{"about":{"non_affiliation":"Code with Papers and Syntology are not affiliated with, endorsed by, or sponsored by Papers with Code, Meta, or the pwc-archive mirror.","site":"https://codewithpapers.app","licence":"CC BY-SA 4.0","licence_url":"https://creativecommons.org/licenses/by-sa/4.0/legalcode","attribution":"https://codewithpapers.app/attribution","modified":"archive material modified by Syntology; see the attribution page","syntology":{"site":"https://syntology.ai","developers":"https://syntology.ai/developers","mcp":{"server":"https://syntology.ai/mcp","transport":"streamable-http","server_card":"https://syntology.ai/.well-known/mcp/server-card.json","auth":{"type":"trial token, no account","trial_token":"https://syntology.ai/api/oauth/trial/token","method":"POST","docs":"https://syntology.ai/developers"}},"have":"https://syntology.ai/api/graph/have?x=<method, arXiv id or title> (free, answers coverage only)","paper_base":"https://syntology.ai/paper/","atlas_base":"https://app.syntology.ai/?focus="},"machine_readable":[{"url":"https://codewithpapers.app/llms.txt","what":"the machine catalog: every machine-readable file, counted"},{"url":"https://codewithpapers.app/index/manifest.json","what":"paper-to-code index by arXiv id, with Syntology's counts"},{"url":"https://codewithpapers.app/search/manifest.json","what":"site search index (titles, authors) and its files"},{"url":"https://codewithpapers.app/download","what":"bulk files: Syntology's layer, described there"},{"url":"https://codewithpapers.app/build_manifest.json","what":"the build record: inputs, counts, exclusions, probes"}]},"url":"/task/adversarial-robustness/papers/18","list_of":"/task/adversarial-robustness","task":"Adversarial Robustness","archive":{"snapshot":"2025-07-28"},"key_notes":{"n_ran_checked":"legacy name, kept unchanged so existing readers do not break: it counts the samples that ran with no instrument failure (honoured, violated, and ran with no contract checked); it does not mean a contract was checked, and the pages print it as 'K with no instrument failure', not 'K checked'","n_constructed":"a sub-count of the samples that ran, never subtracted from them and never a failure: an executed sample whose run returned an instance of its own class (fixture_out_type equals the entry name): the run built an object and did not compute a result (Syntology's RAN record, counts.constructed)"},"syntology_read_at":"2026-09-28T10:30:06+00:00","order":"archive","order_definition":"repositories listed in the archive (most first), then date (newest first), then slug","page":18,"pages_in_order":18,"rows_per_page":100,"rows":[1701,1746],"of":1746,"counts":{"archive_papers_tagged":1746,"with_a_code_link":788,"where_syntology_ran_a_sample":261,"not_listed_spam_title":0,"listed":1746,"listed_where_code_ran":261,"where_syntology_ran_a_sample_split":{"with_a_run_with_no_instrument_failure":205,"every_run_a_failure_of_syntologys_instrument":56,"listed_with_a_run_with_no_instrument_failure":205,"listed_every_run_a_failure_of_syntologys_instrument":56,"filter":{"states":["a run with no instrument failure","any run, instrument failures included"],"default":"a run with no instrument failure","note":"on the 'only where code ran' pages the default hides, in the browser, the rows where every run was a failure of Syntology's instrument; the second state shows them again. Rows are hidden, never re-ordered; these twins list every row"}},"definition":"distinct papers the archive tags; 'where Syntology ran a sample' counts papers with at least one harvested sample that ran, which is not a correctness claim"},"first_page":"/task/adversarial-robustness","prev":"/task/adversarial-robustness/papers/17","next":null,"papers":[{"url":null,"slug":"on-adversarial-robustness-of-small-vs-large","title":"On Adversarial Robustness of Small vs Large Batch Training","date":"2019-05-17","arxiv_id":null,"repositories_listed":0,"syntology":null},{"url":null,"slug":"analyzing-adversarial-attacks-against-deep","title":"Analyzing Adversarial Attacks Against Deep Learning for Intrusion Detection in IoT Networks","date":"2019-05-13","arxiv_id":"1905.05137","repositories_listed":0,"syntology":null},{"url":null,"slug":"exploring-the-hyperparameter-landscape-of","title":"Exploring the Hyperparameter Landscape of Adversarial Robustness","date":"2019-05-09","arxiv_id":"1905.03837","repositories_listed":0,"syntology":null},{"url":null,"slug":"a-comprehensive-analysis-on-adversarial","title":"A Comprehensive Analysis on Adversarial Robustness of Spiking Neural Networks","date":"2019-05-07","arxiv_id":"1905.02704","repositories_listed":0,"syntology":null},{"url":null,"slug":"towards-evaluating-and-understanding-robust","title":"An