{"id":"W7111273077","doi":"10.18280/ijsse.150812","title":"A Review on Adversarial Attacks and Defenses on Image Classification Models","year":2025,"lang":"","type":"article","venue":"International Journal of Safety and Security Engineering","topic":"Adversarial Robustness in Machine Learning","field":"Computer Science","cited_by":0,"is_retracted":false,"has_abstract":false,"ca_institutions":"","funders":"","keywords":"Adversarial system; Contextual image classification; Image (mathematics); Pattern recognition (psychology); Statistical classification","routes":{"ca_aff":false,"ca_fund":false,"ca_venue":true,"about_ca":false,"invisible_to_affiliation_only":true},"retraction":null,"screen":null,"direct_labels":[],"prediction":{"model_version":"codex-gemma-dda1882f352a","candidate_categories":["metaepi_narrow"],"consensus_categories":[],"category_scores_codex":[0.0010322,0.0002873739,0.0004609503,0.0004468926,0.0001305719,0.0002297447,0.0006998411,0.0001320576,0.00001360045],"category_scores_gemma":[0.0008365206,0.0002833323,0.0001545922,0.0002365245,0.00007697078,0.000951386,0.0002936077,0.0009866026,0.000002374095],"about_ca_system_candidate":false,"about_ca_system_consensus":false,"about_ca_system_score_codex":0.0002157794,"about_ca_system_score_gemma":0.0001329462,"about_ca_topic_candidate":false,"about_ca_topic_consensus":false,"about_ca_topic_score_codex":0.000008306089,"about_ca_topic_score_gemma":0.0000010902,"domain_scores_codex":[0.9978356,0.0001237194,0.0008730276,0.0003529976,0.0005997971,0.0002147933],"domain_scores_gemma":[0.9981223,0.0005635037,0.0004870587,0.0002101899,0.0004884844,0.0001285062],"domain_codex":null,"domain_gemma":null,"domain_candidate":null,"domain_consensus":null,"study_design_codex":"theoretical_or_conceptual","study_design_gemma":"simulation_or_modeling","study_design_scores_codex":[0.001498755,0.0002712509,0.00007056901,0.001418432,0.0008661511,0.0002127338,0.00230788,0.4055381,0.0003607847,0.4417911,0.0008138312,0.1448504],"study_design_scores_gemma":[0.001542421,0.0002176174,0.0009352491,0.01276575,0.0001022045,0.0001512327,0.00005409334,0.970915,0.00006332136,0.003186144,0.009792856,0.0002741134],"study_design_candidate":"simulation_or_modeling","study_design_consensus":null,"genre_codex":"methods","genre_gemma":"empirical","genre_scores_codex":[0.005064126,0.01633461,0.9577711,0.01436197,0.004496277,0.0002454593,0.00001949031,0.00003500396,0.001671931],"genre_scores_gemma":[0.9372723,0.05561497,0.005197909,0.001326188,0.0005326655,0.000001885592,0.000003746876,0.00001568178,0.00003463375],"genre_candidate":"methods","genre_consensus":null,"teacher_disagreement_score":0.9525732,"threshold_uncertainty_score":0.9999619,"prediction_status":"machine_predicted_unvalidated"},"machine_scores":{"provisional":true,"baseline":true,"maturity_gate_passed":false,"score_opus":0.01392410132267722,"score_gpt":0.2848217649671562,"score_spread":0.270897663644479,"validation_status":"score_only:v0-immature-baseline","note":"Baseline scores from an immature model (maturity gate not passed). Scores rank; they never assert a category."}}