ethz-spylab / diffusion_denoised_smoothing
Certified robustness "for free" using off-the-shelf diffusion models and classifiers
☆36Updated last year
Related projects ⓘ
Alternatives and complementary repositories for diffusion_denoised_smoothing
- Code for the paper "Better Diffusion Models Further Improve Adversarial Training" (ICML 2023)☆125Updated last year
- [NeurIPS 2023] Code for the paper "Revisiting Adversarial Training for ImageNet: Architectures, Training and Generalization across Threa…☆38Updated 10 months ago
- PyTorch implementation of BPDA+EOT attack to evaluate adversarial defense with an EBM☆23Updated 4 years ago
- ☆47Updated last year
- Unofficial implementation of the DeepMind papers "Uncovering the Limits of Adversarial Training against Norm-Bounded Adversarial Examples…☆92Updated 2 years ago
- ☆48Updated 3 years ago
- Code and data for the ICLR 2021 paper "Perceptual Adversarial Robustness: Defense Against Unseen Threat Models".☆54Updated 2 years ago
- Implementation of "Adversarial purification with Score-based generative models", ICML 2021☆28Updated 3 years ago
- ☆53Updated last year
- Code for the paper "A Light Recipe to Train Robust Vision Transformers" [SaTML 2023]☆52Updated last year
- [ICML 2023] Are Diffusion Models Vulnerable to Membership Inference Attacks?☆31Updated 2 months ago
- the paper "Geometry-aware Instance-reweighted Adversarial Training" ICLR 2021 oral☆57Updated 3 years ago
- A Self-Consistent Robust Error (ICML 2022)☆67Updated last year
- ☆32Updated 11 months ago
- [ICLR 2022 official code] Robust Learning Meets Generative Models: Can Proxy Distributions Improve Adversarial Robustness?☆26Updated 2 years ago
- ☆60Updated 9 months ago
- Code for the paper "On the Adversarial Robustness of Visual Transformers"☆54Updated 3 years ago
- ☆16Updated last year
- Code for the paper "Autoregressive Perturbations for Data Poisoning" (NeurIPS 2022)☆18Updated 2 months ago
- [NeurIPS'2023] Official Code Repo:Diffusion-Based Adversarial Sample Generation for Improved Stealthiness and Controllability☆87Updated last year
- ☆13Updated 4 months ago
- [ICLR 2021] "Robust Overfitting may be mitigated by properly learned smoothening" by Tianlong Chen*, Zhenyu Zhang*, Sijia Liu, Shiyu Chan…☆46Updated 2 years ago
- [CVPR 2024] This repository includes the official implementation our paper "Revisiting Adversarial Training at Scale"☆17Updated 7 months ago
- ☆22Updated 3 years ago
- Official repo to reproduce the paper "How to Backdoor Diffusion Models?" published at CVPR 2023☆82Updated 2 months ago
- Implementation of Wasserstein adversarial attacks.☆22Updated 3 years ago
- Pytorch implementation of Adversarially Robust Distillation (ARD)☆59Updated 5 years ago
- On the effectiveness of adversarial training against common corruptions [UAI 2022]☆30Updated 2 years ago
- Universal Adversarial Perturbations (UAPs) for PyTorch☆46Updated 3 years ago
- ICCV 2021, We find most existing triggers of backdoor attacks in deep learning contain severe artifacts in the frequency domain. This Rep…☆41Updated 2 years ago