{"about":{"non_affiliation":"Code with Papers and Syntology are not affiliated with, endorsed by, or sponsored by Papers with Code, Meta, or the pwc-archive mirror.","site":"https://codewithpapers.app","licence":"CC BY-SA 4.0","licence_url":"https://creativecommons.org/licenses/by-sa/4.0/legalcode","attribution":"https://codewithpapers.app/attribution","modified":"archive material modified by Syntology; see the attribution page","syntology":{"site":"https://syntology.ai","developers":"https://syntology.ai/developers","mcp":{"server":"https://syntology.ai/mcp","transport":"streamable-http","server_card":"https://syntology.ai/.well-known/mcp/server-card.json","auth":{"type":"trial token, no account","trial_token":"https://syntology.ai/api/oauth/trial/token","method":"POST","docs":"https://syntology.ai/developers"}},"have":"https://syntology.ai/api/graph/have?x=<method, arXiv id or title> (free, answers coverage only)","paper_base":"https://syntology.ai/paper/","atlas_base":"https://app.syntology.ai/?focus="},"machine_readable":[{"url":"https://codewithpapers.app/llms.txt","what":"the machine catalog: every machine-readable file, counted"},{"url":"https://codewithpapers.app/index/manifest.json","what":"paper-to-code index by arXiv id, with Syntology's counts"},{"url":"https://codewithpapers.app/search/manifest.json","what":"site search index (titles, authors) and its files"},{"url":"https://codewithpapers.app/download","what":"bulk files: Syntology's layer, described there"},{"url":"https://codewithpapers.app/build_manifest.json","what":"the build record: inputs, counts, exclusions, probes"}]},"url":"/task/adversarial-attack/papers/ran/2","list_of":"/task/adversarial-attack","task":"Adversarial Attack","archive":{"snapshot":"2025-07-28"},"key_notes":{"n_ran_checked":"legacy name, kept unchanged so existing readers do not break: it counts the samples that ran with no instrument failure (honoured, violated, and ran with no contract checked); it does not mean a contract was checked, and the pages print it as 'K with no instrument failure', not 'K checked'","n_constructed":"a sub-count of the samples that ran, never subtracted from them and never a failure: an executed sample whose run returned an instance of its own class (fixture_out_type equals the entry name): the run built an object and did not compute a result (Syntology's RAN record, counts.constructed)"},"syntology_read_at":"2026-09-28T10:30:06+00:00","order":"ran","order_definition":"only papers where Syntology ran at least one harvested sample; date (newest first), ties by arXiv id","caption":"We ran code from the paper's repository; we did not run it on this task or check it against the task's benchmarks.","absence":"A paper missing from this list is not a recorded non-run: it may have no arXiv id, no harvested code, or only samples that have not run yet.","page":2,"pages_in_order":3,"rows_per_page":100,"rows":[101,200],"of":206,"counts":{"archive_papers_tagged":1808,"with_a_code_link":745,"where_syntology_ran_a_sample":206,"not_listed_spam_title":0,"listed":1808,"listed_where_code_ran":206,"where_syntology_ran_a_sample_split":{"with_a_run_with_no_instrument_failure":161,"every_run_a_failure_of_syntologys_instrument":45,"listed_with_a_run_with_no_instrument_failure":161,"listed_every_run_a_failure_of_syntologys_instrument":45,"filter":{"states":["a run with no instrument failure","any run, instrument failures included"],"default":"a run with no instrument failure","note":"on the 'only where code ran' pages the default hides, in the browser, the rows where every run was a failure of Syntology's instrument; the second state shows them again. Rows are hidden, never re-ordered; these twins list every row"}},"definition":"distinct papers the archive tags; 'where Syntology ran a sample' counts papers with at least one harvested sample that ran, which is not a correctness claim"},"first_page":"/task/adversarial-attack/papers/ran/1","prev":"/task/adversarial-attack/papers/ran/1","next":"/task/adversarial-attack/papers/ran/3","papers":[{"url":"/paper/adversarial-attacks-on-gaussian-process","slug":"adversarial-attacks-on-gaussian-process","title":"Adversarial Attacks on Gaussian Process Bandits","date":"2021-10-16","arxiv_id":"2110.08449","repositories_listed":1,"syntology":{"n":6,"n_ran":1,"n_constructed":0,"n_ran_checked":1,"n_instrument":0,"n_unverified":5,"n_honours":0,"n_violates":0,"n_no_contract":1,"n_pointer_only":0,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 0 honoured, 0 violated, 1 with no contract checked; 0 where Syntology's instrument failed) · 5 unverified","sample_list":"/paper/adversarial-attacks-on-gaussian-process#ran","syntology_url":"https://syntology.ai/paper/2110.08449","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2110.08449"}},"official":{"repos":["eric-vader/attack-bo"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":1,"n_unverified":5,"ran_from_kinds":["official"]}}},{"url":"/paper/attack-as-the-best-defense-nullifying-image-1","slug":"attack-as-the-best-defense-nullifying-image-1","title":"Attack as the Best Defense: Nullifying Image-to-image Translation GANs via Limit-aware Adversarial Attack","date":"2021-10-06","arxiv_id":"2110.02516","repositories_listed":1,"syntology":{"n":5,"n_ran":5,"n_constructed":0,"n_ran_checked":3,"n_instrument":2,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":3,"n_pointer_only":2,"phrase":"5 ran (of which 0 constructed an object rather than computing a result; 3 with no instrument failure: 0 honoured, 0 violated, 3 with no contract checked; 2 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/attack-as-the-best-defense-nullifying-image-1#ran","syntology_url":"https://syntology.ai/paper/2110.02516","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2110.02516"}},"official":{"repos":["jimmy-academia/lasgsa"],"state":"official (archive's flag): 5 ran","n_ran":5,"n_constructed":0,"n_ran_no_instrument_failure":3,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/excess-capacity-and-backdoor-poisoning","slug":"excess-capacity-and-backdoor-poisoning","title":"Excess Capacity and Backdoor Poisoning","date":"2021-09-02","arxiv_id":"2109.00685","repositories_listed":1,"syntology":{"n":3,"n_ran":3,"n_constructed":0,"n_ran_checked":3,"n_instrument":0,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":3,"n_pointer_only":0,"phrase":"3 ran (of which 0 constructed an object rather than computing a result; 3 with no instrument failure: 0 honoured, 0 violated, 3 with no contract checked; 0 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/excess-capacity-and-backdoor-poisoning#ran","syntology_url":"https://syntology.ai/paper/2109.00685","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2109.00685"}},"official":{"repos":["narenmanoj/mnist-adv-training"],"state":"official: no sample here; runs from other or unrecorded repositories","n_ran":0,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["found_in_text"]}}},{"url":"/paper/advdrop-adversarial-attack-to-dnns-by","slug":"advdrop-adversarial-attack-to-dnns-by","title":"AdvDrop: Adversarial Attack to DNNs by Dropping Information","date":"2021-08-20","arxiv_id":"2108.09034","repositories_listed":1,"syntology":{"n":10,"n_ran":7,"n_constructed":0,"n_ran_checked":7,"n_instrument":0,"n_unverified":3,"n_honours":0,"n_violates":0,"n_no_contract":7,"n_pointer_only":0,"phrase":"7 ran (of which 0 constructed an object rather than computing a result; 7 with no instrument failure: 0 honoured, 0 violated, 7 with no contract checked; 0 where Syntology's instrument failed) · 3 unverified","sample_list":"/paper/advdrop-adversarial-attack-to-dnns-by#ran","syntology_url":"https://syntology.ai/paper/2108.09034","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2108.09034"}},"official":{"repos":["rjduan/advdrop"],"state":"official (archive's flag): 7 ran","n_ran":7,"n_constructed":0,"n_ran_no_instrument_failure":7,"n_unverified":3,"ran_from_kinds":["official"]}}},{"url":"/paper/amplitude-phase-recombination-rethinking","slug":"amplitude-phase-recombination-rethinking","title":"Amplitude-Phase Recombination: Rethinking Robustness of Convolutional Neural Networks in Frequency Domain","date":"2021-08-19","arxiv_id":"2108.08487","repositories_listed":1,"syntology":{"n":10,"n_ran":9,"n_constructed":0,"n_ran_checked":2,"n_instrument":7,"n_unverified":1,"n_honours":2,"n_violates":0,"n_no_contract":0,"n_pointer_only":0,"phrase":"9 ran (of which 0 constructed an object rather than computing a result; 2 with no instrument failure: 2 honoured, 0 violated, 0 with no contract checked; 7 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/amplitude-phase-recombination-rethinking#ran","syntology_url":"https://syntology.ai/paper/2108.08487","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2108.08487"}},"official":{"repos":["iCGY96/APR"],"state":"official (archive's flag): 9 ran","n_ran":9,"n_constructed":0,"n_ran_no_instrument_failure":2,"n_unverified":1,"ran_from_kinds":["official"]}}},{"url":"/paper/agkd-bml-defense-against-adversarial-attack","slug":"agkd-bml-defense-against-adversarial-attack","title":"AGKD-BML: Defense Against Adversarial Attack by Attention Guided Knowledge Distillation and Bi-directional Metric Learning","date":"2021-08-13","arxiv_id":"2108.06017","repositories_listed":1,"syntology":{"n":1,"n_ran":1,"n_constructed":0,"n_ran_checked":1,"n_instrument":0,"n_unverified":0,"n_honours":0,"n_violates":1,"n_no_contract":0,"n_pointer_only":1,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 0 honoured, 1 violated, 0 with no contract checked; 0 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/agkd-bml-defense-against-adversarial-attack#ran","syntology_url":"https://syntology.ai/paper/2108.06017","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2108.06017"}},"official":{"repos":["hongw579/agkd-bml"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":1,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/poison-ink-robust-and-invisible-backdoor","slug":"poison-ink-robust-and-invisible-backdoor","title":"Poison Ink: Robust and Invisible Backdoor Attack","date":"2021-08-05","arxiv_id":"2108.02488","repositories_listed":1,"syntology":{"n":2,"n_ran":1,"n_constructed":0,"n_ran_checked":0,"n_instrument":1,"n_unverified":1,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":0,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 1 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/poison-ink-robust-and-invisible-backdoor#ran","syntology_url":"https://syntology.ai/paper/2108.02488","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2108.02488"}},"official":null}},{"url":"/paper/small-in-distribution-changes-in-3d","slug":"small-in-distribution-changes-in-3d","title":"In-distribution adversarial attacks on object recognition models using gradient-free search","date":"2021-06-30","arxiv_id":"2106.16198","repositories_listed":2,"syntology":{"n":1,"n_ran":1,"n_constructed":0,"n_ran_checked":0,"n_instrument":1,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":1,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 1 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/small-in-distribution-changes-in-3d#ran","syntology_url":"https://syntology.ai/paper/2106.16198","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2106.16198"}},"official":{"repos":["spandan-madan/in_distribution_adversarial_examples","in-dist-adversarials/in_distribution_adversarial_examples"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/adversarial-attack-on-graph-neural-networks","slug":"adversarial-attack-on-graph-neural-networks","title":"Adversarial Attack on Graph Neural Networks as An Influence Maximization Problem","date":"2021-06-21","arxiv_id":"2106.10785","repositories_listed":2,"syntology":{"n":6,"n_ran":4,"n_constructed":0,"n_ran_checked":4,"n_instrument":0,"n_unverified":2,"n_honours":0,"n_violates":0,"n_no_contract":4,"n_pointer_only":0,"phrase":"4 ran (of which 0 constructed an object rather than computing a result; 4 with no instrument failure: 0 honoured, 0 violated, 4 with no contract checked; 0 where Syntology's instrument failed) · 2 