@inproceedings{bb121600,
        AUTHOR = "Li, Y. and Cheng, S.Y. and Su, H. and Zhu, J.",
        TITLE = "Defense Against Adversarial Attacks via Controlling Gradient Leaking on
Embedded Manifolds",
        BOOKTITLE = ECCV20,
        YEAR = "2020",
        PAGES = "XXVIII:753-769",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117825"}

@inproceedings{bb121601,
        AUTHOR = "Rounds, J. and Kingsland, A. and Henry, M.J. and Duskin, K.R.",
        TITLE = "Probing for Artifacts: Detecting Imagenet Model Evasions",
        BOOKTITLE = AML-CV20,
        YEAR = "2020",
        PAGES = "3432-3441",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117826"}

@inproceedings{bb121602,
        AUTHOR = "Kariyappa, S. and Qureshi, M.K.",
        TITLE = "Defending Against Model Stealing Attacks With Adaptive Misinformation",
        BOOKTITLE = CVPR20,
        YEAR = "2020",
        PAGES = "767-775",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117827"}

@inproceedings{bb121603,
        AUTHOR = "Mohapatra, J. and Weng, T. and Chen, P. and Liu, S. and Daniel, L.",
        TITLE = "Towards Verifying Robustness of Neural Networks Against A Family of
Semantic Perturbations",
        BOOKTITLE = CVPR20,
        YEAR = "2020",
        PAGES = "241-249",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117828"}

@inproceedings{bb121604,
        AUTHOR = "Liu, X. and Xiao, T. and Si, S. and Cao, Q. and Kumar, S. and Hsieh, C.",
        TITLE = "How Does Noise Help Robustness? Explanation and Exploration under the
Neural SDE Framework",
        BOOKTITLE = CVPR20,
        YEAR = "2020",
        PAGES = "279-287",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117829"}

@inproceedings{bb121605,
        AUTHOR = "Wu, M. and Kwiatkowska, M.",
        TITLE = "Robustness Guarantees for Deep Neural Networks on Videos",
        BOOKTITLE = CVPR20,
        YEAR = "2020",
        PAGES = "308-317",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117830"}

@inproceedings{bb121606,
        AUTHOR = "Chan, A. and Tay, Y. and Ong, Y.",
        TITLE = "What It Thinks Is Important Is Important: Robustness Transfers
Through Input Gradients",
        BOOKTITLE = CVPR20,
        YEAR = "2020",
        PAGES = "329-338",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117831"}

@inproceedings{bb121607,
        AUTHOR = "Zhang, L. and Yu, M. and Chen, T. and Shi, Z. and Bao, C. and Ma, K.",
        TITLE = "Auxiliary Training: Towards Accurate and Robust Models",
        BOOKTITLE = CVPR20,
        YEAR = "2020",
        PAGES = "369-378",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117832"}

@inproceedings{bb121608,
        AUTHOR = "Barath, D. and Noskova, J. and Ivashechkin, M. and Matas, J.",
        TITLE = "MAGSAC++, a Fast, Reliable and Accurate Robust Estimator",
        BOOKTITLE = CVPR20,
        YEAR = "2020",
        PAGES = "1301-1309",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117833"}

@inproceedings{bb121609,
        AUTHOR = "Saha, A. and Subramanya, A. and Patil, K. and Pirsiavash, H.",
        TITLE = "Role of Spatial Context in Adversarial Robustness for Object
Detection",
        BOOKTITLE = AML-CV20,
        YEAR = "2020",
        PAGES = "3403-3412",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117834"}

@inproceedings{bb121610,
        AUTHOR = "Jefferson, B. and Marrero, C.O.",
        TITLE = "Robust Assessment of Real-World Adversarial Examples",
        BOOKTITLE = AML-CV20,
        YEAR = "2020",
        PAGES = "3442-3449",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117835"}

@inproceedings{bb121611,
        AUTHOR = "Goel, A. and Agarwal, A. and Vatsa, M. and Singh, R. and Ratha, N.K.",
        TITLE = "DNDNet: Reconfiguring CNN for Adversarial Robustness",
        BOOKTITLE = TCV20,
        YEAR = "2020",
        PAGES = "103-110",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117836"}

@inproceedings{bb121612,
        AUTHOR = "Cohen, G. and Sapiro, G. and Giryes, R.",
        TITLE = "Detecting Adversarial Samples Using Influence Functions and Nearest
Neighbors",
        BOOKTITLE = CVPR20,
        YEAR = "2020",
        PAGES = "14441-14450",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117837"}

