@inproceedings{bb162300,
        AUTHOR = "Lennon, M. and Drenkow, N. and Burlina, P.",
        TITLE = "Patch Attack Invariance: How Sensitive are Patch Attacks to 3D Pose?",
        BOOKTITLE = AROW21,
        YEAR = "2021",
        PAGES = "112-121",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advpat8.html#TT158153"}

@inproceedings{bb162301,
        AUTHOR = "Gittings, T. and Schneider, S. and Collomosse, J.",
        TITLE = "Vax-a-net: Training-time Defence Against Adversarial Patch Attacks",
        BOOKTITLE = ACCV20,
        YEAR = "2020",
        PAGES = "IV:235-251",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advpat8.html#TT158154"}

@inproceedings{bb162302,
        AUTHOR = "Saha, A. and Subramanya, A. and Patil, K. and Pirsiavash, H.",
        TITLE = "Role of Spatial Context in Adversarial Robustness for Object
Detection",
        BOOKTITLE = AML-CV20,
        YEAR = "2020",
        PAGES = "3403-3412",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advpat8.html#TT158155"}

@inproceedings{bb162303,
        AUTHOR = "Mukuta, Y. and Ushiku, Y. and Harada, T.",
        TITLE = "Spatial-Temporal Weighted Pyramid Using Spatial Orthogonal Pooling",
        BOOKTITLE = CEFR-LCV17,
        YEAR = "2017",
        PAGES = "1041-1049",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advpat8.html#TT158156"}

@article{bb162304,
        AUTHOR = "Seo, S. and Lee, Y. and Kang, P.",
        TITLE = "Cost-free adversarial defense: Distance-based optimization for model
robustness without adversarial training",
        JOURNAL = CVIU,
        VOLUME = "227",
        YEAR = "2023",
        PAGES = "103599",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT158157"}

@article{bb162305,
        AUTHOR = "Cheng, Z. and Zhu, F. and Zhang, X.Y. and Liu, C.L.",
        TITLE = "Adversarial training with distribution normalization and margin
balance",
        JOURNAL = PR,
        VOLUME = "136",
        YEAR = "2023",
        PAGES = "109182",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT158158"}

@article{bb162306,
        AUTHOR = "Lau, C.P. and Liu, J. and Souri, H. and Lin, W.A. and Feizi, S. and Chellappa, R.",
        TITLE = "Interpolated Joint Space Adversarial Training for Robust and
Generalizable Defenses",
        JOURNAL = PAMI,
        VOLUME = "45",
        YEAR = "2023",
        NUMBER = "11",
        MONTH = "November",
        PAGES = "13054-13067",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT158159"}

@article{bb162307,
        AUTHOR = "Miao, J.Z. and Yu, X.Z. and Hu, Z.C. and Song, Y.R. and Liu, L. and Zhou, Z.G.",
        TITLE = "An effective deep learning adversarial defense method based on
spatial structural constraints in embedding space",
        JOURNAL = PRL,
        VOLUME = "178",
        YEAR = "2024",
        PAGES = "160-166",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT158160"}

@inproceedings{bb162308,
        AUTHOR = "Liu, X.L. and Hu, T. and Yi, P. and Pan, Q. and Ma, H.L. and Jiang, Y.M. and Li, B.L.",
        TITLE = "Defending Against Transfer-Based Adversarial Attacks Using SVD-Driven
Feature Evolution",
        BOOKTITLE = "FaDE-TCV25",
        YEAR = "2025",
        PAGES = "703-711",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT158161"}

@inproceedings{bb162309,
        AUTHOR = "Fime, A.A. and Hossain, M.Z. and Zaman, S. and Shahid, A.R. and Imteaj, A.",
        TITLE = "Towards Trustworthy Autonomous Vehicles with Vision-Language Models
under Targeted and Untargeted Adversarial Attacks",
        BOOKTITLE = "FaDE-TCV25",
        YEAR = "2025",
        PAGES = "619-628",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT158162"}

@inproceedings{bb162310,
        AUTHOR = "Prach, B. and Brau, F. and Buttazzo, G. and Lampert, C.H.",
        TITLE = "1-Lipschitz Layers Compared: Memory, Speed, and Certifiable
Robustness",
        BOOKTITLE = CVPR24,
        YEAR = "2024",
        PAGES = "24574-24583",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT158163"}

@inproceedings{bb162311,
        AUTHOR = "Song, K.Y. and Lai, H.J. and Pan, Y. and Yin, J.",
        TITLE = "MimicDiffusion: Purifying Adversarial Perturbation via Mimicking
Clean Diffusion Model",
        BOOKTITLE = CVPR24,
        YEAR = "2024",
        PAGES = "24665-24674",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT158164"}

