{"id":"https://openalex.org/W2900770941","doi":"https://doi.org/10.1145/3243734.3278515","title":"Not All Pixels are Born Equal","display_name":"Not All Pixels are Born Equal","publication_year":2018,"publication_date":"2018-10-15","ids":{"openalex":"https://openalex.org/W2900770941","doi":"https://doi.org/10.1145/3243734.3278515","mag":"2900770941"},"language":"en","primary_location":{"id":"doi:10.1145/3243734.3278515","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3243734.3278515","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3243734.3278515","source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2018 ACM SIGSAC Conference on Computer and Communications Security","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"gold","oa_url":"https://dl.acm.org/doi/pdf/10.1145/3243734.3278515","any_repository_has_fulltext":null},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5011437254","display_name":"Vikash Sehwag","orcid":"https://orcid.org/0000-0001-7160-8556"},"institutions":[{"id":"https://openalex.org/I20089843","display_name":"Princeton University","ror":"https://ror.org/00hx57361","country_code":"US","type":"education","lineage":["https://openalex.org/I20089843"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"Vikash Sehwag","raw_affiliation_strings":["Princeton University, Princeton, NJ, USA"],"affiliations":[{"raw_affiliation_string":"Princeton University, Princeton, NJ, USA","institution_ids":["https://openalex.org/I20089843"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5040461332","display_name":"Chawin Sitawarin","orcid":"https://orcid.org/0000-0002-4949-9661"},"institutions":[{"id":"https://openalex.org/I20089843","display_name":"Princeton University","ror":"https://ror.org/00hx57361","country_code":"US","type":"education","lineage":["https://openalex.org/I20089843"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Chawin Sitawarin","raw_affiliation_strings":["Princeton University, Princeton, NJ, USA"],"affiliations":[{"raw_affiliation_string":"Princeton University, Princeton, NJ, USA","institution_ids":["https://openalex.org/I20089843"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5003032696","display_name":"Arjun Nitin Bhagoji","orcid":"https://orcid.org/0000-0002-2803-5649"},"institutions":[{"id":"https://openalex.org/I20089843","display_name":"Princeton University","ror":"https://ror.org/00hx57361","country_code":"US","type":"education","lineage":["https://openalex.org/I20089843"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Arjun Nitin Bhagoji","raw_affiliation_strings":["Princeton University, Princeton, NJ, USA"],"affiliations":[{"raw_affiliation_string":"Princeton University, Princeton, NJ, USA","institution_ids":["https://openalex.org/I20089843"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5077742253","display_name":"Arsalan Mosenia","orcid":"https://orcid.org/0000-0001-9463-4343"},"institutions":[{"id":"https://openalex.org/I20089843","display_name":"Princeton University","ror":"https://ror.org/00hx57361","country_code":"US","type":"education","lineage":["https://openalex.org/I20089843"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Arsalan Mosenia","raw_affiliation_strings":["Princeton University, Princeton, NJ, USA"],"affiliations":[{"raw_affiliation_string":"Princeton University, Princeton, NJ, USA","institution_ids":["https://openalex.org/I20089843"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5110782105","display_name":"Mung Chiang","orcid":"https://orcid.org/0000-0002-8920-651X"},"institutions":[{"id":"https://openalex.org/I219193219","display_name":"Purdue University West Lafayette","ror":"https://ror.org/02dqehb95","country_code":"US","type":"education","lineage":["https://openalex.org/I219193219"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Mung Chiang","raw_affiliation_strings":["Purdue University, West Lafayette, IN, USA"],"affiliations":[{"raw_affiliation_string":"Purdue University, West Lafayette, IN, USA","institution_ids":["https://openalex.org/I219193219"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5015619835","display_name":"Prateek