{"id":"https://openalex.org/W7119516308","doi":"https://doi.org/10.3390/bdcc10010027","title":"Improving Flat Maxima with Natural Gradient for Better Adversarial Transferability","display_name":"Improving Flat Maxima with Natural Gradient for Better Adversarial Transferability","publication_year":2026,"publication_date":"2026-01-09","ids":{"openalex":"https://openalex.org/W7119516308","doi":"https://doi.org/10.3390/bdcc10010027"},"language":"en","primary_location":{"id":"doi:10.3390/bdcc10010027","is_oa":true,"landing_page_url":"https://doi.org/10.3390/bdcc10010027","pdf_url":"https://www.mdpi.com/2504-2289/10/1/27/pdf","source":{"id":"https://openalex.org/S4210238752","display_name":"Big Data and Cognitive Computing","issn_l":"2504-2289","issn":["2504-2289"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310310987","host_organization_name":"Multidisciplinary Digital Publishing Institute","host_organization_lineage":["https://openalex.org/P4310310987"],"host_organization_lineage_names":["Multidisciplinary Digital Publishing Institute"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Big Data and Cognitive Computing","raw_type":"journal-article"},"type":"article","indexed_in":["crossref","doaj"],"open_access":{"is_oa":true,"oa_status":"gold","oa_url":"https://www.mdpi.com/2504-2289/10/1/27/pdf","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5101871806","display_name":"Yunfei Long","orcid":"https://orcid.org/0000-0003-1181-4387"},"institutions":[{"id":"https://openalex.org/I151727225","display_name":"Harbin Engineering University","ror":"https://ror.org/03x80pn82","country_code":"CN","type":"education","lineage":["https://openalex.org/I151727225"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Yunfei Long","raw_affiliation_strings":["College of Computer Science and Technology, Harbin Engineering University, Harbin 150001, China"],"affiliations":[{"raw_affiliation_string":"College of Computer Science and Technology, Harbin Engineering University, Harbin 150001, China","institution_ids":["https://openalex.org/I151727225"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5100958644","display_name":"Huosheng Xu","orcid":null},"institutions":[{"id":"https://openalex.org/I151727225","display_name":"Harbin Engineering University","ror":"https://ror.org/03x80pn82","country_code":"CN","type":"education","lineage":["https://openalex.org/I151727225"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Huosheng Xu","raw_affiliation_strings":["College of Computer Science and Technology, Harbin Engineering University, Harbin 150001, China"],"affiliations":[{"raw_affiliation_string":"College of Computer Science and Technology, Harbin Engineering University, Harbin 150001, China","institution_ids":["https://openalex.org/I151727225"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":2,"corresponding_author_ids":["https://openalex.org/A5101871806"],"corresponding_institution_ids":["https://openalex.org/I151727225"],"apc_list":{"value":1400,"currency":"CHF","value_usd":1515},"apc_paid":{"value":1400,"currency":"CHF","value_usd":1515},"fwci":0.0,"has_fulltext":true,"cited_by_count":0,"citation_normalized_percentile":{"value":0.09040034,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":"10","issue":"1","first_page":"27","last_page":"27"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9962999820709229,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9962999820709229,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10036","display_name":"Advanced Neural Network Applications","score":0.0006000000284984708,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12026","display_name":"Explainable Artificial Intelligence (XAI)","score":0.0005000000237487257,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/fisher-information","display_name":"Fisher