@inproceedings{bb162312,
        AUTHOR = "Wang, Z. and Li, X.H. and Zhu, H. and Xie, C.",
        TITLE = "Revisiting Adversarial Training at Scale",
        BOOKTITLE = CVPR24,
        YEAR = "2024",
        PAGES = "24675-24685",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT158165"}

@inproceedings{bb162313,
        AUTHOR = "Xiao, Y. and Chen, Y.C. and Ma, S.Q. and Fang, C.R. and Bai, T.T. and Gu, M.Z. and Cheng, Y.X. and Chen, Y.W. and Chen, Z.Y.",
        TITLE = "Tightening Robustness Verification of MaxPool-based Neural Networks
via Minimizing the Over-Approximation Zone",
        BOOKTITLE = CVPR25,
        YEAR = "2025",
        PAGES = "20695-20705",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT158166"}

@inproceedings{bb162314,
        AUTHOR = "Xiao, Y. and Ma, S.Q. and Zhai, J. and Fang, C.R. and Jia, J.Y. and Chen, Z.Y.",
        TITLE = "Towards General Robustness Verification of MaxPool-Based
Convolutional Neural Networks via Tightening Linear Approximation",
        BOOKTITLE = CVPR24,
        YEAR = "2024",
        PAGES = "24766-24775",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT158167"}

@inproceedings{bb162315,
        AUTHOR = "Li, Q. and Hu, Y.X. and Dong, Y.P. and Zhang, D.X. and Chen, Y.T.",
        TITLE = "Focus on Hiders: Exploring Hidden Threats for Enhancing Adversarial
Training",
        BOOKTITLE = CVPR24,
        YEAR = "2024",
        PAGES = "24442-24451",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT158168"}

@inproceedings{bb162316,
        AUTHOR = "Yin, X.Y. and Ruan, W.J.",
        TITLE = "Boosting Adversarial Training via Fisher-Rao Norm-Based
Regularization",
        BOOKTITLE = CVPR24,
        YEAR = "2024",
        PAGES = "24544-24553",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT158169"}

@inproceedings{bb162317,
        AUTHOR = "Tang, L. and Zhang, L.",
        TITLE = "Robust Overfitting Does Matter: Test-Time Adversarial Purification
with FGSM",
        BOOKTITLE = CVPR24,
        YEAR = "2024",
        PAGES = "24347-24356",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT158170"}

@inproceedings{bb162318,
        AUTHOR = "Zhao, M.N. and Zhang, L.H. and Kong, Y.Q. and Yin, B.C.",
        TITLE = "Fast Adversarial Training with Smooth Convergence",
        BOOKTITLE = ICCV23,
        YEAR = "2023",
        PAGES = "4697-4706",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT158171"}

@inproceedings{bb162319,
        AUTHOR = "Ge, Y. and Li, Y. and Han, K. and Zhu, J. and Long, X.Z.",
        TITLE = "Advancing Example Exploitation Can Alleviate Critical Challenges in
Adversarial Training",
        BOOKTITLE = ICCV23,
        YEAR = "2023",
        PAGES = "145-154",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT158172"}

@inproceedings{bb162320,
        AUTHOR = "Wei, Z.M. and Wang, Y.F. and Guo, Y.W. and Wang, Y.",
        TITLE = "CFA: Class-Wise Calibrated Fair Adversarial Training",
        BOOKTITLE = CVPR23,
        YEAR = "2023",
        PAGES = "8193-8201",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT158173"}

@inproceedings{bb162321,
        AUTHOR = "Dong, J.H. and Moosavi Dezfooli, S.M. and Lai, J.H. and Xie, X.H.",
        TITLE = "The Enemy of My Enemy is My Friend: Exploring Inverse Adversaries for
Improving Adversarial Training",
        BOOKTITLE = CVPR23,
        YEAR = "2023",
        PAGES = "24678-24687",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT158174"}

@inproceedings{bb162322,
        AUTHOR = "Hsiung, L. and Tsai, Y.Y. and Chen, P.Y. and Ho, T.Y.",
        TITLE = "Towards Compositional Adversarial Robustness: Generalizing
Adversarial Training to Composite Semantic Perturbations",
        BOOKTITLE = CVPR23,
        YEAR = "2023",
        PAGES = "24658-24667",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT158175"}

@inproceedings{bb162323,
        AUTHOR = "Jin, G.J. and Yi, X.P. and Wu, D.Y. and Mu, R.H. and Huang, X.W.",
        TITLE = "Randomized Adversarial Training via Taylor Expansion",
        BOOKTITLE = CVPR23,
        YEAR = "2023",
        PAGES = "16447-16457",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT158176"}

@inproceedings{bb162324,
        AUTHOR = "Gavrikov, P. and Keuper, J. and Keuper, M.",
        TITLE = "An Extended Study of Human-like Behavior under Adversarial Training",
        BOOKTITLE = AML23,
        YEAR = "2023",
        PAGES = "2361-2368",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT158177"}

