{"id":"https://openalex.org/W7138303755","doi":"https://doi.org/10.1609/aaai.v40i16.38422","title":"Boosting Adversarial Transferability via Ensemble Non-Attention","display_name":"Boosting Adversarial Transferability via Ensemble Non-Attention","publication_year":2026,"publication_date":"2026-03-14","ids":{"openalex":"https://openalex.org/W7138303755","doi":"https://doi.org/10.1609/aaai.v40i16.38422"},"language":null,"primary_location":{"id":"doi:10.1609/aaai.v40i16.38422","is_oa":true,"landing_page_url":"https://doi.org/10.1609/aaai.v40i16.38422","pdf_url":"https://ojs.aaai.org/index.php/AAAI/article/download/38422/42384","source":{"id":"https://openalex.org/S4210191458","display_name":"Proceedings of the AAAI Conference on Artificial Intelligence","issn_l":"2159-5399","issn":["2159-5399","2374-3468"],"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/P4310320058","host_organization_name":"Association for the Advancement of Artificial Intelligence","host_organization_lineage":["https://openalex.org/P4310320058"],"host_organization_lineage_names":["Association for the Advancement of Artificial Intelligence"],"type":"conference"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the AAAI Conference on Artificial Intelligence","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"diamond","oa_url":"https://ojs.aaai.org/index.php/AAAI/article/download/38422/42384","any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5083449533","display_name":"Yipeng Zou","orcid":null},"institutions":[{"id":"https://openalex.org/I16609230","display_name":"Hunan University","ror":"https://ror.org/05htk5m33","country_code":"CN","type":"education","lineage":["https://openalex.org/I16609230"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yipeng Zou","raw_affiliation_strings":["College of Computer Science and Electronic Engineering, Hunan University"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"College of Computer Science and Electronic Engineering, Hunan University","institution_ids":["https://openalex.org/I16609230"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5129737079","display_name":"Qin Liu","orcid":null},"institutions":[{"id":"https://openalex.org/I16609230","display_name":"Hunan University","ror":"https://ror.org/05htk5m33","country_code":"CN","type":"education","lineage":["https://openalex.org/I16609230"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Qin Liu","raw_affiliation_strings":["College of Computer Science and Electronic Engineering, Hunan University"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"College of Computer Science and Electronic Engineering, Hunan University","institution_ids":["https://openalex.org/I16609230"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5129708414","display_name":"Jie Wu","orcid":null},"institutions":[{"id":"https://openalex.org/I4210144487","display_name":"Cloud Computing Center","ror":"https://ror.org/04aa0zm65","country_code":"CN","type":"facility","lineage":["https://openalex.org/I4210144487"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Jie Wu","raw_affiliation_strings":["China Telecom Cloud Computing Research Institute\nDepartment of Computer and Information Sciences, Temple University"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"China Telecom Cloud Computing Research Institute\nDepartment of Computer and Information Sciences, Temple University","institution_ids":["https://openalex.org/I4210144487"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5129686348","display_name":"Yu Peng","orcid":null},"institutions":[{"id":"https://openalex.org/I4210090176","display_name":"Institute of Computing Technology","ror":"https://ror.org/0090r4d87","country_code":"CN","type":"facility","lineage":["https://openalex.org/I19820366","https://openalex.org/I4210090176"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yu Peng","raw_affiliation_strings":["Laboratory of Intelligent Collaborative Computing, University of Electronic Science and Technology of China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Laboratory of Intelligent Collaborative Computing, University of Electronic Science and Technology of China","institution_ids":["https://openalex.org/I4210090176"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5129701031","display_name":"Guo Chen","orcid":null},"institutions":[{"id":"https://openalex.org/I16609230","display_name":"Hunan University","ror":"https://ror.org/05htk5m33","country_code":"CN","type":"education","lineage":["https://openalex.org/I16609230"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Guo Chen","raw_affiliation_strings":["College of Computer Science and Electronic Engineering, Hunan University"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"College of Computer Science and Electronic Engineering, Hunan University","institution_ids":["https://openalex.org/I16609230"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5129684728","display_name":"Hui Zhou","orcid":null},"institutions":[{"id":"https://openalex.org/I16609230","display_name":"Hunan University","ror":"https://ror.org/05htk5m33","country_code":"CN","type":"education","lineage":["https://openalex.org/I16609230"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Hui