@inproceedings{bb121613,
        AUTHOR = "He, Z. and Rakin, A.S. and Li, J. and Chakrabarti, C. and Fan, D.",
        TITLE = "Defending and Harnessing the Bit-Flip Based Adversarial Weight Attack",
        BOOKTITLE = CVPR20,
        YEAR = "2020",
        PAGES = "14083-14091",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117838"}

@inproceedings{bb121614,
        AUTHOR = "Dong, X. and Han, J. and Chen, D. and Liu, J. and Bian, H. and Ma, Z. and Li, H. and Wang, X. and Zhang, W. and Yu, N.",
        TITLE = "Robust Superpixel-Guided Attentional Adversarial Attack",
        BOOKTITLE = CVPR20,
        YEAR = "2020",
        PAGES = "12892-12901",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117839"}

@inproceedings{bb121615,
        AUTHOR = "Rahnama, A. and Nguyen, A.T. and Raff, E.",
        TITLE = "Robust Design of Deep Neural Networks Against Adversarial Attacks
Based on Lyapunov Theory",
        BOOKTITLE = CVPR20,
        YEAR = "2020",
        PAGES = "8175-8184",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117840"}

@inproceedings{bb121616,
        AUTHOR = "Zhao, Y. and Wu, Y. and Chen, C. and Lim, A.",
        TITLE = "On Isometry Robustness of Deep 3D Point Cloud Models Under
Adversarial Attacks",
        BOOKTITLE = CVPR20,
        YEAR = "2020",
        PAGES = "1198-1207",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117841"}

@inproceedings{bb121617,
        AUTHOR = "Gowal, S. and Qin, C. and Huang, P. and Cemgil, T. and Dvijotham, K. and Mann, T. and Kohli, P.",
        TITLE = "Achieving Robustness in the Wild via Adversarial Mixing With
Disentangled Representations",
        BOOKTITLE = CVPR20,
        YEAR = "2020",
        PAGES = "1208-1217",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117842"}

@inproceedings{bb121618,
        AUTHOR = "Jeddi, A. and Shafiee, M.J. and Karg, M. and Scharfenberger, C. and Wong, A.",
        TITLE = "Learn2Perturb: An End-to-End Feature Perturbation Learning to Improve
Adversarial Robustness",
        BOOKTITLE = CVPR20,
        YEAR = "2020",
        PAGES = "1238-1247",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117843"}

@inproceedings{bb121619,
        AUTHOR = "Dabouei, A. and Soleymani, S. and Taherkhani, F. and Dawson, J. and Nasrabadi, N.M.",
        TITLE = "Exploiting Joint Robustness to Adversarial Perturbations",
        BOOKTITLE = CVPR20,
        YEAR = "2020",
        PAGES = "1119-1128",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117844"}

@inproceedings{bb121620,
        AUTHOR = "Addepalli, S. and Vivek, B.S. and Baburaj, A. and Sriramanan, G. and Babu, R.V.",
        TITLE = "Towards Achieving Adversarial Robustness by Enforcing Feature
Consistency Across Bit Planes",
        BOOKTITLE = CVPR20,
        YEAR = "2020",
        PAGES = "1017-1026",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117845"}

@inproceedings{bb121621,
        AUTHOR = "Yuan, J. and He, Z.",
        TITLE = "Ensemble Generative Cleaning With Feedback Loops for Defending
Adversarial Attacks",
        BOOKTITLE = CVPR20,
        YEAR = "2020",
        PAGES = "578-587",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117846"}

@inproceedings{bb121622,
        AUTHOR = "Guo, M. and Yang, Y. and Xu, R. and Liu, Z. and Lin, D.",
        TITLE = "When NAS Meets Robustness: In Search of Robust Architectures Against
Adversarial Attacks",
        BOOKTITLE = CVPR20,
        YEAR = "2020",
        PAGES = "628-637",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117847"}

@inproceedings{bb121623,
        AUTHOR = "Borkar, T. and Heide, F. and Karam, L.",
        TITLE = "Defending Against Universal Attacks Through Selective Feature
Regeneration",
        BOOKTITLE = CVPR20,
        YEAR = "2020",
        PAGES = "706-716",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117848"}

@inproceedings{bb121624,
        AUTHOR = "Li, G. and Ding, S. and Luo, J. and Liu, C.",
        TITLE = "Enhancing Intrinsic Adversarial Robustness via Feature Pyramid
Decoder",
        BOOKTITLE = CVPR20,
        YEAR = "2020",
        PAGES = "797-805",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117849"}