information","score":0.6766999959945679},{"id":"https://openalex.org/keywords/maxima-and-minima","display_name":"Maxima and minima","score":0.6761000156402588},{"id":"https://openalex.org/keywords/manifold","display_name":"Manifold (fluid mechanics)","score":0.5637999773025513},{"id":"https://openalex.org/keywords/point","display_name":"Point (geometry)","score":0.51910001039505},{"id":"https://openalex.org/keywords/information-geometry","display_name":"Information geometry","score":0.5116999745368958},{"id":"https://openalex.org/keywords/gradient-descent","display_name":"Gradient descent","score":0.5016999840736389},{"id":"https://openalex.org/keywords/statistical-manifold","display_name":"Statistical manifold","score":0.49959999322891235},{"id":"https://openalex.org/keywords/euclidean-geometry","display_name":"Euclidean geometry","score":0.45649999380111694},{"id":"https://openalex.org/keywords/maxima","display_name":"Maxima","score":0.4433000087738037}],"concepts":[{"id":"https://openalex.org/C29406490","wikidata":"https://www.wikidata.org/wiki/Q1420659","display_name":"Fisher information","level":2,"score":0.6766999959945679},{"id":"https://openalex.org/C186633575","wikidata":"https://www.wikidata.org/wiki/Q845060","display_name":"Maxima and minima","level":2,"score":0.6761000156402588},{"id":"https://openalex.org/C529865628","wikidata":"https://www.wikidata.org/wiki/Q1790740","display_name":"Manifold (fluid mechanics)","level":2,"score":0.5637999773025513},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.5407999753952026},{"id":"https://openalex.org/C28719098","wikidata":"https://www.wikidata.org/wiki/Q44946","display_name":"Point (geometry)","level":2,"score":0.51910001039505},{"id":"https://openalex.org/C109546454","wikidata":"https://www.wikidata.org/wiki/Q3798604","display_name":"Information geometry","level":4,"score":0.5116999745368958},{"id":"https://openalex.org/C153258448","wikidata":"https://www.wikidata.org/wiki/Q1199743","display_name":"Gradient descent","level":3,"score":0.5016999840736389},{"id":"https://openalex.org/C169391604","wikidata":"https://www.wikidata.org/wiki/Q7604402","display_name":"Statistical manifold","level":5,"score":0.49959999322891235},{"id":"https://openalex.org/C11413529","wikidata":"https://www.wikidata.org/wiki/Q8366","display_name":"Algorithm","level":1,"score":0.4611999988555908},{"id":"https://openalex.org/C129782007","wikidata":"https://www.wikidata.org/wiki/Q162886","display_name":"Euclidean geometry","level":2,"score":0.45649999380111694},{"id":"https://openalex.org/C91528185","wikidata":"https://www.wikidata.org/wiki/Q520952","display_name":"Maxima","level":3,"score":0.4433000087738037},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.3995000123977661},{"id":"https://openalex.org/C186450821","wikidata":"https://www.wikidata.org/wiki/Q17295","display_name":"Euclidean space","level":2,"score":0.3912000060081482},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.385699987411499},{"id":"https://openalex.org/C126255220","wikidata":"https://www.wikidata.org/wiki/Q141495","display_name":"Mathematical optimization","level":1,"score":0.367000013589859},{"id":"https://openalex.org/C189950617","wikidata":"https://www.wikidata.org/wiki/Q937228","display_name":"Property (philosophy)","level":2,"score":0.3628000020980835},{"id":"https://openalex.org/C130367717","wikidata":"https://www.wikidata.org/wiki/Q189791","display_name":"Diagonal","level":2,"score":0.3447999954223633},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.3424000144004822},{"id":"https://openalex.org/C106487976","wikidata":"https://www.wikidata.org/wiki/Q685816","display_name":"Matrix (chemical analysis)","level":2,"score":0.3301999866962433},{"id":"https://openalex.org/C120174047","wikidata":"https://www.wikidata.org/wiki/Q847073","display_name":"Euclidean