{"about":{"non_affiliation":"Code with Papers and Syntology are not affiliated with, endorsed by, or sponsored by Papers with Code, Meta, or the pwc-archive mirror.","site":"https://codewithpapers.app","licence":"CC BY-SA 4.0","licence_url":"https://creativecommons.org/licenses/by-sa/4.0/legalcode","attribution":"https://codewithpapers.app/attribution","modified":"archive material modified by Syntology; see the attribution page","syntology":{"site":"https://syntology.ai","developers":"https://syntology.ai/developers","mcp":{"server":"https://syntology.ai/mcp","transport":"streamable-http","server_card":"https://syntology.ai/.well-known/mcp/server-card.json","auth":{"type":"trial token, no account","trial_token":"https://syntology.ai/api/oauth/trial/token","method":"POST","docs":"https://syntology.ai/developers"}},"have":"https://syntology.ai/api/graph/have?x=<method, arXiv id or title> (free, answers coverage only)","paper_base":"https://syntology.ai/paper/","atlas_base":"https://app.syntology.ai/?focus="},"machine_readable":[{"url":"https://codewithpapers.app/llms.txt","what":"the machine catalog: every machine-readable file, counted"},{"url":"https://codewithpapers.app/index/manifest.json","what":"paper-to-code index by arXiv id, with Syntology's counts"},{"url":"https://codewithpapers.app/search/manifest.json","what":"site search index (titles, authors) and its files"},{"url":"https://codewithpapers.app/download","what":"bulk files: Syntology's layer, described there"},{"url":"https://codewithpapers.app/build_manifest.json","what":"the build record: inputs, counts, exclusions, probes"}]},"url":"/task/data-poisoning/papers/ran/1","list_of":"/task/data-poisoning","task":"Data Poisoning","archive":{"snapshot":"2025-07-28"},"key_notes":{"n_ran_checked":"legacy name, kept unchanged so existing readers do not break: it counts the samples that ran with no instrument failure (honoured, violated, and ran with no contract checked); it does not mean a contract was checked, and the pages print it as 'K with no instrument failure', not 'K checked'","n_constructed":"a sub-count of the samples that ran, never subtracted from them and never a failure: an executed sample whose run returned an instance of its own class (fixture_out_type equals the entry name): the run built an object and did not compute a result (Syntology's RAN record, counts.constructed)"},"syntology_read_at":"2026-09-28T10:30:06+00:00","order":"ran","order_definition":"only papers where Syntology ran at least one harvested sample; date (newest first), ties by arXiv id","caption":"We ran code from the paper's repository; we did not run it on this task or check it against the task's benchmarks.","absence":"A paper missing from this list is not a recorded non-run: it may have no arXiv id, no harvested code, or only samples that have not run yet.","page":1,"pages_in_order":1,"rows_per_page":100,"rows":[1,62],"of":62,"counts":{"archive_papers_tagged":492,"with_a_code_link":170,"where_syntology_ran_a_sample":62,"not_listed_spam_title":0,"listed":492,"listed_where_code_ran":62,"where_syntology_ran_a_sample_split":{"with_a_run_with_no_instrument_failure":43,"every_run_a_failure_of_syntologys_instrument":19,"listed_with_a_run_with_no_instrument_failure":43,"listed_every_run_a_failure_of_syntologys_instrument":19,"filter":{"states":["a run with no instrument failure","any run, instrument failures included"],"default":"a run with no instrument failure","note":"on the 'only where code ran' pages the default hides, in the browser, the rows where every run was a failure of Syntology's instrument; the second state shows them again. Rows are hidden, never re-ordered; these twins list every row"}},"definition":"distinct papers the archive tags; 'where Syntology ran a sample' counts papers with at least one harvested sample that ran, which is not a correctness claim"},"first_page":"/task/data-poisoning/papers/ran/1","prev":null,"next":null,"papers":[{"url":"/paper/delta-influence-unlearning-poisons-via","slug":"delta-influence-unlearning-poisons-via","title":"Delta-Influence: Unlearning Poisons via Influence Functions","date":"2024-11-20","arxiv_id":"2411.13731","repositories_listed":1,"syntology":{"n":12,"n_ran":7,"n_constructed":0,"n_ran_checked":6,"n_instrument":1,"n_unverified":5,"n_honours":0,"n_violates":0,"n_no_contract":6,"n_pointer_only":1,"phrase":"7 ran (of which 0 constructed an object rather than computing a result; 6 with no instrument failure: 0 honoured, 0 violated, 6 with no contract checked; 1 where Syntology's instrument failed) · 5 unverified","sample_list":"/paper/delta-influence-unlearning-poisons-via#ran","syntology_url":"https://syntology.ai/paper/2411.13731","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2411.13731"}},"official":{"repos":["andyisokay/delta-influence"],"state":"official: harvested, nothing ran","n_ran":0,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":1,"ran_from_kinds":["found_in_text"]}}},{"url":"/paper/learning-from-convolution-based-unlearnable","slug":"learning-from-convolution-based-unlearnable","title":"Learning from Convolution-based Unlearnable Datasets","date":"2024-11-04","arxiv_id":"2411.01742","repositories_listed":1,"syntology":{"n":1,"n_ran":1,"n_constructed":0,"n_ran_checked":0,"n_instrument":1,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":1,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 1 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/learning-from-convolution-based-unlearnable#ran","syntology_url":"https://syntology.ai/paper/2411.01742","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2411.01742"}},"official":{"repos":["aseriesof-tubes/RSK"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/poisonbench-assessing-large-language-model","slug":"poisonbench-assessing-large-language-model","title":"PoisonBench: Assessing Large Language Model Vulnerability to Data Poisoning","date":"2024-10-11","arxiv_id":"2410.08811","repositories_listed":1,"syntology":{"n":1,"n_ran":1,"n_constructed":0,"n_ran_checked":1,"n_instrument":0,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":1,"n_pointer_only":1,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 0 honoured, 0 violated, 1 with no contract checked; 0 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/poisonbench-assessing-large-language-model#ran","syntology_url":"https://syntology.ai/paper/2410.08811","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2410.08811"}},"official":{"repos":["tingchenfu/poisonbench"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":1,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/accelerating-the-surrogate-retraining-for","slug":"accelerating-the-surrogate-retraining-for","title":"Accelerating the Surrogate Retraining for Poisoning Attacks against Recommender Systems","date":"2024-08-20","arxiv_id":"2408.10666","repositories_listed":1,"syntology":{"n":3,"n_ran":3,"n_constructed":0,"n_ran_checked":0,"n_instrument":3,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":3,"phrase":"3 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 3 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/accelerating-the-surrogate-retraining-for#ran","syntology_url":"https://syntology.ai/paper/2408.10666","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2408.10666"}},"official":{"repos":["WuYunfan/GradientPassingAttack"],"state":"official (archive's flag): 3 ran","n_ran":3,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/2408-02946","slug":"2408-02946","title":"Data Poisoning in LLMs: Jailbreak-Tuning and Scaling Laws","date":"2024-08-06","arxiv_id":"2408.02946","repositories_listed":2,"syntology":{"n":5,"n_ran":1,"n_constructed":0,"n_ran_checked":1,"n_instrument":0,"n_unverified":4,"n_honours":0,"n_violates":0,"n_no_contract":1,"n_pointer_only":5,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 