{"id":"https://openalex.org/W3011864700","doi":"https://doi.org/10.1109/wifs47025.2019.9035109","title":"On the Robustness to Adversarial Examples of Neural ODE Image Classifiers","display_name":"On the Robustness to Adversarial Examples of Neural ODE Image Classifiers","publication_year":2019,"publication_date":"2019-12-01","ids":{"openalex":"https://openalex.org/W3011864700","doi":"https://doi.org/10.1109/wifs47025.2019.9035109","mag":"3011864700"},"language":"en","primary_location":{"id":"doi:10.1109/wifs47025.2019.9035109","is_oa":false,"landing_page_url":"https://doi.org/10.1109/wifs47025.2019.9035109","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2019 IEEE International Workshop on Information Forensics and Security (WIFS)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":null,"any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5059447545","display_name":"Fabio Carrara","orcid":"https://orcid.org/0000-0001-5014-5089"},"institutions":[{"id":"https://openalex.org/I122991210","display_name":"Istituto di Scienza e Tecnologie dell'Informazione \"Alessandro Faedo\"","ror":"https://ror.org/05kacka20","country_code":"IT","type":"facility","lineage":["https://openalex.org/I122991210","https://openalex.org/I4210155236"]}],"countries":["IT"],"is_corresponding":true,"raw_author_name":"Fabio Carrara","raw_affiliation_strings":["ISTI CNR, Pisa, Italy"],"affiliations":[{"raw_affiliation_string":"ISTI CNR, Pisa, Italy","institution_ids":["https://openalex.org/I122991210"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5038570344","display_name":"Roberto Caldelli","orcid":"https://orcid.org/0000-0003-3471-1196"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Roberto Caldelli","raw_affiliation_strings":["CNIT, Florence, Italy"],"affiliations":[{"raw_affiliation_string":"CNIT, Florence, Italy","institution_ids":[]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5047189288","display_name":"Fabrizio Falchi","orcid":"https://orcid.org/0000-0001-6258-5313"},"institutions":[{"id":"https://openalex.org/I122991210","display_name":"Istituto di Scienza e Tecnologie dell'Informazione \"Alessandro Faedo\"","ror":"https://ror.org/05kacka20","country_code":"IT","type":"facility","lineage":["https://openalex.org/I122991210","https://openalex.org/I4210155236"]}],"countries":["IT"],"is_corresponding":false,"raw_author_name":"Fabrizio Falchi","raw_affiliation_strings":["ISTI CNR, Pisa, Italy"],"affiliations":[{"raw_affiliation_string":"ISTI CNR, Pisa, Italy","institution_ids":["https://openalex.org/I122991210"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5072396889","display_name":"Giuseppe Amato","orcid":"https://orcid.org/0000-0003-0171-4315"},"institutions":[{"id":"https://openalex.org/I122991210","display_name":"Istituto di Scienza e Tecnologie dell'Informazione \"Alessandro Faedo\"","ror":"https://ror.org/05kacka20","country_code":"IT","type":"facility","lineage":["https://openalex.org/I122991210","https://openalex.org/I4210155236"]}],"countries":["IT"],"is_corresponding":false,"raw_author_name":"Giuseppe Amato","raw_affiliation_strings":["ISTI CNR, Pisa, Italy"],"affiliations":[{"raw_affiliation_string":"ISTI CNR, Pisa, Italy","institution_ids":["https://openalex.org/I122991210"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5059447545"],"corresponding_institution_ids":["https://openalex.org/I122991210"],"apc_list":null,"apc_paid":null,"fwci":1.258,"has_fulltext":false,"cited_by_count":15,"citation_normalized_percentile":{"value":0.85699435,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":89,"max":97},"biblio":{"volume":null,"issue":null,"first_page":"1","last_page":"6"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/ode","display_name":"Ode","score":0.860897421836853},{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness (evolution)","score":0.7187440395355225},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7177866101264954},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.7143025398254395},{"id":"https://openalex.org/keywords/artificial-neural-network","display_name":"Artificial neural network","score":0.6626259088516235},{"id":"https://openalex.org/keywords/deep-learning","display_name":"Deep learning","score":0.6071346402168274},{"id":"https://openalex.org/keywords/deep-neural-networks","display_name":"Deep neural networks","score":0.5964914560317993},{"id":"https://openalex.org/keywords/parametric-statistics","display_name":"Parametric statistics","score":0.48768460750579834},{"id":"https://openalex.org/keywords/computation","display_name":"Computation","score":0.46011215448379517},{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.45739516615867615},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.4459713101387024},{"id":"https://openalex.org/keywords/contextual-image-classification","display_name":"Contextual