@inproceedings{bb163300,
        AUTHOR = "Jakubovitz, D. and Giryes, R.",
        TITLE = "Improving DNN Robustness to Adversarial Attacks Using Jacobian
Regularization",
        BOOKTITLE = ECCV18,
        YEAR = "2018",
        PAGES = "XII: 525-541",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advrobu9.html#TT159151"}

@inproceedings{bb163301,
        AUTHOR = "Rozsa, A. and Gunther, M. and Boult, T.E.",
        TITLE = "Towards Robust Deep Neural Networks with BANG",
        BOOKTITLE = WACV18,
        YEAR = "2018",
        PAGES = "803-811",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advrobu9.html#TT159152"}

@inproceedings{bb163302,
        AUTHOR = "Lu, J. and Issaranon, T. and Forsyth, D.A.",
        TITLE = "SafetyNet: Detecting and Rejecting Adversarial Examples Robustly",
        BOOKTITLE = ICCV17,
        YEAR = "2017",
        PAGES = "446-454",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advrobu9.html#TT159153"}

@article{bb163303,
        AUTHOR = "Yu, Y.J. and Lee, H.J. and Lee, H. and Ro, Y.M.",
        TITLE = "Defending Person Detection Against Adversarial Patch Attack by Using
Universal Defensive Frame",
        JOURNAL = IP,
        VOLUME = "31",
        YEAR = "2022",
        PAGES = "6976-6990",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advpat8.html#TT159154"}

@article{bb163304,
        AUTHOR = "Zhang, Y.C. and Zhang, Y. and Qi, J.H. and Bin, K.C. and Wen, H. and Tong, X.Q. and Zhong, P.",
        TITLE = "Adversarial Patch Attack on Multi-Scale Object Detection for UAV
Remote Sensing Images",
        JOURNAL = RS,
        VOLUME = "14",
        YEAR = "2022",
        NUMBER = "21",
        PAGES = "xx-yy",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advpat8.html#TT159155"}

@article{bb163305,
        AUTHOR = "Shi, M.C. and Xie, F. and Yang, J.Q. and Zhao, J. and Liu, X.X. and Wang, F.",
        TITLE = "Cutout with patch-loss augmentation for improving generative
adversarial networks against instability",
        JOURNAL = CVIU,
        VOLUME = "234",
        YEAR = "2023",
        PAGES = "103761",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advpat8.html#TT159156"}

@article{bb163306,
        AUTHOR = "Pintor, M. and Angioni, D. and Sotgiu, A. and Demetrio, L. and Demontis, A. and Biggio, B. and Roli, F.",
        TITLE = "ImageNet-Patch: A dataset for benchmarking machine learning
robustness against adversarial patches",
        JOURNAL = PR,
        VOLUME = "134",
        YEAR = "2023",
        PAGES = "109064",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advpat8.html#TT159157"}

@article{bb163307,
        AUTHOR = "Wei, X.X. and Wang, S.P. and Yan, H.Q.",
        TITLE = "Efficient Robustness Assessment via Adversarial Spatial-Temporal
Focus on Videos",
        JOURNAL = PAMI,
        VOLUME = "45",
        YEAR = "2023",
        NUMBER = "9",
        MONTH = "September",
        PAGES = "10898-10912",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advpat8.html#TT159158"}

@article{bb163308,
        AUTHOR = "Wang, Z. and Wang, B.H. and Zhang, C.L. and Liu, Y.H.",
        TITLE = "Defense against Adversarial Patch Attacks for Aerial Image Semantic
Segmentation by Robust Feature Extraction",
        JOURNAL = RS,
        VOLUME = "15",
        YEAR = "2023",
        NUMBER = "6",
        PAGES = "1690",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advpat8.html#TT159159"}

@article{bb163309,
        AUTHOR = "Wang, Z. and Wang, B.H. and Zhang, C.L. and Liu, Y.H. and Guo, J.X.",
        TITLE = "Defending against Poisoning Attacks in Aerial Image Semantic
Segmentation with Robust Invariant Feature Enhancement",
        JOURNAL = RS,
        VOLUME = "15",
        YEAR = "2023",
        NUMBER = "12",
        PAGES = "xx-yy",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advpat8.html#TT159160"}

@article{bb163310,
        AUTHOR = "Wang, Z. and Wang, B.H. and Zhang, C.L. and Liu, Y.H. and Guo, J.X.",
        TITLE = "Robust Feature-Guided Generative Adversarial Network for Aerial Image
Semantic Segmentation against Backdoor Attacks",
        JOURNAL = RS,
        VOLUME = "15",
        YEAR = "2023",
        NUMBER = "10",
        PAGES = "xx-yy",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advpat8.html#TT159161"}

@article{bb163311,
        AUTHOR = "Wei, X.X. and Guo, Y. and Yu, J. and Zhang, B.",
        TITLE = "Simultaneously Optimizing Perturbations and Positions for Black-Box
Adversarial Patch Attacks",
        JOURNAL = PAMI,
        VOLUME = "45",
        YEAR = "2023",
        NUMBER = "7",
        MONTH = "July",
        PAGES = "9041-9054",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advpat8.html#TT159162"}