Empirical Evaluation of Adversarial Robustness under Transfer Learning","date":"2019-05-07","arxiv_id":"1905.02675","repositories_listed":0,"syntology":null},{"url":null,"slug":"transfer-of-adversarial-robustness-between","title":"Transfer of Adversarial Robustness Between Perturbation Types","date":"2019-05-03","arxiv_id":"1905.01034","repositories_listed":0,"syntology":null},{"url":null,"slug":"dont-let-your-discriminator-be-fooled","title":"Don't let your Discriminator be fooled","date":"2019-05-01","arxiv_id":null,"repositories_listed":0,"syntology":null},{"url":null,"slug":"dropping-pixels-for-adversarial-robustness","title":"Dropping Pixels for Adversarial Robustness","date":"2019-05-01","arxiv_id":"1905.00180","repositories_listed":0,"syntology":null},{"url":null,"slug":"evaluation-methodology-for-attacks-against","title":"Evaluation Methodology for Attacks Against Confidence Thresholding Models","date":"2019-05-01","arxiv_id":null,"repositories_listed":0,"syntology":null},{"url":null,"slug":"on-meaning-preserving-adversarial","title":"On Meaning-Preserving Adversarial Perturbations for Sequence-to-Sequence Models","date":"2019-05-01","arxiv_id":null,"repositories_listed":0,"syntology":null},{"url":null,"slug":"prototypical-examples-in-deep-learning","title":"Prototypical Examples in Deep Learning: Metrics, Characteristics, and Utility","date":"2019-05-01","arxiv_id":null,"repositories_listed":0,"syntology":null},{"url":null,"slug":"interpreting-adversarial-examples-by","title":"Interpreting Adversarial Examples by Activation Promotion and Suppression","date":"2019-04-03","arxiv_id":"1904.02057","repositories_listed":0,"syntology":null},{"url":null,"slug":"on-the-adversarial-robustness-of-multivariate","title":"On the Adversarial Robustness of Multivariate Robust Estimation","date":"2019-03-27","arxiv_id":"1903.11220","repositories_listed":0,"syntology":null},{"url":null,"slug":"exploiting-excessive-invariance-caused-by","title":"Exploiting Excessive Invariance caused by Norm-Bounded Adversarial Robustness","date":"2019-03-25","arxiv_id":"1903.10484","repositories_listed":0,"syntology":null},{"url":null,"slug":"on-the-effectiveness-of-low-frequency","title":"On the Effectiveness of Low Frequency Perturbations","date":"2019-02-28","arxiv_id":"1903.00073","repositories_listed":0,"syntology":null},{"url":null,"slug":"on-the-sensitivity-of-adversarial-robustness","title":"On the Sensitivity of Adversarial Robustness to Input Data Distributions","date":"2019-02-22","arxiv_id":"1902.08336","repositories_listed":0,"syntology":null},{"url":null,"slug":"discretization-based-solutions-for-secure","title":"Discretization based Solutions for Secure Machine Learning against Adversarial Attacks","date":"2019-02-08","arxiv_id":"1902.03151","repositories_listed":0,"syntology":null},{"url":null,"slug":"robustness-of-saak-transform-against","title":"Robustness Of Saak Transform Against Adversarial Attacks","date":"2019-02-07","arxiv_id":"1902.02826","repositories_listed":0,"syntology":null},{"url":null,"slug":"adversarial-examples-are-a-natural","title":"Adversarial Examples Are a Natural Consequence of Test Error in Noise","date":"2019-01-29","arxiv_id":"1901.10513","repositories_listed":0,"syntology":null},{"url":null,"slug":"on-the-effect-of-low-rank-weights-on","title":"On the Effect of Low-Rank Weights on Adversarial Robustness of Neural Networks","date":"2019-01-29","arxiv_id":"1901.10371","repositories_listed":0,"syntology":null},{"url":null,"slug":"adversarial-robustness-may-be-at-odds-with","title":"Adversarial Robustness May Be at Odds With Simplicity","date":"2019-01-02","arxiv_id":"1901.00532","repositories_listed":0,"syntology":null},{"url":null,"slug":"effects-of-loss-functions-and-target","title":"Effects of Loss Functions And Target Representations on Adversarial Robustness","date":"2018-12-01","arxiv_id":"1812.00181","repositories_listed":0,"syntology":null},{"url":null,"slug":"theoretical-analysis-of-adversarial-learning","title":"Theoretical Analysis of Adversarial Learning: A Minimax Approach","date":"2018-11-13","arxiv_id":"1811.05232","repositories_listed":0,"syntology":null},{"url":null,"slug":"new-cleverhans-feature-better-adversarial","title":"New CleverHans Feature: Better Adversarial Robustness Evaluations with Attack Bundling","date":"2018-11-08","arxiv_id":"1811.03685","repositories_listed":0,"syntology":null},{"url":null,"slug":"improving-adversarial-robustness-by","title":"Improving Adversarial Robustness by Encouraging Discriminative Features","date":"2018-11-01","arxiv_id":"1811.00621","repositories_listed":0,"syntology":null},{"url":null,"slug":"on-the-effectiveness-of-minimal-context","title":"On the Effectiveness