image classification","score":0.43726304173469543},{"id":"https://openalex.org/keywords/pattern-recognition","display_name":"Pattern recognition (psychology)","score":0.34317535161972046},{"id":"https://openalex.org/keywords/algorithm","display_name":"Algorithm","score":0.31033584475517273},{"id":"https://openalex.org/keywords/image","display_name":"Image (mathematics)","score":0.29540735483169556},{"id":"https://openalex.org/keywords/mathematics","display_name":"Mathematics","score":0.1739864945411682},{"id":"https://openalex.org/keywords/applied-mathematics","display_name":"Applied mathematics","score":0.08941847085952759}],"concepts":[{"id":"https://openalex.org/C34862557","wikidata":"https://www.wikidata.org/wiki/Q178985","display_name":"Ode","level":2,"score":0.860897421836853},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.7187440395355225},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7177866101264954},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.7143025398254395},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.6626259088516235},{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.6071346402168274},{"id":"https://openalex.org/C2984842247","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep neural networks","level":3,"score":0.5964914560317993},{"id":"https://openalex.org/C117251300","wikidata":"https://www.wikidata.org/wiki/Q1849855","display_name":"Parametric statistics","level":2,"score":0.48768460750579834},{"id":"https://openalex.org/C45374587","wikidata":"https://www.wikidata.org/wiki/Q12525525","display_name":"Computation","level":2,"score":0.46011215448379517},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.45739516615867615},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.4459713101387024},{"id":"https://openalex.org/C75294576","wikidata":"https://www.wikidata.org/wiki/Q5165192","display_name":"Contextual image classification","level":3,"score":0.43726304173469543},{"id":"https://openalex.org/C153180895","wikidata":"https://www.wikidata.org/wiki/Q7148389","display_name":"Pattern recognition (psychology)","level":2,"score":0.34317535161972046},{"id":"https://openalex.org/C11413529","wikidata":"https://www.wikidata.org/wiki/Q8366","display_name":"Algorithm","level":1,"score":0.31033584475517273},{"id":"https://openalex.org/C115961682","wikidata":"https://www.wikidata.org/wiki/Q860623","display_name":"Image (mathematics)","level":2,"score":0.29540735483169556},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.1739864945411682},{"id":"https://openalex.org/C28826006","wikidata":"https://www.wikidata.org/wiki/Q33521","display_name":"Applied mathematics","level":1,"score":0.08941847085952759},{"id":"https://openalex.org/C185592680","wikidata":"https://www.wikidata.org/wiki/Q2329","display_name":"Chemistry","level":0,"score":0.0},{"id":"https://openalex.org/C105795698","wikidata":"https://www.wikidata.org/wiki/Q12483","display_name":"Statistics","level":1,"score":0.0},{"id":"https://openalex.org/C55493867","wikidata":"https://www.wikidata.org/wiki/Q7094","display_name":"Biochemistry","level":1,"score":0.0},{"id":"https://openalex.org/C104317684","wikidata":"https://www.wikidata.org/wiki/Q7187","display_name":"Gene","level":2,"score":0.0}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1109/wifs47025.2019.9035109","is_oa":false,"landing_page_url":"https://doi.org/10.1109/wifs47025.2019.9035109","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2019 IEEE International Workshop on Information Forensics and Security (WIFS)","raw_type":"proceedings-article"},{"id":"pmh:oai:dnet:people______::ec6d71a3f6d76d7f5fec967f84d6ea86","is_oa":true,"landing_page_url":null,"pdf_url":null,"source":{"id":"https://openalex.org/S7407055261","display_name":"ISTI Open Portal","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":"other-oa","license_id":"https://openalex.org/licenses/other-oa","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":"Conference article"}],"best_oa_location":{"id":"pmh:oai:dnet:people______::ec6d71a3f6d76d7f5fec967f84d6ea86","is_oa":true,"landing_page_url":null,"pdf_url":null,"source":{"id":"https://openalex.org/S7407055261","display_name":"ISTI Open Portal","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":"other-oa","license_id":"https://openalex.org/licenses/other-oa","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":"Conference article"},"sustainable_development_goals":[{"display_name":"Reduced inequalities","id":"https://metadata.un.org/sdg/10","score":0.49000000953674316},{"display_name":"Peace, Justice and strong