{"id":"W2997532515","doi":"10.1016/j.eng.2019.12.012","title":"Adversarial Attacks and Defenses in Deep Learning","year":2020,"lang":"en","type":"article","venue":"Engineering","topic":"Adversarial Robustness in Machine Learning","field":"Computer Science","cited_by":660,"is_retracted":false,"has_abstract":true,"ca_institutions":"McGill University; University of Toronto","funders":"","keywords":"Adversarial system; Adversarial machine learning; Computer science; Robustness (evolution); Vulnerability (computing); Deep learning; Artificial intelligence; Implementation; Computer security; Frontier; Cover (algebra); Data science; Field (mathematics); Attack surface; Machine learning; Engineering; Political science; Software engineering; Mathematics","routes":{"ca_aff":true,"ca_fund":false,"ca_venue":false,"about_ca":false,"invisible_to_affiliation_only":false},"retraction":null,"screen":null,"direct_labels":[],"prediction":{"model_version":"metacan-v3-hybrid-931329e0061c","candidate_categories":[],"consensus_categories":[],"category_scores_codex":[0.004573397,0.00106849,0.001132393,0.001395374,0.0008667872,0.002227833,0.001658666,0.002690666,0.001372013],"category_scores_gemma":[0.01597381,0.0007117487,0.0008417271,0.0009051567,0.004957999,0.004144968,0.004322578,0.005431331,0.0002656218],"about_ca_system_candidate":false,"about_ca_system_consensus":false,"about_ca_system_score_codex":0.001882661,"about_ca_system_score_gemma":0.001028053,"about_ca_topic_candidate":false,"about_ca_topic_consensus":false,"about_ca_topic_score_codex":0.000950691,"about_ca_topic_score_gemma":0.0006735323,"domain_scores_codex":[0.99644,0.001489977,0.0001439808,0.0004814029,0.001090902,0.0003537034],"domain_scores_gemma":[0.9866584,0.01050177,0.0008635991,0.00120349,0.0005263605,0.000246411],"domain_codex":null,"domain_gemma":null,"domain_candidate":null,"domain_consensus":null,"study_design_codex":"theoretical_or_conceptual","study_design_gemma":"simulation_or_modeling","study_design_scores_codex":[0.00008840835,0.00004800714,0.0008203341,0.0001594755,0.00008015339,0.0001270652,0.0001507179,0.3440003,0.00208723,0.6109589,0.002911153,0.03856817],"study_design_scores_gemma":[0.000008869015,0.00003532804,0.0001378557,0.00005057006,0.000009224771,0.00006450713,0.00001875511,0.7299293,0.0008398257,0.2668916,0.001998837,0.00001532512],"study_design_candidate":"simulation_or_modeling","study_design_consensus":null,"genre_codex":"methods","genre_gemma":"empirical","genre_scores_codex":[0.01417816,0.003825725,0.9704016,0.003135721,0.0001578147,0.00004462261,0.0000619715,0.0002758015,0.007918449],"genre_scores_gemma":[0.8861864,0.005455409,0.1005408,0.001240978,0.00056178,0.000199561,0.0001294104,0.0001277222,0.00555788],"genre_candidate":"empirical","genre_consensus":null,"teacher_disagreement_score":0.004573397,"threshold_uncertainty_score":0.02418667,"prediction_status":"machine_predicted_unvalidated"},"machine_scores":{"provisional":true,"baseline":true,"maturity_gate_passed":false,"score_opus":0.007379679572347504,"score_gpt":0.2004817178216978,"score_spread":0.1931020382493503,"validation_status":"score_only:v0-immature-baseline","note":"Baseline scores from an immature model (maturity gate not passed). Scores rank; they never assert a category."}}