Min-max optimization without gradients: Convergence and applications to black-box evasion and poisoning attacks
Sijia Liu, Songtao Lu, Xiangyi Chen, Yao Feng, Kaidi Xu, Abdullah Al-Dujaili, Mingyi Hong, and Una-May O’Reilly · 2020
Later among the works it cites.
Reflection backdoor: A natural backdoor attack on deep neural networks
Yunfei Liu, Xingjun Ma, James Bailey, and Feng Lu · 2020
Later among the works it cites.
Input-aware dynamic backdoor attack
Tuan Anh Nguyen and Anh Tran · 2020
Later among the works it cites.
Learning visual representations with caption annotations
Mert Bulent Sariyildiz, Julien Perez, and Diane Larlus · 2020
Later among the works it cites.
Distributions of quadratic form of a normal random variable
StubbornAtom · 2020
Later among the works it cites.
Virtex: Learning visual representations from textual annotations
Karan Desai and Justin Johnson · 2021
Later among the works it cites.
Adversarial examples make strong poisons
Original
Liam Fowl, Micah Goldblum, Ping-yeh Chiang, Jonas Geiping, Wojtek Czaja, and Tom Goldstein · 2021
Later among the works it cites.
Robust unlearnable examples: Protecting data privacy against adversarial learning
Shaopeng Fu, Fengxiang He, Yang Liu, Li Shen, and Dacheng Tao · 2021
Later among the works it cites.
Unlearnable examples: Making personal data unexploitable
Original
Hanxun Huang, Xingjun Ma, Sarah Monazam Erfani, James Bailey, and Yisen Wang · 2021
Later among the works it cites.
Neural attention distillation: Erasing backdoor triggers from deep neural networks
Original
Yige Li, Xixiang Lyu, Nodens Koren, Lingjuan Lyu, Bo Li, and Xingjun Ma · 2021
Later among the works it cites.
The curious case of adversarially robust models: More data can help, double descend, or hurt generalization
Yifei Min, Lin Chen, and Amin Karbasi · 2021
Later among the works it cites.
Learning transferable visual models from natural language supervision
Alec Radford, Jong Wook Kim, Chris Hallacy, Aditya Ramesh, Gabriel Goh, Sandhini Agarwal, Girish Sastry, Amanda Askell, Pamela Mishkin, Jack Clark, et al · 2021
Later among the works it cites.
Efficientnetv2: Smaller models and faster training
M. Tan and Q. Le · 2021
Later among the works it cites.
Better safe than sorry: Preventing delusive adversaries with adversarial training
Lue Tao, Lei Feng, Jinfeng Yi, Sheng-Jun Huang, and Songcan Chen · 2021
Later among the works it cites.
Training data-efficient image transformers & distillation through attention
H. Touvron, M. Cord, M. Douze, F. Massa, A. Sablayrolles, and H. Jegou · 2021
Later among the works it cites.
On the convergence and robustness of adversarial training
Original
Yisen Wang, Xingjun Ma, James Bailey, Jinfeng Yi, Bowen Zhou, and Quanquan Gu · 2021
Later among the works it cites.
Neural tangent generalization attacks
Chia-Hung Yuan and Shan-Hung Wu · 2021
Later among the works it cites.
Improved certified defenses against data poisoning with (deterministic) finite aggregation
Original
Wenxiao Wang, Alexander Levine, and Soheil Feizi · 2022
Later among the works it cites.
Availability attacks create shortcuts
Da Yu, Huishuai Zhang, Wei Chen, Jian Yin, and Tie-Yan Liu · 2022
Later among the works it cites.