Fetching the paper…
Reading the bibliography…
Adversarial examples have attracted significant attention in machine learning, but the reasons for their existence and pervasiveness remain unclear.
“The Theory of Max-Min and its Application to Weapons Allocation Problems”, 1967
John. Danskin · 1967
Earlier work this paper cites.
“Adaptive estimation of a quadratic functional by model selection”
Beatrice Laurent and Pascal Massart · 2000
Earlier work this paper cites.
“Model compression”
Cristian Buciluǎ, Rich Caruana and Alexandru Niculescu-Mizil · 2006
Earlier work this paper cites.
“Learning Multiple Layers of Features from Tiny Images”
Alex Krizhevsky · 2009
Earlier work this paper cites.
“Evasion attacks against machine learning at test time”
Battista Biggio et al · 2013
Earlier work this paper cites.
“Distilling the Knowledge in a Neural Network”
Geoffrey Hinton, Oriol Vinyals and Jeff Dean · 2014
Earlier work this paper cites.
“Intriguing properties of neural networks”
Christian Szegedy et al · 2014
Earlier work this paper cites.
“Explaining and Harnessing Adversarial Examples”
Ian Goodfellow, Jonathon Shlens and Christian Szegedy · 2015
Earlier work this paper cites.
“Understanding deep image representations by inverting them”
Aravindh Mahendran and Andrea Vedaldi · 2015
Earlier work this paper cites.
“ImageNet Large Scale Visual Recognition Challenge”
Olga Russakovsky et al · 2015
Earlier work this paper cites.
“Robustness of classifiers: from adversarial to random noise”
Alhussein Fawzi, Seyed-Mohsen Moosavi-Dezfooli and Pascal Frossard · 2016
Earlier work this paper cites.
“Deep Residual Learning for Image Recognition”
Kaiming He, Xiangyu Zhang, Shaoqing Ren and Jian Sun · 2016
Earlier work this paper cites.
“Transferability in Machine Learning: from Phenomena to Black-box Attacks using Adversarial Samples”
Nicolas Papernot, Patrick McDaniel and Ian Goodfellow · 2016
Earlier work this paper cites.
“A Boundary Tilting Perspective on the Phenomenon of Adversarial Examples”
Thomas Tanay and Lewis Griffin · 2016
Earlier work this paper cites.
“Adversarial Examples Are Not Easily Detected: Bypassing Ten Detection Methods”
Nicholas Carlini and David Wagner · 2017
Earlier work this paper cites.
“Towards evaluating the robustness of neural networks”
Nicholas Carlini and David Wagner · 2017
Earlier work this paper cites.
“Adversarial example defense: Ensembles of weak defenses are not strong”
Warren He et al · 2017
Earlier work this paper cites.
“Delving into Transferable Adversarial Examples and Black-box Attacks”
Yanpei Liu, Xinyun Chen, Chang Liu and Dawn Song · 2017
Earlier work this paper cites.
“Universal adversarial perturbations”
Seyed-Mohsen Moosavi-Dezfooli, Alhussein Fawzi, Omar Fawzi and Pascal Frossard · 2017
Earlier work this paper cites.
“Feature Visualization”
Chris Olah, Alexander Mordvintsev and Ludwig Schubert · 2017
Earlier work this paper cites.
“Practical black-box attacks against machine learning”
Nicolas Papernot et al · 2017
Earlier work this paper cites.
“SmoothGrad: removing noise by adding noise”
D. Smilkov et al · 2017
Cited alongside, same era.
“The Space of Transferable Adversarial Examples”
Florian Tramer, Nicolas Papernot, Ian Goodfellow and Patrick Dan · 2017
Cited alongside, same era.
“Obfuscated Gradients Give a False Sense of Security: Circumventing Defenses to Adversarial Examples”
Anish Athalye, Nicholas Carlini and David. Wagner · 2018
Cited alongside, same era.
“Synthesizing Robust Adversarial Examples”
Anish Athalye, Logan Engstrom, Andrew Ilyas and Kevin Kwok · 2018
Cited alongside, same era.
“Adversarial examples from computational constraints”
Sébastien Bubeck, Eric Price and Ilya Razenshteyn · 2018
Cited alongside, same era.
“Efficient Statistics, in High Dimensions, from Truncated Samples”
Constantinos Daskalakis, Themis Gouleakis, Christos Tzamos and Manolis Zampetakis · 2019
Closest in time.
