{"as_of":"2026-08-12T14:26:00Z","caps":{"database_statements":6,"inbound":100,"outbound":100},"context_digest":"sha256:cb40b881c0d14adf3b43e7e5e384f8b681cb10f4eb02c73c92088447f0f2ac1a","coverage":[{"denominator":84,"lane":"reference_resolution","note":"Typed states for the displayed outbound observations.","records_observed":84,"source":"paper_references, paper_reference_links","source_observed_at":"2026-08-12T14:14:38.775223Z","state":"measured"},{"denominator":84,"lane":"standing_notices","note":"One-hop event checks from named stored sources.","records_observed":84,"source":"scholarly_work_events, retraction_status_cache","source_observed_at":"2026-08-12T06:34:41.77262+00:00","state":"measured"},{"denominator":0,"lane":"inbound_itemization","note":"Pith citing papers itemized under the disclosed page cap.","records_observed":0,"source":"paper_references, paper_reference_links","source_observed_at":null,"state":"measured"},{"denominator":1,"lane":"external_citation_measurements","note":"A source-named dated measurement, never combined with another source.","records_observed":0,"source":"cited_works","source_observed_at":null,"state":"measured"}],"external_citation_measurements":[],"inbound":[],"links":{"evidence":"/evidence","html":"/paper/2411.15555/citation-record","integrity":"/paper/2411.15555/integrity","json":"/paper/2411.15555/citation-record.json","paper":"/paper/2411.15555"},"outbound":[{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:38.040471Z","title":"Partial FC: training 10 million identities on a single machine","venue":null,"work_id":null,"year":2021},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":1,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.040471Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:30d9f571dd8f3fb954f7eb9c261f2837d18a1a33352a5f2e121278997732a240","observation_id":"c59954a6-2e32-40e8-bc46-95e5990c49b9","resolution":{"observed_at":"2026-08-12T14:14:38.040471Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:38.049490Z","title":"Idiff-face: Synthetic-based face recognition through fizzy identity-conditioned diffusion models","venue":null,"work_id":null,"year":2023},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":2,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.049490Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:959d74fa8044a5bdc1a3f98bfbadf3998dd7261e78c0bda17b1becc460c28a79","observation_id":"cc633375-4431-46f6-968e-1d5249975914","resolution":{"observed_at":"2026-08-12T14:14:38.049490Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"1809.08352","last_updated":"2018-09-22T00:16:18Z","snapshot_observed_at":"2026-08-03T11:18:04.908314Z","submitted_at":"2018-09-22T00:16:18Z","title":"Unrestricted Adversarial Examples","version":1},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"1809.08352","snapshot_observed_at":"2026-08-12T14:14:38.055990Z","title":"Unrestricted adversarial examples","venue":null,"work_id":null,"year":2018},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":3,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.055990Z"},"links":{"cited_paper":"/paper/1809.08352","citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:d5ad0cbe70e687cf5df4920b420efabc65e55d465b92c3bbd322435ba2b34f59","observation_id":"2f36f0c6-226c-4e93-8540-f443289ca3ed","resolution":{"observed_at":"2026-08-12T14:14:38.055990Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:38.063273Z","title":"An adaptive model ensemble adversarial attack for boosting adversarial transferability","venue":null,"work_id":null,"year":2023},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":4,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.063273Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:15f62249694bd13dcf2d130ba180841738227dad587abb8aa5e1f7137e599ef8","observation_id":"b332073e-811b-43bb-873d-21d6e31cb3ba","resolution":{"observed_at":"2026-08-12T14:14:38.063273Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:38.071440Z","title":"Content-based unrestricted adver- sarial attack","venue":null,"work_id":null,"year":2023},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":5,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.071440Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:0e47160bcf15a28bc092d7f3c5fc4586c8002fbd5f3008ed8405ac08f77111dc","observation_id":"ce5fe198-c246-4c48-968d-76086442cf21","resolution":{"observed_at":"2026-08-12T14:14:38.071440Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:41.478669Z","title":"Lowkey: Leveraging adversarial attacks to protect social media users from facial recognition","venue":null,"work_id":"a032abc1-bae9-4823-bc74-472756d6a2ad","year":2021},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":6,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.078656Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:cfdd1df97332867eef8f01b7912cf479ab700509d083ded51e0be193650a3df1","observation_id":"4662df28-3f8c-4fa1-907b-31395a414944","resolution":{"observed_at":"2026-08-12T14:14:41.486125Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:41.442944Z","title":"Towards solving the deepfake problem: An analysis on improving deepfake detection using dynamic face augmentation","venue":null,"work_id":"a4112ad3-e94e-4d67-982a-858c294343d8","year":null},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":7,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.085564Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:f0a545a7b447a9d12087a9a801c70cf0a48442dccdc32001b5da0b91b0de80c1","observation_id":"80820cef-01cf-4613-b3d4-0ba21ffe18f1","resolution":{"observed_at":"2026-08-12T14:14:41.452404Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:41.404129Z","title":"Arcface: Additive angular margin loss for deep face recognition","venue":null,"work_id":"1292d084-b02c-4600-8fe2-c06e0d5f0db8","year":2022},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":8,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.097292Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:840b80d648df6150a5f7b70689a324cb431ec2441b01175f799c3f7357bed4b1","observation_id":"eb6f2d28-94c5-49c2-83eb-a5f27c369f4c","resolution":{"observed_at":"2026-08-12T14:14:41.416368Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:41.362130Z","title":"Boosting adversarial attacks with