{"id":"https://openalex.org/W2960351163","doi":"https://doi.org/10.1145/3321705.3331002","title":"Characterizing Adversarial Subspaces by Mutual Information","display_name":"Characterizing Adversarial Subspaces by Mutual Information","publication_year":2019,"publication_date":"2019-07-02","ids":{"openalex":"https://openalex.org/W2960351163","doi":"https://doi.org/10.1145/3321705.3331002","mag":"2960351163"},"language":"en","primary_location":{"id":"doi:10.1145/3321705.3331002","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3321705.3331002","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2019 ACM Asia Conference on Computer and Communications Security","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5035387029","display_name":"Chia-Yi Hsu","orcid":null},"institutions":[{"id":"https://openalex.org/I162838928","display_name":"National Chung Hsing University","ror":"https://ror.org/05vn3ca78","country_code":"TW","type":"education","lineage":["https://openalex.org/I162838928"]}],"countries":["TW"],"is_corresponding":true,"raw_author_name":"Chia-Yi Hsu","raw_affiliation_strings":["National Chung Hsing University, Taichung, Taiwan Roc"],"affiliations":[{"raw_affiliation_string":"National Chung Hsing University, Taichung, Taiwan Roc","institution_ids":["https://openalex.org/I162838928"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5050344371","display_name":"Pin\u2010Yu Chen","orcid":"https://orcid.org/0000-0003-1039-8369"},"institutions":[{"id":"https://openalex.org/I1341412227","display_name":"IBM (United States)","ror":"https://ror.org/05hh8d621","country_code":"US","type":"company","lineage":["https://openalex.org/I1341412227"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Pin-Yu Chen","raw_affiliation_strings":["IBM Research, Yorktown Heights, NY, USA"],"affiliations":[{"raw_affiliation_string":"IBM Research, Yorktown Heights, NY, USA","institution_ids":["https://openalex.org/I1341412227"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5085568918","display_name":"Chia-Mu Yu","orcid":"https://orcid.org/0000-0002-1677-2131"},"institutions":[{"id":"https://openalex.org/I162838928","display_name":"National Chung Hsing University","ror":"https://ror.org/05vn3ca78","country_code":"TW","type":"education","lineage":["https://openalex.org/I162838928"]}],"countries":["TW"],"is_corresponding":false,"raw_author_name":"Chia-Mu Yu","raw_affiliation_strings":["National Chung Hsing University, Taichung, Taiwan Roc"],"affiliations":[{"raw_affiliation_string":"National Chung Hsing University, Taichung, Taiwan Roc","institution_ids":["https://openalex.org/I162838928"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":3,"corresponding_author_ids":["https://openalex.org/A5035387029"],"corresponding_institution_ids":["https://openalex.org/I162838928"],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":{"value":0.07195793,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":"667","last_page":"669"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11515","display_name":"Bacillus and Francisella bacterial research","score":0.9473999738693237,"subfield":{"id":"https://openalex.org/subfields/1312","display_name":"Molecular Biology"},"field":{"id":"https://openalex.org/fields/13","display_name":"Biochemistry, Genetics and Molecular Biology"},"domain":{"id":"https://openalex.org/domains/1","display_name":"Life Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/linear-subspace","display_name":"Linear subspace","score":0.7859575748443604},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7226908206939697},{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.7124993205070496},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.6076265573501587},{"id":"https://openalex.org/keywords/detector","display_name":"Detector","score":0.5814871191978455},{"id":"https://openalex.org/keywords/gradient-descent","display_name":"Gradient descent","score":0.5509554147720337},{"id":"https://openalex.org/keywords/artificial-neural-network","display_name":"Artificial neural network","score":0.48827576637268066},{"id":"https://openalex.org/keywords/net","display_name":"Net (polyhedron)","score":0.4711795151233673},{"id":"https://openalex.org/keywords/mutual-information","display_name":"Mutual information","score":0.44970273971557617},{"id":"https://openalex.org/keywords/mount","display_name":"Mount","score":0.4320046603679657},{"id":"https://openalex.org/keywords/object","display_name":"Object (grammar)","score":0.41024696826934814},{"id":"https://openalex.org/keywords/pattern-recognition","display_name":"Pattern recognition (psychology)","score":0.3693450689315796},{"id":"https://openalex.org/keywords/computer-vision","display_name":"Computer