unverified","sample_list":"/paper/adversarial-attack-on-graph-neural-networks#ran","syntology_url":"https://syntology.ai/paper/2106.10785","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2106.10785"}},"official":{"repos":["TheaperDeng/GNN-Attack-InfMax"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":1,"n_unverified":1,"ran_from_kinds":["listed","official"]}}},{"url":"/paper/sparse-and-imperceptible-adversarial-attack","slug":"sparse-and-imperceptible-adversarial-attack","title":"Sparse and Imperceptible Adversarial Attack via a Homotopy Algorithm","date":"2021-06-10","arxiv_id":"2106.06027","repositories_listed":1,"syntology":{"n":5,"n_ran":1,"n_constructed":0,"n_ran_checked":0,"n_instrument":1,"n_unverified":4,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":3,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 1 where Syntology's instrument failed) · 4 unverified","sample_list":"/paper/sparse-and-imperceptible-adversarial-attack#ran","syntology_url":"https://syntology.ai/paper/2106.06027","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2106.06027"}},"official":{"repos":["VITA-Group/SparseADV_Homotopy"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":4,"ran_from_kinds":["official"]}}},{"url":"/paper/pdpgd-primal-dual-proximal-gradient-descent","slug":"pdpgd-primal-dual-proximal-gradient-descent","title":"PDPGD: Primal-Dual Proximal Gradient Descent Adversarial Attack","date":"2021-06-03","arxiv_id":"2106.01538","repositories_listed":3,"syntology":{"n":3,"n_ran":2,"n_constructed":0,"n_ran_checked":2,"n_instrument":0,"n_unverified":1,"n_honours":2,"n_violates":0,"n_no_contract":0,"n_pointer_only":1,"phrase":"2 ran (of which 0 constructed an object rather than computing a result; 2 with no instrument failure: 2 honoured, 0 violated, 0 with no contract checked; 0 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/pdpgd-primal-dual-proximal-gradient-descent#ran","syntology_url":"https://syntology.ai/paper/2106.01538","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2106.01538"}},"official":{"repos":["aam-at/cpgd"],"state":"community repositories only","n_ran":0,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["listed"]}}},{"url":"/paper/rethinking-noisy-label-models-labeler","slug":"rethinking-noisy-label-models-labeler","title":"Rethinking Noisy Label Models: Labeler-Dependent Noise with Adversarial Awareness","date":"2021-05-28","arxiv_id":"2105.14083","repositories_listed":0,"syntology":{"n":19,"n_ran":12,"n_constructed":1,"n_ran_checked":8,"n_instrument":4,"n_unverified":7,"n_honours":0,"n_violates":0,"n_no_contract":8,"n_pointer_only":8,"phrase":"12 ran (of which 1 constructed an object rather than computing a result; 8 with no instrument failure: 0 honoured, 0 violated, 8 with no contract checked; 4 where Syntology's instrument failed) · 7 unverified","sample_list":"/paper/rethinking-noisy-label-models-labeler#ran","syntology_url":"https://syntology.ai/paper/2105.14083","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2105.14083"}},"official":null}},{"url":"/paper/cmua-watermark-a-cross-model-universal","slug":"cmua-watermark-a-cross-model-universal","title":"CMUA-Watermark: A Cross-Model Universal Adversarial Watermark for Combating Deepfakes","date":"2021-05-23","arxiv_id":"2105.10872","repositories_listed":1,"syntology":{"n":5,"n_ran":3,"n_constructed":0,"n_ran_checked":3,"n_instrument":0,"n_unverified":2,"n_honours":0,"n_violates":0,"n_no_contract":3,"n_pointer_only":0,"phrase":"3 ran (of which 0 constructed an object rather than computing a result; 3 with no instrument failure: 0 honoured, 0 violated, 3 with no contract checked; 0 where Syntology's instrument failed) · 2 unverified","sample_list":"/paper/cmua-watermark-a-cross-model-universal#ran","syntology_url":"https://syntology.ai/paper/2105.10872","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2105.10872"}},"official":{"repos":["vdigpku/cmua-watermark"],"state":"official (archive's flag): 3 ran","n_ran":3,"n_constructed":0,"n_ran_no_instrument_failure":3,"n_unverified":2,"ran_from_kinds":["official"]}}},{"url":"/paper/an-orthogonal-classifier-for-improving-the","slug":"an-orthogonal-classifier-for-improving-the","title":"An Orthogonal Classifier for Improving the Adversarial Robustness of Neural Networks","date":"2021-05-19","arxiv_id":"2105.09109","repositories_listed":1,"syntology":{"n":7,"n_ran":5,"n_constructed":0,"n_ran_checked":5,"n_instrument":0,"n_unverified":2,"n_honours":0,"n_violates":0,"n_no_contract":5,"n_pointer_only":0,"phrase":"5 ran (of which 0 constructed an object rather than computing a result; 5 with no instrument failure: 0 honoured, 0 violated, 5 with no contract checked; 0 where Syntology's instrument failed) · 2 unverified","sample_list":"/paper/an-orthogonal-classifier-for-improving-the#ran","syntology_url":"https://syntology.ai/paper/2105.09109","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2105.09109"}},"official":{"repos":["MTandHJ/roboc"],"state":"official (archive's flag): 5 ran","n_ran":5,"n_constructed":0,"n_ran_no_instrument_failure":5,"n_unverified":2,"ran_from_kinds":["official"]}}},{"url":"/paper/3d-adversarial-attacks-beyond-point-cloud","slug":"3d-adversarial-attacks-beyond-point-cloud","title":"3D Adversarial Attacks Beyond Point Cloud","date":"2021-04-25","arxiv_id":"2104.12146","repositories_listed":1,"syntology":{"n":1,"n_ran":1,"n_constructed":0,"n_ran_checked":0,"n_instrument":1,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":0,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 1 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/3d-adversarial-attacks-beyond-point-cloud#ran","syntology_url":"https://syntology.ai/paper/2104.12146","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2104.12146"}},"official":{"repos":["cuge1995/Mesh-Attack"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/attacking-text-classifiers-via-sentence","slug":"attacking-text-classifiers-via-sentence","title":"R&R: Metric-guided Adversarial Sentence Generation","date":"2021-04-17","arxiv_id":"2104.08453","repositories_listed":1,"syntology":{"n":6,"n_ran":6,"n_constructed":0,"n_ran_checked":6,"n_instrument":0,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":6,"n_pointer_only":0,"phrase":"6 ran (of which 0 constructed an object rather than computing a result; 6 with no instrument failure: 0 honoured, 0 violated, 6 with no contract checked; 0 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/attacking-text-classifiers-via-sentence#ran","syntology_url":"https://syntology.ai/paper/2104.08453","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2104.08453"}},"official":{"repos":["DAI-Lab/fibber"],"state":"official (archive's flag): 6 ran","n_ran":6,"n_constructed":0,"n_ran_no_instrument_failure":6,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/iou-attack-towards-temporally-coherent-black","slug":"iou-attack-towards-temporally-coherent-black","title":"IoU Attack: Towards Temporally Coherent Black-Box Adversarial Attack for Visual Object Tracking","date":"2021-03-27","arxiv_id":"2103.14938","repositories_listed":1,"syntology":{"n":1,"n_ran":1,"n_constructed":0,"n_ran_checked":1,"n_instrument":0,"n_unverified":0,"n_honours":0,"n_violates":1,"n_no_contract":0,"n_pointer_only":0,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 0 honoured, 1 violated, 0 with no contract checked; 0 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/iou-attack-towards-temporally-coherent-black#ran","syntology_url":"https://syntology.ai/paper/2103.14938","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2103.14938"}},"official":{"repos":["VISION-SJTU/IoUattack"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":1,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/anti-adversarially-manipulated-attributions","slug":"anti-adversarially-manipulated-attributions","title":"Anti-Adversarially Manipulated Attributions for Weakly and Semi-Supervised Semantic Segmentation","date":"2021-03-16","arxiv_id":"2103.08896","repositories_listed":1,"syntology":{"n":3,"n_ran":1,"n_constructed":0,"n_ran_checked":0,"n_instrument":1,"n_unverified":2,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":0,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 1 where Syntology's instrument failed) · 2 unverified","sample_list":"/paper/anti-adversarially-manipulated-attributions#ran","syntology_url":"https://syntology.ai/paper/2103.08896","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2103.08896"}},"official":{"repos":["jbeomlee93/AdvCAM"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":2,"ran_from_kinds":["official"]}}},{"url":"/paper/adversarial-laser-beam-effective-physical","slug":"adversarial-laser-beam-effective-physical","title":"Adversarial Laser Beam: Effective Physical-World Attack to DNNs in a Blink","date":"2021-03-11","arxiv_id":"2103.06504","repositories_listed":1,"syntology":{"n":2,"n_ran":2,"n_constructed":0,"n_ran_checked":2,"n_instrument":0,"n_unverified":0,"n_honours":2,"n_violates":0,"n_no_contract":0,"n_pointer_only":0,"phrase":"2 ran (of which 0 constructed an object rather than computing a result; 2 with no instrument failure: 2 honoured, 0 violated, 0 with no contract checked; 0 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/adversarial-laser-beam-effective-physical#ran","syntology_url":"https://syntology.ai/paper/2103.06504","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2103.06504"}},"official":{"repos":["RjDuan/Advlight"],"state":"official (archive's flag): 2 ran","n_ran":2,"n_constructed":0,"n_ran_no_instrument_failure":2,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/beta-crown-efficient-bound-propagation-with","slug":"beta-crown-efficient-bound-propagation-with","title":"Beta-CROWN: Efficient Bound Propagation with Per-neuron Split Constraints for Complete and Incomplete Neural Network Robustness Verification","date":"2021-03-11","arxiv_id":"2103.06624","repositories_listed":6,"syntology":{"n":5,"n_ran":4,"n_constructed":1,"n_ran_checked":3,"n_instrument":1,"n_unverified":1,"n_honours":1,"n_violates":1,"n_no_contract":1,"n_pointer_only":1,"phrase":"4 ran (of which 1 constructed an object rather than computing a result; 3 with no instrument failure: 1 honoured, 1 violated, 1 with no contract checked; 1 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/beta-crown-efficient-bound-propagation-with#ran","syntology_url":"https://syntology.ai/paper/2103.06624","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2103.06624"}},"official":{"repos":["KaidiXu/Beta-CROWN","eth-sri/eran"],"state":"official (archive's flag): 4 ran","n_ran":4,"n_constructed":1,"n_ran_no_instrument_failure":3,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/stabilized-medical-image-attacks","slug":"stabilized-medical-image-attacks","title":"Stabilized Medical Image Attacks","date":"2021-03-09","arxiv_id":"2103.05232","repositories_listed":1,"syntology":{"n":5,"n_ran":4,"n_constructed":1,"n_ran_checked":2,"n_instrument":2,"n_unverified":1,"n_honours":1,"n_violates":0,"n_no_contract":1,"n_pointer_only":5,"phrase":"4 ran (of which 1 constructed an object rather than computing a result; 2 with no instrument failure: 1 honoured, 0 violated, 1 with no contract checked; 2 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/stabilized-medical-image-attacks#ran","syntology_url":"https://syntology.ai/paper/2103.05232","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2103.05232"}},"official":{"repos":["imogenqi/SMA"],"state":"official (archive's flag): 4 ran","n_ran":4,"n_constructed":1,"n_ran_no_instrument_failure":2,"n_unverified":1,"ran_from_kinds":["official"]}}},{"url":"/paper/understanding-the-robustness-of-skeleton","slug":"understanding-the-robustness-of-skeleton","title":"Understanding the Robustness of Skeleton-based Action Recognition under Adversarial Attack","date":"2021-03-09","arxiv_id":"2103.05347","repositories_listed":1,"syntology":{"n":6,"n_ran":2,"n_constructed":2,"n_ran_checked":2,"n_instrument":0,"n_unverified":4,"n_honours":0,"n_violates":0,"n_no_contract":2,"n_pointer_only":6,"phrase":"2 ran (of which 2 constructed an object rather than computing a result; 2 with no instrument failure: 0 honoured, 0 violated, 2 with no contract checked; 0 where Syntology's instrument failed) · 4 unverified; every one of the 2 samples that ran constructed