Page 327 - 《软件学报》2026年第7期
P. 327

3012                                                       软件学报  2026  年第  37  卷第  7  期


                     Representations. Kigali: OpenReview.net, 2023. 1–23.
                 [53]   LeCun Y, Bottou L, Bengio Y, Haffner P. Gradient-based learning applied to document recognition. Proc. of the IEEE, 1998, 86(11):
                     2278–2324.
                 [54]   Netzer Y, Wang T, Coates A, Bissacco A, Wu B, Ng AY. Reading digits in natural images with unsupervised feature learning. In: Proc.
                     of the 25th Annual Conf. on Deep Learning and Unsupervised Feature Learning. Granada: NeurIPS, 2011.
                 [55]   Everingham M, van Gool L, Williams CKI, Winn J, Zisserman A. The PASCAL visual object classes (VOC) challenge. Int’l Journal of
                     Computer Vision, 2010, 88(2): 303–338. [doi: 10.1007/s11263-009-0275-4]
                 [56]   He KM, Zhang XY, Ren SQ, Sun J. Deep residual learning for image recognition. In: Proc. of the 2016 IEEE Conf. on Computer Vision
                     and Pattern Recognition (CVPR). Las Vegas: IEEE, 2016. 770–778. [doi: 10.1109/CVPR.2016.90]
                 [57]   Szegedy C, Liu W, Jia YQ, Sermanet P, Reed S, Anguelov D, Erhan D, Vanhoucke V, Rabinovich A. Going deeper with convolutions.
                     In: Proc. of the 2015 IEEE Conf. on Computer Vision and Pattern Recognition (CVPR). Boston: IEEE, 2015. 1–9. [doi: 10.1109/CVPR.
                     2015.7298594]
                 [58]   Ren SQ, He KM, Girshick R, Sun J. Faster R-CNN: Towards real-time object detection with region proposal networks. IEEE Trans. on
                     Pattern Analysis and Machine Intelligence, 2017, 39(6): 1137–1149. [doi: 10.1109/TPAMI.2016.2577031]
                 [59]   Wong  E,  Rice  L,  Kolter  JZ.  Fast  is  better  than  free:  Revisiting  adversarial  training.  In:  Proc.  of  the  8th  Int’l  Conf.  on  Learning
                     Representations. Addis Ababa: OpenReview.net, 2020. 1–17.
                 [60]   Gowal S, Uesato J, Qin CL, Huang PS, Mann TA, Kohli P. An alternative surrogate loss for PGD-based adversarial testing. arXiv:1910.
                     09338, 2019.
                 [61]   Moosavi-Dezfooli S, Fawzi A, Frossard P. DeepFool: A simple and accurate method to fool deep neural networks. In: Proc. of the 2016
                     IEEE Conf. on Computer Vision and Pattern Recognition (CVPR). Las Vegas: IEEE, 2016. 2574–2582. [doi: 10.1109/CVPR.2016.282]
                 [62]   Carlini N, Wagner D. Towards evaluating the robustness of neural networks. In: Proc. of the 2017 IEEE Symp. on Security and Privacy
                     (SP). San Jose: IEEE, 2017. 39–57. [doi: 10.1109/SP.2017.49]
                 [63]   Zhang HC, Wang JY. Towards adversarially robust object detection. In: Proc. of the 2019 IEEE/CVF Int’l Conf. on Computer Vision.
                     San Jose: IEEE, 2019. 421–430. [doi: 10.1109/ICCV.2019.00051]

                 作者简介
                 杨波, 博士, 教授, CCF  专业会员, 主要研究领域为深度学习, 软件测试, 软件故障定位, 软件需求分析.
                 熊倩, 硕士生, 主要研究领域为人工智能, 攻击与防御, 安全性与可靠性优化.
                 徐珞, 博士, 研究员级高级工程师, 博士生导师, 主要研究领域为人工智能, 智能体系总体, 软件工程.
   322   323   324   325   326   327   328   329   330   331   332