{"about":{"non_affiliation":"Code with Papers and Syntology are not affiliated with, endorsed by, or sponsored by Papers with Code, Meta, or the pwc-archive mirror.","site":"https://codewithpapers.app","licence":"CC BY-SA 4.0","licence_url":"https://creativecommons.org/licenses/by-sa/4.0/legalcode","attribution":"https://codewithpapers.app/attribution","modified":"archive material modified by Syntology; see the attribution page","syntology":{"site":"https://syntology.ai","developers":"https://syntology.ai/developers","mcp":{"server":"https://syntology.ai/mcp","transport":"streamable-http","server_card":"https://syntology.ai/.well-known/mcp/server-card.json","auth":{"type":"trial token, no account","trial_token":"https://syntology.ai/api/oauth/trial/token","method":"POST","docs":"https://syntology.ai/developers"}},"have":"https://syntology.ai/api/graph/have?x=<method, arXiv id or title> (free, answers coverage only)","paper_base":"https://syntology.ai/paper/","atlas_base":"https://app.syntology.ai/?focus="},"machine_readable":[{"url":"https://codewithpapers.app/llms.txt","what":"the machine catalog: every machine-readable file, counted"},{"url":"https://codewithpapers.app/index/manifest.json","what":"paper-to-code index by arXiv id, with Syntology's counts"},{"url":"https://codewithpapers.app/search/manifest.json","what":"site search index (titles, authors) and its files"},{"url":"https://codewithpapers.app/download","what":"bulk files: Syntology's layer, described there"},{"url":"https://codewithpapers.app/build_manifest.json","what":"the build record: inputs, counts, exclusions, probes"}]},"url":"/task/adversarial-attack/papers/4","list_of":"/task/adversarial-attack","task":"Adversarial Attack","archive":{"snapshot":"2025-07-28"},"key_notes":{"n_ran_checked":"legacy name, kept unchanged so existing readers do not break: it counts the samples that ran with no instrument failure (honoured, violated, and ran with no contract checked); it does not mean a contract was checked, and the pages print it as 'K with no instrument failure', not 'K checked'","n_constructed":"a sub-count of the samples that ran, never subtracted from them and never a failure: an executed sample whose run returned an instance of its own class (fixture_out_type equals the entry name): the run built an object and did not compute a result (Syntology's RAN record, counts.constructed)"},"syntology_read_at":"2026-09-28T10:30:06+00:00","order":"archive","order_definition":"repositories listed in the archive (most first), then date (newest first), then slug","page":4,"pages_in_order":19,"rows_per_page":100,"rows":[301,400],"of":1808,"counts":{"archive_papers_tagged":1808,"with_a_code_link":745,"where_syntology_ran_a_sample":206,"not_listed_spam_title":0,"listed":1808,"listed_where_code_ran":206,"where_syntology_ran_a_sample_split":{"with_a_run_with_no_instrument_failure":161,"every_run_a_failure_of_syntologys_instrument":45,"listed_with_a_run_with_no_instrument_failure":161,"listed_every_run_a_failure_of_syntologys_instrument":45,"filter":{"states":["a run with no instrument failure","any run, instrument failures included"],"default":"a run with no instrument failure","note":"on the 'only where code ran' pages the default hides, in the browser, the rows where every run was a failure of Syntology's instrument; the second state shows them again. Rows are hidden, never re-ordered; these twins list every row"}},"definition":"distinct papers the archive tags; 'where Syntology ran a sample' counts papers with at least one harvested sample that ran, which is not a correctness claim"},"first_page":"/task/adversarial-attack","prev":"/task/adversarial-attack/papers/3","next":"/task/adversarial-attack/papers/5","papers":[{"url":"/paper/certifying-llm-safety-against-adversarial","slug":"certifying-llm-safety-against-adversarial","title":"Certifying LLM Safety against Adversarial Prompting","date":"2023-09-06","arxiv_id":"2309.02705","repositories_listed":1,"syntology":null},{"url":"/paper/the-power-of-meme-adversarial-malware","slug":"the-power-of-meme-adversarial-malware","title":"The Power of MEME: Adversarial Malware Creation with Model-Based Reinforcement Learning","date":"2023-08-31","arxiv_id":"2308.16562","repositories_listed":1,"syntology":null},{"url":"/paper/a-classification-guided-approach-for","slug":"a-classification-guided-approach-for","title":"A Classification-Guided Approach for Adversarial Attacks against Neural Machine Translation","date":"2023-08-29","arxiv_id":"2308.15246","repositories_listed":1,"syntology":null},{"url":"/paper/multi-instance-adversarial-attack-on-gnn","slug":"multi-instance-adversarial-attack-on-gnn","title":"Multi-Instance Adversarial Attack on GNN-Based Malicious Domain Detection","date":"2023-08-22","arxiv_id":"2308.11754","repositories_listed":1,"syntology":null},{"url":"/paper/patchbackdoor-backdoor-attack-against-deep","slug":"patchbackdoor-backdoor-attack-against-deep","title":"PatchBackdoor: Backdoor Attack against Deep Neural Networks without Model Modification","date":"2023-08-22","arxiv_id":"2308.11822","repositories_listed":1,"syntology":{"n":1,"n_ran":1,"n_constructed":0,"n_ran_checked":0,"n_instrument":1,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":0,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 1 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/patchbackdoor-backdoor-attack-against-deep#ran","syntology_url":"https://syntology.ai/paper/2308.11822","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2308.11822"}},"official":{"repos":["xaiveryuan/patchbackdoor"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/boosting-adversarial-attack-with-similar","slug":"boosting-adversarial-attack-with-similar","title":"Enhancing Adversarial Attacks: The Similar Target Method","date":"2023-08-21","arxiv_id":"2308.10743","repositories_listed":1,"syntology":null},{"url":"/paper/on-the-adversarial-robustness-of-multi-modal","slug":"on-the-adversarial-robustness-of-multi-modal","title":"On the Adversarial Robustness of Multi-Modal Foundation Models","date":"2023-08-21","arxiv_id":"2308.10741","repositories_listed":1,"syntology":{"n":4,"n_ran":4,"n_constructed":0,"n_ran_checked":0,"n_instrument":4,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":4,"phrase":"4 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 4 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/on-the-adversarial-robustness-of-multi-modal#ran","syntology_url":"https://syntology.ai/paper/2308.10741","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2308.10741"}},"official":{"repos":["chs20/robustvlm"],"state":"official (archive's flag): 4 ran","n_ran":4,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/spear-and-shield-adversarial-attacks-and","slug":"spear-and-shield-adversarial-attacks-and","title":"Spear and Shield: Adversarial Attacks and Defense Methods for Model-Based Link Prediction on Continuous-Time Dynamic Graphs","date":"2023-08-21","arxiv_id":"2308.10779","repositories_listed":1,"syntology":null},{"url":"/paper/a-white-box-false-positive-adversarial-attack","slug":"a-white-box-false-positive-adversarial-attack","title":"A White-Box False Positive Adversarial Attack Method on Contrastive Loss Based Offline Handwritten Signature Verification Models","date":"2023-08-17","arxiv_id":"2308.08925","repositories_listed":1,"syntology":null},{"url":"/paper/simple-and-efficient-partial-graph","slug":"simple-and-efficient-partial-graph","title":"Simple and Efficient Partial Graph Adversarial Attack: A New Perspective","date":"2023-08-15","arxiv_id":"2308.07834","repositories_listed":1,"syntology":null},{"url":"/paper/hard-no-box-adversarial-attack-on-skeleton","slug":"hard-no-box-adversarial-attack-on-skeleton","title":"Hard No-Box Adversarial Attack on Skeleton-Based Human Action Recognition with Skeleton-Motion-Informed Gradient","date":"2023-08-10","arxiv_id":"2308.05681","repositories_listed":1,"syntology":{"n":4,"n_ran":1,"n_constructed":0,"n_ran_checked":0,"n_instrument":1,"n_unverified":3,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":4,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 1 where Syntology's instrument failed) · 3 unverified","sample_list":"/paper/hard-no-box-adversarial-attack-on-skeleton#ran","syntology_url":"https://syntology.ai/paper/2308.05681","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2308.05681"}},"official":{"repos":["luyg45/hardnoboxattack"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":3,"ran_from_kinds":["official"]}}},{"url":"/paper/federated-zeroth-order-optimization-using","slug":"federated-zeroth-order-optimization-using","title":"Federated Zeroth-Order Optimization using Trajectory-Informed Surrogate Gradients","date":"2023-08-08","arxiv_id":"2308.04077","repositories_listed":1,"syntology":{"n":5,"n_ran":4,"n_constructed":0,"n_ran_checked":4,"n_instrument":0,"n_unverified":1,"n_honours":0,"n_violates":0,"n_no_contract":4,"n_pointer_only":5,"phrase":"4 ran (of which 0 constructed an object rather than computing a result; 4 with no instrument failure: 0 honoured, 0 violated, 4 with no contract checked; 0 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/federated-zeroth-order-optimization-using#ran","syntology_url":"https://syntology.ai/paper/2308.04077","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2308.04077"}},"official":{"repos":["shuyao95/FZooS"],"state":"official (archive's flag): 4 ran","n_ran":4,"n_constructed":0,"n_ran_no_instrument_failure":4,"n_unverified":1,"ran_from_kinds":["official"]}}},{"url":"/paper/an-adaptive-model-ensemble-adversarial-attack","slug":"an-adaptive-model-ensemble-adversarial-attack","title":"An Adaptive Model Ensemble Adversarial Attack for Boosting Adversarial Transferability","date":"2023-08-05","arxiv_id":"2308.02897","repositories_listed":1,"syntology":{"n":2,"n_ran":1,"n_constructed":1,"n_ran_checked":1,"n_instrument":0,"n_unverified":1,"n_honours":0,"n_violates":0,"n_no_contract":1,"n_pointer_only":2,"phrase":"1 ran (of which 1 constructed an object rather than computing a result; 1 with no instrument failure: 0 honoured, 0 violated, 1 with no contract checked; 0 where Syntology's instrument failed) · 1 unverified; the one sample that ran constructed an object rather than computing a result","sample_list":"/paper/an-adaptive-model-ensemble-adversarial-attack#ran","syntology_url":"https://syntology.ai/paper/2308.02897","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2308.02897"}},"official":{"repos":["CHENBIN99/AdaEA"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":1,"n_ran_no_instrument_failure":1,"n_unverified":1,"ran_from_kinds":["official"]}}},{"url":"/paper/multi-attacks-many-images-the-same","slug":"multi-attacks-many-images-the-same","title":"Multi-attacks: Many images $+$ the same adversarial attack $\\to$ many target labels","date":"2023-08-04","arxiv_id":"2308.03792","repositories_listed":1,"syntology":null},{"url":"/paper/limeattack-local-explainable-method-for","slug":"limeattack-local-explainable-method-for","title":"LimeAttack: Local Explainable Method for Textual Hard-Label Adversarial Attack","date":"2023-08-01","arxiv_id":"2308.00319","repositories_listed":1,"syntology":null},{"url":"/paper/when-measures-are-unreliable-imperceptible","slug":"when-measures-are-unreliable-imperceptible","title":"When Measures are Unreliable: Imperceptible Adversarial Perturbations toward Top-$k$ Multi-Label Learning","date":"2023-07-27","arxiv_id":"2309.00007","repositories_listed":1,"syntology":null},{"url":"/paper/advdiff-generating-unrestricted-adversarial","slug":"advdiff-generating-unrestricted-adversarial","title":"AdvDiff: Generating Unrestricted Adversarial Examples using Diffusion Models","date":"2023-07-24","arxiv_id":"2307.12499","repositories_listed":1,"syntology":{"n":11,"n_ran":8,"n_constructed":0,"n_ran_checked":5,"n_instrument":3,"n_unverified":3,"n_honours":0,"n_violates":3,"n_no_contract":2,"n_pointer_only":2,"phrase":"8 ran (of which 0 constructed an object rather than computing a result; 5 with no instrument failure: 0 honoured, 3 violated, 2 with no contract checked; 3 where Syntology's instrument failed) · 3 unverified","sample_list":"/paper/advdiff-generating-unrestricted-adversarial#ran","syntology_url":"https://syntology.ai/paper/2307.12499","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2307.12499"}},"official":{"repos":["EricDai0/advdiff"],"state":"official (archive's flag): 8 ran","n_ran":8,"n_constructed":0,"n_ran_no_instrument_failure":5,"n_unverified":3,"ran_from_kinds":["official"]}}},{"url":"/paper/outfox-llm-generated-essay-detection-through","slug":"outfox-llm-generated-essay-detection-through","title":"OUTFOX: LLM-Generated Essay Detection Through In-Context Learning with Adversarially Generated Examples","date":"2023-07-21","arxiv_id":"2307.11729","repositories_listed":1,"syntology":{"n":8,"n_ran":6,"n_constructed":0,"n_ran_checked":5,"n_instrument":1,"n_unverified":2,"n_honours":0,"n_violates":1,"n_no_contract":4,"n_pointer_only":1,"phrase":"6 ran (of which 0 constructed an object rather than computing a result; 5 with no instrument failure: 0 honoured, 1 violated, 4 with no contract checked; 1 where Syntology's instrument failed) · 2 unverified","sample_list":"/paper/outfox-llm-generated-essay-detection-through#ran","syntology_url":"https://syntology.ai/paper/2307.11729","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2307.11729"}},"official":{"repos":["ryuryukke/OUTFOX"],"state":"official (archive's flag): 6 ran","n_ran":6,"n_constructed":0,"n_ran_no_instrument_failure":5,"n_unverified":2,"ran_from_kinds":["official"]}}},{"url":"/paper/rfla-a-stealthy-reflected-light-adversarial","slug":"rfla-a-stealthy-reflected-light-adversarial","title":"RFLA: A Stealthy Reflected Light Adversarial Attack in the Physical World","date":"2023-07-14","arxiv_id":"2307.07653","repositories_listed":1,"syntology":null},{"url":"/paper/single-class-target-specific-attack-against","slug":"single-class-target-specific-attack-against","title":"Single-Class Target-Specific Attack against Interpretable Deep Learning Systems","date":"2023-07-12","arxiv_id":"2307.06484","repositories_listed":1,"syntology":null},{"url":"/paper/cross-lingual-cross-temporal-summarization","slug":"cross-lingual-cross-temporal-summarization","title":"Cross-lingual Cross-temporal Summarization: Dataset, Models, Evaluation","date":"2023-06-22","arxiv_id":"2306.12916","repositories_listed":1,"syntology":null},{"url":"/paper/evaluating-adversarial-robustness-of","slug":"evaluating-adversarial-robustness-of","title":"Physics-constrained Attack against Convolution-based Human Motion Prediction","date":"2023-06-21","arxiv_id":"2306.11990","repositories_listed":1,"syntology":null},{"url":"/paper/sample-attackability-in-natural-language","slug":"sample-attackability-in-natural-language","title":"Sample Attackability in Natural Language Adversarial Attacks","date":"2023-06-21","arxiv_id":"2306.12043","repositories_listed":1,"syntology":null},{"url":"/paper/malafide-a-novel-adversarial-convolutive","slug":"malafide-a-novel-adversarial-convolutive","title":"Malafide: a novel adversarial convolutive noise attack against deepfake and spoofing detection systems","date":"2023-06-13","arxiv_id":"2306.07655","repositories_listed":1,"syntology":null},{"url":"/paper/expanding-scope-adapting-english-adversarial","slug":"expanding-scope-adapting-english-adversarial","title":"Expanding Scope: Adapting English Adversarial Attacks to Chinese","date":"2023-06-08","arxiv_id":"2306.04874","repositories_listed":1,"syntology":null},{"url":"/paper/towards-resilient-and-secure-smart-grids","slug":"towards-resilient-and-secure-smart-grids","title":"Towards Resilient and Secure Smart Grids against PMU Adversarial Attacks: A Deep Learning-Based Robust Data Engineering Approach","date":"2023-06-06","arxiv_id":null,"repositories_listed":1,"syntology":null},{"url":"/paper/know-how-to-make-up-your-mind-adversarially","slug":"know-how-to-make-up-your-mind-adversarially","title":"KNOW How to Make Up Your Mind! Adversarially Detecting and Alleviating Inconsistencies in Natural Language Explanations","date":"2023-06-05","arxiv_id":"2306.02980","repositories_listed":1,"syntology":{"n":4,"n_ran":1,"n_constructed":0,"n_ran_checked":0,"n_instrument":1,"n_unverified":3,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":0,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 1 where Syntology's instrument failed) · 3 unverified","sample_list":"/paper/know-how-to-make-up-your-mind-adversarially#ran","syntology_url":"https://syntology.ai/paper/2306.02980","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2306.02980"}},"official":{"repos":["mj-jang/eknowia"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":3,"ran_from_kinds":["official"]}}},{"url":"/paper/graph-based-methods-coupled-with-specific","slug":"graph-based-methods-coupled-with-specific","title":"Graph-based methods coupled with specific distributional distances for adversarial attack detection","date":"2023-05-31","arxiv_id":"2306.00042","repositories_listed":1,"syntology":null},{"url":"/paper/from-adversarial-arms-race-to-model-centric","slug":"from-adversarial-arms-race-to-model-centric","title":"From Adversarial Arms Race to Model-centric Evaluation: Motivating a Unified Automatic Robustness Evaluation Framework","date":"2023-05-29","arxiv_id":"2305.18503","repositories_listed":1,"syntology":{"n":2,"n_ran":2,"n_constructed":0,"n_ran_checked":0,"n_instrument":2,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":0,"phrase":"2 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 2 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/from-adversarial-arms-race-to-model-centric#ran","syntology_url":"https://syntology.ai/paper/2305.18503","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2305.18503"}},"official":{"repos":["thunlp/robtest"],"state":"official (archive's flag): 2 ran","n_ran":2,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/adversarial-attack-on-yolov5-for-traffic-and","slug":"adversarial-attack-on-yolov5-for-traffic-and","title":"Adversarial Attack On Yolov5 For Traffic And Road Sign Detection","date":"2023-05-27","arxiv_id":"2306.06071","repositories_listed":1,"syntology":null},{"url":"/paper/modeling-adversarial-attack-on-pre-trained","slug":"modeling-adversarial-attack-on-pre-trained","title":"Modeling Adversarial Attack on Pre-trained Language Models as Sequential Decision Making","date":"2023-05-27","arxiv_id":"2305.17440","repositories_listed":1,"syntology":null},{"url":"/paper/another-dead-end-for-morphological-tags","slug":"another-dead-end-for-morphological-tags","title":"Another Dead End for Morphological Tags? Perturbed Inputs and Parsing","date":"2023-05-24","arxiv_id":"2305.15119","repositories_listed":1,"syntology":null},{"url":"/paper/towards-benchmarking-and-assessing-visual-1","slug":"towards-benchmarking-and-assessing-visual-1","title":"Towards Benchmarking and Assessing Visual Naturalness of Physical World Adversarial Attacks","date":"2023-05-22","arxiv_id":"2305.12863","repositories_listed":1,"syntology":{"n":2,"n_ran":1,"n_constructed":0,"n_ran_checked":1,"n_instrument":0,"n_unverified":1,"n_honours":0,"n_violates":0,"n_no_contract":1,"n_pointer_only":0,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 0 honoured, 0 violated, 1 with no contract checked; 0 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/towards-benchmarking-and-assessing-visual-1#ran","syntology_url":"https://syntology.ai/paper/2305.12863","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2305.12863"}},"official":{"repos":["zhangsn-19/pan"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":1,"n_unverified":1,"ran_from_kinds":["official"]}}},{"url":"/paper/are-your-explanations-reliable-investigating","slug":"are-your-explanations-reliable-investigating","title":"Are Your Explanations Reliable? Investigating the Stability of LIME in Explaining Text Classifiers by Marrying XAI and Adversarial Attack","date":"2023-05-21","arxiv_id":"2305.12351","repositories_listed":1,"syntology":null},{"url":"/paper/dynamic-transformers-provide-a-false-sense-of","slug":"dynamic-transformers-provide-a-false-sense-of","title":"Dynamic Transformers Provide a False Sense of Efficiency","date":"2023-05-20","arxiv_id":"2305.12228","repositories_listed":1,"syntology":null},{"url":"/paper/towards-an-accurate-and-secure-detector","slug":"towards-an-accurate-and-secure-detector","title":"Spatial-Frequency Discriminability for Revealing Adversarial Perturbations","date":"2023-05-18","arxiv_id":"2305.10856","repositories_listed":1,"syntology":null},{"url":"/paper/diffusion-models-for-imperceptible-and","slug":"diffusion-models-for-imperceptible-and","title":"Diffusion Models for Imperceptible and Transferable Adversarial Attack","date":"2023-05-14","arxiv_id":"2305.08192","repositories_listed":1,"syntology":{"n":7,"n_ran":3,"n_constructed":0,"n_ran_checked":1,"n_instrument":2,"n_unverified":4,"n_honours":0,"n_violates":0,"n_no_contract":1,"n_pointer_only":0,"phrase":"3 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 0 honoured, 0 violated, 1 with no contract checked; 2 where Syntology's instrument failed) · 4 unverified","sample_list":"/paper/diffusion-models-for-imperceptible-and#ran","syntology_url":"https://syntology.ai/paper/2305.08192","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2305.08192"}},"official":{"repos":["windvchen/diffattack"],"state":"official (archive's flag): 3 ran","n_ran":3,"n_constructed":0,"n_ran_no_instrument_failure":1,"n_unverified":4,"ran_from_kinds":["official"]}}},{"url":"/paper/white-box-multi-objective-adversarial-attack","slug":"white-box-multi-objective-adversarial-attack","title":"White-Box Multi-Objective Adversarial Attack on Dialogue Generation","date":"2023-05-05","arxiv_id":"2305.03655","repositories_listed":1,"syntology":null},{"url":"/paper/new-adversarial-image-detection-based-on","slug":"new-adversarial-image-detection-based-on","title":"New Adversarial Image Detection Based on Sentiment Analysis","date":"2023-05-03","arxiv_id":"2305.03173","repositories_listed":1,"syntology":null},{"url":"/paper/boosting-adversarial-transferability-via","slug":"boosting-adversarial-transferability-via","title":"Boosting Adversarial Transferability via Fusing Logits of Top-1 Decomposed Feature","date":"2023-05-02","arxiv_id":"2305.01361","repositories_listed":1,"syntology":null},{"url":"/paper/combining-generators-of-adversarial-malware","slug":"combining-generators-of-adversarial-malware","title":"Combining Generators of Adversarial Malware Examples to Increase Evasion Rate","date":"2023-04-14","arxiv_id":"2304.07360","repositories_listed":1,"syntology":null},{"url":"/paper/fast-adversarial-cnn-based-perturbation","slug":"fast-adversarial-cnn-based-perturbation","title":"Fast Adversarial CNN-based Perturbation Attack of No-Reference Image Quality Metrics","date":"2023-04-11","arxiv_id":null,"repositories_listed":1,"syntology":null},{"url":"/paper/adversarial-attack-and-defense-for-dehazing","slug":"adversarial-attack-and-defense-for-dehazing","title":"Fooling the Image Dehazing Models by First Order Gradient","date":"2023-03-30","arxiv_id":"2303.17255","repositories_listed":1,"syntology":null},{"url":"/paper/a-pilot-study-of-query-free-adversarial","slug":"a-pilot-study-of-query-free-adversarial","title":"A Pilot Study of Query-Free Adversarial Attack against Stable Diffusion","date":"2023-03-29","arxiv_id":"2303.16378","repositories_listed":1,"syntology":{"n":3,"n_ran":3,"n_constructed":0,"n_ran_checked":1,"n_instrument":2,"n_unverified":0,"n_honours":1,"n_violates":0,"n_no_contract":0,"n_pointer_only":3,"phrase":"3 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 1 honoured, 0 violated, 0 with no contract checked; 2 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/a-pilot-study-of-query-free-adversarial#ran","syntology_url":"https://syntology.ai/paper/2303.16378","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2303.16378"}},"official":{"repos":["optml-group/qf-attack"],"state":"official (archive's flag): 3 ran","n_ran":3,"n_constructed":0,"n_ran_no_instrument_failure":1,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/classifier-robustness-enhancement-via-test","slug":"classifier-robustness-enhancement-via-test","title":"Class-Conditioned Transformation for Enhanced Robust Image Classification","date":"2023-03-27","arxiv_id":"2303.15409","repositories_listed":1,"syntology":{"n":10,"n_ran":7,"n_constructed":0,"n_ran_checked":4,"n_instrument":3,"n_unverified":3,"n_honours":0,"n_violates":0,"n_no_contract":4,"n_pointer_only":1,"phrase":"7 ran (of which 0 constructed an object rather than computing a result; 4 with no instrument failure: 0 honoured, 0 violated, 4 with no contract checked; 3 where Syntology's instrument failed) · 3 unverified","sample_list":"/paper/classifier-robustness-enhancement-via-test#ran","syntology_url":"https://syntology.ai/paper/2303.15409","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2303.15409"}},"official":{"repos":["tsachiblau/Class-Conditioned-Transformation-for-Enhanced-Robust-Image-Classification"],"state":"official (archive's flag): 7 ran","n_ran":7,"n_constructed":0,"n_ran_no_instrument_failure":4,"n_unverified":3,"ran_from_kinds":["official"]}}},{"url":"/paper/adversarial-attack-and-defense-for-medical","slug":"adversarial-attack-and-defense-for-medical","title":"Survey on Adversarial Attack and Defense for Medical Image Analysis: Methods and Challenges","date":"2023-03-24","arxiv_id":"2303.14133","repositories_listed":1,"syntology":null},{"url":"/paper/feature-separation-and-recalibration-for","slug":"feature-separation-and-recalibration-for","title":"Feature Separation and Recalibration for Adversarial Robustness","date":"2023-03-24","arxiv_id":"2303.13846","repositories_listed":1,"syntology":{"n":2,"n_ran":2,"n_constructed":0,"n_ran_checked":2,"n_instrument":0,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":2,"n_pointer_only":0,"phrase":"2 ran (of which 0 constructed an object rather than computing a result; 2 with no instrument failure: 0 honoured, 0 violated, 2 with no contract checked; 0 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/feature-separation-and-recalibration-for#ran","syntology_url":"https://syntology.ai/paper/2303.13846","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2303.13846"}},"official":{"repos":["wkim97/fsr"],"state":"official (archive's flag): 2 ran","n_ran":2,"n_constructed":0,"n_ran_no_instrument_failure":2,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/improved-adversarial-training-through","slug":"improved-adversarial-training-through","title":"Improved Adversarial Training Through Adaptive Instance-wise Loss Smoothing","date":"2023-03-24","arxiv_id":"2303.14077","repositories_listed":1,"syntology":null},{"url":"/paper/revisiting-deepfool-generalization-and","slug":"revisiting-deepfool-generalization-and","title":"Revisiting DeepFool: generalization and improvement","date":"2023-03-22","arxiv_id":"2303.12481","repositories_listed":1,"syntology":null},{"url":"/paper/sibling-attack-rethinking-transferable","slug":"sibling-attack-rethinking-transferable","title":"Sibling-Attack: Rethinking Transferable Adversarial Attacks against Face Recognition","date":"2023-03-22","arxiv_id":"2303.12512","repositories_listed":1,"syntology":null},{"url":"/paper/translate-your-gibberish-black-box","slug":"translate-your-gibberish-black-box","title":"Translate your gibberish: black-box adversarial attack on machine translation systems","date":"2023-03-20","arxiv_id":"2303.10974","repositories_listed":1,"syntology":null},{"url":"/paper/can-adversarial-examples-be-parsed-to-reveal","slug":"can-adversarial-examples-be-parsed-to-reveal","title":"Can Adversarial Examples Be Parsed to Reveal Victim Model Information?","date":"2023-03-13","arxiv_id":"2303.07474","repositories_listed":1,"syntology":null},{"url":"/paper/decision-badge-decision-based-adversarial","slug":"decision-badge-decision-based-adversarial","title":"Decision-BADGE: Decision-based Adversarial Batch Attack with Directional Gradient Estimation","date":"2023-03-09","arxiv_id":"2303.04980","repositories_listed":1,"syntology":null},{"url":"/paper/targeted-adversarial-attacks-against-neural-1","slug":"targeted-adversarial-attacks-against-neural-1","title":"Targeted Adversarial Attacks against Neural Machine Translation","date":"2023-03-02","arxiv_id":"2303.01068","repositories_listed":1,"syntology":{"n":6,"n_ran":5,"n_constructed":0,"n_ran_checked":5,"n_instrument":0,"n_unverified":1,"n_honours":0,"n_violates":0,"n_no_contract":5,"n_pointer_only":0,"phrase":"5 ran (of which 0 constructed an object rather than computing a result; 5 with no instrument failure: 0 honoured, 0 violated, 5 with no contract checked; 0 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/targeted-adversarial-attacks-against-neural-1#ran","syntology_url":"https://syntology.ai/paper/2303.01068","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2303.01068"}},"official":{"repos":["sssadrizadeh/nmt-targeted-attack"],"state":"official (archive's flag): 5 ran","n_ran":5,"n_constructed":0,"n_ran_no_instrument_failure":5,"n_unverified":1,"ran_from_kinds":["official"]}}},{"url":"/paper/adversarial-machine-learning-a-systematic","slug":"adversarial-machine-learning-a-systematic","title":"Attacks in Adversarial Machine Learning: A Systematic Survey from the Life-cycle Perspective","date":"2023-02-19","arxiv_id":"2302.09457","repositories_listed":1,"syntology":{"n":2,"n_ran":2,"n_constructed":0,"n_ran_checked":1,"n_instrument":1,"n_unverified":0,"n_honours":1,"n_violates":0,"n_no_contract":0,"n_pointer_only":2,"phrase":"2 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 1 honoured, 0 violated, 0 with no contract checked; 1 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/adversarial-machine-learning-a-systematic#ran","syntology_url":"https://syntology.ai/paper/2302.09457","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2302.09457"}},"official":{"repos":["sclbd/backdoorbench"],"state":"official (archive's flag): 2 ran","n_ran":2,"n_constructed":0,"n_ran_no_instrument_failure":1,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/x-adv-physical-adversarial-object-attacks","slug":"x-adv-physical-adversarial-object-attacks","title":"X-Adv: Physical Adversarial Object Attacks against X-ray Prohibited Item Detection","date":"2023-02-19","arxiv_id":"2302.09491","repositories_listed":1,"syntology":{"n":10,"n_ran":8,"n_constructed":0,"n_ran_checked":3,"n_instrument":5,"n_unverified":2,"n_honours":0,"n_violates":0,"n_no_contract":3,"n_pointer_only":2,"phrase":"8 ran (of which 0 constructed an object rather than computing a result; 3 with no instrument failure: 0 honoured, 0 violated, 3 with no contract checked; 5 where Syntology's instrument failed) · 2 unverified","sample_list":"/paper/x-adv-physical-adversarial-object-attacks#ran","syntology_url":"https://syntology.ai/paper/2302.09491","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2302.09491"}},"official":{"repos":["dig-beihang/x-adv"],"state":"official (archive's flag): 8 ran","n_ran":8,"n_constructed":0,"n_ran_no_instrument_failure":3,"n_unverified":2,"ran_from_kinds":["official"]}}},{"url":"/paper/graph-adversarial-immunization-for","slug":"graph-adversarial-immunization-for","title":"Graph Adversarial Immunization for Certifiable Robustness","date":"2023-02-16","arxiv_id":"2302.08051","repositories_listed":1,"syntology":null},{"url":"/paper/robust-mid-pass-filtering-graph-convolutional","slug":"robust-mid-pass-filtering-graph-convolutional","title":"Robust Mid-Pass Filtering Graph Convolutional Networks","date":"2023-02-16","arxiv_id":"2302.08048","repositories_listed":1,"syntology":{"n":3,"n_ran":0,"n_constructed":0,"n_ran_checked":0,"n_instrument":0,"n_unverified":3,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":3,"phrase":"0 ran · 3 unverified","sample_list":"/paper/robust-mid-pass-filtering-graph-convolutional#ran","syntology_url":"https://syntology.ai/paper/2302.08048","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2302.08048"}},"official":{"repos":["huangJC0429/Mid-GCN"],"state":"official: harvested, nothing ran","n_ran":0,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":3,"ran_from_kinds":[]}}},{"url":"/paper/threatening-patch-attacks-on-object-detection","slug":"threatening-patch-attacks-on-object-detection","title":"Threatening Patch Attacks on Object Detection in Optical Remote Sensing Images","date":"2023-02-13","arxiv_id":"2302.06060","repositories_listed":1,"syntology":null},{"url":"/paper/transfool-an-adversarial-attack-against","slug":"transfool-an-adversarial-attack-against","title":"TransFool: An Adversarial Attack against Neural Machine Translation Models","date":"2023-02-02","arxiv_id":"2302.00944","repositories_listed":1,"syntology":null},{"url":"/paper/identifying-adversarially-attackable-and","slug":"identifying-adversarially-attackable-and","title":"Identifying Adversarially Attackable and Robust Samples","date":"2023-01-30","arxiv_id":"2301.12896","repositories_listed":1,"syntology":null},{"url":"/paper/on-the-adversarial-robustness-of-camera-based","slug":"on-the-adversarial-robustness-of-camera-based","title":"On the Adversarial Robustness of Camera-based 3D Object Detection","date":"2023-01-25","arxiv_id":"2301.10766","repositories_listed":1,"syntology":null},{"url":"/paper/availability-adversarial-attack-and","slug":"availability-adversarial-attack-and","title":"Availability Adversarial Attack and Countermeasures for Deep Learning-based Load Forecasting","date":"2023-01-04","arxiv_id":"2301.01832","repositories_listed":1,"syntology":null},{"url":"/paper/angelic-patches-for-improving-third-party","slug":"angelic-patches-for-improving-third-party","title":"Angelic Patches for Improving Third-Party Object Detector Performance","date":"2023-01-01","arxiv_id":null,"repositories_listed":1,"syntology":null},{"url":"/paper/explaining-adversarial-robustness-of-neural","slug":"explaining-adversarial-robustness-of-neural","title":"Explaining Adversarial Robustness of Neural Networks from Clustering Effect Perspective","date":"2023-01-01","arxiv_id":null,"repositories_listed":1,"syntology":null},{"url":"/paper/generalizable-black-box-adversarial-attack","slug":"generalizable-black-box-adversarial-attack","title":"Generalizable Black-Box Adversarial Attack with Meta Learning","date":"2023-01-01","arxiv_id":"2301.00364","repositories_listed":1,"syntology":null},{"url":"/paper/proximal-splitting-adversarial-attack-for","slug":"proximal-splitting-adversarial-attack-for","title":"Proximal Splitting Adversarial Attack for Semantic Segmentation","date":"2023-01-01","arxiv_id":null,"repositories_listed":1,"syntology":null},{"url":"/paper/riatig-reliable-and-imperceptible-adversarial","slug":"riatig-reliable-and-imperceptible-adversarial","title":"RIATIG: Reliable and Imperceptible Adversarial Text-to-Image Generation With Natural Prompts","date":"2023-01-01","arxiv_id":null,"repositories_listed":1,"syntology":null},{"url":"/paper/towards-transferable-targeted-adversarial","slug":"towards-transferable-targeted-adversarial","title":"Towards Transferable Targeted Adversarial Examples","date":"2023-01-01","arxiv_id":null,"repositories_listed":1,"syntology":null},{"url":"/paper/simultaneously-optimizing-perturbations-and","slug":"simultaneously-optimizing-perturbations-and","title":"Simultaneously Optimizing Perturbations and Positions for Black-box Adversarial Patch Attacks","date":"2022-12-26","arxiv_id":"2212.12995","repositories_listed":1,"syntology":null},{"url":"/paper/discrete-point-wise-attack-is-not-enough","slug":"discrete-point-wise-attack-is-not-enough","title":"Discrete Point-wise Attack Is Not Enough: Generalized Manifold Adversarial Attack for Face Recognition","date":"2022-12-19","arxiv_id":"2301.06083","repositories_listed":1,"syntology":null},{"url":"/paper/hotcold-block-fooling-thermal-infrared","slug":"hotcold-block-fooling-thermal-infrared","title":"HOTCOLD Block: Fooling Thermal Infrared Detectors with a Novel Wearable Design","date":"2022-12-12","arxiv_id":"2212.05709","repositories_listed":1,"syntology":null},{"url":"/paper/understanding-and-combating-robust","slug":"understanding-and-combating-robust","title":"Understanding and Combating Robust Overfitting via Input Loss Landscape Analysis and Regularization","date":"2022-12-09","arxiv_id":"2212.04985","repositories_listed":1,"syntology":{"n":14,"n_ran":11,"n_constructed":0,"n_ran_checked":10,"n_instrument":1,"n_unverified":3,"n_honours":0,"n_violates":0,"n_no_contract":10,"n_pointer_only":1,"phrase":"11 ran (of which 0 constructed an object rather than computing a result; 10 with no instrument failure: 0 honoured, 0 violated, 10 with no contract checked; 1 where Syntology's instrument failed) · 3 unverified","sample_list":"/paper/understanding-and-combating-robust#ran","syntology_url":"https://syntology.ai/paper/2212.04985","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2212.04985"}},"official":{"repos":["treelli/combating-ro-advlc"],"state":"official (archive's flag): 11 ran","n_ran":11,"n_constructed":0,"n_ran_no_instrument_failure":10,"n_unverified":3,"ran_from_kinds":["official"]}}},{"url":"/paper/imperceptible-adversarial-attack-via","slug":"imperceptible-adversarial-attack-via","title":"Imperceptible Adversarial Attack via Invertible Neural Networks","date":"2022-11-28","arxiv_id":"2211.15030","repositories_listed":1,"syntology":null},{"url":"/paper/foiling-explanations-in-deep-neural-networks","slug":"foiling-explanations-in-deep-neural-networks","title":"Foiling Explanations in Deep Neural Networks","date":"2022-11-27","arxiv_id":"2211.14860","repositories_listed":1,"syntology":null},{"url":"/paper/explainable-and-safe-reinforcement-learning","slug":"explainable-and-safe-reinforcement-learning","title":"Explainable and Safe Reinforcement Learning for Autonomous Air Mobility","date":"2022-11-24","arxiv_id":"2211.13474","repositories_listed":1,"syntology":null},{"url":"/paper/saga-spectral-adversarial-geometric-attack-on","slug":"saga-spectral-adversarial-geometric-attack-on","title":"SAGA: Spectral Adversarial Geometric Attack on 3D Meshes","date":"2022-11-24","arxiv_id":"2211.13775","repositories_listed":1,"syntology":null},{"url":"/paper/ignore-previous-prompt-attack-techniques-for","slug":"ignore-previous-prompt-attack-techniques-for","title":"Ignore Previous Prompt: Attack Techniques For Language Models","date":"2022-11-17","arxiv_id":"2211.09527","repositories_listed":1,"syntology":{"n":6,"n_ran":2,"n_constructed":0,"n_ran_checked":2,"n_instrument":0,"n_unverified":4,"n_honours":0,"n_violates":0,"n_no_contract":2,"n_pointer_only":0,"phrase":"2 ran (of which 0 constructed an object rather than computing a result; 2 with no instrument failure: 0 honoured, 0 violated, 2 with no contract checked; 0 where Syntology's instrument failed) · 4 unverified","sample_list":"/paper/ignore-previous-prompt-attack-techniques-for#ran","syntology_url":"https://syntology.ai/paper/2211.09527","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2211.09527"}},"official":{"repos":["agencyenterprise/promptinject"],"state":"official (archive's flag): 2 ran","n_ran":2,"n_constructed":0,"n_ran_no_instrument_failure":2,"n_unverified":4,"ran_from_kinds":["official"]}}},{"url":"/paper/person-text-image-matching-via-text-featur","slug":"person-text-image-matching-via-text-featur","title":"Person Text-Image Matching via Text-Feature Interpretability Embedding and External Attack Node Implantation","date":"2022-11-16","arxiv_id":"2211.08657","repositories_listed":1,"syntology":null},{"url":"/paper/t-sea-transfer-based-self-ensemble-attack-on","slug":"t-sea-transfer-based-self-ensemble-attack-on","title":"T-SEA: Transfer-based Self-Ensemble Attack on Object Detection","date":"2022-11-16","arxiv_id":"2211.09773","repositories_listed":1,"syntology":{"n":2,"n_ran":2,"n_constructed":0,"n_ran_checked":0,"n_instrument":2,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":2,"phrase":"2 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 2 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/t-sea-transfer-based-self-ensemble-attack-on#ran","syntology_url":"https://syntology.ai/paper/2211.09773","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2211.09773"}},"official":{"repos":["vdigpku/t-sea"],"state":"official (archive's flag): 2 ran","n_ran":2,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/mora-improving-ensemble-robustness-evaluation","slug":"mora-improving-ensemble-robustness-evaluation","title":"MORA: Improving Ensemble Robustness Evaluation with Model-Reweighing Attack","date":"2022-11-15","arxiv_id":"2211.08008","repositories_listed":1,"syntology":{"n":4,"n_ran":3,"n_constructed":3,"n_ran_checked":3,"n_instrument":0,"n_unverified":1,"n_honours":0,"n_violates":0,"n_no_contract":3,"n_pointer_only":4,"phrase":"3 ran (of which 3 constructed an object rather than computing a result; 3 with no instrument failure: 0 honoured, 0 violated, 3 with no contract checked; 0 where Syntology's instrument failed) · 1 unverified; every one of the 3 samples that ran constructed an object rather than computing a result","sample_list":"/paper/mora-improving-ensemble-robustness-evaluation#ran","syntology_url":"https://syntology.ai/paper/2211.08008","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2211.08008"}},"official":{"repos":["lafeat/mora"],"state":"official (archive's flag): 3 ran","n_ran":3,"n_constructed":3,"n_ran_no_instrument_failure":3,"n_unverified":1,"ran_from_kinds":["official"]}}},{"url":"/paper/generating-textual-adversaries-with-minimal","slug":"generating-textual-adversaries-with-minimal","title":"Generating Textual Adversaries with Minimal Perturbation","date":"2022-11-12","arxiv_id":"2211.06571","repositories_listed":1,"syntology":null},{"url":"/paper/stay-home-safe-with-starving-federated-data","slug":"stay-home-safe-with-starving-federated-data","title":"Robust Smart Home Face Recognition under Starving Federated Data","date":"2022-11-10","arxiv_id":"2211.05410","repositories_listed":1,"syntology":null},{"url":"/paper/preserving-semantics-in-textual-adversarial","slug":"preserving-semantics-in-textual-adversarial","title":"Preserving Semantics in Textual Adversarial Attacks","date":"2022-11-08","arxiv_id":"2211.04205","repositories_listed":1,"syntology":null},{"url":"/paper/are-alphazero-like-agents-robust-to","slug":"are-alphazero-like-agents-robust-to","title":"Are AlphaZero-like Agents Robust to Adversarial Perturbations?","date":"2022-11-07","arxiv_id":"2211.03769","repositories_listed":1,"syntology":null},{"url":"/paper/logits-are-predictive-of-network-type","slug":"logits-are-predictive-of-network-type","title":"Logits are predictive of network type","date":"2022-11-04","arxiv_id":"2211.02272","repositories_listed":1,"syntology":null},{"url":"/paper/rethinking-and-improving-robustness-of","slug":"rethinking-and-improving-robustness-of","title":"Rethinking and Improving Robustness of Convolutional Neural Networks: a Shapley Value-based Approach in Frequency Domain","date":"2022-11-01","arxiv_id":null,"repositories_listed":1,"syntology":null},{"url":"/paper/rethinking-image-restoration-for-object","slug":"rethinking-image-restoration-for-object","title":"Rethinking Image Restoration for Object Detection","date":"2022-11-01","arxiv_id":null,"repositories_listed":1,"syntology":null},{"url":"/paper/universal-perturbation-attack-on","slug":"universal-perturbation-attack-on","title":"Universal Perturbation Attack on Differentiable No-Reference Image- and Video-Quality Metrics","date":"2022-11-01","arxiv_id":"2211.00366","repositories_listed":1,"syntology":null},{"url":"/paper/character-level-white-box-adversarial-attacks","slug":"character-level-white-box-adversarial-attacks","title":"Character-level White-Box Adversarial Attacks against Transformers via Attachable Subwords Substitution","date":"2022-10-31","arxiv_id":"2210.17004","repositories_listed":1,"syntology":null},{"url":"/paper/tasa-deceiving-question-answering-models-by","slug":"tasa-deceiving-question-answering-models-by","title":"TASA: Deceiving Question Answering Models by Twin Answer Sentences Attack","date":"2022-10-27","arxiv_id":"2210.15221","repositories_listed":1,"syntology":null},{"url":"/paper/lp-bfgs-attack-an-adversarial-attack-based-on","slug":"lp-bfgs-attack-an-adversarial-attack-based-on","title":"LP-BFGS attack: An adversarial attack based on the Hessian with limited pixels","date":"2022-10-26","arxiv_id":"2210.15446","repositories_listed":1,"syntology":null},{"url":"/paper/tape-assessing-few-shot-russian-language","slug":"tape-assessing-few-shot-russian-language","title":"TAPE: Assessing Few-shot Russian Language Understanding","date":"2022-10-23","arxiv_id":"2210.12813","repositories_listed":1,"syntology":null},{"url":"/paper/beyond-model-interpretability-on-the","slug":"beyond-model-interpretability-on-the","title":"Beyond Model Interpretability: On the Faithfulness and Adversarial Robustness of Contrastive Textual Explanations","date":"2022-10-17","arxiv_id":"2210.08902","repositories_listed":1,"syntology":null},{"url":"/paper/dynamics-aware-adversarial-attack-of-adaptive","slug":"dynamics-aware-adversarial-attack-of-adaptive","title":"Dynamics-aware Adversarial Attack of Adaptive Neural Networks","date":"2022-10-15","arxiv_id":"2210.08159","repositories_listed":1,"syntology":null},{"url":"/paper/accelat-a-framework-for-accelerating-the","slug":"accelat-a-framework-for-accelerating-the","title":"AccelAT: A Framework for Accelerating the Adversarial Training of Deep Neural Networks through Accuracy Gradient","date":"2022-10-13","arxiv_id":"2210.06888","repositories_listed":1,"syntology":null},{"url":"/paper/natural-color-fool-towards-boosting-black-box","slug":"natural-color-fool-towards-boosting-black-box","title":"Natural Color Fool: Towards Boosting Black-box Unrestricted Attacks","date":"2022-10-05","arxiv_id":"2210.02041","repositories_listed":1,"syntology":{"n":12,"n_ran":10,"n_constructed":0,"n_ran_checked":0,"n_instrument":10,"n_unverified":2,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":12,"phrase":"10 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 10 where Syntology's instrument failed) · 2 unverified","sample_list":"/paper/natural-color-fool-towards-boosting-black-box#ran","syntology_url":"https://syntology.ai/paper/2210.02041","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2210.02041"}},"official":{"repos":["ylhz/natural-color-fool"],"state":"official (archive's flag): 9 ran","n_ran":9,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":2,"ran_from_kinds":["community","official"]}}},{"url":"/paper/robust-fair-clustering-a-novel-fairness","slug":"robust-fair-clustering-a-novel-fairness","title":"Robust Fair Clustering: A Novel Fairness Attack and Defense Framework","date":"2022-10-04","arxiv_id":"2210.01953","repositories_listed":1,"syntology":null},{"url":"/paper/physical-adversarial-attack-meets-computer","slug":"physical-adversarial-attack-meets-computer","title":"Physical Adversarial Attack meets Computer Vision: A Decade Survey","date":"2022-09-30","arxiv_id":"2209.15179","repositories_listed":1,"syntology":null},{"url":"/paper/visual-privacy-protection-based-on-type-i","slug":"visual-privacy-protection-based-on-type-i","title":"Hiding Visual Information via Obfuscating Adversarial Perturbations","date":"2022-09-30","arxiv_id":"2209.15304","repositories_listed":1,"syntology":null}],"record_sha256":"15b1d3558fe850cc498ab6a08811ef9674e67b296f3db0d8fcc59ad954613e17","record_changed_at":"2026-09-28","record_changed_at_basis":"first_hashed"}