{"about":{"non_affiliation":"Code with Papers and Syntology are not affiliated with, endorsed by, or sponsored by Papers with Code, Meta, or the pwc-archive mirror.","site":"https://codewithpapers.app","licence":"CC BY-SA 4.0","licence_url":"https://creativecommons.org/licenses/by-sa/4.0/legalcode","attribution":"https://codewithpapers.app/attribution","modified":"archive material modified by Syntology; see the attribution page","syntology":{"site":"https://syntology.ai","developers":"https://syntology.ai/developers","mcp":{"server":"https://syntology.ai/mcp","transport":"streamable-http","server_card":"https://syntology.ai/.well-known/mcp/server-card.json","auth":{"type":"trial token, no account","trial_token":"https://syntology.ai/api/oauth/trial/token","method":"POST","docs":"https://syntology.ai/developers"}},"have":"https://syntology.ai/api/graph/have?x=<method, arXiv id or title> (free, answers coverage only)","paper_base":"https://syntology.ai/paper/","atlas_base":"https://app.syntology.ai/?focus="},"machine_readable":[{"url":"https://codewithpapers.app/llms.txt","what":"the machine catalog: every machine-readable file, counted"},{"url":"https://codewithpapers.app/index/manifest.json","what":"paper-to-code index by arXiv id, with Syntology's counts"},{"url":"https://codewithpapers.app/search/manifest.json","what":"site search index (titles, authors) and its files"},{"url":"https://codewithpapers.app/download","what":"bulk files: Syntology's layer, described there"},{"url":"https://codewithpapers.app/build_manifest.json","what":"the build record: inputs, counts, exclusions, probes"}]},"url":"/task/adversarial-attack/papers/3","list_of":"/task/adversarial-attack","task":"Adversarial Attack","archive":{"snapshot":"2025-07-28"},"key_notes":{"n_ran_checked":"legacy name, kept unchanged so existing readers do not break: it counts the samples that ran with no instrument failure (honoured, violated, and ran with no contract checked); it does not mean a contract was checked, and the pages print it as 'K with no instrument failure', not 'K checked'","n_constructed":"a sub-count of the samples that ran, never subtracted from them and never a failure: an executed sample whose run returned an instance of its own class (fixture_out_type equals the entry name): the run built an object and did not compute a result (Syntology's RAN record, counts.constructed)"},"syntology_read_at":"2026-09-28T10:30:06+00:00","order":"archive","order_definition":"repositories listed in the archive (most first), then date (newest first), then slug","page":3,"pages_in_order":19,"rows_per_page":100,"rows":[201,300],"of":1808,"counts":{"archive_papers_tagged":1808,"with_a_code_link":745,"where_syntology_ran_a_sample":206,"not_listed_spam_title":0,"listed":1808,"listed_where_code_ran":206,"where_syntology_ran_a_sample_split":{"with_a_run_with_no_instrument_failure":161,"every_run_a_failure_of_syntologys_instrument":45,"listed_with_a_run_with_no_instrument_failure":161,"listed_every_run_a_failure_of_syntologys_instrument":45,"filter":{"states":["a run with no instrument failure","any run, instrument failures included"],"default":"a run with no instrument failure","note":"on the 'only where code ran' pages the default hides, in the browser, the rows where every run was a failure of Syntology's instrument; the second state shows them again. Rows are hidden, never re-ordered; these twins list every row"}},"definition":"distinct papers the archive tags; 'where Syntology ran a sample' counts papers with at least one harvested sample that ran, which is not a correctness claim"},"first_page":"/task/adversarial-attack","prev":"/task/adversarial-attack/papers/2","next":"/task/adversarial-attack/papers/4","papers":[{"url":"/paper/adversarial-attacks-on-data-attribution","slug":"adversarial-attacks-on-data-attribution","title":"Adversarial Attacks on Data Attribution","date":"2024-09-09","arxiv_id":"2409.05657","repositories_listed":1,"syntology":{"n":6,"n_ran":6,"n_constructed":0,"n_ran_checked":1,"n_instrument":5,"n_unverified":0,"n_honours":1,"n_violates":0,"n_no_contract":0,"n_pointer_only":6,"phrase":"6 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 1 honoured, 0 violated, 0 with no contract checked; 5 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/adversarial-attacks-on-data-attribution#ran","syntology_url":"https://syntology.ai/paper/2409.05657","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2409.05657"}},"official":{"repos":["trais-lab/adversarial-attack-data-attribution"],"state":"official (archive's flag): 6 ran","n_ran":6,"n_constructed":0,"n_ran_no_instrument_failure":1,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/a-practical-approach-to-evaluating-the","slug":"a-practical-approach-to-evaluating-the","title":"A practical approach to evaluating the adversarial distance for machine learning classifiers","date":"2024-09-05","arxiv_id":"2409.03598","repositories_listed":1,"syntology":null},{"url":"/paper/network-transferability-of-adversarial","slug":"network-transferability-of-adversarial","title":"Network transferability of adversarial patches in real-time object detection","date":"2024-08-28","arxiv_id":"2408.15833","repositories_listed":1,"syntology":null},{"url":"/paper/adversarial-manhole-challenging-monocular","slug":"adversarial-manhole-challenging-monocular","title":"Adversarial Manhole: Challenging Monocular Depth Estimation and Semantic Segmentation Models with Patch Attack","date":"2024-08-27","arxiv_id":"2408.14879","repositories_listed":1,"syntology":null},{"url":"/paper/2d-malafide-adversarial-attacks-against-face","slug":"2d-malafide-adversarial-attacks-against-face","title":"2D-Malafide: Adversarial Attacks Against Face Deepfake Detection Systems","date":"2024-08-26","arxiv_id":"2408.14143","repositories_listed":1,"syntology":null},{"url":"/paper/leveraging-information-consistency-in","slug":"leveraging-information-consistency-in","title":"Leveraging Information Consistency in Frequency and Spatial Domain for Adversarial Attacks","date":"2024-08-22","arxiv_id":"2408.12670","repositories_listed":1,"syntology":null},{"url":"/paper/malacopula-adversarial-automatic-speaker","slug":"malacopula-adversarial-automatic-speaker","title":"Malacopula: adversarial automatic speaker verification attacks using a neural-based generalised Hammerstein model","date":"2024-08-17","arxiv_id":"2408.09300","repositories_listed":1,"syntology":null},{"url":"/paper/a-multi-task-adversarial-attack-against-face","slug":"a-multi-task-adversarial-attack-against-face","title":"A Multi-task Adversarial Attack Against Face Authentication","date":"2024-08-15","arxiv_id":"2408.08205","repositories_listed":1,"syntology":null},{"url":"/paper/evaluating-the-validity-of-word-level","slug":"evaluating-the-validity-of-word-level","title":"Evaluating the Validity of Word-level Adversarial Attacks with Large Language