@article{bb163312,
        AUTHOR = "Ran, Y. and Wang, W.J. and Li, M.J. and Li, L.C. and Wang, Y.G. and Li, J.",
        TITLE = "Cross-Shaped Adversarial Patch Attack",
        JOURNAL = CirSysVideo,
        VOLUME = "34",
        YEAR = "2024",
        NUMBER = "4",
        MONTH = "April",
        PAGES = "2289-2303",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advpat8.html#TT159163"}

@article{bb163313,
        AUTHOR = "Yang, J. and Guan, Z.Y. and Li, J. and Shi, Z.P. and Liu, X.L.",
        TITLE = "Diffusion Patch Attack With Spatial-Temporal Cross-Evolution for
Video Recognition",
        JOURNAL = CirSysVideo,
        VOLUME = "34",
        YEAR = "2024",
        NUMBER = "12",
        MONTH = "December",
        PAGES = "13190-13200",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advpat8.html#TT159164"}

@article{bb163314,
        AUTHOR = "Qi, L. and Zhao, D.J. and Shi, Y.H. and Geng, X.",
        TITLE = "Patch-Aware Batch Normalization for Improving Cross-Domain Robustness",
        JOURNAL = CirSysVideo,
        VOLUME = "35",
        YEAR = "2025",
        NUMBER = "1",
        MONTH = "January",
        PAGES = "800-810",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advpat8.html#TT159165"}

@article{bb163315,
        AUTHOR = "Wei, X.X. and Ruan, S. and Dong, Y.P. and Su, H. and Cao, X.C.",
        TITLE = "Distributionally Location-Aware Transferable Adversarial Patches for
Facial Images",
        JOURNAL = PAMI,
        VOLUME = "47",
        YEAR = "2025",
        NUMBER = "4",
        MONTH = "April",
        PAGES = "2849-2864",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advpat8.html#TT159166"}

@article{bb163316,
        AUTHOR = "Yang, J. and Li, J. and Cai, Y. and Wu, G.M. and Shi, Z.P. and Tan, C. and Liu, X.L.",
        TITLE = "Hard-Sample Style Guided Patch Attack With RL-Enhanced Motion Pattern
for Video Recognition",
        JOURNAL = MultMed,
        VOLUME = "27",
        YEAR = "2025",
        PAGES = "1205-1215",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advpat8.html#TT159167"}

@article{bb163317,
        AUTHOR = "Wang, J. and Li, F. and He, L.J.",
        TITLE = "A Unified Framework for Adversarial Patch Attacks Against Visual 3D
Object Detection in Autonomous Driving",
        JOURNAL = CirSysVideo,
        VOLUME = "35",
        YEAR = "2025",
        NUMBER = "5",
        MONTH = "May",
        PAGES = "4949-4962",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advpat8.html#TT159168"}

@article{bb163318,
        AUTHOR = "Deng, K. and Chen, Q.X. and Zhang, Y. and Lin, Z. and Gong, S. and Liang, Z.Y. and Peng, A.J. and Yang, X. and Lian, D.",
        TITLE = "Targeted attack via adversarial patch outside bounding box",
        JOURNAL = PR,
        VOLUME = "171",
        YEAR = "2026",
        PAGES = "112244",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advpat8.html#TT159169"}

@article{bb163319,
        AUTHOR = "Wei, X.X. and Kang, C.X. and Dong, Y.P. and Wang, Z.Y. and Ruan, S. and Chen, Y. and Su, H.",
        TITLE = "Real-World Adversarial Defense Against Patch Attacks Based on
Diffusion Model",
        JOURNAL = PAMI,
        VOLUME = "47",
        YEAR = "2025",
        NUMBER = "12",
        MONTH = "December",
        PAGES = "11124-11140",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advpat8.html#TT159170"}

@inproceedings{bb163320,
        AUTHOR = "Kang, C.X. and Dong, Y.P. and Wang, Z.Y. and Ruan, S. and Chen, Y. and Su, H. and Wei, X.X.",
        TITLE = "Diffender: Diffusion-based Adversarial Defense Against Patch Attacks",
        BOOKTITLE = ECCV24,
        YEAR = "2024",
        PAGES = "LII: 130-147",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advpat8.html#TT159171"}

@inproceedings{bb163321,
        AUTHOR = "Lin, S.Y. and Chu, E. and Yeh, P.H. and Chen, J.C. and Wang, J.C.",
        TITLE = "Diffusion to Confusion: Naturalistic Adversarial Patch Generation
Based on Diffusion Model for Object Detector",
        BOOKTITLE = ICIP25,
        YEAR = "2025",
        PAGES = "2378-2383",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advpat8.html#TT159172"}

@inproceedings{bb163322,
        AUTHOR = "Victorica, M.B. and Dan, G. and Sandberg, H.",
        TITLE = "Saliuitl: Ensemble Salience Guided Recovery of Adversarial Patches
against CNNs",
        BOOKTITLE = CVPR25,
        YEAR = "2025",
        PAGES = "20360-20369",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advpat8.html#TT159173"}

