Fetching the paper…
Reading the bibliography…
Recent research shows deep neural networks are vulnerable to different types of attacks, such as adversarial attack, data poisoning attack and backdoor attack.
R. O. Duda, P. E. Hart et al. , Pattern classification and scene analysis . Wiley New York, 1973, vol. 3
1973
Earlier work this paper cites.
J. Canny, “A computational approach to edge detection,” IEEE Transactions on pattern analysis and machine intelligence , no. 6, pp. 679–698, 1986
1986
Earlier work this paper cites.
A. Krizhevsky, G. Hinton et al. , “Learning multiple layers of features from tiny images,” 2009
2009
Earlier work this paper cites.
J. Deng, W. Dong, R. Socher, L.-J. Li, K. Li, and L. Fei-Fei, “Imagenet: A large-scale hierarchical image database,” in 2009 IEEE conference on computer vision and pattern recognition . Ieee, 2009, pp. 248–255
2009
Earlier work this paper cites.
J. Stallkamp, M. Schlipsing, J. Salmen, and C. Igel, “The german traffic sign recognition benchmark: a multi-class classification competition,” in The 2011 international joint conference on neural networks . IEEE, 2011, pp. 1453–1460
2011
Earlier work this paper cites.
A. Krizhevsky, I. Sutskever, and G. E. Hinton, “Imagenet classification with deep convolutional neural networks,” in Advances in neural information processing systems , 2012, pp. 1097–1105
2012
Earlier work this paper cites.
A. Graves, A.-r. Mohamed, and G. Hinton, “Speech recognition with deep recurrent neural networks,” in ICASSP . IEEE, 2013, pp. 6645–6649
2013
Earlier work this paper cites.
2013
Earlier work this paper cites.
M. D. Zeiler and R. Fergus, “Visualizing and understanding convolutional networks,” in European conference on computer vision . Springer, 2014, pp. 818–833
2014
Earlier work this paper cites.
2014
Earlier work this paper cites.
T.-H. Chan, K. Jia, S. Gao, J. Lu, Z. Zeng, and Y. Ma, “Pcanet: A simple deep learning baseline for image classification?” IEEE transactions on image processing , vol. 24, no. 12, pp. 5017–5032, 2015
2015
Earlier work this paper cites.
O. M. Parkhi, A. Vedaldi, and A. Zisserman, “Deep face recognition,” 2015
2015
Earlier work this paper cites.
O. Ronneberger, P. Fischer, and T. Brox, “U-net: Convolutional networks for biomedical image segmentation,” in MICCAI . Springer, 2015, pp. 234–241
2015
Earlier work this paper cites.
K. He, X. Zhang, S. Ren, and J. Sun, “Deep residual learning for image recognition,” in Proceedings of the IEEE conference on computer vision and pattern recognition , 2016, pp. 770–778
2016
Earlier work this paper cites.
M. Elad and P. Milanfar, “Style transfer via texture synthesis,” IEEE Transactions on Image Processing , vol. 26, no. 5, pp. 2338–2351, 2017
2017
Earlier work this paper cites.
A. Vaswani, N. Shazeer, N. Parmar, J. Uszkoreit, L. Jones, A. N. Gomez, Ł. Kaiser, and I. Polosukhin, “Attention is all you need,” in Advances in neural information processing systems , 2017, pp. 5998–6008
2017
Earlier work this paper cites.
Y. Liu, S. Ma, Y. Aafer, W.-C. Lee, J. Zhai, W. Wang, and X. Zhang, “Trojaning attack on neural networks,” 2017
2017
Earlier work this paper cites.
2017
Earlier work this paper cites.
R. R. Selvaraju, M. Cogswell, A. Das, R. Vedantam, D. Parikh, and D. Batra, “Grad-cam: Visual explanations from deep networks via gradient-based localization,” in Proceedings of the IEEE international conference on computer vision , 2017, pp. 618–626
2017
Earlier work this paper cites.
P. Isola, J.-Y. Zhu, T. Zhou, and A. A. Efros, “Image-to-image translation with conditional adversarial networks,” in Proceedings of the IEEE conference on computer vision and pattern recognition , 2017, pp. 1125–1134
2017
Earlier work this paper cites.