@inproceedings{bb121625,
        AUTHOR = "Chen, T. and Liu, S. and Chang, S. and Cheng, Y. and Amini, L. and Wang, Z.",
        TITLE = "Adversarial Robustness:
From Self-Supervised Pre-Training to Fine-Tuning",
        BOOKTITLE = CVPR20,
        YEAR = "2020",
        PAGES = "696-705",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117850"}

@inproceedings{bb121626,
        AUTHOR = "Lee, S. and Lee, H. and Yoon, S.",
        TITLE = "Adversarial Vertex Mixup: Toward Better Adversarially Robust
Generalization",
        BOOKTITLE = CVPR20,
        YEAR = "2020",
        PAGES = "269-278",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117851"}

@inproceedings{bb121627,
        AUTHOR = "Dong, Y. and Fu, Q. and Yang, X. and Pang, T. and Su, H. and Xiao, Z. and Zhu, J.",
        TITLE = "Benchmarking Adversarial Robustness on Image Classification",
        BOOKTITLE = CVPR20,
        YEAR = "2020",
        PAGES = "318-328",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117852"}

@inproceedings{bb121628,
        AUTHOR = "Xiao, C. and Zheng, C.",
        TITLE = "One Man's Trash Is Another Man's Treasure:
Resisting Adversarial Examples by Adversarial Examples",
        BOOKTITLE = CVPR20,
        YEAR = "2020",
        PAGES = "409-418",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117853"}

@inproceedings{bb121629,
        AUTHOR = "Naseer, M. and Khan, S. and Hayat, M. and Khan, F.S. and Porikli, F.M.",
        TITLE = "A Self-supervised Approach for Adversarial Robustness",
        BOOKTITLE = CVPR20,
        YEAR = "2020",
        PAGES = "259-268",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117854"}

@inproceedings{bb121630,
        AUTHOR = "Zhao, Y. and Tian, Y. and Fowlkes, C. and Shen, W. and Yuille, A.L.",
        TITLE = "Resisting Large Data Variations via Introspective Transformation
Network",
        BOOKTITLE = WACV20,
        YEAR = "2020",
        PAGES = "3069-3078",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117855"}

@inproceedings{bb121631,
        AUTHOR = "Kim, D.H. and Bargal, S.A. and Zhang, J.M. and Sclaroff, S.",
        TITLE = "Multi-way Encoding for Robustness",
        BOOKTITLE = WACV20,
        YEAR = "2020",
        PAGES = "1341-1349",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117856"}

@inproceedings{bb121632,
        AUTHOR = "Folz, J. and Palacio, S. and Hees, J. and Dengel, A.",
        TITLE = "Adversarial Defense based on Structure-to-Signal Autoencoders",
        BOOKTITLE = WACV20,
        YEAR = "2020",
        PAGES = "3568-3577",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117857"}

@inproceedings{bb121633,
        AUTHOR = "Zheng, S. and Zhu, Z. and Zhang, X. and Liu, Z. and Cheng, J. and Zhao, Y.",
        TITLE = "Distribution-Induced Bidirectional Generative Adversarial Network for
Graph Representation Learning",
        BOOKTITLE = CVPR20,
        YEAR = "2020",
        PAGES = "7222-7231",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117858"}

@inproceedings{bb121634,
        AUTHOR = "Vivek, B.S. and Revanur, A. and Venkat, N. and Babu, R.V.",
        TITLE = "Plug-And-Pipeline: Efficient Regularization for Single-Step
Adversarial Training",
        BOOKTITLE = TCV20,
        YEAR = "2020",
        PAGES = "138-146",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117859"}

@inproceedings{bb121635,
        AUTHOR = "Benz, P. and Zhang, C. and Imtiaz, T. and Kweon, I.S.",
        TITLE = "Double Targeted Universal Adversarial Perturbations",
        BOOKTITLE = ACCV20,
        YEAR = "2020",
        PAGES = "IV:284-300",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117860"}

@inproceedings{bb121636,
        AUTHOR = "Zhang, C. and Benz, P. and Imtiaz, T. and Kweon, I.S.",
        TITLE = "Understanding Adversarial Examples From the Mutual Influence of
Images and Perturbations",
        BOOKTITLE = CVPR20,
        YEAR = "2020",
        PAGES = "14509-14518",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117861"}

@inproceedings{bb121637,
        AUTHOR = "Zheng, H. and Zhang, Z. and Gu, J. and Lee, H. and Prakash, A.",
        TITLE = "Efficient Adversarial Training With Transferable Adversarial Examples",
        BOOKTITLE = CVPR20,
        YEAR = "2020",
        PAGES = "1178-1187",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117862"}

