Fetching the paper…
Reading the bibliography…
With rapid progress and significant successes in a wide spectrum of applications, deep learning is being applied in many safety-critical environments.
V. Mnih, A. P. Badia, M. Mirza, A. Graves, T. Lillicrap, T. Harley, D. Silver, and K. Kavukcuoglu, “Asynchronous methods for deep reinforcement learning,” in International Conference on Machine Learning , 2016, pp. 1928–1937
1937
Earlier work this paper cites.
Y. LeCun, C. Cortes, and C. Burges, “The mnist data set,” 1998
1998
Earlier work this paper cites.
N. Dalvi, P. Domingos, S. Sanghai, and D. Verma, “Adversarial classification,” in Proceedings of the tenth ACM SIGKDD international conference on Knowledge discovery and data mining . ACM, 2004, pp. 99–108
2004
Earlier work this paper cites.
D. Lowd and C. Meek, “Adversarial learning,” in Proceedings of the eleventh ACM SIGKDD international conference on Knowledge discovery in data mining . ACM, 2005, pp. 641–647
2005
Earlier work this paper cites.
M. Barreno, B. Nelson, R. Sears, A. D. Joseph, and J. D. Tygar, “Can machine learning be secure?” in Proceedings of the 2006 ACM Symposium on Information, computer and communications security . ACM, 2006, pp. 16–25
2006
Earlier work this paper cites.
Y. Bengio, Y. LeCun et al. , “Scaling learning algorithms towards ai,” Large-scale kernel machines , vol. 34, no. 5, pp. 1–41, 2007
2007
Earlier work this paper cites.
G. D. Evangelidis and E. Z. Psarakis, “Parametric image alignment using enhanced correlation coefficient maximization,” IEEE Transactions on Pattern Analysis and Machine Intelligence , vol. 30, no. 10, pp. 1858–1865, 2008
2008
Earlier work this paper cites.
A. Krizhevsky and G. Hinton, “Learning multiple layers of features from tiny images,” Technical report, University of Toronto , 2009
2009
Earlier work this paper cites.
M. Barreno, B. Nelson, A. D. Joseph, and J. Tygar, “The security of machine learning,” Machine Learning , vol. 81, no. 2, pp. 121–148, 2010
2010
Earlier work this paper cites.
B. Biggio, G. Fumera, and F. Roli, “Multiple classifier systems for robust classifier design in adversarial environments,” International Journal of Machine Learning and Cybernetics , vol. 1, no. 1-4, pp. 27–41, 2010
2010
Earlier work this paper cites.
A. Krizhevsky, I. Sutskever, and G. E. Hinton, “Imagenet classification with deep convolutional neural networks,” in Advances in neural information processing systems , 2012, pp. 1097–1105
2012
Earlier work this paper cites.
S. Raimi, “Spider–man 2012.”
2012
Earlier work this paper cites.
2012
Earlier work this paper cites.
G. E. Dahl, J. W. Stokes, L. Deng, and D. Yu, “Large-scale malware classification using random projections and neural networks,” in Acoustics, Speech and Signal Processing (ICASSP), 2013 IEEE International Conference on . IEEE, 2013, pp. 3422–3426
2013
Earlier work this paper cites.
2013
Earlier work this paper cites.
F. Roli, B. Biggio, and G. Fumera, “Pattern recognition systems under attack,” in Iberoamerican Congress on Pattern Recognition . Springer, 2013, pp. 1–8
2013
Earlier work this paper cites.
Q. V. Le, “Building high-level features using large scale unsupervised learning,” in Acoustics, Speech and Signal Processing (ICASSP), 2013 IEEE International Conference on . IEEE, 2013, pp. 8595–8598
2013
Earlier work this paper cites.
B. Biggio, I. Corona, D. Maiorca, B. Nelson, N. Šrndić, P. Laskov, G. Giacinto, and F. Roli, “Evasion attacks against machine learning at test time,” in Joint European Conference on Machine Learning and Knowledge Discovery in Databases . Springer, 2013, pp. 387–402
2013
Earlier work this paper cites.
