{"id":"https://openalex.org/W2955566917","doi":"https://doi.org/10.24963/ijcai.2019/824","title":"Global Robustness Evaluation of Deep Neural Networks with Provable Guarantees for the Hamming Distance","display_name":"Global Robustness Evaluation of Deep Neural Networks with Provable Guarantees for the Hamming Distance","publication_year":2019,"publication_date":"2019-07-28","ids":{"openalex":"https://openalex.org/W2955566917","doi":"https://doi.org/10.24963/ijcai.2019/824","mag":"2955566917"},"language":"en","primary_location":{"id":"doi:10.24963/ijcai.2019/824","is_oa":true,"landing_page_url":"https://doi.org/10.24963/ijcai.2019/824","pdf_url":"https://www.ijcai.org/proceedings/2019/0824.pdf","source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the Twenty-Eighth International Joint Conference on Artificial Intelligence","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"gold","oa_url":"https://www.ijcai.org/proceedings/2019/0824.pdf","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5074225885","display_name":"Wenjie Ruan","orcid":"https://orcid.org/0000-0002-8311-8738"},"institutions":[{"id":"https://openalex.org/I40120149","display_name":"University of Oxford","ror":"https://ror.org/052gg0110","country_code":"GB","type":"education","lineage":["https://openalex.org/I40120149"]}],"countries":["GB"],"is_corresponding":true,"raw_author_name":"Wenjie Ruan","raw_affiliation_strings":["Department of Computer Science, University of Oxford"],"affiliations":[{"raw_affiliation_string":"Department of Computer Science, University of Oxford","institution_ids":["https://openalex.org/I40120149"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100340964","display_name":"Min Wu","orcid":"https://orcid.org/0000-0003-0977-3600"},"institutions":[{"id":"https://openalex.org/I40120149","display_name":"University of Oxford","ror":"https://ror.org/052gg0110","country_code":"GB","type":"education","lineage":["https://openalex.org/I40120149"]}],"countries":["GB"],"is_corresponding":false,"raw_author_name":"Min Wu","raw_affiliation_strings":["Department of Computer Science, University of Oxford"],"affiliations":[{"raw_affiliation_string":"Department of Computer Science, University of Oxford","institution_ids":["https://openalex.org/I40120149"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5060663223","display_name":"Youcheng Sun","orcid":"https://orcid.org/0000-0002-1893-6259"},"institutions":[{"id":"https://openalex.org/I40120149","display_name":"University of Oxford","ror":"https://ror.org/052gg0110","country_code":"GB","type":"education","lineage":["https://openalex.org/I40120149"]}],"countries":["GB"],"is_corresponding":false,"raw_author_name":"Youcheng Sun","raw_affiliation_strings":["Department of Computer Science, University of Oxford"],"affiliations":[{"raw_affiliation_string":"Department of Computer Science, University of Oxford","institution_ids":["https://openalex.org/I40120149"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5020085889","display_name":"Xiaowei Huang","orcid":"https://orcid.org/0000-0001-6267-0366"},"institutions":[{"id":"https://openalex.org/I146655781","display_name":"University of Liverpool","ror":"https://ror.org/04xs57h96","country_code":"GB","type":"education","lineage":["https://openalex.org/I146655781"]}],"countries":["GB"],"is_corresponding":false,"raw_author_name":"Xiaowei Huang","raw_affiliation_strings":["Department of Computer Science, University of Liverpool"],"affiliations":[{"raw_affiliation_string":"Department of Computer Science, University of Liverpool","institution_ids":["https://openalex.org/I146655781"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5086206346","display_name":"Daniel Kroening","orcid":"https://orcid.org/0000-0002-6681-5283"},"institutions":[{"id":"https://openalex.org/I40120149","display_name":"University of