{"id":"https://openalex.org/W3040710807","doi":"https://doi.org/10.3390/make2040030","title":"Probabilistic Jacobian-Based Saliency Maps Attacks","display_name":"Probabilistic Jacobian-Based Saliency Maps Attacks","publication_year":2020,"publication_date":"2020-11-13","ids":{"openalex":"https://openalex.org/W3040710807","doi":"https://doi.org/10.3390/make2040030","mag":"3040710807"},"language":"en","primary_location":{"id":"doi:10.3390/make2040030","is_oa":true,"landing_page_url":"https://doi.org/10.3390/make2040030","pdf_url":"https://www.mdpi.com/2504-4990/2/4/30/pdf?version=1606804462","source":{"id":"https://openalex.org/S4210213891","display_name":"Machine Learning and Knowledge Extraction","issn_l":"2504-4990","issn":["2504-4990"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310310987","host_organization_name":"Multidisciplinary Digital Publishing Institute","host_organization_lineage":["https://openalex.org/P4310310987"],"host_organization_lineage_names":["Multidisciplinary Digital Publishing Institute"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Machine Learning and Knowledge Extraction","raw_type":"journal-article"},"type":"preprint","indexed_in":["arxiv","crossref","datacite","doaj"],"open_access":{"is_oa":true,"oa_status":"gold","oa_url":"https://www.mdpi.com/2504-4990/2/4/30/pdf?version=1606804462","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5066500356","display_name":"Th\u00e9o Combey","orcid":null},"institutions":[{"id":"https://openalex.org/I4210107720","display_name":"CentraleSup\u00e9lec","ror":"https://ror.org/019tcpt25","country_code":"FR","type":"facility","lineage":["https://openalex.org/I277688954","https://openalex.org/I4210107720"]}],"countries":["FR"],"is_corresponding":false,"raw_author_name":"Th\u00e9o Combey","raw_affiliation_strings":["CentraleSup\u00e9lec, Mathematics and Computer Science Department, 3 Rue Joliot-Curie, 91192 Gif-sur-Yvette, France","CentraleSupelec"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"CentraleSup\u00e9lec, Mathematics and Computer Science Department, 3 Rue Joliot-Curie, 91192 Gif-sur-Yvette, France","institution_ids":["https://openalex.org/I4210107720"]},{"raw_affiliation_string":"CentraleSupelec","institution_ids":["https://openalex.org/I4210107720"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5072225680","display_name":"Ant\u00f3nio Loison","orcid":null},"institutions":[{"id":"https://openalex.org/I4210107720","display_name":"CentraleSup\u00e9lec","ror":"https://ror.org/019tcpt25","country_code":"FR","type":"facility","lineage":["https://openalex.org/I277688954","https://openalex.org/I4210107720"]}],"countries":["FR"],"is_corresponding":false,"raw_author_name":"Ant\u00f3nio Loison","raw_affiliation_strings":["CentraleSup\u00e9lec, Mathematics and Computer Science Department, 3 Rue Joliot-Curie, 91192 Gif-sur-Yvette, France","CentraleSupelec"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"CentraleSup\u00e9lec, Mathematics and Computer Science Department, 3 Rue Joliot-Curie, 91192 Gif-sur-Yvette, France","institution_ids":["https://openalex.org/I4210107720"]},{"raw_affiliation_string":"CentraleSupelec","institution_ids":["https://openalex.org/I4210107720"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5018990212","display_name":"Maxime Faucher","orcid":"https://orcid.org/0000-0002-5369-4937"},"institutions":[{"id":"https://openalex.org/I4210107720","display_name":"CentraleSup\u00e9lec","ror":"https://ror.org/019tcpt25","country_code":"FR","type":"facility","lineage":["https://openalex.org/I277688954","https://openalex.org/I4210107720"]}],"countries":["FR"],"is_corresponding":false,"raw_author_name":"Maxime Faucher","raw_affiliation_strings":["CentraleSup\u00e9lec, Mathematics and Computer Science Department, 3 Rue Joliot-Curie, 91192 Gif-sur-Yvette, France","CentraleSupelec"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"CentraleSup\u00e9lec, Mathematics and Computer Science Department, 3 Rue Joliot-Curie, 91192 Gif-sur-Yvette, France","institution_ids":["https://openalex.org/I4210107720"]},{"raw_affiliation_string":"CentraleSupelec","institution_ids":["https://openalex.org/I4210107720"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5074073956","display_name":"Hatem Hajri","orcid":null},"institutions":[{"id":"https://openalex.org/I3018083178","display_name":"Institut de Recherche Technologique