“On the Sensitivity of Adversarial Robustness to Input Data Distributions”
Gavin Ding et al · 2019
Closest in time.
“A Discussion of ’Adversarial Examples Are Not Bugs, They Are Features”’ https://distill.pub/2019/advex-bugs-discussion
Logan Engstrom et al · 2019
Closest in time.
“A Rotation and a Translation Suffice: Fooling CNNs with Simple Transformations”
Logan Engstrom et al · 2019
Closest in time.
“Adversarial Examples Are a Natural Consequence of Test Error in Noise”
Nic Ford, Justin Gilmer, Nicolas Carlini and Dogus Cubuk · 2019
Closest in time.
alphaXiv searches the wider corpus for related work and actual follow-ups.
alphaXiv is searching for related work…
Alhussein Fawzi, Hamza Fawzi and Omar Fawzi · 2018
Cited alongside, same era.
“Born-Again Neural Networks”
Tommaso Furlanello et al · 2018
Cited alongside, same era.
“Adversarial spheres”
Justin Gilmer et al · 2018
Cited alongside, same era.
“With friends like these, who needs adversaries?”
Saumya Jetley, Nicholas Lord and Philip Torr · 2018
Cited alongside, same era.
“Towards deep learning models resistant to adversarial attacks”
Aleksander Madry et al · 2018
Cited alongside, same era.
“The curse of concentration in robust learning: Evasion and poisoning attacks from concentration of measure”
Saeed Mahloujifar, Dimitrios Diochnos and Mohammad Mahmoody · 2018
Cited alongside, same era.
“Certified defenses against adversarial examples”
Aditi Raghunathan, Jacob Steinhardt and Percy Liang · 2018
Cited alongside, same era.
“ImageNet-trained CNNs are biased towards texture; increasing shape bias improves accuracy and robustness.”
Robert Geirhos et al · 2019
Closest in time.
“A Discussion of ’Adversarial Examples Are Not Bugs, They Are Features’: Robust Feature Leakage” https://distill.pub/2019/advex-bugs-discussion/response-2
Gabriel Goh · 2019
Closest in time.
“A Discussion of ’Adversarial Examples Are Not Bugs, They Are Features’: Two Examples of Useful, Non-Robust Features” https://distill.pub/2019/advex-bugs-discussion/response-3
Gabriel Goh · 2019
Closest in time.
“Benchmarking Neural Network Robustness to Common Corruptions and Surface Variations”
Dan Hendrycks and Thomas. Dietterich · 2019
Closest in time.
“Bridging Adversarial Robustness and Gradient Interpretability”
Beomsu Kim, Junghoon Seo and Taegyun Jeon · 2019
Closest in time.
“Certified robustness to adversarial examples with differential privacy”
Mathias Lecuyer et al · 2019
Closest in time.
“A Discussion of ’Adversarial Examples Are Not Bugs, They Are Features’: Adversarial Examples are Just Bugs, Too” https://distill.pub/2019/advex-bugs-discussion/response-5
Preetum Nakkiran · 2019
Closest in time.
“Adversarial robustness may be at odds with simplicity”
Preetum Nakkiran · 2019
Closest in time.
“Do CIFAR-10 Classifiers Generalize to CIFAR-10?”
Benjamin Recht, Rebecca Roelofs, Ludwig Schmidt and Vaishaal Shankar · 2019
Closest in time.
“Are adversarial examples inevitable?”
Ali Shafahi et al · 2019
Closest in time.
“A Simple Explanation for the Existence of Adversarial Examples with Small Hamming Distance”
Adi Shamir, Itay Safran, Eyal Ronen and Orr Dunkelman · 2019
Closest in time.
“Disentangling Adversarial Robustness and Generalization”
David Stutz, Matthias Hein and Bernt Schiele · 2019
Closest in time.
“Revisiting Adversarial Risk”
Arun Suggala, Adarsh Prasad, Vaishnavh Nagarajan and Pradeep Ravikumar · 2019
Closest in time.
“Robustness May Be at Odds with Accuracy”
Dimitris Tsipras et al · 2019
Closest in time.
“Training for Faster Adversarial Robustness Verification via Inducing ReLU Stability”
Kai. Xiao, Vincent Tjeng, Nur Shafiullah and Aleksander Madry · 2019
Closest in time.