of Minimal Context Selection for Robust Question Answering","date":"2018-10-30","arxiv_id":null,"repositories_listed":0,"syntology":null},{"url":null,"slug":"towards-robust-deep-neural-networks","title":"Towards Robust Deep Neural Networks","date":"2018-10-27","arxiv_id":"1810.11726","repositories_listed":0,"syntology":null},{"url":null,"slug":"sparse-dnns-with-improved-adversarial","title":"Sparse DNNs with Improved Adversarial Robustness","date":"2018-10-23","arxiv_id":"1810.09619","repositories_listed":0,"syntology":null},{"url":null,"slug":"average-margin-regularization-for-classifiers","title":"Average Margin Regularization for Classifiers","date":"2018-10-09","arxiv_id":"1810.03773","repositories_listed":0,"syntology":null},{"url":null,"slug":"limitations-of-adversarial-robustness-strong","title":"Generalized No Free Lunch Theorem for Adversarial Robustness","date":"2018-10-08","arxiv_id":"1810.04065","repositories_listed":0,"syntology":null},{"url":null,"slug":"feature-prioritization-and-regularization","title":"Feature Prioritization and Regularization Improve Standard Accuracy and Adversarial Robustness","date":"2018-10-04","arxiv_id":"1810.02424","repositories_listed":0,"syntology":null},{"url":null,"slug":"interpreting-adversarial-robustness-a-view","title":"Interpreting Adversarial Robustness: A View from Decision Surface in Input Space","date":"2018-09-29","arxiv_id":"1810.00144","repositories_listed":0,"syntology":null},{"url":null,"slug":"knowledge-guided-semantic-computing-network","title":"Knowledge-guided Semantic Computing Network","date":"2018-09-29","arxiv_id":"1810.00139","repositories_listed":0,"syntology":null},{"url":null,"slug":"distilled-agent-dqn-for-provable-adversarial","title":"Distilled Agent DQN for Provable Adversarial Robustness","date":"2018-09-27","arxiv_id":null,"repositories_listed":0,"syntology":null},{"url":null,"slug":"lipschitz-regularized-deep-neural-networks","title":"Lipschitz regularized Deep Neural Networks generalize and are adversarially robust","date":"2018-08-28","arxiv_id":"1808.09540","repositories_listed":0,"syntology":null},{"url":null,"slug":"an-explainable-adversarial-robustness-metric","title":"An Explainable Adversarial Robustness Metric for Deep Learning Neural Networks","date":"2018-06-05","arxiv_id":"1806.01477","repositories_listed":0,"syntology":null},{"url":null,"slug":"adversarial-risk-and-the-dangers-of","title":"Adversarial Risk and the Dangers of Evaluating Against Weak Attacks","date":"2018-02-15","arxiv_id":"1802.05666","repositories_listed":0,"syntology":null},{"url":null,"slug":"a3t-adversarially-augmented-adversarial","title":"A3T: Adversarially Augmented Adversarial Training","date":"2018-01-12","arxiv_id":"1801.04055","repositories_listed":0,"syntology":null},{"url":null,"slug":"facial-attributes-accuracy-and-adversarial","title":"Facial Attributes: Accuracy and Adversarial Robustness","date":"2018-01-04","arxiv_id":"1801.02480","repositories_listed":0,"syntology":null},{"url":null,"slug":"layer-wise-learning-of-stochastic-neural","title":"Layer-wise Learning of Stochastic Neural Networks with Information Bottleneck","date":"2017-12-04","arxiv_id":"1712.01272","repositories_listed":0,"syntology":null},{"url":null,"slug":"reinforcing-adversarial-robustness-using","title":"Reinforcing Adversarial Robustness using Model Confidence Induced by Adversarial Training","date":"2017-11-21","arxiv_id":"1711.08001","repositories_listed":0,"syntology":null},{"url":null,"slug":"intriguing-properties-of-adversarial-examples","title":"Intriguing Properties of Adversarial Examples","date":"2017-11-08","arxiv_id":"1711.02846","repositories_listed":0,"syntology":null},{"url":null,"slug":"deepsafe-a-data-driven-approach-for-checking","title":"DeepSafe: A Data-driven Approach for Checking Adversarial Robustness in Neural Networks","date":"2017-10-02","arxiv_id":"1710.00486","repositories_listed":0,"syntology":null},{"url":null,"slug":"towards-proving-the-adversarial-robustness-of","title":"Towards Proving the Adversarial Robustness of Deep Neural Networks","date":"2017-09-08","arxiv_id":"1709.02802","repositories_listed":0,"syntology":null},{"url":null,"slug":"adversarial-robustness-softmax-versus-openmax","title":"Adversarial Robustness: Softmax versus Openmax","date":"2017-08-05","arxiv_id":"1708.01697","repositories_listed":0,"syntology":null},{"url":null,"slug":"lots-about-attacking-deep-features","title":"LOTS about Attacking Deep Features","date":"2016-11-18","arxiv_id":"1611.06179","repositories_listed":0,"syntology":null}],"record_sha256":"5abc962d1b4ae7e8bfd1d9bface02daf12560136c9a258a1280bdccb0650dbd1","record_changed_at":"2026-09-28","record_changed_at_basis":"first_hashed"}