• 文献检索
  • 文档翻译
  • 深度研究
  • 学术资讯
  • Suppr Zotero 插件Zotero 插件
  • 邀请有礼
  • 套餐&价格
  • 历史记录
应用&插件
Suppr Zotero 插件Zotero 插件浏览器插件Mac 客户端Windows 客户端微信小程序
定价
高级版会员购买积分包购买API积分包
服务
文献检索文档翻译深度研究API 文档MCP 服务
关于我们
关于 Suppr公司介绍联系我们用户协议隐私条款
关注我们

Suppr 超能文献

核心技术专利:CN118964589B侵权必究
粤ICP备2023148730 号-1Suppr @ 2026

文献检索

告别复杂PubMed语法,用中文像聊天一样搜索,搜遍4000万医学文献。AI智能推荐,让科研检索更轻松。

立即免费搜索

文件翻译

保留排版,准确专业,支持PDF/Word/PPT等文件格式,支持 12+语言互译。

免费翻译文档

深度研究

AI帮你快速写综述,25分钟生成高质量综述,智能提取关键信息,辅助科研写作。

立即免费体验

${A^{3}D}$A3D: A Platform of Searching for Robust Neural Architectures and Efficient Adversarial Attacks.

作者信息

Sun Jialiang, Yao Wen, Jiang Tingsong, Li Chao, Chen Xiaoqian

出版信息

IEEE Trans Pattern Anal Mach Intell. 2025 May;47(5):3975-3991. doi: 10.1109/TPAMI.2025.3535933. Epub 2025 Apr 8.

DOI:10.1109/TPAMI.2025.3535933
PMID:40031330
Abstract

Due to the urgent need of the robustness of deep neural networks (DNN), numerous existing open-sourced tools or platforms are developed to evaluate the robustness of DNN models by ensembling the majority of adversarial attack or defense algorithms. Unfortunately, current platforms can neither optimize the DNN architectures nor the configuration of adversarial attacks to further enhance the model robustness or the performance of adversarial attacks. To alleviate these problems, in this paper, we propose a novel platform called auto-adversarial attack and defense ($A^{3}D$A3D), which can help search for robust neural network architectures and efficient adversarial attacks. $A^{3}D$A3D integrates multiple neural architecture search methods to find robust architectures under different robustness evaluation metrics. Besides, we provide multiple optimization algorithms to search for efficient adversarial attacks. In addition, we combine auto-adversarial attack and defense together to form a unified framework. Among auto adversarial defense, the searched efficient attack can be used as the new robustness evaluation to further enhance the robustness. In auto-adversarial attack, the searched robust architectures can be utilized as the threat model to help find stronger adversarial attacks. Experiments on CIFAR10, CIFAR100, and ImageNet datasets demonstrate the feasibility and effectiveness of the proposed platform.

摘要

相似文献

1
${A^{3}D}$A3D: A Platform of Searching for Robust Neural Architectures and Efficient Adversarial Attacks.
IEEE Trans Pattern Anal Mach Intell. 2025 May;47(5):3975-3991. doi: 10.1109/TPAMI.2025.3535933. Epub 2025 Apr 8.
2
Meta Invariance Defense Towards Generalizable Robustness to Unknown Adversarial Attacks.针对未知对抗攻击的泛化鲁棒性的元不变性防御
IEEE Trans Pattern Anal Mach Intell. 2024 Oct;46(10):6669-6687. doi: 10.1109/TPAMI.2024.3385745. Epub 2024 Sep 5.
3
Towards Adversarial Robustness for Multi-Mode Data through Metric Learning.通过度量学习实现多模态数据的对抗鲁棒性。
Sensors (Basel). 2023 Jul 5;23(13):6173. doi: 10.3390/s23136173.
4
Adversarial Attack and Defense in Deep Ranking.深度排序中的对抗攻击与防御
IEEE Trans Pattern Anal Mach Intell. 2024 Aug;46(8):5306-5324. doi: 10.1109/TPAMI.2024.3365699. Epub 2024 Jul 2.
5
LRNAS: Differentiable Searching for Adversarially Robust Lightweight Neural Architecture.LRNAS:可微搜索对抗鲁棒轻量级神经架构
IEEE Trans Neural Netw Learn Syst. 2025 Mar;36(3):5629-5643. doi: 10.1109/TNNLS.2024.3382724. Epub 2025 Feb 28.
6
Auto encoder-based defense mechanism against popular adversarial attacks in deep learning.基于自动编码器的深度学习中流行对抗攻击防御机制。
PLoS One. 2024 Oct 21;19(10):e0307363. doi: 10.1371/journal.pone.0307363. eCollection 2024.
7
Adversarial robustness assessment: Why in evaluation both L0 and L∞ attacks are necessary.对抗鲁棒性评估:为何在评估中L0和L∞攻击都很有必要。
PLoS One. 2022 Apr 14;17(4):e0265723. doi: 10.1371/journal.pone.0265723. eCollection 2022.
8
Adversarial attack vulnerability of medical image analysis systems: Unexplored factors.对抗攻击对医学影像分析系统的漏洞:未知因素。
Med Image Anal. 2021 Oct;73:102141. doi: 10.1016/j.media.2021.102141. Epub 2021 Jun 18.
9
An enhanced ensemble defense framework for boosting adversarial robustness of intrusion detection systems.一种用于增强入侵检测系统对抗鲁棒性的增强集成防御框架。
Sci Rep. 2025 Apr 23;15(1):14177. doi: 10.1038/s41598-025-94023-z.
10
A regularization perspective based theoretical analysis for adversarial robustness of deep spiking neural networks.基于正则化视角的深度尖峰神经网络对抗鲁棒性的理论分析。
Neural Netw. 2023 Aug;165:164-174. doi: 10.1016/j.neunet.2023.05.038. Epub 2023 May 24.