KaidiXu / ZO-minmax
Zeroth-order Min-max Optimization
☆11Updated 4 years ago
Related projects: ⓘ
- Benchmark for LP-relaxed robustness verification of ReLU-networks☆40Updated 5 years ago
- Certifying Some Distributional Robustness with Principled Adversarial Training (https://arxiv.org/abs/1710.10571)☆45Updated 6 years ago
- Distributional and Outlier Robust Optimization (ICML 2021)☆27Updated 3 years ago
- Official implementation for Training Certifiably Robust Neural Networks with Efficient Local Lipschitz Bounds (NeurIPS, 2021).☆22Updated 2 years ago
- Public code for a paper "Lipschitz-Margin Training: Scalable Certification of Perturbation Invariance for Deep Neural Networks."☆34Updated 5 years ago
- Investigating the robustness of state-of-the-art CNN architectures to simple spatial transformations.☆49Updated 5 years ago
- Formal Guarantees on the Robustness of a Classifier against Adversarial Manipulation [NeurIPS 2017]☆18Updated 6 years ago
- Provable Robustness of ReLU networks via Maximization of Linear Regions [AISTATS 2019]☆31Updated 4 years ago
- ☆85Updated last month
- Logit Pairing Methods Can Fool Gradient-Based Attacks [NeurIPS 2018 Workshop on Security in Machine Learning]☆18Updated 5 years ago
- ☆19Updated 5 years ago
- Code for the paper "MMA Training: Direct Input Space Margin Maximization through Adversarial Training"☆34Updated 4 years ago
- [ICML 2019] ME-Net: Towards Effective Adversarial Robustness with Matrix Estimation☆52Updated 2 weeks ago
- Codebase for "Exploring the Landscape of Spatial Robustness" (ICML'19, https://arxiv.org/abs/1712.02779).☆26Updated 5 years ago
- Code for Stability Training with Noise (STN)☆21Updated 3 years ago
- [JMLR] TRADES + random smoothing for certifiable robustness☆14Updated 4 years ago
- ☆13Updated 5 years ago
- Code for the paper "Adversarial Training and Robustness for Multiple Perturbations", NeurIPS 2019☆47Updated last year
- MACER: MAximizing CErtified Radius (ICLR 2020)☆27Updated 4 years ago
- ☆13Updated 6 years ago
- Adv-BNN: Improved Adversarial Defense through Robust Bayesian Neural Network☆61Updated 5 years ago
- An (imperfect) implementation of wide resnets and Parseval regularization☆8Updated 4 years ago
- Scaleable input gradient regularization☆22Updated 5 years ago
- Code for the Paper 'On the Connection Between Adversarial Robustness and Saliency Map Interpretability' by C. Etmann, S. Lunz, P. Maass, …☆15Updated 5 years ago
- Code for Global Convergence of Block Coordinate Descent in Deep Learning (ICML 2019)☆34Updated 5 years ago
- Minimax Optimization, Stackelberg Games, Generative Adversarial Networks☆18Updated 4 years ago
- Official implementation for paper: A New Defense Against Adversarial Images: Turning a Weakness into a Strength☆37Updated 4 years ago
- [ICML'20] Multi Steepest Descent (MSD) for robustness against the union of multiple perturbation models.☆25Updated last month
- ZOSVRG-BlackBox-Adv☆11Updated 5 years ago
- Official TensorFlow implementation of "Parsimonious Black-Box Adversarial Attacks via Efficient Combinatorial Optimization" (ICML 2019)☆37Updated 3 years ago