{"about":{"site":"https://codewithpapers.app","non_affiliation":"Code with Papers and Syntology are not affiliated with, endorsed by, or sponsored by Papers with Code, Meta, or the pwc-archive mirror.","licence":"CC BY-SA 4.0","licence_url":"https://creativecommons.org/licenses/by-sa/4.0/legalcode","attribution":"https://codewithpapers.app/attribution","modified":"archive material modified by Syntology; see the attribution page"},"url":"/paper/unsupervised-adversarial-detection-without","title":"Unsupervised Adversarial Detection without Extra Model: Training Loss Should Change","arxiv_id":"2308.03243","date":"2023-08-07","proceeding":null,"authors":["Chien Cheng Chyou","Hung-Ting Su","Winston H. Hsu"],"abstract":"Adversarial robustness poses a critical challenge in the deployment of deep learning models for real-world applications. Traditional approaches to adversarial training and supervised detection rely on prior knowledge of attack types and access to labeled training data, which is often impractical. Existing unsupervised adversarial detection methods identify whether the target model works properly, but they suffer from bad accuracies owing to the use of common cross-entropy training loss, which relies on unnecessary features and strengthens adversarial attacks. We propose new training losses to reduce useless features and the corresponding detection method without prior knowledge of adversarial attacks. The detection rate (true positive rate) against all given white-box attacks is above 93.9% except for attacks without limits (DF($\\infty$)), while the false positive rate is barely 2.5%. The proposed method works well in all tested attack types and the false positive rates are even better than the methods good at certain types.","url_abs":"https://arxiv.org/abs/2308.03243v1","url_pdf":"https://arxiv.org/pdf/2308.03243v1.pdf","source":{"archive":"pwc-archive (Hugging Face), CC BY-SA 4.0","snapshot":"2025-07-28","licence_url":"https://creativecommons.org/licenses/by-sa/4.0/legalcode","row_kind":"abstracts"},"code_links":[{"paper_slug":"unsupervised-adversarial-detection-without","repo_url":"https://github.com/cyclebooster/unsupervised-adversarial-detection-without-extra-model","is_official":1,"mentioned_in_paper":1,"mentioned_in_github":0,"framework":"tf","reach":null}],"tasks":[{"task_slug":"adversarial-robustness","task_name":"Adversarial Robustness"}],"methods":[],"datasets_introduced":[],"methods_introduced":[],"results":[],"syntology":{"atlas_url":"https://app.syntology.ai/?focus=2308.03243","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2308.03243"}},"developers":"https://syntology.ai/developers","read_at":"2026-09-24T18:15:14+00:00","read_at_is":"when the build read Syntology's graph, not when any sample ran","claim":"Per-sample execution status on synthesized fixtures; not a correctness claim about the paper. Samples come from repositories linked to the paper, official or community; repo_kind says which.","repos":[{"provenance":"external:paperswithcode_snapshot_2025-07-28","url":"https://github.com/cyclebooster/unsupervised-adversarial-detection-without-extra-model","reach":null}],"summary":{"unverified":3},"by_repo_kind":{"official":{"samples":3,"ran":0,"repositories":1}},"repo_kind_vocabulary":{"official":"The archive marks this repository official for the paper","named_in_paper":"The archive records that the paper mentions this repository; it is not marked official","listed":"In the archive's code links for this paper, not marked official and not recorded as mentioned in the paper","found_in_text":"Syntology found this repository in the paper's own text; whether it is the authors' implementation is not asserted","community":"Not in the archive's code links for this paper; a community repository Syntology harvested"},"n_pointer_only_for_licence":0,"samples":[{"code_sha256_prefix":"f9d901eb67aac287","entry":"compute_fpr","repo":"cyclebooster/unsupervised-adversarial-detection-without-extra-model","repo_kind":"official","path":"art_data_metric.py","file_url":"https://github.com/cyclebooster/unsupervised-adversarial-detection-without-extra-model/blob/HEAD/art_data_metric.py","link_basis":"first_harvest_node","language":"python","status":"unverified","verification_level":0,"contract_check":null,"metamorphic_tier":null,"behaviour_fingerprint":false,"licence":"MIT","inline_ok":true,"mcp_get_code":{"code_sha256":"f9d901eb67aac287"}},{"code_sha256_prefix":"5a5cce5ffb72352f","entry":"detect_metric","repo":"cyclebooster/unsupervised-adversarial-detection-without-extra-model","repo_kind":"official","path":"art_data_metric.py","file_url":"https://github.com/cyclebooster/unsupervised-adversarial-detection-without-extra-model/blob/HEAD/art_data_metric.py","link_basis":"first_harvest_node","language":"python","status":"unverified","verification_level":0,"contract_check":null,"metamorphic_tier":null,"behaviour_fingerprint":false,"licence":"MIT","inline_ok":true,"mcp_get_code":{"code_sha256":"5a5cce5ffb72352f"}},{"code_sha256_prefix":"6c4859e68f56ff2b","entry":"threshold_choosing","repo":"cyclebooster/unsupervised-adversarial-detection-without-extra-model","repo_kind":"official","path":"art_data_metric.py","file_url":"https://github.com/cyclebooster/unsupervised-adversarial-detection-without-extra-model/blob/HEAD/art_data_metric.py","link_basis":"first_harvest_node","language":"python","status":"unverified","verification_level":0,"contract_check":null,"metamorphic_tier":null,"behaviour_fingerprint":false,"licence":"MIT","inline_ok":true,"mcp_get_code":{"code_sha256":"6c4859e68f56ff2b"}}]},"arxiv_metadata":null,"syntology_extracted_results":null}