@inproceedings{bb163323,
        AUTHOR = "Xiang, X.Y. and Yan, Q. and Zhang, H. and Ma, J.Y.",
        TITLE = "ACAttack: Adaptive Cross Attacking RGB-T Tracker via Multi-Modal
Response Decoupling",
        BOOKTITLE = CVPR25,
        YEAR = "2025",
        PAGES = "22099-22108",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advpat8.html#TT159174"}

@inproceedings{bb163324,
        AUTHOR = "Kumar, V. and Agarwal, A.",
        TITLE = "A Unified, Resilient, and Explainable Adversarial Patch Detector",
        BOOKTITLE = CVPR25,
        YEAR = "2025",
        PAGES = "30387-30397",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advpat8.html#TT159175"}

@inproceedings{bb163325,
        AUTHOR = "Fu, J. and Zhang, X. and Pashami, S. and Rahimian, F. and Holst, A.",
        TITLE = "DiffPAD: Denoising Diffusion-Based Adversarial Patch Decontamination",
        BOOKTITLE = WACV25,
        YEAR = "2025",
        PAGES = "6602-6611",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advpat8.html#TT159176"}

@inproceedings{bb163326,
        AUTHOR = "Long, J.H. and Jiang, T.S. and Yao, W. and Jia, S. and Zhang, W.J. and Zhou, W. and Ma, C. and Chen, X.Q.",
        TITLE = "Papmot: Exploring Adversarial Patch Attack Against Multiple Object
Tracking",
        BOOKTITLE = ECCV24,
        YEAR = "2024",
        PAGES = "LI: 128-144",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advpat8.html#TT159177"}

@inproceedings{bb163327,
        AUTHOR = "Yang, M.Y. and Liu, D.Z. and Tang, K. and Zhou, P. and Chen, L.X. and Chen, J.Y.",
        TITLE = "Hiding Imperceptible Noise in Curvature-aware Patches for 3d Point
Cloud Attack",
        BOOKTITLE = ECCV24,
        YEAR = "2024",
        PAGES = "XXX: 431-448",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advpat8.html#TT159178"}

@inproceedings{bb163328,
        AUTHOR = "Wu, S.Y. and Wang, J. and Zhao, J. and Wang, Y.Z. and Liu, X.L.",
        TITLE = "NAPGuard: Towards Detecting Naturalistic Adversarial Patches",
        BOOKTITLE = CVPR24,
        YEAR = "2024",
        PAGES = "24367-24376",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advpat8.html#TT159179"}

@inproceedings{bb163329,
        AUTHOR = "Jing, L.H. and Wang, R. and Ren, W.Q. and Dong, X. and Zou, C.",
        TITLE = "PAD: Patch-Agnostic Defense against Adversarial Patch Attacks",
        BOOKTITLE = CVPR24,
        YEAR = "2024",
        PAGES = "24472-24481",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advpat8.html#TT159180"}

@inproceedings{bb163330,
        AUTHOR = "Gittings, T. and Schneider, S. and Collomosse, J.",
        TITLE = "SegGuard: Defending Scene Segmentation Against Adversarial Patch
Attack",
        BOOKTITLE = ICIP24,
        YEAR = "2024",
        PAGES = "794-800",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advpat8.html#TT159181"}

@inproceedings{bb163331,
        AUTHOR = "Zhao, Q. and Wang, Y.G.",
        TITLE = "Universal Black-Box Adversarial Patch Attack with Optimized Genetic
Algorithm",
        BOOKTITLE = ICIP24,
        YEAR = "2024",
        PAGES = "780-786",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advpat8.html#TT159182"}

@inproceedings{bb163332,
        AUTHOR = "Chattopadhyay, N. and Guesmi, A. and Shafique, M.",
        TITLE = "Anomaly Unveiled: Securing Image Classification against Adversarial
Patch Attacks",
        BOOKTITLE = ICIP24,
        YEAR = "2024",
        PAGES = "929-935",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advpat8.html#TT159183"}

@inproceedings{bb163333,
        AUTHOR = "Mathur, A.N. and Madan, A. and Sharma, O.",
        TITLE = "SLI-pSp: Injecting Multi-Scale Spatial Layout in pSp",
        BOOKTITLE = WACV23,
        YEAR = "2023",
        PAGES = "4084-4093",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advpat8.html#TT159184"}

@inproceedings{bb163334,
        AUTHOR = "Jiang, K.X. and Chen, Z.Y. and Huang, H. and Wang, J.F. and Yang, D.K. and Li, B. and Wang, Y. and Zhang, W.Q.",
        TITLE = "Efficient Decision-based Black-box Patch Attacks on Video Recognition",
        BOOKTITLE = ICCV23,
        YEAR = "2023",
        PAGES = "4356-4366",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advpat8.html#TT159185"}

