{"id":"https://openalex.org/W4291414590","doi":"https://doi.org/10.3390/a15080283","title":"Adversarial Training Methods for Deep Learning: A Systematic Review","display_name":"Adversarial Training Methods for Deep Learning: A Systematic Review","publication_year":2022,"publication_date":"2022-08-12","ids":{"openalex":"https://openalex.org/W4291414590","doi":"https://doi.org/10.3390/a15080283"},"language":"en","primary_location":{"id":"doi:10.3390/a15080283","is_oa":true,"landing_page_url":"https://doi.org/10.3390/a15080283","pdf_url":"https://www.mdpi.com/1999-4893/15/8/283/pdf?version=1660293569","source":{"id":"https://openalex.org/S190629608","display_name":"Algorithms","issn_l":"1999-4893","issn":["1999-4893"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310310987","host_organization_name":"Multidisciplinary Digital Publishing Institute","host_organization_lineage":["https://openalex.org/P4310310987"],"host_organization_lineage_names":["Multidisciplinary Digital Publishing Institute"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Algorithms","raw_type":"journal-article"},"type":"review","indexed_in":["crossref","doaj"],"open_access":{"is_oa":true,"oa_status":"gold","oa_url":"https://www.mdpi.com/1999-4893/15/8/283/pdf?version=1660293569","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5040916518","display_name":"Weimin Zhao","orcid":"https://orcid.org/0000-0002-6664-5632"},"institutions":[{"id":"https://openalex.org/I39470171","display_name":"Ontario Tech University","ror":"https://ror.org/016zre027","country_code":"CA","type":"education","lineage":["https://openalex.org/I39470171"]}],"countries":["CA"],"is_corresponding":true,"raw_author_name":"Weimin Zhao","raw_affiliation_strings":["Department of Electrical, Computer and Software Engineering, Ontario Tech University, Oshawa, ON L1G 0C5, Canada"],"raw_orcid":"https://orcid.org/0000-0002-6664-5632","affiliations":[{"raw_affiliation_string":"Department of Electrical, Computer and Software Engineering, Ontario Tech University, Oshawa, ON L1G 0C5, Canada","institution_ids":["https://openalex.org/I39470171"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5075548361","display_name":"Sanaa Alwidian","orcid":"https://orcid.org/0000-0003-4706-0134"},"institutions":[{"id":"https://openalex.org/I39470171","display_name":"Ontario Tech University","ror":"https://ror.org/016zre027","country_code":"CA","type":"education","lineage":["https://openalex.org/I39470171"]}],"countries":["CA"],"is_corresponding":false,"raw_author_name":"Sanaa Alwidian","raw_affiliation_strings":["Department of Electrical, Computer and Software Engineering, Ontario Tech University, Oshawa, ON L1G 0C5, Canada"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Department of Electrical, Computer and Software Engineering, Ontario Tech University, Oshawa, ON L1G 0C5, Canada","institution_ids":["https://openalex.org/I39470171"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5011840659","display_name":"Qusay H. Mahmoud","orcid":"https://orcid.org/0000-0003-0472-5757"},"institutions":[{"id":"https://openalex.org/I39470171","display_name":"Ontario Tech University","ror":"https://ror.org/016zre027","country_code":"CA","type":"education","lineage":["https://openalex.org/I39470171"]}],"countries":["CA"],"is_corresponding":false,"raw_author_name":"Qusay H. Mahmoud","raw_affiliation_strings":["Department of Electrical, Computer and Software Engineering, Ontario Tech University, Oshawa, ON L1G 0C5, Canada"],"raw_orcid":"https://orcid.org/0000-0003-0472-5757","affiliations":[{"raw_affiliation_string":"Department of Electrical, Computer and Software Engineering, Ontario Tech University, Oshawa, ON L1G 0C5, Canada","institution_ids":["https://openalex.org/I39470171"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":1,"corresponding_author_ids":["https://openalex.org/A5040916518"],"corresponding_institution_ids":["https://openalex.org/I39470171"],"apc_list":{"value":1400,"currency":"CHF","value_usd":1515},"apc_paid":{"value":1400,"currency":"CHF","value_usd":1515},"fwci":12.9059,"has_fulltext":true,"cited_by_count":111,"citation_normalized_percentile":{"value":0.98987791,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":90,"max":100},"biblio":{"volume":"15","issue":"8","first_page":"283","last_page":"283"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9997000098228455,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9997000098228455,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11515","display_name":"Bacillus and Francisella bacterial research","score":0.9520000219345093,"subfield":{"id":"https://openalex.org/subfields/1312","display_name":"Molecular Biology"},"field":{"id":"https://openalex.org/fields/13","display_name":"Biochemistry, Genetics and Molecular