@inproceedings{bb121638,
        AUTHOR = "Shi, Y. and Han, Y. and Tian, Q.",
        TITLE = "Polishing Decision-Based Adversarial Noise With a Customized Sampling",
        BOOKTITLE = CVPR20,
        YEAR = "2020",
        PAGES = "1027-1035",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117863"}

@inproceedings{bb121639,
        AUTHOR = "Xie, C. and Tan, M. and Gong, B. and Wang, J. and Yuille, A.L. and Le, Q.V.",
        TITLE = "Adversarial Examples Improve Image Recognition",
        BOOKTITLE = CVPR20,
        YEAR = "2020",
        PAGES = "816-825",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117864"}

@inproceedings{bb121640,
        AUTHOR = "Dabouei, A. and Soleymani, S. and Taherkhani, F. and Dawson, J. and Nasrabadi, N.M.",
        TITLE = "SmoothFool: An Efficient Framework for Computing Smooth Adversarial
Perturbations",
        BOOKTITLE = WACV20,
        YEAR = "2020",
        PAGES = "2654-2663",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117865"}

@inproceedings{bb121641,
        AUTHOR = "Peterson, J. and Battleday, R. and Griffiths, T. and Russakovsky, O.",
        TITLE = "Human Uncertainty Makes Classification More Robust",
        BOOKTITLE = ICCV19,
        YEAR = "2019",
        PAGES = "9616-9625",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117866"}

@inproceedings{bb121642,
        AUTHOR = "Wang, J. and Zhang, H.",
        TITLE = "Bilateral Adversarial Training:
Towards Fast Training of More Robust Models Against Adversarial Attacks",
        BOOKTITLE = ICCV19,
        YEAR = "2019",
        PAGES = "6628-6637",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117867"}

@inproceedings{bb121643,
        AUTHOR = "Ye, S. and Xu, K. and Liu, S. and Cheng, H. and Lambrechts, J. and Zhang, H. and Zhou, A. and Ma, K. and Wang, Y. and Lin, X.",
        TITLE = "Adversarial Robustness vs. Model Compression, or Both?",
        BOOKTITLE = ICCV19,
        YEAR = "2019",
        PAGES = "111-120",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117868"}

@inproceedings{bb121644,
        AUTHOR = "Moosavi Dezfooli, S.M. and Fawzi, A. and Uesato, J. and Frossard, P.",
        TITLE = "Robustness via Curvature Regularization, and Vice Versa",
        BOOKTITLE = CVPR19,
        YEAR = "2019",
        PAGES = "9070-9078",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117869"}

@inproceedings{bb121645,
        AUTHOR = "Xie, C. and Wu, Y.X. and van der Maaten, L. and Yuille, A.L. and He, K.M.",
        TITLE = "Feature Denoising for Improving Adversarial Robustness",
        BOOKTITLE = CVPR19,
        YEAR = "2019",
        PAGES = "501-509",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117870"}

@inproceedings{bb121646,
        AUTHOR = "He, Z. and Rakin, A.S. and Fan, D.L.",
        TITLE = "Parametric Noise Injection: Trainable Randomness to Improve Deep Neural
Network Robustness Against Adversarial Attack",
        BOOKTITLE = CVPR19,
        YEAR = "2019",
        PAGES = "588-597",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117871"}

@inproceedings{bb121647,
        AUTHOR = "Kaneko, T. and Harada, T.",
        TITLE = "Noise Robust Generative Adversarial Networks",
        BOOKTITLE = CVPR20,
        YEAR = "2020",
        PAGES = "8401-8411",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117872"}

@inproceedings{bb121648,
        AUTHOR = "Kaneko, T. and Ushiku, Y. and Harada, T.",
        TITLE = "Label-Noise Robust Generative Adversarial Networks",
        BOOKTITLE = CVPR19,
        YEAR = "2019",
        PAGES = "2462-2471",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117873"}

@inproceedings{bb121649,
        AUTHOR = "Stutz, D. and Hein, M. and Schiele, B.",
        TITLE = "Disentangling Adversarial Robustness and Generalization",
        BOOKTITLE = CVPR19,
        YEAR = "2019",
        PAGES = "6969-6980",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117874"}

@inproceedings{bb121650,
        AUTHOR = "Miyazato, S. and Wang, X. and Yamasaki, T. and Aizawa, K.",
        TITLE = "Reinforcing the Robustness of a Deep Neural Network to Adversarial
Examples by Using Color Quantization of Training Image Data",
        BOOKTITLE = ICIP19,
        YEAR = "2019",
        PAGES = "884-888",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117875"}