0 honoured, 0 violated, 1 with no contract checked; 0 where Syntology's instrument failed) · 4 unverified","sample_list":"/paper/2408-02946#ran","syntology_url":"https://syntology.ai/paper/2408.02946","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2408.02946"}},"official":{"repos":["alignmentresearch/scaling-poisoning"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":1,"n_unverified":4,"ran_from_kinds":["official"]}}},{"url":"/paper/provable-robustness-of-graph-neural-networks","slug":"provable-robustness-of-graph-neural-networks","title":"Provable Robustness of (Graph) Neural Networks Against Data Poisoning and Backdoor Attacks","date":"2024-07-15","arxiv_id":"2407.10867","repositories_listed":1,"syntology":{"n":1,"n_ran":1,"n_constructed":0,"n_ran_checked":0,"n_instrument":1,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":1,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 1 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/provable-robustness-of-graph-neural-networks#ran","syntology_url":"https://syntology.ai/paper/2407.10867","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2407.10867"}},"official":{"repos":["saper0/qpcert"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/robust-yet-efficient-conformal-prediction","slug":"robust-yet-efficient-conformal-prediction","title":"Robust Yet Efficient Conformal Prediction Sets","date":"2024-07-12","arxiv_id":"2407.09165","repositories_listed":1,"syntology":{"n":2,"n_ran":2,"n_constructed":0,"n_ran_checked":0,"n_instrument":2,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":2,"phrase":"2 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 2 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/robust-yet-efficient-conformal-prediction#ran","syntology_url":"https://syntology.ai/paper/2407.09165","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2407.09165"}},"official":{"repos":["soroushzargar/cas"],"state":"official (archive's flag): 2 ran","n_ran":2,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/securing-multi-turn-conversational-language","slug":"securing-multi-turn-conversational-language","title":"Securing Multi-turn Conversational Language Models From Distributed Backdoor Triggers","date":"2024-07-04","arxiv_id":"2407.04151","repositories_listed":1,"syntology":{"n":3,"n_ran":3,"n_constructed":0,"n_ran_checked":0,"n_instrument":3,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":3,"phrase":"3 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 3 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/securing-multi-turn-conversational-language#ran","syntology_url":"https://syntology.ai/paper/2407.04151","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2407.04151"}},"official":{"repos":["terrytong-git/poisonshare"],"state":"official (archive's flag): 3 ran","n_ran":3,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/generalization-bound-and-new-algorithm-for","slug":"generalization-bound-and-new-algorithm-for","title":"Generalization Bound and New Algorithm for Clean-Label Backdoor Attack","date":"2024-06-02","arxiv_id":"2406.00588","repositories_listed":1,"syntology":{"n":1,"n_ran":1,"n_constructed":0,"n_ran_checked":1,"n_instrument":0,"n_unverified":0,"n_honours":0,"n_violates":1,"n_no_contract":0,"n_pointer_only":1,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 0 honoured, 1 violated, 0 with no contract checked; 0 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/generalization-bound-and-new-algorithm-for#ran","syntology_url":"https://syntology.ai/paper/2406.00588","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2406.00588"}},"official":{"repos":["hong-xian/backdoor-attack"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":1,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/mitigating-backdoor-attack-by-injecting","slug":"mitigating-backdoor-attack-by-injecting","title":"Mitigating Backdoor Attack by Injecting Proactive Defensive Backdoor","date":"2024-05-25","arxiv_id":"2405.16112","repositories_listed":2,"syntology":{"n":5,"n_ran":4,"n_constructed":0,"n_ran_checked":3,"n_instrument":1,"n_unverified":1,"n_honours":0,"n_violates":0,"n_no_contract":3,"n_pointer_only":5,"phrase":"4 ran (of which 0 constructed an object rather than computing a result; 3 with no instrument failure: 0 honoured, 0 violated, 3 with no contract checked; 1 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/mitigating-backdoor-attack-by-injecting#ran","syntology_url":"https://syntology.ai/paper/2405.16112","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2405.16112"}},"official":{"repos":["shawkui/Proactive_Defensive_Backdoor","sclbd/backdoorbench"],"state":"official (archive's flag): 4 ran","n_ran":4,"n_constructed":0,"n_ran_no_instrument_failure":3,"n_unverified":1,"ran_from_kinds":["official"]}}},{"url":"/paper/nonsmooth-implicit-differentiation","slug":"nonsmooth-implicit-differentiation","title":"Nonsmooth Implicit Differentiation: Deterministic and Stochastic Convergence Rates","date":"2024-03-18","arxiv_id":"2403.11687","repositories_listed":1,"syntology":{"n":4,"n_ran":3,"n_constructed":0,"n_ran_checked":1,"n_instrument":2,"n_unverified":1,"n_honours":1,"n_violates":0,"n_no_contract":0,"n_pointer_only":0,"phrase":"3 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 1 honoured, 0 violated, 0 with no contract checked; 2 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/nonsmooth-implicit-differentiation#ran","syntology_url":"https://syntology.ai/paper/2403.11687","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2403.11687"}},"official":{"repos":["prolearner/nonsmooth_implicit_diff"],"state":"official (archive's flag): 3 ran","n_ran":3,"n_constructed":0,"n_ran_no_instrument_failure":1,"n_unverified":1,"ran_from_kinds":["official"]}}},{"url":"/paper/optimistic-verifiable-training-by-controlling","slug":"optimistic-verifiable-training-by-controlling","title":"Optimistic Verifiable Training by Controlling Hardware Nondeterminism","date":"2024-03-14","arxiv_id":"2403.09603","repositories_listed":1,"syntology":{"n":9,"n_ran":9,"n_constructed":3,"n_ran_checked":4,"n_instrument":5,"n_unverified":0,"n_honours":1,"n_violates":0,"n_no_contract":3,"n_pointer_only":9,"phrase":"9 ran (of which 3 constructed an object rather than computing a result; 4 with no instrument failure: 1 honoured, 0 violated, 3 with no contract checked; 5 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/optimistic-verifiable-training-by-controlling#ran","syntology_url":"https://syntology.ai/paper/2403.09603","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2403.09603"}},"official":{"repos":["meghabyte/verifiable-training"],"state":"official (archive's flag): 9 ran","n_ran":9,"n_constructed":3,"n_ran_no_instrument_failure":4,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/learning-to-poison-large-language-models","slug":"learning-to-poison-large-language-models","title":"Learning to Poison Large Language Models for Downstream Manipulation","date":"2024-02-21","arxiv_id":"2402.13459","repositories_listed":1,"syntology":{"n":5,"n_ran":1,"n_constructed":0,"n_ran_checked":1,"n_instrument":0,"n_unverified":4,"n_honours":0,"n_violates":0,"n_no_contract":1,"n_pointer_only":5,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 0 honoured, 0 violated, 1 with no contract checked; 0 where Syntology's instrument failed) · 4 