{"id":"https://openalex.org/W4403791629","doi":"https://doi.org/10.1145/3664647.3681398","title":"PAIR: Pre-denosing Augmented Image Retrieval Model for Defending Adversarial Patches","display_name":"PAIR: Pre-denosing Augmented Image Retrieval Model for Defending Adversarial Patches","publication_year":2024,"publication_date":"2024-10-26","ids":{"openalex":"https://openalex.org/W4403791629","doi":"https://doi.org/10.1145/3664647.3681398"},"language":"en","primary_location":{"id":"doi:10.1145/3664647.3681398","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3664647.3681398","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 32nd ACM International Conference on Multimedia","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5111216488","display_name":"Ziyang Zhou","orcid":"https://orcid.org/0009-0009-3107-7311"},"institutions":[{"id":"https://openalex.org/I87445476","display_name":"Xi'an Jiaotong University","ror":"https://ror.org/017zhmm22","country_code":"CN","type":"education","lineage":["https://openalex.org/I87445476"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Ziyang Zhou","raw_affiliation_strings":["MOE KLINNS Lab, Xi'an Jiaotong University, Xi'an, China"],"raw_orcid":"https://orcid.org/0009-0009-3107-7311","affiliations":[{"raw_affiliation_string":"MOE KLINNS Lab, Xi'an Jiaotong University, Xi'an, China","institution_ids":["https://openalex.org/I87445476"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5102845337","display_name":"Pinghui Wang","orcid":"https://orcid.org/0000-0002-1434-837X"},"institutions":[{"id":"https://openalex.org/I87445476","display_name":"Xi'an Jiaotong University","ror":"https://ror.org/017zhmm22","country_code":"CN","type":"education","lineage":["https://openalex.org/I87445476"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Pinghui Wang","raw_affiliation_strings":["MOE KLINNS Lab, Xi'an Jiaotong University, Xi'an, China"],"raw_orcid":"https://orcid.org/0000-0002-1434-837X","affiliations":[{"raw_affiliation_string":"MOE KLINNS Lab, Xi'an Jiaotong University, Xi'an, China","institution_ids":["https://openalex.org/I87445476"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5104035702","display_name":"Zi Liang","orcid":"https://orcid.org/0009-0003-1418-9537"},"institutions":[{"id":"https://openalex.org/I14243506","display_name":"Hong Kong Polytechnic University","ror":"https://ror.org/0030zas98","country_code":"HK","type":"education","lineage":["https://openalex.org/I14243506"]}],"countries":["HK"],"is_corresponding":false,"raw_author_name":"Zi Liang","raw_affiliation_strings":["The Hong Kong Polytechnic University, Hong Kong, China"],"raw_orcid":"https://orcid.org/0009-0003-1418-9537","affiliations":[{"raw_affiliation_string":"The Hong Kong Polytechnic University, Hong Kong, China","institution_ids":["https://openalex.org/I14243506"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5046102901","display_name":"Ruofei Zhang","orcid":"https://orcid.org/0000-0002-4063-0109"},"institutions":[{"id":"https://openalex.org/I4210153776","display_name":"Apple (United States)","ror":"https://ror.org/059hsda18","country_code":"US","type":"company","lineage":["https://openalex.org/I4210153776"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Ruofei Zhang","raw_affiliation_strings":["Apple, Cupertino, CA, USA"],"raw_orcid":"https://orcid.org/0000-0002-4063-0109","affiliations":[{"raw_affiliation_string":"Apple, Cupertino, CA, USA","institution_ids":["https://openalex.org/I4210153776"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5100954702","display_name":"Bai Haitao","orcid":"https://orcid.org/0009-0002-4248-4587"},"institutions":[{"id":"https://openalex.org/I87445476","display_name":"Xi'an Jiaotong University","ror":"https://ror.org/017zhmm22","country_code":"CN","type":"education","lineage":["https://openalex.org/I87445476"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Haitao Bai","raw_affiliation_strings":["MOE KLINNS Lab, Xi'an Jiaotong University, Xi'an, China"],"raw_orcid":"https://orcid.org/0009-0002-4248-4587","affiliations":[{"raw_affiliation_string":"MOE KLINNS Lab, Xi'an Jiaotong University, Xi'an, China","institution_ids":["https://openalex.org/I87445476"]}]}],"institutions":[],"countries_distinct_count":3,"institutions_distinct_count":5,"corresponding_author_ids":["https://openalex.org/A5111216488"],"corresponding_institution_ids":["https://openalex.org/I87445476"],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":{"value":0.16333978,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":"5771","last_page":"5779"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.998199999332428,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.998199999332428,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12357","display_name":"Digital Media Forensic Detection","score":0.9970999956130981,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10036","display_name":"Advanced Neural Network Applications","score":0.9933000206947327,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.7789061069488525},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.6310069561004639},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.6035503149032593},{"id":"https://openalex.org/keywords/image","display_name":"Image (mathematics)","score":0.6027404069900513},{"id":"https://openalex.org/keywords/image-retrieval","display_name":"Image