Models","date":"2024-08-15","arxiv_id":null,"repositories_listed":1,"syntology":null},{"url":"/paper/2408-01541","slug":"2408-01541","title":"Guardians of Image Quality: Benchmarking Defenses Against Adversarial Attacks on Image Quality Metrics","date":"2024-08-02","arxiv_id":"2408.01541","repositories_listed":1,"syntology":null},{"url":"/paper/eatvul-chatgpt-based-evasion-attack-against","slug":"eatvul-chatgpt-based-evasion-attack-against","title":"EaTVul: ChatGPT-based Evasion Attack Against Software Vulnerability Detection","date":"2024-07-27","arxiv_id":"2407.19216","repositories_listed":1,"syntology":null},{"url":"/paper/pg-attack-a-precision-guided-adversarial","slug":"pg-attack-a-precision-guided-adversarial","title":"PG-Attack: A Precision-Guided Adversarial Attack Framework Against Vision Foundation Models for Autonomous Driving","date":"2024-07-18","arxiv_id":"2407.13111","repositories_listed":1,"syntology":null},{"url":"/paper/any-target-can-be-offense-adversarial-example","slug":"any-target-can-be-offense-adversarial-example","title":"Any Target Can be Offense: Adversarial Example Generation via Generalized Latent Infection","date":"2024-07-17","arxiv_id":"2407.12292","repositories_listed":1,"syntology":{"n":7,"n_ran":6,"n_constructed":0,"n_ran_checked":6,"n_instrument":0,"n_unverified":1,"n_honours":0,"n_violates":1,"n_no_contract":5,"n_pointer_only":7,"phrase":"6 ran (of which 0 constructed an object rather than computing a result; 6 with no instrument failure: 0 honoured, 1 violated, 5 with no contract checked; 0 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/any-target-can-be-offense-adversarial-example#ran","syntology_url":"https://syntology.ai/paper/2407.12292","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2407.12292"}},"official":{"repos":["vl-group/gaker"],"state":"official (archive's flag): 6 ran","n_ran":6,"n_constructed":0,"n_ran_no_instrument_failure":6,"n_unverified":1,"ran_from_kinds":["official"]}}},{"url":"/paper/investigating-imperceptibility-of-adversarial","slug":"investigating-imperceptibility-of-adversarial","title":"Investigating Imperceptibility of Adversarial Attacks on Tabular Data: An Empirical Analysis","date":"2024-07-16","arxiv_id":"2407.11463","repositories_listed":1,"syntology":null},{"url":"/paper/transferable-3d-adversarial-shape-completion","slug":"transferable-3d-adversarial-shape-completion","title":"Transferable 3D Adversarial Shape Completion using Diffusion Models","date":"2024-07-14","arxiv_id":"2407.10077","repositories_listed":1,"syntology":null},{"url":"/paper/adversarial-attacks-and-defenses-on-text-to","slug":"adversarial-attacks-and-defenses-on-text-to","title":"Adversarial Attacks and Defenses on Text-to-Image Diffusion Models: A Survey","date":"2024-07-10","arxiv_id":"2407.15861","repositories_listed":1,"syntology":null},{"url":"/paper/rethinking-targeted-adversarial-attacks-for","slug":"rethinking-targeted-adversarial-attacks-for","title":"Rethinking Targeted Adversarial Attacks For Neural Machine Translation","date":"2024-07-07","arxiv_id":"2407.05319","repositories_listed":1,"syntology":null},{"url":"/paper/controlling-whisper-universal-acoustic","slug":"controlling-whisper-universal-acoustic","title":"Controlling Whisper: Universal Acoustic Adversarial Attacks to Control Speech Foundation Models","date":"2024-07-05","arxiv_id":"2407.04482","repositories_listed":1,"syntology":null},{"url":"/paper/trackpgd-a-white-box-attack-using-binary","slug":"trackpgd-a-white-box-attack-using-binary","title":"TrackPGD: Efficient Adversarial Attack using Object Binary Masks against Robust Transformer Trackers","date":"2024-07-04","arxiv_id":"2407.03946","repositories_listed":1,"syntology":null},{"url":"/paper/adversarial-magnification-to-deceive-deepfake","slug":"adversarial-magnification-to-deceive-deepfake","title":"Adversarial Magnification to Deceive Deepfake Detection through Super Resolution","date":"2024-07-02","arxiv_id":"2407.02670","repositories_listed":1,"syntology":null},{"url":"/paper/on-discrete-prompt-optimization-for-diffusion","slug":"on-discrete-prompt-optimization-for-diffusion","title":"On Discrete Prompt Optimization for Diffusion Models","date":"2024-06-27","arxiv_id":"2407.01606","repositories_listed":1,"syntology":{"n":3,"n_ran":2,"n_constructed":0,"n_ran_checked":0,"n_instrument":2,"n_unverified":1,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":3,"phrase":"2 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 2 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/on-discrete-prompt-optimization-for-diffusion#ran","syntology_url":"https://syntology.ai/paper/2407.01606","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2407.01606"}},"official":{"repos":["ruocwang/dpo-diffusion"],"state":"official (archive's flag): 2 ran","n_ran":2,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":1,"ran_from_kinds":["official"]}}},{"url":"/paper/noisec-harnessing-noise-for-security-against","slug":"noisec-harnessing-noise-for-security-against","title":"Let the Noise Speak: Harnessing Noise for a Unified Defense Against Adversarial and Backdoor Attacks","date":"2024-06-18","arxiv_id":"2406.13073","repositories_listed":1,"syntology":null},{"url":"/paper/imperceptible-face-forgery-attack-via","slug":"imperceptible-face-forgery-attack-via","title":"Imperceptible Face Forgery Attack via Adversarial Semantic Mask","date":"2024-06-16","arxiv_id":"2406.10887","repositories_listed":1,"syntology":null},{"url":"/paper/kgpa-robustness-evaluation-for-large-language","slug":"kgpa-robustness-evaluation-for-large-language","title":"KGPA: Robustness Evaluation for Large Language Models via Cross-Domain Knowledge Graphs","date":"2024-06-16","arxiv_id":"2406.10802","repositories_listed":1,"syntology":null},{"url":"/paper/rwku-benchmarking-real-world-knowledge","slug":"rwku-benchmarking-real-world-knowledge","title":"RWKU: Benchmarking Real-World Knowledge Unlearning for Large Language Models","date":"2024-06-16","arxiv_id":"2406.10890","repositories_listed":1,"syntology":{"n":2,"n_ran":1,"n_constructed":0,"n_ran_checked":0,"n_instrument":1,"n_unverified":1,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":2,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 1 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/rwku-benchmarking-real-world-knowledge#ran","syntology_url":"https://syntology.ai/paper/2406.10890","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2406.10890"}},"official":{"repos":["jinzhuoran/rwku"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":1,"ran_from_kinds":["official"]}}},{"url":"/paper/explainable-graph-neural-networks-under-fire","slug":"explainable-graph-neural-networks-under-fire","title":"Explainable Graph Neural Networks Under Fire","date":"2024-06-10","arxiv_id":"2406.06417","repositories_listed":1,"syntology":null},{"url":"/paper/difattack-query-efficient-black-box","slug":"difattack-query-efficient-black-box","title":"DifAttack++: Query-Efficient Black-Box Adversarial Attack via Hierarchical Disentangled Feature Space in Cross-Domain","date":"2024-06-05","arxiv_id":"2406.03017","repositories_listed":1,"syntology":null},{"url":"/paper/graph-neural-network-explanations-are-fragile","slug":"graph-neural-network-explanations-are-fragile","title":"Graph Neural Network Explanations are Fragile","date":"2024-06-05","arxiv_id":"2406.03193","repositories_listed":1,"syntology":null},{"url":"/paper/svastin-sparse-video-adversarial-attack-via","slug":"svastin-sparse-video-adversarial-attack-via","title":"SVASTIN: Sparse Video Adversarial Attack via Spatio-Temporal Invertible Neural Networks","date":"2024-06-04","arxiv_id":"2406.01894","repositories_listed":1,"syntology":null},{"url":"/paper/constrained-adaptive-attack-effective","slug":"constrained-adaptive-attack-effective","title":"Constrained Adaptive Attack: Effective Adversarial Attack Against Deep Neural Networks for Tabular Data","date":"2024-06-02","arxiv_id":"2406.00775","repositories_listed":1,"syntology":null},{"url":"/paper/disrupting-diffusion-token-level-attention","slug":"disrupting-diffusion-token-level-attention","title":"Disrupting Diffusion: Token-Level Attention Erasure Attack against Diffusion-based Customization","date":"2024-05-31","arxiv_id":"2405.20584","repositories_listed":1,"syntology":null},{"url":"/paper/efficient-black-box-adversarial-attacks-via","slug":"efficient-black-box-adversarial-attacks-via","title":"Efficient Black-box Adversarial Attacks via Bayesian Optimization Guided by a Function Prior","date":"2024-05-29","arxiv_id":"2405.19098","repositories_listed":1,"syntology":null},{"url":"/paper/rethinking-independent-cross-entropy-loss-for","slug":"rethinking-independent-cross-entropy-loss-for","title":"Rethinking Independent Cross-Entropy Loss For Graph-Structured Data","date":"2024-05-24","arxiv_id":"2405.15564","repositories_listed":1,"syntology":null},{"url":"/paper/adjointdeis-efficient-gradients-for-diffusion","slug":"adjointdeis-efficient-gradients-for-diffusion","title":"AdjointDEIS: Efficient Gradients for Diffusion Models","date":"2024-05-23","arxiv_id":"2405.15020","repositories_listed":1,"syntology":{"n":23,"n_ran":20,"n_constructed":0,"n_ran_checked":17,"n_instrument":3,"n_unverified":3,"n_honours":3,"n_violates":0,"n_no_contract":14,"n_pointer_only":14,"phrase":"20 ran (of which 0 constructed an object rather than computing a result; 17 with no instrument failure: 3 honoured, 0 violated, 14 with no contract checked; 3 where Syntology's instrument failed) · 3 unverified","sample_list":"/paper/adjointdeis-efficient-gradients-for-diffusion#ran","syntology_url":"https://syntology.ai/paper/2405.15020","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2405.15020"}},"official":{"repos":["zblasingame/adjointdeis"],"state":"official: no sample here; runs from other or unrecorded repositories","n_ran":0,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["found_in_text"]}}},{"url":"/paper/lookhere-vision-transformers-with-directed","slug":"lookhere-vision-transformers-with-directed","title":"LookHere: Vision Transformers with Directed Attention Generalize and Extrapolate","date":"2024-05-22","arxiv_id":"2405.13985","repositories_listed":1,"syntology":{"n":12,"n_ran":8,"n_constructed":5,"n_ran_checked":7,"n_instrument":1,"n_unverified":4,"n_honours":2,"n_violates":0,"n_no_contract":5,"n_pointer_only":0,"phrase":"8 ran (of which 5 constructed an object rather than computing a result; 7 with no instrument failure: 2 honoured, 0 violated, 5 with no contract checked; 1 where Syntology's instrument failed) · 4 unverified","sample_list":"/paper/lookhere-vision-transformers-with-directed#ran","syntology_url":"https://syntology.ai/paper/2405.13985","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2405.13985"}},"official":{"repos":["greencubic/lookhere"],"state":"official (archive's flag): 8 ran","n_ran":8,"n_constructed":5,"n_ran_no_instrument_failure":7,"n_unverified":4,"ran_from_kinds":["official"]}}},{"url":"/paper/adversarial-robustness-for-visual-grounding","slug":"adversarial-robustness-for-visual-grounding","title":"Adversarial Robustness for Visual Grounding of Multimodal Large Language Models","date":"2024-05-16","arxiv_id":"2405.09981","repositories_listed":1,"syntology":{"n":3,"n_ran":3,"n_constructed":0,"n_ran_checked":2,"n_instrument":1,"n_unverified":0,"n_honours":0,"n_violates":1,"n_no_contract":1,"n_pointer_only":0,"phrase":"3 ran (of which 0 constructed an object rather than computing a result; 2 with no instrument failure: 0 honoured, 1 violated, 1 with no contract checked; 1 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/adversarial-robustness-for-visual-grounding#ran","syntology_url":"https://syntology.ai/paper/2405.09981","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2405.09981"}},"official":{"repos":["KuofengGao/MLLM-Grounding-Robustness"],"state":"official (archive's flag): 3 ran","n_ran":3,"n_constructed":0,"n_ran_no_instrument_failure":2,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/disttack-graph-adversarial-attacks-toward","slug":"disttack-graph-adversarial-attacks-toward","title":"Disttack: Graph Adversarial Attacks Toward Distributed GNN Training","date":"2024-05-10","arxiv_id":"2405.06247","repositories_listed":1,"syntology":null},{"url":"/paper/muting-whisper-a-universal-acoustic","slug":"muting-whisper-a-universal-acoustic","title":"Muting Whisper: A Universal Acoustic Adversarial Attack on Speech Foundation Models","date":"2024-05-09","arxiv_id":"2405.06134","repositories_listed":1,"syntology":null},{"url":"/paper/revisiting-character-level-adversarial","slug":"revisiting-character-level-adversarial","title":"Revisiting Character-level Adversarial Attacks for Language Models","date":"2024-05-07","arxiv_id":"2405.04346","repositories_listed":1,"syntology":{"n":31,"n_ran":23,"n_constructed":3,"n_ran_checked":13,"n_instrument":10,"n_unverified":8,"n_honours":0,"n_violates":0,"n_no_contract":13,"n_pointer_only":0,"phrase":"23 ran (of which 3 constructed an object rather than computing a result; 13 with no instrument failure: 0 honoured, 0 violated, 13 with no contract checked; 10 where Syntology's instrument failed) · 8 unverified","sample_list":"/paper/revisiting-character-level-adversarial#ran","syntology_url":"https://syntology.ai/paper/2405.04346","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2405.04346"}},"official":{"repos":["lions-epfl/charmer"],"state":"official (archive's flag): 23 ran","n_ran":23,"n_constructed":3,"n_ran_no_instrument_failure":13,"n_unverified":8,"ran_from_kinds":["official"]}}},{"url":"/paper/probing-unlearned-diffusion-models-a","slug":"probing-unlearned-diffusion-models-a","title":"Probing Unlearned Diffusion Models: A Transferable Adversarial Attack Perspective","date":"2024-04-30","arxiv_id":"2404.19382","repositories_listed":1,"syntology":{"n":5,"n_ran":5,"n_constructed":0,"n_ran_checked":5,"n_instrument":0,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":5,"n_pointer_only":1,"phrase":"5 ran (of which 0 constructed an object rather than computing a result; 5 with no instrument failure: 0 honoured, 0 violated, 5 with no contract checked; 0 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/probing-unlearned-diffusion-models-a#ran","syntology_url":"https://syntology.ai/paper/2404.19382","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2404.19382"}},"official":{"repos":["hxxdtd/pund"],"state":"official (archive's flag): 5 ran","n_ran":5,"n_constructed":0,"n_ran_no_instrument_failure":5,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/an-analysis-of-recent-advances-in-deepfake","slug":"an-analysis-of-recent-advances-in-deepfake","title":"An Analysis of Recent Advances in Deepfake Image Detection in an Evolving Threat Landscape","date":"2024-04-24","arxiv_id":"2404.16212","repositories_listed":1,"syntology":{"n":8,"n_ran":6,"n_constructed":0,"n_ran_checked":5,"n_instrument":1,"n_unverified":2,"n_honours":2,"n_violates":1,"n_no_contract":2,"n_pointer_only":8,"phrase":"6 ran (of which 0 constructed an object rather than computing a result; 5 with no instrument failure: 2 honoured, 1 violated, 2 with no contract checked; 1 where Syntology's instrument failed) · 2 unverified","sample_list":"/paper/an-analysis-of-recent-advances-in-deepfake#ran","syntology_url":"https://syntology.ai/paper/2404.16212","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2404.16212"}},"official":{"repos":["secml-lab-vt/EvolvingThreat-DeepfakeImageDetect"],"state":"official (archive's flag): 6 ran","n_ran":6,"n_constructed":0,"n_ran_no_instrument_failure":5,"n_unverified":2,"ran_from_kinds":["official"]}}},{"url":"/paper/sa-attack-speed-adaptive-stealthy-adversarial","slug":"sa-attack-speed-adaptive-stealthy-adversarial","title":"SA-Attack: Speed-adaptive stealthy adversarial attack on trajectory prediction","date":"2024-04-19","arxiv_id":"2404.12612","repositories_listed":1,"syntology":null},{"url":"/paper/counterfactual-explanations-for-face-forgery","slug":"counterfactual-explanations-for-face-forgery","title":"Counterfactual Explanations for Face Forgery Detection via Adversarial Removal of Artifacts","date":"2024-04-12","arxiv_id":"2404.08341","repositories_listed":1,"syntology":null},{"url":"/paper/humanizing-machine-generated-content-evading","slug":"humanizing-machine-generated-content-evading","title":"Humanizing Machine-Generated Content: Evading AI-Text Detection through Adversarial Attack","date":"2024-04-02","arxiv_id":"2404.01907","repositories_listed":1,"syntology":{"n":1,"n_ran":1,"n_constructed":0,"n_ran_checked":0,"n_instrument":1,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":0,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 1 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/humanizing-machine-generated-content-evading#ran","syntology_url":"https://syntology.ai/paper/2404.01907","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2404.01907"}},"official":{"repos":["zhouying20/hmgc"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/read-improving-relation-extraction-from-an","slug":"read-improving-relation-extraction-from-an","title":"READ: Improving Relation Extraction from an ADversarial Perspective","date":"2024-04-02","arxiv_id":"2404.02931","repositories_listed":1,"syntology":null},{"url":"/paper/physical-3d-adversarial-attacks-against","slug":"physical-3d-adversarial-attacks-against","title":"Physical 3D Adversarial Attacks against Monocular Depth Estimation in Autonomous Driving","date":"2024-03-26","arxiv_id":"2403.17301","repositories_listed":1,"syntology":{"n":13,"n_ran":13,"n_constructed":0,"n_ran_checked":13,"n_instrument":0,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":13,"n_pointer_only":13,"phrase":"13 ran (of which 0 constructed an object rather than computing a result; 13 with no instrument failure: 0 honoured, 0 violated, 13 with no contract checked; 0 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/physical-3d-adversarial-attacks-against#ran","syntology_url":"https://syntology.ai/paper/2403.17301","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2403.17301"}},"official":{"repos":["gandolfczjh/3d2fool"],"state":"official (archive's flag): 13 ran","n_ran":13,"n_constructed":0,"n_ran_no_instrument_failure":13,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/textit-linkprompt-natural-and-universal","slug":"textit-linkprompt-natural-and-universal","title":"$\\textit{LinkPrompt}$: Natural and Universal Adversarial Attacks on Prompt-based Language Models","date":"2024-03-25","arxiv_id":"2403.16432","repositories_listed":1,"syntology":{"n":1,"n_ran":0,"n_constructed":0,"n_ran_checked":0,"n_instrument":0,"n_unverified":1,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":1,"phrase":"0 ran · 1 unverified","sample_list":"/paper/textit-linkprompt-natural-and-universal#ran","syntology_url":"https://syntology.ai/paper/2403.16432","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2403.16432"}},"official":{"repos":["savannahxu79/linkprompt"],"state":"official: harvested, nothing ran","n_ran":0,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":1,"ran_from_kinds":[]}}},{"url":"/paper/dd-robustbench-an-adversarial-robustness","slug":"dd-robustbench-an-adversarial-robustness","title":"DD-RobustBench: An Adversarial Robustness Benchmark for Dataset Distillation","date":"2024-03-20","arxiv_id":"2403.13322","repositories_listed":1,"syntology":{"n":1,"n_ran":1,"n_constructed":0,"n_ran_checked":1,"n_instrument":0,"n_unverified":0,"n_honours":1,"n_violates":0,"n_no_contract":0,"n_pointer_only":1,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 1 honoured, 0 violated, 0 with no contract checked; 0 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/dd-robustbench-an-adversarial-robustness#ran","syntology_url":"https://syntology.ai/paper/2403.13322","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2403.13322"}},"official":{"repos":["fredwu-hust/dd-robustbench"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":1,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/robust-overfitting-does-matter-test-time","slug":"robust-overfitting-does-matter-test-time","title":"Robust Overfitting Does Matter: Test-Time Adversarial Purification With FGSM","date":"2024-03-18","arxiv_id":"2403.11448","repositories_listed":1,"syntology":null},{"url":"/paper/fast-inference-of-removal-based-node","slug":"fast-inference-of-removal-based-node","title":"Fast Inference of Removal-Based Node Influence","date":"2024-03-13","arxiv_id":"2403.08333","repositories_listed":1,"syntology":null},{"url":"/paper/hard-label-based-small-query-black-box","slug":"hard-label-based-small-query-black-box","title":"Hard-label based Small Query Black-box Adversarial Attack","date":"2024-03-09","arxiv_id":"2403.06014","repositories_listed":1,"syntology":{"n":8,"n_ran":7,"n_constructed":0,"n_ran_checked":5,"n_instrument":2,"n_unverified":1,"n_honours":0,"n_violates":0,"n_no_contract":5,"n_pointer_only":0,"phrase":"7 ran (of which 0 constructed an object rather than computing a result; 5 with no instrument failure: 0 honoured, 0 violated, 5 with no contract checked; 2 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/hard-label-based-small-query-black-box#ran","syntology_url":"https://syntology.ai/paper/2403.06014","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2403.06014"}},"official":{"repos":["jpark04-qub/sqba"],"state":"official (archive's flag): 7 ran","n_ran":7,"n_constructed":0,"n_ran_no_instrument_failure":5,"n_unverified":1,"ran_from_kinds":["official"]}}},{"url":"/paper/ioi-invisible-one-iteration-adversarial","slug":"ioi-invisible-one-iteration-adversarial","title":"IOI: Invisible One-Iteration Adversarial Attack on No-Reference Image- and Video-Quality Metrics","date":"2024-03-09","arxiv_id":"2403.05955","repositories_listed":1,"syntology":null},{"url":"/paper/hide-in-thicket-generating-imperceptible-and","slug":"hide-in-thicket-generating-imperceptible-and","title":"Hide in Thicket: Generating Imperceptible and Rational Adversarial Perturbations on 3D Point Clouds","date":"2024-03-08","arxiv_id":"2403.05247","repositories_listed":1,"syntology":{"n":7,"n_ran":6,"n_constructed":0,"n_ran_checked":2,"n_instrument":4,"n_unverified":1,"n_honours":1,"n_violates":0,"n_no_contract":1,"n_pointer_only":7,"phrase":"6 ran (of which 0 constructed an object rather than computing a result; 2 with no instrument failure: 1 honoured, 0 violated, 1 with no contract checked; 4 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/hide-in-thicket-generating-imperceptible-and#ran","syntology_url":"https://syntology.ai/paper/2403.05247","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2403.05247"}},"official":{"repos":["trlou/hit-adv"],"state":"official (archive's flag): 6 ran","n_ran":6,"n_constructed":0,"n_ran_no_instrument_failure":2,"n_unverified":1,"ran_from_kinds":["official"]}}},{"url":"/paper/one-prompt-word-is-enough-to-boost","slug":"one-prompt-word-is-enough-to-boost","title":"One Prompt Word is Enough to Boost Adversarial Robustness for Pre-trained Vision-Language Models","date":"2024-03-04","arxiv_id":"2403.01849","repositories_listed":1,"syntology":{"n":6,"n_ran":5,"n_constructed":0,"n_ran_checked":4,"n_instrument":1,"n_unverified":1,"n_honours":0,"n_violates":0,"n_no_contract":4,"n_pointer_only":1,"phrase":"5 ran (of which 0 constructed an object rather than computing a result; 4 with no instrument failure: 0 honoured, 0 violated, 4 with no contract checked; 1 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/one-prompt-word-is-enough-to-boost#ran","syntology_url":"https://syntology.ai/paper/2403.01849","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2403.01849"}},"official":{"repos":["treelli/apt"],"state":"official (archive's flag): 5 ran","n_ran":5,"n_constructed":0,"n_ran_no_instrument_failure":4,"n_unverified":1,"ran_from_kinds":["official"]}}},{"url":"/paper/rauca-a-novel-physical-adversarial-attack-on","slug":"rauca-a-novel-physical-adversarial-attack-on","title":"RAUCA: A Novel Physical Adversarial Attack on Vehicle Detectors via Robust and Accurate Camouflage Generation","date":"2024-02-24","arxiv_id":"2402.15853","repositories_listed":1,"syntology":{"n":9,"n_ran":6,"n_constructed":0,"n_ran_checked":1,"n_instrument":5,"n_unverified":3,"n_honours":0,"n_violates":0,"n_no_contract":1,"n_pointer_only":9,"phrase":"6 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 0 honoured, 0 violated, 1 with no contract checked; 5 where Syntology's instrument failed) · 3 unverified","sample_list":"/paper/rauca-a-novel-physical-adversarial-attack-on#ran","syntology_url":"https://syntology.ai/paper/2402.15853","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2402.15853"}},"official":{"repos":["seralab/robust-and-accurate-uv-map-based-camouflage-attack"],"state":"official (archive's flag): 6 ran","n_ran":6,"n_constructed":0,"n_ran_no_instrument_failure":1,"n_unverified":3,"ran_from_kinds":["official"]}}},{"url":"/paper/fast-adversarial-attacks-on-language-models","slug":"fast-adversarial-attacks-on-language-models","title":"Fast Adversarial Attacks on Language Models In One GPU Minute","date":"2024-02-23","arxiv_id":"2402.15570","repositories_listed":1,"syntology":{"n":4,"n_ran":3,"n_constructed":0,"n_ran_checked":2,"n_instrument":1,"n_unverified":1,"n_honours":0,"n_violates":0,"n_no_contract":2,"n_pointer_only":4,"phrase":"3 ran (of which 0 constructed an object rather than computing a result; 2 with no instrument failure: 0 honoured, 0 violated, 2 with no contract checked; 1 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/fast-adversarial-attacks-on-language-models#ran","syntology_url":"https://syntology.ai/paper/2402.15570","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2402.15570"}},"official":{"repos":["vinusankars/beast"],"state":"official (archive's flag): 3 ran","n_ran":3,"n_constructed":0,"n_ran_no_instrument_failure":2,"n_unverified":1,"ran_from_kinds":["official"]}}},{"url":"/paper/beyond-worst-case-attacks-robust-rl-with","slug":"beyond-worst-case-attacks-robust-rl-with","title":"Beyond Worst-case Attacks: Robust RL with Adaptive Defense via Non-dominated Policies","date":"2024-02-20","arxiv_id":"2402.12673","repositories_listed":1,"syntology":{"n":2,"n_ran":0,"n_constructed":0,"n_ran_checked":0,"n_instrument":0,"n_unverified":2,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":2,"phrase":"0 ran · 2 unverified","sample_list":"/paper/beyond-worst-case-attacks-robust-rl-with#ran","syntology_url":"https://syntology.ai/paper/2402.12673","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2402.12673"}},"official":{"repos":["umd-huang-lab/protected"],"state":"official: harvested, nothing ran","n_ran":0,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":2,"ran_from_kinds":[]}}},{"url":"/paper/aicattack-adversarial-image-captioning-attack","slug":"aicattack-adversarial-image-captioning-attack","title":"AICAttack: Adversarial Image Captioning Attack with Attention-Based Optimization","date":"2024-02-19","arxiv_id":"2402.11940","repositories_listed":1,"syntology":null},{"url":"/paper/desparsify-adversarial-attack-against-token","slug":"desparsify-adversarial-attack-against-token","title":"DeSparsify: Adversarial Attack Against Token Sparsification Mechanisms in Vision Transformers","date":"2024-02-04","arxiv_id":"2402.02554","repositories_listed":1,"syntology":null},{"url":"/paper/cheating-suffix-targeted-attack-to-text-to","slug":"cheating-suffix-targeted-attack-to-text-to","title":"On the Multi-modal Vulnerability of Diffusion Models","date":"2024-02-02","arxiv_id":"2402.01369","repositories_listed":1,"syntology":null},{"url":"/paper/hqa-attack-toward-high-quality-black-box-hard-1","slug":"hqa-attack-toward-high-quality-black-box-hard-1","title":"HQA-Attack: Toward High Quality Black-Box Hard-Label Adversarial Attack on Text","date":"2024-02-02","arxiv_id":"2402.01806","repositories_listed":1,"syntology":null},{"url":"/paper/short-benchmarking-transferable-adversarial","slug":"short-benchmarking-transferable-adversarial","title":"Benchmarking Transferable Adversarial Attacks","date":"2024-02-01","arxiv_id":"2402.00418","repositories_listed":1,"syntology":null},{"url":"/paper/advgps-adversarial-gps-for-multi-agent","slug":"advgps-adversarial-gps-for-multi-agent","title":"AdvGPS: Adversarial GPS for Multi-Agent Perception Attack","date":"2024-01-30","arxiv_id":"2401.17499","repositories_listed":1,"syntology":null},{"url":"/paper/fluent-dreaming-for-language-models","slug":"fluent-dreaming-for-language-models","title":"Fluent dreaming for language models","date":"2024-01-24","arxiv_id":"2402.01702","repositories_listed":1,"syntology":{"n":9,"n_ran":4,"n_constructed":0,"n_ran_checked":4,"n_instrument":0,"n_unverified":5,"n_honours":0,"n_violates":0,"n_no_contract":4,"n_pointer_only":0,"phrase":"4 ran (of which 0 constructed an object rather than computing a result; 4 with no instrument failure: 0 honoured, 0 violated, 4 with no contract checked; 0 where Syntology's instrument failed) · 5 unverified","sample_list":"/paper/fluent-dreaming-for-language-models#ran","syntology_url":"https://syntology.ai/paper/2402.01702","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2402.01702"}},"official":{"repos":["confirm-solutions/dreamy"],"state":"official (archive's flag): 4 ran","n_ran":4,"n_constructed":0,"n_ran_no_instrument_failure":4,"n_unverified":5,"ran_from_kinds":["official"]}}},{"url":"/paper/susceptibility-of-adversarial-attack-on","slug":"susceptibility-of-adversarial-attack-on","title":"Susceptibility of Adversarial Attack on Medical Image Segmentation Models","date":"2024-01-20","arxiv_id":"2401.11224","repositories_listed":1,"syntology":null},{"url":"/paper/revealing-vulnerabilities-in-stable-diffusion","slug":"revealing-vulnerabilities-in-stable-diffusion","title":"Revealing Vulnerabilities in Stable Diffusion via Targeted Attacks","date":"2024-01-16","arxiv_id":"2401.08725","repositories_listed":1,"syntology":null},{"url":"/paper/the-effect-of-intrinsic-dataset-properties-on","slug":"the-effect-of-intrinsic-dataset-properties-on","title":"The Effect of Intrinsic Dataset Properties on Generalization: Unraveling Learning Differences Between Natural and Medical Images","date":"2024-01-16","arxiv_id":"2401.08865","repositories_listed":1,"syntology":{"n":2,"n_ran":0,"n_constructed":0,"n_ran_checked":0,"n_instrument":0,"n_unverified":2,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":0,"phrase":"0 ran · 2 unverified","sample_list":"/paper/the-effect-of-intrinsic-dataset-properties-on#ran","syntology_url":"https://syntology.ai/paper/2401.08865","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2401.08865"}},"official":{"repos":["mazurowski-lab/intrinsic-properties"],"state":"official: harvested, nothing ran","n_ran":0,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":2,"ran_from_kinds":[]}}},{"url":"/paper/ge-advgan-improving-the-transferability-of","slug":"ge-advgan-improving-the-transferability-of","title":"GE-AdvGAN: Improving the transferability of adversarial samples by gradient editing-based adversarial generative model","date":"2024-01-11","arxiv_id":"2401.06031","repositories_listed":1,"syntology":null},{"url":"/paper/data-driven-subsampling-in-the-presence-of-an","slug":"data-driven-subsampling-in-the-presence-of-an","title":"Data-Driven Subsampling in the Presence of an Adversarial Actor","date":"2024-01-07","arxiv_id":"2401.03488","repositories_listed":1,"syntology":null},{"url":"/paper/vulnerabilities-unveiled-adversarially","slug":"vulnerabilities-unveiled-adversarially","title":"Demonstration of an Adversarial Attack Against a Multimodal Vision Language Model for Pathology Imaging","date":"2024-01-04","arxiv_id":"2401.02565","repositories_listed":1,"syntology":null},{"url":"/paper/slowformer-adversarial-attack-on-compute-and","slug":"slowformer-adversarial-attack-on-compute-and","title":"SlowFormer: Adversarial Attack on Compute and Energy Consumption of Efficient Vision Transformers","date":"2024-01-01","arxiv_id":null,"repositories_listed":1,"syntology":null},{"url":"/paper/transferable-structural-sparse-adversarial","slug":"transferable-structural-sparse-adversarial","title":"Transferable Structural Sparse Adversarial Attack Via Exact Group Sparsity Training","date":"2024-01-01","arxiv_id":null,"repositories_listed":1,"syntology":null},{"url":"/paper/towards-adversarial-robustness-verification","slug":"towards-adversarial-robustness-verification","title":"Towards adversarial robustness verification of no-reference image-and video-quality metrics","date":"2023-12-30","arxiv_id":null,"repositories_listed":1,"syntology":null},{"url":"/paper/where-and-how-to-attack-a-causality-inspired","slug":"where-and-how-to-attack-a-causality-inspired","title":"Where and How to Attack? A Causality-Inspired Recipe for Generating Counterfactual Adversarial Examples","date":"2023-12-21","arxiv_id":"2312.13628","repositories_listed":1,"syntology":null},{"url":"/paper/towards-transferable-targeted-3d-adversarial","slug":"towards-transferable-targeted-3d-adversarial","title":"Towards Transferable Targeted 3D Adversarial Attack in the Physical World","date":"2023-12-15","arxiv_id":"2312.09558","repositories_listed":1,"syntology":{"n":8,"n_ran":4,"n_constructed":0,"n_ran_checked":4,"n_instrument":0,"n_unverified":4,"n_honours":0,"n_violates":0,"n_no_contract":4,"n_pointer_only":0,"phrase":"4 ran (of which 0 constructed an object rather than computing a result; 4 with no instrument failure: 0 honoured, 0 violated, 4 with no contract checked; 0 where Syntology's instrument failed) · 4 unverified","sample_list":"/paper/towards-transferable-targeted-3d-adversarial#ran","syntology_url":"https://syntology.ai/paper/2312.09558","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2312.09558"}},"official":{"repos":["aries-iai/tt3d"],"state":"official (archive's flag): 4 ran","n_ran":4,"n_constructed":0,"n_ran_no_instrument_failure":4,"n_unverified":4,"ran_from_kinds":["official"]}}},{"url":"/paper/ava-inconspicuous-attribute-variation-based","slug":"ava-inconspicuous-attribute-variation-based","title":"AVA: Inconspicuous Attribute Variation-based Adversarial Attack bypassing DeepFake Detection","date":"2023-12-14","arxiv_id":"2312.08675","repositories_listed":1,"syntology":null},{"url":"/paper/robust-few-shot-named-entity-recognition-with","slug":"robust-few-shot-named-entity-recognition-with","title":"Robust Few-Shot Named Entity Recognition with Boundary Discrimination and Correlation Purification","date":"2023-12-13","arxiv_id":"2312.07961","repositories_listed":1,"syntology":null},{"url":"/paper/dynamic-adversarial-attacks-on-autonomous","slug":"dynamic-adversarial-attacks-on-autonomous","title":"Dynamic Adversarial Attacks on Autonomous Driving Systems","date":"2023-12-10","arxiv_id":"2312.06701","repositories_listed":1,"syntology":{"n":1,"n_ran":0,"n_constructed":0,"n_ran_checked":0,"n_instrument":0,"n_unverified":1,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":0,"phrase":"0 ran · 1 unverified","sample_list":"/paper/dynamic-adversarial-attacks-on-autonomous#ran","syntology_url":"https://syntology.ai/paper/2312.06701","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2312.06701"}},"official":{"repos":["AmirhoseinCh/DynamicPatch"],"state":"official: harvested, nothing ran","n_ran":0,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":1,"ran_from_kinds":[]}}},{"url":"/paper/an-adversarial-attack-approach-for","slug":"an-adversarial-attack-approach-for","title":"An adversarial attack approach for eXplainable AI evaluation on deepfake detection models","date":"2023-12-08","arxiv_id":"2312.06627","repositories_listed":1,"syntology":null},{"url":"/paper/instructta-instruction-tuned-targeted-attack","slug":"instructta-instruction-tuned-targeted-attack","title":"InstructTA: Instruction-Tuned Targeted Attack for Large Vision-Language Models","date":"2023-12-04","arxiv_id":"2312.01886","repositories_listed":1,"syntology":{"n":12,"n_ran":8,"n_constructed":0,"n_ran_checked":6,"n_instrument":2,"n_unverified":4,"n_honours":0,"n_violates":1,"n_no_contract":5,"n_pointer_only":12,"phrase":"8 ran (of which 0 constructed an object rather than computing a result; 6 with no instrument failure: 0 honoured, 1 violated, 5 with no contract checked; 2 where Syntology's instrument failed) · 4 unverified","sample_list":"/paper/instructta-instruction-tuned-targeted-attack#ran","syntology_url":"https://syntology.ai/paper/2312.01886","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2312.01886"}},"official":{"repos":["xunguangwang/instructta"],"state":"official (archive's flag): 8 ran","n_ran":8,"n_constructed":0,"n_ran_no_instrument_failure":6,"n_unverified":4,"ran_from_kinds":["official"]}}},{"url":"/paper/adversarial-purification-of-information","slug":"adversarial-purification-of-information","title":"Adversarial Purification of Information Masking","date":"2023-11-26","arxiv_id":"2311.15339","repositories_listed":1,"syntology":null},{"url":"/paper/trainwreck-a-damaging-adversarial-attack-on","slug":"trainwreck-a-damaging-adversarial-attack-on","title":"Trainwreck: A damaging adversarial attack on image classifiers","date":"2023-11-24","arxiv_id":"2311.14772","repositories_listed":1,"syntology":null},{"url":"/paper/an-extensive-study-on-adversarial-attack","slug":"an-extensive-study-on-adversarial-attack","title":"An Extensive Study on Adversarial Attack against Pre-trained Models of Code","date":"2023-11-13","arxiv_id":"2311.07553","repositories_listed":1,"syntology":null},{"url":"/paper/robust-text-classification-analyzing","slug":"robust-text-classification-analyzing","title":"Robust Text Classification: Analyzing Prototype-Based Networks","date":"2023-11-11","arxiv_id":"2311.06647","repositories_listed":1,"syntology":null},{"url":"/paper/flatness-aware-adversarial-attack","slug":"flatness-aware-adversarial-attack","title":"Transferability Bound Theory: Exploring Relationship between Adversarial Transferability and Flatness","date":"2023-11-10","arxiv_id":"2311.06423","repositories_listed":1,"syntology":{"n":12,"n_ran":8,"n_constructed":2,"n_ran_checked":4,"n_instrument":4,"n_unverified":4,"n_honours":0,"n_violates":0,"n_no_contract":4,"n_pointer_only":12,"phrase":"8 ran (of which 2 constructed an object rather than computing a result; 4 with no instrument failure: 0 honoured, 0 violated, 4 with no contract checked; 4 where Syntology's instrument failed) · 4 unverified","sample_list":"/paper/flatness-aware-adversarial-attack#ran","syntology_url":"https://syntology.ai/paper/2311.06423","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2311.06423"}},"official":{"repos":["fmy266/tpa"],"state":"official (archive's flag): 8 ran","n_ran":8,"n_constructed":2,"n_ran_no_instrument_failure":4,"n_unverified":4,"ran_from_kinds":["official"]}}},{"url":"/paper/army-of-thieves-enhancing-black-box-model","slug":"army-of-thieves-enhancing-black-box-model","title":"Army of Thieves: Enhancing Black-Box Model Extraction via Ensemble based sample selection","date":"2023-11-08","arxiv_id":"2311.04588","repositories_listed":1,"syntology":null},{"url":"/paper/amoeba-circumventing-ml-supported-network","slug":"amoeba-circumventing-ml-supported-network","title":"Amoeba: Circumventing ML-supported Network Censorship via Adversarial Reinforcement Learning","date":"2023-10-31","arxiv_id":"2310.20469","repositories_listed":1,"syntology":null},{"url":"/paper/adversarial-sample-generation-and-training","slug":"adversarial-sample-generation-and-training","title":"Adversarial sample generation and training using geometric masks for accurate and resilient license plate character recognition","date":"2023-10-25","arxiv_id":"2311.12857","repositories_listed":1,"syntology":null},{"url":"/paper/autodan-automatic-and-interpretable","slug":"autodan-automatic-and-interpretable","title":"AutoDAN: Interpretable Gradient-Based Adversarial Attacks on Large Language Models","date":"2023-10-23","arxiv_id":"2310.15140","repositories_listed":1,"syntology":{"n":4,"n_ran":4,"n_constructed":0,"n_ran_checked":4,"n_instrument":0,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":4,"n_pointer_only":0,"phrase":"4 ran (of which 0 constructed an object rather than computing a result; 4 with no instrument failure: 0 honoured, 0 violated, 4 with no contract checked; 0 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/autodan-automatic-and-interpretable#ran","syntology_url":"https://syntology.ai/paper/2310.15140","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2310.15140"}},"official":null}},{"url":"/paper/semantic-aware-adversarial-training-for-1","slug":"semantic-aware-adversarial-training-for-1","title":"Semantic-Aware Adversarial Training for Reliable Deep Hashing Retrieval","date":"2023-10-23","arxiv_id":"2310.14637","repositories_listed":1,"syntology":null},{"url":"/paper/ct-gat-cross-task-generative-adversarial","slug":"ct-gat-cross-task-generative-adversarial","title":"CT-GAT: Cross-Task Generative Adversarial Attack based on Transferability","date":"2023-10-22","arxiv_id":"2310.14265","repositories_listed":1,"syntology":{"n":6,"n_ran":4,"n_constructed":1,"n_ran_checked":3,"n_instrument":1,"n_unverified":2,"n_honours":0,"n_violates":2,"n_no_contract":1,"n_pointer_only":0,"phrase":"4 ran (of which 1 constructed an object rather than computing a result; 3 with no instrument failure: 0 honoured, 2 violated, 1 with no contract checked; 1 where Syntology's instrument failed) · 2 unverified","sample_list":"/paper/ct-gat-cross-task-generative-adversarial#ran","syntology_url":"https://syntology.ai/paper/2310.14265","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2310.14265"}},"official":{"repos":["xiaoxuannlp/ct-gat"],"state":"official (archive's flag): 4 ran","n_ran":4,"n_constructed":1,"n_ran_no_instrument_failure":3,"n_unverified":2,"ran_from_kinds":["official"]}}},{"url":"/paper/beyond-hard-samples-robust-and-effective","slug":"beyond-hard-samples-robust-and-effective","title":"Beyond Hard Samples: Robust and Effective Grammatical Error Correction with Cycle Self-Augmenting","date":"2023-10-20","arxiv_id":"2310.13321","repositories_listed":1,"syntology":null},{"url":"/paper/adversarial-training-for-physics-informed","slug":"adversarial-training-for-physics-informed","title":"Adversarial Training for Physics-Informed Neural Networks","date":"2023-10-18","arxiv_id":"2310.11789","repositories_listed":1,"syntology":null},{"url":"/paper/boosting-black-box-attack-to-deep-neural","slug":"boosting-black-box-attack-to-deep-neural","title":"Boosting Black-box Attack to Deep Neural Networks with Conditional Diffusion Models","date":"2023-10-11","arxiv_id":"2310.07492","repositories_listed":1,"syntology":{"n":17,"n_ran":14,"n_constructed":0,"n_ran_checked":14,"n_instrument":0,"n_unverified":3,"n_honours":1,"n_violates":3,"n_no_contract":10,"n_pointer_only":9,"phrase":"14 ran (of which 0 constructed an object rather than computing a result; 14 with no instrument failure: 1 honoured, 3 violated, 10 with no contract checked; 0 where Syntology's instrument failed) · 3 unverified","sample_list":"/paper/boosting-black-box-attack-to-deep-neural#ran","syntology_url":"https://syntology.ai/paper/2310.07492","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2310.07492"}},"official":{"repos":["ryliu68/CDMA"],"state":"official (archive's flag): 14 ran","n_ran":14,"n_constructed":0,"n_ran_no_instrument_failure":14,"n_unverified":3,"ran_from_kinds":["official"]}}},{"url":"/paper/robust-representation-learning-via-asymmetric","slug":"robust-representation-learning-via-asymmetric","title":"Enhancing Robust Representation in Adversarial Training: Alignment and Exclusion Criteria","date":"2023-10-05","arxiv_id":"2310.03358","repositories_listed":1,"syntology":null},{"url":"/paper/robustness-of-ai-image-detectors-fundamental","slug":"robustness-of-ai-image-detectors-fundamental","title":"Robustness of AI-Image Detectors: Fundamental Limits and Practical Attacks","date":"2023-09-29","arxiv_id":"2310.00076","repositories_listed":1,"syntology":{"n":3,"n_ran":2,"n_constructed":0,"n_ran_checked":2,"n_instrument":0,"n_unverified":1,"n_honours":0,"n_violates":0,"n_no_contract":2,"n_pointer_only":3,"phrase":"2 ran (of which 0 constructed an object rather than computing a result; 2 with no instrument failure: 0 honoured, 0 violated, 2 with no contract checked; 0 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/robustness-of-ai-image-detectors-fundamental#ran","syntology_url":"https://syntology.ai/paper/2310.00076","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2310.00076"}},"official":{"repos":["mehrdadsaberi/watermark_robustness"],"state":"official (archive's flag): 2 ran","n_ran":2,"n_constructed":0,"n_ran_no_instrument_failure":2,"n_unverified":1,"ran_from_kinds":["official"]}}},{"url":"/paper/semantic-adversarial-attacks-via-diffusion","slug":"semantic-adversarial-attacks-via-diffusion","title":"Semantic Adversarial Attacks via Diffusion Models","date":"2023-09-14","arxiv_id":"2309.07398","repositories_listed":1,"syntology":{"n":1,"n_ran":1,"n_constructed":0,"n_ran_checked":1,"n_instrument":0,"n_unverified":0,"n_honours":0,"n_violates":1,"n_no_contract":0,"n_pointer_only":1,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 0 honoured, 1 violated, 0 with no contract checked; 0 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/semantic-adversarial-attacks-via-diffusion#ran","syntology_url":"https://syntology.ai/paper/2309.07398","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2309.07398"}},"official":{"repos":["steven202/semantic_adv_via_dm"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":1,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/differentiable-jpeg-the-devil-is-in-the","slug":"differentiable-jpeg-the-devil-is-in-the","title":"Differentiable JPEG: The Devil is in the Details","date":"2023-09-13","arxiv_id":"2309.06978","repositories_listed":1,"syntology":{"n":15,"n_ran":9,"n_constructed":0,"n_ran_checked":9,"n_instrument":0,"n_unverified":6,"n_honours":0,"n_violates":0,"n_no_contract":9,"n_pointer_only":0,"phrase":"9 ran (of which 0 constructed an object rather than computing a result; 9 with no instrument failure: 0 honoured, 0 violated, 9 with no contract checked; 0 where Syntology's instrument failed) · 6 unverified","sample_list":"/paper/differentiable-jpeg-the-devil-is-in-the#ran","syntology_url":"https://syntology.ai/paper/2309.06978","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2309.06978"}},"official":{"repos":["necla-ml/diff-jpeg"],"state":"official (archive's flag): 9 ran","n_ran":9,"n_constructed":0,"n_ran_no_instrument_failure":9,"n_unverified":6,"ran_from_kinds":["official"]}}},{"url":"/paper/rain-your-language-models-can-align","slug":"rain-your-language-models-can-align","title":"RAIN: Your Language Models Can Align Themselves without Finetuning","date":"2023-09-13","arxiv_id":"2309.07124","repositories_listed":1,"syntology":{"n":1,"n_ran":1,"n_constructed":0,"n_ran_checked":1,"n_instrument":0,"n_unverified":0,"n_honours":1,"n_violates":0,"n_no_contract":0,"n_pointer_only":0,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 1 honoured, 0 violated, 0 with no contract checked; 0 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/rain-your-language-models-can-align#ran","syntology_url":"https://syntology.ai/paper/2309.07124","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2309.07124"}},"official":{"repos":["SafeAILab/RAIN"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":1,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/outlier-robust-adversarial-training","slug":"outlier-robust-adversarial-training","title":"Outlier Robust Adversarial Training","date":"2023-09-10","arxiv_id":"2309.05145","repositories_listed":1,"syntology":{"n":5,"n_ran":0,"n_constructed":0,"n_ran_checked":0,"n_instrument":0,"n_unverified":5,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":5,"phrase":"0 ran · 5 unverified","sample_list":"/paper/outlier-robust-adversarial-training#ran","syntology_url":"https://syntology.ai/paper/2309.05145","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2309.05145"}},"official":{"repos":["discovershu/orat"],"state":"official: harvested, nothing ran","n_ran":0,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":5,"ran_from_kinds":[]}}}],"record_sha256":"e320a6beea135c2dc477e00a6e6e845398d737fd3d0d0c19f69b755f88602037","record_changed_at":"2026-09-28","record_changed_at_basis":"first_hashed"}