@inproceedings{bb121651,
        AUTHOR = "Ramanathan, T. and Manimaran, A. and You, S. and Kuo, C.J.",
        TITLE = "Robustness of Saak Transform Against Adversarial Attacks",
        BOOKTITLE = ICIP19,
        YEAR = "2019",
        PAGES = "2531-2535",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117876"}

@inproceedings{bb121652,
        AUTHOR = "Prakash, A. and Moran, N. and Garber, S. and DiLillo, A. and Storer, J.",
        TITLE = "Deflecting Adversarial Attacks with Pixel Deflection",
        BOOKTITLE = CVPR18,
        YEAR = "2018",
        PAGES = "8571-8580",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117877"}

@inproceedings{bb121653,
        AUTHOR = "Mummadi, C.K. and Brox, T. and Metzen, J.H.",
        TITLE = "Defending Against Universal Perturbations With Shared Adversarial
Training",
        BOOKTITLE = ICCV19,
        YEAR = "2019",
        PAGES = "4927-4936",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117878"}

@inproceedings{bb121654,
        AUTHOR = "Chen, H. and Liang, J. and Chang, S. and Pan, J. and Chen, Y. and Wei, W. and Juan, D.",
        TITLE = "Improving Adversarial Robustness via Guided Complement Entropy",
        BOOKTITLE = ICCV19,
        YEAR = "2019",
        PAGES = "4880-4888",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117879"}

@inproceedings{bb121655,
        AUTHOR = "Bai, Y. and Feng, Y. and Wang, Y. and Dai, T. and Xia, S. and Jiang, Y.",
        TITLE = "Hilbert-Based Generative Defense for Adversarial Examples",
        BOOKTITLE = ICCV19,
        YEAR = "2019",
        PAGES = "4783-4792",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117880"}

@inproceedings{bb121656,
        AUTHOR = "Jang, Y. and Zhao, T. and Hong, S. and Lee, H.",
        TITLE = "Adversarial Defense via Learning to Generate Diverse Attacks",
        BOOKTITLE = ICCV19,
        YEAR = "2019",
        PAGES = "2740-2749",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117881"}

@inproceedings{bb121657,
        AUTHOR = "Mustafa, A. and Khan, S. and Hayat, M. and Goecke, R. and Shen, J. and Shao, L.",
        TITLE = "Adversarial Defense by Restricting the Hidden Space of Deep Neural
Networks",
        BOOKTITLE = ICCV19,
        YEAR = "2019",
        PAGES = "3384-3393",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117882"}

@inproceedings{bb121658,
        AUTHOR = "Taran, O. and Rezaeifar, S. and Holotyak, T. and Voloshynovskiy, S.",
        TITLE = "Defending Against Adversarial Attacks by Randomized Diversification",
        BOOKTITLE = CVPR19,
        YEAR = "2019",
        PAGES = "11218-11225",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117883"}

@inproceedings{bb121659,
        AUTHOR = "Sun, B. and Tsai, N.H. and Liu, F.C. and Yu, R. and Su, H.",
        TITLE = "Adversarial Defense by Stratified Convolutional Sparse Coding",
        BOOKTITLE = CVPR19,
        YEAR = "2019",
        PAGES = "11439-11448",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117884"}

@inproceedings{bb121660,
        AUTHOR = "Ho, C.H. and Leung, B. and Sandstrom, E. and Chang, Y. and Vasconcelos, N.M.",
        TITLE = "Catastrophic Child's Play:
Easy to Perform, Hard to Defend Adversarial Attacks",
        BOOKTITLE = CVPR19,
        YEAR = "2019",
        PAGES = "9221-9229",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117885"}

@inproceedings{bb121661,
        AUTHOR = "Dubey, A. and van der Maaten, L. and Yalniz, Z. and Li, Y. and Mahajan, D.",
        TITLE = "Defense Against Adversarial Images Using Web-Scale Nearest-Neighbor
Search",
        BOOKTITLE = CVPR19,
        YEAR = "2019",
        PAGES = "8759-8768",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117886"}

@inproceedings{bb121662,
        AUTHOR = "Dong, Y.P. and Pang, T. and Su, H. and Zhu, J.",
        TITLE = "Evading Defenses to Transferable Adversarial Examples by
Translation-Invariant Attacks",
        BOOKTITLE = CVPR19,
        YEAR = "2019",
        PAGES = "4307-4316",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117887"}

