{"id":"https://openalex.org/W4229450759","doi":"https://doi.org/10.24963/ijcai.2022/678","title":"On Attacking Out-Domain Uncertainty Estimation in Deep Neural Networks","display_name":"On Attacking Out-Domain Uncertainty Estimation in Deep Neural Networks","publication_year":2022,"publication_date":"2022-07-01","ids":{"openalex":"https://openalex.org/W4229450759","doi":"https://doi.org/10.24963/ijcai.2022/678"},"language":"en","primary_location":{"id":"doi:10.24963/ijcai.2022/678","is_oa":true,"landing_page_url":"https://doi.org/10.24963/ijcai.2022/678","pdf_url":"https://www.ijcai.org/proceedings/2022/0678.pdf","source":{"id":"https://openalex.org/S4363608755","display_name":"Proceedings of the Thirty-First International Joint Conference on Artificial Intelligence","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"conference"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the Thirty-First International Joint Conference on Artificial Intelligence","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"bronze","oa_url":"https://www.ijcai.org/proceedings/2022/0678.pdf","any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5101960707","display_name":"Huimin Zeng","orcid":"https://orcid.org/0000-0003-0198-2352"},"institutions":[{"id":"https://openalex.org/I157725225","display_name":"University of Illinois Urbana-Champaign","ror":"https://ror.org/047426m28","country_code":"US","type":"education","lineage":["https://openalex.org/I157725225"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"Huimin Zeng","raw_affiliation_strings":["University of Illinois at Urbana-Champaign"],"affiliations":[{"raw_affiliation_string":"University of Illinois at Urbana-Champaign","institution_ids":["https://openalex.org/I157725225"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5048013870","display_name":"Zhenrui Yue","orcid":"https://orcid.org/0000-0002-0309-2065"},"institutions":[{"id":"https://openalex.org/I157725225","display_name":"University of Illinois Urbana-Champaign","ror":"https://ror.org/047426m28","country_code":"US","type":"education","lineage":["https://openalex.org/I157725225"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Zhenrui Yue","raw_affiliation_strings":["University of Illinois Urbana-Champaign","Unversity of Illinois at Urbana-Champaign"],"affiliations":[{"raw_affiliation_string":"University of Illinois Urbana-Champaign","institution_ids":["https://openalex.org/I157725225"]},{"raw_affiliation_string":"Unversity of Illinois at Urbana-Champaign","institution_ids":["https://openalex.org/I157725225"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100354592","display_name":"Yang Zhang","orcid":"https://orcid.org/0000-0001-8135-369X"},"institutions":[{"id":"https://openalex.org/I107639228","display_name":"University of Notre Dame","ror":"https://ror.org/00mkhxb43","country_code":"US","type":"education","lineage":["https://openalex.org/I107639228"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Yang Zhang","raw_affiliation_strings":["University of Notre Dame","University of Notre Dame {huiminz3, zhenrui3,"],"affiliations":[{"raw_affiliation_string":"University of Notre Dame","institution_ids":["https://openalex.org/I107639228"]},{"raw_affiliation_string":"University of Notre Dame {huiminz3, zhenrui3,","institution_ids":["https://openalex.org/I107639228"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5045401193","display_name":"Ziyi Kou","orcid":"https://orcid.org/0000-0002-9916-0930"},"institutions":[{"id":"https://openalex.org/I157725225","display_name":"University of Illinois Urbana-Champaign","ror":"https://ror.org/047426m28","country_code":"US","type":"education","lineage":["https://openalex.org/I157725225"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Ziyi Kou","raw_affiliation_strings":["University of Illinois Urbana-Champaign","Unversity of Illinois at Urbana-Champaign"],"affiliations":[{"raw_affiliation_string":"University of Illinois Urbana-Champaign","institution_ids":["https://openalex.org/I157725225"]},{"raw_affiliation_string":"Unversity of Illinois at Urbana-Champaign","institution_ids":["https://openalex.org/I157725225"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5074191748","display_name":"Lanyu