institutions","id":"https://metadata.un.org/sdg/16","score":0.4099999964237213}],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":56,"referenced_works":["https://openalex.org/W9657784","https://openalex.org/W1587799944","https://openalex.org/W1673923490","https://openalex.org/W1945616565","https://openalex.org/W1995504856","https://openalex.org/W2112796928","https://openalex.org/W2144144709","https://openalex.org/W2180612164","https://openalex.org/W2243397390","https://openalex.org/W2302255633","https://openalex.org/W2561975083","https://openalex.org/W2590523583","https://openalex.org/W2593892853","https://openalex.org/W2594867206","https://openalex.org/W2605631833","https://openalex.org/W2735607295","https://openalex.org/W2736899637","https://openalex.org/W2790437783","https://openalex.org/W2795727551","https://openalex.org/W2903213484","https://openalex.org/W2912447214","https://openalex.org/W2950468330","https://openalex.org/W2963003451","https://openalex.org/W2963207607","https://openalex.org/W2963389226","https://openalex.org/W2963542245","https://openalex.org/W2963557656","https://openalex.org/W2963755523","https://openalex.org/W2963857521","https://openalex.org/W2964082701","https://openalex.org/W2964153729","https://openalex.org/W2964253222","https://openalex.org/W2970740201","https://openalex.org/W3103836116","https://openalex.org/W3118608800","https://openalex.org/W4293515545","https://openalex.org/W4293584023","https://openalex.org/W4293846201","https://openalex.org/W4297573953","https://openalex.org/W4381325153","https://openalex.org/W6637162671","https://openalex.org/W6640425456","https://openalex.org/W6698183232","https://openalex.org/W6719080892","https://openalex.org/W6729756640","https://openalex.org/W6733645847","https://openalex.org/W6734483310","https://openalex.org/W6734787559","https://openalex.org/W6736640963","https://openalex.org/W6739868092","https://openalex.org/W6740998807","https://openalex.org/W6741036071","https://openalex.org/W6749954789","https://openalex.org/W6752307458","https://openalex.org/W6758648797","https://openalex.org/W6787972765"],"related_works":["https://openalex.org/W2950183588","https://openalex.org/W3080754722","https://openalex.org/W4383221314","https://openalex.org/W3093978547","https://openalex.org/W2953536436","https://openalex.org/W3203790781","https://openalex.org/W4313346231","https://openalex.org/W2738001131","https://openalex.org/W4285785480","https://openalex.org/W2997056298"],"abstract_inverted_index":{"The":[0,23],"vulnerability":[1],"of":[2,12,49,91,128,145,153,172],"deep":[3,20,39,106],"neural":[4,40],"networks":[5,41],"to":[6,73,98,104,117,122,140,150,160],"adversarial":[7,99,118],"attacks":[8,100,119],"currently":[9],"represents":[10],"one":[11],"the":[13,19,29,89,143,151,154,162,170,173,181],"most":[14,178],"challenging":[15],"open":[16,137],"problems":[17],"in":[18],"learning":[21],"field.":[22],"NeurIPS":[24],"2018":[25],"work":[26],"that":[27,110,176],"obtained":[28],"best":[30],"paper":[31],"award":[32],"proposed":[33],"a":[34,55,77],"new":[35,138],"paradigm":[36],"for":[37,76,180],"defining":[38],"with":[42,120],"continuous":[43,56],"internal":[44,174],"activations.":[45],"In":[46,84],"this":[47,85],"kind":[48],"networks,":[50,125],"dubbed":[51],"Neural":[52,111],"ODE":[53,96,112],"Networks,":[54],"hidden":[57,155],"state":[58],"can":[59,70],"be":[60,71],"defined":[61],"via":[62],"parametric":[63],"ordinary":[64],"differential":[65],"equations,":[66],"and":[67,101,126,168],"its":[68],"dynamics":[69,175],"adjusted":[72],"build":[74],"representations":[75],"given":[78],"task,":[79],"such":[80,132],"as":[81,95,133],"image":[82,92],"classification.":[83],"paper,":[86],"we":[87,157],"analyze":[88],"robustness":[90,144],"classifiers":[93],"implemented":[94],"Nets":[97],"compare":[102],"it":[103],"standard":[105],"models.":[107,147],"We":[108],"show":[109],"are":[113,158],"natively":[114],"more":[115],"robust":[116],"respect":[121],"state-of-the-art":[123],"residual":[124],"some":[127],"their":[129],"intrinsic":[130],"properties,":[131],"adaptive":[134],"computation":[135],"cost,":[136],"directions":[139],"further":[141],"increase":[142],"deep-learned":[146],"Moreover,":[148],"thanks":[149],"continuity":[152],"state,":[156],"able":[159],"follow":[161],"perturbation":[163],"injected":[164],"by":[165],"manipulated":[166],"inputs":[167],"pinpoint":[169],"part":[171],"is":[177],"responsible":[179],"misclassification.":[182]},"counts_by_year":[{"year":2025,"cited_by_count":2},{"year":2024,"cited_by_count":2},{"year":2023,"cited_by_count":2},{"year":2022,"cited_by_count":4},{"year":2021,"cited_by_count":4},{"year":2020,"cited_by_count":1}],"updated_date":"2026-03-02T08:37:19.008085","created_date":"2025-10-10T00:00:00"}