unverified","sample_list":"/paper/learning-to-poison-large-language-models#ran","syntology_url":"https://syntology.ai/paper/2402.13459","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2402.13459"}},"official":{"repos":["rookiezxy/gbtl"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":1,"n_unverified":4,"ran_from_kinds":["official"]}}},{"url":"/paper/watch-out-for-your-agents-investigating","slug":"watch-out-for-your-agents-investigating","title":"Watch Out for Your Agents! Investigating Backdoor Threats to LLM-Based Agents","date":"2024-02-17","arxiv_id":"2402.11208","repositories_listed":1,"syntology":{"n":2,"n_ran":2,"n_constructed":0,"n_ran_checked":0,"n_instrument":2,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":2,"phrase":"2 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 2 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/watch-out-for-your-agents-investigating#ran","syntology_url":"https://syntology.ai/paper/2402.11208","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2402.11208"}},"official":{"repos":["lancopku/agent-backdoor-attacks"],"state":"official (archive's flag): 2 ran","n_ran":2,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/shadowcast-stealthy-data-poisoning-attacks","slug":"shadowcast-stealthy-data-poisoning-attacks","title":"Shadowcast: Stealthy Data Poisoning Attacks Against Vision-Language Models","date":"2024-02-05","arxiv_id":"2402.06659","repositories_listed":1,"syntology":{"n":15,"n_ran":12,"n_constructed":0,"n_ran_checked":8,"n_instrument":4,"n_unverified":3,"n_honours":1,"n_violates":0,"n_no_contract":7,"n_pointer_only":0,"phrase":"12 ran (of which 0 constructed an object rather than computing a result; 8 with no instrument failure: 1 honoured, 0 violated, 7 with no contract checked; 4 where Syntology's instrument failed) · 3 unverified","sample_list":"/paper/shadowcast-stealthy-data-poisoning-attacks#ran","syntology_url":"https://syntology.ai/paper/2402.06659","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2402.06659"}},"official":{"repos":["umd-huang-lab/vlm-poisoning"],"state":"official (archive's flag): 12 ran","n_ran":12,"n_constructed":0,"n_ran_no_instrument_failure":8,"n_unverified":3,"ran_from_kinds":["official"]}}},{"url":"/paper/game-theoretic-unlearnable-example-generator","slug":"game-theoretic-unlearnable-example-generator","title":"Game-Theoretic Unlearnable Example Generator","date":"2024-01-31","arxiv_id":"2401.17523","repositories_listed":1,"syntology":{"n":8,"n_ran":7,"n_constructed":0,"n_ran_checked":1,"n_instrument":6,"n_unverified":1,"n_honours":0,"n_violates":0,"n_no_contract":1,"n_pointer_only":8,"phrase":"7 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 0 honoured, 0 violated, 1 with no contract checked; 6 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/game-theoretic-unlearnable-example-generator#ran","syntology_url":"https://syntology.ai/paper/2401.17523","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2401.17523"}},"official":{"repos":["hong-xian/gue"],"state":"official (archive's flag): 7 ran","n_ran":7,"n_constructed":0,"n_ran_no_instrument_failure":1,"n_unverified":1,"ran_from_kinds":["official"]}}},{"url":"/paper/imma-immunizing-text-to-image-models-against","slug":"imma-immunizing-text-to-image-models-against","title":"IMMA: Immunizing text-to-image Models against Malicious Adaptation","date":"2023-11-30","arxiv_id":"2311.18815","repositories_listed":3,"syntology":{"n":17,"n_ran":11,"n_constructed":0,"n_ran_checked":10,"n_instrument":1,"n_unverified":6,"n_honours":0,"n_violates":0,"n_no_contract":10,"n_pointer_only":1,"phrase":"11 ran (of which 0 constructed an object rather than computing a result; 10 with no instrument failure: 0 honoured, 0 violated, 10 with no contract checked; 1 where Syntology's instrument failed) · 6 unverified","sample_list":"/paper/imma-immunizing-text-to-image-models-against#ran","syntology_url":"https://syntology.ai/paper/2311.18815","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2311.18815"}},"official":{"repos":["amberyzheng/imma","zhengyjzoe/imma"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":6,"ran_from_kinds":["listed","official"]}}},{"url":"/paper/universal-backdoor-attacks","slug":"universal-backdoor-attacks","title":"Universal Backdoor Attacks","date":"2023-11-30","arxiv_id":"2312.00157","repositories_listed":1,"syntology":{"n":1,"n_ran":1,"n_constructed":0,"n_ran_checked":1,"n_instrument":0,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":1,"n_pointer_only":0,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 0 honoured, 0 violated, 1 with no contract checked; 0 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/universal-backdoor-attacks#ran","syntology_url":"https://syntology.ai/paper/2312.00157","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2312.00157"}},"official":{"repos":["ben-schneider-code/universal-backdoor-attacks"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":1,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/from-trojan-horses-to-castle-walls-unveiling","slug":"from-trojan-horses-to-castle-walls-unveiling","title":"From Trojan Horses to Castle Walls: Unveiling Bilateral Data Poisoning Effects in Diffusion Models","date":"2023-11-04","arxiv_id":"2311.02373","repositories_listed":1,"syntology":{"n":4,"n_ran":4,"n_constructed":0,"n_ran_checked":2,"n_instrument":2,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":2,"n_pointer_only":4,"phrase":"4 ran (of which 0 constructed an object rather than computing a result; 2 with no instrument failure: 0 honoured, 0 violated, 2 with no contract checked; 2 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/from-trojan-horses-to-castle-walls-unveiling#ran","syntology_url":"https://syntology.ai/paper/2311.02373","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2311.02373"}},"official":{"repos":["optml-group/bibaddiff"],"state":"official (archive's flag): 4 ran","n_ran":4,"n_constructed":0,"n_ran_no_instrument_failure":2,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/better-safe-than-sorry-pre-training-clip","slug":"better-safe-than-sorry-pre-training-clip","title":"Better Safe than Sorry: Pre-training CLIP against Targeted Data Poisoning and Backdoor Attacks","date":"2023-10-05","arxiv_id":"2310.05862","repositories_listed":1,"syntology":{"n":10,"n_ran":5,"n_constructed":0,"n_ran_checked":4,"n_instrument":1,"n_unverified":5,"n_honours":0,"n_violates":0,"n_no_contract":4,"n_pointer_only":10,"phrase":"5 ran (of which 0 constructed an object rather than computing a result; 4 with no instrument failure: 0 honoured, 0 violated, 4 with no contract checked; 1 where Syntology's instrument failed) · 5 unverified","sample_list":"/paper/better-safe-than-sorry-pre-training-clip#ran","syntology_url":"https://syntology.ai/paper/2310.05862","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2310.05862"}},"official":{"repos":["bigml-cs-ucla/safeclip"],"state":"official (archive's flag): 4 ran","n_ran":4,"n_constructed":0,"n_ran_no_instrument_failure":4,"n_unverified":4,"ran_from_kinds":["official","unlocated"]}}},{"url":"/paper/on-the-exploitability-of-instruction-tuning-1","slug":"on-the-exploitability-of-instruction-tuning-1","title":"On the Exploitability of Instruction Tuning","date":"2023-06-28","arxiv_id":"2306.17194","repositories_listed":1,"syntology":{"n":11,"n_ran":7,"n_constructed":0,"n_ran_checked":5,"n_instrument":2,"n_unverified":4,"n_honours":0,"n_violates":0,"n_no_contract":5,"n_pointer_only":2,"phrase":"7 ran (of which 0 constructed an object rather than computing a result; 5 with no instrument failure: 0 honoured, 0 violated, 5 with no contract checked; 2 where Syntology's instrument failed) · 4 unverified","sample_list":"/paper/on-the-exploitability-of-instruction-tuning-1#ran","syntology_url":"https://syntology.ai/paper/2306.17194","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2306.17194"}},"official":{"repos":["azshue/autopoison"],"state":"official (archive's flag): 7 ran","n_ran":7,"n_constructed":0,"n_ran_no_instrument_failure":5,"n_unverified":4,"ran_from_kinds":["official"]}}},{"url":"/paper/2305-14585","slug":"2305-14585","title":"Faithful and Efficient Explanations for Neural Networks via Neural Tangent Kernel Surrogate Models","date":"2023-05-23","arxiv_id":"2305.14585","repositories_listed":1,"syntology":{"n":2,"n_ran":1,"n_constructed":0,"n_ran_checked":1,"n_instrument":0,"n_unverified":1,"n_honours":0,"n_violates":0,"n_no_contract":1,"n_pointer_only":2,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 0 honoured, 0 violated, 1 with no contract checked; 0 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/2305-14585#ran","syntology_url":"https://syntology.ai/paper/2305.14585","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2305.14585"}},"official":{"repos":["pnnl/projection_ntk"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":1,"n_unverified":1,"ran_from_kinds":["official"]}}},{"url":"/paper/text-to-image-diffusion-models-can-be-easily","slug":"text-to-image-diffusion-models-can-be-easily","title":"Text-to-Image Diffusion Models can be Easily Backdoored through Multimodal Data Poisoning","date":"2023-05-07","arxiv_id":"2305.04175","repositories_listed":1,"syntology":{"n":4,"n_ran":2,"n_constructed":0,"n_ran_checked":2,"n_instrument":0,"n_unverified":2,"n_honours":0,"n_violates":0,"n_no_contract":2,"n_pointer_only":0,"phrase":"2 ran (of which 0 constructed an object rather than computing a result; 2 with no instrument failure: 0 honoured, 0 violated, 2 with no contract checked; 0 where Syntology's instrument failed) · 2 unverified","sample_list":"/paper/text-to-image-diffusion-models-can-be-easily#ran","syntology_url":"https://syntology.ai/paper/2305.04175","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2305.04175"}},"official":{"repos":["sf-zhai/badt2i"],"state":"official (archive's flag): 2 ran","n_ran":2,"n_constructed":0,"n_ran_no_instrument_failure":2,"n_unverified":2,"ran_from_kinds":["official"]}}},{"url":"/paper/learning-the-unlearnable-adversarial","slug":"learning-the-unlearnable-adversarial","title":"Learning the Unlearnable: Adversarial Augmentations Suppress Unlearnable Example Attacks","date":"2023-03-27","arxiv_id":"2303.15127","repositories_listed":1,"syntology":{"n":1,"n_ran":1,"n_constructed":0,"n_ran_checked":0,"n_instrument":1,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":1,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 1 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/learning-the-unlearnable-adversarial#ran","syntology_url":"https://syntology.ai/paper/2303.15127","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2303.15127"}},"official":{"repos":["lafeat/ueraser"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/robust-contrastive-language-image-pretraining","slug":"robust-contrastive-language-image-pretraining","title":"Robust Contrastive Language-Image Pre-training against Data Poisoning and Backdoor Attacks","date":"2023-03-13","arxiv_id":"2303.06854","repositories_listed":1,"syntology":{"n":2,"n_ran":1,"n_constructed":0,"n_ran_checked":0,"n_instrument":1,"n_unverified":1,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":2,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 1 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/robust-contrastive-language-image-pretraining#ran","syntology_url":"https://syntology.ai/paper/2303.06854","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2303.06854"}},"official":{"repos":["bigml-cs-ucla/roclip"],"state":"official: no sample here; runs from other or unrecorded repositories","n_ran":0,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["unlocated"]}}},{"url":"/paper/certifiable-robustness-for-naive-bayes","slug":"certifiable-robustness-for-naive-bayes","title":"Naive Bayes Classifiers over Missing Data: Decision and Poisoning","date":"2023-03-08","arxiv_id":"2303.04811","repositories_listed":1,"syntology":{"n":1,"n_ran":1,"n_constructed":0,"n_ran_checked":0,"n_instrument":1,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":1,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 1 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/certifiable-robustness-for-naive-bayes#ran","syntology_url":"https://syntology.ai/paper/2303.04811","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2303.04811"}},"official":{"repos":["waterpine/nbc-missing"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/exploring-the-limits-of-indiscriminate-data","slug":"exploring-the-limits-of-indiscriminate-data","title":"Exploring the Limits of Model-Targeted Indiscriminate Data Poisoning Attacks","date":"2023-03-07","arxiv_id":"2303.03592","repositories_listed":1,"syntology":{"n":3,"n_ran":3,"n_constructed":1,"n_ran_checked":3,"n_instrument":0,"n_unverified":0,"n_honours":2,"n_violates":0,"n_no_contract":1,"n_pointer_only":3,"phrase":"3 ran (of which 1 constructed an object rather than computing a result; 3 with no instrument failure: 2 honoured, 0 violated, 1 with no contract checked; 0 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/exploring-the-limits-of-indiscriminate-data#ran","syntology_url":"https://syntology.ai/paper/2303.03592","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2303.03592"}},"official":{"repos":["watml/plim"],"state":"official (archive's flag): 3 ran","n_ran":3,"n_constructed":1,"n_ran_no_instrument_failure":3,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/cleanclip-mitigating-data-poisoning-attacks","slug":"cleanclip-mitigating-data-poisoning-attacks","title":"CleanCLIP: Mitigating Data Poisoning Attacks in Multimodal Contrastive Learning","date":"2023-03-06","arxiv_id":"2303.03323","repositories_listed":1,"syntology":{"n":3,"n_ran":1,"n_constructed":0,"n_ran_checked":1,"n_instrument":0,"n_unverified":2,"n_honours":1,"n_violates":0,"n_no_contract":0,"n_pointer_only":0,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 1 honoured, 0 violated, 0 with no contract checked; 0 where Syntology's instrument failed) · 2 unverified","sample_list":"/paper/cleanclip-mitigating-data-poisoning-attacks#ran","syntology_url":"https://syntology.ai/paper/2303.03323","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2303.03323"}},"official":{"repos":["nishadsinghi/cleanclip"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":1,"n_unverified":2,"ran_from_kinds":["official"]}}},{"url":"/paper/run-off-election-improved-provable-defense","slug":"run-off-election-improved-provable-defense","title":"Run-Off Election: Improved Provable Defense against Data Poisoning Attacks","date":"2023-02-05","arxiv_id":"2302.02300","repositories_listed":2,"syntology":{"n":1,"n_ran":1,"n_constructed":0,"n_ran_checked":0,"n_instrument":1,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":1,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 1 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/run-off-election-improved-provable-defense#ran","syntology_url":"https://syntology.ai/paper/2302.02300","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2302.02300"}},"official":{"repos":["k1rezaei/run-off-election","k1rezaei/DPA-election"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/trojanpuzzle-covertly-poisoning-code","slug":"trojanpuzzle-covertly-poisoning-code","title":"TrojanPuzzle: Covertly Poisoning Code-Suggestion Models","date":"2023-01-06","arxiv_id":"2301.02344","repositories_listed":1,"syntology":{"n":13,"n_ran":10,"n_constructed":0,"n_ran_checked":10,"n_instrument":0,"n_unverified":3,"n_honours":0,"n_violates":0,"n_no_contract":10,"n_pointer_only":0,"phrase":"10 ran (of which 0 constructed an object rather than computing a result; 10 with no instrument failure: 