{"id":"https://openalex.org/W7128438715","doi":"https://doi.org/10.3390/e28020193","title":"A Spatially Distributed Perturbation Strategy with Smoothed Gradient Sign Method for Adversarial Analysis of Image Classification Systems","display_name":"A Spatially Distributed Perturbation Strategy with Smoothed Gradient Sign Method for Adversarial Analysis of Image Classification Systems","publication_year":2026,"publication_date":"2026-02-09","ids":{"openalex":"https://openalex.org/W7128438715","doi":"https://doi.org/10.3390/e28020193","pmid":"https://pubmed.ncbi.nlm.nih.gov/41751696"},"language":"en","primary_location":{"id":"doi:10.3390/e28020193","is_oa":true,"landing_page_url":"https://doi.org/10.3390/e28020193","pdf_url":null,"source":{"id":"https://openalex.org/S195231649","display_name":"Entropy","issn_l":"1099-4300","issn":["1099-4300"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310310987","host_organization_name":"Multidisciplinary Digital Publishing Institute","host_organization_lineage":["https://openalex.org/P4310310987"],"host_organization_lineage_names":["Multidisciplinary Digital Publishing Institute"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Entropy","raw_type":"journal-article"},"type":"article","indexed_in":["crossref","doaj","pubmed"],"open_access":{"is_oa":true,"oa_status":"gold","oa_url":"https://doi.org/10.3390/e28020193","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5101999026","display_name":"Yanwei Xu","orcid":"https://orcid.org/0000-0002-1356-9656"},"institutions":[{"id":"https://openalex.org/I179324530","display_name":"Jilin University of Finance and Economics","ror":"https://ror.org/04az9eh24","country_code":"CN","type":"education","lineage":["https://openalex.org/I179324530"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Yanwei Xu","raw_affiliation_strings":["School of Management Science and Information Engineering, Jilin University of Finance and Economics, Changchun 130117, China"],"affiliations":[{"raw_affiliation_string":"School of Management Science and Information Engineering, Jilin University of Finance and Economics, Changchun 130117, China","institution_ids":["https://openalex.org/I179324530"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5125461939","display_name":"Jun Li","orcid":null},"institutions":[{"id":"https://openalex.org/I179324530","display_name":"Jilin University of Finance and Economics","ror":"https://ror.org/04az9eh24","country_code":"CN","type":"education","lineage":["https://openalex.org/I179324530"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Jun Li","raw_affiliation_strings":["School of Management Science and Information Engineering, Jilin University of Finance and Economics, Changchun 130117, China"],"affiliations":[{"raw_affiliation_string":"School of Management Science and Information Engineering, Jilin University of Finance and Economics, Changchun 130117, China","institution_ids":["https://openalex.org/I179324530"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5009730040","display_name":"Dajun Chang","orcid":null},"institutions":[{"id":"https://openalex.org/I2801441622","display_name":"China Railway Corporation","ror":"https://ror.org/044wv3489","country_code":"CN","type":"government","lineage":["https://openalex.org/I2801441622","https://openalex.org/I4210122102"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Dajun Chang","raw_affiliation_strings":["School of Railway Locomotives and Rolling Stock, Jilin Tiedao University, Jilin 132299, China"],"affiliations":[{"raw_affiliation_string":"School of Railway Locomotives and Rolling Stock, Jilin Tiedao University, Jilin 132299, China","institution_ids":["https://openalex.org/I2801441622"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5100872168","display_name":"Yuanfang Dong","orcid":null},"institutions":[{"id":"https://openalex.org/I106645853","display_name":"Changchun University of Science and Technology","ror":"https://ror.org/007mntk44","country_code":"CN","type":"education","lineage":["https://openalex.org/I106645853"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yuanfang Dong","raw_affiliation_strings":["School of Economics and Management, Changchun University of Science and Technology, Changchun 130022, China"],"affiliations":[{"raw_affiliation_string":"School of Economics and Management, Changchun University of Science and Technology, Changchun 130022, China","institution_ids":["https://openalex.org/I106645853"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5101999026"],"corresponding_institution_ids":["https://openalex.org/I179324530"],"apc_list":{"value":2000,"currency":"CHF","value_usd":2165},"apc_paid":{"value":2000,"currency":"CHF","value_usd":2165},"fwci":0.0,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":{"value":0.37809601,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":"28","issue":"2","first_page":"193","last_page":"193"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.998199999332428,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.998199999332428,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12026","display_name":"Explainable Artificial Intelligence (XAI)","score":0.0003000000142492354,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10883","display_name":"Ethics and Social Impacts of AI","score":0.00019999999494757503,"subfield":{"id":"https://openalex.org/subfields/3311","display_name":"Safety Research"},"field":{"id":"https://openalex.org/fields/33","display_name":"Social Sciences"},"domain":{"id":"https://openalex.org/domains/2","display_name":"Social Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/smoothing","display_name":"Smoothing","score":0.6577000021934509},{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.616100013256073},{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness (evolution)","score":0.45820000767707825},{"id":"https://openalex.org/keywords/perturbation","display_name":"Perturbation (astronomy)","score":0.4438000023365021},{"id":"https://openalex.org/keywords/exploit","display_name":"Exploit","score":0.4343999922275543},{"id":"https://openalex.org/keywords/gradient-descent","display_name":"Gradient descent","score":0.4020000100135803},{"id":"https://openalex.org/keywords/interpretability","display_name":"Interpretability","score":0.3718000054359436},{"id":"https://openalex.org/keywords/maxima-and-minima","display_name":"Maxima and minima","score":0.3447999954223633}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7026000022888184},{"id":"https://openalex.org/C3770464","wikidata":"https://www.wikidata.org/wiki/Q775963","display_name":"Smoothing","level":2,"score":0.6577000021934509},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.616100013256073},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.47600001096725464},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.45820000767707825},{"id":"https://openalex.org/C177918212","wikidata":"https://www.wikidata.org/wiki/Q803623","display_name":"Perturbation (astronomy)","level":2,"score":0.4438000023365021},{"id":"https://openalex.org/C165696696","wikidata":"https://www.wikidata.org/wiki/Q11287","display_name":"Exploit","level":2,"score":0.4343999922275543},{"id":"https://openalex.org/C11413529","wikidata":"https://www.wikidata.org/wiki/Q8366","display_name":"Algorithm","level":1,"score":0.42899999022483826},{"id":"https://openalex.org/C153258448","wikidata":"https://www.wikidata.org/wiki/Q1199743","display_name":"Gradient descent","level":3,"score":0.4020000100135803},{"id":"https://openalex.org/C2781067378","wikidata":"https://www.wikidata.org/wiki/Q17027399","display_name":"Interpretability","level":2,"score":0.3718000054359436},{"id":"https://openalex.org/C186633575","wikidata":"https://www.wikidata.org/wiki/Q845060","display_name":"Maxima and minima","level":2,"score":0.3447999954223633},{"id":"https://openalex.org/C2780522230","wikidata":"https://www.wikidata.org/wiki/Q1140419","display_name":"Ambiguity","level":2,"score":0.33570000529289246},{"id":"https://openalex.org/C126255220","wikidata":"https://www.wikidata.org/wiki/Q141495","display_name":"Mathematical