@inproceedings{bb162325,
        AUTHOR = "Byun, J. and Go, H. and Cho, S. and Kim, C.",
        TITLE = "Exploiting Doubly Adversarial Examples for Improving Adversarial
Robustness",
        BOOKTITLE = ICIP22,
        YEAR = "2022",
        PAGES = "1331-1335",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT158178"}

@inproceedings{bb162326,
        AUTHOR = "Wang, Z. and Li, C.C. and Li, H.",
        TITLE = "Adversarial Training of Anti-Distilled Neural Network with Semantic
Regulation of Class Confidence",
        BOOKTITLE = ICIP22,
        YEAR = "2022",
        PAGES = "3576-3580",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT158179"}

@inproceedings{bb162327,
        AUTHOR = "Yin, X. and Li, S.Y. and Rohde, G.K.",
        TITLE = "Learning Energy-Based Models with Adversarial Training",
        BOOKTITLE = ECCV22,
        YEAR = "2022",
        PAGES = "V:209-226",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT158180"}

@inproceedings{bb162328,
        AUTHOR = "Yang, S. and Xu, C.",
        TITLE = "One Size Does NOT Fit All: Data-Adaptive Adversarial Training",
        BOOKTITLE = ECCV22,
        YEAR = "2022",
        PAGES = "V:70-85",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT158181"}

@inproceedings{bb162329,
        AUTHOR = "Dolatabadi, H.M. and Erfani, S. and Leckie, C.",
        TITLE = "l8-Robustness and Beyond: Unleashing Efficient Adversarial Training",
        BOOKTITLE = ECCV22,
        YEAR = "2022",
        PAGES = "XI:467-483",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT158182"}

@inproceedings{bb162330,
        AUTHOR = "Jia, X.J. and Zhang, Y. and Wu, B.Y. and Ma, K. and Wang, J. and Cao, X.C.",
        TITLE = "LAS-AT: Adversarial Training with Learnable Attack Strategy",
        BOOKTITLE = CVPR22,
        YEAR = "2022",
        PAGES = "13388-13398",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT158183"}

@inproceedings{bb162331,
        AUTHOR = "Li, T. and Wu, Y. and Chen, S. and Fang, K. and Huang, X.L.",
        TITLE = "Subspace Adversarial Training",
        BOOKTITLE = CVPR22,
        YEAR = "2022",
        PAGES = "13399-13408",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT158184"}

@inproceedings{bb162332,
        AUTHOR = "Poursaeed, O. and Jiang, T.X. and Yang, H. and Belongie, S. and Lim, S.N.",
        TITLE = "Robustness and Generalization via Generative Adversarial Training",
        BOOKTITLE = ICCV21,
        YEAR = "2021",
        PAGES = "15691-15700",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT158185"}

@inproceedings{bb162333,
        AUTHOR = "Xu, W.P. and Huang, H.C. and Pan, S.Y.",
        TITLE = "Using Feature Alignment Can Improve Clean Average Precision and
Adversarial Robustness In Object Detection",
        BOOKTITLE = ICIP21,
        YEAR = "2021",
        PAGES = "2184-2188",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT158186"}

@inproceedings{bb162334,
        AUTHOR = "Yu, C. and Xue, Y.Z. and Chen, J.S. and Wang, Y. and Ma, H.M.",
        TITLE = "Enhancing Adversarial Robustness for Image Classification By
Regularizing Class Level Feature Distribution",
        BOOKTITLE = ICIP21,
        YEAR = "2021",
        PAGES = "494-498",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT158187"}

@inproceedings{bb162335,
        AUTHOR = "Dabouei, A. and Taherkhani, F. and Soleymani, S. and Nasrabadi, N.M.",
        TITLE = "Revisiting Outer Optimization in Adversarial Training",
        BOOKTITLE = ECCV22,
        YEAR = "2022",
        PAGES = "V:244-261",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT158188"}

@inproceedings{bb162336,
        AUTHOR = "Dabouei, A. and Soleymani, S. and Taherkhani, F. and Dawson, J. and Nasrabadi, N.M.",
        TITLE = "Exploiting Joint Robustness to Adversarial Perturbations",
        BOOKTITLE = CVPR20,
        YEAR = "2020",
        PAGES = "1119-1128",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT158189"}

@inproceedings{bb162337,
        AUTHOR = "Addepalli, S. and Jain, S. and Sriramanan, G. and Babu, R.V.",
        TITLE = "Scaling Adversarial Training to Large Perturbation Bounds",
        BOOKTITLE = ECCV22,
        YEAR = "2022",
        PAGES = "V:301-316",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT158190"}