0 honoured, 0 violated, 10 with no contract checked; 0 where Syntology's instrument failed) · 3 unverified","sample_list":"/paper/trojanpuzzle-covertly-poisoning-code#ran","syntology_url":"https://syntology.ai/paper/2301.02344","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2301.02344"}},"official":{"repos":["microsoft/codegenerationpoisoning"],"state":"official (archive's flag): 10 ran","n_ran":10,"n_constructed":0,"n_ran_no_instrument_failure":10,"n_unverified":3,"ran_from_kinds":["official"]}}},{"url":"/paper/backdoor-attacks-for-remote-sensing-data-with","slug":"backdoor-attacks-for-remote-sensing-data-with","title":"Backdoor Attacks for Remote Sensing Data with Wavelet Transform","date":"2022-11-15","arxiv_id":"2211.08044","repositories_listed":1,"syntology":{"n":10,"n_ran":8,"n_constructed":0,"n_ran_checked":6,"n_instrument":2,"n_unverified":2,"n_honours":0,"n_violates":0,"n_no_contract":6,"n_pointer_only":1,"phrase":"8 ran (of which 0 constructed an object rather than computing a result; 6 with no instrument failure: 0 honoured, 0 violated, 6 with no contract checked; 2 where Syntology's instrument failed) · 2 unverified","sample_list":"/paper/backdoor-attacks-for-remote-sensing-data-with#ran","syntology_url":"https://syntology.ai/paper/2211.08044","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2211.08044"}},"official":{"repos":["ndraeger/waba"],"state":"official (archive's flag): 8 ran","n_ran":8,"n_constructed":0,"n_ran_no_instrument_failure":6,"n_unverified":2,"ran_from_kinds":["official"]}}},{"url":"/paper/not-all-poisons-are-created-equal-robust","slug":"not-all-poisons-are-created-equal-robust","title":"Not All Poisons are Created Equal: Robust Training against Data Poisoning","date":"2022-10-18","arxiv_id":"2210.09671","repositories_listed":2,"syntology":{"n":12,"n_ran":9,"n_constructed":0,"n_ran_checked":8,"n_instrument":1,"n_unverified":3,"n_honours":0,"n_violates":0,"n_no_contract":8,"n_pointer_only":3,"phrase":"9 ran (of which 0 constructed an object rather than computing a result; 8 with no instrument failure: 0 honoured, 0 violated, 8 with no contract checked; 1 where Syntology's instrument failed) · 3 unverified","sample_list":"/paper/not-all-poisons-are-created-equal-robust#ran","syntology_url":"https://syntology.ai/paper/2210.09671","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2210.09671"}},"official":{"repos":["yuyang0901/effective-poison-identification","yuyang0901/epic"],"state":"official (archive's flag): 9 ran","n_ran":9,"n_constructed":0,"n_ran_no_instrument_failure":8,"n_unverified":3,"ran_from_kinds":["official"]}}},{"url":"/paper/data-poisoning-attacks-against-multimodal","slug":"data-poisoning-attacks-against-multimodal","title":"Data Poisoning Attacks Against Multimodal Encoders","date":"2022-09-30","arxiv_id":"2209.15266","repositories_listed":1,"syntology":{"n":3,"n_ran":3,"n_constructed":0,"n_ran_checked":1,"n_instrument":2,"n_unverified":0,"n_honours":1,"n_violates":0,"n_no_contract":0,"n_pointer_only":3,"phrase":"3 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 1 honoured, 0 violated, 0 with no contract checked; 2 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/data-poisoning-attacks-against-multimodal#ran","syntology_url":"https://syntology.ai/paper/2209.15266","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2209.15266"}},"official":{"repos":["zqypku/mm_poison"],"state":"official (archive's flag): 3 ran","n_ran":3,"n_constructed":0,"n_ran_no_instrument_failure":1,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/friendly-noise-against-adversarial-noise-a","slug":"friendly-noise-against-adversarial-noise-a","title":"Friendly Noise against Adversarial Noise: A Powerful Defense against Data Poisoning Attacks","date":"2022-08-14","arxiv_id":"2208.10224","repositories_listed":1,"syntology":{"n":2,"n_ran":2,"n_constructed":0,"n_ran_checked":0,"n_instrument":2,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":0,"phrase":"2 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 2 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/friendly-noise-against-adversarial-noise-a#ran","syntology_url":"https://syntology.ai/paper/2208.10224","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2208.10224"}},"official":{"repos":["tianyu139/friendly-noise"],"state":"official (archive's flag): 2 ran","n_ran":2,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/robustness-evaluation-of-deep-unsupervised","slug":"robustness-evaluation-of-deep-unsupervised","title":"Robustness Evaluation of Deep Unsupervised Learning Algorithms for Intrusion Detection Systems","date":"2022-06-25","arxiv_id":"2207.03576","repositories_listed":1,"syntology":{"n":1,"n_ran":1,"n_constructed":0,"n_ran_checked":0,"n_instrument":1,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":1,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 1 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/robustness-evaluation-of-deep-unsupervised#ran","syntology_url":"https://syntology.ai/paper/2207.03576","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2207.03576"}},"official":{"repos":["intrudetection/robevalanodetect"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/autoregressive-perturbations-for-data","slug":"autoregressive-perturbations-for-data","title":"Autoregressive Perturbations for Data Poisoning","date":"2022-06-08","arxiv_id":"2206.03693","repositories_listed":2,"syntology":{"n":5,"n_ran":3,"n_constructed":1,"n_ran_checked":1,"n_instrument":2,"n_unverified":2,"n_honours":0,"n_violates":0,"n_no_contract":1,"n_pointer_only":2,"phrase":"3 ran (of which 1 constructed an object rather than computing a result; 1 with no instrument failure: 0 honoured, 0 violated, 1 with no contract checked; 2 where Syntology's instrument failed) · 2 unverified","sample_list":"/paper/autoregressive-perturbations-for-data#ran","syntology_url":"https://syntology.ai/paper/2206.03693","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2206.03693"}},"official":{"repos":["psandovalsegura/autoregressive-poisoning"],"state":"official (archive's flag): 2 ran","n_ran":2,"n_constructed":1,"n_ran_no_instrument_failure":1,"n_unverified":1,"ran_from_kinds":["listed","official"]}}},{"url":"/paper/efficient-reward-poisoning-attacks-on-online","slug":"efficient-reward-poisoning-attacks-on-online","title":"Efficient Reward Poisoning Attacks on Online Deep Reinforcement Learning","date":"2022-05-30","arxiv_id":"2205.14842","repositories_listed":1,"syntology":{"n":3,"n_ran":3,"n_constructed":0,"n_ran_checked":0,"n_instrument":3,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":3,"phrase":"3 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 3 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/efficient-reward-poisoning-attacks-on-online#ran","syntology_url":"https://syntology.ai/paper/2205.14842","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2205.14842"}},"official":{"repos":["yinglunxu/reward_poisoning_attack_drl"],"state":"official (archive's flag): 3 ran","n_ran":3,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/bagflip-a-certified-defense-against-data","slug":"bagflip-a-certified-defense-against-data","title":"BagFlip: A Certified Defense against Data Poisoning","date":"2022-05-26","arxiv_id":"2205.13634","repositories_listed":1,"syntology":{"n":8,"n_ran":5,"n_constructed":0,"n_ran_checked":3,"n_instrument":2,"n_unverified":3,"n_honours":3,"n_violates":0,"n_no_contract":0,"n_pointer_only":0,"phrase":"5 ran (of which 0 constructed an object rather than computing a result; 3 with no instrument failure: 3 honoured, 0 violated, 0 with no contract checked; 2 where Syntology's instrument failed) · 3 