{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,18]],"date-time":"2026-06-18T16:15:46Z","timestamp":1781799346616,"version":"3.54.5"},"reference-count":43,"publisher":"Wiley","issue":"7","license":[{"start":{"date-parts":[[2021,10,28]],"date-time":"2021-10-28T00:00:00Z","timestamp":1635379200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/2.zoppoz.workers.dev:443\/http\/onlinelibrary.wiley.com\/termsAndConditions#vor"},{"start":{"date-parts":[[2021,10,28]],"date-time":"2021-10-28T00:00:00Z","timestamp":1635379200000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/2.zoppoz.workers.dev:443\/http\/doi.wiley.com\/10.1002\/tdm_license_1.1"}],"content-domain":{"domain":["onlinelibrary.wiley.com"],"crossmark-restriction":true},"short-container-title":["Int J of Intelligent Sys"],"published-print":{"date-parts":[[2022,7]]},"DOI":"10.1002\/int.22720","type":"journal-article","created":{"date-parts":[[2021,10,28]],"date-time":"2021-10-28T07:23:59Z","timestamp":1635405839000},"page":"4253-4276","update-policy":"https:\/\/2.zoppoz.workers.dev:443\/https\/doi.org\/10.1002\/crossmark_policy","source":"Crossref","is-referenced-by-count":22,"title":["IWA: Integrated gradient\u2010based\u00a0white\u2010box attacks for fooling deep neural networks"],"prefix":"10.1155","volume":"37","author":[{"ORCID":"https:\/\/2.zoppoz.workers.dev:443\/https\/orcid.org\/0000-0002-2393-4127","authenticated-orcid":false,"given":"Yixiang","family":"Wang","sequence":"first","affiliation":[{"name":"Beijing Key Laboratory of Security and Privacy in Intelligent Transportation Beijing Jiaotong University  Beijing China"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/2.zoppoz.workers.dev:443\/https\/orcid.org\/0000-0003-1147-4327","authenticated-orcid":false,"given":"Jiqiang","family":"Liu","sequence":"additional","affiliation":[{"name":"Beijing Key Laboratory of Security and Privacy in Intelligent Transportation Beijing Jiaotong University  Beijing China"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/2.zoppoz.workers.dev:443\/https\/orcid.org\/0000-0002-2975-8857","authenticated-orcid":false,"given":"Xiaolin","family":"Chang","sequence":"additional","affiliation":[{"name":"Beijing Key Laboratory of Security and Privacy in Intelligent Transportation Beijing Jiaotong University  Beijing China"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/2.zoppoz.workers.dev:443\/https\/orcid.org\/0000-0002-1251-3730","authenticated-orcid":false,"given":"Jelena","family":"Mi\u0161i\u0107","sequence":"additional","affiliation":[{"name":"Department of Computer Science Ryerson University  Toronto Ontario Canada"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/2.zoppoz.workers.dev:443\/https\/orcid.org\/0000-0001-7760-9920","authenticated-orcid":false,"given":"Vojislav B.","family":"Mi\u0161i\u0107","sequence":"additional","affiliation":[{"name":"Department of Computer Science Ryerson University  Toronto Ontario Canada"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"311","published-online":{"date-parts":[[2021,10,28]]},"reference":[{"key":"e_1_2_7_2_1","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/2020.acl-main.344"},{"key":"e_1_2_7_3_1","first-page":"6011","article-title":"TetraTSDF: 3D human reconstruction from a single image with a tetrahedral outer shell","author":"Onizuka H","year":"2020","journal-title":"Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition (CVPR)"},{"key":"e_1_2_7_4_1","doi-asserted-by":"publisher","DOI":"10.1007\/s12652-018-0803-6"},{"key":"e_1_2_7_5_1","unstructured":"SzegedyC ZarembaW SutskeverI et al. Intriguing properties of neural networks. In:International Conference on Learning Representations;2014."},{"key":"e_1_2_7_6_1","doi-asserted-by":"publisher","DOI":"10.1109\/TNNLS.2018.2886017"},{"key":"e_1_2_7_7_1","unstructured":"CroceF HeinM.Reliable evaluation of adversarial robustness with an ensemble of diverse parameter\u2010free attacks. In:International Conference on Machine Learning. PMLR;2020:2206\u20102216."