an object rather than computing a result","sample_list":"/paper/understanding-the-robustness-of-skeleton#ran","syntology_url":"https://syntology.ai/paper/2103.05347","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2103.05347"}},"official":{"repos":["realcrane/SMART"],"state":"official (archive's flag): 2 ran","n_ran":2,"n_constructed":2,"n_ran_no_instrument_failure":2,"n_unverified":4,"ran_from_kinds":["official"]}}},{"url":"/paper/spectraldefense-detecting-adversarial-attacks","slug":"spectraldefense-detecting-adversarial-attacks","title":"SpectralDefense: Detecting Adversarial Attacks on CNNs in the Fourier Domain","date":"2021-03-04","arxiv_id":"2103.03000","repositories_listed":3,"syntology":{"n":4,"n_ran":2,"n_constructed":0,"n_ran_checked":0,"n_instrument":2,"n_unverified":2,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":4,"phrase":"2 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 2 where Syntology's instrument failed) · 2 unverified","sample_list":"/paper/spectraldefense-detecting-adversarial-attacks#ran","syntology_url":"https://syntology.ai/paper/2103.03000","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2103.03000"}},"official":{"repos":["paulaharder/SpectralAdversarialDefense"],"state":"community repositories only","n_ran":0,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["listed"]}}},{"url":"/paper/online-adversarial-attacks","slug":"online-adversarial-attacks","title":"Online Adversarial Attacks","date":"2021-03-02","arxiv_id":"2103.02014","repositories_listed":1,"syntology":{"n":3,"n_ran":1,"n_constructed":0,"n_ran_checked":1,"n_instrument":0,"n_unverified":2,"n_honours":0,"n_violates":0,"n_no_contract":1,"n_pointer_only":0,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 0 honoured, 0 violated, 1 with no contract checked; 0 where Syntology's instrument failed) · 2 unverified","sample_list":"/paper/online-adversarial-attacks#ran","syntology_url":"https://syntology.ai/paper/2103.02014","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2103.02014"}},"official":{"repos":["facebookresearch/OnlineAttacks"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":1,"n_unverified":2,"ran_from_kinds":["official"]}}},{"url":"/paper/fast-minimum-norm-adversarial-attacks-through","slug":"fast-minimum-norm-adversarial-attacks-through","title":"Fast Minimum-norm Adversarial Attacks through Adaptive Norm Constraints","date":"2021-02-25","arxiv_id":"2102.12827","repositories_listed":3,"syntology":{"n":2,"n_ran":2,"n_constructed":0,"n_ran_checked":0,"n_instrument":2,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":0,"phrase":"2 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 2 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/fast-minimum-norm-adversarial-attacks-through#ran","syntology_url":"https://syntology.ai/paper/2102.12827","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2102.12827"}},"official":{"repos":["pralab/Fast-Minimum-Norm-FMN-Attack"],"state":"community repositories only","n_ran":0,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["listed"]}}},{"url":"/paper/targeted-attack-against-deep-neural-networks-1","slug":"targeted-attack-against-deep-neural-networks-1","title":"Targeted Attack against Deep Neural Networks via Flipping Limited Weight Bits","date":"2021-02-21","arxiv_id":"2102.10496","repositories_listed":2,"syntology":{"n":3,"n_ran":3,"n_constructed":0,"n_ran_checked":2,"n_instrument":1,"n_unverified":0,"n_honours":2,"n_violates":0,"n_no_contract":0,"n_pointer_only":3,"phrase":"3 ran (of which 0 constructed an object rather than computing a result; 2 with no instrument failure: 2 honoured, 0 violated, 0 with no contract checked; 1 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/targeted-attack-against-deep-neural-networks-1#ran","syntology_url":"https://syntology.ai/paper/2102.10496","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2102.10496"}},"official":{"repos":["jiawangbai/TA-LBF"],"state":"official (archive's flag): 3 ran","n_ran":3,"n_constructed":0,"n_ran_no_instrument_failure":2,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/robust-reinforcement-learning-on-state-1","slug":"robust-reinforcement-learning-on-state-1","title":"Robust Reinforcement Learning on State Observations with Learned Optimal Adversary","date":"2021-01-21","arxiv_id":"2101.08452","repositories_listed":2,"syntology":{"n":8,"n_ran":3,"n_constructed":0,"n_ran_checked":0,"n_instrument":3,"n_unverified":5,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":8,"phrase":"3 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 3 where Syntology's instrument failed) · 5 unverified","sample_list":"/paper/robust-reinforcement-learning-on-state-1#ran","syntology_url":"https://syntology.ai/paper/2101.08452","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2101.08452"}},"official":{"repos":["huanzhang12/ATLA_robust_RL"],"state":"community repositories only","n_ran":0,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["listed"]}}},{"url":"/paper/deep-feature-space-trojan-attack-of-neural","slug":"deep-feature-space-trojan-attack-of-neural","title":"Deep Feature Space Trojan Attack of Neural Networks by Controlled Detoxification","date":"2020-12-21","arxiv_id":"2012.11212","repositories_listed":2,"syntology":{"n":2,"n_ran":2,"n_constructed":0,"n_ran_checked":0,"n_instrument":2,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":0,"phrase":"2 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 2 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/deep-feature-space-trojan-attack-of-neural#ran","syntology_url":"https://syntology.ai/paper/2012.11212","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2012.11212"}},"official":{"repos":["Megum1/DFST"],"state":"official (archive's flag): 2 ran","n_ran":2,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/efficient-training-of-robust-decision-trees","slug":"efficient-training-of-robust-decision-trees","title":"Efficient Training of Robust Decision Trees Against Adversarial Examples","date":"2020-12-18","arxiv_id":"2012.10438","repositories_listed":1,"syntology":{"n":1,"n_ran":1,"n_constructed":0,"n_ran_checked":1,"n_instrument":0,"n_unverified":0,"n_honours":1,"n_violates":0,"n_no_contract":0,"n_pointer_only":0,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 1 honoured, 0 violated, 0 with no contract checked; 0 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/efficient-training-of-robust-decision-trees#ran","syntology_url":"https://syntology.ai/paper/2012.10438","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2012.10438"}},"official":{"repos":["tudelft-cda-lab/GROOT"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":1,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/exacerbating-algorithmic-bias-through","slug":"exacerbating-algorithmic-bias-through","title":"Exacerbating Algorithmic Bias through Fairness Attacks","date":"2020-12-16","arxiv_id":"2012.08723","repositories_listed":1,"syntology":{"n":3,"n_ran":3,"n_constructed":0,"n_ran_checked":0,"n_instrument":3,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":0,"phrase":"3 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 3 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/exacerbating-algorithmic-bias-through#ran","syntology_url":"https://syntology.ai/paper/2012.08723","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2012.08723"}},"official":{"repos":["Ninarehm/attack"],"state":"official (archive's flag): 3 ran","n_ran":3,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/composite-adversarial-attacks","slug":"composite-adversarial-attacks","title":"Composite Adversarial Attacks","date":"2020-12-10","arxiv_id":"2012.05434","repositories_listed":1,"syntology":{"n":3,"n_ran":3,"n_constructed":0,"n_ran_checked":1,"n_instrument":2,"n_unverified":0,"n_honours":0,"n_violates":1,"n_no_contract":0,"n_pointer_only":0,"phrase":"3 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 0 honoured, 1 violated, 0 with no contract checked; 2 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/composite-adversarial-attacks#ran","syntology_url":"https://syntology.ai/paper/2012.05434","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2012.05434"}},"official":{"repos":["vtddggg/CAA"],"state":"official (archive's flag): 3 ran","n_ran":3,"n_constructed":0,"n_ran_no_instrument_failure":1,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/surfree-a-fast-surrogate-free-black-box","slug":"surfree-a-fast-surrogate-free-black-box","title":"SurFree: a fast surrogate-free black-box attack","date":"2020-11-25","arxiv_id":"2011.12807","repositories_listed":1,"syntology":{"n":1,"n_ran":1,"n_constructed":0,"n_ran_checked":1,"n_instrument":0,"n_unverified":0,"n_honours":1,"n_violates":0,"n_no_contract":0,"n_pointer_only":1,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 1 honoured, 0 violated, 0 with no contract checked; 0 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/surfree-a-fast-surrogate-free-black-box#ran","syntology_url":"https://syntology.ai/paper/2011.12807","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2011.12807"}},"official":{"repos":["t-maho/SurFree"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":1,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/efficient-and-transferable-adversarial","slug":"efficient-and-transferable-adversarial","title":"Efficient and Transferable Adversarial Examples from Bayesian Neural Networks","date":"2020-11-10","arxiv_id":"2011.05074","repositories_listed":1,"syntology":{"n":2,"n_ran":2,"n_constructed":0,"n_ran_checked":0,"n_instrument":2,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":2,"phrase":"2 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 2 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/efficient-and-transferable-adversarial#ran","syntology_url":"https://syntology.ai/paper/2011.05074","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2011.05074"}},"official":{"repos":["framartin/transferable-bnn-adv-ex"],"state":"official (archive's flag): 2 ran","n_ran":2,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/greedyfool-distortion-aware-sparse","slug":"greedyfool-distortion-aware-sparse","title":"GreedyFool: Distortion-Aware Sparse Adversarial Attack","date":"2020-10-26","arxiv_id":"2010.13773","repositories_listed":1,"syntology":{"n":2,"n_ran":1,"n_constructed":1,"n_ran_checked":1,"n_instrument":0,"n_unverified":1,"n_honours":0,"n_violates":0,"n_no_contract":1,"n_pointer_only":2,"phrase":"1 ran (of which 1 constructed an object rather than computing a result; 1 with no instrument failure: 0 honoured, 0 violated, 1 with no contract checked; 0 where Syntology's instrument failed) · 1 unverified; the one sample that ran constructed an object rather than computing a result","sample_list":"/paper/greedyfool-distortion-aware-sparse#ran","syntology_url":"https://syntology.ai/paper/2010.13773","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2010.13773"}},"official":{"repos":["LightDXY/GreedyFool"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":1,"n_ran_no_instrument_failure":1,"n_unverified":1,"ran_from_kinds":["official"]}}},{"url":"/paper/an-efficient-adversarial-attack-for-tree","slug":"an-efficient-adversarial-attack-for-tree","title":"An Efficient Adversarial Attack for Tree Ensembles","date":"2020-10-22","arxiv_id":"2010.11598","repositories_listed":1,"syntology":{"n":3,"n_ran":2,"n_constructed":0,"n_ran_checked":1,"n_instrument":1,"n_unverified":1,"n_honours":0,"n_violates":0,"n_no_contract":1,"n_pointer_only":2,"phrase":"2 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 0 honoured, 0 violated, 1 with no contract checked; 1 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/an-efficient-adversarial-attack-for-tree#ran","syntology_url":"https://syntology.ai/paper/2010.11598","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2010.11598"}},"official":{"repos":["chong-z/tree-ensemble-attack"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["found_in_text","official"]}}},{"url":"/paper/learning-black-box-attackers-with","slug":"learning-black-box-attackers-with","title":"Learning Black-Box Attackers with Transferable Priors and Query