SystemX","ror":"https://ror.org/03crmsn52","country_code":"FR","type":"facility","lineage":["https://openalex.org/I3018083178"]}],"countries":["FR"],"is_corresponding":false,"raw_author_name":"Hatem Hajri","raw_affiliation_strings":["IRT SystemX, 8 Avenue de la Vauve, 91120 Palaiseau, France","IRT SystemX#TAB#"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"IRT SystemX, 8 Avenue de la Vauve, 91120 Palaiseau, France","institution_ids":["https://openalex.org/I3018083178"]},{"raw_affiliation_string":"IRT SystemX#TAB#","institution_ids":["https://openalex.org/I3018083178"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":4,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":{"value":1400,"currency":"CHF","value_usd":1515},"apc_paid":{"value":1400,"currency":"CHF","value_usd":1515},"fwci":0.1354,"has_fulltext":false,"cited_by_count":1,"citation_normalized_percentile":{"value":0.54870367,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":89,"max":94},"biblio":{"volume":"2","issue":"4","first_page":"558","last_page":"578"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9855999946594238,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.963100016117096,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/mnist-database","display_name":"MNIST database","score":0.9335147142410278},{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness (evolution)","score":0.6948367953300476},{"id":"https://openalex.org/keywords/jacobian-matrix-and-determinant","display_name":"Jacobian matrix and determinant","score":0.6679648160934448},{"id":"https://openalex.org/keywords/probabilistic-logic","display_name":"Probabilistic logic","score":0.6080839037895203},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.5988614559173584},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.545116662979126},{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.49409154057502747},{"id":"https://openalex.org/keywords/deep-neural-networks","display_name":"Deep neural networks","score":0.4850134551525116},{"id":"https://openalex.org/keywords/pattern-recognition","display_name":"Pattern recognition (psychology)","score":0.45431044697761536},{"id":"https://openalex.org/keywords/artificial-neural-network","display_name":"Artificial neural network","score":0.4517653286457062},{"id":"https://openalex.org/keywords/black-box","display_name":"Black box","score":0.41605040431022644},{"id":"https://openalex.org/keywords/algorithm","display_name":"Algorithm","score":0.39774763584136963},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.3308483958244324},{"id":"https://openalex.org/keywords/mathematics","display_name":"Mathematics","score":0.2663190960884094}],"concepts":[{"id":"https://openalex.org/C190502265","wikidata":"https://www.wikidata.org/wiki/Q17069496","display_name":"MNIST database","level":3,"score":0.9335147142410278},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.6948367953300476},{"id":"https://openalex.org/C200331156","wikidata":"https://www.wikidata.org/wiki/Q506041","display_name":"Jacobian matrix and determinant","level":2,"score":0.6679648160934448},{"id":"https://openalex.org/C49937458","wikidata":"https://www.wikidata.org/wiki/Q2599292","display_name":"Probabilistic logic","level":2,"score":0.6080839037895203},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.5988614559173584},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.545116662979126},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.49409154057502747},{"id":"https://openalex.org/C2984842247","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep neural networks","level":3,"score":0.4850134551525116},{"id":"https://openalex.org/C153180895","wikidata":"https://www.wikidata.org/wiki/Q7148389","display_name":"Pattern recognition (psychology)","level":2,"score":0.45431044697761536},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.4517653286457062},{"id":"https://openalex.org/C94966114","wikidata":"https://www.wikidata.org/wiki/Q29256","display_name":"Black box","level":2,"score":0.41605040431022644},{"id":"https://openalex.org/C11413529","wikidata":"https://www.wikidata.org/wiki/Q8366","display_name":"Algorithm","level":1,"score":0.39774763584136963},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.3308483958244324},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.2663190960884094},{"id":"https://openalex.org/C185592680","wikidata":"https://www.wikidata.org/wiki/Q2329","display_name":"Chemistry","level":0,"score":0.0},{"id":"https://openalex.org/C28826006","wikidata":"https://www.wikidata.org/wiki/Q33521","display_name":"Applied