@inproceedings{bb162338,
        AUTHOR = "Vivek, B.S. and Revanur, A. and Venkat, N. and Babu, R.V.",
        TITLE = "Plug-And-Pipeline: Efficient Regularization for Single-Step
Adversarial Training",
        BOOKTITLE = TCV20,
        YEAR = "2020",
        PAGES = "138-146",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT158191"}

@inproceedings{bb162339,
        AUTHOR = "Chen, T. and Liu, S. and Chang, S. and Cheng, Y. and Amini, L. and Wang, Z.",
        TITLE = "Adversarial Robustness:
From Self-Supervised Pre-Training to Fine-Tuning",
        BOOKTITLE = CVPR20,
        YEAR = "2020",
        PAGES = "696-705",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT158192"}

@inproceedings{bb162340,
        AUTHOR = "Miyazato, S. and Wang, X. and Yamasaki, T. and Aizawa, K.",
        TITLE = "Reinforcing the Robustness of a Deep Neural Network to Adversarial
Examples by Using Color Quantization of Training Image Data",
        BOOKTITLE = ICIP19,
        YEAR = "2019",
        PAGES = "884-888",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT158193"}

@inproceedings{bb162341,
        AUTHOR = "Wang, J. and Zhang, H.",
        TITLE = "Bilateral Adversarial Training:
Towards Fast Training of More Robust Models Against Adversarial Attacks",
        BOOKTITLE = ICCV19,
        YEAR = "2019",
        PAGES = "6628-6637",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT158194"}

@inproceedings{bb162342,
        AUTHOR = "Ye, S. and Xu, K. and Liu, S. and Cheng, H. and Lambrechts, J. and Zhang, H. and Zhou, A. and Ma, K. and Wang, Y. and Lin, X.",
        TITLE = "Adversarial Robustness vs. Model Compression, or Both?",
        BOOKTITLE = ICCV19,
        YEAR = "2019",
        PAGES = "111-120",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT158195"}

@inproceedings{bb162343,
        AUTHOR = "Moosavi Dezfooli, S.M. and Fawzi, A. and Uesato, J. and Frossard, P.",
        TITLE = "Robustness via Curvature Regularization, and Vice Versa",
        BOOKTITLE = CVPR19,
        YEAR = "2019",
        PAGES = "9070-9078",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT158196"}

@inproceedings{bb162344,
        AUTHOR = "Mummadi, C.K. and Brox, T. and Metzen, J.H.",
        TITLE = "Defending Against Universal Perturbations With Shared Adversarial
Training",
        BOOKTITLE = ICCV19,
        YEAR = "2019",
        PAGES = "4927-4936",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654advtra7.html#TT158197"}

@article{bb162345,
        AUTHOR = "Romano, Y. and Aberdam, A. and Sulam, J. and Elad, M.",
        TITLE = "Adversarial Noise Attacks of Deep Learning Architectures:
Stability Analysis via Sparse-Modeled Signals",
        JOURNAL = JMIV,
        VOLUME = "62",
        YEAR = "2020",
        NUMBER = "3",
        MONTH = "April",
        PAGES = "313-327",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT158198"}

@article{bb162346,
        AUTHOR = "Zhang, C.Z. and Liu, A.S. and Liu, X.L. and Xu, Y.T. and Yu, H. and Ma, Y.Q. and Li, T.L.",
        TITLE = "Interpreting and Improving Adversarial Robustness of Deep Neural
Networks With Neuron Sensitivity",
        JOURNAL = IP,
        VOLUME = "30",
        YEAR = "2021",
        PAGES = "1291-1304",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT158199"}

@article{bb162347,
        AUTHOR = "Liu, A.S. and Liu, X.L. and Yu, H. and Zhang, C.Z. and Liu, Q. and Tao, D.C.",
        TITLE = "Training Robust Deep Neural Networks via Adversarial Noise
Propagation",
        JOURNAL = IP,
        VOLUME = "30",
        YEAR = "2021",
        PAGES = "5769-5781",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT158200"}

@inproceedings{bb162348,
        AUTHOR = "Jia, K. and Tao, D.C. and Gao, S.H. and Xu, X.M.",
        TITLE = "Improving Training of Deep Neural Networks via Singular Value
Bounding",
        BOOKTITLE = CVPR17,
        YEAR = "2017",
        PAGES = "3994-4002",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT158201"}

@article{bb162349,
        AUTHOR = "Zhao, Z.Q. and Wang, H.Y. and Sun, H. and Yuan, J.H. and Huang, Z.C. and He, Z.H.",
        TITLE = "Removing Adversarial Noise via Low-Rank Completion of
High-Sensitivity Points",
        JOURNAL = IP,
        VOLUME = "30",
        YEAR = "2021",
        PAGES = "6485-6497",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT158202"}