Feedback","date":"2020-10-21","arxiv_id":"2010.11742","repositories_listed":1,"syntology":{"n":19,"n_ran":13,"n_constructed":0,"n_ran_checked":10,"n_instrument":3,"n_unverified":6,"n_honours":0,"n_violates":0,"n_no_contract":10,"n_pointer_only":1,"phrase":"13 ran (of which 0 constructed an object rather than computing a result; 10 with no instrument failure: 0 honoured, 0 violated, 10 with no contract checked; 3 where Syntology's instrument failed) · 6 unverified","sample_list":"/paper/learning-black-box-attackers-with#ran","syntology_url":"https://syntology.ai/paper/2010.11742","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2010.11742"}},"official":{"repos":["TrustworthyDL/LeBA"],"state":"official (archive's flag): 13 ran","n_ran":13,"n_constructed":0,"n_ran_no_instrument_failure":10,"n_unverified":6,"ran_from_kinds":["official"]}}},{"url":"/paper/generalizing-universal-adversarial-attacks","slug":"generalizing-universal-adversarial-attacks","title":"Generalizing Universal Adversarial Attacks Beyond Additive Perturbations","date":"2020-10-15","arxiv_id":"2010.07788","repositories_listed":2,"syntology":{"n":11,"n_ran":2,"n_constructed":0,"n_ran_checked":2,"n_instrument":0,"n_unverified":9,"n_honours":0,"n_violates":0,"n_no_contract":2,"n_pointer_only":0,"phrase":"2 ran (of which 0 constructed an object rather than computing a result; 2 with no instrument failure: 0 honoured, 0 violated, 2 with no contract checked; 0 where Syntology's instrument failed) · 9 unverified","sample_list":"/paper/generalizing-universal-adversarial-attacks#ran","syntology_url":"https://syntology.ai/paper/2010.07788","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2010.07788"}},"official":{"repos":["TrustAI/GUAP"],"state":"community repositories only","n_ran":0,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["listed"]}}},{"url":"/paper/transfer2attack-text-adversarial-attack-with","slug":"transfer2attack-text-adversarial-attack-with","title":"Explain2Attack: Text Adversarial Attacks via Cross-Domain Interpretability","date":"2020-10-14","arxiv_id":"2010.06812","repositories_listed":1,"syntology":{"n":1,"n_ran":1,"n_constructed":0,"n_ran_checked":0,"n_instrument":1,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":1,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 1 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/transfer2attack-text-adversarial-attack-with#ran","syntology_url":"https://syntology.ai/paper/2010.06812","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2010.06812"}},"official":{"repos":["mahossam/Explain2Attack"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/on-the-power-of-abstention-and-data-driven-1","slug":"on-the-power-of-abstention-and-data-driven-1","title":"An Analysis of Robustness of Non-Lipschitz Networks","date":"2020-10-13","arxiv_id":"2010.06154","repositories_listed":1,"syntology":{"n":3,"n_ran":3,"n_constructed":0,"n_ran_checked":2,"n_instrument":1,"n_unverified":0,"n_honours":2,"n_violates":0,"n_no_contract":0,"n_pointer_only":0,"phrase":"3 ran (of which 0 constructed an object rather than computing a result; 2 with no instrument failure: 2 honoured, 0 violated, 0 with no contract checked; 1 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/on-the-power-of-abstention-and-data-driven-1#ran","syntology_url":"https://syntology.ai/paper/2010.06154","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2010.06154"}},"official":{"repos":["dravyanshsharma/adversarial-contrastive"],"state":"official (archive's flag): 3 ran","n_ran":3,"n_constructed":0,"n_ran_no_instrument_failure":2,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/adversarial-attack-and-defense-of-structured","slug":"adversarial-attack-and-defense-of-structured","title":"Adversarial Attack and Defense of Structured Prediction Models","date":"2020-10-04","arxiv_id":"2010.01610","repositories_listed":1,"syntology":{"n":1,"n_ran":1,"n_constructed":1,"n_ran_checked":1,"n_instrument":0,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":1,"n_pointer_only":1,"phrase":"1 ran (of which 1 constructed an object rather than computing a result; 1 with no instrument failure: 0 honoured, 0 violated, 1 with no contract checked; 0 where Syntology's instrument failed) · 0 unverified; the one sample that ran constructed an object rather than computing a result","sample_list":"/paper/adversarial-attack-and-defense-of-structured#ran","syntology_url":"https://syntology.ai/paper/2010.01610","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2010.01610"}},"official":{"repos":["WinnieHAN/structure_adv"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":1,"n_ran_no_instrument_failure":1,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/making-images-undiscoverable-from-co-saliency","slug":"making-images-undiscoverable-from-co-saliency","title":"Can You Spot the Chameleon? Adversarially Camouflaging Images from Co-Salient Object Detection","date":"2020-09-19","arxiv_id":"2009.09258","repositories_listed":1,"syntology":{"n":1,"n_ran":1,"n_constructed":0,"n_ran_checked":1,"n_instrument":0,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":1,"n_pointer_only":0,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 0 honoured, 0 violated, 1 with no contract checked; 0 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/making-images-undiscoverable-from-co-saliency#ran","syntology_url":"https://syntology.ai/paper/2009.09258","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2009.09258"}},"official":{"repos":["tsingqguo/jadena"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":1,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/adversarial-attack-on-large-scale-graph","slug":"adversarial-attack-on-large-scale-graph","title":"Adversarial Attack on Large Scale Graph","date":"2020-09-08","arxiv_id":"2009.03488","repositories_listed":1,"syntology":{"n":9,"n_ran":7,"n_constructed":0,"n_ran_checked":7,"n_instrument":0,"n_unverified":2,"n_honours":0,"n_violates":0,"n_no_contract":7,"n_pointer_only":1,"phrase":"7 ran (of which 0 constructed an object rather than computing a result; 7 with no instrument failure: 0 honoured, 0 violated, 7 with no contract checked; 0 where Syntology's instrument failed) · 2 unverified","sample_list":"/paper/adversarial-attack-on-large-scale-graph#ran","syntology_url":"https://syntology.ai/paper/2009.03488","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2009.03488"}},"official":{"repos":["EdisonLeeeee/SGAttack"],"state":"official (archive's flag): 7 ran","n_ran":7,"n_constructed":0,"n_ran_no_instrument_failure":7,"n_unverified":2,"ran_from_kinds":["official"]}}},{"url":"/paper/direct-adversarial-training-for-gans","slug":"direct-adversarial-training-for-gans","title":"A New Perspective on Stabilizing GANs training: Direct Adversarial Training","date":"2020-08-19","arxiv_id":"2008.09041","repositories_listed":1,"syntology":{"n":3,"n_ran":3,"n_constructed":0,"n_ran_checked":3,"n_instrument":0,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":3,"n_pointer_only":0,"phrase":"3 ran (of which 0 constructed an object rather than computing a result; 3 with no instrument failure: 0 honoured, 0 violated, 3 with no contract checked; 0 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/direct-adversarial-training-for-gans#ran","syntology_url":"https://syntology.ai/paper/2008.09041","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2008.09041"}},"official":{"repos":["iceli1007/DAT-GAN"],"state":"official (archive's flag): 3 ran","n_ran":3,"n_constructed":0,"n_ran_no_instrument_failure":3,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/robust-deep-reinforcement-learning-through","slug":"robust-deep-reinforcement-learning-through","title":"Robust Deep Reinforcement Learning through Adversarial Loss","date":"2020-08-05","arxiv_id":"2008.01976","repositories_listed":2,"syntology":{"n":9,"n_ran":8,"n_constructed":0,"n_ran_checked":7,"n_instrument":1,"n_unverified":1,"n_honours":1,"n_violates":0,"n_no_contract":6,"n_pointer_only":2,"phrase":"8 ran (of which 0 constructed an object rather than computing a result; 7 with no instrument failure: 1 honoured, 0 violated, 6 with no contract checked; 1 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/robust-deep-reinforcement-learning-through#ran","syntology_url":"https://syntology.ai/paper/2008.01976","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2008.01976"}},"official":{"repos":["tuomaso/radial_rl","tuomaso/radial_rl_v2"],"state":"official (archive's flag): 8 ran","n_ran":8,"n_constructed":0,"n_ran_no_instrument_failure":7,"n_unverified":1,"ran_from_kinds":["official"]}}},{"url":"/paper/adversarial-privacy-preserving-filter","slug":"adversarial-privacy-preserving-filter","title":"Adversarial Privacy-preserving Filter","date":"2020-07-25","arxiv_id":"2007.12861","repositories_listed":2,"syntology":{"n":5,"n_ran":4,"n_constructed":0,"n_ran_checked":1,"n_instrument":3,"n_unverified":1,"n_honours":1,"n_violates":0,"n_no_contract":0,"n_pointer_only":5,"phrase":"4 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 1 honoured, 0 violated, 0 with no contract checked; 3 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/adversarial-privacy-preserving-filter#ran","syntology_url":"https://syntology.ai/paper/2007.12861","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2007.12861"}},"official":{"repos":["adversarial-for-goodness/APF","ACM-MM-2020-Submission/Submission123"],"state":"official (archive's flag): 4 ran","n_ran":4,"n_constructed":0,"n_ran_no_instrument_failure":1,"n_unverified":1,"ran_from_kinds":["official"]}}},{"url":"/paper/robust-tracking-against-adversarial-attacks","slug":"robust-tracking-against-adversarial-attacks","title":"Robust Tracking against Adversarial Attacks","date":"2020-07-20","arxiv_id":"2007.09919","repositories_listed":2,"syntology":{"n":6,"n_ran":6,"n_constructed":0,"n_ran_checked":3,"n_instrument":3,"n_unverified":0,"n_honours":2,"n_violates":0,"n_no_contract":1,"n_pointer_only":2,"phrase":"6 ran (of which 0 constructed an object rather than computing a result; 3 with no instrument failure: 2 honoured, 0 violated, 1 with no contract checked; 3 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/robust-tracking-against-adversarial-attacks#ran","syntology_url":"https://syntology.ai/paper/2007.09919","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2007.09919"}},"official":{"repos":["joshuajss/RTAA"],"state":"official (archive's flag): 3 ran","n_ran":3,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["listed","official"]}}},{"url":"/paper/adversarial-immunization-for-improving","slug":"adversarial-immunization-for-improving","title":"Adversarial Immunization for Certifiable Robustness on Graphs","date":"2020-07-19","arxiv_id":"2007.09647","repositories_listed":2,"syntology":{"n":1,"n_ran":1,"n_constructed":0,"n_ran_checked":0,"n_instrument":1,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":1,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 1 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/adversarial-immunization-for-improving#ran","syntology_url":"https://syntology.ai/paper/2007.09647","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2007.09647"}},"official":{"repos":["TaoShuchang/AdvImmune"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/accelerated-stochastic-gradient-free-and","slug":"accelerated-stochastic-gradient-free-and","title":"Accelerated Stochastic Gradient-free and Projection-free Methods","date":"2020-07-16","arxiv_id":"2007.12625","repositories_listed":1,"syntology":{"n":5,"n_ran":3,"n_constructed":0,"n_ran_checked":3,"n_instrument":0,"n_unverified":2,"n_honours":0,"n_violates":0,"n_no_contract":3,"n_pointer_only":0,"phrase":"3 ran (of which 0 constructed an object rather than computing a result; 3 with no instrument failure: 0 honoured, 0 violated, 3 with no contract checked; 0 where Syntology's instrument failed) · 2 unverified","sample_list":"/paper/accelerated-stochastic-gradient-free-and#ran","syntology_url":"https://syntology.ai/paper/2007.12625","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2007.12625"}},"official":{"repos":["TLMichael/Acc-SZOFW"],"state":"official (archive's flag): 3 