mathematics","level":1,"score":0.0},{"id":"https://openalex.org/C104317684","wikidata":"https://www.wikidata.org/wiki/Q7187","display_name":"Gene","level":2,"score":0.0},{"id":"https://openalex.org/C55493867","wikidata":"https://www.wikidata.org/wiki/Q7094","display_name":"Biochemistry","level":1,"score":0.0}],"mesh":[],"locations_count":6,"locations":[{"id":"doi:10.3390/make2040030","is_oa":true,"landing_page_url":"https://doi.org/10.3390/make2040030","pdf_url":"https://www.mdpi.com/2504-4990/2/4/30/pdf?version=1606804462","source":{"id":"https://openalex.org/S4210213891","display_name":"Machine Learning and Knowledge Extraction","issn_l":"2504-4990","issn":["2504-4990"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310310987","host_organization_name":"Multidisciplinary Digital Publishing Institute","host_organization_lineage":["https://openalex.org/P4310310987"],"host_organization_lineage_names":["Multidisciplinary Digital Publishing Institute"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Machine Learning and Knowledge Extraction","raw_type":"journal-article"},{"id":"pmh:oai:arXiv.org:2007.06032","is_oa":true,"landing_page_url":"http://arxiv.org/abs/2007.06032","pdf_url":"https://arxiv.org/pdf/2007.06032","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":"text"},{"id":"mag:3040710807","is_oa":true,"landing_page_url":"http://export.arxiv.org/pdf/2007.06032","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"arXiv (Cornell University)","raw_type":null},{"id":"pmh:oai:HAL:hal-03085884v1","is_oa":false,"landing_page_url":"https://hal.science/hal-03085884","pdf_url":null,"source":{"id":"https://openalex.org/S4306402512","display_name":"HAL (Le Centre pour la Communication Scientifique Directe)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I1294671590","host_organization_name":"Centre National de la Recherche Scientifique","host_organization_lineage":["https://openalex.org/I1294671590"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"Machine Learning and Knowledge Extraction, 2020, 2 (4), pp.558 - 578. &#x27E8;10.3390/make2040030&#x27E9;","raw_type":"Journal articles"},{"id":"pmh:oai:doaj.org/article:0caf3c18e6ef4c9c8266dd13c62b4509","is_oa":true,"landing_page_url":"https://doaj.org/article/0caf3c18e6ef4c9c8266dd13c62b4509","pdf_url":null,"source":{"id":"https://openalex.org/S4306401280","display_name":"DOAJ (DOAJ: Directory of Open Access Journals)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by-sa","license_id":"https://openalex.org/licenses/cc-by-sa","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"Machine Learning and Knowledge Extraction, Vol 2, Iss 4, Pp 558-578 (2020)","raw_type":"article"},{"id":"doi:10.48550/arxiv.2007.06032","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2007.06032","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":null,"raw_source_name":null,"raw_type":"article"}],"best_oa_location":{"id":"doi:10.3390/make2040030","is_oa":true,"landing_page_url":"https://doi.org/10.3390/make2040030","pdf_url":"https://www.mdpi.com/2504-4990/2/4/30/pdf?version=1606804462","source":{"id":"https://openalex.org/S4210213891","display_name":"Machine Learning and Knowledge Extraction","issn_l":"2504-4990","issn":["2504-4990"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310310987","host_organization_name":"Multidisciplinary Digital Publishing Institute","host_organization_lineage":["https://openalex.org/P4310310987"],"host_organization_lineage_names":["Multidisciplinary Digital Publishing Institute"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Machine Learning and Knowledge Extraction","raw_type":"journal-article"},"sustainable_development_goals":[{"score":0.4699999988079071,"id":"https://metadata.un.org/sdg/17","display_name":"Partnerships for the goals"}],"awards":[{"id":"https://openalex.org/G6908018420","display_name":"SYSTEMX","funder_award_id":"ANR-10-AIRT-0008","funder_id":"https://openalex.org/F4320320883","funder_display_name":"Agence Nationale de la Recherche"}],"funders":[{"id":"https://openalex.org/F4320320883","display_name":"Agence Nationale de la