},{"key":"e_1_2_7_8_1","unstructured":"CroceF HeinM.Minimally distorted adversarial examples with a fast adaptive boundary attack. In:International Conference on Machine Learning. PMLR; 2020:2196\u20102205. Accessed August 26 2021.https:\/\/2.zoppoz.workers.dev:443\/https\/proceedings.mlr.press\/v119\/croce20a.html"},{"key":"e_1_2_7_9_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-76941-7_71"},{"key":"e_1_2_7_10_1","doi-asserted-by":"crossref","unstructured":"CarliniN WagnerD.Towards evaluating the robustness of neural networks. In:2017 IEEE Symposium on Security and Privacy (SP). IEEE;2017:39\u201057.doi:10.1109\/SP.2017.49","DOI":"10.1109\/SP.2017.49"},{"key":"e_1_2_7_11_1","doi-asserted-by":"publisher","DOI":"10.1109\/JSYST.2019.2906120"},{"key":"e_1_2_7_12_1","doi-asserted-by":"publisher","DOI":"10.1109\/SPW.2018.00009"},{"key":"e_1_2_7_13_1","unstructured":"WangY MaX BaileyJ YiJ ZhouB GuQ.On the convergence and robustness of adversarial training. In:International Conference on Machine Learning. PMLR;2019:6586\u20106595."},{"key":"e_1_2_7_14_1","first-page":"7472","volume-title":"Proceedings of the 36th International Conference on Machine Learning (ICML 2019), June\u00a09\u201015, 2019, Long Beach, California, USA","author":"Zhang H","year":"2019"},{"key":"e_1_2_7_15_1","unstructured":"SundararajanM TalyA YanQ.Axiomatic attribution for deep networks. In:Proceedings of the 34th International Conference on Machine Learning (ICML'17).\u00a0Vol\u00a070.JMLR.org;2017:3319\u20103328."},{"key":"e_1_2_7_16_1","unstructured":"GoodfellowI ShlensJ SzegedyC.Explaining and harnessing adversarial examples. In:International Conference on Learning Representations;2015."},{"key":"e_1_2_7_17_1","unstructured":"KurakinA GoodfellowI BengioS.Adversarial examples in the physical world. In:International Conference on Learning Representations Workshop;2017."},{"key":"e_1_2_7_18_1","doi-asserted-by":"publisher","DOI":"10.1109\/TEVC.2019.2890858"},{"key":"e_1_2_7_19_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-66399-9_4"},{"key":"e_1_2_7_20_1","doi-asserted-by":"crossref","unstructured":"ChandaranaP VijayalakshmiM.Big data analytics frameworks. In:2014 International Conference on Circuits Systems Communication and Information Technology Applications (CSCITA). IEEE;\u00a02014:430\u2010434.doi:10.1109\/CSCITA.2014.6839299","DOI":"10.1109\/CSCITA.2014.6839299"},{"key":"e_1_2_7_21_1","doi-asserted-by":"crossref","unstructured":"YuanG\u2010X HoC\u2010H LinC\u2010J.An improved GLMNET for l1\u2010regularized logistic regression. In:Proceedings of the 17th ACM SIGKDD International Conference on Knowledge Discovery and Data Mining\u2014KDD'11. ACM Press; 2011:33.doi:10.1145\/2020408.2020421","DOI":"10.1145\/2020408.2020421"},{"key":"e_1_2_7_22_1","doi-asserted-by":"publisher","DOI":"10.1137\/1.9781611974997"},{"key":"e_1_2_7_23_1","unstructured":"NairV HintonGE.Rectified linear units improve restricted Boltzmann machines. In:Proceedings of the 27th International Conference on Machine Learning (ICML'10). Omnipress;2010:807\u2010814."},{"key":"e_1_2_7_24_1","unstructured":"MaasAL HannunAY NgAY.Rectifier nonlinearities improve neural network acoustic models. In:Proceedings of the 30th International Conference on Machine Learning. Microtome; 2013."},{"key":"e_1_2_7_25_1","doi-asserted-by":"publisher","DOI":"10.1109\/EuroSP.2016.36"},{"key":"e_1_2_7_26_1","article-title":"Transferability in machine learning: from phenomena to black\u2010box attacks using adversarial samples","author":"Papernot N","year":"2016","journal-title":"ArXiv160507277 Cs"},{"key":"e_1_2_7_27_1","unstructured":"LiY LiL WangL ZhangT GongB.NATTACK: learning the distributions of adversarial examples for an improved black\u2010box attack on deep neural networks. In:International Conference on Machine Learning. Microtome;2019:3866\u20103876."