{"about":{"non_affiliation":"Code with Papers and Syntology are not affiliated with, endorsed by, or sponsored by Papers with Code, Meta, or the pwc-archive mirror.","site":"https://codewithpapers.app","licence":"CC BY-SA 4.0","licence_url":"https://creativecommons.org/licenses/by-sa/4.0/legalcode","attribution":"https://codewithpapers.app/attribution","modified":"archive material modified by Syntology; see the attribution page","syntology":{"site":"https://syntology.ai","developers":"https://syntology.ai/developers","mcp":{"server":"https://syntology.ai/mcp","transport":"streamable-http","server_card":"https://syntology.ai/.well-known/mcp/server-card.json","auth":{"type":"trial token, no account","trial_token":"https://syntology.ai/api/oauth/trial/token","method":"POST","docs":"https://syntology.ai/developers"}},"have":"https://syntology.ai/api/graph/have?x=<method, arXiv id or title> (free, answers coverage only)","paper_base":"https://syntology.ai/paper/","atlas_base":"https://app.syntology.ai/?focus="},"machine_readable":[{"url":"https://codewithpapers.app/llms.txt","what":"the machine catalog: every machine-readable file, counted"},{"url":"https://codewithpapers.app/index/manifest.json","what":"paper-to-code index by arXiv id, with Syntology's counts"},{"url":"https://codewithpapers.app/search/manifest.json","what":"site search index (titles, authors) and its files"},{"url":"https://codewithpapers.app/download","what":"bulk files: Syntology's layer, described there"},{"url":"https://codewithpapers.app/build_manifest.json","what":"the build record: inputs, counts, exclusions, probes"}]},"url":"/task/data-poisoning/papers/2","list_of":"/task/data-poisoning","task":"Data Poisoning","archive":{"snapshot":"2025-07-28"},"key_notes":{"n_ran_checked":"legacy name, kept unchanged so existing readers do not break: it counts the samples that ran with no instrument failure (honoured, violated, and ran with no contract checked); it does not mean a contract was checked, and the pages print it as 'K with no instrument failure', not 'K checked'","n_constructed":"a sub-count of the samples that ran, never subtracted from them and never a failure: an executed sample whose run returned an instance of its own class (fixture_out_type equals the entry name): the run built an object and did not compute a result (Syntology's RAN record, counts.constructed)"},"syntology_read_at":"2026-09-28T10:30:06+00:00","order":"archive","order_definition":"repositories listed in the archive (most first), then date (newest first), then slug","page":2,"pages_in_order":5,"rows_per_page":100,"rows":[101,200],"of":492,"counts":{"archive_papers_tagged":492,"with_a_code_link":170,"where_syntology_ran_a_sample":62,"not_listed_spam_title":0,"listed":492,"listed_where_code_ran":62,"where_syntology_ran_a_sample_split":{"with_a_run_with_no_instrument_failure":43,"every_run_a_failure_of_syntologys_instrument":19,"listed_with_a_run_with_no_instrument_failure":43,"listed_every_run_a_failure_of_syntologys_instrument":19,"filter":{"states":["a run with no instrument failure","any run, instrument failures included"],"default":"a run with no instrument failure","note":"on the 'only where code ran' pages the default hides, in the browser, the rows where every run was a failure of Syntology's instrument; the second state shows them again. Rows are hidden, never re-ordered; these twins list every row"}},"definition":"distinct papers the archive tags; 'where Syntology ran a sample' counts papers with at least one harvested sample that ran, which is not a correctness claim"},"first_page":"/task/data-poisoning","prev":"/task/data-poisoning","next":"/task/data-poisoning/papers/3","papers":[{"url":"/paper/amplifying-membership-exposure-via-data","slug":"amplifying-membership-exposure-via-data","title":"Amplifying Membership Exposure via Data Poisoning","date":"2022-11-01","arxiv_id":"2211.00463","repositories_listed":1,"syntology":null},{"url":"/paper/how-to-sift-out-a-clean-data-subset-in-the","slug":"how-to-sift-out-a-clean-data-subset-in-the","title":"How to Sift Out a Clean Data Subset in the Presence of Data Poisoning?","date":"2022-10-12","arxiv_id":"2210.06516","repositories_listed":1,"syntology":null},{"url":"/paper/data-poisoning-attacks-against-multimodal","slug":"data-poisoning-attacks-against-multimodal","title":"Data Poisoning Attacks Against Multimodal Encoders","date":"2022-09-30","arxiv_id":"2209.15266","repositories_listed":1,"syntology":{"n":3,"n_ran":3,"n_constructed":0,"n_ran_checked":1,"n_instrument":2,"n_unverified":0,"n_honours":1,"n_violates":0,"n_no_contract":0,"n_pointer_only":3,"phrase":"3 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 1 honoured, 0 violated, 0 with no contract checked; 2 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/data-poisoning-attacks-against-multimodal#ran","syntology_url":"https://syntology.ai/paper/2209.15266","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2209.15266"}},"official":{"repos":["zqypku/mm_poison"],"state":"official (archive's flag): 3 ran","n_ran":3,"n_constructed":0,"n_ran_no_instrument_failure":1,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/on-the-robustness-of-ensemble-based-machine","slug":"on-the-robustness-of-ensemble-based-machine","title":"On the Robustness of Random Forest Against Untargeted Data Poisoning: An Ensemble-Based Approach","date":"2022-09-28","arxiv_id":"2209.14013","repositories_listed":1,"syntology":null},{"url":"/paper/friendly-noise-against-adversarial-noise-a","slug":"friendly-noise-against-adversarial-noise-a","title":"Friendly