unverified","sample_list":"/paper/bagflip-a-certified-defense-against-data#ran","syntology_url":"https://syntology.ai/paper/2205.13634","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2205.13634"}},"official":{"repos":["foreverzyh/defend_framework"],"state":"official (archive's flag): 5 ran","n_ran":5,"n_constructed":0,"n_ran_no_instrument_failure":3,"n_unverified":3,"ran_from_kinds":["official"]}}},{"url":"/paper/indiscriminate-data-poisoning-attacks-on","slug":"indiscriminate-data-poisoning-attacks-on","title":"Indiscriminate Data Poisoning Attacks on Neural Networks","date":"2022-04-19","arxiv_id":"2204.09092","repositories_listed":1,"syntology":{"n":6,"n_ran":5,"n_constructed":0,"n_ran_checked":5,"n_instrument":0,"n_unverified":1,"n_honours":1,"n_violates":0,"n_no_contract":4,"n_pointer_only":1,"phrase":"5 ran (of which 0 constructed an object rather than computing a result; 5 with no instrument failure: 1 honoured, 0 violated, 4 with no contract checked; 0 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/indiscriminate-data-poisoning-attacks-on#ran","syntology_url":"https://syntology.ai/paper/2204.09092","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2204.09092"}},"official":{"repos":["watml/tgda-attack"],"state":"official (archive's flag): 5 ran","n_ran":5,"n_constructed":0,"n_ran_no_instrument_failure":5,"n_unverified":1,"ran_from_kinds":["official"]}}},{"url":"/paper/machine-learning-security-against-data","slug":"machine-learning-security-against-data","title":"Machine Learning Security against Data Poisoning: Are We There Yet?","date":"2022-04-12","arxiv_id":"2204.05986","repositories_listed":1,"syntology":{"n":2,"n_ran":1,"n_constructed":0,"n_ran_checked":1,"n_instrument":0,"n_unverified":1,"n_honours":0,"n_violates":0,"n_no_contract":1,"n_pointer_only":0,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 0 honoured, 0 violated, 1 with no contract checked; 0 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/machine-learning-security-against-data#ran","syntology_url":"https://syntology.ai/paper/2204.05986","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2204.05986"}},"official":null}},{"url":"/paper/indiscriminate-poisoning-attacks-on","slug":"indiscriminate-poisoning-attacks-on","title":"Indiscriminate Poisoning Attacks on Unsupervised Contrastive Learning","date":"2022-02-22","arxiv_id":"2202.11202","repositories_listed":1,"syntology":{"n":18,"n_ran":13,"n_constructed":5,"n_ran_checked":9,"n_instrument":4,"n_unverified":5,"n_honours":0,"n_violates":0,"n_no_contract":9,"n_pointer_only":0,"phrase":"13 ran (of which 5 constructed an object rather than computing a result; 9 with no instrument failure: 0 honoured, 0 violated, 9 with no contract checked; 4 where Syntology's instrument failed) · 5 unverified","sample_list":"/paper/indiscriminate-poisoning-attacks-on#ran","syntology_url":"https://syntology.ai/paper/2202.11202","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2202.11202"}},"official":{"repos":["kaiwenzha/contrastive-poisoning"],"state":"official (archive's flag): 13 ran","n_ran":13,"n_constructed":5,"n_ran_no_instrument_failure":9,"n_unverified":5,"ran_from_kinds":["official"]}}},{"url":"/paper/bilevel-optimization-with-a-lower-level","slug":"bilevel-optimization-with-a-lower-level","title":"Bilevel Optimization with a Lower-level Contraction: Optimal Sample Complexity without Warm-start","date":"2022-02-07","arxiv_id":"2202.03397","repositories_listed":2,"syntology":{"n":8,"n_ran":8,"n_constructed":0,"n_ran_checked":2,"n_instrument":6,"n_unverified":0,"n_honours":2,"n_violates":0,"n_no_contract":0,"n_pointer_only":0,"phrase":"8 ran (of which 0 constructed an object rather than computing a result; 2 with no instrument failure: 2 honoured, 0 violated, 0 with no contract checked; 6 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/bilevel-optimization-with-a-lower-level#ran","syntology_url":"https://syntology.ai/paper/2202.03397","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2202.03397"}},"official":{"repos":["csml-iit-ucl/bioptexps"],"state":"official (archive's flag): 8 ran","n_ran":8,"n_constructed":0,"n_ran_no_instrument_failure":2,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/poisoning-knowledge-graph-embeddings-via-1","slug":"poisoning-knowledge-graph-embeddings-via-1","title":"Poisoning Knowledge Graph Embeddings via Relation Inference Patterns","date":"2021-11-11","arxiv_id":"2111.06345","repositories_listed":1,"syntology":{"n":2,"n_ran":1,"n_constructed":0,"n_ran_checked":1,"n_instrument":0,"n_unverified":1,"n_honours":0,"n_violates":0,"n_no_contract":1,"n_pointer_only":0,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 0 honoured, 0 violated, 1 with no contract checked; 0 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/poisoning-knowledge-graph-embeddings-via-1#ran","syntology_url":"https://syntology.ai/paper/2111.06345","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2111.06345"}},"official":{"repos":["perubhardwaj/inferenceattack"],"state":"official: no sample here; runs from other or unrecorded repositories","n_ran":0,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["found_in_text"]}}},{"url":"/paper/indiscriminate-poisoning-attacks-are-1","slug":"indiscriminate-poisoning-attacks-are-1","title":"Availability Attacks Create Shortcuts","date":"2021-11-01","arxiv_id":"2111.00898","repositories_listed":1,"syntology":{"n":1,"n_ran":1,"n_constructed":0,"n_ran_checked":1,"n_instrument":0,"n_unverified":0,"n_honours":1,"n_violates":0,"n_no_contract":0,"n_pointer_only":1,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 1 honoured, 0 violated, 0 with no contract checked; 0 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/indiscriminate-poisoning-attacks-are-1#ran","syntology_url":"https://syntology.ai/paper/2111.00898","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2111.00898"}},"official":{"repos":["dayu11/availability-attacks-create-shortcuts"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":1,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/excess-capacity-and-backdoor-poisoning","slug":"excess-capacity-and-backdoor-poisoning","title":"Excess Capacity and Backdoor Poisoning","date":"2021-09-02","arxiv_id":"2109.00685","repositories_listed":1,"syntology":{"n":3,"n_ran":3,"n_constructed":0,"n_ran_checked":3,"n_instrument":0,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":3,"n_pointer_only":0,"phrase":"3 ran (of which 0 constructed an object rather than computing a result; 3 with no instrument failure: 0 honoured, 0 violated, 3 with no contract checked; 0 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/excess-capacity-and-backdoor-poisoning#ran","syntology_url":"https://syntology.ai/paper/2109.00685","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2109.00685"}},"official":{"repos":["narenmanoj/mnist-adv-training"],"state":"official: no sample here; runs from other or unrecorded repositories","n_ran":0,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["found_in_text"]}}},{"url":"/paper/poison-ink-robust-and-invisible-backdoor","slug":"poison-ink-robust-and-invisible-backdoor","title":"Poison Ink: Robust and Invisible Backdoor Attack","date":"2021-08-05","arxiv_id":"2108.02488","repositories_listed":1,"syntology":{"n":2,"n_ran":1,"n_constructed":0,"n_ran_checked":0,"n_instrument":1,"n_unverified":1,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":0,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 1 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/poison-ink-robust-and-invisible-backdoor#ran","syntology_url":"https://syntology.ai/paper/2108.02488","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2108.02488"}},"official":null}},{"url":"/paper/putting-words-into-the-system-s-mouth-a","slug":"putting-words-into-the-system-s-mouth-a","title":"Putting