Zhou","raw_affiliation_strings":["College of Computer Science and Electronic Engineering, Hunan University"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"College of Computer Science and Electronic Engineering, Hunan University","institution_ids":["https://openalex.org/I16609230"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5051023120","display_name":"Guanghui Ye","orcid":"https://orcid.org/0009-0001-7713-6550"},"institutions":[{"id":"https://openalex.org/I16609230","display_name":"Hunan University","ror":"https://ror.org/05htk5m33","country_code":"CN","type":"education","lineage":["https://openalex.org/I16609230"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Guanghui Ye","raw_affiliation_strings":["College of Computer Science and Electronic Engineering, Hunan University"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"College of Computer Science and Electronic Engineering, Hunan University","institution_ids":["https://openalex.org/I16609230"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":7,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":true,"cited_by_count":0,"citation_normalized_percentile":{"value":0.44444444,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":"40","issue":"16","first_page":"14104","last_page":"14112"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9919999837875366,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9919999837875366,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10775","display_name":"Generative Adversarial Networks and Image Synthesis","score":0.001500000013038516,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10036","display_name":"Advanced Neural Network Applications","score":0.0010999999940395355,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/ensemble-learning","display_name":"Ensemble learning","score":0.6186000108718872},{"id":"https://openalex.org/keywords/ensemble-forecasting","display_name":"Ensemble forecasting","score":0.5892000198364258},{"id":"https://openalex.org/keywords/boosting","display_name":"Boosting (machine learning)","score":0.588699996471405},{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.47510001063346863},{"id":"https://openalex.org/keywords/gradient-boosting","display_name":"Gradient boosting","score":0.4551999866962433},{"id":"https://openalex.org/keywords/transferability","display_name":"Transferability","score":0.4242999851703644},{"id":"https://openalex.org/keywords/merge","display_name":"Merge (version control)","score":0.3952000141143799},{"id":"https://openalex.org/keywords/categorization","display_name":"Categorization","score":0.31839999556541443}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7502999901771545},{"id":"https://openalex.org/C45942800","wikidata":"https://www.wikidata.org/wiki/Q245652","display_name":"Ensemble learning","level":2,"score":0.6186000108718872},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.6184999942779541},{"id":"https://openalex.org/C119898033","wikidata":"https://www.wikidata.org/wiki/Q3433888","display_name":"Ensemble forecasting","level":2,"score":0.5892000198364258},{"id":"https://openalex.org/C46686674","wikidata":"https://www.wikidata.org/wiki/Q466303","display_name":"Boosting (machine learning)","level":2,"score":0.588699996471405},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.5853999853134155},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.47510001063346863},{"id":"https://openalex.org/C70153297","wikidata":"https://www.wikidata.org/wiki/Q5591907","display_name":"Gradient boosting","level":3,"score":0.4551999866962433},{"id":"https://openalex.org/C61272859","wikidata":"https://www.wikidata.org/wiki/Q7834031","display_name":"Transferability","level":3,"score":0.4242999851703644},{"id":"https://openalex.org/C197129107","wikidata":"https://www.wikidata.org/wiki/Q1921621","display_name":"Merge (version control)","level":2,"score":0.3952000141143799},{"id":"https://openalex.org/C94124525","wikidata":"https://www.wikidata.org/wiki/Q912550","display_name":"Categorization","level":2,"score":0.31839999556541443},{"id":"https://openalex.org/C2776459999","wikidata":"https://www.wikidata.org/wiki/Q2119376","display_name":"Fidelity","level":2,"score":0.30489999055862427},{"id":"https://openalex.org/C150899416","wikidata":"https://www.wikidata.org/wiki/Q1820378","display_name":"Transfer of learning","level":2,"score":0.3034999966621399},{"id":"https://openalex.org/C192209626","wikidata":"https://www.wikidata.org/wiki/Q190909","display_name":"Focus (optics)","level":2,"score":0.2955000102519989},{"id":"https://openalex.org/C196083921","wikidata":"https://www.wikidata.org/wiki/Q7915758","display_name":"Variance (accounting)","level":2,"score":0.2921999990940094},{"id":"https://openalex.org/C127705205","wikidata":"https://www.wikidata.org/wiki/Q5748245","display_name":"Heuristics","level":2,"score":0.2897000014781952},{"id":"https://openalex.org/C120936955","wikidata":"https://www.wikidata.org/wiki/Q2155640","display_name":"Empirical