@inproceedings{bb121663,
        AUTHOR = "Rony, J. and Hafemann, L.G. and Oliveira, L.S. and Ben Ayed, I. and Sabourin, R. and Granger, E.",
        TITLE = "Decoupling Direction and Norm for Efficient Gradient-Based L2
Adversarial Attacks and Defenses",
        BOOKTITLE = CVPR19,
        YEAR = "2019",
        PAGES = "4317-4325",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117888"}

@inproceedings{bb121664,
        AUTHOR = "Qiu, Y.X. and Leng, J.W. and Guo, C. and Chen, Q. and Li, C. and Guo, M. and Zhu, Y.H.",
        TITLE = "Adversarial Defense Through Network Profiling Based Path Extraction",
        BOOKTITLE = CVPR19,
        YEAR = "2019",
        PAGES = "4772-4781",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117889"}

@inproceedings{bb121665,
        AUTHOR = "Jia, X.J. and Wei, X.X. and Cao, X.C. and Foroosh, H.",
        TITLE = "ComDefend: An Efficient Image Compression Model to Defend Adversarial
Examples",
        BOOKTITLE = CVPR19,
        YEAR = "2019",
        PAGES = "6077-6085",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117890"}

@inproceedings{bb121666,
        AUTHOR = "Raff, E. and Sylvester, J. and Forsyth, S. and McLean, M.",
        TITLE = "Barrage of Random Transforms for Adversarially Robust Defense",
        BOOKTITLE = CVPR19,
        YEAR = "2019",
        PAGES = "6521-6530",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117891"}

@inproceedings{bb121667,
        AUTHOR = "Ji, J. and Zhong, B. and Ma, K.",
        TITLE = "Multi-Scale Defense of Adversarial Images",
        BOOKTITLE = ICIP19,
        YEAR = "2019",
        PAGES = "4070-4074",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117892"}

@inproceedings{bb121668,
        AUTHOR = "Agarwal, C. and Nguyen, A. and Schonfeld, D.",
        TITLE = "Improving Robustness to Adversarial Examples by Encouraging
Discriminative Features",
        BOOKTITLE = ICIP19,
        YEAR = "2019",
        PAGES = "3801-3805",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117893"}

@inproceedings{bb121669,
        AUTHOR = "Saha, S. and Kumar, A. and Sahay, P. and Jose, G. and Kruthiventi, S. and Muralidhara, H.",
        TITLE = "Attack Agnostic Statistical Method for Adversarial Detection",
        BOOKTITLE = SDL-CV19,
        YEAR = "2019",
        PAGES = "798-802",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117894"}

@inproceedings{bb121670,
        AUTHOR = "Taran, O. and Rezaeifar, S. and Voloshynovskiy, S.",
        TITLE = "Bridging Machine Learning and Cryptography in Defence Against
Adversarial Attacks",
        BOOKTITLE = Objectionable18,
        YEAR = "2018",
        PAGES = "II:267-279",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117895"}

@inproceedings{bb121671,
        AUTHOR = "Naseer, M. and Khan, S. and Porikli, F.M.",
        TITLE = "Local Gradients Smoothing: Defense Against Localized Adversarial
Attacks",
        BOOKTITLE = WACV19,
        YEAR = "2019",
        PAGES = "1300-1307",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117896"}

@inproceedings{bb121672,
        AUTHOR = "Akhtar, N. and Liu, J. and Mian, A.",
        TITLE = "Defense Against Universal Adversarial Perturbations",
        BOOKTITLE = CVPR18,
        YEAR = "2018",
        PAGES = "3389-3398",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117897"}

@inproceedings{bb121673,
        AUTHOR = "Liao, F. and Liang, M. and Dong, Y. and Pang, T. and Hu, X. and Zhu, J.",
        TITLE = "Defense Against Adversarial Attacks Using High-Level Representation
Guided Denoiser",
        BOOKTITLE = CVPR18,
        YEAR = "2018",
        PAGES = "1778-1787",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117898"}

@inproceedings{bb121674,
        AUTHOR = "Behpour, S. and Xing, W. and Ziebart, B.D.",
        TITLE = "ARC: Adversarial Robust Cuts for Semi-Supervised and Multi-label
Classification",
        BOOKTITLE = WiCV18,
        YEAR = "2018",
        PAGES = "1986-19862",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117899"}

@inproceedings{bb121675,
        AUTHOR = "Karim, R. and Islam, M.A. and Mohammed, N. and Bruce, N.D.B.",
        TITLE = "On the Robustness of Deep Learning Models to Universal Adversarial
Attack",
        BOOKTITLE = CRV18,
        YEAR = "2018",
        PAGES = "55-62",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117900"}

