{"id":"https://openalex.org/W3088982179","doi":"https://doi.org/10.2352/issn.2470-1173.2020.4.mwsf-119","title":"The Effect of Class Definitions on the Transferability of Adversarial Attacks Against Forensic CNNs","display_name":"The Effect of Class Definitions on the Transferability of Adversarial Attacks Against Forensic CNNs","publication_year":2020,"publication_date":"2020-01-26","ids":{"openalex":"https://openalex.org/W3088982179","doi":"https://doi.org/10.2352/issn.2470-1173.2020.4.mwsf-119","mag":"3088982179"},"language":"en","primary_location":{"id":"doi:10.2352/issn.2470-1173.2020.4.mwsf-119","is_oa":false,"landing_page_url":"https://doi.org/10.2352/issn.2470-1173.2020.4.mwsf-119","pdf_url":null,"source":{"id":"https://openalex.org/S4210227276","display_name":"Electronic Imaging","issn_l":"2470-1173","issn":["2470-1173"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Electronic Imaging","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5101857711","display_name":"Xinwei Zhao","orcid":"https://orcid.org/0000-0002-4328-4846"},"institutions":[{"id":"https://openalex.org/I72816309","display_name":"Drexel University","ror":"https://ror.org/04bdffz58","country_code":"US","type":"education","lineage":["https://openalex.org/I72816309"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Xinwei Zhao","raw_affiliation_strings":["Drexel University; Philadelphia, PA,"],"affiliations":[{"raw_affiliation_string":"Drexel University; Philadelphia, PA,","institution_ids":["https://openalex.org/I72816309"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5023433042","display_name":"Matthew C. Stamm","orcid":"https://orcid.org/0000-0002-3986-4039"},"institutions":[{"id":"https://openalex.org/I72816309","display_name":"Drexel University","ror":"https://ror.org/04bdffz58","country_code":"US","type":"education","lineage":["https://openalex.org/I72816309"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"Matthew C. Stamm","raw_affiliation_strings":["Drexel University; Philadelphia, PA,"],"affiliations":[{"raw_affiliation_string":"Drexel University; Philadelphia, PA,","institution_ids":["https://openalex.org/I72816309"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":2,"corresponding_author_ids":["https://openalex.org/A5023433042"],"corresponding_institution_ids":["https://openalex.org/I72816309"],"apc_list":null,"apc_paid":null,"fwci":0.3926,"has_fulltext":false,"cited_by_count":5,"citation_normalized_percentile":{"value":0.62481144,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":90,"max":95},"biblio":{"volume":"32","issue":"4","first_page":"119","last_page":"1"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T12357","display_name":"Digital Media Forensic Detection","score":0.9937000274658203,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T12357","display_name":"Digital Media Forensic Detection","score":0.9937000274658203,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9914000034332275,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9107000231742859,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/transferability","display_name":"Transferability","score":0.9458920955657959},{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.8123979568481445},{"id":"https://openalex.org/keywords/class","display_name":"Class (philosophy)","score":0.6848016977310181},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.5313620567321777},{"id":"https://openalex.org/keywords/forensic-science","display_name":"Forensic science","score":0.5163778066635132},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.4112110733985901},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.38803812861442566},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.3101024031639099},{"id":"https://openalex.org/keywords/history","display_name":"History","score":0.10473302006721497},{"id":"https://openalex.org/keywords/archaeology","display_name":"Archaeology","score":0.047960638999938965}],"concepts":[{"id":"https://openalex.org/C61272859","wikidata":"https://www.wikidata.org/wiki/Q7834031","display_name":"Transferability","level":3,"score":0.9458920955657959},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.8123979568481445},{"id":"https://openalex.org/C2777212361","wikidata":"https://www.wikidata.org/wiki/Q5127848","display_name":"Class (philosophy)","level":2,"score":0.6848016977310181},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.5313620567321777},{"id":"https://openalex.org/C140505726","wikidata":"https://www.wikidata.org/wiki/Q495304","display_name":"Forensic science","level":2,"score":0.5163778066635132},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.4112110733985901},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.38803812861442566},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.3101024031639099},{"id":"https://openalex.org/C95457728","wikidata":"https://www.wikidata.org/wiki/Q309","display_name":"History","level":0,"score":0.10473302006721497},{"id":"https://openalex.org/C166957645","wikidata":"https://www.wikidata.org/wiki/Q23498","display_name":"Archaeology","level":1,"score":0.047960638999938965},{"id":"https://openalex.org/C140331021","wikidata":"https://www.wikidata.org/wiki/Q1868104","display_name":"Logit","level":2,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.2352/issn.2470-1173.2020.4.mwsf-119","is_oa":false,"landing_page_url":"https://doi.org/10.2352/issn.2470-1173.2020.4.mwsf-119","pdf_url":null,"source":{"id":"https://openalex.org/S4210227276","display_name":"Electronic