yangarbiter / adversarial-nonparametrics
Robustness for Non-Parametric Classification: A Generic Attack and Defense
☆18Updated 2 years ago
Related projects ⓘ
Alternatives and complementary repositories for adversarial-nonparametrics
- Analysis of Adversarial Logit Pairing☆60Updated 6 years ago
- Interval attacks (adversarial ML)☆21Updated 5 years ago
- Code for the paper "Adversarial Training and Robustness for Multiple Perturbations", NeurIPS 2019☆46Updated last year
- Provable Robustness of ReLU networks via Maximization of Linear Regions [AISTATS 2019]☆31Updated 4 years ago
- An Algorithm to Quantify Robustness of Recurrent Neural Networks☆46Updated 4 years ago
- ☆18Updated 5 years ago
- Logit Pairing Methods Can Fool Gradient-Based Attacks [NeurIPS 2018 Workshop on Security in Machine Learning]☆18Updated 5 years ago
- ☆46Updated 3 years ago
- Code release for the ICML 2019 paper "Are generative classifiers more robust to adversarial attacks?"☆23Updated 5 years ago
- AAAI 2019 oral presentation☆50Updated 3 months ago
- A powerful white-box adversarial attack that exploits knowledge about the geometry of neural networks to find minimal adversarial perturb…☆11Updated 4 years ago
- Code for Stability Training with Noise (STN)☆21Updated 3 years ago
- ☆11Updated 4 years ago
- Benchmark for LP-relaxed robustness verification of ReLU-networks☆40Updated 5 years ago
- Source code for the paper "Exploiting Excessive Invariance caused by Norm-Bounded Adversarial Robustness"☆26Updated 4 years ago
- Randomized Smoothing of All Shapes and Sizes (ICML 2020).☆51Updated 4 years ago
- CVPR'19 experiments with (on-manifold) adversarial examples.☆44Updated 4 years ago
- Provably Robust Boosted Decision Stumps and Trees against Adversarial Attacks [NeurIPS 2019]☆50Updated 4 years ago
- Code for "Prior Convictions: Black-box Adversarial Attacks with Bandits and Priors"☆14Updated 6 years ago
- Code and data for the ICLR 2021 paper "Perceptual Adversarial Robustness: Defense Against Unseen Threat Models".☆54Updated 2 years ago
- [ICML'20] Multi Steepest Descent (MSD) for robustness against the union of multiple perturbation models.☆25Updated 3 months ago
- "Tight Certificates of Adversarial Robustness for Randomly Smoothed Classifiers" (NeurIPS 2019, previously called "A Stratified Approach …☆17Updated 5 years ago
- Code for the paper "MMA Training: Direct Input Space Margin Maximization through Adversarial Training"☆34Updated 4 years ago
- ☆86Updated 3 months ago
- Official implementation for paper: A New Defense Against Adversarial Images: Turning a Weakness into a Strength☆37Updated 4 years ago
- Provably defending pretrained classifiers including the Azure, Google, AWS, and Clarifai APIs☆96Updated 3 years ago
- MACER: MAximizing CErtified Radius (ICLR 2020)☆28Updated 4 years ago
- Code for "Robustness May Be at Odds with Accuracy"☆93Updated last year
- ☆26Updated last year
- Formal Guarantees on the Robustness of a Classifier against Adversarial Manipulation [NeurIPS 2017]☆18Updated 6 years ago