{"id":"https://openalex.org/W3105009650","doi":"https://doi.org/10.1109/tdsc.2018.2874243","title":"Detecting Adversarial Image Examples in Deep Neural Networks with Adaptive Noise Reduction","display_name":"Detecting Adversarial Image Examples in Deep Neural Networks with Adaptive Noise Reduction","publication_year":2018,"publication_date":"2018-10-05","ids":{"openalex":"https://openalex.org/W3105009650","doi":"https://doi.org/10.1109/tdsc.2018.2874243","mag":"3105009650"},"language":"en","primary_location":{"is_oa":false,"landing_page_url":"https://doi.org/10.1109/tdsc.2018.2874243","pdf_url":null,"source":{"id":"https://openalex.org/S133795288","display_name":"IEEE Transactions on Dependable and Secure Computing","issn_l":"1545-5971","issn":["1545-5971","1941-0018","2160-9209"],"is_oa":false,"is_in_doaj":false,"is_indexed_in_scopus":true,"is_core":true,"host_organization":"https://openalex.org/P4310320439","host_organization_name":"IEEE Computer Society","host_organization_lineage":["https://openalex.org/P4310320439","https://openalex.org/P4310319808"],"host_organization_lineage_names":["IEEE Computer Society","Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":false},"type":"article","type_crossref":"journal-article","indexed_in":["arxiv","crossref","datacite"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://arxiv.org/pdf/1705.08378","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5100644627","display_name":"Bin Liang","orcid":"https://orcid.org/0000-0002-4818-7164"},"institutions":[{"id":"https://openalex.org/I78988378","display_name":"Renmin University of China","ror":"https://ror.org/041pakw92","country_code":"CN","type":"funder","lineage":["https://openalex.org/I78988378"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Bin Liang","raw_affiliation_strings":["Key Laboratory of DEKE (Renmin University of China), MOE, Beijing, China","School of Information, Renmin University of China, Beijing, China"],"affiliations":[{"raw_affiliation_string":"School of Information, Renmin University of China, Beijing, China","institution_ids":["https://openalex.org/I78988378"]},{"raw_affiliation_string":"Key Laboratory of DEKE (Renmin University of China), MOE, Beijing, China","institution_ids":["https://openalex.org/I78988378"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5102961771","display_name":"Hongcheng Li","orcid":"https://orcid.org/0000-0003-2790-5216"},"institutions":[{"id":"https://openalex.org/I78988378","display_name":"Renmin University of China","ror":"https://ror.org/041pakw92","country_code":"CN","type":"funder","lineage":["https://openalex.org/I78988378"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Hongcheng Li","raw_affiliation_strings":["Key Laboratory of DEKE (Renmin University of China), MOE, Beijing, China","School of Information, Renmin University of China, Beijing, China"],"affiliations":[{"raw_affiliation_string":"School of Information, Renmin University of China, Beijing, China","institution_ids":["https://openalex.org/I78988378"]},{"raw_affiliation_string":"Key Laboratory of DEKE (Renmin University of China), MOE, Beijing, China","institution_ids":["https://openalex.org/I78988378"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5026500769","display_name":"Miaoqiang Su","orcid":null},"institutions":[{"id":"https://openalex.org/I78988378","display_name":"Renmin University of China","ror":"https://ror.org/041pakw92","country_code":"CN","type":"funder","lineage":["https://openalex.org/I78988378"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Miaoqiang Su","raw_affiliation_strings":["Key Laboratory of DEKE (Renmin University of China), MOE, Beijing, China","School of Information, Renmin University of China, Beijing, China"],"affiliations":[{"raw_affiliation_string":"School of Information, Renmin University of China, Beijing, China","institution_ids":["https://openalex.org/I78988378"]},{"raw_affiliation_string":"Key Laboratory of DEKE (Renmin University of China), MOE, Beijing, China","institution_ids":["https://openalex.org/I78988378"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5060270456","display_name":"Xirong Li","orcid":"https://orcid.org/0000-0002-0220-8310"},"institutions":[{"id":"https://openalex.org/I78988378","display_name":"Renmin University of China","ror":"https://ror.org/041pakw92","country_code":"CN","type":"funder","lineage":["https://openalex.org/I78988378"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Xirong Li","raw_affiliation_strings":["Key