research","level":2,"score":0.2865999937057495},{"id":"https://openalex.org/C45374587","wikidata":"https://www.wikidata.org/wiki/Q12525525","display_name":"Computation","level":2,"score":0.27489998936653137},{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.266400009393692},{"id":"https://openalex.org/C153258448","wikidata":"https://www.wikidata.org/wiki/Q1199743","display_name":"Gradient descent","level":3,"score":0.26499998569488525},{"id":"https://openalex.org/C131675550","wikidata":"https://www.wikidata.org/wiki/Q7646884","display_name":"Surrogate model","level":2,"score":0.258899986743927},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.2549000084400177}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1609/aaai.v40i16.38422","is_oa":true,"landing_page_url":"https://doi.org/10.1609/aaai.v40i16.38422","pdf_url":"https://ojs.aaai.org/index.php/AAAI/article/download/38422/42384","source":{"id":"https://openalex.org/S4210191458","display_name":"Proceedings of the AAAI Conference on Artificial Intelligence","issn_l":"2159-5399","issn":["2159-5399","2374-3468"],"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/P4310320058","host_organization_name":"Association for the Advancement of Artificial Intelligence","host_organization_lineage":["https://openalex.org/P4310320058"],"host_organization_lineage_names":["Association for the Advancement of Artificial Intelligence"],"type":"conference"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the AAAI Conference on Artificial Intelligence","raw_type":"journal-article"}],"best_oa_location":{"id":"doi:10.1609/aaai.v40i16.38422","is_oa":true,"landing_page_url":"https://doi.org/10.1609/aaai.v40i16.38422","pdf_url":"https://ojs.aaai.org/index.php/AAAI/article/download/38422/42384","source":{"id":"https://openalex.org/S4210191458","display_name":"Proceedings of the AAAI Conference on Artificial Intelligence","issn_l":"2159-5399","issn":["2159-5399","2374-3468"],"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/P4310320058","host_organization_name":"Association for the Advancement of Artificial Intelligence","host_organization_lineage":["https://openalex.org/P4310320058"],"host_organization_lineage_names":["Association for the Advancement of Artificial Intelligence"],"type":"conference"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the AAAI Conference on Artificial Intelligence","raw_type":"journal-article"},"sustainable_development_goals":[{"score":0.4560561776161194,"display_name":"Sustainable cities and communities","id":"https://metadata.un.org/sdg/11"}],"awards":[],"funders":[],"has_content":{"grobid_xml":true,"pdf":true},"content_urls":{"pdf":"https://content.openalex.org/works/W7138303755.pdf","grobid_xml":"https://content.openalex.org/works/W7138303755.grobid-xml"},"referenced_works_count":0,"referenced_works":[],"related_works":[],"abstract_inverted_index":{"Ensemble":[0],"attacks":[1,18,198],"integrate":[2],"the":[3,41,56,64,82,86,89,96,106,109,118,127,137,141,153,168,195,210,215],"outputs":[4],"of":[5,45,59,66,92,112,121,129,146,156,166,170,175,202,217],"surrogate":[6,47],"models":[7,48,61,94,114,148],"with":[8,15],"diverse":[9],"architectures,":[10],"which":[11,80],"can":[12],"be":[13,126],"combined":[14],"various":[16],"gradient-based":[17],"to":[19,54,125,151,213],"improve":[20],"adversarial":[21],"transferability.":[22],"However,":[23],"previous":[24],"work":[25,208],"shows":[26],"unsatisfactory":[27],"attack":[28],"performance":[29],"when":[30],"transferring":[31],"across":[32],"heterogeneous":[33,46,113],"model":[34],"architectures.":[35],"The":[36],"main":[37],"reason":[38],"is":[39,103,209],"that":[40,108,189],"gradient":[42,57,98],"update":[43],"directions":[44],"differ":[49],"widely,":[50],"making":[51,63],"it":[52],"hard":[53],"reduce":[55],"variance":[58],"ensemble":[60,77,93,147,197,218,229],"while":[62,178],"best":[65],"individual":[67],"model.":[68],"To":[69],"tackle":[70],"this":[71],"challenge,":[72],"we":[73,135,161],"design":[74,102],"a":[75,163],"novel":[76],"attack,":[78],"NAMEA,":[79],"for":[81],"first":[83,211],"time":[84],"integrates":[85],"gradients":[87,138,169,180],"from":[88,140,173],"non-attention":[90,119,144,171,219],"areas":[91,111,120,145,172],"into":[95,227],"iterative":[97],"optimization":[99],"process.":[100],"Our":[101],"inspired":[104],"by":[105,181,199],"observation":[107],"attention":[110,142,176],"vary":[115],"sharply,":[116],"thus":[117],"ViTs":[122],"are":[123],"likely":[124],"focus":[128],"CNNs":[130,157],"and":[131,143,158,193,204],"vice":[132],"versa.":[133],"Therefore,":[134],"merge":[136],"respectively":[139],"so":[149],"as":[150],"fuse":[152],"transfer":[154],"information":[155],"ViTs.":[159],"Specifically,":[160],"pioneer":[162],"new":[164,225],"way":[165],"decoupling":[167],"those":[174],"areas,":[177],"merging":[179],"meta-learning.":[182],"Empirical":[183],"evaluations":[184],"on":[185],"ImageNet":[186],"dataset":[187],"indicate":[188],"NAMEA":[190],"outperforms":[191],"AdaEA":[192],"SMER,":[194],"state-of-the-art":[196],"an":[200],"average":[201],"15.0%":[203],"9.6%,":[205],"respectively.":[206],"This":[207],"attempt":[212],"explore":[214],"power":[216],"in":[220],"boosting":[221],"cross-architecture":[222],"transferability,":[223],"providing":[224],"insights":[226],"launching":[228],"attacks.":[230]},"counts_by_year":[],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2026-03-18T00:00:00"}
