Fetching the paper…
Reading the bibliography…
Deep neural network (DNN) models have proven to be vulnerable to adversarial digital and physical attacks.
J. Stallkamp, M. Schlipsing, J. Salmen, and C. Igel, “Man vs. computer: Benchmarking machine learning algorithms for traffic sign recognition,” Neural networks , vol. 32, pp. 323–332, 2012
2012
Earlier work this paper cites.
2013
Earlier work this paper cites.
2014
Earlier work this paper cites.
2015
Earlier work this paper cites.
S. Zheng, Y. Song, T. Leung, and I. Goodfellow, “Improving the robustness of deep neural networks via stability training,” in Proceedings of the ieee conference on computer vision and pattern recognition , 2016, pp. 4480–4488
2016
Earlier work this paper cites.
S.-M. Moosavi-Dezfooli, A. Fawzi, and P. Frossard, “Deepfool: a simple and accurate method to fool deep neural networks,” in Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition , 2016, pp. 2574–2582
2016
Earlier work this paper cites.
2016
Earlier work this paper cites.
N. Papernot, P. McDaniel, X. Wu, S. Jha, and A. Swami, “Distillation as a defense to adversarial perturbations against deep neural networks,” in 2016 IEEE Symposium on Security and Privacy (SP) . IEEE, 2016, pp. 582–597
2016
Earlier work this paper cites.
D. Warde-Farley and I. Goodfellow, “11 adversarial perturbations of deep neural networks,” Perturbations, Optimization, and Statistics , p. 311, 2016
2016
Earlier work this paper cites.
2016
Earlier work this paper cites.
N. Papernot, P. McDaniel, S. Jha, M. Fredrikson, Z. B. Celik, and A. Swami, “The limitations of deep learning in adversarial settings,” in 2016 IEEE European Symposium on Security and Privacy (EuroS&P) . IEEE, 2016, pp. 372–387
2016
Earlier work this paper cites.
K. He, X. Zhang, S. Ren, and J. Sun, “Deep residual learning for image recognition,” in Proceedings of the IEEE conference on computer vision and pattern recognition , 2016, pp. 770–778
2016
Earlier work this paper cites.
2016
Earlier work this paper cites.
J. Redmon, S. Divvala, R. Girshick, and A. Farhadi, “You only look once: Unified, real-time object detection,” in Proceedings of the IEEE conference on computer vision and pattern recognition , 2016, pp. 779–788
2016
Earlier work this paper cites.
V. Zantedeschi, M.-I. Nicolae, and A. Rawat, “Efficient defenses against adversarial attacks,” in Proceedings of the 10th ACM Workshop on Artificial Intelligence and Security . ACM, 2017, pp. 39–49
2017
Cited alongside, same era.
C. Guo, G. Pleiss, Y. Sun, and K. Q. Weinberger, “On calibration of modern neural networks,” in Proceedings of the 34th International Conference on Machine Learning-Volume 70 . JMLR. org, 2017, pp. 1321–1330
2017
Cited alongside, same era.
N. Carlini and D. Wagner, “Towards evaluating the robustness of neural networks,” in 2017 IEEE Symposium on Security and Privacy (SP) . IEEE, 2017, pp. 39–57
2017
Cited alongside, same era.
2017
Cited alongside, same era.
S. Tian, G. Yang, and Y. Cai, “Detecting adversarial examples through image transformation,” in Thirty-Second AAAI Conference on Artificial Intelligence , 2018
2018
Later among the works it cites.
S. Jha, U. Jang, S. Jha, and B. Jalaian, “Detecting adversarial examples using data manifolds,” in IEEE Military Communications Conference (MILCOM) , Norfolk, VA, 2018, pp. 547–552
2018
Later among the works it cites.
T. Pang, C. Du, Y. Dong, and J. Zhu, “Towards robust detection of adversarial examples,” in Advances in Neural Information Processing Systems , 2018, pp. 4584–4594
2018
Later among the works it cites.