@inproceedings{bb163335,
        AUTHOR = "Hingun, N. and Sitawarin, C. and Li, J. and Wagner, D.",
        TITLE = "REAP: A Large-Scale Realistic Adversarial Patch Benchmark",
        BOOKTITLE = ICCV23,
        YEAR = "2023",
        PAGES = "4617-4628",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advpat8.html#TT159186"}

@inproceedings{bb163336,
        AUTHOR = "Tarchoun, B. and Ben Khalifa, A. and Mahjoub, M.A. and Abu Ghazaleh, N. and Alouani, I.",
        TITLE = "Jedi: Entropy-Based Localization and Removal of Adversarial Patches",
        BOOKTITLE = CVPR23,
        YEAR = "2023",
        PAGES = "4087-4095",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advpat8.html#TT159187"}

@inproceedings{bb163337,
        AUTHOR = "Xu, K. and Xiao, Y. and Zheng, Z.H. and Cai, K.J. and Nevatia, R.",
        TITLE = "PatchZero: Defending against Adversarial Patch Attacks by Detecting
and Zeroing the Patch",
        BOOKTITLE = WACV23,
        YEAR = "2023",
        PAGES = "4621-4630",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advpat8.html#TT159188"}

@inproceedings{bb163338,
        AUTHOR = "Li, J. and Zhang, H. and Xie, C.",
        TITLE = "ViP: Unified Certified Detection and Recovery for Patch Attack with
Vision Transformers",
        BOOKTITLE = ECCV22,
        YEAR = "2022",
        PAGES = "XXV:573-587",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advpat8.html#TT159189"}

@inproceedings{bb163339,
        AUTHOR = "Lovisotto, G. and Finnie, N. and Munoz, M. and Murnmadi, C.K. and Metzen, J.H.",
        TITLE = "Give Me Your Attention: Dot-Product Attention Considered Harmful for
Adversarial Patch Robustness",
        BOOKTITLE = CVPR22,
        YEAR = "2022",
        PAGES = "15213-15222",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advpat8.html#TT159190"}

@inproceedings{bb163340,
        AUTHOR = "Liu, J. and Levine, A. and Lau, C.P. and Chellappa, R. and Feizi, S.",
        TITLE = "Segment and Complete: Defending Object Detectors against Adversarial
Patch Attacks with Robust Patch Detection",
        BOOKTITLE = CVPR22,
        YEAR = "2022",
        PAGES = "14953-14962",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advpat8.html#TT159191"}

@inproceedings{bb163341,
        AUTHOR = "Yu, C. and Chen, J.S. and Xue, Y.Z. and Liu, Y.Y. and Wan, W.T. and Bao, J.Y. and Ma, H.M.",
        TITLE = "Defending against Universal Adversarial Patches by Clipping Feature
Norms",
        BOOKTITLE = ICCV21,
        YEAR = "2021",
        PAGES = "16414-16422",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advpat8.html#TT159192"}

@inproceedings{bb163342,
        AUTHOR = "Nesti, F. and Rossolini, G. and Nair, S. and Biondi, A. and Buttazzo, G.",
        TITLE = "Evaluating the Robustness of Semantic Segmentation for Autonomous
Driving against Real-World Adversarial Patch Attacks",
        BOOKTITLE = WACV22,
        YEAR = "2022",
        PAGES = "2826-2835",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advpat8.html#TT159193"}

@inproceedings{bb163343,
        AUTHOR = "Lennon, M. and Drenkow, N. and Burlina, P.",
        TITLE = "Patch Attack Invariance: How Sensitive are Patch Attacks to 3D Pose?",
        BOOKTITLE = AROW21,
        YEAR = "2021",
        PAGES = "112-121",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advpat8.html#TT159194"}

@inproceedings{bb163344,
        AUTHOR = "Gittings, T. and Schneider, S. and Collomosse, J.",
        TITLE = "Vax-a-net: Training-time Defence Against Adversarial Patch Attacks",
        BOOKTITLE = ACCV20,
        YEAR = "2020",
        PAGES = "IV:235-251",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advpat8.html#TT159195"}

@inproceedings{bb163345,
        AUTHOR = "Saha, A. and Subramanya, A. and Patil, K. and Pirsiavash, H.",
        TITLE = "Role of Spatial Context in Adversarial Robustness for Object
Detection",
        BOOKTITLE = AML-CV20,
        YEAR = "2020",
        PAGES = "3403-3412",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advpat8.html#TT159196"}

@inproceedings{bb163346,
        AUTHOR = "Mukuta, Y. and Ushiku, Y. and Harada, T.",
        TITLE = "Spatial-Temporal Weighted Pyramid Using Spatial Orthogonal Pooling",
        BOOKTITLE = CEFR-LCV17,
        YEAR = "2017",
        PAGES = "1041-1049",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advpat8.html#TT159197"}

@article{bb163347,
        AUTHOR = "Seo, S. and Lee, Y. and Kang, P.",
        TITLE = "Cost-free adversarial defense: Distance-based optimization for model
robustness without adversarial training",
        JOURNAL = CVIU,
        VOLUME = "227",
        YEAR = "2023",
        PAGES = "103599",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT159198"}

