119822","https://openalex.org/W106056076","https://openalex.org/W2135200719","https://openalex.org/W2950183588","https://openalex.org/W3080754722","https://openalex.org/W3093978547"],"abstract_inverted_index":{"Deep":[0],"convolutional":[1],"neural":[2],"networks":[3],"(CNNs)":[4],"can":[5],"be":[6,163],"easily":[7],"tricked":[8],"to":[9,17,23,29,37,62,74,102,120,123],"give":[10],"incorrect":[11],"outputs":[12],"by":[13],"adding":[14],"tiny":[15],"perturbations":[16],"the":[18,64,79,104,145,166,170],"input":[19],"that":[20,130,159],"are":[21],"imperceptible":[22],"humans.":[24],"This":[25,157],"makes":[26],"them":[27],"susceptible":[28],"adversarial":[30,160],"attacks,":[31],"and":[32,41,113,174],"poses":[33],"significant":[34],"security":[35],"risks":[36],"deep":[38],"learning":[39],"systems,":[40],"presents":[42],"a":[43,90,116,141,151],"great":[44],"challenge":[45],"in":[46,108],"making":[47],"CNNs":[48],"robust":[49],"against":[50],"such":[51],"attacks.":[52],"An":[53],"influx":[54],"of":[55,66,81,154,169],"defense":[56,155],"strategies":[57],"have":[58],"thus":[59,88],"been":[60],"proposed":[61],"improve":[63],"robustness":[65,80,175],"CNNs.":[67],"Current":[68],"attack":[69,99],"methods,":[70],"however,":[71],"may":[72],"fail":[73],"accurately":[75],"or":[76],"efficiently":[77],"evaluate":[78],"defending":[82],"models.":[83],"In":[84],"this":[85],"paper,":[86],"we":[87],"propose":[89],"unified":[91],"<inline-formula":[92],"xmlns:mml=\"http://www.w3.org/1998/Math/MathML\"":[93],"xmlns:xlink=\"http://www.w3.org/1999/xlink\"><tex-math":[94],"notation=\"LaTeX\">$":[95],"\\ell":[96],"_{p}$</tex-math></inline-formula>":[97],"white-box":[98],"strategy,":[100],"LAFIT,":[101],"harness":[103],"defender's":[105,171],"latent":[106],"features":[107],"its":[109],"gradient":[110,126],"descent":[111],"steps,":[112],"further":[114],"employ":[115],"new":[117],"loss":[118],"function":[119],"normalize":[121],"logits":[122],"overcome":[124],"floating-point-based":[125],"masking.":[127],"We":[128],"show":[129],"not":[131],"only":[132],"is":[133,139],"it":[134,138],"more":[135],"efficient,":[136],"but":[137],"also":[140],"stronger":[142],"adversary":[143],"than":[144],"current":[146],"state-of-the-art":[147],"when":[148],"examined":[149],"across":[150],"wide":[152],"range":[153],"mechanisms.":[156],"suggests":[158],"attacks/defenses":[161],"could":[162],"contingent":[164],"on":[165],"effective":[167],"use":[168],"hidden":[172],"components,":[173],"evaluation":[176],"should":[177],"no":[178],"longer":[179],"view":[180],"models":[181],"holistically.":[182]},"counts_by_year":[{"year":2025,"cited_by_count":2},{"year":2024,"cited_by_count":1}],"updated_date":"2026-04-10T15:06:20.359241","created_date":"2023-10-14T00:00:00"}