retrieval","score":0.5611154437065125},{"id":"https://openalex.org/keywords/computer-vision","display_name":"Computer vision","score":0.4259568452835083},{"id":"https://openalex.org/keywords/pattern-recognition","display_name":"Pattern recognition (psychology)","score":0.4231705069541931},{"id":"https://openalex.org/keywords/information-retrieval","display_name":"Information retrieval","score":0.3517112731933594}],"concepts":[{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.7789061069488525},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6310069561004639},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.6035503149032593},{"id":"https://openalex.org/C115961682","wikidata":"https://www.wikidata.org/wiki/Q860623","display_name":"Image (mathematics)","level":2,"score":0.6027404069900513},{"id":"https://openalex.org/C1667742","wikidata":"https://www.wikidata.org/wiki/Q10927554","display_name":"Image retrieval","level":3,"score":0.5611154437065125},{"id":"https://openalex.org/C31972630","wikidata":"https://www.wikidata.org/wiki/Q844240","display_name":"Computer vision","level":1,"score":0.4259568452835083},{"id":"https://openalex.org/C153180895","wikidata":"https://www.wikidata.org/wiki/Q7148389","display_name":"Pattern recognition (psychology)","level":2,"score":0.4231705069541931},{"id":"https://openalex.org/C23123220","wikidata":"https://www.wikidata.org/wiki/Q816826","display_name":"Information retrieval","level":1,"score":0.3517112731933594}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/3664647.3681398","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3664647.3681398","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 32nd ACM International Conference on Multimedia","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":26,"referenced_works":["https://openalex.org/W1773149199","https://openalex.org/W1861492603","https://openalex.org/W2133665775","https://openalex.org/W2765424254","https://openalex.org/W2798834175","https://openalex.org/W2963857521","https://openalex.org/W2990519439","https://openalex.org/W3007603175","https://openalex.org/W3010277541","https://openalex.org/W3014847672","https://openalex.org/W3035552787","https://openalex.org/W3103557498","https://openalex.org/W3108980562","https://openalex.org/W3109275961","https://openalex.org/W3158953723","https://openalex.org/W3176237058","https://openalex.org/W3205945722","https://openalex.org/W4221166007","https://openalex.org/W4313163489","https://openalex.org/W4319301003","https://openalex.org/W4321057353","https://openalex.org/W4372267149","https://openalex.org/W4388820284","https://openalex.org/W4389921502","https://openalex.org/W4400525459","https://openalex.org/W4400530533"],"related_works":["https://openalex.org/W2502115930","https://openalex.org/W2482350142","https://openalex.org/W4246396837","https://openalex.org/W3126451824","https://openalex.org/W1561927205","https://openalex.org/W3191453585","https://openalex.org/W4297672492","https://openalex.org/W4310988119","https://openalex.org/W4285226279","https://openalex.org/W4288019534"],"abstract_inverted_index":{"Deep":[0],"neural":[1],"networks":[2],"are":[3,11,58],"widely":[4],"used":[5],"in":[6,63,181],"retrieval":[7,43,65,86],"systems.":[8,66],"However,":[9],"they":[10],"notoriously":[12],"vulnerable":[13],"to":[14,83,98,141,169],"attack.":[15],"Among":[16],"the":[17,23,29,42,52,72,117,121,160],"various":[18],"forms":[19],"of":[20,28,35,54,95,120,163],"adversarial":[21,89],"attacks,":[22,186],"patch":[24,90,113,166],"attack":[25,36,167],"is":[26,97],"one":[27],"most":[30],"threatening":[31],"forms.":[32],"This":[33,110,135],"type":[34],"can":[37],"introduce":[38],"cognitive":[39],"biases":[40],"into":[41,49],"system":[44],"by":[45],"inserting":[46],"deceptive":[47],"patches":[48],"images.":[50,122,147],"Despite":[51],"seriousness":[53],"this":[55,68],"threat,":[56],"there":[57],"still":[59],"no":[60],"well-established":[61],"solutions":[62],"image":[64,85],"In":[67],"paper,":[69],"we":[70,124],"propose":[71],"Pre-denosing":[73],"Augmented":[74],"Image":[75],"Retrieval":[76],"(PAIR)":[77],"model,":[78],"a":[79,126,132,173],"new":[80],"approach":[81],"designed":[82],"protect":[84],"systems":[87],"against":[88,183],"attacks.":[91],"The":[92],"core":[93],"strategy":[94,129],"PAIR":[96,151,187],"dynamically":[99],"and":[100,145],"randomly":[101],"reconstruct":[102,146],"entire":[103],"images":[104],"based":[105],"on":[106],"their":[107],"semantic":[108,118,133],"content.":[109],"purifies":[111],"well-designed":[112],"attacks":[114],"while":[115],"preserving":[116],"integrity":[119],"Furthermore,":[123],"present":[125],"novel":[127],"training":[128],"that":[130,150],"incorporates":[131],"discriminator.":[134],"discriminator":[136],"significantly":[137,152],"improves":[138],"PAIR's":[139],"ability":[140],"capture":[142],"real":[143],"semantics":[144],"Experiments":[148],"show":[149],"outperforms":[153],"existing":[154],"defense":[155],"methods.":[156,179],"It":[157],"effectively":[158],"reduces":[159],"success":[161],"rate":[162],"two":[164],"state-of-the-art":[165],"methods":[168],"below":[170],"5%,":[171],"achieving":[172],"14%":[174],"improvement":[175],"over":[176],"current":[177],"leading":[178],"Moreover,":[180],"defending":[182],"global":[184],"perturbation":[185],"also":[188],"achieves":[189],"competitive":[190],"results.":[191]},"counts_by_year":[],"updated_date":"2026-03-27T05:58:40.876381","created_date":"2025-10-10T00:00:00"}
