What to Fix First When Your Defense Fails Against Adaptive Attacks
You spent weeks hardening a model. Added adversarial trained, defensive distillation, maybe even a certified defense. Then someone runs an adaptive at...
3 articles in this category
You spent weeks hardening a model. Added adversarial trained, defensive distillation, maybe even a certified defense. Then someone runs an adaptive at...
If you have ever uploaded a student project to a robustness leaderboard, you have probably trained against PGD-ℓ∞ with epsilon 8/255. It is the defaul...
Adversarial robustness and model calibration rarely share a headline. Most practitioners chase clean accuracy under attack, ignoring whether the model...