Imaging","issn_l":"2470-1173","issn":["2470-1173"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Electronic Imaging","raw_type":"journal-article"}],"best_oa_location":null,"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/16","display_name":"Peace, Justice and strong institutions","score":0.7200000286102295}],"awards":[{"id":"https://openalex.org/G7915527124","display_name":null,"funder_award_id":"1553610","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"}],"funders":[{"id":"https://openalex.org/F4320306076","display_name":"National Science Foundation","ror":"https://ror.org/021nxhr62"},{"id":"https://openalex.org/F4320332180","display_name":"Defense Advanced Research Projects Agency","ror":"https://ror.org/02caytj08"},{"id":"https://openalex.org/F4320338294","display_name":"Air Force Research Laboratory","ror":"https://ror.org/02e2egq70"}],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":49,"referenced_works":["https://openalex.org/W9657784","https://openalex.org/W120119343","https://openalex.org/W1515158941","https://openalex.org/W1540464366","https://openalex.org/W1686810756","https://openalex.org/W1945616565","https://openalex.org/W1975528596","https://openalex.org/W1994743750","https://openalex.org/W2046686077","https://openalex.org/W2049771774","https://openalex.org/W2108810722","https://openalex.org/W2112507308","https://openalex.org/W2119952502","https://openalex.org/W2130225759","https://openalex.org/W2137405310","https://openalex.org/W2148685281","https://openalex.org/W2158071928","https://openalex.org/W2159244236","https://openalex.org/W2159811049","https://openalex.org/W2162963619","https://openalex.org/W2180612164","https://openalex.org/W2243397390","https://openalex.org/W2408141691","https://openalex.org/W2514123796","https://openalex.org/W2541922885","https://openalex.org/W2561004319","https://openalex.org/W2570685808","https://openalex.org/W2572787276","https://openalex.org/W2603766943","https://openalex.org/W2735495738","https://openalex.org/W2738082853","https://openalex.org/W2739273633","https://openalex.org/W2752131513","https://openalex.org/W2774322245","https://openalex.org/W2791407790","https://openalex.org/W2798117183","https://openalex.org/W2888338418","https://openalex.org/W2888822137","https://openalex.org/W2890640722","https://openalex.org/W2892948265","https://openalex.org/W2903213484","https://openalex.org/W2909130752","https://openalex.org/W2949103145","https://openalex.org/W2962738629","https://openalex.org/W2963446712","https://openalex.org/W2963857521","https://openalex.org/W2978078758","https://openalex.org/W3098779409","https://openalex.org/W4320013936"],"related_works":["https://openalex.org/W4288055406","https://openalex.org/W3092178728","https://openalex.org/W4226402597","https://openalex.org/W4200630034","https://openalex.org/W3137894200","https://openalex.org/W3132910851","https://openalex.org/W4377864639","https://openalex.org/W2997056298","https://openalex.org/W2950864148","https://openalex.org/W2570685808"],"abstract_inverted_index":{"In":[0],"recent":[1,79],"years,":[2],"convolutional":[3],"neural":[4],"networks":[5],"(CNNs)":[6],"have":[7,27,92],"been":[8,28],"widely":[9],"used":[10],"by":[11,81],"researchers":[12],"to":[13,46,67,76,95,137,142,144,188],"perform":[14],"forensic":[15,90,113,183],"tasks":[16],"such":[17],"as":[18],"image":[19,139],"tampering":[20],"detection.At":[21],"the":[22,37,52,151,155,161,172,179],"same":[23,156,162],"time,":[24],"adversarial":[25,40,110,132,189],"attacks":[26,69,88,111,133],"developed":[29],"that":[30,64,87,109,129,165,185],"are":[31,65,74,115,186],"capable":[32],"of":[33,39,168,182],"fooling":[34],"CNN-based":[35],"classifiers.Understanding":[36],"transferability":[38],"attacks,":[41],"i.e.":[42],"an":[43],"attack's":[44],"ability":[45],"attack":[47],"a":[48],"different":[49,103],"CNN":[50,97,126,157],"than":[51,119],"one":[53],"it":[54],"was":[55],"trained":[56,101,136,159],"against,":[57],"has":[58,85,175],"important":[59,176],"implications":[60,177],"for":[61,178],"designing":[62],"CNNs":[63,73,91,100,114,135,145,184],"resistant":[66],"attacks.While":[68],"on":[70,89,112],"object":[71],"recognition":[72],"believed":[75],"be":[77],"transferrable,":[78],"work":[80],"Barni":[82],"et":[83],"al.":[84],"shown":[86],"difficulty":[93],"transferring":[94],"other":[96],"architectures":[98,158],"or":[99],"using":[102,160],"datasets.In":[104],"this":[105],"paper,":[106],"we":[107],"demonstrate":[108],"even":[116],"less":[117],"transferrable":[118],"previously":[120],"thought":[121],"-even":[122],"between":[123],"virtually":[124],"identical":[125],"architectures!We":[127],"show":[128],"several":[130],"common":[131],"against":[134],"identify":[138],"manipulation":[140],"fail":[141],"transfer":[143],"whose":[146],"only":[147],"difference":[148],"is":[149],"in":[150],"class":[152,169],"definitions":[153,170],"(i.e.":[154],"data).We":[163],"note":[164],"all":[166],"formulations":[167],"contain":[171],"\"unaltered\"":[173],"class.This":[174],"future":[180],"design":[181],"robust":[187],"and":[190],"anti-forensic":[191],"attacks.":[192]},"counts_by_year":[{"year":2025,"cited_by_count":1},{"year":2023,"cited_by_count":1},{"year":2022,"cited_by_count":1},{"year":2021,"cited_by_count":2}],"updated_date":"2026-04-21T08:09:41.155169","created_date":"2025-10-10T00:00:00"}