P. Isola, J.-Y. Zhu, T. Zhou, and A. A. Efros, “Image-to-image translation with conditional adversarial networks,” CVPR , 2017
2017
Earlier work this paper cites.
J.-Y. Zhu, T. Park, P. Isola, and A. A. Efros, “Unpaired image-to-image translation using cycle-consistent adversarial networks,” in ICCV , 2017, pp. 2223–2232
2017
Earlier work this paper cites.
S. Xie, R. Girshick, P. Dollár, Z. Tu, and K. He, “Aggregated residual transformations for deep neural networks,” in Proceedings of the IEEE conference on computer vision and pattern recognition , 2017, pp. 1492–1500
2017
Earlier work this paper cites.
G. Huang, Z. Liu, L. Van Der Maaten, and K. Q. Weinberger, “Densely connected convolutional networks,” in Proceedings of the IEEE conference on computer vision and pattern recognition , 2017, pp. 4700–4708
2017
Earlier work this paper cites.
2017
Cited alongside, same era.
Y. Dong, F. Liao, T. Pang, H. Su, J. Zhu, X. Hu, and J. Li, “Boosting adversarial attacks with momentum,” in Proceedings of the IEEE conference on computer vision and pattern recognition , 2018, pp. 9185–9193
2018
Cited alongside, same era.
M. Jagielski, A. Oprea, B. Biggio, C. Liu, C. Nita-Rotaru, and B. Li, “Manipulating machine learning: Poisoning attacks and countermeasures for regression learning,” in 2018 IEEE Symposium on Security and Privacy (SP) . IEEE, 2018, pp. 19–35
2018
Cited alongside, same era.
A. Shafahi, W. R. Huang, M. Najibi, O. Suciu, C. Studer, T. Dumitras, and T. Goldstein, “Poison frogs! targeted clean-label poisoning attacks on neural networks,” Advances in neural information processing systems , vol. 31, 2018
2018
Cited alongside, same era.
H. Zhong, C. Liao, A. C. Squicciarini, S. Zhu, and D. Miller, “Backdoor embedding in convolutional neural network models via invisible perturbation,” in Proceedings of the Tenth ACM Conference on Data and Application Security and Privacy , 2020, pp. 97–108
2020
Later among the works it cites.
2020
Later among the works it cites.
J. Chen, H. Zheng, R. Chen, and H. Xiong, “Rca-soc: A novel adversarial defense by refocusing on critical areas and strengthening object contours,” Computers & Security , vol. 96, p. 101916, 2020
2020
Later among the works it cites.
2020
Later among the works it cites.
alphaXiv searches the wider corpus for related work and actual follow-ups.
alphaXiv is searching for related work…
2018
Cited alongside, same era.
B. Tran, J. Li, and A. Madry, “Spectral signatures in backdoor attacks,” in Advances in Neural Information Processing Systems , 2018, pp. 8000–8010
2018
Cited alongside, same era.
K. Liu, B. Dolan-Gavitt, and S. Garg, “Fine-pruning: Defending against backdooring attacks on deep neural networks,” in RAID . Springer, 2018, pp. 273–294
2018
Cited alongside, same era.
2018
Cited alongside, same era.
J. Zhu, R. Kaplan, J. Johnson, and L. Fei-Fei, “Hidden: Hiding data with deep networks,” in Proceedings of the European conference on computer vision (ECCV) , 2018, pp. 657–672
2018
Cited alongside, same era.
A. Mustafa, S. H. Khan, M. Hayat, J. Shen, and L. Shao, “Image super-resolution as a defense against adversarial attacks,” IEEE Transactions on Image Processing , vol. 29, pp. 1711–1724, 2019
2019
Cited alongside, same era.
T. Gu, K. Liu, B. Dolan-Gavitt, and S. Garg, “Badnets: Evaluating backdooring attacks on deep neural networks,” IEEE Access , vol. 7, pp. 47 230–47 244, 2019
2019
Cited alongside, same era.
M. Barni, K. Kallas, and B. Tondi, “A new backdoor attack in cnns by training set corruption without label poisoning,” in ICIP . IEEE, 2019, pp. 101–105
2019
Cited alongside, same era.