Laboratory of DEKE (Renmin University of China), MOE, Beijing, China","School of Information, Renmin University of China, Beijing, China"],"affiliations":[{"raw_affiliation_string":"School of Information, Renmin University of China, Beijing, China","institution_ids":["https://openalex.org/I78988378"]},{"raw_affiliation_string":"Key Laboratory of DEKE (Renmin University of China), MOE, Beijing, China","institution_ids":["https://openalex.org/I78988378"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5017405627","display_name":"Wenchang Shi","orcid":"https://orcid.org/0000-0002-5160-1223"},"institutions":[{"id":"https://openalex.org/I78988378","display_name":"Renmin University of China","ror":"https://ror.org/041pakw92","country_code":"CN","type":"funder","lineage":["https://openalex.org/I78988378"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Wenchang Shi","raw_affiliation_strings":["Key Laboratory of DEKE (Renmin University of China), MOE, Beijing, China","School of Information, Renmin University of China, Beijing, China"],"affiliations":[{"raw_affiliation_string":"School of Information, Renmin University of China, Beijing, China","institution_ids":["https://openalex.org/I78988378"]},{"raw_affiliation_string":"Key Laboratory of DEKE (Renmin University of China), MOE, Beijing, China","institution_ids":["https://openalex.org/I78988378"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5100333272","display_name":"Xiaofeng Wang","orcid":"https://orcid.org/0009-0001-6453-1826"},"institutions":[{"id":"https://openalex.org/I4210119109","display_name":"Indiana University Bloomington","ror":"https://ror.org/02k40bc56","country_code":"US","type":"funder","lineage":["https://openalex.org/I4210119109","https://openalex.org/I4407990318","https://openalex.org/I592451"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Xiaofeng Wang","raw_affiliation_strings":["Center for Security Informatics, Indiana University Bloomington, Bloomington, IN, USA"],"affiliations":[{"raw_affiliation_string":"Center for Security Informatics, Indiana University Bloomington, Bloomington, IN, USA","institution_ids":["https://openalex.org/I4210119109"]}]}],"institution_assertions":[],"countries_distinct_count":2,"institutions_distinct_count":2,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":19.907,"has_fulltext":false,"cited_by_count":229,"citation_normalized_percentile":{"value":0.999971,"is_in_top_1_percent":true,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":99,"max":100},"biblio":{"volume":"18","issue":"1","first_page":"72","last_page":"85"},"is_retracted":false,"is_paratext":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9999,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9999,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12357","display_name":"Digital Media Forensic Detection","score":0.9883,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9875,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7484616},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.70430493},{"id":"https://openalex.org/C163294075","wikidata":"https://www.wikidata.org/wiki/Q581861","display_name":"Noise reduction","level":2,"score":0.61941487},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.5993633},{"id":"https://openalex.org/C111335779","wikidata":"https://www.wikidata.org/wiki/Q3454686","display_name":"Reduction (mathematics)","level":2,"score":0.5901586},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.5333324},{"id":"https://openalex.org/C115961682","wikidata":"https://www.wikidata.org/wiki/Q860623","display_name":"Image (mathematics)","level":2,"score":0.51248217},{"id":"https://openalex.org/C99498987","wikidata":"https://www.wikidata.org/wiki/Q2210247","display_name":"Noise (video)","level":3,"score":0.49404958},{"id":"https://openalex.org/C2983327147","wikidata":"https://www.wikidata.org/wiki/Q581861","display_name":"Image denoising","level":3,"score":0.47879252},{"id":"https://openalex.org/C31972630","wikidata":"https://www.wikidata.org/wiki/Q844240","display_name":"Computer vision","level":1,"score":0.47614574},{"id":"https://openalex.org/C153180895","wikidata":"https://www.wikidata.org/wiki/Q7148389","display_name":"Pattern recognition (psychology)","level":2,"score":0.3975752},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.114749074},{"id":"https://openalex.org/C2524010","wikidata":"https://www.wikidata.org/wiki/Q8087","display_name":"Geometry","level":1,"score":0.0}],"mesh":[],"locations_count":3,"locations":[{"is_oa":false,"landing_page_url":"https://doi.org/10.1109/tdsc.2018.2874243","pdf_url":null,"source":{"id":"https://openalex.org/S133795288","display_name":"IEEE