Mittal","orcid":"https://orcid.org/0000-0002-4057-0118"},"institutions":[{"id":"https://openalex.org/I20089843","display_name":"Princeton University","ror":"https://ror.org/00hx57361","country_code":"US","type":"education","lineage":["https://openalex.org/I20089843"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Prateek Mittal","raw_affiliation_strings":["Princeton University, Princeton, NJ, USA"],"affiliations":[{"raw_affiliation_string":"Princeton University, Princeton, NJ, USA","institution_ids":["https://openalex.org/I20089843"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":6,"corresponding_author_ids":["https://openalex.org/A5011437254"],"corresponding_institution_ids":["https://openalex.org/I20089843"],"apc_list":null,"apc_paid":null,"fwci":0.8462,"has_fulltext":true,"cited_by_count":7,"citation_normalized_percentile":{"value":0.81009523,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":90,"max":97},"biblio":{"volume":null,"issue":null,"first_page":"2285","last_page":"2287"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11515","display_name":"Bacillus and Francisella bacterial research","score":0.9684000015258789,"subfield":{"id":"https://openalex.org/subfields/1312","display_name":"Molecular Biology"},"field":{"id":"https://openalex.org/fields/13","display_name":"Biochemistry, Genetics and Molecular Biology"},"domain":{"id":"https://openalex.org/domains/1","display_name":"Life Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.904699981212616,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7866834402084351},{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.7743053436279297},{"id":"https://openalex.org/keywords/locality","display_name":"Locality","score":0.7455072999000549},{"id":"https://openalex.org/keywords/adversary","display_name":"Adversary","score":0.7321076393127441},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.6518549919128418},{"id":"https://openalex.org/keywords/segmentation","display_name":"Segmentation","score":0.592632532119751},{"id":"https://openalex.org/keywords/pipeline","display_name":"Pipeline (software)","score":0.5498811602592468},{"id":"https://openalex.org/keywords/pixel","display_name":"Pixel","score":0.48876333236694336},{"id":"https://openalex.org/keywords/deep-neural-networks","display_name":"Deep neural networks","score":0.4839370846748352},{"id":"https://openalex.org/keywords/key","display_name":"Key (lock)","score":0.4814590811729431},{"id":"https://openalex.org/keywords/image-segmentation","display_name":"Image segmentation","score":0.47506946325302124},{"id":"https://openalex.org/keywords/artificial-neural-network","display_name":"Artificial neural network","score":0.46767839789390564},{"id":"https://openalex.org/keywords/image","display_name":"Image (mathematics)","score":0.4665389358997345},{"id":"https://openalex.org/keywords/computer-vision","display_name":"Computer vision","score":0.4645163118839264},{"id":"https://openalex.org/keywords/trajectory","display_name":"Trajectory","score":0.45940297842025757},{"id":"https://openalex.org/keywords/deep-learning","display_name":"Deep learning","score":0.44183647632598877},{"id":"https://openalex.org/keywords/task","display_name":"Task (project management)","score":0.4360201954841614},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.41733551025390625},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.14443722367286682}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7866834402084351},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.7743053436279297},{"id":"https://openalex.org/C2779808786","wikidata":"https://www.wikidata.org/wiki/Q6664603","display_name":"Locality","level":2,"score":0.7455072999000549},{"id":"https://openalex.org/C41065033","wikidata":"https://www.wikidata.org/wiki/Q2825412","display_name":"Adversary","level":2,"score":0.7321076393127441},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.6518549919128418},{"id":"https://openalex.org/C89600930","wikidata":"https://www.wikidata.org/wiki/Q1423946","display_name":"Segmentation","level":2,"score":0.592632532119751},{"id":"https://openalex.org/C43521106","wikidata":"https://www.wikidata.org/wiki/Q2165493","display_name":"Pipeline (software)","level":2,"score":0.5498811602592468},{"id":"https://openalex.org/C160633673","wikidata":"https://www.wikidata.org/wiki/Q355198","display_name":"Pixel","level":2,"score":0.48876333236694336},{"id":"https://openalex.org/C2984842247","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep neural networks","level":3,"score":0.4839370846748352},{"id":"https://openalex.org/C26517878","wikidata":"https://www.wikidata.org/wiki/Q228039","display_name":"Key (lock)","level":2,"score":0.4814590811729431},{"id":"https://openalex.org/C124504099","wikidata":"https://www.wikidata.org/wiki/Q56933","display_name":"Image segmentation","level":3,"score":0.47506946325302124},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.46767839789390564},{"id":"https://openalex.org/C115961682","wikidata":"https://www.wikidata.org/wiki/Q860623","display_name":"Image (mathematics)","level":2,"score":0.4665389358997345},{"id":"https://openalex.org/C31972630","wikidata":"https://www.wikidata.org/wiki/Q844240","display_name":"Computer vision","level":1,"score":0.4645163118839264},{"id":"https://openalex.org/C13662910","wikidata":"https://www.wikidata.org/wiki/Q193139","display_name":"Trajectory","level":2,"score":0.45940297842025757},{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.44183647632598877},{"id":"https://openalex.org/C2780451532","wikidata":"https://www.wikidata.org/wiki/Q759676","display_name":"Task (project management)","level":2,"score":0.4360201954841614},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.41733551025390625},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.14443722367286682},{"id":"https://openalex.org/C187736073","wikidata":"https://www.wikidata.org/wiki/Q2920921","display_name":"Management","level":1,"score":0.0},{"id":"https://openalex.org/C138885662","wikidata":"https://www.wikidata.org/wiki/Q5891","display_name":"Philosophy","level":0,"score":0.0},{"id":"https://openalex.org/C1276947","wikidata":"https://www.wikidata.org/wiki/Q333","display_name":"Astronomy","level":1,"score":0.0},{"id":"https://openalex.org/C121332964","wikidata":"https://www.wikidata.org/wiki/Q413","display_name":"Physics","level":0,"score":0.0},{"id":"https://openalex.org/C162324750","wikidata":"https://www.wikidata.org/wiki/Q8134","display_name":"Economics","level":0,"score":0.0},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.0},{"id":"https://openalex.org/C41895202","wikidata":"https://www.wikidata.org/wiki/Q8162","display_name":"Linguistics","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/3243734.3278515","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3243734.3278515","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3243734.3278515","source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2018 ACM SIGSAC Conference on Computer and Communications Security","raw_type":"proceedings-article"}],"best_oa_location":{"id":"doi:10.1145/3243734.3278515","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3243734.3278515","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3243734.3278515","source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2018 ACM SIGSAC Conference on Computer and Communications Security","raw_type":"proceedings-article"},"sustainable_development_goals":[],"awards":[{"id":"https://openalex.org/G2800119129","display_name":null,"funder_award_id":"CNS-1553437","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"},{"id":"https://openalex.org/G3784506589","display_name":"TWC: Medium: Collaborative: Aspire: Leveraging Automated Synthesis Technologies for Enhancing System Security","funder_award_id":"1409415","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"},{"id":"https://openalex.org/G5165965387","display_name":"CAREER: Trustworthy Social Systems Using Network Science","funder_award_id":"1553437","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"},{"id":"https://openalex.org/G8393453564","display_name":null,"funder_award_id":"CNS-1553437, CNS-1409415","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"},{"id":"https://openalex.org/G848032724","display_name":null,"funder_award_id":"Science","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"}],"funders":[{"id":"https://openalex.org/F4320306076","display_name":"National