@article{bb162350,
        AUTHOR = "Nguyen, H.H. and Kuribayashi, M. and Yamagishi, J. and Echizen, I.",
        TITLE = "Effects of Image Processing Operations on Adversarial Noise and Their
Use in Detecting and Correcting Adversarial Images",
        JOURNAL = IEICE,
        VOLUME = "E105-D",
        YEAR = "2022",
        NUMBER = "1",
        MONTH = "January",
        PAGES = "65-77",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT158203"}

@article{bb162351,
        AUTHOR = "Gao, S. and Yu, S. and Wu, L.W. and Yao, S.W. and Zhou, X.W.",
        TITLE = "Detecting adversarial examples by additional evidence from noise
domain",
        JOURNAL = IET-IPR,
        VOLUME = "16",
        YEAR = "2022",
        NUMBER = "2",
        PAGES = "378-392",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT158204"}

@article{bb162352,
        AUTHOR = "Cheng, Y.P. and Guo, Q. and Juefei Xu, F. and Lin, S.W. and Feng, W. and Lin, W.S. and Liu, Y.",
        TITLE = "Pasadena: Perceptually Aware and Stealthy Adversarial Denoise Attack",
        JOURNAL = MultMed,
        VOLUME = "24",
        YEAR = "2022",
        PAGES = "3807-3822",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT158205"}

@article{bb162353,
        AUTHOR = "Yang, D. and Chen, W. and Wei, S.J.",
        TITLE = "DTFA: Adversarial attack with discrete cosine transform noise and
target features on deep neural networks",
        JOURNAL = IET-IPR,
        VOLUME = "17",
        YEAR = "2023",
        NUMBER = "5",
        PAGES = "1464-1477",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT158206"}

@article{bb162354,
        AUTHOR = "Ying, C.Y. and You, Q.B. and Zhou, X.N. and Su, H. and Ding, W.B. and Ai, J.Y.",
        TITLE = "Consistent attack: Universal adversarial perturbation on embodied
vision navigation",
        JOURNAL = PRL,
        VOLUME = "168",
        YEAR = "2023",
        PAGES = "57-63",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT158207"}

@article{bb162355,
        AUTHOR = "Li, Y.Z. and Zhang, C. and Qi, H.G. and Lyu, S.W.",
        TITLE = "AdaNI: Adaptive Noise Injection to improve adversarial robustness",
        JOURNAL = CVIU,
        VOLUME = "238",
        YEAR = "2024",
        PAGES = "103855",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT158208"}

@article{bb162356,
        AUTHOR = "Park, J. and Shin, S. and Hwang, S. and Choi, S.",
        TITLE = "Elucidating robust learning with uncertainty-aware corruption pattern
estimation",
        JOURNAL = PR,
        VOLUME = "138",
        YEAR = "2023",
        PAGES = "109387",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT158209"}

@article{bb162357,
        AUTHOR = "Xie, W.C. and Luo, C. and Wang, G. and Shen, L.L. and Lai, Z.H. and Song, S.Y.",
        TITLE = "Network characteristics adaption and hierarchical feature exploration
for robust object recognition",
        JOURNAL = PR,
        VOLUME = "149",
        YEAR = "2024",
        PAGES = "110240",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT158210"}

@inproceedings{bb162358,
        AUTHOR = "He, X.L. and Lin, Q.L. and Luo, C. and Xie, W.C. and Song, S.Y. and Liu, F. and Shen, L.L.",
        TITLE = "Shift from Texture-bias to Shape-Bias:
Edge Deformation-Based Augmentation for Robust Object Recognition",
        BOOKTITLE = ICCV23,
        YEAR = "2023",
        PAGES = "1526-1535",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT158211"}

@article{bb162359,
        AUTHOR = "Zhang, H. and Zhang, X. and Sun, Y. and Ji, L.X.",
        TITLE = "Detecting adversarial samples by noise injection and denoising",
        JOURNAL = IVC,
        VOLUME = "150",
        YEAR = "2024",
        PAGES = "105238",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT158212"}

@article{bb162360,
        AUTHOR = "Zhang, P.F. and Huang, Z. and Xu, X.S. and Bai, G.D.",
        TITLE = "Effective and Robust Adversarial Training Against Data and Label
Corruptions",
        JOURNAL = MultMed,
        VOLUME = "26",
        YEAR = "2024",
        PAGES = "9477-9488",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT158213"}

@inproceedings{bb162361,
        AUTHOR = "Lee, C. and Song, Y. and Son, J.",
        TITLE = "Data-free Universal Adversarial Perturbation with Pseudo-semantic
Prior",
        BOOKTITLE = CVPR25,
        YEAR = "2025",
        PAGES = "13907-13916",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT158214"}