momentum","venue":null,"work_id":"5b798b92-60b1-4afe-9d56-3eb53d5407ea","year":2018},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":9,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.103595Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:df693e4ead33f1e1fdf295fdac8826c06c90d91f86261f5996d7f0472701022c","observation_id":"8fe92db0-059a-4242-afcd-dc846e698b2a","resolution":{"observed_at":"2026-08-12T14:14:41.381563Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:41.337204Z","title":"Improving the transferability of adversarial examples with arbitrary style transfer","venue":null,"work_id":"ac661f12-0cb3-4c43-b6f3-ef5127d8e994","year":2023},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":10,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.112156Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:cfb2d61d4470693c1c7a8720536bf752cd7a0cfa3a736c33e12d35a87208468d","observation_id":"3913dce6-53bb-48fd-90a9-0f54b032296e","resolution":{"observed_at":"2026-08-12T14:14:41.343052Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:41.298571Z","title":"Explaining and harnessing adversarial examples","venue":null,"work_id":"5f08771a-6255-4894-855e-c0ce1499ed49","year":2015},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":11,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.121432Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:65e4514a5a5491bd9b4bfb328d96e8f86d37b9c7dab39b453ea89ded1b50eacc","observation_id":"abf20aaa-4893-400f-9722-c786f7220e81","resolution":{"observed_at":"2026-08-12T14:14:41.309528Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:41.262375Z","title":"Lgv: Boosting adversarial example transferability from large geometric vicinity","venue":null,"work_id":"de3bc354-2deb-4049-9c59-c549d70a2d00","year":null},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":12,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.132139Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:68a2a8bff4cf4e378373370de458807a7572e24007986037b3e8ddba4c8375cc","observation_id":"3046de18-0231-4305-9af7-b244df6b7770","resolution":{"observed_at":"2026-08-12T14:14:41.273536Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:41.209262Z","title":"Deep residual learning for image recognition","venue":null,"work_id":"96bd4d01-f5ef-4b86-a931-e7fc26abc07d","year":2016},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":13,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.138756Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:6cc8f4dfa9dd689864a531afbbf1d8bd1c104511357df7d910a980b5b3dd622e","observation_id":"802e57a2-3094-4cee-a3bc-cc5e56122adc","resolution":{"observed_at":"2026-08-12T14:14:41.218295Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:41.181090Z","title":"Squeeze-and-excitation networks","venue":null,"work_id":"9a270c37-63c6-482f-ba62-65446d909ac8","year":null},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":14,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.149323Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:1106d612588e4b7d60d0519a69b01e3acfe4745ec1e069fbfc2694fb1ba10337","observation_id":"46f557ed-ed25-498e-9412-f499cdfc7af0","resolution":{"observed_at":"2026-08-12T14:14:41.190894Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:41.157855Z","title":"Protecting facial pri- vacy: Generating adversarial identity masks via style-robust makeup transfer","venue":null,"work_id":"b49fcf42-a20d-4e14-81e9-6d82cb4527de","year":2022},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":15,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.158622Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:76a41fd10a1b9b682fda79c766d1046fe50b37994daeef3c1bd622fe057547dd","observation_id":"303df7dd-f0fa-4abf-8807-ceaf7f0778d5","resolution":{"observed_at":"2026-08-12T14:14:41.164163Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:41.126247Z","title":"Huang, Manu Ramesh, Tamara Berg, and Erik Learned-Miller","venue":null,"work_id":"1b20d918-cf49-4f76-8e34-c5745974530c","year":2007},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":16,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.164585Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:2874b3cfd7ed36b5d2e5bce9cac1e80e108b7a50474df452ee1d3f8366ab043e","observation_id":"aa1679ff-eeb5-4dea-87fb-6a0e3b1daec7","resolution":{"observed_at":"2026-08-12T14:14:41.134698Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:41.093967Z","title":"Curricularface: Adaptive curriculum learning loss for deep face recognition","venue":null,"work_id":"444f2573-1b76-4e2a-bf83-7c003a639239","year":2020},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":17,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.173758Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:538d515783f5047e3a1a3a009988e9236586b6a8e62399c7cd0b85405003459d","observation_id":"672ee2da-d0d9-41fd-9408-94c7883a8ee9","resolution":{"observed_at":"2026-08-12T14:14:41.105707Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:41.064294Z","title":"Adv-attribute: Inconspicuous and transferable adversarial attack on face recognition","venue":null,"work_id":"8dd4d9db-3170-4530-bc1b-ded8d3fe4f0f","year":2022},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":18,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.185426Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:aa6d9c75349ed0a64a98a4ff38e13dcaac35819b3fcbd977f87567cb34ed929c","observation_id":"f3d14fea-b857-477a-bb74-3987605e7329","resolution":{"observed_at":"2026-08-12T14:14:41.071777Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:41.033276Z","title":"Progressive growing of gans for improved quality, stability, and variation","venue":null,"work_id":"108b4596-4f39-4a2b-b90b-77651b05fb68","year":2018},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":19,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.193241Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:1cb437aa40edee199959d055d2969b6cdd6c044cca98c7ead693d457c2ada710","observation_id":"b3d88c28-184b-4944-9607-c9ca95100f45","resolution":{"observed_at":"2026-08-12T14:14:41.046205Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:41.004282Z","title":"Rethinking feature- based knowledge distillation for face recognition","venue":null,"work_id":"273135b6-2cd5-434a-b825-1eaa768a870c","year":2023},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":20,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.200230Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:ad689a1f97b3541847dec3d31182aed8d05f06befc02cddd387819318ca44682","observation_id":"fb3357fb-e394-4b28-a887-5dd2d0f20bb3","resolution":{"observed_at":"2026-08-12T14:14:41.014233Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:40.970956Z","title":"Physical-world