huanzhang12 / CROWN-IBP
Certified defense to adversarial examples using CROWN and IBP. Also includes GPU implementation of CROWN verification algorithm (in PyTorch).
☆93Updated 3 years ago
Related projects ⓘ
Alternatives and complementary repositories for CROWN-IBP
- [NeurIPS 2021] Fast Certified Robust Training with Short Warmup☆23Updated last year
- This repo keeps track of popular provable training and verification approaches towards robust neural networks, including leaderboards on …☆99Updated 2 years ago
- Official implementation for paper: A New Defense Against Adversarial Images: Turning a Weakness into a Strength☆37Updated 4 years ago
- A united toolbox for running major robustness verification approaches for DNNs. [S&P 2023]☆87Updated last year
- Benchmark for LP-relaxed robustness verification of ReLU-networks☆40Updated 5 years ago
- The official repo for GCP-CROWN paper☆12Updated 2 years ago
- Efficient Robustness Verification for ReLU networks (this repository is outdated, don't use; checkout our new implementation at https://g…☆30Updated 5 years ago
- This repository contains a simple implementation of Interval Bound Propagation (IBP) using TensorFlow: https://arxiv.org/abs/1810.12715☆152Updated 4 years ago
- Reference implementations for RecurJac, CROWN, FastLin and FastLip (Neural Network verification and robustness certification algorithms)…☆26Updated 4 years ago
- Convex Layerwise Adversarial Training (COLT)☆29Updated 3 years ago
- Code for Stability Training with Noise (STN)☆21Updated 3 years ago
- ☆26Updated last year
- CROWN: A Neural Network Verification Framework for Networks with General Activation Functions☆38Updated 5 years ago
- Provably defending pretrained classifiers including the Azure, Google, AWS, and Clarifai APIs☆96Updated 3 years ago
- AAAI 2019 oral presentation☆50Updated 3 months ago
- RayS: A Ray Searching Method for Hard-label Adversarial Attack (KDD2020)☆55Updated 4 years ago
- Code for FAB-attack☆32Updated 4 years ago
- Code and data for the ICLR 2021 paper "Perceptual Adversarial Robustness: Defense Against Unseen Threat Models".☆54Updated 2 years ago
- MACER: MAximizing CErtified Radius (ICLR 2020)☆28Updated 4 years ago
- Blackbox attacks for deep neural network models☆70Updated 6 years ago
- CROWN: A Neural Network Robustness Certification Algorithm for General Activation Functions (This repository is outdated; use https://git…☆16Updated 5 years ago
- [ICML'20] Multi Steepest Descent (MSD) for robustness against the union of multiple perturbation models.☆25Updated 3 months ago
- Interval attacks (adversarial ML)☆21Updated 5 years ago
- Code of On L-p Robustness of Decision Stumps and Trees, ICML 2020☆10Updated 4 years ago
- Code for the paper "MMA Training: Direct Input Space Margin Maximization through Adversarial Training"☆34Updated 4 years ago
- Adversarial Distributional Training (NeurIPS 2020)☆60Updated 3 years ago
- Code for the paper "Adversarial Training and Robustness for Multiple Perturbations", NeurIPS 2019☆46Updated last year
- Repository for Certified Defenses for Adversarial Patch ICLR-2020☆32Updated 4 years ago
- Feature Scattering Adversarial Training (NeurIPS19)☆71Updated 5 months ago
- ☆153Updated 3 years ago