jhayes14 / black-box-attacks
Comparison of gradient estimation techniques for black-box adversarial examples
☆11Updated 6 years ago
Related projects ⓘ
Alternatives and complementary repositories for black-box-attacks
- Provable Robustness of ReLU networks via Maximization of Linear Regions [AISTATS 2019]☆31Updated 4 years ago
- Investigating the robustness of state-of-the-art CNN architectures to simple spatial transformations.☆49Updated 5 years ago
- Formal Guarantees on the Robustness of a Classifier against Adversarial Manipulation [NeurIPS 2017]☆18Updated 6 years ago
- Code for the paper "Adversarial Training and Robustness for Multiple Perturbations", NeurIPS 2019☆46Updated last year
- ☆12Updated 5 years ago
- A powerful white-box adversarial attack that exploits knowledge about the geometry of neural networks to find minimal adversarial perturb…☆11Updated 4 years ago
- Code release for the ICML 2019 paper "Are generative classifiers more robust to adversarial attacks?"☆23Updated 5 years ago
- Benchmark for LP-relaxed robustness verification of ReLU-networks☆40Updated 5 years ago
- ☆29Updated 5 years ago
- [ICML'20] Multi Steepest Descent (MSD) for robustness against the union of multiple perturbation models.☆25Updated 3 months ago
- CVPR'19 experiments with (on-manifold) adversarial examples.☆44Updated 4 years ago
- ☆37Updated 3 years ago
- Codebase for "Exploring the Landscape of Spatial Robustness" (ICML'19, https://arxiv.org/abs/1712.02779).☆26Updated 5 years ago
- Source code for the paper "Exploiting Excessive Invariance caused by Norm-Bounded Adversarial Robustness"☆26Updated 4 years ago
- Randomized Smoothing of All Shapes and Sizes (ICML 2020).☆51Updated 4 years ago
- Code for Stability Training with Noise (STN)☆21Updated 3 years ago
- Learning perturbation sets for robust machine learning☆64Updated 3 years ago
- This code reproduces the results of the paper, "Measuring Data Leakage in Machine-Learning Models with Fisher Information"☆49Updated 3 years ago
- Code for the Adversarial Image Detectors and a Saliency Map☆12Updated 7 years ago
- Official implementation for paper: A New Defense Against Adversarial Images: Turning a Weakness into a Strength☆37Updated 4 years ago
- Official repo for the paper "Make Some Noise: Reliable and Efficient Single-Step Adversarial Training" (https://arxiv.org/abs/2202.01181)☆25Updated 2 years ago
- Official repository for "Bridging Adversarial Robustness and Gradient Interpretability".☆30Updated 5 years ago
- ☆20Updated 3 months ago
- Source code of "Hold me tight! Influence of discriminative features on deep network boundaries"☆22Updated 2 years ago
- A Closer Look at Accuracy vs. Robustness☆88Updated 3 years ago
- Code for 'One Neuron to Fool Them All'☆8Updated 4 years ago
- ☆87Updated 3 months ago
- Code implementing the experiments described in the NeurIPS 2018 paper "With Friends Like These, Who Needs Adversaries?".☆13Updated 4 years ago
- Official implementation for Training Certifiably Robust Neural Networks with Efficient Local Lipschitz Bounds (NeurIPS, 2021).☆22Updated 2 years ago
- SGD and Ordered SGD codes for deep learning, SVM, and logistic regression☆34Updated 4 years ago