vision","score":0.32868432998657227},{"id":"https://openalex.org/keywords/mathematics","display_name":"Mathematics","score":0.13082730770111084}],"concepts":[{"id":"https://openalex.org/C12362212","wikidata":"https://www.wikidata.org/wiki/Q728435","display_name":"Linear subspace","level":2,"score":0.7859575748443604},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7226908206939697},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.7124993205070496},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.6076265573501587},{"id":"https://openalex.org/C94915269","wikidata":"https://www.wikidata.org/wiki/Q1834857","display_name":"Detector","level":2,"score":0.5814871191978455},{"id":"https://openalex.org/C153258448","wikidata":"https://www.wikidata.org/wiki/Q1199743","display_name":"Gradient descent","level":3,"score":0.5509554147720337},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.48827576637268066},{"id":"https://openalex.org/C14166107","wikidata":"https://www.wikidata.org/wiki/Q253829","display_name":"Net (polyhedron)","level":2,"score":0.4711795151233673},{"id":"https://openalex.org/C152139883","wikidata":"https://www.wikidata.org/wiki/Q252973","display_name":"Mutual information","level":2,"score":0.44970273971557617},{"id":"https://openalex.org/C2778091609","wikidata":"https://www.wikidata.org/wiki/Q14713","display_name":"Mount","level":2,"score":0.4320046603679657},{"id":"https://openalex.org/C2781238097","wikidata":"https://www.wikidata.org/wiki/Q175026","display_name":"Object (grammar)","level":2,"score":0.41024696826934814},{"id":"https://openalex.org/C153180895","wikidata":"https://www.wikidata.org/wiki/Q7148389","display_name":"Pattern recognition (psychology)","level":2,"score":0.3693450689315796},{"id":"https://openalex.org/C31972630","wikidata":"https://www.wikidata.org/wiki/Q844240","display_name":"Computer vision","level":1,"score":0.32868432998657227},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.13082730770111084},{"id":"https://openalex.org/C76155785","wikidata":"https://www.wikidata.org/wiki/Q418","display_name":"Telecommunications","level":1,"score":0.0},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.0},{"id":"https://openalex.org/C2524010","wikidata":"https://www.wikidata.org/wiki/Q8087","display_name":"Geometry","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/3321705.3331002","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3321705.3331002","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2019 ACM Asia Conference on Computer and Communications Security","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/4","display_name":"Quality Education","score":0.6299999952316284}],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":11,"referenced_works":["https://openalex.org/W2603766943","https://openalex.org/W2618043096","https://openalex.org/W2755655609","https://openalex.org/W2766972025","https://openalex.org/W2799031185","https://openalex.org/W2804093830","https://openalex.org/W2951644823","https://openalex.org/W2963389226","https://openalex.org/W2963604280","https://openalex.org/W2963744840","https://openalex.org/W2964253222"],"related_works":["https://openalex.org/W4390763661","https://openalex.org/W2391780702","https://openalex.org/W2356532375","https://openalex.org/W2348949422","https://openalex.org/W4240803905","https://openalex.org/W1964866695","https://openalex.org/W2393173860","https://openalex.org/W4401356410","https://openalex.org/W2505297628","https://openalex.org/W4403039179"],"abstract_inverted_index":{"Deep":[0],"learning":[1],"is":[2],"well-known":[3],"for":[4],"its":[5],"great":[6],"performances":[7],"on":[8,67],"images":[9,26],"classification,":[10],"object":[11],"detection,":[12],"and":[13,62,82,87,95],"natural":[14],"language":[15],"processing.":[16],"However,":[17],"the":[18,57,64],"recent":[19],"research":[20],"has":[21],"demonstrated":[22],"that":[23,72],"visually":[24],"indistinguishable":[25],"called":[27,60],"adversarial":[28,52],"examples":[29],"can":[30,98],"successfully":[31],"fool":[32],"neural":[33,92],"networks":[34],"by":[35,102],"carefully":[36],"crafting.":[37],"In":[38],"this":[39],"paper,":[40],"we":[41,55],"design":[42],"a":[43],"detector":[44,65],"named":[45],"MID,":[46],"calculating":[47],"mutual":[48],"information":[49],"to":[50,90],"characterize":[51],"subspaces.":[53],"Meanwhile,":[54],"use":[56],"defense":[58],"framework":[59],"MagNet":[61],"mount":[63],"MID":[66],"it.":[68],"Experimental":[69],"results":[70],"show":[71],"projected":[73],"gradient":[74],"descent":[75],"(PGD),":[76],"basic":[77],"iterative":[78],"method":[79],"(BIM),":[80],"Carlini":[81],"Wanger's":[83],"attack":[84,89],"(C&W":[85],"attack)":[86],"elastic-net":[88],"deep":[91],"network":[93],"(elastic-net":[94],"L1":[96],"rules)":[97],"be":[99],"effectively":[100],"defended":[101],"our":[103],"method.":[104]},"counts_by_year":[],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