Oxford","ror":"https://ror.org/052gg0110","country_code":"GB","type":"education","lineage":["https://openalex.org/I40120149"]}],"countries":["GB"],"is_corresponding":false,"raw_author_name":"Daniel Kroening","raw_affiliation_strings":["Department of Computer Science, University of Oxford"],"affiliations":[{"raw_affiliation_string":"Department of Computer Science, University of Oxford","institution_ids":["https://openalex.org/I40120149"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5081710233","display_name":"Marta Kwiatkowska","orcid":"https://orcid.org/0000-0001-9022-7599"},"institutions":[{"id":"https://openalex.org/I40120149","display_name":"University of Oxford","ror":"https://ror.org/052gg0110","country_code":"GB","type":"education","lineage":["https://openalex.org/I40120149"]}],"countries":["GB"],"is_corresponding":false,"raw_author_name":"Marta Kwiatkowska","raw_affiliation_strings":["Department of Computer Science, University of Oxford"],"affiliations":[{"raw_affiliation_string":"Department of Computer Science, University of Oxford","institution_ids":["https://openalex.org/I40120149"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":6,"corresponding_author_ids":["https://openalex.org/A5074225885"],"corresponding_institution_ids":["https://openalex.org/I40120149"],"apc_list":null,"apc_paid":null,"fwci":6.7918,"has_fulltext":true,"cited_by_count":88,"citation_normalized_percentile":{"value":0.97410629,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":90,"max":100},"biblio":{"volume":null,"issue":null,"first_page":"5944","last_page":"5952"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10036","display_name":"Advanced Neural Network Applications","score":0.9743000268936157,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10743","display_name":"Software Testing and Debugging Techniques","score":0.9259999990463257,"subfield":{"id":"https://openalex.org/subfields/1712","display_name":"Software"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness (evolution)","score":0.7719079852104187},{"id":"https://openalex.org/keywords/computation","display_name":"Computation","score":0.6824121475219727},{"id":"https://openalex.org/keywords/hamming-distance","display_name":"Hamming distance","score":0.644573450088501},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.6336830258369446},{"id":"https://openalex.org/keywords/artificial-neural-network","display_name":"Artificial neural network","score":0.46583929657936096},{"id":"https://openalex.org/keywords/algorithm","display_name":"Algorithm","score":0.4455637037754059},{"id":"https://openalex.org/keywords/mathematical-optimization","display_name":"Mathematical optimization","score":0.42994844913482666},{"id":"https://openalex.org/keywords/upper-and-lower-bounds","display_name":"Upper and lower bounds","score":0.41980960965156555},{"id":"https://openalex.org/keywords/hamming-code","display_name":"Hamming code","score":0.41816896200180054},{"id":"https://openalex.org/keywords/theoretical-computer-science","display_name":"Theoretical computer science","score":0.32193636894226074},{"id":"https://openalex.org/keywords/mathematics","display_name":"Mathematics","score":0.30257201194763184},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.25569361448287964},{"id":"https://openalex.org/keywords/decoding-methods","display_name":"Decoding methods","score":0.11608520150184631}],"concepts":[{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.7719079852104187},{"id":"https://openalex.org/C45374587","wikidata":"https://www.wikidata.org/wiki/Q12525525","display_name":"Computation","level":2,"score":0.6824121475219727},{"id":"https://openalex.org/C193319292","wikidata":"https://www.wikidata.org/wiki/Q272172","display_name":"Hamming