Noise against Adversarial Noise: A Powerful Defense against Data Poisoning Attacks","date":"2022-08-14","arxiv_id":"2208.10224","repositories_listed":1,"syntology":{"n":2,"n_ran":2,"n_constructed":0,"n_ran_checked":0,"n_instrument":2,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":0,"phrase":"2 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 2 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/friendly-noise-against-adversarial-noise-a#ran","syntology_url":"https://syntology.ai/paper/2208.10224","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2208.10224"}},"official":{"repos":["tianyu139/friendly-noise"],"state":"official (archive's flag): 2 ran","n_ran":2,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/lethal-dose-conjecture-on-data-poisoning","slug":"lethal-dose-conjecture-on-data-poisoning","title":"Lethal Dose Conjecture on Data Poisoning","date":"2022-08-05","arxiv_id":"2208.03309","repositories_listed":1,"syntology":null},{"url":"/paper/testing-the-robustness-of-learned-index","slug":"testing-the-robustness-of-learned-index","title":"Testing the Robustness of Learned Index Structures","date":"2022-07-23","arxiv_id":"2207.11575","repositories_listed":1,"syntology":null},{"url":"/paper/backdoor-attacks-on-crowd-counting","slug":"backdoor-attacks-on-crowd-counting","title":"Backdoor Attacks on Crowd Counting","date":"2022-07-12","arxiv_id":"2207.05641","repositories_listed":1,"syntology":null},{"url":"/paper/backdoor-attack-is-a-devil-in-federated-gan","slug":"backdoor-attack-is-a-devil-in-federated-gan","title":"Backdoor Attack is a Devil in Federated GAN-based Medical Image Synthesis","date":"2022-07-02","arxiv_id":"2207.00762","repositories_listed":1,"syntology":null},{"url":"/paper/robustness-evaluation-of-deep-unsupervised","slug":"robustness-evaluation-of-deep-unsupervised","title":"Robustness Evaluation of Deep Unsupervised Learning Algorithms for Intrusion Detection Systems","date":"2022-06-25","arxiv_id":"2207.03576","repositories_listed":1,"syntology":{"n":1,"n_ran":1,"n_constructed":0,"n_ran_checked":0,"n_instrument":1,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":1,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 1 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/robustness-evaluation-of-deep-unsupervised#ran","syntology_url":"https://syntology.ai/paper/2207.03576","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2207.03576"}},"official":{"repos":["intrudetection/robevalanodetect"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/efficient-reward-poisoning-attacks-on-online","slug":"efficient-reward-poisoning-attacks-on-online","title":"Efficient Reward Poisoning Attacks on Online Deep Reinforcement Learning","date":"2022-05-30","arxiv_id":"2205.14842","repositories_listed":1,"syntology":{"n":3,"n_ran":3,"n_constructed":0,"n_ran_checked":0,"n_instrument":3,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":3,"phrase":"3 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 3 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/efficient-reward-poisoning-attacks-on-online#ran","syntology_url":"https://syntology.ai/paper/2205.14842","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2205.14842"}},"official":{"repos":["yinglunxu/reward_poisoning_attack_drl"],"state":"official (archive's flag): 3 ran","n_ran":3,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/bagflip-a-certified-defense-against-data","slug":"bagflip-a-certified-defense-against-data","title":"BagFlip: A Certified Defense against Data Poisoning","date":"2022-05-26","arxiv_id":"2205.13634","repositories_listed":1,"syntology":{"n":8,"n_ran":5,"n_constructed":0,"n_ran_checked":3,"n_instrument":2,"n_unverified":3,"n_honours":3,"n_violates":0,"n_no_contract":0,"n_pointer_only":0,"phrase":"5 ran (of which 0 constructed an object rather than computing a result; 3 with no instrument failure: 3 honoured, 0 violated, 0 with no contract checked; 2 where Syntology's instrument failed) · 3 unverified","sample_list":"/paper/bagflip-a-certified-defense-against-data#ran","syntology_url":"https://syntology.ai/paper/2205.13634","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2205.13634"}},"official":{"repos":["foreverzyh/defend_framework"],"state":"official (archive's flag): 5 ran","n_ran":5,"n_constructed":0,"n_ran_no_instrument_failure":3,"n_unverified":3,"ran_from_kinds":["official"]}}},{"url":"/paper/indiscriminate-data-poisoning-attacks-on","slug":"indiscriminate-data-poisoning-attacks-on","title":"Indiscriminate Data Poisoning Attacks on Neural Networks","date":"2022-04-19","arxiv_id":"2204.09092","repositories_listed":1,"syntology":{"n":6,"n_ran":5,"n_constructed":0,"n_ran_checked":5,"n_instrument":0,"n_unverified":1,"n_honours":1,"n_violates":0,"n_no_contract":4,"n_pointer_only":1,"phrase":"5 ran (of which 0 constructed an object rather than computing a result; 5 with no instrument failure: 1 honoured, 0 violated, 4 with no contract checked; 0 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/indiscriminate-data-poisoning-attacks-on#ran","syntology_url":"https://syntology.ai/paper/2204.09092","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2204.09092"}},"official":{"repos":["watml/tgda-attack"],"state":"official (archive's flag): 5 ran","n_ran":5,"n_constructed":0,"n_ran_no_instrument_failure":5,"n_unverified":1,"ran_from_kinds":["official"]}}},{"url":"/paper/machine-learning-security-against-data","slug":"machine-learning-security-against-data","title":"Machine