ethz-spylab / diffusion_denoised_smoothing
Certified robustness "for free" using off-the-shelf diffusion models and classifiers
☆36Updated last year
Related projects ⓘ
Alternatives and complementary repositories for diffusion_denoised_smoothing
- [NeurIPS 2023] Code for the paper "Revisiting Adversarial Training for ImageNet: Architectures, Training and Generalization across Threa…☆38Updated 10 months ago
- Code for the paper "Better Diffusion Models Further Improve Adversarial Training" (ICML 2023)☆121Updated last year
- Code for the paper "A Light Recipe to Train Robust Vision Transformers" [SaTML 2023]☆52Updated last year
- PyTorch implementation of BPDA+EOT attack to evaluate adversarial defense with an EBM☆23Updated 4 years ago
- ☆46Updated last year
- the paper "Geometry-aware Instance-reweighted Adversarial Training" ICLR 2021 oral☆57Updated 3 years ago
- Unofficial implementation of the DeepMind papers "Uncovering the Limits of Adversarial Training against Norm-Bounded Adversarial Examples…☆92Updated 2 years ago
- ☆32Updated 11 months ago
- ☆60Updated 8 months ago
- Implementation of "Adversarial purification with Score-based generative models", ICML 2021☆28Updated 3 years ago
- ☆48Updated 3 years ago
- [ICLR 2021] "Robust Overfitting may be mitigated by properly learned smoothening" by Tianlong Chen*, Zhenyu Zhang*, Sijia Liu, Shiyu Chan…☆46Updated 2 years ago
- Code and data for the ICLR 2021 paper "Perceptual Adversarial Robustness: Defense Against Unseen Threat Models".☆54Updated 2 years ago
- Code for the paper "On the Adversarial Robustness of Visual Transformers"☆55Updated 2 years ago
- APBench: A Unified Availability Poisoning Attack and Defenses Benchmark (TMLR 08/2024)☆26Updated 2 months ago
- ☆22Updated 3 years ago
- ☆53Updated last year
- [ICML 2023] Are Diffusion Models Vulnerable to Membership Inference Attacks?☆30Updated 2 months ago
- ICLR 2023 paper "Exploring and Exploiting Decision Boundary Dynamics for Adversarial Robustness" by Yuancheng Xu, Yanchao Sun, Micah Gold…☆21Updated last year
- A Self-Consistent Robust Error (ICML 2022)☆67Updated last year
- Helper-based Adversarial Training: Reducing Excessive Margin to Achieve a Better Accuracy vs. Robustness Trade-off☆29Updated 2 years ago
- [NeurIPS'2023] Official Code Repo:Diffusion-Based Adversarial Sample Generation for Improved Stealthiness and Controllability☆86Updated last year
- RayS: A Ray Searching Method for Hard-label Adversarial Attack (KDD2020)☆55Updated 4 years ago
- [ICLR 2022 official code] Robust Learning Meets Generative Models: Can Proxy Distributions Improve Adversarial Robustness?☆26Updated 2 years ago
- [ICLR 2023, Spotlight] Indiscriminate Poisoning Attacks on Unsupervised Contrastive Learning☆28Updated 11 months ago
- Code for the paper "Autoregressive Perturbations for Data Poisoning" (NeurIPS 2022)☆18Updated 2 months ago
- ☆22Updated 2 years ago
- A Unified Approach to Interpreting and Boosting Adversarial Transferability (ICLR2021)☆28Updated 2 years ago
- ☆52Updated last year
- On the effectiveness of adversarial training against common corruptions [UAI 2022]☆30Updated 2 years ago