Science Foundation","ror":"https://ror.org/021nxhr62"},{"id":"https://openalex.org/F4320307762","display_name":"International Business Machines Corporation","ror":"https://ror.org/05hh8d621"},{"id":"https://openalex.org/F4320337345","display_name":"Office of Naval Research","ror":"https://ror.org/00rk2pe57"}],"has_content":{"grobid_xml":true,"pdf":true},"content_urls":{"pdf":"https://content.openalex.org/works/W2900770941.pdf","grobid_xml":"https://content.openalex.org/works/W2900770941.grobid-xml"},"referenced_works_count":11,"referenced_works":["https://openalex.org/W2340897893","https://openalex.org/W2342840547","https://openalex.org/W2535873859","https://openalex.org/W2556967412","https://openalex.org/W2788820894","https://openalex.org/W2798302089","https://openalex.org/W2804566015","https://openalex.org/W2952596663","https://openalex.org/W2963857521","https://openalex.org/W2964153729","https://openalex.org/W2964309882"],"related_works":["https://openalex.org/W4320018150","https://openalex.org/W2040808657","https://openalex.org/W4239582170","https://openalex.org/W2918664383","https://openalex.org/W106056076","https://openalex.org/W4320855730","https://openalex.org/W2135200719","https://openalex.org/W2950183588","https://openalex.org/W3080754722","https://openalex.org/W4383221314"],"abstract_inverted_index":{"Deep":[0],"neural":[1],"networks":[2],"(DNNs)":[3],"have":[4],"enabled":[5],"success":[6,63,153],"in":[7,110,205],"learning":[8,81,232],"tasks":[9],"such":[10,34,119],"as":[11,35,120],"image":[12,15,52,147],"classification,":[13,148],"semantic":[14,89,188],"segmentation":[16,90],"and":[17,79,91,206,230],"steering":[18,92,166],"angle":[19,93,167],"prediction":[20,94],"which":[21],"can":[22],"be":[23],"key":[24],"components":[25],"of":[26,31,45,64,75,114,116,132,154,223],"the":[27,43,62,73,76,80,96,111,130,142,152,155,162,203],"computer":[28],"vision":[29],"pipeline":[30],"safety-critical":[32],"systems":[33],"autonomous":[36,125],"vehicles.":[37,126],"However,":[38],"previous":[39],"work":[40],"has":[41],"demonstrated":[42],"feasibility":[44],"using":[46],"physical":[47],"adversarial":[48,66,133,172],"examples":[49,67,134],"to":[50,98,107,175,184,195],"attack":[51],"classification":[53],"systems.":[54],"\\par":[55],"In":[56,83],"this":[57],"work,":[58],"we":[59,149,169,190],"argue":[60],"that":[61,151,171,192],"realistic":[65],"is":[68,104],"highly":[69],"dependent":[70],"on":[71,88,161],"both":[72],"structure":[74],"training":[77,163],"data":[78],"objective.":[82],"particular,":[84],"realistic,":[85],"physical-world":[86],"attacks":[87,212,226],"constrain":[95],"adversary":[97,156],"add":[99,108],"localized":[100,174,194,225],"perturbations,":[101],"since":[102],"it":[103],"very":[105],"difficult":[106,213],"perturbations":[109,173,193],"entire":[112],"field":[113],"view":[115],"input":[117],"sensors":[118],"cameras":[121],"for":[122,214,234],"applications":[123],"like":[124],"We":[127,217],"empirically":[128],"study":[129],"effectiveness":[131],"generated":[135],"under":[136,157],"strict":[137],"locality":[138,158],"constraints":[139,159],"imposed":[140],"by":[141],"aforementioned":[143],"applications.":[144],"Even":[145],"with":[146],"observe":[150,170,191],"depends":[160],"dataset.":[164],"With":[165],"prediction,":[168],"an":[176,215],"off-road":[177],"patch":[178],"are":[179,198],"significantly":[180],"less":[181],"successful":[182],"compared":[183],"those":[185,208],"on-road.":[186],"For":[187],"segmentation,":[189],"small":[196],"patches":[197],"only":[199],"effective":[200],"at":[201],"changing":[202],"label":[204],"around":[207],"patches,":[209],"making":[210],"non-local":[211],"adversary.":[216],"further":[218],"provide":[219],"a":[220],"comparative":[221],"evaluation":[222],"these":[224],"over":[227],"various":[228],"datasets":[229],"deep":[231],"models":[233],"each":[235],"task.":[236]},"counts_by_year":[{"year":2023,"cited_by_count":1},{"year":2022,"cited_by_count":1},{"year":2021,"cited_by_count":3},{"year":2020,"cited_by_count":2}],"updated_date":"2026-04-10T15:06:20.359241","created_date":"2025-10-10T00:00:00"}
