2024
PubDef: Defending Against Transfer Attacks From Public Models
ICLR 2024poster
Adversarial attacks have been a looming and unaddressed threat in the industry. However, through a decade-long history of the robustness evaluation literature, we have learned that mounting a strong or optimal attack is challenging. It requires both machine learning and domain expertise. In other wo…