optical adversarial attacks on 3d face recognition","venue":null,"work_id":"49e64442-88ad-4ffc-99bb-587ef0742839","year":2023},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":21,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.208320Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:3e6ef49ee021f856f38c6161c6c59561a1e666b18d2f733a0e3745a2b3e41fcf","observation_id":"df8d0c84-d176-441b-aa79-1ecbc60812a2","resolution":{"observed_at":"2026-08-12T14:14:40.982689Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:40.926895Z","title":"Sibling-attack: Rethinking transferable adversarial attacks against face recognition","venue":null,"work_id":"74f41de6-9a8d-4764-8aa2-429258321f64","year":2023},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":22,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.215372Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:f809857359482dc9da69f3d3ab8cd00e38cb9365741c1278fecc0ad19a069e8b","observation_id":"eb466814-8518-4198-b6eb-f55ddae18a5c","resolution":{"observed_at":"2026-08-12T14:14:40.939724Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:40.887914Z","title":"Adversarial example does good: Preventing painting imitation 9 from diffusion models via adversarial examples","venue":null,"work_id":"df03fe17-4cdd-4ec0-a88b-34779969d6ce","year":null},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":23,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.221625Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:9c55482bc85184444013251641a449138a6e9f83103c10ac89d61993e6628b37","observation_id":"ab3c1b58-21c2-4d3f-9638-dfc6346d6d14","resolution":{"observed_at":"2026-08-12T14:14:40.906467Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:40.843875Z","title":"Hopcroft","venue":null,"work_id":"e1c9fad0-7fe7-4d49-9006-397256fda61e","year":2020},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":24,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.229756Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:da2c24816c0c6434d28ee592440fe2a21744519e6c9f971aaa0603c031bc545e","observation_id":"b782085c-e68a-479b-b365-c8a5c51192ff","resolution":{"observed_at":"2026-08-12T14:14:40.854095Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:40.819930Z","title":"Enhancing generalization of universal adversarial perturbation through gradient aggregation","venue":null,"work_id":"b904cb39-4d2c-4f52-942a-ddf85b2316e1","year":2023},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":25,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.236123Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:1517b4896fdf0899d76bf097770ffa4e84b1d274cc5da234c0993c99eabbfa18","observation_id":"1e2fe385-1875-4121-aeac-bf32cbb4e2db","resolution":{"observed_at":"2026-08-12T14:14:40.828002Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:40.785744Z","title":"TRM-UAP: enhancing the transferability of data-free univer- sal adversarial perturbation via truncated ratio maximization","venue":null,"work_id":"7cb0044b-7e77-4bdd-98fc-5a62e7ca17b8","year":2023},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":26,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.244328Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:089124d1a61416777110b5c7f6b0eb30ef668c441fa67b7f3a3597e2885a8316","observation_id":"bc6fd12b-3bec-4533-adb4-1a82c788ab38","resolution":{"observed_at":"2026-08-12T14:14:40.799433Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:40.749493Z","title":"Frequency domain model augmentation for adversarial attack","venue":null,"work_id":"abb2f15e-3887-47b2-b41f-76eb77e1e22c","year":2022},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":27,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.251098Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:f16f808899bb69f8381d5ff93208c78bb67b769e683438910b60279f9876b2b4","observation_id":"0d219478-d014-43ac-b931-385667e11a1f","resolution":{"observed_at":"2026-08-12T14:14:40.759029Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:38.261046Z","title":"Set-level guidance at- tack: Boosting adversarial transferability of vision-language pre-training models","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":28,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.261046Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:9b4b02d2b127663f4ae21254eb4d1c4ede69be6c06b73e8cc5fa162c02c3c40e","observation_id":"44fe9440-8ad7-42bb-9b57-08e7410876fa","resolution":{"observed_at":"2026-08-12T14:14:38.261046Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:40.685570Z","title":"Magface: A universal representation for face recognition and quality assessment","venue":null,"work_id":"2f142d2a-2811-415e-8e4d-780a39daaca9","year":2021},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":29,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.270175Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:ab056a09b09a3045590bd3e93c5051988b5805178b391d8efabaa1b428902ea1","observation_id":"66f80d13-4142-41e5-89a8-20e636dc55bc","resolution":{"observed_at":"2026-08-12T14:14:40.699222Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:40.651715Z","title":"Towards multiple black-boxes attack via adversarial example generation network","venue":null,"work_id":"41365d46-bc79-4f04-8183-1036a382ccfb","year":2021},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":30,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.278241Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:f9827ec3fa4f05be7fecaca8ef0a3a1a518dd6899daa2c8a634f2694e44021f6","observation_id":"ee1353fa-871b-4916-b053-d3ee08a39748","resolution":{"observed_at":"2026-08-12T14:14:40.659294Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:40.621274Z","title":"Df-platter: Multi- face heterogeneous deepfake dataset","venue":null,"work_id":"2c473772-6604-4963-92ee-20b932ee9cdc","year":2023},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":31,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.287883Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:452a34c3d2dc079a7b6d3399eea94a2fb39a98a8edea17f20e300586d9a70738","observation_id":"b780e722-8727-43f4-87be-df306de61642","resolution":{"observed_at":"2026-08-12T14:14:40.628466Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:40.591971Z","title":"Dynamic