← Search

Kemou Li

5 accepted papers

2026

AEGIS: Adversarial Target–Guided Retention-Data-Free Robust Concept Erasure from Diffusion Models

ICLR 2026poster

Concept erasure helps stop diffusion models (DMs) from generating harmful content; but current methods face robustness-retention trade-off. **Robustness** means the model fine-tuned by concept erasure methods resists reactivation of erased concepts, even under semantically related prompts. **Retenti…

Cited by 0SourcecodeScholar
2026

Editprint: General Digital Image Forensics via Editing Fingerprint with Self-Augmentation Training

CVPR 2026

Digital image forensics can ensure information credibility in tasks like camera source identification (CSI), synthetic image detection (SID), and social network provenance (SNP). These tasks typically rely on image processing history clues left by in-camera operations, post-capture editing, or synth

Cited by 0SourcecodeScholar
2024

DAT: Improving Adversarial Robustness via Generative Amplitude Mix-up in Frequency Domain

NeurIPS 2024poster

To protect deep neural networks (DNNs) from adversarial attacks, adversarial training (AT) is developed by incorporating adversarial examples (AEs) into model training. Recent studies show that adversarial attacks disproportionately impact the patterns within the phase of the sample's frequency spec…