{"id":"https://openalex.org/W2791182480","doi":"https://doi.org/10.1109/wacv45572.2020.9093310","title":"Adversarial Defense based on Structure-to-Signal Autoencoders","display_name":"Adversarial Defense based on Structure-to-Signal Autoencoders","publication_year":2020,"publication_date":"2020-03-01","ids":{"openalex":"https://openalex.org/W2791182480","doi":"https://doi.org/10.1109/wacv45572.2020.9093310","mag":"2791182480"},"language":"en","primary_location":{"id":"doi:10.1109/wacv45572.2020.9093310","is_oa":false,"landing_page_url":"https://doi.org/10.1109/wacv45572.2020.9093310","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2020 IEEE Winter Conference on Applications of Computer Vision (WACV)","raw_type":"proceedings-article"},"type":"preprint","indexed_in":["arxiv","crossref","datacite"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://arxiv.org/pdf/1803.07994","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5039686567","display_name":"Joachim Folz","orcid":null},"institutions":[{"id":"https://openalex.org/I33256026","display_name":"German Research Centre for Artificial Intelligence","ror":"https://ror.org/01ayc5b57","country_code":"DE","type":"funder","lineage":["https://openalex.org/I33256026"]}],"countries":["DE"],"is_corresponding":true,"raw_author_name":"Joachim Folz","raw_affiliation_strings":["German Research Center for Artificial Intelligence (DFKI), TU Kaiserslautern"],"affiliations":[{"raw_affiliation_string":"German Research Center for Artificial Intelligence (DFKI), TU Kaiserslautern","institution_ids":["https://openalex.org/I33256026"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5006074105","display_name":"Sebastian Palacio","orcid":"https://orcid.org/0000-0002-8656-9569"},"institutions":[{"id":"https://openalex.org/I33256026","display_name":"German Research Centre for Artificial Intelligence","ror":"https://ror.org/01ayc5b57","country_code":"DE","type":"funder","lineage":["https://openalex.org/I33256026"]}],"countries":["DE"],"is_corresponding":false,"raw_author_name":"Sebastian Palacio","raw_affiliation_strings":["German Research Center for Artificial Intelligence (DFKI), TU Kaiserslautern"],"affiliations":[{"raw_affiliation_string":"German Research Center for Artificial Intelligence (DFKI), TU Kaiserslautern","institution_ids":["https://openalex.org/I33256026"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5051548778","display_name":"Joern Hees","orcid":null},"institutions":[{"id":"https://openalex.org/I33256026","display_name":"German Research Centre for Artificial Intelligence","ror":"https://ror.org/01ayc5b57","country_code":"DE","type":"funder","lineage":["https://openalex.org/I33256026"]}],"countries":["DE"],"is_corresponding":false,"raw_author_name":"Joern Hees","raw_affiliation_strings":["German Research Center for Artificial Intelligence (DFKI), TU Kaiserslautern"],"affiliations":[{"raw_affiliation_string":"German Research Center for Artificial Intelligence (DFKI), TU Kaiserslautern","institution_ids":["https://openalex.org/I33256026"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5101904182","display_name":"Andreas Dengel","orcid":"https://orcid.org/0000-0002-6100-8255"},"institutions":[{"id":"https://openalex.org/I33256026","display_name":"German Research Centre for Artificial Intelligence","ror":"https://ror.org/01ayc5b57","country_code":"DE","type":"funder","lineage":["https://openalex.org/I33256026"]}],"countries":["DE"],"is_corresponding":false,"raw_author_name":"Andreas Dengel","raw_affiliation_strings":["German Research Center for Artificial Intelligence (DFKI), TU Kaiserslautern"],"affiliations":[{"raw_affiliation_string":"German Research Center for Artificial Intelligence (DFKI), TU Kaiserslautern","institution_ids":["https://openalex.org/I33256026"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5039686567"],"corresponding_institution_ids":["https://openalex.org/I33256026"],"apc_list":null,"apc_paid":null,"fwci":0.5438,"has_fulltext":true,"cited_by_count":10,"citation_normalized_percentile":{"value":0.72231037,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":90,"max":98},"biblio":{"volume":null,"issue":null,"first_page":"3568","last_page":"3577"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9789999723434448,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7427852153778076},{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.7229413390159607},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.7035667896270752},{"id":"https://openalex.org/keywords/pattern-recognition","display_name":"Pattern recognition (psychology)","score":0.5931831002235413},{"id":"https://openalex.org/keywords/classifier","display_name":"Classifier (UML)","score":0.5823328495025635},{"id":"https://openalex.org/keywords/deep-neural-networks","display_name":"Deep neural networks","score":0.5141937732696533},{"id":"https://openalex.org/keywords/deep-learning","display_name":"Deep learning","score":0.46806278824806213},{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness (evolution)","score":0.44095727801322937},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.42729008197784424}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7427852153778076},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.7229413390159607},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.7035667896270752},{"id":"https://openalex.org/C153180895","wikidata":"https://www.wikidata.org/wiki/Q7148389","display_name":"Pattern recognition (psychology)","level":2,"score":0.5931831002235413},{"id":"https://openalex.org/C95623464","wikidata":"https://www.wikidata.org/wiki/Q1096149","display_name":"Classifier (UML)","level":2,"score":0.5823328495025635},{"id":"https://openalex.org/C2984842247","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep neural networks","level":3,"score":0.5141937732696533},{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.46806278824806213},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.44095727801322937},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.42729008197784424},{"id":"https://openalex.org/C55493867","wikidata":"https://www.wikidata.org/wiki/Q7094","display_name":"Biochemistry","level":1,"score":0.0},{"id":"https://openalex.org/C185592680","wikidata":"https://www.wikidata.org/wiki/Q2329","display_name":"Chemistry","level":0,"score":0.0},{"id":"https://openalex.org/C104317684","wikidata":"https://www.wikidata.org/wiki/Q7187","display_name":"Gene","level":2,"score":0.0}],"mesh":[],"locations_count":4,"locations":[{"id":"doi:10.1109/wacv45572.2020.9093310","is_oa":false,"landing_page_url":"https://doi.org/10.1109/wacv45572.2020.9093310","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2020 IEEE Winter Conference on Applications of Computer Vision (WACV)","raw_type":"proceedings-article"},{"id":"pmh:oai:arXiv.org:1803.07994","is_oa":true,"landing_page_url":"http://arxiv.org/abs/1803.07994","pdf_url":"https://arxiv.org/pdf/1803.07994","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":"text"},{"id":"mag:2791182480","is_oa":true,"landing_page_url":"http://export.arxiv.org/pdf/1803.07994","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"arXiv (Cornell University)","raw_type":null},{"id":"doi:10.48550/arxiv.1803.07994","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.1803.07994","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":null,"raw_source_name":null,"raw_type":"article"}],"best_oa_location":{"id":"pmh:oai:arXiv.org:1803.07994","is_oa":true,"landing_page_url":"http://arxiv.org/abs/1803.07994","pdf_url":"https://arxiv.org/pdf/1803.07994","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":"text"},"sustainable_development_goals":[],"awards":[{"id":"https://openalex.org/G638475303","display_name":null,"funder_award_id":"NVAIL","funder_id":"https://openalex.org/F4320309480","funder_display_name":"Nvidia"},{"id":"https://openalex.org/G7225624288","display_name":null,"funder_award_id":"This work was","funder_id":"https://openalex.org/F4320321114","funder_display_name":"Bundesministerium f\u00fcr Bildung und Forschung"},{"id":"https://openalex.org/G8669804435","display_name":null,"funder_award_id":"01IW17002","funder_id":"https://openalex.org/F4320321114","funder_display_name":"Bundesministerium f\u00fcr Bildung und Forschung"}],"funders":[{"id":"https://openalex.org/F4320309480","display_name":"Nvidia","ror":"https://ror.org/03jdj4y14"},{"id":"https://openalex.org/F4320321114","display_name":"Bundesministerium f\u00fcr Bildung und Forschung","ror":"https://ror.org/04pz7b180"}],"has_content":{"pdf":true,"grobid_xml":true},"content_urls":{"pdf":"https://content.openalex.org/works/W2791182480.pdf","grobid_xml":"https://content.openalex.org/works/W2791182480.grobid-xml"},"referenced_works_count":54,"referenced_works":["https://openalex.org/W360623563","https://openalex.org/W1544092585","https://openalex.org/W1673923490","https://openalex.org/W1686810756","https://openalex.org/W1945616565","https://openalex.org/W2117539524","https://openalex.org/W2133665775","https://openalex.org/W2183341477","https://openalex.org/W2194775991","https://openalex.org/W2243397390","https://openalex.org/W2543927648","https://openalex.org/W2560358147","https://openalex.org/W