routing and knowledge re- learning for data-free black-box attack","venue":null,"work_id":"39a475a9-2a76-4070-a3ad-a5272965fa77","year":2024},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":32,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.297930Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:0bbe639b5fe2cc6b1c955406f0e262274959b7e2d19f4932485440bbe845edf5","observation_id":"9af12c5b-892b-48cb-a07c-f537710a5a0b","resolution":{"observed_at":"2026-08-12T14:14:40.601587Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:40.572873Z","title":"Semanticadv: Generating adversarial exam- ples via attribute-conditioned image editing","venue":null,"work_id":"3d44289a-e942-457e-8f40-d00695a07198","year":2020},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":33,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.315287Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:a3291ee5e3cc11d907b854d6cbca9612632822e8be72cdf62afc80874d086b01","observation_id":"fff77797-72c5-46eb-ad86-ef44ed073f04","resolution":{"observed_at":"2026-08-12T14:14:40.580057Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:40.538321Z","title":"Facenet: A unified embedding for face recognition and clus- tering","venue":null,"work_id":"57425f13-ee48-4640-8fa5-6f0ddbac871b","year":2015},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":34,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.322984Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:9377a6d607eece96a6d3481507e9389db4b954535baab358cb4984fac889f514","observation_id":"1ff50ed3-419f-49b5-b0ff-8ac348ef74c4","resolution":{"observed_at":"2026-08-12T14:14:40.551051Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:40.503748Z","title":"Clip2protect: Protecting facial privacy using text-guided makeup via adversarial latent search","venue":null,"work_id":"a1802027-ed3d-43cd-a1f4-f59547535edf","year":2023},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":35,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.333291Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:ee50ef1ef3a0b2a88d0baf3922d5de3b96b6bbc52035f34dfde64ffb7721d6ac","observation_id":"58b3636e-2551-489d-92ad-bb8b987de0f5","resolution":{"observed_at":"2026-08-12T14:14:40.512181Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:40.471765Z","title":"Jail- break in pieces: Compositional adversarial attacks on multi- modal language models","venue":null,"work_id":"f60eb733-1124-453b-8771-4a076a0f5631","year":2024},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":36,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.340826Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:ed2cb0213e8044e4e7f5057243e9437d76423ae302cf62bf8150fbd64f428bc7","observation_id":"fcbefc61-cb22-4be6-896b-3be15aaefbf9","resolution":{"observed_at":"2026-08-12T14:14:40.480773Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:40.437541Z","title":"Benchmarking robustness to adversarial image ob- fuscations","venue":null,"work_id":"6ab43fdc-7c45-4220-93b7-429c42a46534","year":2023},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":37,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.349808Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:f339edff1b9a67bfba45065c7b0bc5d2638eb8dea5f3d3cf100a8e06c23820e3","observation_id":"29e8496b-3a2b-4b67-aa1e-2737ca73854a","resolution":{"observed_at":"2026-08-12T14:14:40.450795Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:40.398066Z","title":"Circle loss: A unified perspective of pair similarity optimization","venue":null,"work_id":"fcc114b7-1964-47d5-871a-6b21140ff091","year":2020},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":38,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.357883Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:c5a7eea7bbd9194d4cb334bf80fc2c2600c63a948f4871a03689aef2ec3ab053","observation_id":"a789af04-bbe8-43cb-8da2-0caafda36ab1","resolution":{"observed_at":"2026-08-12T14:14:40.405741Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:40.362750Z","title":"Diffam: Diffusion-based adversarial makeup transfer for facial privacy protection","venue":null,"work_id":"766db861-1eca-49b7-bfd3-4f4b58227943","year":2024},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":39,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.367197Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:e34e86c5de39c0afc76dd9c68ab6a7641c18b15942e7fcfba4a64ecbb88b6aeb","observation_id":"3d2a099f-fc6d-4177-bbdc-d35186490eb5","resolution":{"observed_at":"2026-08-12T14:14:40.371578Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:40.340156Z","title":"ACTIVE: towards highly transferable 3d physical camouflage for universal and robust vehicle evasion","venue":null,"work_id":"dfed77a7-ce06-4923-aa37-4908f44269a1","year":null},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":40,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.373128Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:89d92982a56a722f4833a9af1bf1787a8b70c0498dd6a798cc5d8323ded7170f","observation_id":"763d0dec-aa93-4b7c-9df8-3ab6b20988ef","resolution":{"observed_at":"2026-08-12T14:14:40.348680Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:40.305123Z","title":"Teachaugment: Data augmentation opti- mization using teacher knowledge","venue":null,"work_id":"b03b367a-ef45-40af-a8a0-03ed03606231","year":2022},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":41,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.382011Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:ff021d2116f43dfc822e6c1b3bea076d51f49f1cc79ae62f70fbf506c7760e12","observation_id":"9fcb8012-0ce1-4669-ac38-d447fdcac74a","resolution":{"observed_at":"2026-08-12T14:14:40.316258Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:40.268199Z","title":"Goodfellow, and Rob Fergus","venue":null,"work_id":"59b99ca4-2c0c-492c-a5bf-e876868ccd13","year":2014},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":42,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.388806Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:bf283002327e806e7a4cc035b24310621af64dd92fc5add429b533057bbd419d","observation_id":"86c5d436-ce11-407e-a254-00af5017523d","resolution":{"observed_at":"2026-08-12T14:14:40.277558Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:40.241729Z","title":"RFLA: A stealthy reflected light adversarial attack in the physical