@inproceedings{bb121676,
        AUTHOR = "Jakubovitz, D. and Giryes, R.",
        TITLE = "Improving DNN Robustness to Adversarial Attacks Using Jacobian
Regularization",
        BOOKTITLE = ECCV18,
        YEAR = "2018",
        PAGES = "XII: 525-541",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117901"}

@inproceedings{bb121677,
        AUTHOR = "Rozsa, A. and Gunther, M. and Boult, T.E.",
        TITLE = "Towards Robust Deep Neural Networks with BANG",
        BOOKTITLE = WACV18,
        YEAR = "2018",
        PAGES = "803-811",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117902"}

@inproceedings{bb121678,
        AUTHOR = "Lu, J. and Issaranon, T. and Forsyth, D.A.",
        TITLE = "SafetyNet: Detecting and Rejecting Adversarial Examples Robustly",
        BOOKTITLE = ICCV17,
        YEAR = "2017",
        PAGES = "446-454",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117903"}

@inproceedings{bb121679,
        AUTHOR = "Mukuta, Y. and Ushiku, Y. and Harada, T.",
        TITLE = "Spatial-Temporal Weighted Pyramid Using Spatial Orthogonal Pooling",
        BOOKTITLE = CEFR-LCV17,
        YEAR = "2017",
        PAGES = "1041-1049",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117904"}

@inproceedings{bb121680,
        AUTHOR = "Moosavi Dezfooli, S.M. and Fawzi, A. and Fawzi, O. and Frossard, P.",
        TITLE = "Universal Adversarial Perturbations",
        BOOKTITLE = CVPR17,
        YEAR = "2017",
        PAGES = "86-94",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defgan4.html#TT117905"}

@article{bb121681,
        AUTHOR = "Biggio, B. and Roli, F.",
        TITLE = "Wild Patterns: Ten Years After the Rise of Adversarial Machine
Learning",
        JOURNAL = PR,
        VOLUME = "84",
        YEAR = "2018",
        PAGES = "317-331",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT117906"}

@article{bb121682,
        AUTHOR = "Hang, J. and Han, K. and Chen, H. and Li, Y.",
        TITLE = "Ensemble adversarial black-box attacks against deep learning systems",
        JOURNAL = PR,
        VOLUME = "101",
        YEAR = "2020",
        PAGES = "107184",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT117907"}

@article{bb121683,
        AUTHOR = "Croce, F. and Rauber, J. and Hein, M.",
        TITLE = "Scaling up the Randomized Gradient-Free Adversarial Attack Reveals
Overestimation of Robustness Using Established Attacks",
        JOURNAL = IJCV,
        VOLUME = "128",
        YEAR = "2020",
        NUMBER = "4",
        MONTH = "April",
        PAGES = "1028-1046",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT117908"}

@inproceedings{bb121684,
        AUTHOR = "Croce, F. and Hein, M.",
        TITLE = "A Randomized Gradient-Free Attack on ReLU Networks",
        BOOKTITLE = GCPR18,
        YEAR = "2018",
        PAGES = "215-227",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT117909"}

@article{bb121685,
        AUTHOR = "Romano, Y. and Aberdam, A. and Sulam, J. and Elad, M.",
        TITLE = "Adversarial Noise Attacks of Deep Learning Architectures:
Stability Analysis via Sparse-Modeled Signals",
        JOURNAL = JMIV,
        VOLUME = "62",
        YEAR = "2020",
        NUMBER = "3",
        MONTH = "April",
        PAGES = "313-327",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT117910"}

@article{bb121686,
        AUTHOR = "Ozbulak, U. and Gasparyan, M. and de Neve, W. and van Messem, A.",
        TITLE = "Perturbation analysis of gradient-based adversarial attacks",
        JOURNAL = PRL,
        VOLUME = "135",
        YEAR = "2020",
        PAGES = "313-320",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT117911"}

@article{bb121687,
        AUTHOR = "Wan, S. and Wu, T.Y. and Hsu, H.W. and Wong, W.H. and Lee, C.Y.",
        TITLE = "Feature Consistency Training With JPEG Compressed Images",
        JOURNAL = CirSysVideo,
        VOLUME = "30",
        YEAR = "2020",
        NUMBER = "12",
        MONTH = "December",
        PAGES = "4769-4780",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT117912"}

