Page 327 - 《软件学报》2026年第7期
P. 327
3012 软件学报 2026 年第 37 卷第 7 期
Representations. Kigali: OpenReview.net, 2023. 1–23.
[53] LeCun Y, Bottou L, Bengio Y, Haffner P. Gradient-based learning applied to document recognition. Proc. of the IEEE, 1998, 86(11):
2278–2324.
[54] Netzer Y, Wang T, Coates A, Bissacco A, Wu B, Ng AY. Reading digits in natural images with unsupervised feature learning. In: Proc.
of the 25th Annual Conf. on Deep Learning and Unsupervised Feature Learning. Granada: NeurIPS, 2011.
[55] Everingham M, van Gool L, Williams CKI, Winn J, Zisserman A. The PASCAL visual object classes (VOC) challenge. Int’l Journal of
Computer Vision, 2010, 88(2): 303–338. [doi: 10.1007/s11263-009-0275-4]
[56] He KM, Zhang XY, Ren SQ, Sun J. Deep residual learning for image recognition. In: Proc. of the 2016 IEEE Conf. on Computer Vision
and Pattern Recognition (CVPR). Las Vegas: IEEE, 2016. 770–778. [doi: 10.1109/CVPR.2016.90]
[57] Szegedy C, Liu W, Jia YQ, Sermanet P, Reed S, Anguelov D, Erhan D, Vanhoucke V, Rabinovich A. Going deeper with convolutions.
In: Proc. of the 2015 IEEE Conf. on Computer Vision and Pattern Recognition (CVPR). Boston: IEEE, 2015. 1–9. [doi: 10.1109/CVPR.
2015.7298594]
[58] Ren SQ, He KM, Girshick R, Sun J. Faster R-CNN: Towards real-time object detection with region proposal networks. IEEE Trans. on
Pattern Analysis and Machine Intelligence, 2017, 39(6): 1137–1149. [doi: 10.1109/TPAMI.2016.2577031]
[59] Wong E, Rice L, Kolter JZ. Fast is better than free: Revisiting adversarial training. In: Proc. of the 8th Int’l Conf. on Learning
Representations. Addis Ababa: OpenReview.net, 2020. 1–17.
[60] Gowal S, Uesato J, Qin CL, Huang PS, Mann TA, Kohli P. An alternative surrogate loss for PGD-based adversarial testing. arXiv:1910.
09338, 2019.
[61] Moosavi-Dezfooli S, Fawzi A, Frossard P. DeepFool: A simple and accurate method to fool deep neural networks. In: Proc. of the 2016
IEEE Conf. on Computer Vision and Pattern Recognition (CVPR). Las Vegas: IEEE, 2016. 2574–2582. [doi: 10.1109/CVPR.2016.282]
[62] Carlini N, Wagner D. Towards evaluating the robustness of neural networks. In: Proc. of the 2017 IEEE Symp. on Security and Privacy
(SP). San Jose: IEEE, 2017. 39–57. [doi: 10.1109/SP.2017.49]
[63] Zhang HC, Wang JY. Towards adversarially robust object detection. In: Proc. of the 2019 IEEE/CVF Int’l Conf. on Computer Vision.
San Jose: IEEE, 2019. 421–430. [doi: 10.1109/ICCV.2019.00051]
作者简介
杨波, 博士, 教授, CCF 专业会员, 主要研究领域为深度学习, 软件测试, 软件故障定位, 软件需求分析.
熊倩, 硕士生, 主要研究领域为人工智能, 攻击与防御, 安全性与可靠性优化.
徐珞, 博士, 研究员级高级工程师, 博士生导师, 主要研究领域为人工智能, 智能体系总体, 软件工程.