world","venue":null,"work_id":"5d989bbc-6ff4-4ba3-9e21-0f7b43fa3807","year":2023},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":43,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.394976Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:df5138387131d64451cba3c9f4dc71dc1b2342f8364b6420fcd71bd2dc971f4f","observation_id":"ebef361a-f953-4fb7-af43-825105498a4a","resolution":{"observed_at":"2026-08-12T14:14:40.248806Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:40.208964Z","title":"Cosface: Large margin cosine loss for deep face recognition","venue":null,"work_id":"085515bf-8a54-4c9d-aaa8-dd0b0276b3b1","year":2018},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":44,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.404157Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:398c31c7b3105f8128d44a589381fb70649095abd989578f06f3ac5a6cf3aa64","observation_id":"40c9cc64-3de8-47be-9916-dbb5137b2cd3","resolution":{"observed_at":"2026-08-12T14:14:40.220644Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:40.180577Z","title":"Facex-zoo: A pytorh toolbox for face recognition","venue":null,"work_id":"14c44f12-f38b-4a72-b129-02afa583dbf7","year":2021},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":45,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.439180Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:e921de124cbb8edbbd982d640e713d624f8301c5c4e70e5186bccf1c59821fd6","observation_id":"9cbc38ab-11d7-4cfd-8b63-9a5a4722c020","resolution":{"observed_at":"2026-08-12T14:14:40.191067Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:40.153290Z","title":"Boosting Adversarial Transferability by Block Shuffle and Rotation","venue":null,"work_id":"4459d595-8c1a-488c-8a68-edcd2d63f4cb","year":2024},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":46,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.449620Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:2e7164127ea8615ab9dba9c093a5ec394d56480f42a74cf253ef12c66478f710","observation_id":"7ee335e2-cfa2-445b-b2b0-a413e0bae264","resolution":{"observed_at":"2026-08-12T14:14:40.158952Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:40.121647Z","title":"Mitigating bias in face recog- nition using skewness-aware reinforcement learning","venue":null,"work_id":"8aaa021e-ae22-4170-a94e-8dd60b3cc65d","year":2020},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":47,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.461383Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:88e2d61fa5580d22b45ab68063992e7d10f7e197f6a0672c413f2d39683fbae7","observation_id":"dd08fa40-dc69-4cca-8aef-523d39a6dd2e","resolution":{"observed_at":"2026-08-12T14:14:40.131671Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:40.094258Z","title":"Deep face recognition: A survey","venue":null,"work_id":"20cb3f95-a597-4d53-b091-c017c0964752","year":2021},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":48,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.468591Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:e2318f2463a02bf6a85e38c93ef4c7ca22c040d584f64e399f5352b96bfde1d5","observation_id":"fa11bd0f-22e6-42ca-a66f-973c319106aa","resolution":{"observed_at":"2026-08-12T14:14:40.099841Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:40.052278Z","title":"Racial faces in the wild: Reducing racial bias by information maximization adaptation network","venue":null,"work_id":"b6774a21-7495-4f2d-a1fa-79d76cab5ddd","year":2019},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":49,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.474269Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:d9127a55e69dd43236f1718fc63a76abaf174d44c4917347ba4987b72716df88","observation_id":"fdd2c3b6-93a1-4412-8dd4-172015a34977","resolution":{"observed_at":"2026-08-12T14:14:40.062939Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:40.005680Z","title":"Meta balanced network for fair face recognition","venue":null,"work_id":"cd79fd57-c97b-411b-9c2f-b4c07e5a122c","year":2021},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":50,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.480696Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:c2e654cab142b2922e02bd0eb4811cb4da451e110ffec8fe9242c4491b57f3fb","observation_id":"f54a606c-1994-4252-a007-431bfe852ed3","resolution":{"observed_at":"2026-08-12T14:14:40.013793Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:39.971015Z","title":"Delving into data: Effectively substitute training for black-box attack","venue":null,"work_id":"4aae075e-f761-4fc3-8176-0ac59c744123","year":2021},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":51,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.486327Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:f30f0f2a2a49b0a4bc3b6b1a3294f8bf20166fbb070f7c25153e32bccd593de4","observation_id":"43532d59-c02a-40c9-8d80-9ca96d9c0101","resolution":{"observed_at":"2026-08-12T14:14:39.983123Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:39.940067Z","title":"Dst: Dynamic substitute training for data-free black- box attack","venue":null,"work_id":"a3a8d659-d32c-4696-8836-adafeb8fb610","year":2022},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":52,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.492770Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:79aff889fd9c16fab7549ca43c9ea355d93bad14ea4d742333962d52e0676156","observation_id":"940e8bda-2d9a-400d-b196-efd0b42b7a0c","resolution":{"observed_at":"2026-08-12T14:14:39.946213Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:39.905514Z","title":"Enhancing the transferability of adversarial attacks through variance tuning","venue":null,"work_id":"470e1ee0-e7a1-46f2-8e21-6c7ff648760b","year":1924},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":53,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.502468Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:c9d877f1c5c20aaf680f907c43a34d8eca88c0f0f765cf96c94b38ec12a301c1","observation_id":"0770ceb6-00fa-4767-bb63-f6df7a1661d0","resolution":{"observed_at":"2026-08-12T14:14:39.918626Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:39.873747Z","title":"Mis-classified vector guided softmax loss for face recognition","venue":null,"work_id":"14d27675-0d04-456b-ab02-07d006a346e8","year":2020},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":54,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.512576Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:9c9733053cac5ea0fc1f1a5f597e9a67d6ea202342a045ba57fe77cccf95a74a","observation_id":"2b09fba5-9f76-42ff-97c3-116d2488a1f2","resolution":{"observed_at":"2026-08-12T14:14:39.883740Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:39.840671Z","title":"Structure