Prediction Poisoning: Towards Defenses Against DNN Model Stealing Attacks. In 8th International Conference on Learning Representations, ICLR
Original
Tribhuvanesh Orekondy, Bernt Schiele, and Mario Fritz. 2020 · 1906
Earlier work this paper cites.
Persistent and Unforgeable Watermarks for Deep Neural Networks
Original
Huiying Li, Emily Willson, Haitao Zheng, and Ben Y. Zhao · 1910
Earlier work this paper cites.
Statistical tables for biological, agricultural and medical research
Ronald Aylmer Fisher, Frank Yates, et al · 1949
Earlier work this paper cites.
Dropout: a simple way to prevent neural networks from overfitting
Nitish Srivastava, Geoffrey Hinton, Alex Krizhevsky, Ilya Sutskever, and Ruslan Salakhutdinov. 2014 · 1958
Earlier work this paper cites.
Silhouettes: a graphical aid to the interpretation and validation of cluster analysis
Peter J Rousseeuw. 1987 · 1987
Earlier work this paper cites.
A simple weight decay can improve generalization. In Advances in neural information processing systems
Anders Krogh and John A Hertz. 1992 · 1992
Earlier work this paper cites.
Information hiding-a survey
Fabien AP Petitcolas, Ross J Anderson, and Markus G Kuhn. 1999 · 1999
Earlier work this paper cites.
Pattern recognition and machine learning
Christopher M Bishop. 2006 · 2006
Earlier work this paper cites.
Caltech-256 Object Category Dataset
Gregory Scott Griffin, Alex Holub, and Pietro Perona. 2007 · 2007
Earlier work this paper cites.
Imagenet: A large-scale hierarchical image database. In In CVPR
Jia Deng, Wei Dong, Richard Socher, Li jia Li, Kai Li, and Li Fei-fei. 2009 · 2009
Earlier work this paper cites.
Learning multiple layers of features from tiny images
Alex Krizhevsky. 2009 · 2009
Earlier work this paper cites.
Sybil-resilient Online Content Voting. In Proceedings of the 6th USENIX Symposium on Networked Systems Design and Implementation
Nguyen Tran, Bonan Min, Jinyang Li, and Lakshminarayanan Subramanian. 2009 · 2009
Earlier work this paper cites.
MNIST handwritten digit database
Yann LeCun, Corinna Cortes, and CJ Burges. 2010 · 2010
Earlier work this paper cites.
The German traffic sign recognition benchmark: a multi-class classification competition. In IEEE International Joint Conference on Neural Networks
Johannes Stallkamp, Marc Schlipsing, Jan Salmen, and Christian Igel. 2011 · 2011
Earlier work this paper cites.
Poisoning attacks against support vector machines. In International Conference on Machine Learning
Battista Biggio, Blaine Nelson, and Pavel Laskov. 2012 · 2012
Earlier work this paper cites.
You Are How You Click: Clickstream Analysis for Sybil Detection. In Presented as part of the 22nd USENIX Security Symposium (USENIX Security 13)
Gang Wang, Tristan Konolige, Christo Wilson, Xiao Wang, Haitao Zheng, and Ben Y. Zhao. 2013 · 2013
Earlier work this paper cites.
The Untapped Potential of Trusted Execution Environments on Mobile Devices
Jan-Erik Ekberg, Kari Kostiainen, and N. Asokan. 2014 · 2014
Earlier work this paper cites.
Explaining and harnessing adversarial examples
Original
Ian J Goodfellow, Jonathon Shlens, and Christian Szegedy. 2014 · 2014
Earlier work this paper cites.