Fetching the paper…
Reading the bibliography…
Fast adversarial training (FAT) is an efficient method to improve robustness.
On the momentum term in gradient descent learning algorithms
Ning Qian · 1999
Earlier work this paper cites.
Imagenet: A large-scale hierarchical image database
Jia Deng, Wei Dong, Richard Socher, Li-Jia Li, Kai Li, and Li Fei-Fei · 2009
Earlier work this paper cites.
Learning multiple layers of features from tiny images
Alex Krizhevsky, Geoffrey Hinton, et al · 2009
Earlier work this paper cites.
Intriguing properties of neural networks
Christian Szegedy, Wojciech Zaremba, Ilya Sutskever, Joan Bruna, Dumitru Erhan, Ian Goodfellow, and Rob Fergus · 2013
Earlier work this paper cites.
Explaining and harnessing adversarial examples
Ian J Goodfellow, Jonathon Shlens, and Christian Szegedy · 2014
Earlier work this paper cites.
Very deep convolutional networks for large-scale image recognition
Karen Simonyan and Andrew Zisserman · 2014
Earlier work this paper cites.
Deep residual learning for image recognition
Kaiming He, Xiangyu Zhang, Shaoqing Ren, and Jian Sun · 2016
Earlier work this paper cites.
Identity mappings in deep residual networks
Kaiming He, Xiangyu Zhang, Shaoqing Ren, and Jian Sun · 2016
Earlier work this paper cites.
Deepfool: a simple and accurate method to fool deep neural networks
Seyed-Mohsen Moosavi-Dezfooli, Alhussein Fawzi, and Pascal Frossard · 2016
Earlier work this paper cites.
The limitations of deep learning in adversarial settings
Nicolas Papernot, Patrick McDaniel, Somesh Jha, Matt Fredrikson, Z Berkay Celik, and Ananthram Swami · 2016
Earlier work this paper cites.
Sergey Zagoruyko and Nikos Komodakis · 2016
Earlier work this paper cites.
Towards evaluating the robustness of neural networks
Nicholas Carlini and David Wagner · 2017
Earlier work this paper cites.
Towards deep learning models resistant to adversarial attacks
Aleksander Madry, Aleksandar Makelov, Ludwig Schmidt, Dimitris Tsipras, and Adrian Vladu · 2017
Earlier work this paper cites.
Cyclical learning rates for training neural networks
Leslie N Smith · 2017
Earlier work this paper cites.
Pixeldefend: Leveraging generative models to understand and defend against adversarial examples
Yang Song, Taesup Kim, Sebastian Nowozin, Stefano Ermon, and Nate Kushman · 2017
Earlier work this paper cites.
Ensemble adversarial training: Attacks and defenses
Florian Tramèr, Alexey Kurakin, Nicolas Papernot, Ian Goodfellow, Dan Boneh, and Patrick McDaniel · 2017
Earlier work this paper cites.
Averaging weights leads to wider optima and better generalization
Pavel Izmailov, Dmitrii Podoprikhin, Timur Garipov, Dmitry Vetrov, and Andrew Gordon Wilson · 2018
Earlier work this paper cites.
Harini Kannan, Alexey Kurakin, and Ian Goodfellow · 2018
Earlier work this paper cites.
Comdefend: An efficient image compression model to defend adversarial examples
Xiaojun Jia, Xingxing Wei, Xiaochun Cao, and Hassan Foroosh · 2019
Earlier work this paper cites.
Adversarial training for free!
Ali Shafahi, Mahyar Najibi, Mohammad Amin Ghiasi, Zheng Xu, John Dickerson, Christoph Studer, Larry S Davis, Gavin Taylor, and Tom Goldstein · 2019
Earlier work this paper cites.
Improving adversarial robustness requires revisiting misclassified examples
Yisen Wang, Difan Zou, Jinfeng Yi, James Bailey, Xingjun Ma, and Quanquan Gu · 2019
Cited alongside, same era.
Understanding adversarial robustness through loss landscape geometries
Joyce Xu, Dian Ang Yap, and Vinay Uday Prabhu · 2019
Cited alongside, same era.
Square attack: a query-efficient black-box adversarial attack via random search
Maksym Andriushchenko, Francesco Croce, Nicolas Flammarion, and Matthias Hein · 2020
Cited alongside, same era.
Understanding and improving fast adversarial training
Maksym Andriushchenko and Nicolas Flammarion · 2020
Cited alongside, same era.
Improving query efficiency of black-box adversarial attack
Yang Bai, Yuyuan Zeng, Yong Jiang, Yisen Wang, Shu-Tao Xia, and Weiwei Guo · 2020
Cited alongside, same era.
Robust overfitting may be mitigated by properly learned smoothening
Clustering effect of (linearized) adversarial robust models
Yang Bai, Xin Yan, Yong Jiang, Shu-Tao Xia, and Yisen Wang · 2021
Later among the works it cites.