invariant transformation for better adversarial transferability","venue":null,"work_id":"bdf88515-8e3a-461f-a62b-962e7250f77d","year":2023},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":55,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.519007Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:2769e739847004052ded3782ba3e0553d618099ffa07004fe4590f19e0b2619f","observation_id":"7ece2e10-68f5-47ba-851c-737994c1633f","resolution":{"observed_at":"2026-08-12T14:14:39.847043Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:39.809640Z","title":"Tf-fas: Twofold-element fine-grained semantic guidance for general- izable face anti-spoofing","venue":null,"work_id":"1a7331b1-1286-45a0-b77a-cbcdb4f04af1","year":2024},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":56,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.526973Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:98fd4808cf48b6eaa76c4a8afb58d4d14b04b62bb0830e4a54546011611d3766","observation_id":"fb2daff8-f315-43c6-b4ce-57dad90241b5","resolution":{"observed_at":"2026-08-12T14:14:39.819807Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:39.780821Z","title":"Uni- fied adversarial patch for cross-modal attacks in the physical world","venue":null,"work_id":"723647f9-394f-4ea2-88bc-54189be0087f","year":2023},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":57,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.533433Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:d17da9d6c56a923310a0759242da776b5e0184a07fe40a75ca6397d39b72e814","observation_id":"e72f9ea3-38d7-4837-8e92-387ec4b60c67","resolution":{"observed_at":"2026-08-12T14:14:39.790971Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:39.755718Z","title":"Physically adversarial infrared patches with learnable shapes and locations","venue":null,"work_id":"5b65ddcd-f26a-41da-b61c-3203257f5be7","year":2023},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":58,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.541982Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:c10446c60181376e89715aed84fb1b3e12b60d9369fa8fd8de6cd0af9ae76341","observation_id":"bb0face3-1ac3-4f06-b328-c595f59400e3","resolution":{"observed_at":"2026-08-12T14:14:39.762521Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2009.12724","last_updated":"2021-09-13T13:05:55Z","snapshot_observed_at":"2026-08-04T04:41:19.051964Z","submitted_at":"2020-09-27T02:05:26Z","title":"Beneficial Perturbations Network for Defending Adversarial Examples","version":3},"cited_work":{"arxiv_id":"2009.12724","doi":null,"metadata_source":"pith","pith_arxiv_id":"2009.12724","snapshot_observed_at":"2026-08-12T14:14:38.921083Z","title":"Beneficial Perturbations Network for Defending Adversarial Examples","venue":"cs.LG","work_id":"087a644a-d5f0-42b7-88d8-9b29610fed62","year":2020},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":59,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.547633Z"},"links":{"cited_paper":"/paper/2009.12724","citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:98ee9cbf84ea02405bced05975bfba941960e1446b2c75197303b5f396791edf","observation_id":"5bdd1394-f92b-447c-973f-694973bea4de","resolution":{"observed_at":"2026-08-12T14:14:38.928963Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:39.723335Z","title":"Im- proving transferable targeted adversarial attacks with model self-enhancement","venue":null,"work_id":"75c18627-1587-4880-8671-268dc1a67c43","year":2024},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":60,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.557729Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:4171d43de1f1bba37a7f1a1f4279cd1882ef1f4bc77c932e3abd3620ada9811e","observation_id":"f7822a1b-6339-479d-9fa3-b4b6a1fa38fb","resolution":{"observed_at":"2026-08-12T14:14:39.729730Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:39.695970Z","title":"Improving transferability of adversarial patches on face recognition with generative models","venue":null,"work_id":"b3eb9d7d-d3d9-486b-8ac4-dbdeefc91afe","year":2021},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":61,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.569193Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:8f66b0afa27337a720c17bba71463805b4bd1f0154707083a59e91c524845ee9","observation_id":"c81689fa-37ab-40aa-a75b-2fdc72b11424","resolution":{"observed_at":"2026-08-12T14:14:39.701477Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:39.663115Z","title":null,"venue":null,"work_id":"685cc0b9-eaaf-4ccb-b9d9-2e40da0ec9a2","year":2019},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":62,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.576111Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:7117f618c2d7cfeb7c5f63639453a016caf2bcacdfd57cb830c5a1be249db6a3","observation_id":"27b7daae-0937-48c6-9bb9-5f213cbe945c","resolution":{"observed_at":"2026-08-12T14:14:39.670641Z","resolver_source":"raw_fallback","status":"unresolved"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:39.632699Z","title":"Backpropagation path search on adversarial transferability","venue":null,"work_id":"c45f0ef0-b707-4c69-8db3-2fda44bb708b","year":2023},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":63,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.587913Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:9deb90129270ac39b73978afcbc8e5ba4c36f1644461e6f77e88337ae0f5404f","observation_id":"3e9397d2-7795-48db-9220-501f82261de5","resolution":{"observed_at":"2026-08-12T14:14:39.647138Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:39.602343Z","title":"Towards face encryption by generating adversarial identity masks","venue":null,"work_id":"a2b8cf62-dfa3-45a0-8df2-9f1143d8f1de","year":2021},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":64,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.593841Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:e2de8112b9da9a9cbb1a8c34cfcb5fbb783998d6919491884c84ed45e8b7308c","observation_id":"7ae3fe2f-8f8d-4296-9eef-3fabb6271390","resolution":{"observed_at":"2026-08-12T14:14:39.610120Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:39.567015Z","title":"Towards effective adversarial textured 3d meshes on physical face