@article{bb121688,
        AUTHOR = "Che, Z. and Borji, A. and Zhai, G. and Ling, S. and Li, J. and Tian, Y. and Guo, G. and Le Callet, P.",
        TITLE = "Adversarial Attack Against Deep Saliency Models Powered by
Non-Redundant Priors",
        JOURNAL = IP,
        VOLUME = "30",
        YEAR = "2021",
        PAGES = "1973-1988",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT117913"}

@article{bb121689,
        AUTHOR = "Xu, Y. and Du, B. and Zhang, L.",
        TITLE = "Assessing the Threat of Adversarial Examples on Deep Neural Networks
for Remote Sensing Scene Classification: Attacks and Defenses",
        JOURNAL = GeoRS,
        VOLUME = "59",
        YEAR = "2021",
        NUMBER = "2",
        MONTH = "February",
        PAGES = "1604-1617",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT117914"}

@article{bb121690,
        AUTHOR = "Correia Silva, J.R. and Berriel, R.F. and Badue, C. and de Souza, A.F. and Oliveira Santos, T.",
        TITLE = "Copycat CNN: Are random non-Labeled data enough to steal knowledge
from black-box models?",
        JOURNAL = PR,
        VOLUME = "113",
        YEAR = "2021",
        PAGES = "107830",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT117915"}

@article{bb121691,
        AUTHOR = "Xiao, Y. and Pun, C.M. and Liu, B.",
        TITLE = "Fooling deep neural detection networks with adaptive object-oriented
adversarial perturbation",
        JOURNAL = PR,
        VOLUME = "115",
        YEAR = "2021",
        PAGES = "107903",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT117916"}

@article{bb121692,
        AUTHOR = "Yamanaka, K. and Takahashi, K. and Fujii, T. and Matsumoto, R.",
        TITLE = "Simultaneous Attack on CNN-Based Monocular Depth Estimation and Optical
Flow Estimation",
        JOURNAL = IEICE,
        VOLUME = "E104-D",
        YEAR = "2021",
        NUMBER = "5",
        MONTH = "May",
        PAGES = "785-788",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT117917"}

@article{bb121693,
        AUTHOR = "Lin, H.Y. and Biggio, B.",
        TITLE = "Adversarial Machine Learning: Attacks From Laboratories to the Real
World",
        JOURNAL = Computer,
        VOLUME = "54",
        YEAR = "2021",
        NUMBER = "5",
        MONTH = "May",
        PAGES = "56-60",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT117918"}

@article{bb121694,
        AUTHOR = "Wang, B. and Zhao, M. and Wang, W. and Wei, F. and Qin, Z. and Ren, K.",
        TITLE = "Are You Confident That You Have Successfully Generated Adversarial
Examples?",
        JOURNAL = CirSysVideo,
        VOLUME = "31",
        YEAR = "2021",
        NUMBER = "6",
        MONTH = "June",
        PAGES = "2089-2099",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT117919"}

@article{bb121695,
        AUTHOR = "Gragnaniello, D. and Marra, F. and Verdoliva, L. and Poggi, G.",
        TITLE = "Perceptual quality-preserving black-box attack against deep learning
image classifiers",
        JOURNAL = PRL,
        VOLUME = "147",
        YEAR = "2021",
        PAGES = "142-149",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT117920"}

@article{bb121696,
        AUTHOR = "Tang, S.L. and Huang, X.L. and Chen, M.J. and Sun, C.J. and Yang, J.",
        TITLE = "Adversarial Attack Type I: Cheat Classifiers by Significant Changes",
        JOURNAL = PAMI,
        VOLUME = "43",
        YEAR = "2021",
        NUMBER = "3",
        MONTH = "March",
        PAGES = "1100-1109",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT117921"}

@article{bb121697,
        AUTHOR = "Upadhyay, U. and Mukherjee, P.",
        TITLE = "Generating Out of Distribution Adversarial Attack Using Latent Space
Poisoning",
        JOURNAL = SPLetters,
        VOLUME = "28",
        YEAR = "2021",
        PAGES = "523-527",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT117922"}

@article{bb121698,
        AUTHOR = "Wang, L. and Yoon, K.J.",
        TITLE = "PSAT-GAN: Efficient Adversarial Attacks Against Holistic Scene
Understanding",
        JOURNAL = IP,
        VOLUME = "30",
        YEAR = "2021",
        PAGES = "7541-7553",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT117923"}

@inproceedings{bb121699,
        AUTHOR = "Chen, Z.K. and Xie, L.X. and Pang, S.M. and He, Y. and Tian, Q.",
        TITLE = "Appending Adversarial Frames for Universal Video Attack",
        BOOKTITLE = WACV21,
        YEAR = "2021",
        PAGES = "3198-3207",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT117924"}

Last update: