Fetching the paper…
Reading the bibliography…
Randomized smoothing has recently emerged as an effective tool that enables certification of deep neural network classifiers at scale.
An ellipsoidal calculus based on propagation and fusion
Lluís Ros, Assumpta Sabater, and Federico Thomas · 2002
Earlier work this paper cites.
A Course in the Geometry of n Dimensions
Maurice G Kendall · 2004
Earlier work this paper cites.
Imagenet: A large-scale hierarchical image database
Jia Deng, Wei Dong, Richard Socher, Li-Jia Li, Kai Li, and Li Fei-Fei · 2009
Earlier work this paper cites.
Learning multiple layers of features from tiny images
Alex Krizhevsky · 2009
Earlier work this paper cites.
A robust computational test for overlap of two arbitrary-dimensional ellipsoids in fault-detection of kalman filters
Igor Gilitschenski and Uwe D Hanebeck · 2012
Earlier work this paper cites.
Intriguing properties of neural networks
Christian Szegedy, Wojciech Zaremba, Ilya Sutskever, Joan Bruna, Dumitru Erhan, Ian Goodfellow, and Rob Fergus · 2014
Earlier work this paper cites.
Explaining and harnessing adversarial examples
Ian Goodfellow, Jonathon Shlens, and Christian Szegedy · 2015
Earlier work this paper cites.
Deep residual learning for image recognition
Kaiming He, Xiangyu Zhang, Shaoqing Ren, and Jian Sun · 2016
Earlier work this paper cites.
Safety verification of deep neural networks
Xiaowei Huang, Marta Kwiatkowska, Sen Wang, and Min Wu · 2017
Earlier work this paper cites.
The space of transferable adversarial examples
Florian Tramèr, Nicolas Papernot, Ian Goodfellow, Dan Boneh, and Patrick McDaniel · 2017
Earlier work this paper cites.
A unified view of piecewise linear neural network verification
Rudy Bunel, Ilker Turkaslan, Philip HS Torr, Pushmeet Kohli, and M Pawan Kumar · 2018
Earlier work this paper cites.
Ensemble adversarial training: Attacks and defenses
Florian Tramèr, Alexey Kurakin, Nicolas Papernot, Ian Goodfellow, Dan Boneh, and Patrick McDaniel · 2018
Earlier work this paper cites.
Towards fast computation of certified robustness for relu networks
Tsui-Wei Weng, Huan Zhang, Hongge Chen, Zhao Song, Cho-Jui Hsieh, Duane Boning, Inderjit S Dhillon, and Luca Daniel · 2018
Cited alongside, same era.
Certified adversarial robustness via randomized smoothing
Jeremy M Cohen, Elan Rosenfeld, and J Zico Kolter · 2019
Cited alongside, same era.
Scalable verified training for provably robust image classification
Sven Gowal, Krishnamurthy Dj Dvijotham, Robert Stanforth, Rudy Bunel, Chongli Qin, Jonathan Uesato, Relja Arandjelovic, Timothy Mann, and Pushmeet Kohli · 2019
Cited alongside, same era.
Characterizing the decision boundary of deep neural networks
Hamid Karimi, Tyler Derr, and Jiliang Tang · 2019
Cited alongside, same era.
Certified robustness to adversarial examples with differential privacy
Mathias Lecuyer, Vaggelis Atlidakis, Roxana Geambasu, Daniel Hsu, and Suman Jana · 2019
Cited alongside, same era.
A framework for robustness certification of smoothed classifiers using f-divergences
Krishnamurthy Dj Dvijotham, Jamie Hayes, Borja Balle, Zico Kolter, Chongli Qin, András György, Kai Xiao, Sven Gowal, and Pushmeet Kohli · 2020
Later among the works it cites.
Certified defense to image transformations via randomized smoothing
Marc Fischer, Maximilian Baader, and Martin Vechev · 2020
Later among the works it cites.
Consistency regularization for certified robustness of smoothed classifiers
Jongheon Jeong and Jinwoo Shin · 2020
Later among the works it cites.
Exactly computing the local lipschitz constant of relu networks
Matt Jordan and Alexandros G Dimakis · 2020
Later among the works it cites.
Curse of dimensionality on randomized smoothing for certifiable robustness
Aounon Kumar, Alexander Levine, Tom Goldstein, and Soheil Feizi · 2020
Later among the works it cites.
Robustness certificates for sparse adversarial attacks by randomized ablation
alphaXiv searches the wider corpus for related work and actual follow-ups.
alphaXiv is searching for related work…
Guang-He Lee, Yang Yuan, Shiyu Chang, and Tommi S Jaakkola · 2019
Cited alongside, same era.
Certified adversarial robustness with additive noise
Bai Li, Changyou Chen, Wenlin Wang, and Lawrence Carin · 2019
Cited alongside, same era.
Robustness via curvature regularization, and vice versa
Seyed-Mohsen Moosavi-Dezfooli, Alhussein Fawzi, Jonathan Uesato, and Pascal Frossard · 2019
Cited alongside, same era.
Pytorch: An imperative style, high-performance deep learning library
Adam Paszke, Sam Gross, Francisco Massa, Adam Lerer, James Bradbury, Gregory Chanan, Trevor Killeen, Zeming Lin, Natalia Gimelshein, Luca Antiga, Alban Desmaison, Andreas Kopf, Edward Yang, Zachary DeVito, Martin Raison, Alykhan Tejani, Sasank Chilamkurthy, Benoit Steiner, Lu Fang, Junjie Bai, and Soumith Chintala · 2019
Cited alongside, same era.
Evaluating robustness of neural networks with mixed integer programming
Vincent Tjeng, Kai Xiao, and Russ Tedrake · 2019
Cited alongside, same era.
Macer: Attack-free and scalable robust training via maximizing certified radius
Runtian Zhai, Chen Dan, Di He, Huan Zhang, Boqing Gong, Pradeep Ravikumar, Cho-Jui Hsieh, and Liwei Wang · 2019
Cited alongside, same era.
Filling the soap bubbles: Efficient black-box adversarial certification with non-gaussian smoothing
Dinghuai Zhang, Mao Ye, Chengyue Gong, Zhanxing Zhu, and Qiang Liu · 2019
Cited alongside, same era.
Alexander Levine and Soheil Feizi · 2020
Later among the works it cites.
Provable robust learning based on transformation-specific smoothing
Linyi Li, Maurice Weber, Xiaojun Xu, Luka Rimanic, Tao Xie, Ce Zhang, and Bo Li · 2020
Later among the works it cites.
Higher-order certification for randomized smoothing
Jeet Mohapatra, Ching-Yun Ko, Tsui-Wei Weng, Pin-Yu Chen, Sijia Liu, and Luca Daniel · 2020
Later among the works it cites.
Randomized smoothing of all shapes and sizes
Greg Yang, Tony Duan, J Edward Hu, Hadi Salman, Ilya Razenshteyn, and Jerry Li · 2020
Later among the works it cites.
Improved, deterministic smoothing for l1 certified robustness
Alexander Levine and Soheil Feizi · 2021
Closest in time.
Data dependent randomized smoothing
Motasem Alfarra, Adel Bibi, Philip H. S. Torr, and Bernard Ghanem · 2022
Closest in time.