Biology"},"domain":{"id":"https://openalex.org/domains/1","display_name":"Life Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9429000020027161,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.8697279095649719},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7361342906951904},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.7266955375671387},{"id":"https://openalex.org/keywords/overfitting","display_name":"Overfitting","score":0.7183073163032532},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.6693090796470642},{"id":"https://openalex.org/keywords/deep-learning","display_name":"Deep learning","score":0.5868738889694214},{"id":"https://openalex.org/keywords/artificial-neural-network","display_name":"Artificial neural network","score":0.3866840600967407}],"concepts":[{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.8697279095649719},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7361342906951904},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.7266955375671387},{"id":"https://openalex.org/C22019652","wikidata":"https://www.wikidata.org/wiki/Q331309","display_name":"Overfitting","level":3,"score":0.7183073163032532},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.6693090796470642},{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.5868738889694214},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.3866840600967407}],"mesh":[],"locations_count":3,"locations":[{"id":"doi:10.3390/a15080283","is_oa":true,"landing_page_url":"https://doi.org/10.3390/a15080283","pdf_url":"https://www.mdpi.com/1999-4893/15/8/283/pdf?version=1660293569","source":{"id":"https://openalex.org/S190629608","display_name":"Algorithms","issn_l":"1999-4893","issn":["1999-4893"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310310987","host_organization_name":"Multidisciplinary Digital Publishing Institute","host_organization_lineage":["https://openalex.org/P4310310987"],"host_organization_lineage_names":["Multidisciplinary Digital Publishing Institute"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Algorithms","raw_type":"journal-article"},{"id":"pmh:oai:doaj.org/article:64811f9fbf3c46e98d480c276b76380f","is_oa":true,"landing_page_url":"https://doaj.org/article/64811f9fbf3c46e98d480c276b76380f","pdf_url":null,"source":{"id":"https://openalex.org/S4306401280","display_name":"DOAJ (DOAJ: Directory of Open Access Journals)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by-sa","license_id":"https://openalex.org/licenses/cc-by-sa","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"Algorithms, Vol 15, Iss 8, p 283 (2022)","raw_type":"article"},{"id":"pmh:oai:mdpi.com:/1999-4893/15/8/283/","is_oa":true,"landing_page_url":"https://dx.doi.org/10.3390/a15080283","pdf_url":null,"source":{"id":"https://openalex.org/S4306400947","display_name":"MDPI (MDPI AG)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I4210097602","host_organization_name":"Multidisciplinary Digital Publishing Institute (Switzerland)","host_organization_lineage":["https://openalex.org/I4210097602"],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"Algorithms; Volume 15; Issue 8; Pages: 283","raw_type":"Text"}],"best_oa_location":{"id":"doi:10.3390/a15080283","is_oa":true,"landing_page_url":"https://doi.org/10.3390/a15080283","pdf_url":"https://www.mdpi.com/1999-4893/15/8/283/pdf?version=1660293569","source":{"id":"https://openalex.org/S190629608","display_name":"Algorithms","issn_l":"1999-4893","issn":["1999-4893"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310310987","host_organization_name":"Multidisciplinary Digital Publishing Institute","host_organization_lineage":["https://openalex.org/P4310310987"],"host_organization_lineage_names":["Multidisciplinary Digital Publishing Institute"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Algorithms","raw_type":"journal-article"},"sustainable_development_goals":[{"display_name":"Reduced inequalities","score":0.7699999809265137,"id":"https://metadata.un.org/sdg/10"}],"awards":[],"funders":[{"id":"https://openalex.org/F4320334593","display_name":"Natural Sciences and Engineering Research Council of Canada","ror":"https://ror.org/01h531d29"}],"has_content":{"pdf":true,"grobid_xml":true},"content_urls":{"pdf":"https://content.openalex.org/works/W4291414590.pdf","grobid_xml":"https://content.openalex.org/works/W4291414590.grobid-xml"},"referenced_works_count":79,"referenced_works":["https://openalex.org/W2180612164","https://openalex.org/W2243397390","https://openalex.org/W2617106563","https://openalex.org/W2753626192","https://openalex.org/W2765424254","https://openalex.org/W2884277299","https://openalex.org/W2884614645","https://openalex.org/W2891828758","https://openalex.org/W2912070915","https://openalex.org/W2913266441","https://openalex.org/W2924566522","https://openalex.org/W2943671295","https://openalex.org/W2949128310","https://openalex.org/W2951526967","https://openalex.org/W2962904371","https://openalex.org/W2963448658","https://openalex.org/W2963501948","https://openalex.org/W2963542245","https://openalex.org/W2963636205","https://openalex.org/W2963834268","https://openalex.org/W2963857521","https://openalex.org/W2964201752","https://openalex.org/W2972524765","https://openalex.org/W2973252307","https://openalex.org/W2982651529","https://openalex.org/W2991429372","https://openalex.org/W2991526369","