2618043096","https://openalex.org/W2620038827","https://openalex.org/W2785887350","https://openalex.org/W2787708942","https://openalex.org/W2950864148","https://openalex.org/W2952678275","https://openalex.org/W2962872506","https://openalex.org/W2963636205","https://openalex.org/W2963855547","https://openalex.org/W2963857521","https://openalex.org/W2964082701","https://openalex.org/W2964287726","https://openalex.org/W6612134913","https://openalex.org/W6632527360","https://openalex.org/W6637162671","https://openalex.org/W6639204139","https://openalex.org/W6639824700","https://openalex.org/W6640425456","https://openalex.org/W6686164453","https://openalex.org/W6694611762","https://openalex.org/W6717255582","https://openalex.org/W6719080892","https://openalex.org/W6725508424","https://openalex.org/W6725672702","https://openalex.org/W6729756640","https://openalex.org/W6730503085","https://openalex.org/W6731927902","https://openalex.org/W6734483310","https://openalex.org/W6739868092","https://openalex.org/W6744679260","https://openalex.org/W6745272055","https://openalex.org/W6746402973","https://openalex.org/W6746621119","https://openalex.org/W6747920752","https://openalex.org/W6748475379","https://openalex.org/W6748711285","https://openalex.org/W6748965907","https://openalex.org/W6750463028","https://openalex.org/W6751839145","https://openalex.org/W6753552644","https://openalex.org/W6754558403","https://openalex.org/W6762520590"],"related_works":["https://openalex.org/W2964153729","https://openalex.org/W2603766943","https://openalex.org/W1901129140","https://openalex.org/W1686810756","https://openalex.org/W2963771536","https://openalex.org/W2789808965","https://openalex.org/W3109321589","https://openalex.org/W2890038638","https://openalex.org/W3036539869","https://openalex.org/W3009556147","https://openalex.org/W2943646750","https://openalex.org/W2964253222","https://openalex.org/W2963857521","https://openalex.org/W2163605009","https://openalex.org/W2992326293","https://openalex.org/W2807398060","https://openalex.org/W3151299405","https://openalex.org/W2781800156","https://openalex.org/W2986674980","https://openalex.org/W3099103512"],"abstract_inverted_index":{"Adversarial":[0],"attacks":[1,41,84],"have":[2],"exposed":[3],"the":[4,7,27,37,73,105,124,136,143,150,160],"intricacies":[5],"of":[6,82,145,152],"complex":[8],"loss":[9],"surfaces":[10],"approximated":[11],"by":[12,112],"neural":[13],"networks.":[14],"In":[15],"this":[16],"paper,":[17],"we":[18],"present":[19],"a":[20,55,67,80,140],"defense":[21,90],"strategy":[22],"against":[23,79],"gradient-based":[24,83],"attacks,":[25],"on":[26,50,123],"premise":[28],"that":[29,72,135],"input":[30,146],"gradients":[31],"need":[32],"to":[33,42,170],"expose":[34],"information":[35,166],"about":[36],"semantic":[38,165],"manifold":[39],"for":[40,98],"be":[43,96],"successful.":[44],"We":[45,70],"propose":[46],"an":[47,62],"architecture":[48],"based":[49],"compressive":[51],"autoencoders":[52],"(AEs)":[53],"with":[54,115],"two-stage":[56],"training":[57],"scheme,":[58],"creating":[59],"not":[60,103],"only":[61],"architectural":[63],"bottleneck":[64],"but":[65],"also":[66],"representational":[68],"bottleneck.":[69],"show":[71,134],"proposed":[74,161],"mechanism":[75],"yields":[76],"robust":[77],"results":[78],"collection":[81],"under":[85],"challenging":[86],"white-box":[87],"conditions.":[88],"This":[89],"is":[91],"attack-agnostic":[92],"and":[93,120,167],"can,":[94],"therefore,":[95],"used":[97],"arbitrary":[99],"pre-trained":[100],"models,":[101],"while":[102],"compromising":[104],"original":[106],"performance.":[107],"These":[108],"claims":[109],"are":[110],"supported":[111],"experiments":[113],"conducted":[114],"state-of-the-art":[116],"image":[117],"classifiers":[118],"(ResNet50":[119],"Inception":[121],"v3),":[122],"full":[125],"ImageNet":[126],"validation":[127],"set.":[128],"Experiments,":[129],"including":[130],"counterfactual":[131],"analysis,":[132],"empirically":[133],"robustness":[137],"stems":[138],"from":[139],"shift":[141],"in":[142],"distribution":[144],"gradients,":[147],"which":[148],"mitigates":[149],"effect":[151],"tested":[153],"adversarial":[154],"attack":[155],"methods.":[156],"Gradients":[157],"propagated":[158],"through":[159],"AEs":[162],"represent":[163],"less":[164],"instead":[168],"point":[169],"low-level":[171],"structural":[172],"features.":[173]},"counts_by_year":[{"year":2021,"cited_by_count":2},{"year":2020,"cited_by_count":2},{"year":2019,"cited_by_count":1},{"year":2018,"cited_by_count":5}],"updated_date":"2026-04-10T15:06:20.359241","created_date":"2025-10-10T00:00:00"}