Transactions on Dependable and Secure Computing","issn_l":"1545-5971","issn":["1545-5971","1941-0018","2160-9209"],"is_oa":false,"is_in_doaj":false,"is_indexed_in_scopus":true,"is_core":true,"host_organization":"https://openalex.org/P4310320439","host_organization_name":"IEEE Computer Society","host_organization_lineage":["https://openalex.org/P4310320439","https://openalex.org/P4310319808"],"host_organization_lineage_names":["IEEE Computer Society","Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":false},{"is_oa":true,"landing_page_url":"https://arxiv.org/abs/1705.08378","pdf_url":"https://arxiv.org/pdf/1705.08378","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_indexed_in_scopus":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":["Cornell University"],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false},{"is_oa":false,"landing_page_url":"https://api.datacite.org/dois/10.48550/arxiv.1705.08378","pdf_url":null,"source":{"id":"https://openalex.org/S4393179698","display_name":"DataCite API","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_indexed_in_scopus":false,"is_core":false,"host_organization":"https://openalex.org/I4210145204","host_organization_name":"DataCite","host_organization_lineage":["https://openalex.org/I4210145204"],"host_organization_lineage_names":["DataCite"],"type":"metadata"},"license":null,"license_id":null,"version":null}],"best_oa_location":{"is_oa":true,"landing_page_url":"https://arxiv.org/abs/1705.08378","pdf_url":"https://arxiv.org/pdf/1705.08378","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_indexed_in_scopus":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":["Cornell University"],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false},"sustainable_development_goals":[],"grants":[{"funder":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China","award_id":"61472429"},{"funder":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China","award_id":"61672523"},{"funder":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China","award_id":"91418206"},{"funder":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China","award_id":"61802413"}],"datasets":[],"versions":["https://openalex.org/W2618492571","https://openalex.org/W3105009650"],"referenced_works_count":93,"referenced_works":["https://openalex.org/W1496462336","https://openalex.org/W1510607812","https://openalex.org/W1520723331","https://openalex.org/W1637557056","https://openalex.org/W1673923490","https://openalex.org/W1872818095","https://openalex.org/W1945616565","https://openalex.org/W1964264614","https://openalex.org/W1966912382","https://openalex.org/W1983048437","https://openalex.org/W1998808035","https://openalex.org/W2010967033","https://openalex.org/W2014466911","https://openalex.org/W2015861736","https://openalex.org/W2038296020","https://openalex.org/W2047237187","https://openalex.org/W2051267297","https://openalex.org/W2054888947","https://openalex.org/W2082468369","https://openalex.org/W2097117768","https://openalex.org/W2097860933","https://openalex.org/W2104763670","https://openalex.org/W2105728138","https://openalex.org/W2108598243","https://openalex.org/W2112434380","https://openalex.org/W2114296159","https://openalex.org/W2117130368","https://openalex.org/W2120480077","https://openalex.org/W2144172034","https://openalex.org/W2144628669","https://openalex.org/W2147768505","https://openalex.org/W2147800946","https://openalex.org/W2151298633","https://openalex.org/W2154566417","https://openalex.org/W2155893237","https://openalex.org/W2160815625","https://openalex.org/W2162552722","https://openalex.org/W2163605009","https://openalex.org/W2167731287","https://openalex.org/W2170240176","https://openalex.org/W2180612164","https://openalex.org/W2243397390","https://openalex.org/W2296452361","https://openalex.org/W2336566325","https://openalex.org/W2460937040","https://openalex.org/W2503523779","https://openalex.org/W2512472178","https://openalex.org/W2528914598","https://openalex.org/W2531634031","https://openalex.org/W2535690855","https://openalex.org/W2535873859","https://openalex.org/W2560358147","https://openalex.org/W2561975083","https://openalex.org/W2565516711","https://openalex.org/W2574797807","https://openalex.org/W2581082771","https://openalex.org/W2590523583","https://openalex.org/W2594867206","https://openalex.org/W2603766943","https://openalex.org/W2605631833","https://openalex.org/W2606529538","https://openalex.org/W2607219512","https://openalex.org/W2609368435","https://openalex.org/W2610321374","https://openalex.org/W2613144983","https://openalex.org/W2619479788","https://openalex.org/W2744095836","https://openalex.org/W2747237166","https://openalex.org/W2753783305","https://openalex.org/W2810611310","https://openalex.org/W2950094539","https://openalex.org/W2950468330","https://openalex.org/W2962904371","https://openalex.org/W2963012544","https://openalex.org/W2963165448","https://openalex.org/W2963207607","https://openalex.org/W2963389226","https://openalex.org/W2963564844","https://openalex.org/W2963695663","https://openalex.org/W2963857521","https://openalex.org/W2964082701","https://openalex.org/W2964153729","https://openalex.org/W3102720581","https://openalex.org/W3104570147","https://openalex.org/W3805906","https://openalex.org/W4247537352","https://openalex.org/W4293584023","https://openalex.org/W4297573953","https://openalex.org/W4300511536","https://openalex.org/W4300725094","https://openalex.org/W4381325153","https://openalex.org/W46659105","https://openalex.org/W9657784"],"related_works":["https://openalex.org/W4401571043","https://openalex.org/W4312627788","https://openalex.org/W2810018092","https://openalex.org/W2499707420","https://openalex.org/W2387428419","https://openalex.org/W2353444452","https://openalex.org/W2098237619","https://openalex.org/W2087258800","https://openalex.org/W2001438600","https://openalex.org/W1974034585"],"abstract_inverted_index":{"Recently,":[0],"many":[1],"studies":[2],"have":[3],"demonstrated":[4],"deep":[5],"neural":[6],"network":[7],"(DNN)":[8],"classifiers":[9],"can":[10,67,127,183],"be":[11,68,128],"fooled":[12],"by":[13,131],"the":[14,42,48,78,124,133,166,196],"adversarial":[15,63,125,155],"example,":[16],"which":[17,66,169],"is":[18,107],"crafted":[19,171],"via":[20],"introducing":[21],"some":[22,29,158],"perturbations":[23],"into":[24,71],"an":[25,114],"original":[26],"sample.":[27],"Accordingly,":[28],"powerful":[30],"defense":[31,37],"techniques":[32,38],"were":[33],"proposed.":[34],"However,":[35],"existing":[36],"often":[39],"require":[40],"modifying":[41],"target":[43],"model":[44],"or":[45],"depend":[46],"on":[47],"prior":[49,148],"knowledge":[50,149],"of":[51,85,121,136,150,190],"attacks.":[52,151,200],"In":[53],"this":[54],"paper,":[55],"we":[56],"propose":[57],"a":[58,83,110,137,185],"straightforward":[59],"method":[60,182],"for":[61,118,198],"detecting":[62],"image":[64,91,105],"examples,":[65],"directly":[69],"deployed":[70],"unmodified":[72],"off-the-shelf":[73],"DNN":[74,160],"models.":[75],"We":[76],"consider":[77],"perturbation":[79],"to":[80,100,112,146,164],"images":[81],"as":[82,109],"kind":[84],"noise":[86,116],"and":[87,96,140,193],"introduce":[88],"two":[89],"classic":[90],"processing":[92],"techniques,":[93],"scalar":[94],"quantization":[95],"smoothing":[97],"spatial":[98],"filter,":[99],"reduce":[101],"its":[102,141],"effect.":[103],"The":[104,176],"entropy":[106],"employed":[108],"metric":[111],"implement":[113],"adaptive":[115],"reduction":[117],"different":[119,173],"kinds":[120],"images.":[122],"Consequently,":[123],"example":[126],"effectively":[129],"detected":[130],"comparing":[132],"classification":[134],"results":[135],"given":[138],"sample":[139],"denoised":[142],"version,":[143],"without":[144],"referring":[145],"any":[147],"More":[152],"than":[153],"20,000":[154],"examples":[156],"against":[157],"state-of-the-art":[159],"models":[161],"are":[162,170],"used":[163],"evaluate":[165],"proposed":[167],"method,":[168],"with":[172],"attack":[174],"techniques.":[175],"experiments":[177],"show":[178],"that":[179],"our":[180],"detection":[181],"achieve":[184],"high":[186],"overall":[187],"F1":[188],"score":[189],"96.39":[191],"percent":[192],"certainly":[194],"raises":[195],"bar":[197],"defense-aware":[199]},"abstract_inverted_index_v3":null,"cited_by_api_url":"https://api.openalex.org/works?filter=cites:W3105009650","counts_by_year":[{"year":2025,"cited_by_count":4},{"year":2024,"cited_by_count":27},{"year":2023,"cited_by_count":42},{"year":2022,"cited_by_count":36},{"year":2021,"cited_by_count":31},{"year":2020,"cited_by_count":45},{"year":2019,"cited_by_count":27},{"year":2018,"cited_by_count":16},{"year":2017,"cited_by_count":1}],"updated_date":"2025-04-30T07:16:12.531275","created_date":"2020-11-23"}