1 |
SZEGEDY C, ZAREMBA W, SUTSKEVER I, et al. Intriguing properties of neural networks [EB/OL]. (2014-02-19) [2023-07-08]. .
|
2 |
PAPERNOT N, McDANIEL P, WU X, et al. Distillation as a defense to adversarial perturbations against deep neural networks[C]// Proceedings of the 2016 IEEE Symposium on Security and Privacy. Piscataway: IEEE, 2016: 582-597.
|
3 |
LIAO F, LIANG M, DONG Y, et al. Defense against adversarial attacks using high-level representation guided denoiser [EB/OL]. (2018-05-08) [2023-06-02]. .
|
4 |
XIE C, WU Y, MAATEN L V D, et al. Feature denoising for improving adversarial robustness [C]// Proceedings of the 2019 IEEE/CVF Conference on Computer Vision and Pattern Recognition. Piscataway: IEEE, 2019:501-509.
|
5 |
TRAMÈR F, KURAKIN A, PAPERNOT N, et al. Ensemble adversarial training: attacks and defenses [EB/OL]. (2020-04-26) [2023-08-22]. .
|
6 |
FU Y, YU Q, LI M, et al. Double-Win-Quant: aggressively winning robustness of quantized deep neural networks via random precision training and inference [C]// Proceedings of the 38th International Conference on Machine Learning. New York: PMLR,2021:3492-3504.
|
7 |
CROCE F, HEIN M. Provable robustness against all adversarial lp -perturbations for p≥1 [EB/OL]. [2023-08-11]. .
|
8 |
XU W, EVANS D, QI Y. Feature squeezing: detecting adversarial examples in deep neural networks [EB/OL]. [2023-05-22]. .
|
9 |
KIRITANI T, ONO K. Recurrent attention model with log-polar mapping is robust against adversarial attacks [EB/OL]. (2020-02-13) [2021-12-26]. .
|
10 |
SONG Y, KIM T, NOWOZIN S, et al. PixelDefend: leveraging generative models to understand and defend against adversarial examples [EB/OL]. (2018-05-21) [2023-07-30]. .
|
11 |
YAN H, ZHANG J, NIU G, et al. CIFS: improving adversarial robustness of CNNs via channel-wise importance-based feature selection [C]// Proceedings of the 38th International Conference on Machine Learning. New York: PMLR, 2021:11693-11703.
|
12 |
王丹妮,陈伟,羊洋,等. 基于高斯增强和迭代攻击的对抗训练防御方法[J]. 计算机科学,2021,48(6A):509-513.
|
|
WANG D N, CHEN W, YANG Y, et al. Defense method of adversarial training based on Gaussian enhancement and iterative attack [J]. Computer Science,2021,48(6A):509-513.
|
13 |
GOODFELLOW I J, SHLENS J, SZEGEDY C. Explaining and harnessing adversarial examples [EB/OL]. (2015-03-20) [2023-06-25]. .
|
14 |
MADRY A, MAKELOV A, SCHMIDT L, et al. Towards deep learning models resistant to adversarial attacks [EB/OL]. (2019-09-04) [2023-06-27]. .
|
15 |
MOOSAVI-DEZFOOLI S M, FAWZI A, FROSSARD P. DeepFool: a simple and accurate method to fool deep neural networks [C]// Proceedings of the 2016 IEEE Conference on Computer Vision and Pattern Recognition. Piscataway: IEEE, 2016:2574-2582.
|
16 |
DONG Y, LIAO F, PANG T, et al. Boosting adversarial attacks with momentum [C]// Proceedings of the 2018 IEEE/CVF Conference on Computer Vision and Pattern Recognition. Piscataway: IEEE, 2018: 9185-9193.
|
17 |
WANG Y, ZOU D, YI J, et al. Improving adversarial robustness requires revisiting misclassified examples [EB/OL]. (2021-08-17) [2023-09-23]. .
|
18 |
SONG C, HE K, LIN J, et al. Robust local features for improving the generalization of adversarial training [EB/OL]. (2020-02-02) [2023-08-09]. .
|
19 |
DAS N, SHANBHOGUE M, CHEN S T, et al. Keeping the bad guys out: protecting and vaccinating deep learning with JPEG compression [EB/OL]. (2017-05-08) [2023-08-11]. .
|
20 |
PRAKASH A, MORAN N, GARBER S, et al. Deflecting adversarial attacks with pixel deflection [C]// Proceedings of the 2018 IEEE/CVF Conference on Computer Vision and Pattern Recognition. Piscataway: IEEE, 2018:8571-8580.
|
21 |
SAMANGOUEI P, KABKAB M, CHELLAPPA R. Defense-GAN: protecting classifiers against adversarial attacks using generative models [EB/OL]. (2018-05-18) [2023-08-22]. .
|
22 |
MENG D, CHEN H. MagNet: a two-pronged defense against adversarial examples [EB/OL]. (2017-09-11) [2023-08-26]. .
|
23 |
王飞宇,张帆,杜加玉,等.基于图像降噪与压缩的对抗样本检测方法[J].计算机工程, 2023,49(10):230-238.
|
|
WANG F Y, ZHANG F, DU J Y, et al. Adversarial examples detection method based on image denoising and compression [J]. Computer Engineering, 2023,49(10):230-238.
|
24 |
李沙沙,邢红杰.基于对抗样本和自编码器的鲁棒异常检测[J].计算机科学,2024,51(5):363-373.
|
|
LI S S, XING H J. Robust anomaly detection based on antagonistic sample and autoencoder [J]. Computer Science, 2024, 51(5): 363-373.
|