Recherche","ror":"https://ror.org/00rbzpz17"}],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":39,"referenced_works":["https://openalex.org/W2067713319","https://openalex.org/W2108598243","https://openalex.org/W2112796928","https://openalex.org/W2163605009","https://openalex.org/W2180612164","https://openalex.org/W2243397390","https://openalex.org/W2274565976","https://openalex.org/W2516574342","https://openalex.org/W2543927648","https://openalex.org/W2603766943","https://openalex.org/W2618530766","https://openalex.org/W2750384547","https://openalex.org/W2765424254","https://openalex.org/W2785361959","https://openalex.org/W2788820894","https://openalex.org/W2791122243","https://openalex.org/W2798302089","https://openalex.org/W2810611310","https://openalex.org/W2888394138","https://openalex.org/W2946363484","https://openalex.org/W2947130899","https://openalex.org/W2949152835","https://openalex.org/W2950159395","https://openalex.org/W2958749653","https://openalex.org/W2963207607","https://openalex.org/W2963382180","https://openalex.org/W2963542245","https://openalex.org/W2963857521","https://openalex.org/W2964152294","https://openalex.org/W2964253222","https://openalex.org/W2966764754","https://openalex.org/W2991722918","https://openalex.org/W3009262485","https://openalex.org/W3092287343","https://openalex.org/W3103557498","https://openalex.org/W3104224589","https://openalex.org/W3108034711","https://openalex.org/W3111411071","https://openalex.org/W3116666954"],"related_works":["https://openalex.org/W2917621442","https://openalex.org/W2805380858","https://openalex.org/W2982767129","https://openalex.org/W3084889708","https://openalex.org/W3187497581","https://openalex.org/W2950808778","https://openalex.org/W3189487491","https://openalex.org/W3008861477","https://openalex.org/W3118969708","https://openalex.org/W2996336378","https://openalex.org/W3164540605","https://openalex.org/W2963678014","https://openalex.org/W1973318348","https://openalex.org/W3157396433","https://openalex.org/W3173643949","https://openalex.org/W3153361501","https://openalex.org/W3202816857","https://openalex.org/W2155144632","https://openalex.org/W3136511740","https://openalex.org/W3097702032"],"abstract_inverted_index":{"Neural":[0],"network":[1],"classifiers":[2],"(NNCs)":[3],"are":[4,45,129,174],"known":[5],"to":[6,9,47,52,79,95],"be":[7],"vulnerable":[8],"malicious":[10],"adversarial":[11,199],"perturbations":[12],"of":[13,21,65,75,99,114,143,154],"inputs":[14],"including":[15],"those":[16],"modifying":[17],"a":[18,112],"small":[19],"fraction":[20],"the":[22,37,68,72,76,137,160,205],"input":[23,73],"features":[24,74],"named":[25,101],"sparse":[26],"or":[27],"L0":[28,33,163,182,197],"attacks.":[29],"Effective":[30],"and":[31,71,105,109,116,125,133,140,172,194],"fast":[32],"attacks,":[34],"such":[35,203],"as":[36,204],"widely":[38],"used":[39],"Jacobian-based":[40],"Saliency":[41],"Map":[42],"Attack":[43],"(JSMA)":[44],"practical":[46],"fool":[48],"NNCs":[49],"but":[50],"also":[51,146],"improve":[53],"their":[54],"robustness.":[55],"In":[56],"this":[57],"paper,":[58],"we":[59],"show":[60],"that":[61,84,127],"penalising":[62],"saliency":[63],"maps":[64],"JSMA":[66,103,107,193],"by":[67],"output":[69],"probabilities":[70],"NNC":[77],"leads":[78,93],"more":[80,134,175],"powerful":[81],"attack":[82],"algorithms":[83],"better":[85],"take":[86],"into":[87],"account":[88],"each":[89],"input\u2019s":[90],"characteristics.":[91],"This":[92],"us":[94],"introduce":[96],"improved":[97],"versions":[98,142],"JSMA,":[100,168],"Weighted":[102],"(WJSMA)":[104],"Taylor":[106],"(TJSMA),":[108],"demonstrate":[110],"through":[111],"variety":[113],"white-box":[115],"black-box":[117],"experiments":[118],"on":[119,183,201],"three":[120],"different":[121],"datasets":[122,202],"(MNIST,":[123],"CIFAR-10":[124],"GTSRB),":[126],"they":[128],"both":[130],"significantly":[131,169],"faster":[132,170,179],"efficient":[135],"than":[136,176,180],"original":[138],"targeted":[139],"non-targeted":[141],"JSMA.":[144],"Experiments":[145],"demonstrate,":[147],"in":[148,157],"some":[149],"cases,":[150],"very":[151],"competitive":[152],"results":[153],"our":[155,186],"attacks":[156,188],"comparison":[158],"with":[159],"Carlini-Wagner":[161],"(CW)":[162],"attack,":[164],"while":[165],"remaining,":[166],"like":[167],"(WJSMA":[171],"TJSMA":[173],"50":[177],"times":[178],"CW":[181,195],"CIFAR-10).":[184],"Therefore,":[185],"new":[187],"provide":[189],"good":[190],"trade-offs":[191],"between":[192],"for":[196],"real-time":[198],"testing":[200],"ones":[206],"previously":[207],"cited.":[208]},"counts_by_year":[{"year":2021,"cited_by_count":1}],"updated_date":"2026-06-20T22:02:38.213706","created_date":"2025-10-10T00:00:00"}