M. Lin, Q. Chen, and S. Yan, “Network in network,” arXiv preprint arXiv:1312.4400 , 2013
2013
Earlier work this paper cites.
J. R. Flynn, S. Ward, J. Abich, and D. Poole, “Image quality assessment using the ssim and the just noticeable difference paradigm,” in International Conference on Engineering Psychology and Cognitive Ergonomics . Springer, 2013, pp. 23–30
2013
Earlier work this paper cites.
2014
Earlier work this paper cites.
I. Sutskever, O. Vinyals, and Q. V. Le, “Sequence to sequence learning with neural networks,” in Advances in neural information processing systems , 2014, pp. 3104–3112
2014
Earlier work this paper cites.
Z. Yuan, Y. Lu, Z. Wang, and Y. Xue, “Droid-sec: deep learning in android malware detection,” in ACM SIGCOMM Computer Communication Review , vol. 44, no. 4. ACM, 2014, pp. 371–372
2014
Earlier work this paper cites.
2014
Earlier work this paper cites.
2014
Earlier work this paper cites.
J. Ba and R. Caruana, “Do deep nets really need to be deep?” in Advances in neural information processing systems , 2014, pp. 2654–2662
2014
Earlier work this paper cites.
S. Ren, K. He, R. Girshick, and J. Sun, “Faster r-cnn: Towards real-time object detection with region proposal networks,” in Advances in neural information processing systems , 2015, pp. 91–99
2015
Earlier work this paper cites.
2015
Earlier work this paper cites.
Y. LeCun, Y. Bengio, and G. Hinton, “Deep learning,” Nature , vol. 521, no. 7553, pp. 436–444, 2015
2015
Earlier work this paper cites.
C. Middlehurst, “China unveils world’s first facial recognition atm,” http://www.telegraph.co.uk/news/worldnews/asia/china/11643314/China-unveils-worlds-first-facial-recognition-ATM.html , Jun 2015
2015
Earlier work this paper cites.
J. Saxe and K. Berlin, “Deep neural network based malware detection using two dimensional binary program features,” in Malicious and Unwanted Software (MALWARE), 2015 10th International Conference on . IEEE, 2015, pp. 11–20
2015
Earlier work this paper cites.
H. Xiao, B. Biggio, G. Brown, G. Fumera, C. Eckert, and F. Roli, “Is feature selection secure against training data poisoning?” in International Conference on Machine Learning , 2015, pp. 1689–1698
2015
Earlier work this paper cites.
M. Mozaffari-Kermani, S. Sur-Kolay, A. Raghunathan, and N. K. Jha, “Systematic poisoning attacks on and defenses for machine learning in healthcare,” IEEE journal of biomedical and health informatics , vol. 19, no. 6, pp. 1893–1905, 2015
2015
Earlier work this paper cites.
M. Fredrikson, S. Jha, and T. Ristenpart, “Model inversion attacks that exploit confidence information and basic countermeasures,” in Proceedings of the 22nd ACM SIGSAC Conference on Computer and Communications Security . ACM, 2015, pp. 1322–1333
2015
Earlier work this paper cites.
D. Storcheus, A. Rostamizadeh, and S. Kumar, “A survey of modern questions and challenges in feature extraction,” in Feature Extraction: Modern Questions and Challenges , 2015, pp. 1–18
2015
Earlier work this paper cites.
K. He, X. Zhang, S. Ren, and J. Sun, “Delving deep into rectifiers: Surpassing human-level performance on imagenet classification,” in Proceedings of the IEEE international conference on computer vision , 2015, pp. 1026–1034
2015
Earlier work this paper cites.
J. Long, E. Shelhamer, and T. Darrell, “Fully convolutional networks for semantic segmentation,” in Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition , 2015, pp. 3431–3440
2015
Earlier work this paper cites.