ran","n_ran":3,"n_constructed":0,"n_ran_no_instrument_failure":3,"n_unverified":2,"ran_from_kinds":["official"]}}},{"url":"/paper/advflow-inconspicuous-black-box-adversarial","slug":"advflow-inconspicuous-black-box-adversarial","title":"AdvFlow: Inconspicuous Black-box Adversarial Attacks using Normalizing Flows","date":"2020-07-15","arxiv_id":"2007.07435","repositories_listed":1,"syntology":{"n":7,"n_ran":7,"n_constructed":0,"n_ran_checked":4,"n_instrument":3,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":4,"n_pointer_only":3,"phrase":"7 ran (of which 0 constructed an object rather than computing a result; 4 with no instrument failure: 0 honoured, 0 violated, 4 with no contract checked; 3 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/advflow-inconspicuous-black-box-adversarial#ran","syntology_url":"https://syntology.ai/paper/2007.07435","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2007.07435"}},"official":{"repos":["hmdolatabadi/AdvFlow"],"state":"official (archive's flag): 7 ran","n_ran":7,"n_constructed":0,"n_ran_no_instrument_failure":4,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/interpolation-between-residual-and-non","slug":"interpolation-between-residual-and-non","title":"Interpolation between Residual and Non-Residual Networks","date":"2020-06-10","arxiv_id":"2006.05749","repositories_listed":1,"syntology":{"n":2,"n_ran":2,"n_constructed":2,"n_ran_checked":2,"n_instrument":0,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":2,"n_pointer_only":2,"phrase":"2 ran (of which 2 constructed an object rather than computing a result; 2 with no instrument failure: 0 honoured, 0 violated, 2 with no contract checked; 0 where Syntology's instrument failed) · 0 unverified; every one of the 2 samples that ran constructed an object rather than computing a result","sample_list":"/paper/interpolation-between-residual-and-non#ran","syntology_url":"https://syntology.ai/paper/2006.05749","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2006.05749"}},"official":null}},{"url":"/paper/improve-robustness-of-dnn-for-ecg-signal","slug":"improve-robustness-of-dnn-for-ecg-signal","title":"Improve robustness of DNN for ECG signal classification:a noise-to-signal ratio perspective","date":"2020-05-18","arxiv_id":"2005.09134","repositories_listed":2,"syntology":{"n":4,"n_ran":4,"n_constructed":0,"n_ran_checked":0,"n_instrument":4,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":4,"phrase":"4 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 4 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/improve-robustness-of-dnn-for-ecg-signal#ran","syntology_url":"https://syntology.ai/paper/2005.09134","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2005.09134"}},"official":{"repos":["SarielMa/ICLR2020_AI4AH"],"state":"official (archive's flag): 4 ran","n_ran":4,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/bert-attack-adversarial-attack-against-bert","slug":"bert-attack-adversarial-attack-against-bert","title":"BERT-ATTACK: Adversarial Attack Against BERT Using BERT","date":"2020-04-21","arxiv_id":"2004.09984","repositories_listed":4,"syntology":{"n":4,"n_ran":2,"n_constructed":0,"n_ran_checked":1,"n_instrument":1,"n_unverified":2,"n_honours":0,"n_violates":1,"n_no_contract":0,"n_pointer_only":1,"phrase":"2 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 0 honoured, 1 violated, 0 with no contract checked; 1 where Syntology's instrument failed) · 2 unverified","sample_list":"/paper/bert-attack-adversarial-attack-against-bert#ran","syntology_url":"https://syntology.ai/paper/2004.09984","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2004.09984"}},"official":{"repos":["LinyangLee/BERT-Attack","QData/TextAttack"],"state":"official: no sample here; runs from other or unrecorded repositories","n_ran":0,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["found_in_text","unlocated"]}}},{"url":"/paper/transferable-controllable-and-inconspicuous","slug":"transferable-controllable-and-inconspicuous","title":"Transferable, Controllable, and Inconspicuous Adversarial Attacks on Person Re-identification With Deep Mis-Ranking","date":"2020-04-08","arxiv_id":"2004.04199","repositories_listed":1,"syntology":{"n":3,"n_ran":2,"n_constructed":0,"n_ran_checked":2,"n_instrument":0,"n_unverified":1,"n_honours":0,"n_violates":0,"n_no_contract":2,"n_pointer_only":0,"phrase":"2 ran (of which 0 constructed an object rather than computing a result; 2 with no instrument failure: 0 honoured, 0 violated, 2 with no contract checked; 0 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/transferable-controllable-and-inconspicuous#ran","syntology_url":"https://syntology.ai/paper/2004.04199","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2004.04199"}},"official":{"repos":["whj363636/Adversarial-attack-on-Person-ReID-With-Deep-Mis-Ranking"],"state":"official (archive's flag): 2 ran","n_ran":2,"n_constructed":0,"n_ran_no_instrument_failure":2,"n_unverified":1,"ran_from_kinds":["official"]}}},{"url":"/paper/motion-excited-sampler-video-adversarial","slug":"motion-excited-sampler-video-adversarial","title":"Motion-Excited Sampler: Video Adversarial Attack with Sparked Prior","date":"2020-03-17","arxiv_id":"2003.07637","repositories_listed":1,"syntology":{"n":3,"n_ran":3,"n_constructed":0,"n_ran_checked":3,"n_instrument":0,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":3,"n_pointer_only":0,"phrase":"3 ran (of which 0 constructed an object rather than computing a result; 3 with no instrument failure: 0 honoured, 0 violated, 3 with no contract checked; 0 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/motion-excited-sampler-video-adversarial#ran","syntology_url":"https://syntology.ai/paper/2003.07637","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2003.07637"}},"official":{"repos":["xiaofanustc/ME-Sampler"],"state":"official (archive's flag): 3 ran","n_ran":3,"n_constructed":0,"n_ran_no_instrument_failure":3,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/stabilizing-differentiable-architecture","slug":"stabilizing-differentiable-architecture","title":"Stabilizing Differentiable Architecture Search via Perturbation-based Regularization","date":"2020-02-12","arxiv_id":"2002.05283","repositories_listed":1,"syntology":{"n":2,"n_ran":1,"n_constructed":1,"n_ran_checked":1,"n_instrument":0,"n_unverified":1,"n_honours":0,"n_violates":0,"n_no_contract":1,"n_pointer_only":2,"phrase":"1 ran (of which 1 constructed an object rather than computing a result; 1 with no instrument failure: 0 honoured, 0 violated, 1 with no contract checked; 0 where Syntology's instrument failed) · 1 unverified; the one sample that ran constructed an object rather than computing a result","sample_list":"/paper/stabilizing-differentiable-architecture#ran","syntology_url":"https://syntology.ai/paper/2002.05283","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2002.05283"}},"official":{"repos":["xiangning-chen/SmoothDARTS"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":1,"n_ran_no_instrument_failure":1,"n_unverified":1,"ran_from_kinds":["official"]}}},{"url":"/paper/damagenet-a-universal-adversarial-dataset","slug":"damagenet-a-universal-adversarial-dataset","title":"DAmageNet: A Universal Adversarial Dataset","date":"2019-12-16","arxiv_id":"1912.07160","repositories_listed":1,"syntology":{"n":13,"n_ran":8,"n_constructed":0,"n_ran_checked":8,"n_instrument":0,"n_unverified":5,"n_honours":0,"n_violates":0,"n_no_contract":8,"n_pointer_only":1,"phrase":"8 ran (of which 0 constructed an object rather than computing a result; 8 with no instrument failure: 0 honoured, 0 violated, 8 with no contract checked; 0 where Syntology's instrument failed) · 5 unverified","sample_list":"/paper/damagenet-a-universal-adversarial-dataset#ran","syntology_url":"https://syntology.ai/paper/1912.07160","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"1912.07160"}},"official":null}},{"url":"/paper/square-attack-a-query-efficient-black-box","slug":"square-attack-a-query-efficient-black-box","title":"Square Attack: a query-efficient black-box adversarial attack via random search","date":"2019-11-29","arxiv_id":"1912.00049","repositories_listed":2,"syntology":{"n":3,"n_ran":3,"n_constructed":0,"n_ran_checked":3,"n_instrument":0,"n_unverified":0,"n_honours":3,"n_violates":0,"n_no_contract":0,"n_pointer_only":0,"phrase":"3 ran (of which 0 constructed an object rather than computing a result; 3 with no instrument failure: 3 honoured, 0 violated, 0 with no contract checked; 0 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/square-attack-a-query-efficient-black-box#ran","syntology_url":"https://syntology.ai/paper/1912.00049","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"1912.00049"}},"official":{"repos":["max-andr/square-attack"],"state":"official (archive's flag): 3 ran","n_ran":3,"n_constructed":0,"n_ran_no_instrument_failure":3,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/active-subspace-of-neural-networks-structural","slug":"active-subspace-of-neural-networks-structural","title":"Active Subspace of Neural Networks: Structural Analysis and Universal Attacks","date":"2019-10-29","arxiv_id":"1910.13025","repositories_listed":1,"syntology":{"n":3,"n_ran":3,"n_constructed":0,"n_ran_checked":0,"n_instrument":3,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":3,"phrase":"3 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 3 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/active-subspace-of-neural-networks-structural#ran","syntology_url":"https://syntology.ai/paper/1910.13025","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"1910.13025"}},"official":{"repos":["chunfengc/ASNet"],"state":"official (archive's flag): 3 ran","n_ran":3,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/open-the-boxes-of-words-incorporating-sememes","slug":"open-the-boxes-of-words-incorporating-sememes","title":"Word-level Textual Adversarial Attacking as Combinatorial Optimization","date":"2019-10-27","arxiv_id":"1910.12196","repositories_listed":1,"syntology":{"n":2,"n_ran":1,"n_constructed":0,"n_ran_checked":1,"n_instrument":0,"n_unverified":1,"n_honours":0,"n_violates":0,"n_no_contract":1,"n_pointer_only":0,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 0 honoured, 0 violated, 1 with no contract checked; 0 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/open-the-boxes-of-words-incorporating-sememes#ran","syntology_url":"https://syntology.ai/paper/1910.12196","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"1910.12196"}},"official":{"repos":["thunlp/SememePSO-Attack"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":1,"n_unverified":1,"ran_from_kinds":["official"]}}},{"url":"/paper/on-robustness-of-neural-ordinary-differential","slug":"on-robustness-of-neural-ordinary-differential","title":"On Robustness of Neural Ordinary Differential Equations","date":"2019-10-12","arxiv_id":"1910.05513","repositories_listed":2,"syntology":{"n":1,"n_ran":1,"n_constructed":0,"n_ran_checked":0,"n_instrument":1,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":1,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 1 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/on-robustness-of-neural-ordinary-differential#ran","syntology_url":"https://syntology.ai/paper/1910.05513","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"1910.05513"}},"official":{"repos":["HanshuYAN/TisODE"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/score-camimproved-visual-explanations-via","slug":"score-camimproved-visual-explanations-via","title":"Score-CAM: Score-Weighted Visual Explanations for Convolutional Neural Networks","date":"2019-10-03","arxiv_id":"1910.01279","repositories_listed":9,"syntology":{"n":13,"n_ran":9,"n_constructed":0,"n_ran_checked":6,"n_instrument":3,"n_unverified":4,"n_honours":0,"n_violates":0,"n_no_contract":6,"n_pointer_only":2,"phrase":"9 ran (of which 0 constructed an object rather than computing a result; 6 with no instrument failure: 0 honoured, 0 violated, 6 with no contract checked; 3 where Syntology's instrument failed) · 4 unverified","sample_list":"/paper/score-camimproved-visual-explanations-via#ran","syntology_url":"https://syntology.ai/paper/1910.01279","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"1910.01279"}},"official":{"repos":["haofanwang/Score-CAM"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":1,"n_unverified":0,"ran_from_kinds":["listed","official"]}}},{"url":"/paper/adversarial-patches-exploiting-contextual","slug":"adversarial-patches-exploiting-contextual","title":"Role of Spatial Context in Adversarial Robustness for Object Detection","date":"2019-09-30","arxiv_id":"1910.00068","repositories_listed":1,"syntology":{"n":7,"n_ran":5,"n_constructed":0,"n_ran_checked":5,"n_instrument":0,"n_unverified":2,"n_honours":0,"n_violates":0,"n_no_contract":5,"n_pointer_only":0,"phrase":"5 ran (of which 0 constructed an object rather than computing a result; 5 with no instrument failure: 0 honoured, 0 violated, 5 with no contract checked; 0 where Syntology's instrument failed) · 2 unverified","sample_list":"/paper/adversarial-patches-exploiting-contextual#ran","syntology_url":"https://syntology.ai/paper/1910.00068","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"1910.00068"}},"official":{"repos":["UMBCvision/Contextual-Adversarial-Patches"],"state":"official (archive's flag): 5 ran","n_ran":5,"n_constructed":0,"n_ran_no_instrument_failure":5,"n_unverified":2,"ran_from_kinds":["official"]}}},{"url":"/paper/sign-opt-a-query-efficient-hard-label","slug":"sign-opt-a-query-efficient-hard-label","title":"Sign-OPT: A Query-Efficient Hard-label Adversarial Attack","date":"2019-09-24","arxiv_id":"1909.10773","repositories_listed":1,"syntology":{"n":4,"n_ran":3,"n_constructed":0,"n_ran_checked":3,"n_instrument":0,"n_unverified":1,"n_honours":0,"n_violates":0,"n_no_contract":3,"n_pointer_only":0,"phrase":"3 ran (of which 0 constructed an object rather than computing a result; 3 with no instrument failure: 0 honoured, 0 violated, 3 with no contract checked; 0 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/sign-opt-a-query-efficient-hard-label#ran","syntology_url":"https://syntology.ai/paper/1909.10773","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"1909.10773"}},"official":{"repos":["cmhcbb/attackbox"],"state":"official (archive's flag): 3 ran","n_ran":3,"n_constructed":0,"n_ran_no_instrument_failure":3,"n_unverified":1,"ran_from_kinds":["official"]}}},{"url":"/paper/adversarial-attacks-and-defenses-in-images","slug":"adversarial-attacks-and-defenses-in-images","title":"Adversarial Attacks and Defenses in Images, Graphs and Text: A Review","date":"2019-09-17","arxiv_id":"1909.08072","repositories_listed":3,"syntology":{"n":1,"n_ran":1,"n_constructed":0,"n_ran_checked":0,"n_instrument":1,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":1,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 1 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/adversarial-attacks-and-defenses-in-images#ran","syntology_url":"https://syntology.ai/paper/1909.08072","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"1909.08072"}},"official":null}},{"url":"/paper/targeted-mismatch-adversarial-attack-query","slug":"targeted-mismatch-adversarial-attack-query","title":"Targeted Mismatch Adversarial Attack: Query with a Flower to Retrieve the Tower","date":"2019-08-24","arxiv_id":"1908.09163","repositories_listed":1,"syntology":{"n":4,"n_ran":3,"n_constructed":0,"n_ran_checked":3,"n_instrument":0,"n_unverified":1,"n_honours":0,"n_violates":0,"n_no_contract":3,"n_pointer_only":0,"phrase":"3 ran (of which 0 constructed an object rather than computing a result; 3 with no instrument failure: 0 honoured, 0 violated, 3 with no contract checked; 0 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/targeted-mismatch-adversarial-attack-query#ran","syntology_url":"https://syntology.ai/paper/1908.09163","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"1908.09163"}},"official":{"repos":["gtolias/tma"],"state":"official (archive's flag): 3 ran","n_ran":3,"n_constructed":0,"n_ran_no_instrument_failure":3,"n_unverified":1,"ran_from_kinds":["official"]}}},{"url":"/paper/advhat-real-world-adversarial-attack-on","slug":"advhat-real-world-adversarial-attack-on","title":"AdvHat: Real-world adversarial attack on ArcFace Face ID system","date":"2019-08-23","arxiv_id":"1908.08705","repositories_listed":4,"syntology":{"n":5,"n_ran":4,"n_constructed":0,"n_ran_checked":1,"n_instrument":3,"n_unverified":1,"n_honours":1,"n_violates":0,"n_no_contract":0,"n_pointer_only":3,"phrase":"4 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 1 honoured, 0 violated, 0 with no contract checked; 3 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/advhat-real-world-adversarial-attack-on#ran","syntology_url":"https://syntology.ai/paper/1908.08705","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"1908.08705"}},"official":{"repos":["papermsucode/advhat"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":1,"ran_from_kinds":["listed","official"]}}},{"url":"/paper/nesterov-accelerated-gradient-and-scale","slug":"nesterov-accelerated-gradient-and-scale","title":"Nesterov Accelerated Gradient and Scale Invariance for Adversarial Attacks","date":"2019-08-17","arxiv_id":"1908.06281","repositories_listed":3,"syntology":{"n":1,"n_ran":1,"n_constructed":0,"n_ran_checked":0,"n_instrument":1,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":1,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 1 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/nesterov-accelerated-gradient-and-scale#ran","syntology_url":"https://syntology.ai/paper/1908.06281","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"1908.06281"}},"official":{"repos":["JHL-HUST/SI-NI-FGSM"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/on-the-design-of-black-box-adversarial","slug":"on-the-design-of-black-box-adversarial","title":"On the Design of Black-box Adversarial Examples by Leveraging Gradient-free Optimization and Operator Splitting Method","date":"2019-07-26","arxiv_id":"1907.11684","repositories_listed":1,"syntology":{"n":1,"n_ran":1,"n_constructed":0,"n_ran_checked":0,"n_instrument":1,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":1,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 1 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/on-the-design-of-black-box-adversarial#ran","syntology_url":"https://syntology.ai/paper/1907.11684","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"1907.11684"}},"official":{"repos":["LinLabNEU/Blackbox_ADMM"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/natural-adversarial-examples","slug":"natural-adversarial-examples","title":"Natural Adversarial Examples","date":"2019-07-16","arxiv_id":"1907.07174","repositories_listed":3,"syntology":{"n":4,"n_ran":4,"n_constructed":0,"n_ran_checked":3,"n_instrument":1,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":3,"n_pointer_only":1,"phrase":"4 ran (of which 0 constructed an object rather than computing a result; 3 with no instrument failure: 0 honoured, 0 violated, 3 with no contract checked; 1 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/natural-adversarial-examples#ran","syntology_url":"https://syntology.ai/paper/1907.07174","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"1907.07174"}},"official":{"repos":["hendrycks/natural-adv-examples"],"state":"official (archive's flag): 4 ran","n_ran":4,"n_constructed":0,"n_ran_no_instrument_failure":3,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/minimally-distorted-adversarial-examples-with","slug":"minimally-distorted-adversarial-examples-with","title":"Minimally distorted Adversarial Examples with a Fast Adaptive Boundary Attack","date":"2019-07-03","arxiv_id":"1907.02044","repositories_listed":2,"syntology":{"n":6,"n_ran":4,"n_constructed":0,"n_ran_checked":0,"n_instrument":4,"n_unverified":2,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":5,"phrase":"4 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 4 where Syntology's instrument failed) · 2 unverified","sample_list":"/paper/minimally-distorted-adversarial-examples-with#ran","syntology_url":"https://syntology.ai/paper/1907.02044","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"1907.02044"}},"official":{"repos":["fra31/fab-attack"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":2,"ran_from_kinds":["listed","official"]}}},{"url":"/paper/subspace-attack-exploiting-promising","slug":"subspace-attack-exploiting-promising","title":"Subspace Attack: Exploiting Promising Subspaces for Query-Efficient Black-box Attacks","date":"2019-06-11","arxiv_id":"1906.04392","repositories_listed":2,"syntology":{"n":3,"n_ran":2,"n_constructed":0,"n_ran_checked":1,"n_instrument":1,"n_unverified":1,"n_honours":1,"n_violates":0,"n_no_contract":0,"n_pointer_only":3,"phrase":"2 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 1 honoured, 0 violated, 0 with no contract checked; 1 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/subspace-attack-exploiting-promising#ran","syntology_url":"https://syntology.ai/paper/1906.04392","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"1906.04392"}},"official":{"repos":["ZiangYan/subspace-attack.pytorch"],"state":"official (archive's flag): 2 ran","n_ran":2,"n_constructed":0,"n_ran_no_instrument_failure":1,"n_unverified":1,"ran_from_kinds":["official"]}}},{"url":"/paper/beyond-adversarial-training-min-max","slug":"beyond-adversarial-training-min-max","title":"Adversarial Attack Generation Empowered by Min-Max Optimization","date":"2019-06-09","arxiv_id":"1906.03563","repositories_listed":1,"syntology":{"n":25,"n_ran":11,"n_constructed":0,"n_ran_checked":11,"n_instrument":0,"n_unverified":14,"n_honours":0,"n_violates":1,"n_no_contract":10,"n_pointer_only":0,"phrase":"11 ran (of which 0 constructed an object rather than computing a result; 11 with no instrument failure: 0 honoured, 1 violated, 10 with no contract checked; 0 where Syntology's instrument failed) · 14 unverified","sample_list":"/paper/beyond-adversarial-training-min-max#ran","syntology_url":"https://syntology.ai/paper/1906.03563","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"1906.03563"}},"official":{"repos":["wangjksjtu/minmax-adv"],"state":"official (archive's flag): 11 ran","n_ran":11,"n_constructed":0,"n_ran_no_instrument_failure":11,"n_unverified":14,"ran_from_kinds":["official"]}}},{"url":"/paper/provably-robust-deep-learning-via","slug":"provably-robust-deep-learning-via","title":"Provably Robust Deep Learning via Adversarially Trained Smoothed Classifiers","date":"2019-06-09","arxiv_id":"1906.04584","repositories_listed":3,"syntology":{"n":3,"n_ran":2,"n_constructed":0,"n_ran_checked":1,"n_instrument":1,"n_unverified":1,"n_honours":0,"n_violates":0,"n_no_contract":1,"n_pointer_only":2,"phrase":"2 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 0 honoured, 0 violated, 1 with no contract checked; 1 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/provably-robust-deep-learning-via#ran","syntology_url":"https://syntology.ai/paper/1906.04584","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"1906.04584"}},"official":{"repos":["Hadisalman/smoothing-adversarial"],"state":"community repositories only","n_ran":0,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["listed"]}}},{"url":"/paper/adversarial-examples-for-non-parametric","slug":"adversarial-examples-for-non-parametric","title":"Robustness for Non-Parametric Classification: A Generic Attack and Defense","date":"2019-06-07","arxiv_id":"1906.03310","repositories_listed":1,"syntology":{"n":4,"n_ran":1,"n_constructed":0,"n_ran_checked":1,"n_instrument":0,"n_unverified":3,"n_honours":1,"n_violates":0,"n_no_contract":0,"n_pointer_only":4,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 1 honoured, 0 violated, 0 with no contract checked; 0 where Syntology's instrument failed) · 3 unverified","sample_list":"/paper/adversarial-examples-for-non-parametric#ran","syntology_url":"https://syntology.ai/paper/1906.03310","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"1906.03310"}},"official":{"repos":["yangarbiter/adversarial-nonparametrics"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":1,"n_unverified":3,"ran_from_kinds":["official"]}}},{"url":"/paper/190600001","slug":"190600001","title":"Functional Adversarial Attacks","date":"2019-05-29","arxiv_id":"1906.00001","repositories_listed":1,"syntology":{"n":4,"n_ran":4,"n_constructed":0,"n_ran_checked":3,"n_instrument":1,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":3,"n_pointer_only":1,"phrase":"4 