@article{bb163348,
        AUTHOR = "Cheng, Z. and Zhu, F. and Zhang, X.Y. and Liu, C.L.",
        TITLE = "Adversarial training with distribution normalization and margin
balance",
        JOURNAL = PR,
        VOLUME = "136",
        YEAR = "2023",
        PAGES = "109182",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT159199"}

@article{bb163349,
        AUTHOR = "Lau, C.P. and Liu, J. and Souri, H. and Lin, W.A. and Feizi, S. and Chellappa, R.",
        TITLE = "Interpolated Joint Space Adversarial Training for Robust and
Generalizable Defenses",
        JOURNAL = PAMI,
        VOLUME = "45",
        YEAR = "2023",
        NUMBER = "11",
        MONTH = "November",
        PAGES = "13054-13067",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT159200"}

@article{bb163350,
        AUTHOR = "Miao, J.Z. and Yu, X.Z. and Hu, Z.C. and Song, Y.R. and Liu, L. and Zhou, Z.G.",
        TITLE = "An effective deep learning adversarial defense method based on
spatial structural constraints in embedding space",
        JOURNAL = PRL,
        VOLUME = "178",
        YEAR = "2024",
        PAGES = "160-166",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT159201"}

@inproceedings{bb163351,
        AUTHOR = "Liu, X.L. and Hu, T. and Yi, P. and Pan, Q. and Ma, H.L. and Jiang, Y.M. and Li, B.L.",
        TITLE = "Defending Against Transfer-Based Adversarial Attacks Using SVD-Driven
Feature Evolution",
        BOOKTITLE = "FaDE-TCV25",
        YEAR = "2025",
        PAGES = "703-711",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT159202"}

@inproceedings{bb163352,
        AUTHOR = "Prach, B. and Brau, F. and Buttazzo, G. and Lampert, C.H.",
        TITLE = "1-Lipschitz Layers Compared: Memory, Speed, and Certifiable
Robustness",
        BOOKTITLE = CVPR24,
        YEAR = "2024",
        PAGES = "24574-24583",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT159203"}

@inproceedings{bb163353,
        AUTHOR = "Song, K.Y. and Lai, H.J. and Pan, Y. and Yin, J.",
        TITLE = "MimicDiffusion: Purifying Adversarial Perturbation via Mimicking
Clean Diffusion Model",
        BOOKTITLE = CVPR24,
        YEAR = "2024",
        PAGES = "24665-24674",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT159204"}

@inproceedings{bb163354,
        AUTHOR = "Wang, Z. and Li, X.H. and Zhu, H. and Xie, C.",
        TITLE = "Revisiting Adversarial Training at Scale",
        BOOKTITLE = CVPR24,
        YEAR = "2024",
        PAGES = "24675-24685",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT159205"}

@inproceedings{bb163355,
        AUTHOR = "Xiao, Y. and Chen, Y.C. and Ma, S.Q. and Fang, C.R. and Bai, T.T. and Gu, M.Z. and Cheng, Y.X. and Chen, Y.W. and Chen, Z.Y.",
        TITLE = "Tightening Robustness Verification of MaxPool-based Neural Networks
via Minimizing the Over-Approximation Zone",
        BOOKTITLE = CVPR25,
        YEAR = "2025",
        PAGES = "20695-20705",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT159206"}

@inproceedings{bb163356,
        AUTHOR = "Xiao, Y. and Ma, S.Q. and Zhai, J. and Fang, C.R. and Jia, J.Y. and Chen, Z.Y.",
        TITLE = "Towards General Robustness Verification of MaxPool-Based
Convolutional Neural Networks via Tightening Linear Approximation",
        BOOKTITLE = CVPR24,
        YEAR = "2024",
        PAGES = "24766-24775",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT159207"}

@inproceedings{bb163357,
        AUTHOR = "Li, Q. and Hu, Y.X. and Dong, Y.P. and Zhang, D.X. and Chen, Y.T.",
        TITLE = "Focus on Hiders: Exploring Hidden Threats for Enhancing Adversarial
Training",
        BOOKTITLE = CVPR24,
        YEAR = "2024",
        PAGES = "24442-24451",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT159208"}

@inproceedings{bb163358,
        AUTHOR = "Yin, X.Y. and Ruan, W.J.",
        TITLE = "Boosting Adversarial Training via Fisher-Rao Norm-Based
Regularization",
        BOOKTITLE = CVPR24,
        YEAR = "2024",
        PAGES = "24544-24553",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT159209"}

@inproceedings{bb163359,
        AUTHOR = "Tang, L. and Zhang, L.",
        TITLE = "Robust Overfitting Does Matter: Test-Time Adversarial Purification
with FGSM",
        BOOKTITLE = CVPR24,
        YEAR = "2024",
        PAGES = "24347-24356",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT159210"}