@article{bb162362,
        AUTHOR = "Zhou, D.W. and Wang, N.N. and Han, B. and Liu, T.L. and Gao, X.B.",
        TITLE = "Defending Against Adversarial Examples Via Modeling Adversarial Noise",
        JOURNAL = IJCV,
        VOLUME = "133",
        YEAR = "2025",
        NUMBER = "9",
        MONTH = "September",
        PAGES = "5920-5937",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT158215"}

@article{bb162363,
        AUTHOR = "Xiong, L.Z. and Li, H.Y. and Ding, R. and Yang, C.N. and Fu, Z.J.",
        TITLE = "VSIS-RDPA: Verifiable Secret Image Sharing Based on Polynomial
Interpolation for Resisting Dishonest Participant Attacks",
        JOURNAL = MultMed,
        VOLUME = "28",
        YEAR = "2026",
        PAGES = "479-491",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT158216"}

@inproceedings{bb162364,
        AUTHOR = "Ji, Y. and Ji, T. and Liu, H.L. and Echizen, I.",
        TITLE = "Adversarial Image Purification by Explaining Adversarial Detectors",
        BOOKTITLE = ICIP25,
        YEAR = "2025",
        PAGES = "421-426",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT158217"}

@inproceedings{bb162365,
        AUTHOR = "Yi, C.Y. and Meng, R.H. and Peng, H.H. and Shen, B.Q. and Kot, A.C.",
        TITLE = "Towards Effective and Robust Unlearnable Examples Against Object
Detection",
        BOOKTITLE = ICIP25,
        YEAR = "2025",
        PAGES = "91-96",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT158218"}

@inproceedings{bb162366,
        AUTHOR = "Yang, Z. and Feng, M.T. and Huang, T. and Wu, F.F. and Dong, W.S. and Li, X. and Shi, G.M.",
        TITLE = "Gain from Neighbors: Boosting Model Robustness in the Wild via
Adversarial Perturbations Toward Neighboring Classes",
        BOOKTITLE = CVPR25,
        YEAR = "2025",
        PAGES = "25497-25507",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT158219"}

@inproceedings{bb162367,
        AUTHOR = "Li, Z.R. and Yu, D. and Wei, L. and Jin, C.H. and Zhang, Y. and Chan, S.",
        TITLE = "Soften to Defend: Towards Adversarial Robustness via Self-Guided
Label Refinement",
        BOOKTITLE = CVPR24,
        YEAR = "2024",
        PAGES = "24776-24785",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT158220"}

@inproceedings{bb162368,
        AUTHOR = "Fang, B. and Li, B. and Wu, S. and Ding, S.H. and Yi, R. and Ma, L.Z.",
        TITLE = "Re-Thinking Data Availability Attacks Against Deep Neural Networks",
        BOOKTITLE = CVPR24,
        YEAR = "2024",
        PAGES = "12215-12224",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT158221"}

@inproceedings{bb162369,
        AUTHOR = "Azuma, H. and Matsui, Y.",
        TITLE = "Defense-Prefix for Preventing Typographic Attacks on CLIP",
        BOOKTITLE = AROW23,
        YEAR = "2023",
        PAGES = "3646-3655",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT158222"}

@inproceedings{bb162370,
        AUTHOR = "Choi, J.H. and Zhang, H. and Kim, J.H. and Hsieh, C.J. and Lee, J.S.",
        TITLE = "Deep Image Destruction: Vulnerability of Deep Image-to-Image Models
against Adversarial Attacks",
        BOOKTITLE = "ICPR22",
        YEAR = "2022",
        PAGES = "1287-1293",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT158223"}

@inproceedings{bb162371,
        AUTHOR = "Thakur, N. and Li, B.X.",
        TITLE = "PAT: Pseudo-Adversarial Training For Detecting Adversarial Videos",
        BOOKTITLE = ArtOfRobust22,
        YEAR = "2022",
        PAGES = "130-137",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT158224"}

@inproceedings{bb162372,
        AUTHOR = "Zhou, D.W. and Wang, N.N. and Peng, C.L. and Gao, X.B. and Wang, X.Y. and Yu, J. and Liu, T.L.",
        TITLE = "Removing Adversarial Noise in Class Activation Feature Space",
        BOOKTITLE = ICCV21,
        YEAR = "2021",
        PAGES = "7858-7867",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT158225"}

@inproceedings{bb162373,
        AUTHOR = "Zhang, C. and Gao, P.",
        TITLE = "Countering Adversarial Examples:
Combining Input Transformation and Noisy Training",
        BOOKTITLE = AROW21,
        YEAR = "2021",
        PAGES = "102-111",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT158226"}