distance","level":2,"score":0.644573450088501},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6336830258369446},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.46583929657936096},{"id":"https://openalex.org/C11413529","wikidata":"https://www.wikidata.org/wiki/Q8366","display_name":"Algorithm","level":1,"score":0.4455637037754059},{"id":"https://openalex.org/C126255220","wikidata":"https://www.wikidata.org/wiki/Q141495","display_name":"Mathematical optimization","level":1,"score":0.42994844913482666},{"id":"https://openalex.org/C77553402","wikidata":"https://www.wikidata.org/wiki/Q13222579","display_name":"Upper and lower bounds","level":2,"score":0.41980960965156555},{"id":"https://openalex.org/C73150493","wikidata":"https://www.wikidata.org/wiki/Q853922","display_name":"Hamming code","level":4,"score":0.41816896200180054},{"id":"https://openalex.org/C80444323","wikidata":"https://www.wikidata.org/wiki/Q2878974","display_name":"Theoretical computer science","level":1,"score":0.32193636894226074},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.30257201194763184},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.25569361448287964},{"id":"https://openalex.org/C57273362","wikidata":"https://www.wikidata.org/wiki/Q576722","display_name":"Decoding methods","level":2,"score":0.11608520150184631},{"id":"https://openalex.org/C104317684","wikidata":"https://www.wikidata.org/wiki/Q7187","display_name":"Gene","level":2,"score":0.0},{"id":"https://openalex.org/C157125643","wikidata":"https://www.wikidata.org/wiki/Q884707","display_name":"Block code","level":3,"score":0.0},{"id":"https://openalex.org/C55493867","wikidata":"https://www.wikidata.org/wiki/Q7094","display_name":"Biochemistry","level":1,"score":0.0},{"id":"https://openalex.org/C185592680","wikidata":"https://www.wikidata.org/wiki/Q2329","display_name":"Chemistry","level":0,"score":0.0},{"id":"https://openalex.org/C134306372","wikidata":"https://www.wikidata.org/wiki/Q7754","display_name":"Mathematical analysis","level":1,"score":0.0}],"mesh":[],"locations_count":6,"locations":[{"id":"doi:10.24963/ijcai.2019/824","is_oa":true,"landing_page_url":"https://doi.org/10.24963/ijcai.2019/824","pdf_url":"https://www.ijcai.org/proceedings/2019/0824.pdf","source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the Twenty-Eighth International Joint Conference on Artificial Intelligence","raw_type":"proceedings-article"},{"id":"pmh:oai:pure.atira.dk:openaire_cris_publications/48078fe4-1ff8-4900-9f0a-fdaf036b5fcf","is_oa":false,"landing_page_url":"https://research.manchester.ac.uk/en/publications/48078fe4-1ff8-4900-9f0a-fdaf036b5fcf","pdf_url":null,"source":{"id":"https://openalex.org/S4306400662","display_name":"Research Explorer (The University of Manchester)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I28407311","host_organization_name":"University of Manchester","host_organization_lineage":["https://openalex.org/I28407311"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Ruan, W, Wu, M, Sun, Y, Huang, X, Kroening, D & Kwiatkowska, M 2019, Global Robustness Evaluation of Deep Neural Networks with Provable Guarantees for the Hamming Distance. in International Joint Conferences on Artificial Intelligence Organization: Proceedings. https://doi.org/10.24963/ijcai.2019/824","raw_type":"info:eu-repo/semantics/publishedVersion"},{"id":"pmh:oai:eprints.lancs.ac.uk:134939","is_oa":true,"landing_page_url":null,"pdf_url":"https://eprints.lancs.ac.uk/id/eprint/134939/1/RWSHKK19.pdf","source":{"id":"https://openalex.org/S4306401916","display_name":"Lancaster EPrints (Lancaster University)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I67415387","host_organization_name":"Lancaster University","host_organization_lineage":["https://openalex.org/I67415387"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"PeerReviewed"},{"id":"pmh:oai:ora.ox.ac.uk:uuid:a8a310af-9ae8-4cc8-8712-02b1f085fbd5","is_oa":false,"landing_page_url":"https://ora.ox.ac.uk/objects/uuid:a8a310af-9ae8-4cc8-8712-02b1f085fbd5","pdf_url":null,"source":{"id":"https://openalex.org/S4306402636","display_name":"Oxford