Shang","orcid":"https://orcid.org/0000-0002-7480-6889"},"institutions":[{"id":"https://openalex.org/I157725225","display_name":"University of Illinois Urbana-Champaign","ror":"https://ror.org/047426m28","country_code":"US","type":"education","lineage":["https://openalex.org/I157725225"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Lanyu Shang","raw_affiliation_strings":["University of Illinois Urbana-Champaign","Unversity of Illinois at Urbana-Champaign"],"affiliations":[{"raw_affiliation_string":"University of Illinois Urbana-Champaign","institution_ids":["https://openalex.org/I157725225"]},{"raw_affiliation_string":"Unversity of Illinois at Urbana-Champaign","institution_ids":["https://openalex.org/I157725225"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5077728036","display_name":"Dong Wang","orcid":"https://orcid.org/0000-0001-9246-204X"},"institutions":[{"id":"https://openalex.org/I157725225","display_name":"University of Illinois Urbana-Champaign","ror":"https://ror.org/047426m28","country_code":"US","type":"education","lineage":["https://openalex.org/I157725225"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Dong Wang","raw_affiliation_strings":["University of Illinois Urbana-Champaign","Unversity of Illinois at Urbana-Champaign"],"affiliations":[{"raw_affiliation_string":"University of Illinois Urbana-Champaign","institution_ids":["https://openalex.org/I157725225"]},{"raw_affiliation_string":"Unversity of Illinois at Urbana-Champaign","institution_ids":["https://openalex.org/I157725225"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":6,"corresponding_author_ids":["https://openalex.org/A5101960707"],"corresponding_institution_ids":["https://openalex.org/I157725225"],"apc_list":null,"apc_paid":null,"fwci":0.6261,"has_fulltext":true,"cited_by_count":6,"citation_normalized_percentile":{"value":0.66385798,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":90,"max":97},"biblio":{"volume":null,"issue":null,"first_page":"4893","last_page":"4899"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9959999918937683,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10036","display_name":"Advanced Neural Network Applications","score":0.9894000291824341,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness (evolution)","score":0.8054783344268799},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.716774582862854},{"id":"https://openalex.org/keywords/estimation","display_name":"Estimation","score":0.6925901770591736},{"id":"https://openalex.org/keywords/benchmark","display_name":"Benchmark (surveying)","score":0.6554564237594604},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.5606235861778259},{"id":"https://openalex.org/keywords/artificial-neural-network","display_name":"Artificial neural network","score":0.5557550191879272},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.5157628059387207},{"id":"https://openalex.org/keywords/domain","display_name":"Domain (mathematical analysis)","score":0.4991319179534912},{"id":"https://openalex.org/keywords/measurement-uncertainty","display_name":"Measurement uncertainty","score":0.48737603425979614},{"id":"https://openalex.org/keywords/uncertainty-quantification","display_name":"Uncertainty quantification","score":0.48353123664855957},{"id":"https://openalex.org/keywords/deep-neural-networks","display_name":"Deep neural networks","score":0.47726529836654663},{"id":"https://openalex.org/keywords/data-mining","display_name":"Data mining","score":0.4162454903125763},{"id":"https://openalex.org/keywords/mathematics","display_name":"Mathematics","score":0.1309695541858673},{"id":"https://openalex.org/keywords/engineering","display_name":"Engineering","score":0.09718620777130127},{"id":"https://openalex.org/keywords/statistics","display_name":"Statistics","score":0.09539175033569336}],"concepts":[{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.8054783344268799},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.716774582862854},{"id":"https://openalex.org/C96250715","wikidata":"https://www.wikidata.org/wiki/Q965330","display_name":"Estimation","level":2,"score":0.6925901770591736},{"id":"https://openalex.org/C185798385","wikidata":"https://www.wikidata.org/wiki/Q1161707","display_name":"Benchmark (surveying)","level":2,"score":0.6554564237594604},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.5606235861778259},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.5557550191879272},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.5157628059387207},{"id":"https://openalex.org/C36503486","wikidata":"https://www.wikidata.org/wiki/Q11235244","display_name":"Domain (mathematical analysis)","level":2,"score":0.4991319179534912},{"id":"https://openalex.org/C137209882","wikidata":"https://www.wikidata.org/wiki/Q1403517","display_name":"Measurement uncertainty","level":2,"score":0.48737603425979614},{"id":"https://openalex.org/C32230216","wikidata":"https://www.wikidata.org/wiki/Q7882499","display_name":"Uncertainty quantification","level":2,"score":0.48353123664855957},{"id":"https://openalex.org/C2984842247","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep neural networks","level":3,"score":0.47726529836654663},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.4162454903125763},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.1309695541858673},{"id":"https://openalex.org/C127413603","wikidata":"https://www.wikidata.org/wiki/Q11023","display_name":"Engineering","level":0,"score":0.09718620777130127},{"id":"https://openalex.org/C105795698","wikidata":"https://www.wikidata.org/wiki/Q12483","display_name":"Statistics","level":1,"score":0.09539175033569336},{"id":"https://openalex.org/C55493867","wikidata":"https://www.wikidata.org/wiki/Q7094","display_name":"Biochemistry","level":1,"score":0.0},{"id":"https://openalex.org/C13280743","wikidata":"https://www.wikidata.org/wiki/Q131089","display_name":"Geodesy","level":1,"score":0.0},{"id":"https://openalex.org/C205649164","wikidata":"https://www.wikidata.org/wiki/Q1071","display_name":"Geography","level":0,"score":0.0},{"id":"https://openalex.org/C185592680","wikidata":"https://www.wikidata.org/wiki/Q2329","display_name":"Chemistry","level":0,"score":0.0},{"id":"https://openalex.org/C201995342","wikidata":"https://www.wikidata.org/wiki/Q682496","display_name":"Systems engineering","level":1,"score":0.0},{"id":"https://openalex.org/C134306372","wikidata":"https://www.wikidata.org/wiki/Q7754","display_name":"Mathematical analysis","level":1,"score":0.0},{"id":"https://openalex.org/C104317684","wikidata":"https://www.wikidata.org/wiki/Q7187","display_name":"Gene","level":2,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.24963/ijcai.2022/678","is_oa":true,"landing_page_url":"https://doi.org/10.24963/ijcai.2022/678","pdf_url":"https://www.ijcai.org/proceedings/2022/0678.pdf","source":{"id":"https://openalex.org/S4363608755","display_name":"Proceedings of the Thirty-First International Joint Conference on Artificial Intelligence","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"conference"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the Thirty-First International Joint Conference on Artificial Intelligence","raw_type":"proceedings-article"}],"best_oa_location":{"id":"doi:10.24963/ijcai.2022/678","is_oa":true,"landing_page_url":"https://doi.org/10.24963/ijcai.2022/678","pdf_url":"https://www.ijcai.org/proceedings/2022/0678.pdf","source":{"id":"https://openalex.org/S4363608755","display_name":"Proceedings of the Thirty-First International Joint Conference on Artificial Intelligence","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"conference"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the Thirty-First International Joint Conference on Artificial Intelligence","raw_type":"proceedings-article"},"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/16","display_name":"Peace, Justice and strong institutions","score":0.8299999833106995}],"awards":[{"id":"https://openalex.org/G1438871134","display_name":"D3SC: CDS&E: Collaborative Research: Machine Learning Modeling for the Reactivity of Organic Contaminants in Engineered and Natural Environments","funder_award_id":"2105032","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"},{"id":"https://openalex.org/G2953817630","display_name":null,"funder_award_id":"IIS-2008228","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"},{"id":"https://openalex.org/G4626180636","display_name":null,"funder_award_id":"CNS-1831669","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"},{"id":"https://openalex.org/G5428784590","display_name":null,"funder_award_id":"CNS-1845639","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"},{"id":"https://openalex.org/G6256597385","display_name":null,"funder_award_id":"CHE-2105032","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"},{"id":"https://openalex.org/G6686787766","display_name":"CHS: Small: DeepCrowd: A Crowd-assisted Deep Learning-based Disaster Scene Assessment System with Active Human-AI Interactions","funder_award_id":"2008228","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"},{"id":"https://openalex.org/G7701409908","display_name":null,"funder_award_id":"1831669","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"},{"id":"https://openalex.org/G848032724","display_name":null,"funder_award_id":"Science","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"}],"funders":[{"id":"https://openalex.org/F4320306076","display_name":"National Science Foundation","ror":"https://ror.org/021nxhr62"},{"id":"https://openalex.org/F4320337393","display_name":"Division of Chemistry","ror":"https://ror.org/01ar8dr59"}],"has_content":{"grobid_xml":true,"pdf":true},"content_urls":{"pdf":"https://content.openalex.org/works/W4229450759.pdf","grobid_xml":"https://content.openalex.org/works/W4229450759.grobid-xml"},"referenced_works_count":20,"referenced_works":["https://openalex.org/W1673923490","https://openalex.org/W1945616565","https://openalex.org/W2112796928","https://openalex.org/W2194775991","https://openalex.org/W2335728318","https://openalex.org/W2735471653","https://openalex.org/W2791953061","https://openalex.org/W2796981170","https://openalex.org/W2963167203","https://openalex.org/W2963238274","https://openalex.org/W3037355691","https://openalex.org/W3118608800","https://openalex.org/W3168394938","https://openalex.org/W3186971988","https://openalex.org/W3208983194","https://openalex.org/W3212513908","https://openalex.org/W4247637183","https://openalex.org/W4287755806","https://openalex.org/W6617145748","https://openalex.org/W6803092309"],"related_works":["https://openalex.org/W2378211422","https://openalex.org/W4321353415","https://openalex.org/W2745001401","https://openalex.org/W2130974462","https://openalex.org/W2028665553","https://openalex.org/W2086519370","https://openalex.org/W4246352526","https://openalex.org/W2121910908","https://openalex.org/W915438175","https://openalex.org/W4230315250"],"abstract_inverted_index":{"In":[0,57,94],"many":[1],"applications":[2],"with":[3],"real-world":[4],"consequences,":[5],"it":[6],"is":[7],"crucial":[8],"to":[9,60,112],"develop":[10],"reliable":[11],"uncertainty":[12,36,47,70,76,92,101,107,137],"estimation":[13,37,77],"for":[14,116],"the":[15,19,25,43,46,62,65,106,117,136],"predictions":[16,115],"made":[17],"by":[18,49,139,146],"AI":[20],"decision":[21],"systems.":[22],"Targeting":[23],"at":[24,98],"goal":[26],"of":[27,45,64],"estimating":[28],"uncertainty,":[29],"various":[30,130],"deep":[31],"neural":[32],"network":[33],"(DNN)":[34],"based":[35],"algorithms":[38,51,78],"have":[39,124],"been":[40,54],"proposed.":[41],"However,":[42],"robustness":[44],"returned":[48],"these":[50],"has":[52],"not":[53],"systematically":[55],"explored.":[56],"this":[58],"work,":[59],"raise":[61],"awareness":[63],"research":[66],"community":[67],"on":[68,91,129],"robust":[69],"estimation,":[71],"we":[72,96],"show":[73,134],"that":[74,135],"state-of-the-art":[75,140],"could":[79,142],"fail":[80],"catastrophically":[81],"under":[82,103],"our":[83,104,147],"proposed":[84],"adversarial":[85],"attack":[86],"despite":[87],"their":[88],"impressive":[89],"performance":[90],"estimation.":[93],"particular,":[95],"aim":[97],"attacking":[99],"out-domain":[100,118],"estimation:":[102],"attack,":[105],"model":[108],"would":[109,123],"be":[110,143],"fooled":[111],"make":[113],"high-confident":[114],"data,":[119],"which":[120],"they":[121],"originally":[122],"rejected.":[125],"Extensive":[126],"experimental":[127],"results":[128],"benchmark":[131],"image":[132],"datasets":[133],"estimated":[138],"methods":[141],"easily":[144],"corrupted":[145],"attack.":[148]},"counts_by_year":[{"year":2025,"cited_by_count":2},{"year":2023,"cited_by_count":3},{"year":2022,"cited_by_count":1}],"updated_date":"2026-04-10T15:06:20.359241","created_date":"2025-10-10T00:00:00"}