optimization","level":1,"score":0.32600000500679016},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.31470000743865967},{"id":"https://openalex.org/C106301342","wikidata":"https://www.wikidata.org/wiki/Q4117933","display_name":"Entropy (arrow of time)","level":2,"score":0.3057999908924103},{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.30559998750686646},{"id":"https://openalex.org/C87833898","wikidata":"https://www.wikidata.org/wiki/Q1060280","display_name":"Advanced driver assistance systems","level":2,"score":0.2944999933242798},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.2879999876022339},{"id":"https://openalex.org/C165160513","wikidata":"https://www.wikidata.org/wiki/Q7524249","display_name":"Singular perturbation","level":2,"score":0.2865999937057495},{"id":"https://openalex.org/C187691185","wikidata":"https://www.wikidata.org/wiki/Q2020720","display_name":"Grid","level":2,"score":0.2669999897480011},{"id":"https://openalex.org/C153180895","wikidata":"https://www.wikidata.org/wiki/Q7148389","display_name":"Pattern recognition (psychology)","level":2,"score":0.2547999918460846},{"id":"https://openalex.org/C2984842247","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep neural networks","level":3,"score":0.2540999948978424}],"mesh":[],"locations_count":4,"locations":[{"id":"doi:10.3390/e28020193","is_oa":true,"landing_page_url":"https://doi.org/10.3390/e28020193","pdf_url":null,"source":{"id":"https://openalex.org/S195231649","display_name":"Entropy","issn_l":"1099-4300","issn":["1099-4300"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310310987","host_organization_name":"Multidisciplinary Digital Publishing Institute","host_organization_lineage":["https://openalex.org/P4310310987"],"host_organization_lineage_names":["Multidisciplinary Digital Publishing Institute"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Entropy","raw_type":"journal-article"},{"id":"pmid:41751696","is_oa":false,"landing_page_url":"https://pubmed.ncbi.nlm.nih.gov/41751696","pdf_url":null,"source":{"id":"https://openalex.org/S4306525036","display_name":"PubMed","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I1299303238","host_organization_name":"National Institutes of Health","host_organization_lineage":["https://openalex.org/I1299303238"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Entropy (Basel, Switzerland)","raw_type":null},{"id":"pmh:oai:doaj.org/article:0d5b9b0ffe8245caa1a73f0e7f668724","is_oa":true,"landing_page_url":"https://doaj.org/article/0d5b9b0ffe8245caa1a73f0e7f668724","pdf_url":null,"source":{"id":"https://openalex.org/S112646816","display_name":"SHILAP Revista de lepidopterolog\u00eda","issn_l":"0300-5267","issn":["0300-5267","2340-4078"],"is_oa":true,"is_in_doaj":true,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"Entropy, Vol 28, Iss 2, p 193 (2026)","raw_type":"article"},{"id":"pmh:oai:pubmedcentral.nih.gov:12939856","is_oa":true,"landing_page_url":"https://pmc.ncbi.nlm.nih.gov/articles/PMC12939856/","pdf_url":null,"source":{"id":"https://openalex.org/S2764455111","display_name":"PubMed Central","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I1299303238","host_organization_name":"National Institutes of Health","host_organization_lineage":["https://openalex.org/I1299303238"],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"Entropy (Basel)","raw_type":"Text"}],"best_oa_location":{"id":"doi:10.3390/e28020193","is_oa":true,"landing_page_url":"https://doi.org/10.3390/e28020193","pdf_url":null,"source":{"id":"https://openalex.org/S195231649","display_name":"Entropy","issn_l":"1099-4300","issn":["1099-4300"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310310987","host_organization_name":"Multidisciplinary Digital Publishing Institute","host_organization_lineage":["https://openalex.org/P4310310987"],"host_organization_lineage_names":["Multidisciplinary Digital Publishing Institute"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Entropy","raw_type":"journal-article"},"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/16","score":0.7056958675384521,"display_name":"Peace, Justice and strong