University Research Archive (ORA) (University of Oxford)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I40120149","host_organization_name":"University of Oxford","host_organization_lineage":["https://openalex.org/I40120149"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":"Conference item"},{"id":"pmh:oai:ore.exeter.ac.uk:10871/122299","is_oa":false,"landing_page_url":"http://hdl.handle.net/10871/122299","pdf_url":null,"source":{"id":"https://openalex.org/S4306401998","display_name":"Open Research Exeter (University of Exeter)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I23923803","host_organization_name":"University of Exeter","host_organization_lineage":["https://openalex.org/I23923803"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"Conference paper"},{"id":"pmh:oai:pure.qub.ac.uk/portal:publications/f6147db2-efd5-4be4-9b9e-f17cc25f8b36","is_oa":false,"landing_page_url":"https://pure.qub.ac.uk/en/publications/f6147db2-efd5-4be4-9b9e-f17cc25f8b36","pdf_url":null,"source":{"id":"https://openalex.org/S4306402319","display_name":"Research Portal (Queen's University Belfast)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I126231945","host_organization_name":"Queen's University Belfast","host_organization_lineage":["https://openalex.org/I126231945"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"Ruan , W , Wu , M , Sun , Y , Huang , X , Kroening , D &amp; Kwiatkowska , M 2019 , Global Robustness Evaluation of Deep Neural Networks with Provable Guarantees for the Hamming Distance . in International Joint Conferences on Artificial Intelligence Organization: Proceedings . pp. 5944-5952 . https://doi.org/10.24963/ijcai.2019/824","raw_type":"contributionToPeriodical"}],"best_oa_location":{"id":"doi:10.24963/ijcai.2019/824","is_oa":true,"landing_page_url":"https://doi.org/10.24963/ijcai.2019/824","pdf_url":"https://www.ijcai.org/proceedings/2019/0824.pdf","source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the Twenty-Eighth International Joint Conference on Artificial Intelligence","raw_type":"proceedings-article"},"sustainable_development_goals":[],"awards":[{"id":"https://openalex.org/G1093520412","display_name":null,"funder_award_id":"Scholarship","funder_id":"https://openalex.org/F4320334627","funder_display_name":"Engineering and Physical Sciences Research Council"},{"id":"https://openalex.org/G2241406505","display_name":null,"funder_award_id":"EP/R007187/1","funder_id":"https://openalex.org/F4320334627","funder_display_name":"Engineering and Physical Sciences Research Council"},{"id":"https://openalex.org/G2483205037","display_name":null,"funder_award_id":"EP/M019918/1","funder_id":"https://openalex.org/F4320334627","funder_display_name":"Engineering and Physical Sciences Research Council"},{"id":"https://openalex.org/G4245053905","display_name":"Mobile Robotics: Enabling a Pervasive Technology of the Future","funder_award_id":"EP/M019918/1","funder_id":"https://openalex.org/F4320334627","funder_display_name":"Engineering and Physical Sciences Research Council"},{"id":"https://openalex.org/G5445011987","display_name":null,"funder_award_id":"EP/K004379/1","funder_id":"https://openalex.org/F4320334627","funder_display_name":"Engineering and Physical Sciences Research Council"},{"id":"https://openalex.org/G6577499357","display_name":null,"funder_award_id":"EP/N508664/1","funder_id":"https://openalex.org/F4320334627","funder_display_name":"Engineering and Physical Sciences Research Council"}],"funders":[{"id":"https://openalex.org/F4320322725","display_name":"China Scholarship Council","ror":"https://ror.org/04atp4p48"},{"id":"https://openalex.org/F4320334627","display_name":"Engineering and Physical Sciences Research