Learning Security against Data Poisoning: Are We There Yet?","date":"2022-04-12","arxiv_id":"2204.05986","repositories_listed":1,"syntology":{"n":2,"n_ran":1,"n_constructed":0,"n_ran_checked":1,"n_instrument":0,"n_unverified":1,"n_honours":0,"n_violates":0,"n_no_contract":1,"n_pointer_only":0,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 0 honoured, 0 violated, 1 with no contract checked; 0 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/machine-learning-security-against-data#ran","syntology_url":"https://syntology.ai/paper/2204.05986","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2204.05986"}},"official":null}},{"url":"/paper/indiscriminate-poisoning-attacks-on","slug":"indiscriminate-poisoning-attacks-on","title":"Indiscriminate Poisoning Attacks on Unsupervised Contrastive Learning","date":"2022-02-22","arxiv_id":"2202.11202","repositories_listed":1,"syntology":{"n":18,"n_ran":13,"n_constructed":5,"n_ran_checked":9,"n_instrument":4,"n_unverified":5,"n_honours":0,"n_violates":0,"n_no_contract":9,"n_pointer_only":0,"phrase":"13 ran (of which 5 constructed an object rather than computing a result; 9 with no instrument failure: 0 honoured, 0 violated, 9 with no contract checked; 4 where Syntology's instrument failed) · 5 unverified","sample_list":"/paper/indiscriminate-poisoning-attacks-on#ran","syntology_url":"https://syntology.ai/paper/2202.11202","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2202.11202"}},"official":{"repos":["kaiwenzha/contrastive-poisoning"],"state":"official (archive's flag): 13 ran","n_ran":13,"n_constructed":5,"n_ran_no_instrument_failure":9,"n_unverified":5,"ran_from_kinds":["official"]}}},{"url":"/paper/an-equivalence-between-data-poisoning-and-1","slug":"an-equivalence-between-data-poisoning-and-1","title":"An Equivalence Between Data Poisoning and Byzantine Gradient Attacks","date":"2022-02-17","arxiv_id":"2202.08578","repositories_listed":1,"syntology":null},{"url":"/paper/beas-blockchain-enabled-asynchronous-secure","slug":"beas-blockchain-enabled-asynchronous-secure","title":"BEAS: Blockchain Enabled Asynchronous & Secure Federated Machine Learning","date":"2022-02-06","arxiv_id":"2202.02817","repositories_listed":1,"syntology":null},{"url":"/paper/improved-certified-defenses-against-data","slug":"improved-certified-defenses-against-data","title":"Improved Certified Defenses against Data Poisoning with (Deterministic) Finite Aggregation","date":"2022-02-05","arxiv_id":"2202.02628","repositories_listed":1,"syntology":null},{"url":"/paper/towards-understanding-quality-challenges-of","slug":"towards-understanding-quality-challenges-of","title":"Towards Understanding Quality Challenges of the Federated Learning for Neural Networks: A First Look from the Lens of Robustness","date":"2022-01-05","arxiv_id":"2201.01409","repositories_listed":1,"syntology":null},{"url":"/paper/towards-practical-deployment-stage-backdoor","slug":"towards-practical-deployment-stage-backdoor","title":"Towards Practical Deployment-Stage Backdoor Attack on Deep Neural Networks","date":"2021-11-25","arxiv_id":"2111.12965","repositories_listed":1,"syntology":null},{"url":"/paper/poisoning-knowledge-graph-embeddings-via-1","slug":"poisoning-knowledge-graph-embeddings-via-1","title":"Poisoning Knowledge Graph Embeddings via Relation Inference Patterns","date":"2021-11-11","arxiv_id":"2111.06345","repositories_listed":1,"syntology":{"n":2,"n_ran":1,"n_constructed":0,"n_ran_checked":1,"n_instrument":0,"n_unverified":1,"n_honours":0,"n_violates":0,"n_no_contract":1,"n_pointer_only":0,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 0 honoured, 0 violated, 1 with no contract checked; 0 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/poisoning-knowledge-graph-embeddings-via-1#ran","syntology_url":"https://syntology.ai/paper/2111.06345","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2111.06345"}},"official":{"repos":["perubhardwaj/inferenceattack"],"state":"official: no sample here; runs from other or unrecorded repositories","n_ran":0,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["found_in_text"]}}},{"url":"/paper/barfed-byzantine-attack-resistant-federated","slug":"barfed-byzantine-attack-resistant-federated","title":"ARFED: Attack-Resistant Federated averaging based on outlier elimination","date":"2021-11-08","arxiv_id":"2111.04550","repositories_listed":1,"syntology":null},{"url":"/paper/adversarial-attacks-on-knowledge-graph-1","slug":"adversarial-attacks-on-knowledge-graph-1","title":"Adversarial Attacks on Knowledge Graph Embeddings via Instance Attribution Methods","date":"2021-11-04","arxiv_id":"2111.03120","repositories_listed":1,"syntology":null},{"url":"/paper/indiscriminate-poisoning-attacks-are-1","slug":"indiscriminate-poisoning-attacks-are-1","title":"Availability Attacks Create Shortcuts","date":"2021-11-01","arxiv_id":"2111.00898","repositories_listed":1,"syntology":{"n":1,"n_ran":1,"n_constructed":0,"n_ran_checked":1,"n_instrument":0,"n_unverified":0,"n_honours":1,"n_violates":0,"n_no_contract":0,"n_pointer_only":1,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 1 honoured, 0 violated, 0 with no contract checked; 0 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/indiscriminate-poisoning-attacks-are-1#ran","syntology_url":"https://syntology.ai/paper/2111.00898","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2111.00898"}},"official":{"repos":["dayu11/availability-attacks-create-shortcuts"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":1,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/coprotector-protect-open-source-code-against","slug":"coprotector-protect-open-source-code-against","title":"CoProtector: Protect Open-Source Code against Unauthorized Training Usage with Data Poisoning","date":"2021-10-25","arxiv_id":"2110.12925","repositories_listed":1,"syntology":null},{"url":"/paper/clean-label-backdoor-attack-against-deep","slug":"clean-label-backdoor-attack-against-deep","title":"Backdoor Attack on Hash-based Image Retrieval via Clean-label Data Poisoning","date":"2021-09-18","arxiv_id":"2109.08868","repositories_listed":1,"syntology":null},{"url":"/paper/excess-capacity-and-backdoor-poisoning","slug":"excess-capacity-and-backdoor-poisoning","title":"Excess Capacity and Backdoor Poisoning","date":"2021-09-02","arxiv_id":"2109.00685","repositories_listed":1,"syntology":{"n":3,"n_ran":3,"n_constructed":0,"n_ran_checked":3,"n_instrument":0,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":3,"n_pointer_only":0,"phrase":"3 ran (of which 0 constructed an object rather than computing a result; 3 with no instrument failure: 0 honoured, 0 violated, 3 with no contract checked; 0 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/excess-capacity-and-backdoor-poisoning#ran","syntology_url":"https://syntology.ai/paper/2109.00685","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2109.00685"}},"official":{"repos":["narenmanoj/mnist-adv-training"],"state":"official: no sample here; runs from other or unrecorded repositories","n_ran":0,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["found_in_text"]}}},{"url":"/paper/black-box-attacks-on-sequential-recommenders","slug":"black-box-attacks-on-sequential-recommenders","title":"Black-Box Attacks on Sequential Recommenders via Data-Free Model Extraction","date":"2021-09-01","arxiv_id":"2109.01165","repositories_listed":1,"syntology":null},{"url":"/paper/classification-auto-encoder-based-detector","slug":"classification-auto-encoder-based-detector","title":"Classification Auto-Encoder based Detector against Diverse Data Poisoning Attacks","date":"2021-08-09","arxiv_id":"2108.04206","repositories_listed":1,"syntology":null},{"url":"/paper/poison-ink-robust-and-invisible-backdoor","slug":"poison-ink-robust-and-invisible-backdoor","title":"Poison Ink: Robust and Invisible Backdoor Attack","date":"2021-08-05","arxiv_id":"2108.02488","repositories_listed":1,"syntology":{"n":2,"n_ran":1,"n_constructed":0,"n_ran_checked":0,"n_instrument":1,"n_unverified":1,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":0,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 1 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/poison-ink-robust-and-invisible-backdoor#ran","syntology_url":"https://syntology.ai/paper/2108.02488","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2108.02488"}},"official":null}},{"url":"/paper/putting-words-into-the-systems-mouth-a","slug":"putting-words-into-the-systems-mouth-a","title":"Putting words into the system’s mouth: A targeted attack on neural machine translation using monolingual data poisoning","date":"2021-08-01","arxiv_id":null,"repositories_listed":1,"syntology":null},{"url":"/paper/putting-words-into-the-system-s-mouth-a","slug":"putting-words-into-the-system-s-mouth-a","title":"Putting words into the system's mouth: A targeted attack on neural machine translation using monolingual data poisoning","date":"2021-07-12","arxiv_id":"2107.05243","repositories_listed":1,"syntology":{"n":10,"n_ran":9,"n_constructed":0,"n_ran_checked":9,"n_instrument":0,"n_unverified":1,"n_honours":0,"n_violates":0,"n_no_contract":9,"n_pointer_only":0,"phrase":"9 ran (of which 0 constructed an object rather than computing a result; 9 with no instrument failure: 0 honoured, 0 violated, 9 with no contract checked; 0 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/putting-words-into-the-system-s-mouth-a#ran","syntology_url":"https://syntology.ai/paper/2107.05243","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2107.05243"}},"official":{"repos":["JunW15/Monolingual-Attack"],"state":"official (archive's flag): 9 ran","n_ran":9,"n_constructed":0,"n_ran_no_instrument_failure":9,"n_unverified":1,"ran_from_kinds":["official"]}}},{"url":"/paper/understanding-the-limits-of-unsupervised","slug":"understanding-the-limits-of-unsupervised","title":"Understanding the Limits of Unsupervised Domain Adaptation via Data Poisoning","date":"2021-07-08","arxiv_id":"2107.03919","repositories_listed":1,"syntology":null},{"url":"/paper/poisoning-attack-against-estimating-from","slug":"poisoning-attack-against-estimating-from","title":"Poisoning Attack against Estimating from Pairwise Comparisons","date":"2021-07-05","arxiv_id":"2107.01854","repositories_listed":1,"syntology":null},{"url":"/paper/data-poisoning-won-t-save-you-from-facial","slug":"data-poisoning-won-t-save-you-from-facial","title":"Data Poisoning Won't Save You From Facial Recognition","date":"2021-06-28","arxiv_id":"2106.14851","repositories_listed":1,"syntology":{"n":4,"n_ran":4,"n_constructed":0,"n_ran_checked":0,"n_instrument":4,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":0,"phrase":"4 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 4 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/data-poisoning-won-t-save-you-from-facial#ran","syntology_url":"https://syntology.ai/paper/2106.14851","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2106.14851"}},"official":{"repos":["ftramer/facecure"],"state":"official (archive's flag): 4 ran","n_ran":4,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/fooling-partial-dependence-via-data-poisoning","slug":"fooling-partial-dependence-via-data-poisoning","title":"Fooling Partial Dependence via Data Poisoning","date":"2021-05-26","arxiv_id":"2105.12837","repositories_listed":1,"syntology":{"n":3,"n_ran":3,"n_constructed":0,"n_ran_checked":3,"n_instrument":0,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":3,"n_pointer_only":0,"phrase":"3 ran (of which 0 constructed an object rather than computing a result; 3 with no instrument failure: 0 honoured, 0 violated, 3 with no contract checked; 0 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/fooling-partial-dependence-via-data-poisoning#ran","syntology_url":"https://syntology.ai/paper/2105.12837","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2105.12837"}},"official":{"repos":["MI2DataLab/fooling-partial-dependence"],"state":"official (archive's flag): 3 ran","n_ran":3,"n_constructed":0,"n_ran_no_instrument_failure":3,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/provable-guarantees-against-data-poisoning","slug":"provable-guarantees-against-data-poisoning","title":"Incompatibility Clustering as a Defense Against Backdoor Poisoning Attacks","date":"2021-05-08","arxiv_id":"2105.03692","repositories_listed":1,"syntology":{"n":1,"n_ran":1,"n_constructed":1,"n_ran_checked":1,"n_instrument":0,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":1,"n_pointer_only":0,"phrase":"1 ran (of which 1 constructed an object rather than computing a result; 1 with no instrument failure: 0 honoured, 0 violated, 1 with no contract checked; 0 where Syntology's instrument failed) · 0 unverified; the one sample that ran constructed an object rather than computing a result","sample_list":"/paper/provable-guarantees-against-data-poisoning#ran","syntology_url":"https://syntology.ai/paper/2105.03692","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2105.03692"}},"official":{"repos":["charlesjin/compatibility_clustering"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":1,"n_ran_no_instrument_failure":1,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/be-careful-about-poisoned-word-embeddings","slug":"be-careful-about-poisoned-word-embeddings","title":"Be Careful about Poisoned Word Embeddings: Exploring the Vulnerability of the Embedding Layers in NLP Models","date":"2021-03-29","arxiv_id":"2103.15543","repositories_listed":1,"syntology":null},{"url":"/paper/the-hammer-and-the-nut-is-bilevel","slug":"the-hammer-and-the-nut-is-bilevel","title":"The Hammer and the Nut: Is Bilevel Optimization Really Needed to Poison Linear Classifiers?","date":"2021-03-23","arxiv_id":"2103.12399","repositories_listed":1,"syntology":null},{"url":"/paper/dp-instahide-provably-defusing-poisoning-and","slug":"dp-instahide-provably-defusing-poisoning-and","title":"DP-InstaHide: Provably Defusing Poisoning and Backdoor Attacks with Differentially Private Data Augmentations","date":"2021-03-02","arxiv_id":"2103.02079","repositories_listed":1,"syntology":null},{"url":"/paper/what-doesn-t-kill-you-makes-you-robust-er","slug":"what-doesn-t-kill-you-makes-you-robust-er","title":"What Doesn't Kill You Makes You Robust(er): How to Adversarially Train against Data Poisoning","date":"2021-02-26","arxiv_id":"2102.13624","repositories_listed":1,"syntology":null},{"url":"/paper/exacerbating-algorithmic-bias-through","slug":"exacerbating-algorithmic-bias-through","title":"Exacerbating Algorithmic Bias through Fairness Attacks","date":"2020-12-16","arxiv_id":"2012.08723","repositories_listed":1,"syntology":{"n":3,"n_ran":3,"n_constructed":0,"n_ran_checked":0,"n_instrument":3,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":0,"phrase":"3 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 3 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/exacerbating-algorithmic-bias-through#ran","syntology_url":"https://syntology.ai/paper/2012.08723","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2012.08723"}},"official":{"repos":["Ninarehm/attack"],"state":"official (archive's flag): 3 ran","n_ran":3,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/how-robust-are-randomized-smoothing-based","slug":"how-robust-are-randomized-smoothing-based","title":"How Robust are Randomized Smoothing based Defenses to Data Poisoning?","date":"2020-12-02","arxiv_id":"2012.01274","repositories_listed":1,"syntology":null},{"url":"/paper/lethean-attack-an-online-data-poisoning","slug":"lethean-attack-an-online-data-poisoning","title":"Lethean Attack: An Online Data Poisoning Technique","date":"2020-11-24","arxiv_id":"2011.12355","repositories_listed":1,"syntology":null},{"url":"/paper/dimensionality-reduction-regularization-and","slug":"dimensionality-reduction-regularization-and","title":"Dimensionality reduction, regularization, and generalization in overparameterized regressions","date":"2020-11-23","arxiv_id":"2011.11477","repositories_listed":1,"syntology":null},{"url":"/paper/strong-data-augmentation-sanitizes-poisoning","slug":"strong-data-augmentation-sanitizes-poisoning","title":"Strong Data Augmentation Sanitizes Poisoning and Backdoor Attacks Without an Accuracy Tradeoff","date":"2020-11-18","arxiv_id":"2011.09527","repositories_listed":1,"syntology":null},{"url":"/paper/venomave-clean-label-poisoning-against-speech","slug":"venomave-clean-label-poisoning-against-speech","title":"VenoMave: Targeted Poisoning Against Speech Recognition","date":"2020-10-21","arxiv_id":"2010.10682","repositories_listed":1,"syntology":null},{"url":"/paper/defending-distributed-classifiers-against","slug":"defending-distributed-classifiers-against","title":"Defending Distributed Classifiers Against Data Poisoning Attacks","date":"2020-08-21","arxiv_id":"2008.09284","repositories_listed":1,"syntology":null},{"url":"/paper/defending-regression-learners-against","slug":"defending-regression-learners-against","title":"Defending Regression Learners Against Poisoning Attacks","date":"2020-08-21","arxiv_id":"2008.09279","repositories_listed":1,"syntology":null},{"url":"/paper/intrinsic-certified-robustness-of-bagging","slug":"intrinsic-certified-robustness-of-bagging","title":"Intrinsic Certified Robustness of Bagging against Data Poisoning Attacks","date":"2020-08-11","arxiv_id":"2008.04495","repositories_listed":1,"syntology":null},{"url":"/paper/dynamic-federated-learning-model-for","slug":"dynamic-federated-learning-model-for","title":"Dynamic Defense Against Byzantine Poisoning Attacks in Federated Learning","date":"2020-07-29","arxiv_id":"2007.15030","repositories_listed":1,"syntology":{"n":1,"n_ran":1,"n_constructed":0,"n_ran_checked":1,"n_instrument":0,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":1,"n_pointer_only":0,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 0 honoured, 0 violated, 1 with no contract checked; 0 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/dynamic-federated-learning-model-for#ran","syntology_url":"https://syntology.ai/paper/2007.15030","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2007.15030"}},"official":{"repos":["ari-dasci/s-ddaba"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":1,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/backdoor-learning-a-survey","slug":"backdoor-learning-a-survey","title":"Backdoor Learning: A Survey","date":"2020-07-17","arxiv_id":"2007.08745","repositories_listed":1,"syntology":null},{"url":"/paper/odyssey-creation-analysis-and-detection-of","slug":"odyssey-creation-analysis-and-detection-of","title":"Odyssey: Creation, Analysis and Detection of Trojan Models","date":"2020-07-16","arxiv_id":"2007.08142","repositories_listed":1,"syntology":null},{"url":"/paper/subpopulation-data-poisoning-attacks","slug":"subpopulation-data-poisoning-attacks","title":"Subpopulation Data Poisoning Attacks","date":"2020-06-24","arxiv_id":"2006.14026","repositories_listed":1,"syntology":null},{"url":"/paper/on-adversarial-bias-and-the-robustness-of","slug":"on-adversarial-bias-and-the-robustness-of","title":"On Adversarial Bias and the Robustness of Fair Machine Learning","date":"2020-06-15","arxiv_id":"2006.08669","repositories_listed":1,"syntology":null},{"url":"/paper/auditing-differentially-private-machine","slug":"auditing-differentially-private-machine","title":"Auditing Differentially Private Machine Learning: How Private is Private SGD?","date":"2020-06-13","arxiv_id":"2006.07709","repositories_listed":1,"syntology":{"n":7,"n_ran":6,"n_constructed":0,"n_ran_checked":6,"n_instrument":0,"n_unverified":1,"n_honours":0,"n_violates":0,"n_no_contract":6,"n_pointer_only":0,"phrase":"6 ran (of which 0 constructed an object rather than computing a result; 6 with no instrument failure: 0 honoured, 0 violated, 6 with no contract checked; 0 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/auditing-differentially-private-machine#ran","syntology_url":"https://syntology.ai/paper/2006.07709","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2006.07709"}},"official":{"repos":["jagielski/auditing-dpsgd"],"state":"official (archive's flag): 6 ran","n_ran":6,"n_constructed":0,"n_ran_no_instrument_failure":6,"n_unverified":1,"ran_from_kinds":["official"]}}},{"url":"/paper/a-distributed-trust-framework-for-privacy","slug":"a-distributed-trust-framework-for-privacy","title":"A Distributed Trust Framework for Privacy-Preserving Machine Learning","date":"2020-06-03","arxiv_id":"2006.02456","repositories_listed":1,"syntology":null},{"url":"/paper/attacking-black-box-recommendations-via","slug":"attacking-black-box-recommendations-via","title":"Attacking Black-box Recommendations via Copying Cross-domain User Profiles","date":"2020-05-17","arxiv_id":"2005.08147","repositories_listed":1,"syntology":null},{"url":"/paper/guarantees-on-learning-depth-2-neural","slug":"guarantees-on-learning-depth-2-neural","title":"Depth-2 Neural Networks Under a Data-Poisoning Attack","date":"2020-05-04","arxiv_id":"2005.01699","repositories_listed":1,"syntology":null},{"url":"/paper/on-the-effectiveness-of-mitigating-data","slug":"on-the-effectiveness-of-mitigating-data","title":"On the Effectiveness of Mitigating Data Poisoning Attacks with Gradient Shaping","date":"2020-02-26","arxiv_id":"2002.11497","repositories_listed":1,"syntology":{"n":1,"n_ran":1,"n_constructed":0,"n_ran_checked":1,"n_instrument":0,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":1,"n_pointer_only":0,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 0 honoured, 0 violated, 1 with no contract checked; 0 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/on-the-effectiveness-of-mitigating-data#ran","syntology_url":"https://syntology.ai/paper/2002.11497","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2002.11497"}},"official":{"repos":["Sanghyun-Hong/Gradient-Shaping"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":1,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/fr-train-a-mutual-information-based-approach","slug":"fr-train-a-mutual-information-based-approach","title":"FR-Train: A Mutual Information-Based Approach to Fair and Robust Training","date":"2020-02-24","arxiv_id":"2002.10234","repositories_listed":1,"syntology":{"n":1,"n_ran":1,"n_constructed":0,"n_ran_checked":0,"n_instrument":1,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":1,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 1 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/fr-train-a-mutual-information-based-approach#ran","syntology_url":"https://syntology.ai/paper/2002.10234","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2002.10234"}},"official":{"repos":["yuji-roh/fr-train"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/detecting-ai-trojans-using-meta-neural","slug":"detecting-ai-trojans-using-meta-neural","title":"Detecting AI Trojans Using Meta Neural Analysis","date":"2019-10-08","arxiv_id":"1910.03137","repositories_listed":1,"syntology":null},{"url":"/paper/strong-baseline-defenses-against-clean-label","slug":"strong-baseline-defenses-against-clean-label","title":"Deep k-NN Defense against Clean-label Data Poisoning Attacks","date":"2019-09-29","arxiv_id":"1909.13374","repositories_listed":1,"syntology":null},{"url":"/paper/seeing-is-not-believing-camouflage-attacks-on","slug":"seeing-is-not-believing-camouflage-attacks-on","title":"Seeing is Not Believing: Camouflage Attacks on Image Scaling Algorithms","date":"2019-08-01","arxiv_id":null,"repositories_listed":1,"syntology":null},{"url":"/paper/explaining-vulnerabilities-to-adversarial","slug":"explaining-vulnerabilities-to-adversarial","title":"Explaining Vulnerabilities to Adversarial Machine Learning through Visual Analytics","date":"2019-07-17","arxiv_id":"1907.07296","repositories_listed":1,"syntology":null},{"url":"/paper/poisoning-attacks-with-generative-adversarial","slug":"poisoning-attacks-with-generative-adversarial","title":"Poisoning Attacks with Generative Adversarial Nets","date":"2019-06-18","arxiv_id":"1906.07773","repositories_listed":1,"syntology":null},{"url":"/paper/spectral-signatures-in-backdoor-attacks","slug":"spectral-signatures-in-backdoor-attacks","title":"Spectral Signatures in Backdoor Attacks","date":"2018-11-01","arxiv_id":"1811.00636","repositories_listed":1,"syntology":null},{"url":"/paper/using-trusted-data-to-train-deep-networks-on","slug":"using-trusted-data-to-train-deep-networks-on","title":"Using Trusted Data to Train Deep Networks on Labels Corrupted by Severe Noise","date":"2018-02-14","arxiv_id":"1802.05300","repositories_listed":1,"syntology":{"n":6,"n_ran":5,"n_constructed":0,"n_ran_checked":5,"n_instrument":0,"n_unverified":1,"n_honours":0,"n_violates":0,"n_no_contract":5,"n_pointer_only":0,"phrase":"5 ran (of which 0 constructed an object rather than computing a result; 5 with no instrument failure: 0 honoured, 0 violated, 5 with no contract checked; 0 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/using-trusted-data-to-train-deep-networks-on#ran","syntology_url":"https://syntology.ai/paper/1802.05300","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"1802.05300"}},"official":{"repos":["mmazeika/glc"],"state":"official (archive's flag): 5 ran","n_ran":5,"n_constructed":0,"n_ran_no_instrument_failure":5,"n_unverified":1,"ran_from_kinds":["official"]}}},{"url":"/paper/detection-of-adversarial-training-examples-in","slug":"detection-of-adversarial-training-examples-in","title":"Detection of Adversarial Training Examples in Poisoning Attacks through Anomaly Detection","date":"2018-02-08","arxiv_id":"1802.03041","repositories_listed":1,"syntology":null},{"url":"/paper/targeted-backdoor-attacks-on-deep-learning","slug":"targeted-backdoor-attacks-on-deep-learning","title":"Targeted Backdoor Attacks on Deep Learning Systems Using Data Poisoning","date":"2017-12-15","arxiv_id":"1712.05526","repositories_listed":1,"syntology":null},{"url":null,"slug":"a-bayesian-incentive-mechanism-for-poison","title":"A Bayesian Incentive Mechanism for Poison-Resilient Federated Learning","date":"2025-07-16","arxiv_id":"2507.12439","repositories_listed":0,"syntology":null},{"url":null,"slug":"self-adaptive-and-robust-federated-spectrum","title":"Self-Adaptive and Robust Federated Spectrum Sensing without Benign Majority for Cellular Networks","date":"2025-07-16","arxiv_id":"2507.12127","repositories_listed":0,"syntology":null},{"url":null,"slug":"multi-trigger-poisoning-amplifies-backdoor","title":"Multi-Trigger Poisoning Amplifies Backdoor Vulnerabilities in LLMs","date":"2025-07-15","arxiv_id":"2507.11112","repositories_listed":0,"syntology":null},{"url":null,"slug":"tuning-without-peeking-provable-privacy-and","title":"Tuning without Peeking: Provable Privacy and Generalization Bounds for LLM Post-Training","date":"2025-07-02","arxiv_id":"2507.01752","repositories_listed":0,"syntology":null},{"url":null,"slug":"generalization-under-byzantine-poisoning","title":"Generalization under Byzantine & Poisoning Attacks: Tight Stability Bounds in Robust Distributed Learning","date":"2025-06-22","arxiv_id":"2506.18020","repositories_listed":0,"syntology":null},{"url":null,"slug":"winter-soldier-backdooring-language-models-at","title":"Winter Soldier: Backdooring Language Models at Pre-Training with Indirect Data Poisoning","date":"2025-06-17","arxiv_id":"2506.14913","repositories_listed":0,"syntology":null},{"url":null,"slug":"2506-10722","title":"TED-LaST: Towards Robust Backdoor Defense Against Adaptive Attacks","date":"2025-06-12","arxiv_id":"2506.10722","repositories_listed":0,"syntology":null},{"url":null,"slug":"data-shifts-hurt-cot-a-theoretical-study","title":"Data Shifts Hurt CoT: A Theoretical Study","date":"2025-06-12","arxiv_id":"2506.10647","repositories_listed":0,"syntology":null},{"url":null,"slug":"devil-s-hand-data-poisoning-attacks-to","title":"Devil's Hand: Data Poisoning Attacks to Locally Private Graph Learning Protocols","date":"2025-06-11","arxiv_id":"2506.09803","repositories_listed":0,"syntology":null},{"url":null,"slug":"backdoor-attack-on-vision-language-models","title":"Backdoor Attack on Vision Language Models with Stealthy Semantic Manipulation","date":"2025-06-08","arxiv_id":"2506.07214","repositories_listed":0,"syntology":null},{"url":null,"slug":"securing-traffic-sign-recognition-systems-in","title":"Securing Traffic Sign Recognition Systems in Autonomous Vehicles","date":"2025-06-06","arxiv_id":"2506.06563","repositories_listed":0,"syntology":null},{"url":null,"slug":"adversarial-threat-vectors-and-risk","title":"Adversarial Threat Vectors and Risk Mitigation for Retrieval-Augmented Generation Systems","date":"2025-05-30","arxiv_id":"2506.00281","repositories_listed":0,"syntology":null},{"url":null,"slug":"cascading-adversarial-bias-from-injection-to","title":"Cascading Adversarial Bias from Injection to Distillation in Language Models","date":"2025-05-30","arxiv_id":"2505.24842","repositories_listed":0,"syntology":null},{"url":null,"slug":"distributed-federated-learning-for-vehicular","title":"Distributed Federated Learning for Vehicular Network Security: Anomaly Detection Benefits and Multi-Domain Attack Threats","date":"2025-05-29","arxiv_id":"2505.23706","repositories_listed":0,"syntology":null},{"url":null,"slug":"are-time-series-foundation-models-deployment","title":"Are Time-Series Foundation Models Deployment-Ready? A Systematic Study of Adversarial Robustness Across Domains","date":"2025-05-26","arxiv_id":"2505.19397","repositories_listed":0,"syntology":null},{"url":null,"slug":"security-concerns-for-large-language-models-a","title":"Security Concerns for Large Language Models: A Survey","date":"2025-05-24","arxiv_id":"2505.18889","repositories_listed":0,"syntology":null},{"url":null,"slug":"backdoors-in-drl-four-environments-focusing","title":"Backdoors in DRL: Four Environments Focusing on In-distribution Triggers","date":"2025-05-22","arxiv_id":"2505.17248","repositories_listed":0,"syntology":null},{"url":null,"slug":"a-linear-approach-to-data-poisoning","title":"A Linear Approach to Data Poisoning","date":"2025-05-21","arxiv_id":"2505.15175","repositories_listed":0,"syntology":null},{"url":null,"slug":"badsr-stealthy-label-backdoor-attacks-on","title":"BadSR: Stealthy Label Backdoor Attacks on Image Super-Resolution","date":"2025-05-21","arxiv_id":"2505.15308","repositories_listed":0,"syntology":null},{"url":null,"slug":"2505-11134","title":"Towards Robust Spiking Neural Networks:Mitigating Heterogeneous Training Vulnerability via Dominant Eigencomponent Projection","date":"2025-05-16","arxiv_id":"2505.11134","repositories_listed":0,"syntology":null},{"url":null,"slug":"sybil-based-virtual-data-poisoning-attacks-in","title":"Sybil-based Virtual Data Poisoning Attacks in Federated Learning","date":"2025-05-15","arxiv_id":"2505.09983","repositories_listed":0,"syntology":null},{"url":null,"slug":"stealthy-llm-driven-data-poisoning-attacks","title":"Stealthy LLM-Driven Data Poisoning Attacks Against Embedding-Based Retrieval-Augmented Recommender Systems","date":"2025-05-08","arxiv_id":"2505.05196","repositories_listed":0,"syntology":null},{"url":null,"slug":"open-challenges-in-multi-agent-security","title":"Open Challenges in Multi-Agent Security: Towards Secure Systems of Interacting AI Agents","date":"2025-05-04","arxiv_id":"2505.02077","repositories_listed":0,"syntology":null},{"url":null,"slug":"what-s-pulling-the-strings-evaluating","title":"What's Pulling the Strings? Evaluating Integrity and Attribution in AI Training and Inference through Concept Shift","date":"2025-04-28","arxiv_id":"2504.21042","repositories_listed":0,"syntology":null},{"url":null,"slug":"a-geometric-approach-to-problems-in","title":"A Geometric Approach to Problems in Optimization and Data Science","date":"2025-04-22","arxiv_id":"2504.16270","repositories_listed":0,"syntology":null},{"url":null,"slug":"investigating-cybersecurity-incidents-using","title":"Investigating cybersecurity incidents using large language models in latest-generation wireless networks","date":"2025-04-14","arxiv_id":"2504.13196","repositories_listed":0,"syntology":null},{"url":null,"slug":"controlnet-a-firewall-for-rag-based-llm","title":"ControlNET: A Firewall for RAG-based LLM System","date":"2025-04-13","arxiv_id":"2504.09593","repositories_listed":0,"syntology":null},{"url":null,"slug":"diversity-aware-dual-promotion-poisoning","title":"Diversity-aware Dual-promotion Poisoning Attack on Sequential Recommendation","date":"2025-04-09","arxiv_id":"2504.06586","repositories_listed":0,"syntology":null},{"url":null,"slug":"sky-of-unlearning-soul-rewiring-federated","title":"Sky of Unlearning (SoUL): Rewiring Federated Machine Unlearning via Selective Pruning","date":"2025-04-02","arxiv_id":"2504.01705","repositories_listed":0,"syntology":null},{"url":null,"slug":"clean-image-may-be-dangerous-data-poisoning","title":"Clean Image May be Dangerous: Data Poisoning Attacks Against Deep Hashing","date":"2025-03-27","arxiv_id":"2503.21236","repositories_listed":0,"syntology":null}],"record_sha256":"900dec016ea3d98304beb8566d5a6c86df28daf6f929a7a3ec701a334396f812","record_changed_at":"2026-09-28","record_changed_at_basis":"first_hashed"}