C. Szegedy, W. Liu, Y. Jia, P. Sermanet, S. Reed, D. Anguelov, D. Erhan, V. Vanhoucke, and A. Rabinovich, “Going deeper with convolutions,” in Proceedings of the IEEE conference on computer vision and pattern recognition , 2015, pp. 1–9
2015
Earlier work this paper cites.
O. Russakovsky, J. Deng, H. Su, J. Krause, S. Satheesh, S. Ma, Z. Huang, A. Karpathy, A. Khosla, M. Bernstein, A. C. Berg, and L. Fei-Fei, “ImageNet Large Scale Visual Recognition Challenge,” International Journal of Computer Vision (IJCV) , vol. 115, no. 3, pp. 211–252, 2015
2015
Earlier work this paper cites.
A. Nguyen, J. Yosinski, and J. Clune, “Deep neural networks are easily fooled: High confidence predictions for unrecognizable images,” in Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition , 2015, pp. 427–436
2015
Earlier work this paper cites.
A. Cully, J. Clune, D. Tarapore, and J.-B. Mouret, “Robots that can adapt like animals,” Nature , vol. 521, no. 7553, pp. 503–507, may 2015
2015
Earlier work this paper cites.
2015
Earlier work this paper cites.
O. M. Parkhi, A. Vedaldi, A. Zisserman et al. , “Deep face recognition,” in BMVC , vol. 1, no. 3, 2015, p. 6
2015
Earlier work this paper cites.
S. Gu and L. Rigazio, “Towards deep neural network architectures robust to adversarial examples,” Proceedings of the International Conference on Learning Representations (ICLR) , 2015
2015
Earlier work this paper cites.
2015
Earlier work this paper cites.
2015
Earlier work this paper cites.
A. Fawzi, O. Fawzi, and P. Frossard, “Fundamental limits on adversarial robustness,” in Proc. ICML, Workshop on Deep Learning , 2015
2015
Earlier work this paper cites.
2015
Earlier work this paper cites.
2016
Cited alongside, same era.
2016
Cited alongside, same era.
D. Silver, A. Huang, C. J. Maddison, A. Guez, L. Sifre, G. Van Den Driessche, J. Schrittwieser, I. Antonoglou, V. Panneershelvam, M. Lanctot et al. , “Mastering the game of go with deep neural networks and tree search,” Nature , vol. 529, no. 7587, pp. 484–489, 2016
2016
Cited alongside, same era.
2016
Cited alongside, same era.
S.-M. Moosavi-Dezfooli, A. Fawzi, O. Fawzi, and P. Frossard, “Universal adversarial perturbations,” in Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition (CVPR) , 2017
2017
Closest in time.
2017
Closest in time.
2017
Closest in time.
Y. Liu, X. Chen, C. Liu, and D. Song, “Delving into transferable adversarial examples and black-box attacks,” Proceedings of the International Conference on Learning Representations (ICLR) , 2017
2017
Closest in time.
alphaXiv searches the wider corpus for related work and actual follow-ups.
alphaXiv is searching for related work…
N. Carlini, P. Mishra, T. Vaidya, Y. Zhang, M. Sherr, C. Shields, D. Wagner, and W. Zhou, “Hidden voice commands.” in USENIX Security Symposium , 2016, pp. 513–530
2016
Cited alongside, same era.
D. Castelvecchi, “Can we open the black box of AI?” Nature News , vol. 538, no. 7623, p. 20, 2016
2016
Cited alongside, same era.
Z. C. Lipton, “The mythos of model interpretability,” International Conference on Machine Learning (ICML) Workshop , 2016
2016
Cited alongside, same era.
2016
Cited alongside, same era.
2016
Cited alongside, same era.
A. Beatson, Z. Wang, and H. Liu, “Blind attacks on machine learners,” in Advances in Neural Information Processing Systems , 2016, pp. 2397–2405
2016
Cited alongside, same era.
S. Alfeld, X. Zhu, and P. Barford, “Data poisoning attacks against autoregressive models.” in AAAI , 2016, pp. 1452–1458
2016
Cited alongside, same era.
2016
Cited alongside, same era.
