{"id":"https://openalex.org/W4386067010","doi":"https://doi.org/10.23919/mva57639.2023.10215758","title":"Black-box Adversarial Attack against Visual Interpreters for Deep Neural Networks","display_name":"Black-box Adversarial Attack against Visual Interpreters for Deep Neural Networks","publication_year":2023,"publication_date":"2023-07-23","ids":{"openalex":"https://openalex.org/W4386067010","doi":"https://doi.org/10.23919/mva57639.2023.10215758"},"language":"en","primary_location":{"id":"doi:10.23919/mva57639.2023.10215758","is_oa":false,"landing_page_url":"http://dx.doi.org/10.23919/mva57639.2023.10215758","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2023 18th International Conference on Machine Vision and Applications (MVA)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5109632350","display_name":"Yudai Hirose","orcid":null},"institutions":[{"id":"https://openalex.org/I107139324","display_name":"Kagoshima University","ror":"https://ror.org/03ss88z23","country_code":"JP","type":"education","lineage":["https://openalex.org/I107139324"]}],"countries":["JP"],"is_corresponding":true,"raw_author_name":"Yudai Hirose","raw_affiliation_strings":["Kagoshima University,Japan","Kagoshima University, Japan"],"affiliations":[{"raw_affiliation_string":"Kagoshima University,Japan","institution_ids":["https://openalex.org/I107139324"]},{"raw_affiliation_string":"Kagoshima University, Japan","institution_ids":["https://openalex.org/I107139324"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5020600391","display_name":"Satoshi Ono","orcid":"https://orcid.org/0000-0001-9500-3068"},"institutions":[{"id":"https://openalex.org/I107139324","display_name":"Kagoshima University","ror":"https://ror.org/03ss88z23","country_code":"JP","type":"education","lineage":["https://openalex.org/I107139324"]}],"countries":["JP"],"is_corresponding":false,"raw_author_name":"Satoshi Ono","raw_affiliation_strings":["Kagoshima University,Japan","Kagoshima University, Japan"],"affiliations":[{"raw_affiliation_string":"Kagoshima University,Japan","institution_ids":["https://openalex.org/I107139324"]},{"raw_affiliation_string":"Kagoshima University, Japan","institution_ids":["https://openalex.org/I107139324"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":2,"corresponding_author_ids":["https://openalex.org/A5109632350"],"corresponding_institution_ids":["https://openalex.org/I107139324"],"apc_list":null,"apc_paid":null,"fwci":0.1751,"has_fulltext":false,"cited_by_count":1,"citation_normalized_percentile":{"value":0.55266966,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":97,"max":99},"biblio":{"volume":null,"issue":null,"first_page":"1","last_page":"6"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9997000098228455,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9997000098228455,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12026","display_name":"Explainable Artificial Intelligence (XAI)","score":0.9787999987602234,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11636","display_name":"Artificial Intelligence in Healthcare and Education","score":0.9498999714851379,"subfield":{"id":"https://openalex.org/subfields/2718","display_name":"Health Informatics"},"field":{"id":"https://openalex.org/fields/27","display_name":"Medicine"},"domain":{"id":"https://openalex.org/domains/4","display_name":"Health Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.8508671522140503},{"id":"https://openalex.org/keywords/interpreter","display_name":"Interpreter","score":0.8475663065910339},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7956552505493164},{"id":"https://openalex.org/keywords/black-box","display_name":"Black box","score":0.7177096605300903},{"id":"https://openalex.org/keywords/deep-neural-networks","display_name":"Deep neural networks","score":0.7136717438697815},{"id":"https://openalex.org/keywords/vulnerability","display_name":"Vulnerability (computing)","score":0.6229914426803589},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.5938827991485596},{"id":"https://openalex.org/keywords/image","display_name":"Image (mathematics)","score":0.5895686745643616},{"id":"https://openalex.org/keywords/focus","display_name":"Focus (optics)","score":0.568782389163971},{"id":"https://openalex.org/keywords/artificial-neural-network","display_name":"Artificial neural network","score":0.5371260046958923},{"id":"https://openalex.org/keywords/visualization","display_name":"Visualization","score":0.46813544631004333},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.4091288149356842},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.2893669903278351},{"id":"https://openalex.org/keywords/programming-language","display_name":"Programming language","score":0.05999201536178589}],"concepts":[{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.8508671522140503},{"id":"https://openalex.org/C122783720","wikidata":"https://www.wikidata.org/wiki/Q183065","display_name":"Interpreter","level":2,"score":0.8475663065910339},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7956552505493164},{"id":"https://openalex.org/C94966114","wikidata":"https://www.wikidata.org/wiki/Q29256","display_name":"Black box","level":2,"score":0.7177096605300903},{"id":"https://openalex.org/C2984842247","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep neural networks","level":3,"score":0.7136717438697815},{"id":"https://openalex.org/C95713431","wikidata":"https://www.wikidata.org/wiki/Q631425","display_name":"Vulnerability (computing)","level":2,"score":0.6229914426803589},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.5938827991485596},{"id":"https://openalex.org/C115961682","wikidata":"https://www.wikidata.org/wiki/Q860623","display_name":"Image (mathematics)","level":2,"score":0.5895686745643616},{"id":"https://openalex.org/C192209626","wikidata":"https://www.wikidata.org/wiki/Q190909","display_name":"Focus (optics)","level":2,"score":0.568782389163971},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.5371260046958923},{"id":"https://openalex.org/C36464697","wikidata":"https://www.wikidata.org/wiki/Q451553","display_name":"Visualization","level":2,"score":0.46813544631004333},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.4091288149356842},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.2893669903278351},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.05999201536178589},{"id":"https://openalex.org/C120665830","wikidata":"https://www.wikidata.org/wiki/Q14620","display_name":"Optics","level":1,"score":0.0},{"id":"https://openalex.org/C121332964","wikidata":"https://www.wikidata.org/wiki/Q413","display_name":"Physics","level":0,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.23919/mva57639.2023.10215758","is_oa":false,"landing_page_url":"http://dx.doi.org/10.23919/mva57639.2023.10215758","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2023 18th International Conference on Machine Vision and Applications (MVA)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"score":0.7300000190734863,"display_name":"Peace, Justice and strong institutions","id":"https://metadata.un.org/sdg/16"}],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":49,"referenced_works":["https://openalex.org/W7934506","https://openalex.org/W1567473651","https://openalex.org/W1673923490","https://openalex.org/W1686810756","https://openalex.org/W2133665775","https://openalex.org/W2194775991","https://openalex.org/W2594633041","https://openalex.org/W2605409611","https://openalex.org/W2746600820","https://openalex.org/W2765793020","https://openalex.org/W2798251715","https://openalex.org/W2913039310","https://openalex.org/W2951306478","https://openalex.org/W2962711307","https://openalex.org/W2962843949","https://openalex.org/W2962858109","https://openalex.org/W2963446712","https://openalex.org/W2969004457","https://openalex.org/W2972986629","https://openalex.org/W2979200397","https://openalex.org/W2981485575","https://openalex.org/W3015625436","https://openalex.org/W3022179901","https://openalex.org/W3046768359","https://openalex.org/W3101845682","https://openalex.org/W3106412272","https://openalex.org/W3106483999","https://openalex.org/W3176482836","https://openalex.org/W3204253572","https://openalex.org/W3207651366","https://openalex.org/W3209724601","https://openalex.org/W4205690221","https://openalex.org/W4206414669","https://openalex.org/W4281399026","https://openalex.org/W4288103143","https://openalex.org/W4293517971","https://openalex.org/W4310511014","https://openalex.org/W4324106947","https://openalex.org/W6637162671","https://openalex.org/W6637373629","https://openalex.org/W6687483927","https://openalex.org/W6702989015","https://openalex.org/W6734194636","https://openalex.org/W6736518430","https://openalex.org/W6751045465","https://openalex.org/W6756943956","https://openalex.org/W6758853676","https://openalex.org/W6767666165","https://openalex.org/W6846891949"],"related_works":["https://openalex.org/W2950183588","https://openalex.org/W3080754722","https://openalex.org/W4383221314","https://openalex.org/W3093978547","https://openalex.org/W2953536436","https://openalex.org/W3009622996","https://openalex.org/W3203790781","https://openalex.org/W4313346231","https://openalex.org/W2738001131","https://openalex.org/W4285785480"],"abstract_inverted_index":{"With":[0],"the":[1,81,91,95,105,110],"rapid":[2],"development":[3],"of":[4,94,104],"deep":[5],"neural":[6],"networks":[7],"(DNNs),":[8],"eXplainable":[9],"AI,":[10],"which":[11,34],"provides":[12],"a":[13,27,74,99],"basis":[14],"for":[15],"prediction":[16],"on":[17],"inputs,":[18],"has":[19],"become":[20],"increasingly":[21],"important.":[22],"In":[23],"addition,":[24],"DNNs":[25],"have":[26],"vulnerability":[28],"called":[29],"an":[30],"Adversarial":[31],"Example":[32],"(AE),":[33],"can":[35,47],"cause":[36],"incorrect":[37],"output":[38],"by":[39],"applying":[40],"special":[41],"perturbations":[42],"to":[43,98],"inputs.":[44],"Potential":[45],"vulnerabilities":[46,61],"also":[48],"exist":[49],"in":[50,65],"image":[51,82,96,107],"interpreters":[52],"such":[53],"as":[54,59],"GradCAM,":[55],"necessitating":[56],"their":[57],"investigation,":[58],"these":[60],"could":[62],"potentially":[63],"result":[64],"misdiagnosis":[66],"within":[67],"medical":[68],"imaging.":[69],"Therefore,":[70],"this":[71],"study":[72],"proposes":[73],"black-box":[75],"adversarial":[76],"attack":[77],"method":[78,88],"that":[79,103],"misleads":[80],"interpreter":[83,97],"using":[84],"Sep-CMA-ES.":[85],"The":[86],"proposed":[87],"deceptively":[89],"shifts":[90],"focus":[92],"area":[93],"different":[100],"location":[101],"from":[102],"original":[106],"while":[108],"maintaining":[109],"same":[111],"predictive":[112],"labels.":[113]},"counts_by_year":[{"year":2026,"cited_by_count":1}],"updated_date":"2025-12-21T01:58:51.020947","created_date":"2025-10-10T00:00:00"}
