
Khan, A., Vibhute, A. D., Mali, S., and Patil, C. (2022). A
systematic review on hyperspectral imaging technol-
ogy with a machine and deep learning methodology
for agricultural applications. Ecological Informatics,
69:101678.
Kim, Y. (2014). Convolutional neural networks for sentence
classification. In Proceedings of the 2014 Conference
on Empirical Methods in Natural Language Processing
(EMNLP). Association for Computational Linguistics.
Kingma, D. P. and Ba, J. (2014). Adam: A
method for stochastic optimization. arXiv preprint
arXiv:1412.6980.
Kurakin, A., Goodfellow, I. J., and Bengio, S. (2017). Adver-
sarial examples in the physical world. In 5th Interna-
tional Conference on Learning Representations, ICLR
2017, Toulon, France, April 24-26, 2017, Workshop
Track Proceedings. OpenReview.net.
Linardatos, P., Papastefanopoulos, V., and Kotsiantis, S.
(2021). Explainable ai: A review of machine learning
interpretability methods. Entropy, 23(1).
Liu, X., Li, Y., Wu, C., and Hsieh, C.-J. (2018). Adv-bnn:
Improved adversarial defense through robust bayesian
neural network. In International Conference on Learn-
ing Representations.
Lungu-Stan, V.-C., Cercel, D.-C., and Pop, F. (2023).
Skindistilvit: Lightweight vision transformer for skin
lesion classification. In International Conference on
Artificial Neural Networks, pages 268–280. Springer.
Madry, A., Makelov, A., Schmidt, L., Tsipras, D., and Vladu,
A. (2018). Towards deep learning models resistant to
adversarial attacks. In International Conference on
Learning Representations.
Miyato, T., Dai, A. M., and Goodfellow, I. (2016). Adver-
sarial training methods for semi-supervised text classi-
fication. arXiv preprint arXiv:1605.07725.
Musa, A., Hassan, M., Hamada, M., and Aliyu, F. (2022).
Low-power deep learning model for plant disease de-
tection for smart-hydroponics using knowledge distil-
lation techniques. Journal of Low Power Electronics
and Applications, 12(2).
N
˘
ast
˘
asescu, G.-S. and Cercel, D.-C. (2022). Conditional
wasserstein gan for energy load forecasting in large
buildings. In 2022 International Joint Conference on
Neural Networks (IJCNN), pages 1–8. IEEE.
Ramirez-Moreno, D., Schwartz, O., and Ramirez-Villegas,
J. (2013). A saliency-based bottom-up visual atten-
tion model for dynamic scenes analysis. Biological
cybernetics, 107.
Selvaraju, R. R., Cogswell, M., Das, A., Vedantam, R.,
Parikh, D., and Batra, D. (2017). Grad-cam: Visual
explanations from deep networks via gradient-based
localization. In 2017 IEEE International Conference
on Computer Vision (ICCV), pages 618–626.
Simonyan, K., Vedaldi, A., and Zisserman, A. (2014). Visu-
alising image classification models and saliency maps.
Deep Inside Convolutional Networks, 2.
Sm
˘
adu, R.-A., Dinic
˘
a, I.-r., Avram, A.-M., Cercel, D.-C.,
Pop, F., and Cercel, M.-C. (2022). Legal named entity
recognition with multi-task domain adaptation. In Pro-
ceedings of the Natural Legal Language Processing
Workshop 2022, pages 305–321.
Springenberg, J. T., Dosovitskiy, A., Brox, T., and Ried-
miller, M. A. (2015). Striving for simplicity: The all
convolutional net. In Bengio, Y. and LeCun, Y., editors,
3rd International Conference on Learning Representa-
tions, ICLR 2015, San Diego, CA, USA, May 7-9, 2015,
Workshop Track Proceedings.
Su, D., Zhang, H., Chen, H., Yi, J., Chen, P.-Y., and Gao,
Y. (2018). Is robustness the cost of accuracy? – a
comprehensive study on the robustness of 18 deep
image classification models. In Ferrari, V., Hebert, M.,
Sminchisescu, C., and Weiss, Y., editors, Computer
Vision – ECCV 2018, pages 644–661, Cham. Springer
International Publishing.
Szegedy, C., Zaremba, W., Sutskever, I., Bruna, J., Er-
han, D., Goodfellow, I. J., and Fergus, R. (2014). In-
triguing properties of neural networks. In Bengio, Y.
and LeCun, Y., editors, 2nd International Conference
on Learning Representations, ICLR 2014, Banff, AB,
Canada, April 14-16, 2014, Conference Track Proceed-
ings.
Tramèr, F., Kurakin, A., Papernot, N., Goodfellow, I. J.,
Boneh, D., and McDaniel, P. D. (2018). Ensemble
adversarial training: Attacks and defenses. In 6th In-
ternational Conference on Learning Representations,
ICLR 2018, Vancouver, BC, Canada, April 30 - May 3,
2018, Conference Track Proceedings. OpenReview.net.
Wong, E., Rice, L., and Kolter, J. Z. (2020). Fast is better
than free: Revisiting adversarial training. In 8th In-
ternational Conference on Learning Representations,
ICLR 2020, Addis Ababa, Ethiopia, April 26-30, 2020.
OpenReview.net.
You, H., Lu, Y., and Tang, H. (2023). Plant disease classifi-
cation and adversarial attack using simam-efficientnet
and gp-mi-fgsm. Sustainability, 15(2).
Zeiler, M. D. and Fergus, R. (2014). Visualizing and under-
standing convolutional networks. In Fleet, D. J., Pajdla,
T., Schiele, B., and Tuytelaars, T., editors, Computer Vi-
sion - ECCV 2014 - 13th European Conference, Zurich,
Switzerland, September 6-12, 2014, Proceedings, Part
I, volume 8689 of Lecture Notes in Computer Science,
pages 818–833. Springer.
Zhang, H., Yu, Y., Jiao, J., Xing, E. P., Ghaoui, L. E., and
Jordan, M. I. (2019). Theoretically principled trade-
off between robustness and accuracy. In Chaudhuri,
K. and Salakhutdinov, R., editors, Proceedings of the
36th International Conference on Machine Learning,
ICML 2019, 9-15 June 2019, Long Beach, California,
USA, volume 97 of Proceedings of Machine Learning
Research, pages 7472–7482. PMLR.
Zhou, B., Khosla, A., Lapedriza, À., Oliva, A., and Torralba,
A. (2015). Learning deep features for discriminative lo-
calization. 2016 IEEE Conference on Computer Vision
and Pattern Recognition (CVPR), pages 2921–2929.
Explainability-Driven Leaf Disease Classification Using Adversarial Training and Knowledge Distillation
791