S. Kolouri, A. Saha, H. Pirsiavash, and H. Hoffmann, “Universal litmus patterns: Revealing backdoor attacks in cnns,” in CVPR , 2020, pp. 301–310
2020
Later among the works it cites.
2020
Later among the works it cites.
J. Zhang, D. Chen, J. Liao, H. Fang, W. Zhang, W. Zhou, H. Cui, and N. Yu, “Model watermarking for image processing networks,” in Proceedings of the AAAI Conference on Artificial Intelligence , vol. 34, no. 07, 2020, pp. 12 805–12 812
2020
Later among the works it cites.
H. Fang, D. Chen, Q. Huang, J. Zhang, Z. Ma, W. Zhang, and N. Yu, “Deep template-based watermarking,” IEEE Transactions on Circuits and Systems for Video Technology , 2020
2020
Later among the works it cites.
D. Chen, Q. Fan, J. Liao, A. Aviles-Rivero, L. Yuan, N. Yu, and G. Hua, “Controllable image processing via adaptive filterbank pyramid,” IEEE Transactions on Image Processing , vol. 29, pp. 8043–8054, 2020
2020
Later among the works it cites.
F. Tramer, N. Carlini, W. Brendel, and A. Madry, “On adaptive attacks to adversarial example defenses,” Advances in Neural Information Processing Systems , vol. 33, pp. 1633–1645, 2020
2020
Later among the works it cites.
2020
Later among the works it cites.
L. Wang and K.-J. Yoon, “Psat-gan: Efficient adversarial attacks against holistic scene understanding,” IEEE Transactions on Image Processing , vol. 30, pp. 7541–7553, 2021
2021
Closest in time.
Z. Che, A. Borji, G. Zhai, S. Ling, J. Li, Y. Tian, G. Guo, and P. Le Callet, “Adversarial attack against deep saliency models powered by non-redundant priors,” IEEE Transactions on Image Processing , vol. 30, pp. 1973–1988, 2021
2021
Closest in time.
J. Chen, H. Zheng, H. Xiong, R. Chen, T. Du, Z. Hong, and S. Ji, “Finefool: A novel dnn object contour attack on image recognition based on the attention perturbation adversarial technique,” Computers & Security , vol. 104, p. 102220, 2021
2021
Closest in time.
H. Na, G. Ryu, and D. Choi, “Adversarial attack based on perturbation of contour region to evade steganalysis-based detection,” IEEE Access , vol. 9, pp. 122 308–122 321, 2021
2021
Closest in time.
2021
Closest in time.
J. Zhang, D. Chen, J. Liao, W. Zhang, H. Feng, G. Hua, and N. Yu, “Deep model intellectual property protection via deep watermarking,” IEEE Transactions on Pattern Analysis and Machine Intelligence , 2021
2021
Closest in time.
2021
Closest in time.
2021
Closest in time.
Q. Zhang, Y. Ding, Y. Tian, J. Guo, M. Yuan, and Y. Jiang, “Advdoor: adversarial backdoor attack of deep learning system,” in Proceedings of the 30th ACM SIGSOFT International Symposium on Software Testing and Analysis , 2021, pp. 127–138
2021
Closest in time.
E. Borgnia, V. Cherepanova, L. Fowl, A. Ghiasi, J. Geiping, M. Goldblum, T. Goldstein, and A. Gupta, “Strong data augmentation sanitizes poisoning and backdoor attacks without an accuracy tradeoff,” in ICASSP 2021-2021 IEEE International Conference on Acoustics, Speech and Signal Processing (ICASSP) . IEEE, 2021, pp. 3855–3859
2021
Closest in time.
J. Geiping, L. H. Fowl, G. Somepalli, M. Goldblum, M. Moeller, and T. Goldstein, “What doesn’t kill you makes you robust (er): How to adversarially train against data poisoning,” 2021
2021
Closest in time.
S. Baluja, “Hiding images in plain sight: Deep steganography,” in Advances in Neural Information Processing Systems , 2017, pp. 2069–2079
2079
Closest in time.