ran (of which 0 constructed an object rather than computing a result; 3 with no instrument failure: 0 honoured, 0 violated, 3 with no contract checked; 1 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/190600001#ran","syntology_url":"https://syntology.ai/paper/1906.00001","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"1906.00001"}},"official":{"repos":["cassidylaidlaw/ReColorAdv"],"state":"official (archive's flag): 4 ran","n_ran":4,"n_constructed":0,"n_ran_no_instrument_failure":3,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/190513545","slug":"190513545","title":"High Frequency Component Helps Explain the Generalization of Convolutional Neural Networks","date":"2019-05-28","arxiv_id":"1905.13545","repositories_listed":1,"syntology":{"n":3,"n_ran":3,"n_constructed":0,"n_ran_checked":1,"n_instrument":2,"n_unverified":0,"n_honours":0,"n_violates":1,"n_no_contract":0,"n_pointer_only":3,"phrase":"3 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 0 honoured, 1 violated, 0 with no contract checked; 2 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/190513545#ran","syntology_url":"https://syntology.ai/paper/1905.13545","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"1905.13545"}},"official":{"repos":["HaohanWang/HFC"],"state":"official (archive's flag): 3 ran","n_ran":3,"n_constructed":0,"n_ran_no_instrument_failure":1,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/scaleable-input-gradient-regularization-for","slug":"scaleable-input-gradient-regularization-for","title":"Scaleable input gradient regularization for adversarial robustness","date":"2019-05-27","arxiv_id":"1905.11468","repositories_listed":1,"syntology":{"n":11,"n_ran":9,"n_constructed":0,"n_ran_checked":8,"n_instrument":1,"n_unverified":2,"n_honours":0,"n_violates":0,"n_no_contract":8,"n_pointer_only":1,"phrase":"9 ran (of which 0 constructed an object rather than computing a result; 8 with no instrument failure: 0 honoured, 0 violated, 8 with no contract checked; 1 where Syntology's instrument failed) · 2 unverified","sample_list":"/paper/scaleable-input-gradient-regularization-for#ran","syntology_url":"https://syntology.ai/paper/1905.11468","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"1905.11468"}},"official":{"repos":["cfinlay/tulip"],"state":"official (archive's flag): 9 ran","n_ran":9,"n_constructed":0,"n_ran_no_instrument_failure":8,"n_unverified":2,"ran_from_kinds":["official"]}}},{"url":"/paper/adversarial-training-for-free","slug":"adversarial-training-for-free","title":"Adversarial Training for Free!","date":"2019-04-29","arxiv_id":"1904.12843","repositories_listed":6,"syntology":{"n":1,"n_ran":1,"n_constructed":0,"n_ran_checked":0,"n_instrument":1,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":1,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 1 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/adversarial-training-for-free#ran","syntology_url":"https://syntology.ai/paper/1904.12843","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"1904.12843"}},"official":{"repos":["ashafahi/free_adv_train","mahyarnajibi/FreeAdversarialTraining"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/boundary-attack-query-efficient-decision","slug":"boundary-attack-query-efficient-decision","title":"HopSkipJumpAttack: A Query-Efficient Decision-Based Attack","date":"2019-04-03","arxiv_id":"1904.02144","repositories_listed":3,"syntology":{"n":3,"n_ran":2,"n_constructed":0,"n_ran_checked":1,"n_instrument":1,"n_unverified":1,"n_honours":0,"n_violates":1,"n_no_contract":0,"n_pointer_only":3,"phrase":"2 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 0 honoured, 1 violated, 0 with no contract checked; 1 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/boundary-attack-query-efficient-decision#ran","syntology_url":"https://syntology.ai/paper/1904.02144","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"1904.02144"}},"official":{"repos":["Jianbo-Lab/BAPP","Jianbo-Lab/HSJA"],"state":"official (archive's flag): 2 ran","n_ran":2,"n_constructed":0,"n_ran_no_instrument_failure":1,"n_unverified":1,"ran_from_kinds":["official"]}}},{"url":"/paper/curls-whey-boosting-black-box-adversarial","slug":"curls-whey-boosting-black-box-adversarial","title":"Curls & Whey: Boosting Black-Box Adversarial Attacks","date":"2019-04-02","arxiv_id":"1904.01160","repositories_listed":1,"syntology":{"n":6,"n_ran":5,"n_constructed":0,"n_ran_checked":4,"n_instrument":1,"n_unverified":1,"n_honours":0,"n_violates":1,"n_no_contract":3,"n_pointer_only":2,"phrase":"5 ran (of which 0 constructed an object rather than computing a result; 4 with no instrument failure: 0 honoured, 1 violated, 3 with no contract checked; 1 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/curls-whey-boosting-black-box-adversarial#ran","syntology_url":"https://syntology.ai/paper/1904.01160","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"1904.01160"}},"official":{"repos":["walegahaha/Curls-Whey"],"state":"official (archive's flag): 5 ran","n_ran":5,"n_constructed":0,"n_ran_no_instrument_failure":4,"n_unverified":1,"ran_from_kinds":["official"]}}},{"url":"/paper/scaling-up-the-randomized-gradient-free","slug":"scaling-up-the-randomized-gradient-free","title":"Scaling up the randomized gradient-free adversarial attack reveals overestimation of robustness using established attacks","date":"2019-03-27","arxiv_id":"1903.11359","repositories_listed":1,"syntology":{"n":2,"n_ran":2,"n_constructed":0,"n_ran_checked":1,"n_instrument":1,"n_unverified":0,"n_honours":1,"n_violates":0,"n_no_contract":0,"n_pointer_only":2,"phrase":"2 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 1 honoured, 0 violated, 0 with no contract checked; 1 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/scaling-up-the-randomized-gradient-free#ran","syntology_url":"https://syntology.ai/paper/1903.11359","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"1903.11359"}},"official":{"repos":["jonasrauber/linear-region-attack"],"state":"official (archive's flag): 2 ran","n_ran":2,"n_constructed":0,"n_ran_no_instrument_failure":1,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/the-vulnerabilities-of-graph-convolutional","slug":"the-vulnerabilities-of-graph-convolutional","title":"Adversarial Examples on Graph Data: Deep Insights into Attack and Defense","date":"2019-03-05","arxiv_id":"1903.01610","repositories_listed":2,"syntology":{"n":12,"n_ran":10,"n_constructed":0,"n_ran_checked":10,"n_instrument":0,"n_unverified":2,"n_honours":0,"n_violates":0,"n_no_contract":10,"n_pointer_only":0,"phrase":"10 ran (of which 0 constructed an object rather than computing a result; 10 with no instrument failure: 0 honoured, 0 violated, 10 with no contract checked; 0 where Syntology's instrument failed) · 2 unverified","sample_list":"/paper/the-vulnerabilities-of-graph-convolutional#ran","syntology_url":"https://syntology.ai/paper/1903.01610","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"1903.01610"}},"official":{"repos":["stellargraph/stellargraph"],"state":"official (archive's flag): 10 ran","n_ran":10,"n_constructed":0,"n_ran_no_instrument_failure":10,"n_unverified":2,"ran_from_kinds":["official"]}}},{"url":"/paper/robust-decision-trees-against-adversarial","slug":"robust-decision-trees-against-adversarial","title":"Robust Decision Trees Against Adversarial Examples","date":"2019-02-27","arxiv_id":"1902.10660","repositories_listed":3,"syntology":{"n":1,"n_ran":1,"n_constructed":0,"n_ran_checked":0,"n_instrument":1,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":1,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 1 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/robust-decision-trees-against-adversarial#ran","syntology_url":"https://syntology.ai/paper/1902.10660","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"1902.10660"}},"official":{"repos":["chenhongge/RobustTrees"],"state":"community repositories only","n_ran":0,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["listed"]}}},{"url":"/paper/wasserstein-adversarial-examples-via","slug":"wasserstein-adversarial-examples-via","title":"Wasserstein Adversarial Examples via Projected Sinkhorn Iterations","date":"2019-02-21","arxiv_id":"1902.07906","repositories_listed":2,"syntology":{"n":3,"n_ran":3,"n_constructed":0,"n_ran_checked":3,"n_instrument":0,"n_unverified":0,"n_honours":1,"n_violates":2,"n_no_contract":0,"n_pointer_only":3,"phrase":"3 ran (of which 0 constructed an object rather than computing a result; 3 with no instrument failure: 1 honoured, 2 violated, 0 with no contract checked; 0 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/wasserstein-adversarial-examples-via#ran","syntology_url":"https://syntology.ai/paper/1902.07906","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"1902.07906"}},"official":{"repos":["locuslab/projected_sinkhorn"],"state":"official (archive's flag): 3 ran","n_ran":3,"n_constructed":0,"n_ran_no_instrument_failure":3,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/theoretically-principled-trade-off-between","slug":"theoretically-principled-trade-off-between","title":"Theoretically Principled Trade-off between Robustness and Accuracy","date":"2019-01-24","arxiv_id":"1901.08573","repositories_listed":9,"syntology":{"n":15,"n_ran":12,"n_constructed":6,"n_ran_checked":7,"n_instrument":5,"n_unverified":3,"n_honours":0,"n_violates":0,"n_no_contract":7,"n_pointer_only":4,"phrase":"12 ran (of which 6 constructed an object rather than computing a result; 7 with no instrument failure: 0 honoured, 0 violated, 7 with no contract checked; 5 where Syntology's instrument failed) · 3 unverified","sample_list":"/paper/theoretically-principled-trade-off-between#ran","syntology_url":"https://syntology.ai/paper/1901.08573","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"1901.08573"}},"official":{"repos":["yaodongyu/TRADES"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["listed","official"]}}},{"url":"/paper/trust-region-based-adversarial-attack-on","slug":"trust-region-based-adversarial-attack-on","title":"Trust Region Based Adversarial Attack on Neural Networks","date":"2018-12-16","arxiv_id":"1812.06371","repositories_listed":2,"syntology":{"n":9,"n_ran":7,"n_constructed":0,"n_ran_checked":0,"n_instrument":7,"n_unverified":2,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":7,"phrase":"7 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 7 where Syntology's instrument failed) · 2 unverified","sample_list":"/paper/trust-region-based-adversarial-attack-on#ran","syntology_url":"https://syntology.ai/paper/1812.06371","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"1812.06371"}},"official":{"repos":["amirgholami/trattack"],"state":"official (archive's flag): 3 ran","n_ran":3,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":1,"ran_from_kinds":["listed","official"]}}},{"url":"/paper/a-frank-wolfe-framework-for-efficient-and","slug":"a-frank-wolfe-framework-for-efficient-and","title":"A Frank-Wolfe Framework for Efficient and Effective Adversarial Attacks","date":"2018-11-27","arxiv_id":"1811.10828","repositories_listed":2,"syntology":{"n":6,"n_ran":4,"n_constructed":0,"n_ran_checked":4,"n_instrument":0,"n_unverified":2,"n_honours":2,"n_violates":0,"n_no_contract":2,"n_pointer_only":0,"phrase":"4 ran (of which 0 constructed an object rather than computing a result; 4 with no instrument failure: 2 honoured, 0 violated, 2 with no contract checked; 0 where Syntology's instrument failed) · 2 unverified","sample_list":"/paper/a-frank-wolfe-framework-for-efficient-and#ran","syntology_url":"https://syntology.ai/paper/1811.10828","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"1811.10828"}},"official":{"repos":["uclaml/Frank-Wolfe-AdvML"],"state":"official (archive's flag): 4 ran","n_ran":4,"n_constructed":0,"n_ran_no_instrument_failure":4,"n_unverified":2,"ran_from_kinds":["official"]}}},{"url":"/paper/enresnet-resnet-ensemble-via-the-feynman-kac","slug":"enresnet-resnet-ensemble-via-the-feynman-kac","title":"ResNets Ensemble via the Feynman-Kac Formalism to Improve Natural and Robust