@inproceedings{bb162374,
        AUTHOR = "Deng, K. and Peng, A.J. and Dong, W.L. and Zeng, H.",
        TITLE = "Detecting C &W Adversarial Images Based on Noise
Addition-Then-Denoising",
        BOOKTITLE = ICIP21,
        YEAR = "2021",
        PAGES = "3607-3611",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT158227"}

@inproceedings{bb162375,
        AUTHOR = "Tan, Y.X.M. and Elovici, Y. and Binder, A.",
        TITLE = "Adaptive Noise Injection for Training Stochastic Student Networks
from Deterministic Teachers",
        BOOKTITLE = ICPR21,
        YEAR = "2021",
        PAGES = "7587-7594",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT158228"}

@inproceedings{bb162376,
        AUTHOR = "Yan, B. and Wang, D. and Lu, H. and Yang, X.",
        TITLE = "Cooling-Shrinking Attack:
Blinding the Tracker With Imperceptible Noises",
        BOOKTITLE = CVPR20,
        YEAR = "2020",
        PAGES = "987-996",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT158229"}

@inproceedings{bb162377,
        AUTHOR = "Yi, C. and Li, H. and Wan, R. and Kot, A.C.",
        TITLE = "Improving Robustness of DNNs against Common Corruptions via Gaussian
Adversarial Training",
        BOOKTITLE = VCIP20,
        YEAR = "2020",
        PAGES = "17-20",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT158230"}

@inproceedings{bb162378,
        AUTHOR = "Liu, X. and Xiao, T. and Si, S. and Cao, Q. and Kumar, S. and Hsieh, C.",
        TITLE = "How Does Noise Help Robustness? Explanation and Exploration under the
Neural SDE Framework",
        BOOKTITLE = CVPR20,
        YEAR = "2020",
        PAGES = "279-287",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT158231"}

@inproceedings{bb162379,
        AUTHOR = "Dong, X. and Han, J. and Chen, D. and Liu, J. and Bian, H. and Ma, Z. and Li, H. and Wang, X. and Zhang, W. and Yu, N.",
        TITLE = "Robust Superpixel-Guided Attentional Adversarial Attack",
        BOOKTITLE = CVPR20,
        YEAR = "2020",
        PAGES = "12892-12901",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT158232"}

@inproceedings{bb162380,
        AUTHOR = "Borkar, T. and Heide, F. and Karam, L.J.",
        TITLE = "Defending Against Universal Attacks Through Selective Feature
Regeneration",
        BOOKTITLE = CVPR20,
        YEAR = "2020",
        PAGES = "706-716",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT158233"}

@inproceedings{bb162381,
        AUTHOR = "Li, G. and Ding, S. and Luo, J. and Liu, C.",
        TITLE = "Enhancing Intrinsic Adversarial Robustness via Feature Pyramid
Decoder",
        BOOKTITLE = CVPR20,
        YEAR = "2020",
        PAGES = "797-805",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT158234"}

@inproceedings{bb162382,
        AUTHOR = "Shi, Y. and Han, Y. and Tian, Q.",
        TITLE = "Polishing Decision-Based Adversarial Noise With a Customized Sampling",
        BOOKTITLE = CVPR20,
        YEAR = "2020",
        PAGES = "1027-1035",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT158235"}

@inproceedings{bb162383,
        AUTHOR = "He, Z. and Rakin, A.S. and Fan, D.L.",
        TITLE = "Parametric Noise Injection: Trainable Randomness to Improve Deep Neural
Network Robustness Against Adversarial Attack",
        BOOKTITLE = CVPR19,
        YEAR = "2019",
        PAGES = "588-597",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT158236"}

@inproceedings{bb162384,
        AUTHOR = "Kaneko, T. and Harada, T.",
        TITLE = "Blur, Noise, and Compression Robust Generative Adversarial Networks",
        BOOKTITLE = CVPR21,
        YEAR = "2021",
        PAGES = "13574-13584",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT158237"}

@inproceedings{bb162385,
        AUTHOR = "Kaneko, T. and Harada, T.",
        TITLE = "Noise Robust Generative Adversarial Networks",
        BOOKTITLE = CVPR20,
        YEAR = "2020",
        PAGES = "8401-8411",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT158238"}

@inproceedings{bb162386,
        AUTHOR = "Kaneko, T. and Ushiku, Y. and Harada, T.",
        TITLE = "Label-Noise Robust Generative Adversarial Networks",
        BOOKTITLE = CVPR19,
        YEAR = "2019",
        PAGES = "2462-2471",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT158239"}

@inproceedings{bb162387,
        AUTHOR = "Xie, C. and Wu, Y.X. and van der Maaten, L. and Yuille, A.L. and He, K.M.",
        TITLE = "Feature Denoising for Improving Adversarial Robustness",
        BOOKTITLE = CVPR19,
        YEAR = "2019",
        PAGES = "501-509",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT158240"}