2017
Closest in time.
A. Kurakin, I. Goodfellow, and S. Bengio, “Adversarial machine learning at scale,” Proceedings of the International Conference on Learning Representations (ICLR) , 2017
2017
Closest in time.
2017
Closest in time.
2017
Closest in time.
N. Carlini and D. Wagner, “Adversarial examples are not easily detected: Bypassing ten detection methods,” AISEC , 2017
2017
Closest in time.
2017
Closest in time.
2017
Closest in time.
2017
Closest in time.
J. Kos and D. Song, “Delving into adversarial attacks on deep policies,” ICLR Workshop , 2017
2017
Closest in time.
2017
Closest in time.
V. Fischer, M. C. Kumar, J. H. Metzen, and T. Brox, “Adversarial examples for semantic image segmentation,” ICLR 2017 workshop , 2017
2017
Closest in time.
J. H. Metzen, T. Genewein, V. Fischer, and B. Bischoff, “On detecting adversarial perturbations,” Proceedings of 5th International Conference on Learning Representations (ICLR) , 2017
2017
Closest in time.
R. Jia and P. Liang, “Adversarial examples for evaluating reading comprehension systems,” in Proceedings of the Conference on Empirical Methods in Natural Language Processing (EMNLP) , 2017
2017
Closest in time.
K. Grosse, N. Papernot, P. Manoharan, M. Backes, and P. McDaniel, “Adversarial examples for malware detection,” in European Symposium on Research in Computer Security . Springer, 2017, pp. 62–79
2017
Closest in time.
H. S. Anderson, A. Kharkar, B. Filar, and P. Roth, “Evading machine learning malware detection,” Black Hat , 2017
2017
Closest in time.
2017
Closest in time.
C. Ledig, L. Theis, F. Huszár, J. Caballero, A. Cunningham, A. Acosta, A. Aitken, A. Tejani, J. Totz, Z. Wang et al. , “Photo-realistic single image super-resolution using a generative adversarial network,” Conference on Computer Vision and Pattern Recognition , 2017
2017
Closest in time.
2017
Closest in time.
J. Hendrik Metzen, M. Chaithanya Kumar, T. Brox, and V. Fischer, “Universal adversarial perturbations against semantic image segmentation,” in Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition , 2017, pp. 2755–2764
2017
Closest in time.
2017
Closest in time.
2017
Closest in time.
2017
Closest in time.
2017
Closest in time.
D. Hendrycks and K. Gimpel, “Early methods for detecting adversarial images,” ICLR Workshop , 2017
2017
Closest in time.
D. Meng and H. Chen, “Magnet: a two-pronged defense against adversarial examples,” CCS , 2017
2017
Closest in time.
2017
Closest in time.
2017
Closest in time.
2017
Closest in time.
2017
Closest in time.
2017
Closest in time.
2017
Closest in time.
2017
Closest in time.
T. Salimans, A. Karpathy, X. Chen, and D. P. Kingma, “Pixelcnn++: Improving the pixelcnn with discretized logistic mixture likelihood and other modifications,” ICLR Poster , 2017
2017
Closest in time.
W. He, J. Wei, X. Chen, N. Carlini, and D. Song, “Adversarial example defense: Ensembles of weak defenses are not strong,” in 11th USENIX Workshop on Offensive Technologies (WOOT 17) . Vancouver, BC: USENIX Association, 2017
2017
Closest in time.
2017
Closest in time.
K. Pei, Y. Cao, J. Yang, and S. Jana, “Deepxplore: Automated whitebox testing of deep learning systems,” Proceedings of the ACM SIGOPS 26th symposium on Operating systems principles , 2017
2017
Closest in time.
X. Huang, M. Kwiatkowska, S. Wang, and M. Wu, “Safety verification of deep neural networks,” Computer Aided Verification: 29th International Conference (CAV) , pp. 3–29, 2017
2017
Closest in time.
2017
Closest in time.
2017
Closest in time.
2018
Closest in time.
2018
Closest in time.
2018
Closest in time.