institutions"}],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":22,"referenced_works":["https://openalex.org/W1849277567","https://openalex.org/W2243397390","https://openalex.org/W2774644650","https://openalex.org/W2963857521","https://openalex.org/W2969542116","https://openalex.org/W3135970545","https://openalex.org/W3164563754","https://openalex.org/W4317242933","https://openalex.org/W4327644550","https://openalex.org/W4385814691","https://openalex.org/W4386759851","https://openalex.org/W4391326543","https://openalex.org/W4391689920","https://openalex.org/W4392590870","https://openalex.org/W4396214365","https://openalex.org/W4401534825","https://openalex.org/W4402167655","https://openalex.org/W4403847908","https://openalex.org/W4403855017","https://openalex.org/W4410061972","https://openalex.org/W4410809650","https://openalex.org/W4411113102"],"related_works":[],"abstract_inverted_index":{"As":[0],"deep":[1],"learning":[2],"models":[3],"are":[4,37],"increasingly":[5],"embedded":[6],"as":[7,201],"critical":[8,118],"components":[9],"within":[10],"complex":[11],"socio-technical":[12],"systems,":[13],"understanding":[14],"and":[15,31,141,153,176,186,197,208,226],"evaluating":[16],"their":[17,53],"systemic":[18],"robustness":[19,224],"against":[20],"adversarial":[21,48,92,220],"perturbations":[22,63],"has":[23],"become":[24],"a":[25,91,121,146],"fundamental":[26],"concern":[27],"for":[28,222],"system":[29],"safety":[30],"reliability.":[32],"Deep":[33],"neural":[34],"networks":[35],"(DNNs)":[36],"highly":[38],"effective":[39],"in":[40,55],"visual":[41,209],"recognition":[42],"tasks":[43],"but":[44],"remain":[45],"vulnerable":[46],"to":[47,99,116,130,150],"perturbations,":[49],"which":[50],"can":[51],"compromise":[52],"reliability":[54],"safety-critical":[56],"applications.":[57],"Existing":[58],"attack":[59,93,101,132,166,206],"methods":[60],"often":[61],"distribute":[62],"uniformly":[64],"across":[65],"the":[66,69,80,214,227],"input,":[67],"ignoring":[68],"spatial":[70,195],"heterogeneity":[71],"of":[72,216,230],"model":[73],"sensitivity.":[74],"In":[75],"this":[76],"work,":[77],"we":[78],"propose":[79],"Spatially":[81],"Distributed":[82],"Perturbation":[83],"Strategy":[84],"with":[85],"Smoothed":[86],"Gradient":[87],"Sign":[88],"Method":[89],"(SD-SGSM),":[90],"framework":[94],"that":[95,162,194],"exploits":[96],"decision-dependent":[97,113,219],"regions":[98,136],"maximize":[100],"effectiveness":[102],"while":[103,137,171],"minimizing":[104],"perceptual":[105],"distortion.":[106],"SD-SGSM":[107,163],"integrates":[108],"three":[109],"key":[110],"components:":[111],"(i)":[112],"domain":[114],"identification":[115],"localize":[117],"features":[119],"using":[120],"deterministic":[122],"zero-out":[123],"operator;":[124],"(ii)":[125],"spatially":[126,217],"adaptive":[127],"perturbation":[128,155],"allocation":[129],"concentrate":[131],"energy":[133],"on":[134,159],"sensitive":[135],"constraining":[138],"background":[139],"disturbance;":[140],"(iii)":[142],"gradient":[143,198],"smoothing":[144,199],"via":[145],"hyperbolic":[147],"tangent":[148],"transformation":[149],"enable":[151],"fine-grained":[152],"continuous":[154],"updates.":[156],"Extensive":[157],"experiments":[158],"CIFAR-10":[160],"demonstrate":[161],"achieves":[164],"near-perfect":[165],"success":[167],"rates":[168],"(ASR":[169],"99.9%)":[170],"substantially":[172],"reducing":[173],"\u21132":[174],"distortion":[175],"preserving":[177],"high":[178],"structural":[179],"similarity":[180],"(SSIM":[181],"0.947),":[182],"outperforming":[183],"both":[184],"single-step":[185],"momentum-based":[187],"iterative":[188],"attacks.":[189],"Ablation":[190],"studies":[191],"further":[192],"confirm":[193],"distribution":[196],"act":[200],"complementary":[202],"mechanisms,":[203],"jointly":[204],"enhancing":[205],"potency":[207],"fidelity.":[210],"These":[211],"findings":[212],"underscore":[213],"importance":[215],"aware,":[218],"strategies":[221],"system-level":[223],"assessment":[225],"secure":[228],"design":[229],"AI-enabled":[231],"systems.":[232]},"counts_by_year":[],"updated_date":"2026-03-27T05:58:40.876381","created_date":"2026-02-10T00:00:00"}