words into the system's mouth: A targeted attack on neural machine translation using monolingual data poisoning","date":"2021-07-12","arxiv_id":"2107.05243","repositories_listed":1,"syntology":{"n":10,"n_ran":9,"n_constructed":0,"n_ran_checked":9,"n_instrument":0,"n_unverified":1,"n_honours":0,"n_violates":0,"n_no_contract":9,"n_pointer_only":0,"phrase":"9 ran (of which 0 constructed an object rather than computing a result; 9 with no instrument failure: 0 honoured, 0 violated, 9 with no contract checked; 0 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/putting-words-into-the-system-s-mouth-a#ran","syntology_url":"https://syntology.ai/paper/2107.05243","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2107.05243"}},"official":{"repos":["JunW15/Monolingual-Attack"],"state":"official (archive's flag): 9 ran","n_ran":9,"n_constructed":0,"n_ran_no_instrument_failure":9,"n_unverified":1,"ran_from_kinds":["official"]}}},{"url":"/paper/data-poisoning-won-t-save-you-from-facial","slug":"data-poisoning-won-t-save-you-from-facial","title":"Data Poisoning Won't Save You From Facial Recognition","date":"2021-06-28","arxiv_id":"2106.14851","repositories_listed":1,"syntology":{"n":4,"n_ran":4,"n_constructed":0,"n_ran_checked":0,"n_instrument":4,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":0,"phrase":"4 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 4 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/data-poisoning-won-t-save-you-from-facial#ran","syntology_url":"https://syntology.ai/paper/2106.14851","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2106.14851"}},"official":{"repos":["ftramer/facecure"],"state":"official (archive's flag): 4 ran","n_ran":4,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/adversarial-examples-make-strong-poisons","slug":"adversarial-examples-make-strong-poisons","title":"Adversarial Examples Make Strong Poisons","date":"2021-06-21","arxiv_id":"2106.10807","repositories_listed":3,"syntology":{"n":2,"n_ran":2,"n_constructed":0,"n_ran_checked":0,"n_instrument":2,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":2,"phrase":"2 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 2 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/adversarial-examples-make-strong-poisons#ran","syntology_url":"https://syntology.ai/paper/2106.10807","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2106.10807"}},"official":{"repos":["lhfowl/adversarial_poisons"],"state":"official (archive's flag): 2 ran","n_ran":2,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/fooling-partial-dependence-via-data-poisoning","slug":"fooling-partial-dependence-via-data-poisoning","title":"Fooling Partial Dependence via Data Poisoning","date":"2021-05-26","arxiv_id":"2105.12837","repositories_listed":1,"syntology":{"n":3,"n_ran":3,"n_constructed":0,"n_ran_checked":3,"n_instrument":0,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":3,"n_pointer_only":0,"phrase":"3 ran (of which 0 constructed an object rather than computing a result; 3 with no instrument failure: 0 honoured, 0 violated, 3 with no contract checked; 0 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/fooling-partial-dependence-via-data-poisoning#ran","syntology_url":"https://syntology.ai/paper/2105.12837","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2105.12837"}},"official":{"repos":["MI2DataLab/fooling-partial-dependence"],"state":"official (archive's flag): 3 ran","n_ran":3,"n_constructed":0,"n_ran_no_instrument_failure":3,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/provable-guarantees-against-data-poisoning","slug":"provable-guarantees-against-data-poisoning","title":"Incompatibility Clustering as a Defense Against Backdoor Poisoning Attacks","date":"2021-05-08","arxiv_id":"2105.03692","repositories_listed":1,"syntology":{"n":1,"n_ran":1,"n_constructed":1,"n_ran_checked":1,"n_instrument":0,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":1,"n_pointer_only":0,"phrase":"1 ran (of which 1 constructed an object rather than computing a result; 1 with no instrument failure: 0 honoured, 0 violated, 1 with no contract checked; 0 where Syntology's instrument failed) · 0 unverified; the one sample that ran constructed an object rather than computing a result","sample_list":"/paper/provable-guarantees-against-data-poisoning#ran","syntology_url":"https://syntology.ai/paper/2105.03692","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2105.03692"}},"official":{"repos":["charlesjin/compatibility_clustering"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":1,"n_ran_no_instrument_failure":1,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/exacerbating-algorithmic-bias-through","slug":"exacerbating-algorithmic-bias-through","title":"Exacerbating Algorithmic Bias through Fairness Attacks","date":"2020-12-16","arxiv_id":"2012.08723","repositories_listed":1,"syntology":{"n":3,"n_ran":3,"n_constructed":0,"n_ran_checked":0,"n_instrument":3,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":0,"phrase":"3 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 3 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/exacerbating-algorithmic-bias-through#ran","syntology_url":"https://syntology.ai/paper/2012.08723","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2012.08723"}},"official":{"repos":["Ninarehm/attack"],"state":"official (archive's flag): 3 ran","n_ran":3,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/witches-brew-industrial-scale-data-poisoning","slug":"witches-brew-industrial-scale-data-poisoning","title":"Witches' Brew: Industrial Scale Data Poisoning via Gradient Matching","date":"2020-09-04","arxiv_id":"2009.02276","repositories_listed":2,"syntology":{"n":5,"n_ran":4,"n_constructed":1,"n_ran_checked":2,"n_instrument":2,"n_unverified":1,"n_honours":1,"n_violates":0,"n_no_contract":1,"n_pointer_only":5,"phrase":"4 ran (of which 1 constructed an object rather than computing a result; 2 with no instrument failure: 1 honoured, 0 violated, 1 with no contract checked; 2 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/witches-brew-industrial-scale-data-poisoning#ran","syntology_url":"https://syntology.ai/paper/2009.02276","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2009.02276"}},"official":{"repos":["JonasGeiping/poisoning-gradient-matching"],"state":"official (archive's flag): 2 ran","n_ran":2,"n_constructed":1,"n_ran_no_instrument_failure":1,"n_unverified":1,"ran_from_kinds":["listed","official"]}}},{"url":"/paper/dynamic-federated-learning-model-for","slug":"dynamic-federated-learning-model-for","title":"Dynamic Defense Against Byzantine Poisoning Attacks in Federated Learning","date":"2020-07-29","arxiv_id":"2007.15030","repositories_listed":1,"syntology":{"n":1,"n_ran":1,"n_constructed":0,"n_ran_checked":1,"n_instrument":0,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":1,"n_pointer_only":0,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 0 honoured, 0 violated, 1 with no contract checked; 0 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/dynamic-federated-learning-model-for#ran","syntology_url":"https://syntology.ai/paper/2007.15030","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2007.15030"}},"official":{"repos":["ari-dasci/s-ddaba"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":1,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/data-poisoning-attacks-against-federated","slug":"data-poisoning-attacks-against-federated","title":"Data Poisoning Attacks Against Federated Learning Systems","date":"2020-07-16","arxiv_id":"2007.08432","repositories_listed":2,"syntology":{"n":3,"n_ran":2,"n_constructed":0,"n_ran_checked":2,"n_instrument":0,"n_unverified":1,"n_honours":0,"n_violates":0,"n_no_contract":2,"n_pointer_only":0,"phrase":"2 