recognition","venue":null,"work_id":"867ae3c5-fc9a-4398-a1c2-ec39bd9bc4fe","year":2023},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":65,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.607315Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:ea7f13c08f5f7c2f30eeabd78882ab3b9e6d870cbe59adeb2d82a7d927ace67a","observation_id":"0c7d8114-a42c-4d5c-9ae8-337287ea88b7","resolution":{"observed_at":"2026-08-12T14:14:39.577208Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:39.538946Z","title":"Adv- makeup: A new imperceptible and transferable attack on face recognition","venue":null,"work_id":"cdb677f2-3913-4b90-9aeb-cfd7702b5620","year":2021},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":66,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.614282Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:818e5e6a0542f15a4a6a8a4e1dd450911ecd006ff964378ab87c6a9806eb5f54","observation_id":"ccacb050-4531-4d4b-8029-5f05cddc49bb","resolution":{"observed_at":"2026-08-12T14:14:39.546570Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:39.514096Z","title":"Natural color fool: Towards boosting black-box unrestricted attacks","venue":null,"work_id":"b5b62917-c383-440d-87b3-15bd42aabd2c","year":2022},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":67,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.621275Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:f967dfea515d8bb2ea067cfa839ed39304e59235bc748a8493115b3c97539bca","observation_id":"43d68ae8-7f39-4bb2-9ba0-b8ee220a3d11","resolution":{"observed_at":"2026-08-12T14:14:39.524523Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:39.475983Z","title":"Npcface: Negative-positive collaborative training for large-scale face recognition","venue":null,"work_id":"ca87b62a-a1b0-43d1-bdef-3d6a08effaca","year":2020},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":68,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.627940Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:268b66ad58d8fd056e448c08f911226d6a3517de3403f30bf6d9afb0ebb986f8","observation_id":"73e28479-bb78-4bbe-b443-07bc66c02852","resolution":{"observed_at":"2026-08-12T14:14:39.484337Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:39.435790Z","title":"Towards adversarial at- tack on vision-language pre-training models","venue":null,"work_id":"fc02f4d4-9f89-4bec-b728-5bb87d96aa1f","year":2022},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":69,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.635216Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:28e739aed272e0fa11c8fd89376c0dacf48764a87e30fddaeb2cfd72cf43d4b4","observation_id":"4a485259-5118-40c3-acea-9774e252032c","resolution":{"observed_at":"2026-08-12T14:14:39.447900Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:39.405132Z","title":"Adversarial autoaugment","venue":null,"work_id":"7e852512-d4f6-4ce1-a751-f6521e9819e1","year":2020},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":70,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.641584Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:778542c43c58f06c61dba38f00b12804913bcb2edc4cc5ef00df8e581310dc19","observation_id":"c095da32-05b8-4648-8908-264d148d78cc","resolution":{"observed_at":"2026-08-12T14:14:39.412744Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:39.379390Z","title":"Adversarial learning with margin-based triplet embedding regularization","venue":null,"work_id":"9ed8815d-e9a6-4639-86d2-394c04690981","year":2019},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":71,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.647282Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:c9e0595a48f1c781698baa3da1abab703d1bee1bc1dd174770a189dd2b1c2e4b","observation_id":"c4fc488c-0985-4a83-ab98-16c8939c0663","resolution":{"observed_at":"2026-08-12T14:14:39.386871Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:39.347955Z","title":"Towards transferable adversarial attack against deep face recognition","venue":null,"work_id":"52703e74-535f-425f-8b4d-f5722acea2b3","year":null},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":72,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.654887Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:51a4ebe2f627982009f0a6addcc28b74071886c3303922d93d8dda8bcaee2098","observation_id":"6a08eee4-5d34-45c6-b642-d5990942aca3","resolution":{"observed_at":"2026-08-12T14:14:39.357138Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:39.323279Z","title":"Improving visual quality and transferability of ad- versarial attacks on face recognition simultaneously with ad- versarial restoration","venue":null,"work_id":"ae003028-e4ea-4929-8a02-022a2ab23d1a","year":null},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":73,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.661495Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:b0f656ee9b7aef25d0f3b4e57fcc154ce356de7dcba4669f8bea361a9987ec7b","observation_id":"90a59fef-c50c-47b7-80ca-d9563bfef7f1","resolution":{"observed_at":"2026-08-12T14:14:39.334611Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:39.295774Z","title":"Improving the transferability of adver- sarial attacks on face recognition with beneficial perturbation feature augmentation","venue":null,"work_id":"a3648157-753d-43ea-83a1-5ea8c12bb2a1","year":2024},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":74,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.668331Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:523999829f8d0d414840f13f6af7960ce27d213b089e510b076fd895bc16ea25","observation_id":"c74da496-cc1c-4cbb-8c43-858bb0d94e8e","resolution":{"observed_at":"2026-08-12T14:14:39.308767Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2405.16940","last_updated":"2025-05-17T11:24:41Z","snapshot_observed_at":"2026-08-11T08:22:53.553553Z","submitted_at":"2024-05-27T08:30:29Z","title":"Adversarial Attacks on Both Face Recognition and Face Anti-spoofing Models","version":2},"cited_work":{"arxiv_id":"2405.16940","doi":null,"metadata_source":"pith","pith_arxiv_id":"2405.16940","snapshot_observed_at":"2026-08-12T14:14:38.865491Z","title":"Adversarial Attacks on Both Face Recognition and Face Anti-spoofing