adversarial-machine-learning topic
RS-Adversarial-Learning
A curated collection of adversarial attack and defense on recommender systems.
Patch-wise-iterative-attack
Patch-wise iterative attack (accepted by ECCV 2020) to improve the transferability of adversarial examples.
Proof-Pudding
Copy cat model for Proofpoint
Narcissus
The official implementation of the CCS'23 paper, Narcissus clean-label backdoor attack -- only takes THREE images to poison a face recognition dataset in a clean-label way and achieves a 99.89% attack...
FeatureScatter
Feature Scattering Adversarial Training (NeurIPS19)
synthesizing-robust-adversarial-examples
My entry for ICLR 2018 Reproducibility Challenge for paper Synthesizing robust adversarial examples https://openreview.net/pdf?id=BJDH5M-AW
pixel-deflection
Deflecting Adversarial Attacks with Pixel Deflection
CROWN-IBP
Certified defense to adversarial examples using CROWN and IBP. Also includes GPU implementation of CROWN verification algorithm (in PyTorch).
robust-local-lipschitz
A Closer Look at Accuracy vs. Robustness
Adversarial-Distributional-Training
Adversarial Distributional Training (NeurIPS 2020)