https://openalex.org/W2992133355","https://openalex.org/W2996344901","https://openalex.org/W2997618889","https://openalex.org/W3001697626","https://openalex.org/W3003369812","https://openalex.org/W3003705626","https://openalex.org/W3004298045","https://openalex.org/W3006834354","https://openalex.org/W3007873534","https://openalex.org/W3008003104","https://openalex.org/W3008313523","https://openalex.org/W3009495917","https://openalex.org/W3015832261","https://openalex.org/W3034190247","https://openalex.org/W3034318565","https://openalex.org/W3034537217","https://openalex.org/W3034842981","https://openalex.org/W3036286896","https://openalex.org/W3066878117","https://openalex.org/W3081595253","https://openalex.org/W3089485619","https://openalex.org/W3090036562","https://openalex.org/W3090787324","https://openalex.org/W3093056059","https://openalex.org/W3093466466","https://openalex.org/W3103557498","https://openalex.org/W3104032928","https://openalex.org/W3109522872","https://openalex.org/W3111734603","https://openalex.org/W3113162324","https://openalex.org/W3122924283","https://openalex.org/W3127084502","https://openalex.org/W3128009761","https://openalex.org/W3128390792","https://openalex.org/W3154565254","https://openalex.org/W3174400490","https://openalex.org/W3177280989","https://openalex.org/W3191453585","https://openalex.org/W3199675190","https://openalex.org/W3201396039","https://openalex.org/W3201821777","https://openalex.org/W3208411454","https://openalex.org/W4205623151","https://openalex.org/W4245009893","https://openalex.org/W4287726855","https://openalex.org/W4381885312","https://openalex.org/W6754691863","https://openalex.org/W6773304887","https://openalex.org/W6774341790","https://openalex.org/W6779630795","https://openalex.org/W6780176858","https://openalex.org/W6783873723"],"related_works":["https://openalex.org/W4362597605","https://openalex.org/W1574414179","https://openalex.org/W4297676672","https://openalex.org/W3009056573","https://openalex.org/W2922073769","https://openalex.org/W3099765033","https://openalex.org/W2989932438","https://openalex.org/W4387297750","https://openalex.org/W2186333919","https://openalex.org/W4380075502"],"abstract_inverted_index":{"Deep":[0],"neural":[1],"networks":[2],"are":[3,224,237],"exposed":[4],"to":[5,35,54,108,117,146,164,178,211,226,239],"the":[6,12,32,38,80,119,213],"risk":[7],"of":[8,31,40,78,85,103,125,184,218],"adversarial":[9,41,60,73,93,97,111,227],"attacks":[10],"via":[11],"fast":[13],"gradient":[14,19],"sign":[15],"method":[16,77],"(FGSM),":[17],"projected":[18],"descent":[20],"(PGD)":[21],"attacks,":[22],"and":[23,62,83,113,150,167,170,190,197,203,206,230,242],"other":[24],"attack":[25],"algorithms.":[26],"Adversarial":[27],"training":[28,46,74,112,228],"is":[29,44,107,137],"one":[30],"methods":[33,116,229],"used":[34,210],"defend":[36],"against":[37],"threat":[39],"attacks.":[42],"It":[43],"a":[45,76,179,200],"schema":[47],"that":[48,222],"utilizes":[49],"an":[50,138],"alternative":[51],"objective":[52],"function":[53],"provide":[55],"model":[56],"generalization":[57,241],"for":[58],"both":[59],"data":[61,214,240],"clean":[63],"data.":[64],"In":[65],"this":[66,104,123,219],"systematic":[67,105],"review,":[68],"we":[69,90,154],"focus":[70,91],"particularly":[71],"on":[72,92],"as":[75],"improving":[79],"defensive":[81],"capacities":[82],"robustness":[84],"machine":[86],"learning":[87],"models.":[88],"Specifically,":[89],"sample":[94,98],"accessibility":[95],"through":[96],"generation":[99],"methods.":[100],"The":[101,127,159,216,233],"purpose":[102],"review":[106,220],"survey":[109],"state-of-the-art":[110],"robust":[114,231],"optimization":[115],"identify":[118],"research":[120],"gaps":[121],"within":[122],"field":[124],"applications.":[126],"literature":[128,140,149],"search":[129,141],"was":[130,172],"conducted":[131],"using":[132,199],"Engineering":[133],"Village":[134,136],"(Engineering":[135],"engineering":[139,148],"tool,":[142],"which":[143],"provides":[144],"access":[145],"14":[147],"patent":[151],"databases),":[152],"where":[153],"collected":[155],"238":[156],"related":[157,238],"papers.":[158],"papers":[160,176,186],"were":[161,192,195,209],"filtered":[162],"according":[163,177],"defined":[165,180,201],"inclusion":[166],"exclusion":[168],"criteria,":[169],"information":[171],"extracted":[173,196],"from":[174],"these":[175],"strategy.":[181],"A":[182],"total":[183],"78":[185],"published":[187],"between":[188],"2016":[189],"2021":[191],"selected.":[193],"Data":[194],"categorized":[198],"strategy,":[202],"bar":[204],"plots":[205],"comparison":[207],"tables":[208],"show":[212],"distribution.":[215],"findings":[217],"indicate":[221],"there":[223],"limitations":[225],"optimization.":[232],"most":[234],"common":[235],"problems":[236],"overfitting.":[243]},"counts_by_year":[{"year":2026,"cited_by_count":18},{"year":2025,"cited_by_count":47},{"year":2024,"cited_by_count":26},{"year":2023,"cited_by_count":19},{"year":2022,"cited_by_count":1}],"updated_date":"2026-06-26T08:34:08.712188","created_date":"2025-10-10T00:00:00"}