distance","level":2,"score":0.29510000348091125},{"id":"https://openalex.org/C151876577","wikidata":"https://www.wikidata.org/wiki/Q7049464","display_name":"Nonlinear dimensionality reduction","level":3,"score":0.2937000095844269},{"id":"https://openalex.org/C61272859","wikidata":"https://www.wikidata.org/wiki/Q7834031","display_name":"Transferability","level":3,"score":0.2912999987602234},{"id":"https://openalex.org/C73586568","wikidata":"https://www.wikidata.org/wiki/Q2600211","display_name":"Parameter space","level":2,"score":0.27959999442100525},{"id":"https://openalex.org/C21080849","wikidata":"https://www.wikidata.org/wiki/Q13611879","display_name":"Data point","level":2,"score":0.27959999442100525},{"id":"https://openalex.org/C29123130","wikidata":"https://www.wikidata.org/wiki/Q874709","display_name":"Computational geometry","level":2,"score":0.26330000162124634},{"id":"https://openalex.org/C28826006","wikidata":"https://www.wikidata.org/wiki/Q33521","display_name":"Applied mathematics","level":1,"score":0.25999999046325684},{"id":"https://openalex.org/C2778572836","wikidata":"https://www.wikidata.org/wiki/Q380933","display_name":"Space (punctuation)","level":2,"score":0.2540000081062317}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.3390/bdcc10010027","is_oa":true,"landing_page_url":"https://doi.org/10.3390/bdcc10010027","pdf_url":"https://www.mdpi.com/2504-2289/10/1/27/pdf","source":{"id":"https://openalex.org/S4210238752","display_name":"Big Data and Cognitive Computing","issn_l":"2504-2289","issn":["2504-2289"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310310987","host_organization_name":"Multidisciplinary Digital Publishing Institute","host_organization_lineage":["https://openalex.org/P4310310987"],"host_organization_lineage_names":["Multidisciplinary Digital Publishing Institute"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Big Data and Cognitive Computing","raw_type":"journal-article"},{"id":"pmh:oai:doaj.org/article:8e247b2deffd44798cbe86420f88580a","is_oa":true,"landing_page_url":"https://doaj.org/article/8e247b2deffd44798cbe86420f88580a","pdf_url":null,"source":{"id":"https://openalex.org/S112646816","display_name":"SHILAP Revista de lepidopterolog\u00eda","issn_l":"0300-5267","issn":["0300-5267","2340-4078"],"is_oa":true,"is_in_doaj":true,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"Big Data and Cognitive Computing, Vol 10, Iss 1, p 27 (2026)","raw_type":"article"}],"best_oa_location":{"id":"doi:10.3390/bdcc10010027","is_oa":true,"landing_page_url":"https://doi.org/10.3390/bdcc10010027","pdf_url":"https://www.mdpi.com/2504-2289/10/1/27/pdf","source":{"id":"https://openalex.org/S4210238752","display_name":"Big Data and Cognitive Computing","issn_l":"2504-2289","issn":["2504-2289"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310310987","host_organization_name":"Multidisciplinary Digital Publishing Institute","host_organization_lineage":["https://openalex.org/P4310310987"],"host_organization_lineage_names":["Multidisciplinary Digital Publishing Institute"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Big Data and Cognitive Computing","raw_type":"journal-article"},"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"pdf":true,"grobid_xml":true},"content_urls":{"pdf":"https://content.openalex.org/works/W7119516308.pdf","grobid_xml":"https://content.openalex.org/works/W7119516308.grobid-xml"},"referenced_works_count":36,"referenced_works":["https://openalex.org/W2183341477","https://openalex.org/W2194775991","https://openalex.org/W2774018344","https://openalex.org/W2774644650","https://openalex.org/W2962847335","https://openalex.org/W2963163009","https://openalex.org/W2963446712","https://openalex.org/W2964350391","https://openalex.org/W2969542116","https://openalex.org/W3012737746","https://openalex.org/W3034190247","https://openalex.org/W3127807678","https://openalex.org/W3138516171","https://openalex.org/W3171288285","https://openalex.org/W3196874059","https://openalex.org/W4226038297","https://openalex.org/W4244155866","https://openalex.org/W4312648479","https://openalex.org/W4313141826","https://openalex.org/W4385573252","https://openalex.org/W4385728301","https://openalex.org/W4386066565","https://openalex.org/W4386076570","https://openalex.org/W4386597255","https://openalex.org/W4386736875","https://openalex.org/W4390871946","https://openalex.org/W4390872540","https://openalex.org/W4390872679","https://openalex.org/W4399744071","https://openalex.org/W4402264342","https://openalex.org/W4402727751","https://openalex.org/W4402754002","https://openalex.org/W4403727812","https://openalex.org/W4409346678","https://openalex.org/W4409361985","https://openalex.org/W4411244506"],"related_works":[],"abstract_inverted_index":{"Deep":[0],"neural":[1],"networks":[2],"are":[3],"vulnerable":[4],"and":[5,43,195,222],"susceptible":[6],"to":[7,48,54,93,115,153,176,229],"adversarial":[8,25,72,154],"examples,":[9,26],"which":[10,39,85,123],"can":[11],"induce":[12],"erroneous":[13],"predictions":[14],"by":[15,119],"injecting":[16],"imperceptible":[17],"perturbations.":[18],"Transferability":[19],"is":[20,78],"a":[21,82,189],"crucial":[22],"property":[23],"of":[24,62,104,130,147,181,192],"enabling":[27],"effective":[28],"attacks":[29],"under":[30,201],"black-box":[31],"settings.":[32],"Adversarial":[33],"examples":[34],"at":[35],"flat":[36,56,105],"maxima-those":[37],"around":[38,70],"the":[40,60,63,67,71,75,87,102,109,116,120,127,131,135,141,145,148,160,164,169,173,178,183,193,202,233],"loss":[41,65],"peaks":[42],"grows":[44],"slowly-have":[45],"been":[46],"demonstrated":[47],"exhibit":[49],"higher":[50],"transferability.":[51],"Existing":[52],"methods":[53,230],"achieve":[55],"maxima":[57,106],"rely":[58],"on":[59,232],"gradient":[61,150,158,162],"worst-case":[64,142],"within":[66],"small":[68],"neighborhood":[69,76,110],"point.":[73],"However,":[74],"structure":[77,111],"typically":[79],"defined":[80],"as":[81],"Euclidean":[83,113,234],"space,":[84],"neglects":[86],"input":[88],"space\u2019s":[89],"information":[90,128,166,185],"geometry,":[91],"leading":[92],"suboptimal":[94],"results.":[95],"In":[96,134,226],"this":[97],"work,":[98],"we":[99,138,187],"build":[100],"upon":[101],"idea":[103],"but":[107],"extend":[108],"from":[112],"space":[114],"manifold":[117,212],"measured":[118],"Fisher":[121,165,184,199],"metric,":[122,235],"takes":[124],"into":[125],"account":[126],"geometry":[129],"data":[132],"space.":[133],"non-Euclidean":[136],"case,":[137],"search":[139],"for":[140],"point":[143],"in":[144,172],"direction":[146,171],"natural":[149,157],"with":[151],"respect":[152],"examples.":[155],"The":[156],"adjusts":[159],"original":[161],"using":[163],"matrix,":[167,186],"giving":[168],"steepest":[170],"manifold.":[174],"Furthermore,":[175],"reduce":[177],"computational":[179],"cost":[180],"calculating":[182],"introduce":[188],"diagonal":[190],"approximation":[191],"matrix":[194],"propose":[196],"an":[197],"empirical":[198],"method":[200],"model":[203],"ensemble":[204],"setting.":[205],"Experimental":[206],"results":[207],"demonstrate":[208],"that":[209],"our":[210,236],"proposed":[211],"extensions":[213],"significantly":[214],"enhance":[215],"attack":[216],"success":[217],"rates":[218],"against":[219],"both":[220],"normally":[221],"adversarially":[223],"trained":[224],"models.":[225],"particular,":[227],"compared":[228],"relying":[231],"approach":[237],"demonstrates":[238],"more":[239],"efficient":[240],"performance.":[241]},"counts_by_year":[],"updated_date":"2026-03-12T06:13:28.667946","created_date":"2026-01-09T00:00:00"}