@inproceedings{bb162388,
        AUTHOR = "Prakash, A. and Moran, N. and Garber, S. and DiLillo, A. and Storer, J.",
        TITLE = "Deflecting Adversarial Attacks with Pixel Deflection",
        BOOKTITLE = CVPR18,
        YEAR = "2018",
        PAGES = "8571-8580",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT158241"}

@inproceedings{bb162389,
        AUTHOR = "Liao, F. and Liang, M. and Dong, Y. and Pang, T. and Hu, X. and Zhu, J.",
        TITLE = "Defense Against Adversarial Attacks Using High-Level Representation
Guided Denoiser",
        BOOKTITLE = CVPR18,
        YEAR = "2018",
        PAGES = "1778-1787",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defnois6.html#TT158242"}

@article{bb162390,
        AUTHOR = "Biggio, B. and Roli, F.",
        TITLE = "Wild Patterns: Ten Years After the Rise of Adversarial Machine
Learning",
        JOURNAL = PR,
        VOLUME = "84",
        YEAR = "2018",
        PAGES = "317-331",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT158243"}

@article{bb162391,
        AUTHOR = "Croce, F. and Rauber, J. and Hein, M.",
        TITLE = "Scaling up the Randomized Gradient-Free Adversarial Attack Reveals
Overestimation of Robustness Using Established Attacks",
        JOURNAL = IJCV,
        VOLUME = "128",
        YEAR = "2020",
        NUMBER = "4",
        MONTH = "April",
        PAGES = "1028-1046",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT158244"}

@inproceedings{bb162392,
        AUTHOR = "Croce, F. and Hein, M.",
        TITLE = "A Randomized Gradient-Free Attack on ReLU Networks",
        BOOKTITLE = GCPR18,
        YEAR = "2018",
        PAGES = "215-227",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT158245"}

@article{bb162393,
        AUTHOR = "Aberdam, A. and Golts, A. and Elad, M.",
        TITLE = "Ada-LISTA: Learned Solvers Adaptive to Varying Models",
        JOURNAL = PAMI,
        VOLUME = "44",
        YEAR = "2022",
        NUMBER = "12",
        MONTH = "December",
        PAGES = "9222-9235",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT158246"}

@article{bb162394,
        AUTHOR = "Ozbulak, U. and Gasparyan, M. and de Neve, W. and van Messem, A.",
        TITLE = "Perturbation analysis of gradient-based adversarial attacks",
        JOURNAL = PRL,
        VOLUME = "135",
        YEAR = "2020",
        PAGES = "313-320",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT158247"}

@article{bb162395,
        AUTHOR = "Wan, S. and Wu, T.Y. and Hsu, H.W. and Wong, W.H. and Lee, C.Y.",
        TITLE = "Feature Consistency Training With JPEG Compressed Images",
        JOURNAL = CirSysVideo,
        VOLUME = "30",
        YEAR = "2020",
        NUMBER = "12",
        MONTH = "December",
        PAGES = "4769-4780",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT158248"}

@article{bb162396,
        AUTHOR = "Che, Z. and Borji, A. and Zhai, G. and Ling, S. and Li, J. and Tian, Y. and Guo, G. and Le Callet, P.",
        TITLE = "Adversarial Attack Against Deep Saliency Models Powered by
Non-Redundant Priors",
        JOURNAL = IP,
        VOLUME = "30",
        YEAR = "2021",
        PAGES = "1973-1988",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT158249"}

@article{bb162397,
        AUTHOR = "Xu, Y. and Du, B. and Zhang, L.",
        TITLE = "Assessing the Threat of Adversarial Examples on Deep Neural Networks
for Remote Sensing Scene Classification: Attacks and Defenses",
        JOURNAL = GeoRS,
        VOLUME = "59",
        YEAR = "2021",
        NUMBER = "2",
        MONTH = "February",
        PAGES = "1604-1617",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT158250"}

@article{bb162398,
        AUTHOR = "Xiao, Y. and Pun, C.M. and Liu, B.",
        TITLE = "Fooling deep neural detection networks with adaptive object-oriented
adversarial perturbation",
        JOURNAL = PR,
        VOLUME = "115",
        YEAR = "2021",
        PAGES = "107903",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT158251"}

@article{bb162399,
        AUTHOR = "Yamanaka, K. and Takahashi, K. and Fujii, T. and Matsumoto, R.",
        TITLE = "Simultaneous Attack on CNN-Based Monocular Depth Estimation and Optical
Flow Estimation",
        JOURNAL = IEICE,
        VOLUME = "E104-D",
        YEAR = "2021",
        NUMBER = "5",
        MONTH = "May",
        PAGES = "785-788",
        BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT158252"}

Last update:Feb 26, 2026 at 10:58:24