Improving adversarial robustness via channel-wise activation suppressing
Yang Bai, Yuyuan Zeng, Yong Jiang, Shu-Tao Xia, Xingjun Ma, and Yisen Wang · 2021
Later among the works it cites.
Query-efficient black-box adversarial attacks guided by a transfer-based prior
Yinpeng Dong, Shuyu Cheng, Tianyu Pang, Hang Su, and Jun Zhu · 2021
Later among the works it cites.
Adversarial training with stochastic weight average
Joong-Won Hwang, Youngwan Lee, Sungchan Oh, and Yuseok Bae · 2021
Later among the works it cites.
Understanding catastrophic overfitting in single-step adversarial training
Hoki Kim, Woojin Lee, and Jaewook Lee · 2021
Later among the works it cites.
alphaXiv searches the wider corpus for related work and actual follow-ups.
alphaXiv is searching for related work…
Tianlong Chen, Zhenyu Zhang, Sijia Liu, Shiyu Chang, and Zhangyang Wang · 2020
Cited alongside, same era.
Minimally distorted adversarial examples with a fast adaptive boundary attack
Francesco Croce and Matthias Hein · 2020
Cited alongside, same era.
Reliable evaluation of adversarial robustness with an ensemble of diverse parameter-free attacks
Francesco Croce and Matthias Hein · 2020
Cited alongside, same era.
Uncovering the limits of adversarial training against norm-bounded adversarial examples
Sven Gowal, Chongli Qin, Jonathan Uesato, Timothy Mann, and Pushmeet Kohli · 2020
Cited alongside, same era.
Adv-watermark: A novel watermark perturbation for adversarial examples
Xiaojun Jia, Xingxing Wei, Xiaochun Cao, and Xiaoguang Han · 2020
Cited alongside, same era.
Adversarial vertex mixup: Toward better adversarially robust generalization
Saehyung Lee, Hyungyu Lee, and Sungroh Yoon · 2020
Cited alongside, same era.
Learning transferable adversarial examples via ghost networks
Yingwei Li, Song Bai, Yuyin Zhou, Cihang Xie, Zhishuai Zhang, and Alan Yuille · 2020
Cited alongside, same era.
Fixing data augmentation to improve adversarial robustness
Sylvestre-Alvise Rebuffi, Sven Gowal, Dan A Calian, Florian Stimberg, Olivia Wiles, and Timothy Mann · 2021
Later among the works it cites.
Towards efficient and effective adversarial training
Gaurang Sriramanan, Sravanti Addepalli, Arya Baburaj, et al · 2021
Later among the works it cites.
Deep image prior based defense against adversarial examples
Tao Dai, Yan Feng, Bin Chen, Jian Lu, and Shu-Tao Xia · 2022
Later among the works it cites.
Viewfool: Evaluating the robustness of visual recognition to adversarial viewpoints
Yinpeng Dong, Shouwei Ruan, Hang Su, Caixin Kang, Xingxing Wei, and Jun Zhu · 2022
Later among the works it cites.
Prior-guided adversarial initialization for fast adversarial training
Xiaojun Jia, Yong Zhang, Xingxing Wei, Baoyuan Wu, Ke Ma, Jue Wang, and Xiaochun Cao · 2022
Later among the works it cites.
Las-at: Adversarial training with learnable attack strategy
Xiaojun Jia, Yong Zhang, Baoyuan Wu, Ke Ma, Jue Wang, and Xiaochun Cao · 2022
Later among the works it cites.
Boosting fast adversarial training with learnable adversarial initialization
Xiaojun Jia, Yong Zhang, Baoyuan Wu, Jue Wang, and Xiaochun Cao · 2022
Later among the works it cites.
Subspace adversarial training
Tao Li, Yingwen Wu, Sizhe Chen, Kun Fang, and Xiaolin Huang · 2022
Later among the works it cites.
Self-ensemble adversarial training for improved robustness
Hongjun Wang and Yisen Wang · 2022
Later among the works it cites.
Simultaneously optimizing perturbations and positions for black-box adversarial patch attacks
Xingxing Wei, Ying Guo, Jie Yu, and Bo Zhang · 2022
Later among the works it cites.
Towards efficient adversarial training on vision transformers
Boxi Wu, Jindong Gu, Zhifeng Li, Deng Cai, Xiaofei He, and Wei Liu · 2022
Later among the works it cites.
Boosting transferability of targeted adversarial examples via hierarchical generative networks
Xiao Yang, Yinpeng Dong, Tianyu Pang, Hang Su, and Jun Zhu · 2022
Later among the works it cites.
Mixpgd: Hybrid adversarial training for speech recognition systems
Aminul Huq, Weiyi Zhang, and Xiaolin Hu · 2023
Closest in time.
Understanding and combating robust overfitting via input loss landscape analysis and regularization
Lin Li and Michael Spratling · 2023
Closest in time.
Recognizing object by components with human prior knowledge enhances adversarial robustness of deep neural networks
Xiao Li, Ziqi Wang, Bo Zhang, Fuchun Sun, and Xiaolin Hu · 2023
Closest in time.