@inproceedings{bb163360,
        AUTHOR = "Zhao, M.N. and Zhang, L.H. and Kong, Y.Q. and Yin, B.C.",
        TITLE = "Fast Adversarial Training with Smooth Convergence",
        BOOKTITLE = ICCV23,
        YEAR = "2023",
        PAGES = "4697-4706",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT159211"}

@inproceedings{bb163361,
        AUTHOR = "Ge, Y. and Li, Y. and Han, K. and Zhu, J. and Long, X.Z.",
        TITLE = "Advancing Example Exploitation Can Alleviate Critical Challenges in
Adversarial Training",
        BOOKTITLE = ICCV23,
        YEAR = "2023",
        PAGES = "145-154",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT159212"}

@inproceedings{bb163362,
        AUTHOR = "Wei, Z.M. and Wang, Y.F. and Guo, Y.W. and Wang, Y.",
        TITLE = "CFA: Class-Wise Calibrated Fair Adversarial Training",
        BOOKTITLE = CVPR23,
        YEAR = "2023",
        PAGES = "8193-8201",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT159213"}

@inproceedings{bb163363,
        AUTHOR = "Dong, J.H. and Moosavi Dezfooli, S.M. and Lai, J.H. and Xie, X.H.",
        TITLE = "The Enemy of My Enemy is My Friend: Exploring Inverse Adversaries for
Improving Adversarial Training",
        BOOKTITLE = CVPR23,
        YEAR = "2023",
        PAGES = "24678-24687",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT159214"}

@inproceedings{bb163364,
        AUTHOR = "Hsiung, L. and Tsai, Y.Y. and Chen, P.Y. and Ho, T.Y.",
        TITLE = "Towards Compositional Adversarial Robustness: Generalizing
Adversarial Training to Composite Semantic Perturbations",
        BOOKTITLE = CVPR23,
        YEAR = "2023",
        PAGES = "24658-24667",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT159215"}

@inproceedings{bb163365,
        AUTHOR = "Jin, G.J. and Yi, X.P. and Wu, D.Y. and Mu, R.H. and Huang, X.W.",
        TITLE = "Randomized Adversarial Training via Taylor Expansion",
        BOOKTITLE = CVPR23,
        YEAR = "2023",
        PAGES = "16447-16457",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT159216"}

@inproceedings{bb163366,
        AUTHOR = "Gavrikov, P. and Keuper, J. and Keuper, M.",
        TITLE = "An Extended Study of Human-like Behavior under Adversarial Training",
        BOOKTITLE = AML23,
        YEAR = "2023",
        PAGES = "2361-2368",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT159217"}

@inproceedings{bb163367,
        AUTHOR = "Byun, J. and Go, H. and Cho, S. and Kim, C.",
        TITLE = "Exploiting Doubly Adversarial Examples for Improving Adversarial
Robustness",
        BOOKTITLE = ICIP22,
        YEAR = "2022",
        PAGES = "1331-1335",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT159218"}

@inproceedings{bb163368,
        AUTHOR = "Wang, Z. and Li, C.C. and Li, H.",
        TITLE = "Adversarial Training of Anti-Distilled Neural Network with Semantic
Regulation of Class Confidence",
        BOOKTITLE = ICIP22,
        YEAR = "2022",
        PAGES = "3576-3580",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT159219"}

@inproceedings{bb163369,
        AUTHOR = "Yin, X. and Li, S.Y. and Rohde, G.K.",
        TITLE = "Learning Energy-Based Models with Adversarial Training",
        BOOKTITLE = ECCV22,
        YEAR = "2022",
        PAGES = "V:209-226",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT159220"}

@inproceedings{bb163370,
        AUTHOR = "Yang, S. and Xu, C.",
        TITLE = "One Size Does NOT Fit All: Data-Adaptive Adversarial Training",
        BOOKTITLE = ECCV22,
        YEAR = "2022",
        PAGES = "V:70-85",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT159221"}

@inproceedings{bb163371,
        AUTHOR = "Dolatabadi, H.M. and Erfani, S. and Leckie, C.",
        TITLE = "l8-Robustness and Beyond: Unleashing Efficient Adversarial Training",
        BOOKTITLE = ECCV22,
        YEAR = "2022",
        PAGES = "XI:467-483",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT159222"}

@inproceedings{bb163372,
        AUTHOR = "Jia, X.J. and Zhang, Y. and Wu, B.Y. and Ma, K. and Wang, J. and Cao, X.C.",
        TITLE = "LAS-AT: Adversarial Training with Learnable Attack Strategy",
        BOOKTITLE = CVPR22,
        YEAR = "2022",
        PAGES = "13388-13398",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT159223"}

@inproceedings{bb163373,
        AUTHOR = "Li, T. and Wu, Y. and Chen, S. and Fang, K. and Huang, X.L.",
        TITLE = "Subspace Adversarial Training",
        BOOKTITLE = CVPR22,
        YEAR = "2022",
        PAGES = "13399-13408",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT159224"}

@inproceedings{bb163374,
        AUTHOR = "Poursaeed, O. and Jiang, T.X. and Yang, H. and Belongie, S. and Lim, S.N.",
        TITLE = "Robustness and Generalization via Generative Adversarial Training",
        BOOKTITLE = ICCV21,
        YEAR = "2021",
        PAGES = "15691-15700",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT159225"}