2018
Later among the works it cites.
alphaXiv searches the wider corpus for related work and actual follow-ups.
alphaXiv is searching for related work…
D. Meng and H. Chen, “Magnet: a two-pronged defense against adversarial examples,” in Proceedings of the 2017 ACM SIGSAC Conference on Computer and Communications Security . ACM, 2017, pp. 135–147
2017
Cited alongside, same era.
2017
Cited alongside, same era.
N. Carlini and D. Wagner, “Adversarial examples are not easily detected: Bypassing ten detection methods,” in Proceedings of the 10th ACM Workshop on Artificial Intelligence and Security . ACM, 2017, pp. 3–14
2017
Cited alongside, same era.
2017
Cited alongside, same era.
P. T. Chiou, Y. Sun, and G. Young, “A complexity analysis of the jpeg image compression algorithm,” in 2017 9th Computer Science and Electronic Engineering (CEEC) . IEEE, 2017, pp. 65–70
2017
Cited alongside, same era.
2018
Cited alongside, same era.
K. Eykholt, I. Evtimov, E. Fernandes, B. Li, A. Rahmati, C. Xiao, A. Prakash, T. Kohno, and D. Song, “Robust physical-world attacks on deep learning visual classification,” in Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition , 2018, pp. 1625–1634
2018
Cited alongside, same era.
N. Das, M. Shanbhogue, S.-T. Chen, F. Hohman, S. Li, L. Chen, M. E. Kounavis, and D. H. Chau, “Shield: Fast, practical defense and vaccination for deep learning using jpeg compression,” in Proceedings of the 24th ACM SIGKDD International Conference on Knowledge Discovery & Data Mining . ACM, 2018, pp. 196–204
2018
Cited alongside, same era.
2019
Later among the works it cites.
C. Kou, H. K. Lee, E.-C. Chang, and T. K. Ng, “Enhancing transformation-based defenses against adversarial attacks with a distribution classifier,” in International Conference on Learning Representations , 2019
2019
Later among the works it cites.
J. Liu, W. Zhang, Y. Zhang, D. Hou, Y. Liu, H. Zha, and N. Yu, “Detection based defense against adversarial examples from the steganalysis point of view,” in Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition , 2019, pp. 4825–4834
2019
Later among the works it cites.
X. Yuan, P. He, Q. Zhu, and X. Li, “Adversarial examples: Attacks and defenses for deep learning,” IEEE transactions on neural networks and learning systems , 2019
2019
Later among the works it cites.
Z. Yin, H. Wang, J. Wang, J. Tang, and W. Wang, “Defense against adversarial attacks by low-level image transformations,” International Journal of Intelligent Systems , vol. 35, no. 10, pp. 1453–1466, 2020
2020
Closest in time.
G. Fidel, R. Bitton, and A. Shabtai, “When explainability meets adversarial learning: Detecting adversarial examples using shap signatures,” in 2020 International Joint Conference on Neural Networks (IJCNN) . IEEE, 2020, pp. 1–8
2020
Closest in time.
G. Cohen, G. Sapiro, and R. Giryes, “Detecting adversarial samples using influence functions and nearest neighbors,” in Proceedings of the IEEE/CVF Conference on Computer Vision and Pattern Recognition , 2020, pp. 14 453–14 462
2020
Closest in time.
F. Cai and X. Koutsoukos, “Real-time out-of-distribution detection in learning-enabled cyber-physical systems,” in 2020 ACM/IEEE 11th International Conference on Cyber-Physical Systems (ICCPS) . IEEE, 2020, pp. 174–183
2020
Closest in time.
E. Yurtsever, J. Lambert, A. Carballo, and K. Takeda, “A survey of autonomous driving: Common practices and emerging technologies,” IEEE Access , vol. 8, pp. 58 443–58 469, 2020
2020
Closest in time.