Models","venue":"cs.CV","work_id":"11861630-9181-4299-a3e2-e9606bccb556","year":2024},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":75,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.678466Z"},"links":{"cited_paper":"/paper/2405.16940","citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:6bebbd58354daf8361e591614c8d5d2aba62cdaad69973862705c03d55a85fda","observation_id":"511e645f-55da-405f-b8e4-4339f3d62379","resolution":{"observed_at":"2026-08-12T14:14:38.877176Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:39.263333Z","title":"Rethinking imper- sonation and dodging attacks on face recognition systems","venue":null,"work_id":"6b4ea388-97f2-4da7-973f-2f78900c6211","year":2024},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":76,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.685449Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:c84398886bfba98ab28f583d2dfe6b0f1b066466a1fa207e320f3b166f7b914f","observation_id":"03e9f3c8-21bc-4ace-97de-098ad06f85de","resolution":{"observed_at":"2026-08-12T14:14:39.277346Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:39.230010Z","title":"Adaptive mixture of experts learning for generalizable face anti-spoofing","venue":null,"work_id":"24d5fe2c-18ca-4a67-aa3a-7ad7581020a6","year":2022},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":77,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.709461Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:83f004f595e5200b9e8078637c32c93ee9d9d6d3b8d04cbbe2af95786d97c705","observation_id":"81569d8a-f6b4-4533-928f-423b76e48d62","resolution":{"observed_at":"2026-08-12T14:14:39.238631Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:39.203502Z","title":"Generative do- main adaptation for face anti-spoofing","venue":null,"work_id":"f4e517d1-a6ed-46c9-a822-7465013ace9d","year":2022},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":78,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.714825Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:d054986cdadfd9e8560353fb51abb237d4d2d1110620eb4dbbe19f247d76d845","observation_id":"77822af6-ef75-4958-93bd-4f36a930d7bd","resolution":{"observed_at":"2026-08-12T14:14:39.209381Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:39.167079Z","title":"Instance-aware domain generalization for face anti-spoofing","venue":null,"work_id":"01a52e02-c161-4d91-a127-08c38a1b530d","year":2023},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":79,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.722417Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:ebacbbf89663b5b1c3fb3490d8d2cab07761aab76512f7190abf544c4a8aa755","observation_id":"6e753dfc-667c-4f3d-b860-a2eea9a90dc0","resolution":{"observed_at":"2026-08-12T14:14:39.175531Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:39.126470Z","title":"Test-time domain gen- eralization for face anti-spoofing","venue":null,"work_id":"105116ea-48cf-44fe-805b-632d4d7cf015","year":2024},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":80,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.728333Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:427b48a1b52ca89023bd235d0b3384afd7492ee49557ca449277f7f5382932e8","observation_id":"8eaa26fb-2715-4ffe-8fab-87295a20bc73","resolution":{"observed_at":"2026-08-12T14:14:39.137293Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:39.088165Z","title":"Advclip: Downstream-agnostic adversarial examples in multimodal contrastive learning","venue":null,"work_id":"0bb56838-4102-4e71-a6e0-f3eac1bf16d5","year":2023},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":81,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.738519Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:abdcba8b8d79053dbee8993cedce4cc6b3060d7da107b60e31316ffeae69067f","observation_id":"764b977a-122a-4391-b247-f8531e1ef361","resolution":{"observed_at":"2026-08-12T14:14:39.102630Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:39.055207Z","title":"Boosting adversarial transferability via gradi- ent relevance attack","venue":null,"work_id":"619a41af-b7e0-4663-9e1f-e8e8c4007669","year":null},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":82,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.746162Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:761742a63c0de69e8c656f92649406bee94ad57768a8483e57ce4d820ac4f807","observation_id":"7970d548-ceab-414b-992a-f0af826cde91","resolution":{"observed_at":"2026-08-12T14:14:39.062860Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:38.973533Z","title":"The supplementary includes the following sec- tions: • Section 7.1","venue":null,"work_id":"0ec02041-7273-464c-b83e-91e3087cf536","year":null},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":84,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.775223Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:789fbf944fc8f343118867d70cc97149b7582f8b06ca1cd5a32fd4fe102afe08","observation_id":"bffb984b-f0d6-46ea-9879-9890a1f8f760","resolution":{"observed_at":"2026-08-12T14:14:38.980599Z","resolver_source":"raw_fallback","status":"malformed_identifier"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-12T14:14:38.999635Z","title":null,"venue":null,"work_id":"be23986a-2d4d-4bb8-8b5c-c5ad41cc31ca","year":null},"citing_paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation","version":3},"reference_index":2023,"source":"pdf_text","source_observed_at":"2026-08-12T14:14:38.759019Z"},"links":{"citing_paper":"/paper/2411.15555"},"observation_digest":"sha256:06fca084ab72ae159e736cbdf559dc2539a36a0dedce3df49f5af0fe1bd61a79","observation_id":"07c2b73b-1ef1-4c96-8f4e-d792b9ad7806","resolution":{"observed_at":"2026-08-12T14:14:39.032417Z","resolver_source":"raw_fallback","status":"unresolved"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}}],"paper":{"arxiv_id":"2411.15555","last_updated":"2025-03-29T07:19:50Z","latest_version":3,"primary_category":"cs.CV","snapshot_observed_at":"2026-08-12T14:07:42.806304Z","submitted_at":"2024-11-23T13:22:37Z","title":"Improving the Transferability of Adversarial Attacks on Face Recognition with Diverse Parameters Augmentation"},"reference_resolution":{"displayed":84,"state_counts":{"malformed_identifier":1,"metadata_mismatch":0,"parse_uncertain":0,"unresolved":8,"verified_exact":2,"verified_fuzzy":73},"total_outbound_references":84},"refusal":"A citation records a reference. It does not transfer a finding from one paper to another.","schema":"pith.paper-citation-record.v1","standing_sources":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"thesis":"As of 12 August 2026, this Paper Citation Record lists 84 of 84 outbound references and 0 inbound Pith citation observations for arXiv:2411.15555."}