AI-secure / VeriGauge
A united toolbox for running major robustness verification approaches for DNNs. [S&P 2023]
☆88Updated last year
Related projects ⓘ
Alternatives and complementary repositories for VeriGauge
- This repo keeps track of popular provable training and verification approaches towards robust neural networks, including leaderboards on …☆99Updated 2 years ago
- Certified defense to adversarial examples using CROWN and IBP. Also includes GPU implementation of CROWN verification algorithm (in PyTor…☆93Updated 3 years ago
- Code for "On Adaptive Attacks to Adversarial Example Defenses"☆85Updated 3 years ago
- Library for training globally-robust neural networks.☆28Updated last year
- ☆62Updated 4 years ago
- Repository for Certified Defenses for Adversarial Patch ICLR-2020☆32Updated 4 years ago
- CROWN: A Neural Network Verification Framework for Networks with General Activation Functions☆38Updated 5 years ago
- [NeurIPS 2021] Fast Certified Robust Training with Short Warmup☆23Updated last year
- Keeps track of popular provable training and verification approaches towards robust neural networks, including leaderboards on popular da…☆17Updated 5 months ago
- ☆76Updated 3 years ago
- ☆11Updated 2 years ago
- Witches' Brew: Industrial Scale Data Poisoning via Gradient Matching☆94Updated 3 months ago
- β-CROWN: Efficient Bound Propagation with Per-neuron Split Constraints for Neural Network Verification☆30Updated 3 years ago
- Attacking a dog vs fish classification that uses transfer learning inceptionV3☆68Updated 6 years ago
- Code for paper "PatchGuard: A Provably Robust Defense against Adversarial Patches via Small Receptive Fields and Masking"☆64Updated 2 years ago
- Code of On L-p Robustness of Decision Stumps and Trees, ICML 2020☆10Updated 4 years ago
- [CCS 2021] TSS: Transformation-specific smoothing for robustness certification☆21Updated last year
- The official repo for GCP-CROWN paper☆12Updated 2 years ago
- Code for the paper "(De)Randomized Smoothing for Certifiable Defense against Patch Attacks" by Alexander Levine and Soheil Feizi.☆17Updated 2 years ago
- A unified benchmark problem for data poisoning attacks☆151Updated last year
- Code release for DeepJudge (S&P'22)☆51Updated last year
- The code is for our NeurIPS 2019 paper: https://arxiv.org/abs/1910.04749☆31Updated 4 years ago
- Codes for reproducing the black-box adversarial attacks in “ZOO: Zeroth Order Optimization based Black-box Attacks to Deep Neural Network…☆55Updated 5 years ago
- ☆23Updated 3 years ago
- ☆63Updated 5 years ago
- Fourth edition of VNN COMP (2023)☆16Updated last year
- ☆32Updated 2 months ago
- Convex Layerwise Adversarial Training (COLT)☆29Updated 3 years ago
- Official Implementation of ICLR 2022 paper, ``Adversarial Unlearning of Backdoors via Implicit Hypergradient''☆50Updated 2 years ago
- Code and data for the ICLR 2021 paper "Perceptual Adversarial Robustness: Defense Against Unseen Threat Models".☆54Updated 2 years ago