Council","ror":"https://ror.org/0439y7842"}],"has_content":{"pdf":true,"grobid_xml":true},"content_urls":{"pdf":"https://content.openalex.org/works/W2955566917.pdf","grobid_xml":"https://content.openalex.org/works/W2955566917.grobid-xml"},"referenced_works_count":26,"referenced_works":["https://openalex.org/W1673923490","https://openalex.org/W1945616565","https://openalex.org/W2144906988","https://openalex.org/W2180612164","https://openalex.org/W2543296129","https://openalex.org/W2594877703","https://openalex.org/W2721006554","https://openalex.org/W2753542656","https://openalex.org/W2757182288","https://openalex.org/W2760733685","https://openalex.org/W2794609696","https://openalex.org/W2798164686","https://openalex.org/W2800473699","https://openalex.org/W2803850896","https://openalex.org/W2869036160","https://openalex.org/W2963207607","https://openalex.org/W2963208512","https://openalex.org/W2963673089","https://openalex.org/W2963857521","https://openalex.org/W2963913218","https://openalex.org/W2964116600","https://openalex.org/W2964153729","https://openalex.org/W3100935330","https://openalex.org/W4298162466","https://openalex.org/W4300511536","https://openalex.org/W4302294892"],"related_works":["https://openalex.org/W2943247777","https://openalex.org/W2740543340","https://openalex.org/W2371167013","https://openalex.org/W1493958394","https://openalex.org/W1582340598","https://openalex.org/W2794545997","https://openalex.org/W2584980534","https://openalex.org/W2182731056","https://openalex.org/W1600949677","https://openalex.org/W2779867339"],"abstract_inverted_index":{"Deployment":[0],"of":[1,21,48,101,135,166,176],"deep":[2],"neural":[3],"networks":[4],"(DNNs)":[5],"in":[6],"safety-critical":[7],"systems":[8],"requires":[9],"provable":[10,145],"guarantees":[11],"for":[12,37,82,97],"their":[13,158],"correct":[14],"behaviours.":[15],"We":[16,41],"compute":[17],"the":[18,49,63,78,83,123,128,149,152,164,171],"maximal":[19,50],"radius":[20,52],"a":[22,27,38,54,94,98,133,174],"safe":[23,51],"norm":[24,92],"ball":[25],"around":[26],"given":[28],"input,":[29],"within":[30],"which":[31],"there":[32],"are":[33,117],"no":[34],"adversarial":[35],"examples":[36],"trained":[39],"DNN.":[40],"define":[42],"global":[43,64],"robustness":[44,65,114,153],"as":[45,122],"an":[46,59],"expectation":[47],"over":[53,132],"test":[55],"dataset,":[56],"and":[57,72,87,113,143,151],"develop":[58],"algorithm":[60,76,105,172],"to":[61,138,157,173],"approximate":[62],"measure":[66],"by":[67,169],"iteratively":[68],"computing":[69],"its":[70],"lower":[71],"upper":[73],"bounds.":[74],"Our":[75],"is":[77,93,106,130],"first":[79],"efficient":[80,140],"method":[81],"Hamming":[84],"(L0)":[85],"distance,":[86],"we":[88,162],"hypothesise":[89],"that":[90,116],"this":[91],"good":[95],"proxy":[96],"certain":[99],"class":[100],"physical":[102],"attacks.":[103],"The":[104],"anytime,":[107],"i.e.,":[108,127,147],"it":[109],"returns":[110],"intermediate":[111],"bounds":[112,150],"estimates":[115,154],"gradually,":[118],"but":[119],"strictly,":[120],"improved":[121],"computation":[124,129],"proceeds;":[125],"tensor-based,":[126],"conducted":[131],"set":[134,175],"inputs":[136],"simultaneously":[137],"enable":[139],"GPU":[141],"computation;":[142],"has":[144],"guarantees,":[146],"both":[148],"can":[155],"converge":[156],"optimal":[159],"values.":[160],"Finally,":[161],"demonstrate":[163],"utility":[165],"our":[167],"approach":[168],"applying":[170],"challenging":[177],"problems.":[178]},"counts_by_year":[{"year":2026,"cited_by_count":1},{"year":2025,"cited_by_count":9},{"year":2024,"cited_by_count":8},{"year":2023,"cited_by_count":20},{"year":2022,"cited_by_count":8},{"year":2021,"cited_by_count":21},{"year":2020,"cited_by_count":13},{"year":2019,"cited_by_count":5},{"year":2018,"cited_by_count":2},{"year":2012,"cited_by_count":1}],"updated_date":"2026-04-10T15:06:20.359241","created_date":"2025-10-10T00:00:00"}