},{"key":"e_1_2_7_28_1","doi-asserted-by":"crossref","unstructured":"Moosavi\u2010DezfooliS\u2010M FawziA FrossardP.DeepFool: a simple and accurate method to fool deep neural networks. In:2016 IEEE Conference on Computer Vision and Pattern Recognition (CVPR);2016:2574\u20102582.doi:10.1109\/cvpr.2016.282","DOI":"10.1109\/CVPR.2016.282"},{"key":"e_1_2_7_29_1","doi-asserted-by":"publisher","DOI":"10.1145\/3128572.3140448"},{"key":"e_1_2_7_30_1","unstructured":"CarliniN KatzG BarrettC DillDL.Provably minimally\u2010distorted adversarial examples. ArXiv170910207 Cs. Published online February 20 2018. Accessed September 28 2020.https:\/\/2.zoppoz.workers.dev:443\/http\/arxiv.org\/abs\/1709.10207"},{"key":"e_1_2_7_31_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2016.41"},{"key":"e_1_2_7_32_1","first-page":"1633","volume-title":"Advances in Neural Information Processing Systems","author":"Tramer F","year":"2020"},{"key":"e_1_2_7_33_1","unstructured":"AthalyeA CarliniN WagnerD.Obfuscated gradients give a false sense of security: circumventing defenses to adversarial examples. In:International Conference on Machine Learning. Microtome;2018."},{"key":"e_1_2_7_34_1","unstructured":"MadryA MakelovA SchmidtL TsiprasD VladuA.Towards deep learning models resistant to adversarial attacks. In:Proceedings of International Conference on Learning Representations;2018."},{"key":"e_1_2_7_35_1","unstructured":"KingmaDP BaJ.Adam: a method for stochastic optimization. ArXiv:1412.6980 [Cs]; 2015. Accessed September 11 2020.https:\/\/2.zoppoz.workers.dev:443\/http\/arxiv.org\/abs\/1412.6980"},{"key":"e_1_2_7_36_1","unstructured":"RuderS.An overview of gradient descent optimization algorithms. ArXiv160904747 Cs. Published online June 15 2017. Accessed September 11 2020.https:\/\/2.zoppoz.workers.dev:443\/http\/arxiv.org\/abs\/1609.04747"},{"key":"e_1_2_7_37_1","doi-asserted-by":"publisher","DOI":"10.1109\/CISDA.2009.5356528"},{"key":"e_1_2_7_38_1","doi-asserted-by":"publisher","DOI":"10.1109\/5.726791"},{"key":"e_1_2_7_39_1","volume-title":"Learning Multiple Layers of Features from Tiny Images","author":"Alex K","year":"2009"},{"key":"e_1_2_7_40_1","doi-asserted-by":"crossref","unstructured":"He K Zhang X Ren S Sun J. Deep residual learning for image recognition.2016 IEEE Conference on Computer Vision and Pattern Recognition (CVPR). IEEE; 2016:770\u2010778.doi:10.1109\/CVPR.2016.90","DOI":"10.1109\/CVPR.2016.90"},{"key":"e_1_2_7_41_1","first-page":"18795","volume-title":"Advances in Neural Information Processing Systems","author":"Zhuang J","year":"2020"},{"key":"e_1_2_7_42_1","volume-title":"Advances in Neural Information Processing Systems","author":"Zhang M","year":"2019"},{"key":"e_1_2_7_43_1","first-page":"8026","volume-title":"Advances in Neural Information Processing Systems","author":"Paszke A","year":"2019"},{"key":"e_1_2_7_44_1","unstructured":"DingGW WangL JinX.advertorch v0.1: an adversarial robustness toolbox based on PyTorch. ArXiv190207623 Cs Stat. Published online February 20 2019. Accessed August 22 2021.https:\/\/2.zoppoz.workers.dev:443\/http\/arxiv.org\/abs\/1902.07623"}],"container-title":["International Journal of Intelligent Systems"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/2.zoppoz.workers.dev:443\/https\/onlinelibrary.wiley.com\/doi\/pdf\/10.1002\/int.22720","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/2.zoppoz.workers.dev:443\/https\/onlinelibrary.wiley.com\/doi\/full-xml\/10.1002\/int.22720","content-type":"application\/xml","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/2.zoppoz.workers.dev:443\/https\/onlinelibrary.wiley.com\/doi\/pdf\/10.1002\/int.22720","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2023,2,9]],"date-time":"2023-02-09T15:34:06Z","timestamp":1675956846000},"score":1,"resource":{"primary":{"URL":"https:\/\/2.zoppoz.workers.dev:443\/https\/onlinelibrary.wiley.com\/doi\/10.1002\/int.22720"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2021,10,28]]},"references-count":43,"journal-issue":{"issue":"7","published-print":{"date-parts":[[2022,7]]}},"alternative-id":["10.1002\/int.22720"],"URL":"https:\/\/2.zoppoz.workers.dev:443\/https\/doi.org\/10.1002\/int.22720","archive":["Portico"],"relation":{},"ISSN":["0884-8173","1098-111X"],"issn-type":[{"value":"0884-8173","type":"print"},{"value":"1098-111X","type":"electronic"}],"subject":[],"published":{"date-parts":[[2021,10,28]]},"assertion":[{"value":"2021-02-07","order":0,"name":"received","label":"Received","group":{"name":"publication_history","label":"Publication History"}},{"value":"2021-10-02","order":1,"name":"accepted","label":"Accepted","group":{"name":"publication_history","label":"Publication History"}},{"value":"2021-10-28","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}