ran (of which 0 constructed an object rather than computing a result; 2 with no instrument failure: 0 honoured, 0 violated, 2 with no contract checked; 0 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/data-poisoning-attacks-against-federated#ran","syntology_url":"https://syntology.ai/paper/2007.08432","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2007.08432"}},"official":{"repos":["git-disl/DataPoisoning_FL"],"state":"community repositories only","n_ran":0,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["listed"]}}},{"url":"/paper/just-how-toxic-is-data-poisoning-a-unified","slug":"just-how-toxic-is-data-poisoning-a-unified","title":"Just How Toxic is Data Poisoning? A Unified Benchmark for Backdoor and Data Poisoning Attacks","date":"2020-06-22","arxiv_id":"2006.12557","repositories_listed":2,"syntology":{"n":10,"n_ran":6,"n_constructed":0,"n_ran_checked":6,"n_instrument":0,"n_unverified":4,"n_honours":0,"n_violates":0,"n_no_contract":6,"n_pointer_only":0,"phrase":"6 ran (of which 0 constructed an object rather than computing a result; 6 with no instrument failure: 0 honoured, 0 violated, 6 with no contract checked; 0 where Syntology's instrument failed) · 4 unverified","sample_list":"/paper/just-how-toxic-is-data-poisoning-a-unified#ran","syntology_url":"https://syntology.ai/paper/2006.12557","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2006.12557"}},"official":{"repos":["aks2203/poisoning-benchmark"],"state":"official (archive's flag): 6 ran","n_ran":6,"n_constructed":0,"n_ran_no_instrument_failure":6,"n_unverified":4,"ran_from_kinds":["official"]}}},{"url":"/paper/auditing-differentially-private-machine","slug":"auditing-differentially-private-machine","title":"Auditing Differentially Private Machine Learning: How Private is Private SGD?","date":"2020-06-13","arxiv_id":"2006.07709","repositories_listed":1,"syntology":{"n":7,"n_ran":6,"n_constructed":0,"n_ran_checked":6,"n_instrument":0,"n_unverified":1,"n_honours":0,"n_violates":0,"n_no_contract":6,"n_pointer_only":0,"phrase":"6 ran (of which 0 constructed an object rather than computing a result; 6 with no instrument failure: 0 honoured, 0 violated, 6 with no contract checked; 0 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/auditing-differentially-private-machine#ran","syntology_url":"https://syntology.ai/paper/2006.07709","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2006.07709"}},"official":{"repos":["jagielski/auditing-dpsgd"],"state":"official (archive's flag): 6 ran","n_ran":6,"n_constructed":0,"n_ran_no_instrument_failure":6,"n_unverified":1,"ran_from_kinds":["official"]}}},{"url":"/paper/metapoison-practical-general-purpose-clean","slug":"metapoison-practical-general-purpose-clean","title":"MetaPoison: Practical General-purpose Clean-label Data Poisoning","date":"2020-04-01","arxiv_id":"2004.00225","repositories_listed":2,"syntology":{"n":3,"n_ran":2,"n_constructed":2,"n_ran_checked":2,"n_instrument":0,"n_unverified":1,"n_honours":0,"n_violates":0,"n_no_contract":2,"n_pointer_only":3,"phrase":"2 ran (of which 2 constructed an object rather than computing a result; 2 with no instrument failure: 0 honoured, 0 violated, 2 with no contract checked; 0 where Syntology's instrument failed) · 1 unverified; every one of the 2 samples that ran constructed an object rather than computing a result","sample_list":"/paper/metapoison-practical-general-purpose-clean#ran","syntology_url":"https://syntology.ai/paper/2004.00225","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2004.00225"}},"official":{"repos":["wronnyhuang/metapoison"],"state":"official: harvested, nothing ran","n_ran":0,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":1,"ran_from_kinds":["listed"]}}},{"url":"/paper/on-the-effectiveness-of-mitigating-data","slug":"on-the-effectiveness-of-mitigating-data","title":"On the Effectiveness of Mitigating Data Poisoning Attacks with Gradient Shaping","date":"2020-02-26","arxiv_id":"2002.11497","repositories_listed":1,"syntology":{"n":1,"n_ran":1,"n_constructed":0,"n_ran_checked":1,"n_instrument":0,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":1,"n_pointer_only":0,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 1 with no instrument failure: 0 honoured, 0 violated, 1 with no contract checked; 0 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/on-the-effectiveness-of-mitigating-data#ran","syntology_url":"https://syntology.ai/paper/2002.11497","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2002.11497"}},"official":{"repos":["Sanghyun-Hong/Gradient-Shaping"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":1,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/fr-train-a-mutual-information-based-approach","slug":"fr-train-a-mutual-information-based-approach","title":"FR-Train: A Mutual Information-Based Approach to Fair and Robust Training","date":"2020-02-24","arxiv_id":"2002.10234","repositories_listed":1,"syntology":{"n":1,"n_ran":1,"n_constructed":0,"n_ran_checked":0,"n_instrument":1,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":1,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 1 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/fr-train-a-mutual-information-based-approach#ran","syntology_url":"https://syntology.ai/paper/2002.10234","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2002.10234"}},"official":{"repos":["yuji-roh/fr-train"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/how-to-backdoor-federated-learning","slug":"how-to-backdoor-federated-learning","title":"How To Backdoor Federated Learning","date":"2018-07-02","arxiv_id":"1807.00459","repositories_listed":3,"syntology":{"n":1,"n_ran":1,"n_constructed":0,"n_ran_checked":0,"n_instrument":1,"n_unverified":0,"n_honours":0,"n_violates":0,"n_no_contract":0,"n_pointer_only":1,"phrase":"1 ran (of which 0 constructed an object rather than computing a result; 0 with no instrument failure: 0 honoured, 0 violated, 0 with no contract checked; 1 where Syntology's instrument failed) · 0 unverified","sample_list":"/paper/how-to-backdoor-federated-learning#ran","syntology_url":"https://syntology.ai/paper/1807.00459","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"1807.00459"}},"official":{"repos":["ebagdasa/backdoor_federated_learning"],"state":"official (archive's flag): 1 ran","n_ran":1,"n_constructed":0,"n_ran_no_instrument_failure":0,"n_unverified":0,"ran_from_kinds":["official"]}}},{"url":"/paper/using-trusted-data-to-train-deep-networks-on","slug":"using-trusted-data-to-train-deep-networks-on","title":"Using Trusted Data to Train Deep Networks on Labels Corrupted by Severe Noise","date":"2018-02-14","arxiv_id":"1802.05300","repositories_listed":1,"syntology":{"n":6,"n_ran":5,"n_constructed":0,"n_ran_checked":5,"n_instrument":0,"n_unverified":1,"n_honours":0,"n_violates":0,"n_no_contract":5,"n_pointer_only":0,"phrase":"5 ran (of which 0 constructed an object rather than computing a result; 5 with no instrument failure: 0 honoured, 0 violated, 5 with no contract checked; 0 where Syntology's instrument failed) · 1 unverified","sample_list":"/paper/using-trusted-data-to-train-deep-networks-on#ran","syntology_url":"https://syntology.ai/paper/1802.05300","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"1802.05300"}},"official":{"repos":["mmazeika/glc"],"state":"official (archive's flag): 5 ran","n_ran":5,"n_constructed":0,"n_ran_no_instrument_failure":5,"n_unverified":1,"ran_from_kinds":["official"]}}}],"record_sha256":"136bbe35c1635e7927fce95f78173cc99d0637a62bf2a8493bda844bb7d1cf68","record_changed_at":"2026-09-28","record_changed_at_basis":"first_hashed"}