Accuracies","date":"2018-11-26","arxiv_id":"1811.10745","repositories_listed":5,"syntology":{"n":1,"n_ran":1,"n_constructed":0,"n_ran_checked":0,"n_instrument":1,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":1,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 1 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/enresnet-resnet-ensemble-via-the-feynman-kac#ran","syntology_url":"https://syntology.ai/paper/1811.10745","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"1811.10745"}},"official":{"repos":["BaoWangMath/EnResNet"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/parametric-noise-injection-trainable","slug":"parametric-noise-injection-trainable","title":"Parametric Noise Injection: Trainable Randomness to Improve Deep Neural Network Robustness against Adversarial Attack","date":"2018-11-22","arxiv_id":"1811.09310","repositories_listed":1,"syntology":{"n":8,"n_ran":6,"n_constructed":0,"n_ran_checked":6,"n_instrument":0,"n_unverified":2,"n_honours":0,"n_violates":0,"n_no_contract":6,"n_pointer_only":3,"phrase":"6 ran (of which 0 constructed an object rather than computing a result; 6 with no instrument failure: 0 honoured, 0 violated, 6 with no contract checked; 0 where Syntology's instrument failed) · 2 unverified","sample_list":"/paper/parametric-noise-injection-trainable#ran","syntology_url":"https://syntology.ai/paper/1811.09310","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"1811.09310"}},"official":{"repos":["elliothe/CVPR_2019_PNI"],"state":"official (archive's flag): 6 ran","n_ran":6,"n_constructed":0,"n_ran_no_instrument_failure":6,"n_unverified":2,"ran_from_kinds":["official"]}}},{"url":"/paper/second-order-adversarial-attack-and","slug":"second-order-adversarial-attack-and","title":"Certified Adversarial Robustness with Additive Noise","date":"2018-09-10","arxiv_id":"1809.03113","repositories_listed":3,"syntology":{"n":9,"n_ran":2,"n_constructed":0,"n_ran_checked":2,"n_instrument":0,"n_unverified":7,"n_honours":0,"n_violates":0,"n_no_contract":2,"n_pointer_only":0,"phrase":"2 ran (of which 0 constructed an object rather than computing a result; 2 with no instrument failure: 0 honoured, 0 violated, 2 with no contract checked; 0 where Syntology's instrument failed) · 7 unverified","sample_list":"/paper/second-order-adversarial-attack-and#ran","syntology_url":"https://syntology.ai/paper/1809.03113","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"1809.03113"}},"official":{"repos":["Bai-Li/STN-Code"],"state":"official (archive's flag): 2 ran","n_ran":2,"n_constructed":0,"n_ran_no_instrument_failure":2,"n_unverified":7,"ran_from_kinds":["official"]}}},{"url":"/paper/a-game-based-approximate-verification-of-deep","slug":"a-game-based-approximate-verification-of-deep","title":"A Game-Based Approximate Verification of Deep Neural Networks with Provable Guarantees","date":"2018-07-10","arxiv_id":"1807.03571","repositories_listed":1,"syntology":{"n":4,"n_ran":3,"n_constructed":0,"n_ran_checked":3,"n_instrument":0,"n_unverified":1,"n_honours":0,"n_violates":0,"n_no_contract":3,"n_pointer_only":0,"phrase":"3 ran (of which 0 constructed an object rather than computing a result; 3 with no instrument failure: 0 honoured, 0 violated, 3 with no contract checked; 0 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/a-game-based-approximate-verification-of-deep#ran","syntology_url":"https://syntology.ai/paper/1807.03571","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"1807.03571"}},"official":{"repos":["TrustAI/DeepGame"],"state":"official (archive's flag): 3 ran","n_ran":3,"n_constructed":0,"n_ran_no_instrument_failure":3,"n_unverified":1,"ran_from_kinds":["official"]}}},{"url":"/paper/learning-visually-grounded-semantics-from","slug":"learning-visually-grounded-semantics-from","title":"Learning Visually-Grounded Semantics from Contrastive Adversarial Samples","date":"2018-06-27","arxiv_id":"1806.10348","repositories_listed":1,"syntology":{"n":15,"n_ran":14,"n_constructed":0,"n_ran_checked":12,"n_instrument":2,"n_unverified":1,"n_honours":0,"n_violates":0,"n_no_contract":12,"n_pointer_only":1,"phrase":"14 ran (of which 0 constructed an object rather than computing a result; 12 with no instrument failure: 0 honoured, 0 violated, 12 with no contract checked; 2 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/learning-visually-grounded-semantics-from#ran","syntology_url":"https://syntology.ai/paper/1806.10348","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"1806.10348"}},"official":{"repos":["ExplorerFreda/VSE-C"],"state":"official (archive's flag): 14 ran","n_ran":14,"n_constructed":0,"n_ran_no_instrument_failure":12,"n_unverified":1,"ran_from_kinds":["official"]}}},{"url":"/paper/genattack-practical-black-box-attacks-with","slug":"genattack-practical-black-box-attacks-with","title":"GenAttack: Practical Black-box Attacks with Gradient-Free Optimization","date":"2018-05-28","arxiv_id":"1805.11090","repositories_listed":3,"syntology":{"n":12,"n_ran":5,"n_constructed":0,"n_ran_checked":5,"n_instrument":0,"n_unverified":7,"n_honours":2,"n_violates":0,"n_no_contract":3,"n_pointer_only":0,"phrase":"5 ran (of which 0 constructed an object rather than computing a result; 5 with no instrument failure: 2 honoured, 0 violated, 3 with no contract checked; 0 where Syntology's instrument failed) · 7 unverified","sample_list":"/paper/genattack-practical-black-box-attacks-with#ran","syntology_url":"https://syntology.ai/paper/1805.11090","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"1805.11090"}},"official":{"repos":["nesl/adversarial_genattack"],"state":"official (archive's flag): 5 ran","n_ran":5,"n_constructed":0,"n_ran_no_instrument_failure":5,"n_unverified":4,"ran_from_kinds":["official"]}}},{"url":"/paper/knowledge-distillation-with-adversarial","slug":"knowledge-distillation-with-adversarial","title":"Knowledge Distillation with Adversarial Samples Supporting Decision Boundary","date":"2018-05-15","arxiv_id":"1805.05532","repositories_listed":1,"syntology":{"n":4,"n_ran":4,"n_constructed":0,"n_ran_checked":3,"n_instrument":1,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":3,"n_pointer_only":1,"phrase":"4 ran (of which 0 constructed an object rather than computing a result; 3 with no instrument failure: 0 honoured, 0 violated, 3 with no contract checked; 1 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/knowledge-distillation-with-adversarial#ran","syntology_url":"https://syntology.ai/paper/1805.05532","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"1805.05532"}},"official":{"repos":["bhheo/BSS_distillation"],"state":"official (archive's flag): 4 ran","n_ran":4,"n_constructed":0,"n_ran_no_instrument_failure":3,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/adef-an-iterative-algorithm-to-construct","slug":"adef-an-iterative-algorithm-to-construct","title":"ADef: an Iterative Algorithm to Construct Adversarial Deformations","date":"2018-04-20","arxiv_id":"1804.07729","repositories_listed":2,"syntology":{"n":4,"n_ran":4,"n_constructed":0,"n_ran_checked":1,"n_instrument":3,"n_unverified":0,"n_honours":1,"n_violates":0,"n_no_contract":0,"n_pointer_only":0,"phrase":"4 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 1 honoured, 0 violated, 0 with no contract checked; 3 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/adef-an-iterative-algorithm-to-construct#ran","syntology_url":"https://syntology.ai/paper/1804.07729","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"1804.07729"}},"official":null}},{"url":"/paper/shapeshifter-robust-physical-adversarial","slug":"shapeshifter-robust-physical-adversarial","title":"ShapeShifter: Robust Physical Adversarial Attack on Faster R-CNN Object Detector","date":"2018-04-16","arxiv_id":"1804.05810","repositories_listed":3,"syntology":{"n":5,"n_ran":3,"n_constructed":0,"n_ran_checked":2,"n_instrument":1,"n_unverified":2,"n_honours":0,"n_violates":0,"n_no_contract":2,"n_pointer_only":4,"phrase":"3 ran (of which 0 constructed an object rather than computing a result; 2 with no instrument failure: 0 honoured, 0 violated, 2 with no contract checked; 1 where Syntology's instrument failed) · 2 unverified","sample_list":"/paper/shapeshifter-robust-physical-adversarial#ran","syntology_url":"https://syntology.ai/paper/1804.05810","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"1804.05810"}},"official":{"repos":["shangtse/robust-physical-attack"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["listed","official"]}}},{"url":"/paper/query-efficient-black-box-adversarial","slug":"query-efficient-black-box-adversarial","title":"Query-Efficient Black-box Adversarial Examples (superceded)","date":"2017-12-19","arxiv_id":"1712.07113","repositories_listed":1,"syntology":{"n":3,"n_ran":2,"n_constructed":0,"n_ran_checked":2,"n_instrument":0,"n_unverified":1,"n_honours":2,"n_violates":0,"n_no_contract":0,"n_pointer_only":3,"phrase":"2 ran (of which 0 constructed an object rather than computing a result; 2 with no instrument failure: 2 honoured, 0 violated, 0 with no contract checked; 0 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/query-efficient-black-box-adversarial#ran","syntology_url":"https://syntology.ai/paper/1712.07113","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"1712.07113"}},"official":null}},{"url":"/paper/provable-defenses-against-adversarial","slug":"provable-defenses-against-adversarial","title":"Provable defenses against adversarial examples via the convex outer adversarial polytope","date":"2017-11-02","arxiv_id":"1711.00851","repositories_listed":8,"syntology":{"n":44,"n_ran":21,"n_constructed":15,"n_ran_checked":19,"n_instrument":2,"n_unverified":23,"n_honours":1,"n_violates":1,"n_no_contract":17,"n_pointer_only":2,"phrase":"21 ran (of which 15 constructed an object rather than computing a result; 19 with no instrument failure: 1 honoured, 1 violated, 17 with no contract checked; 2 where Syntology's instrument failed) · 23 unverified","sample_list":"/paper/provable-defenses-against-adversarial#ran","syntology_url":"https://syntology.ai/paper/1711.00851","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"1711.00851"}},"official":{"repos":["locuslab/convex_adversarial"],"state":"official (archive's flag): 4 ran","n_ran":4,"n_constructed":3,"n_ran_no_instrument_failure":4,"n_unverified":2,"ran_from_kinds":["listed","official"]}}},{"url":"/paper/boosting-adversarial-attacks-with-momentum","slug":"boosting-adversarial-attacks-with-momentum","title":"Boosting Adversarial Attacks with Momentum","date":"2017-10-17","arxiv_id":"1710.06081","repositories_listed":7,"syntology":{"n":2,"n_ran":1,"n_constructed":0,"n_ran_checked":1,"n_instrument":0,"n_unverified":1,"n_honours":0,"n_violates":0,"n_no_contract":1,"n_pointer_only":0,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 0 honoured, 0 violated, 1 with no contract checked; 0 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/boosting-adversarial-attacks-with-momentum#ran","syntology_url":"https://syntology.ai/paper/1710.06081","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"1710.06081"}},"official":{"repos":["dongyp13/Non-Targeted-Adversarial-Attacks","dongyp13/Targeted-Adversarial-Attack"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":1,"n_unverified":1,"ran_from_kinds":["official"]}}},{"url":"/paper/zoo-zeroth-order-optimization-based-black-box","slug":"zoo-zeroth-order-optimization-based-black-box","title":"ZOO: Zeroth Order Optimization based Black-box Attacks to Deep Neural Networks without Training Substitute Models","date":"2017-08-14","arxiv_id":"1708.03999","repositories_listed":5,"syntology":{"n":1,"n_ran":1,"n_constructed":0,"n_ran_checked":0,"n_instrument":1,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":0,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 1 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/zoo-zeroth-order-optimization-based-black-box#ran","syntology_url":"https://syntology.ai/paper/1708.03999","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"1708.03999"}},"official":{"repos":["huanzhang12/ZOO-Attack"],"state":"community repositories only","n_ran":0,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["listed"]}}}],"record_sha256":"8654d1d22408c99eb526b31f2929b601d8ec751244c510f0e799c2266103800d","record_changed_at":"2026-09-28","record_changed_at_basis":"first_hashed"}