@inproceedings{bb163375,
        AUTHOR = "Xu, W.P. and Huang, H.C. and Pan, S.Y.",
        TITLE = "Using Feature Alignment Can Improve Clean Average Precision and
Adversarial Robustness In Object Detection",
        BOOKTITLE = ICIP21,
        YEAR = "2021",
        PAGES = "2184-2188",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT159226"}

@inproceedings{bb163376,
        AUTHOR = "Yu, C. and Xue, Y.Z. and Chen, J.S. and Wang, Y. and Ma, H.M.",
        TITLE = "Enhancing Adversarial Robustness for Image Classification By
Regularizing Class Level Feature Distribution",
        BOOKTITLE = ICIP21,
        YEAR = "2021",
        PAGES = "494-498",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT159227"}

@inproceedings{bb163377,
        AUTHOR = "Dabouei, A. and Taherkhani, F. and Soleymani, S. and Nasrabadi, N.M.",
        TITLE = "Revisiting Outer Optimization in Adversarial Training",
        BOOKTITLE = ECCV22,
        YEAR = "2022",
        PAGES = "V:244-261",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT159228"}

@inproceedings{bb163378,
        AUTHOR = "Dabouei, A. and Soleymani, S. and Taherkhani, F. and Dawson, J. and Nasrabadi, N.M.",
        TITLE = "Exploiting Joint Robustness to Adversarial Perturbations",
        BOOKTITLE = CVPR20,
        YEAR = "2020",
        PAGES = "1119-1128",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT159229"}

@inproceedings{bb163379,
        AUTHOR = "Addepalli, S. and Jain, S. and Sriramanan, G. and Babu, R.V.",
        TITLE = "Scaling Adversarial Training to Large Perturbation Bounds",
        BOOKTITLE = ECCV22,
        YEAR = "2022",
        PAGES = "V:301-316",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT159230"}

@inproceedings{bb163380,
        AUTHOR = "Vivek, B.S. and Revanur, A. and Venkat, N. and Babu, R.V.",
        TITLE = "Plug-And-Pipeline: Efficient Regularization for Single-Step
Adversarial Training",
        BOOKTITLE = TCV20,
        YEAR = "2020",
        PAGES = "138-146",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT159231"}

@inproceedings{bb163381,
        AUTHOR = "Chen, T. and Liu, S. and Chang, S. and Cheng, Y. and Amini, L. and Wang, Z.",
        TITLE = "Adversarial Robustness:
From Self-Supervised Pre-Training to Fine-Tuning",
        BOOKTITLE = CVPR20,
        YEAR = "2020",
        PAGES = "696-705",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT159232"}

@inproceedings{bb163382,
        AUTHOR = "Miyazato, S. and Wang, X. and Yamasaki, T. and Aizawa, K.",
        TITLE = "Reinforcing the Robustness of a Deep Neural Network to Adversarial
Examples by Using Color Quantization of Training Image Data",
        BOOKTITLE = ICIP19,
        YEAR = "2019",
        PAGES = "884-888",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT159233"}

@inproceedings{bb163383,
        AUTHOR = "Wang, J. and Zhang, H.",
        TITLE = "Bilateral Adversarial Training:
Towards Fast Training of More Robust Models Against Adversarial Attacks",
        BOOKTITLE = ICCV19,
        YEAR = "2019",
        PAGES = "6628-6637",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT159234"}

@inproceedings{bb163384,
        AUTHOR = "Ye, S. and Xu, K. and Liu, S. and Cheng, H. and Lambrechts, J. and Zhang, H. and Zhou, A. and Ma, K. and Wang, Y. and Lin, X.",
        TITLE = "Adversarial Robustness vs. Model Compression, or Both?",
        BOOKTITLE = ICCV19,
        YEAR = "2019",
        PAGES = "111-120",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT159235"}

@inproceedings{bb163385,
        AUTHOR = "Moosavi Dezfooli, S.M. and Fawzi, A. and Uesato, J. and Frossard, P.",
        TITLE = "Robustness via Curvature Regularization, and Vice Versa",
        BOOKTITLE = CVPR19,
        YEAR = "2019",
        PAGES = "9070-9078",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT159236"}

@inproceedings{bb163386,
        AUTHOR = "Mummadi, C.K. and Brox, T. and Metzen, J.H.",
        TITLE = "Defending Against Universal Perturbations With Shared Adversarial
Training",
        BOOKTITLE = ICCV19,
        YEAR = "2019",
        PAGES = "4927-4936",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT159237"}

@article{bb163387,
        AUTHOR = "Romano, Y. and Aberdam, A. and Sulam, J. and Elad, M.",
        TITLE = "Adversarial Noise Attacks of Deep Learning Architectures:
Stability Analysis via Sparse-Modeled Signals",
        JOURNAL = JMIV,
        VOLUME = "62",
        YEAR = "2020",
        NUMBER = "3",
        MONTH = "April",
        PAGES = "313-327",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT159238"}

@article{bb163388,
        AUTHOR = "Zhang, C.Z. and Liu, A.S. and Liu, X.L. and Xu, Y.T. and Yu, H. and Ma, Y.Q. and Li, T.L.",
        TITLE = "Interpreting and Improving Adversarial Robustness of Deep Neural
Networks With Neuron Sensitivity",
        JOURNAL = IP,
        VOLUME = "30",
        YEAR = "2021",
        PAGES = "1291-1304",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT159239"}

@article{bb163389,
        AUTHOR = "Liu, A.S. and Liu, X.L. and Yu, H. and Zhang, C.Z. and Liu, Q. and Tao, D.C.",
        TITLE = "Training Robust Deep Neural Networks via Adversarial Noise
Propagation",
        JOURNAL = IP,
        VOLUME = "30",
        YEAR = "2021",
        PAGES = "5769-5781",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT159240"}

@inproceedings{bb163390,
        AUTHOR = "Jia, K. and Tao, D.C. and Gao, S.H. and Xu, X.M.",
        TITLE = "Improving Training of Deep Neural Networks via Singular Value
Bounding",
        BOOKTITLE = CVPR17,
        YEAR = "2017",
        PAGES = "3994-4002",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT159241"}

@article{bb163391,
        AUTHOR = "Zhao, Z.Q. and Wang, H.Y. and Sun, H. and Yuan, J.H. and Huang, Z.C. and He, Z.H.",
        TITLE = "Removing Adversarial Noise via Low-Rank Completion of
High-Sensitivity Points",
        JOURNAL = IP,
        VOLUME = "30",
        YEAR = "2021",
        PAGES = "6485-6497",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT159242"}

@article{bb163392,
        AUTHOR = "Nguyen, H.H. and Kuribayashi, M. and Yamagishi, J. and Echizen, I.",
        TITLE = "Effects of Image Processing Operations on Adversarial Noise and Their
Use in Detecting and Correcting Adversarial Images",
        JOURNAL = IEICE,
        VOLUME = "E105-D",
        YEAR = "2022",
        NUMBER = "1",
        MONTH = "January",
        PAGES = "65-77",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT159243"}

@article{bb163393,
        AUTHOR = "Gao, S. and Yu, S. and Wu, L.W. and Yao, S.W. and Zhou, X.W.",
        TITLE = "Detecting adversarial examples by additional evidence from noise
domain",
        JOURNAL = IET-IPR,
        VOLUME = "16",
        YEAR = "2022",
        NUMBER = "2",
        PAGES = "378-392",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT159244"}

@article{bb163394,
        AUTHOR = "Cheng, Y.P. and Guo, Q. and Juefei Xu, F. and Lin, S.W. and Feng, W. and Lin, W.S. and Liu, Y.",
        TITLE = "Pasadena: Perceptually Aware and Stealthy Adversarial Denoise Attack",
        JOURNAL = MultMed,
        VOLUME = "24",
        YEAR = "2022",
        PAGES = "3807-3822",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT159245"}

@article{bb163395,
        AUTHOR = "Yang, D. and Chen, W. and Wei, S.J.",
        TITLE = "DTFA: Adversarial attack with discrete cosine transform noise and
target features on deep neural networks",
        JOURNAL = IET-IPR,
        VOLUME = "17",
        YEAR = "2023",
        NUMBER = "5",
        PAGES = "1464-1477",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT159246"}

@article{bb163396,
        AUTHOR = "Ying, C.Y. and You, Q.B. and Zhou, X.N. and Su, H. and Ding, W.B. and Ai, J.Y.",
        TITLE = "Consistent attack: Universal adversarial perturbation on embodied
vision navigation",
        JOURNAL = PRL,
        VOLUME = "168",
        YEAR = "2023",
        PAGES = "57-63",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT159247"}

@article{bb163397,
        AUTHOR = "Li, Y.Z. and Zhang, C. and Qi, H.G. and Lyu, S.W.",
        TITLE = "AdaNI: Adaptive Noise Injection to improve adversarial robustness",
        JOURNAL = CVIU,
        VOLUME = "238",
        YEAR = "2024",
        PAGES = "103855",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT159248"}

@article{bb163398,
        AUTHOR = "Park, J. and Shin, S. and Hwang, S. and Choi, S.",
        TITLE = "Elucidating robust learning with uncertainty-aware corruption pattern
estimation",
        JOURNAL = PR,
        VOLUME = "138",
        YEAR = "2023",
        PAGES = "109387",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT159249"}

@article{bb163399,
        AUTHOR = "Xie, W.C. and Luo, C. and Wang, G. and Shen, L.L. and Lai, Z.H. and Song, S.Y.",
        TITLE = "Network characteristics adaption and hierarchical feature exploration
for robust object recognition",
        JOURNAL = PR,
        VOLUME = "149",
        YEAR = "2024",
        PAGES = "110240",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT159250"}

Last update:May 3, 2026 at 17:51:13