{"id":"https://openalex.org/W4319453776","doi":"https://doi.org/10.48550/arxiv.2302.03015","title":"Exploring and Exploiting Decision Boundary Dynamics for Adversarial Robustness","display_name":"Exploring and Exploiting Decision Boundary Dynamics for Adversarial Robustness","publication_year":2023,"publication_date":"2023-02-06","ids":{"openalex":"https://openalex.org/W4319453776","doi":"https://doi.org/10.48550/arxiv.2302.03015"},"language":"en","primary_location":{"id":"pmh:oai:arXiv.org:2302.03015","is_oa":true,"landing_page_url":"http://arxiv.org/abs/2302.03015","pdf_url":"https://arxiv.org/pdf/2302.03015","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":"text"},"type":"preprint","indexed_in":["arxiv","datacite"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://arxiv.org/pdf/2302.03015","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5032867006","display_name":"Yuancheng Xu","orcid":"https://orcid.org/0000-0002-9264-9581"},"institutions":[],"countries":[],"is_corresponding":true,"raw_author_name":"Xu, Yuancheng","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5067750782","display_name":"Yanchao Sun","orcid":"https://orcid.org/0000-0001-7392-4472"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Sun, Yanchao","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5066564672","display_name":"Micah Goldblum","orcid":"https://orcid.org/0000-0002-8266-2424"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Goldblum, Micah","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5060687985","display_name":"Tom Goldstein","orcid":"https://orcid.org/0000-0003-1660-9307"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Goldstein, Tom","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"last","author":{"id":"https://openalex.org/A5091135797","display_name":"Furong Huang","orcid":"https://orcid.org/0000-0001-8760-439X"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Huang, Furong","raw_affiliation_strings":[],"affiliations":[]}],"institutions":[],"countries_distinct_count":0,"institutions_distinct_count":5,"corresponding_author_ids":["https://openalex.org/A5032867006"],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":null,"has_fulltext":true,"cited_by_count":10,"citation_normalized_percentile":null,"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":null,"last_page":null},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9994999766349792,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9994999766349792,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9962000250816345,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/decision-boundary","display_name":"Decision boundary","score":0.8608036041259766},{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness (evolution)","score":0.8234255313873291},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.6663566827774048},{"id":"https://openalex.org/keywords/classifier","display_name":"Classifier (UML)","score":0.5322109460830688},{"id":"https://openalex.org/keywords/decision-process","display_name":"Decision process","score":0.49730637669563293},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.4904186427593231},{"id":"https://openalex.org/keywords/boundary","display_name":"Boundary (topology)","score":0.489805668592453},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.462027370929718},{"id":"https://openalex.org/keywords/mathematics","display_name":"Mathematics","score":0.2258925437927246},{"id":"https://openalex.org/keywords/engineering","display_name":"Engineering","score":0.13199540972709656},{"id":"https://openalex.org/keywords/management-science","display_name":"Management science","score":0.06962770223617554}],"concepts":[{"id":"https://openalex.org/C42023084","wikidata":"https://www.wikidata.org/wiki/Q5249231","display_name":"Decision boundary","level":3,"score":0.8608036041259766},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.8234255313873291},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6663566827774048},{"id":"https://openalex.org/C95623464","wikidata":"https://www.wikidata.org/wiki/Q1096149","display_name":"Classifier (UML)","level":2,"score":0.5322109460830688},{"id":"https://openalex.org/C2984634286","wikidata":"https://www.wikidata.org/wiki/Q1331926","display_name":"Decision process","level":2,"score":0.49730637669563293},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.4904186427593231},{"id":"https://openalex.org/C62354387","wikidata":"https://www.wikidata.org/wiki/Q875399","display_name":"Boundary (topology)","level":2,"score":0.489805668592453},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.462027370929718},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.2258925437927246},{"id":"https://openalex.org/C127413603","wikidata":"https://www.wikidata.org/wiki/Q11023","display_name":"Engineering","level":0,"score":0.13199540972709656},{"id":"https://openalex.org/C539667460","wikidata":"https://www.wikidata.org/wiki/Q2414942","display_name":"Management science","level":1,"score":0.06962770223617554},{"id":"https://openalex.org/C185592680","wikidata":"https://www.wikidata.org/wiki/Q2329","display_name":"Chemistry","level":0,"score":0.0},{"id":"https://openalex.org/C134306372","wikidata":"https://www.wikidata.org/wiki/Q7754","display_name":"Mathematical analysis","level":1,"score":0.0},{"id":"https://openalex.org/C55493867","wikidata":"https://www.wikidata.org/wiki/Q7094","display_name":"Biochemistry","level":1,"score":0.0},{"id":"https://openalex.org/C104317684","wikidata":"https://www.wikidata.org/wiki/Q7187","display_name":"Gene","level":2,"score":0.0}],"mesh":[],"locations_count":2,"locations":[{"id":"pmh:oai:arXiv.org:2302.03015","is_oa":true,"landing_page_url":"http://arxiv.org/abs/2302.03015","pdf_url":"https://arxiv.org/pdf/2302.03015","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":"text"},{"id":"doi:10.48550/arxiv.2302.03015","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2302.03015","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":null,"raw_source_name":null,"raw_type":"article"}],"best_oa_location":{"id":"pmh:oai:arXiv.org:2302.03015","is_oa":true,"landing_page_url":"http://arxiv.org/abs/2302.03015","pdf_url":"https://arxiv.org/pdf/2302.03015","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":"text"},"sustainable_development_goals":[],"awards":[],"funders":[{"id":"https://openalex.org/F4320306076","display_name":"National Science Foundation","ror":"https://ror.org/021nxhr62"},{"id":"https://openalex.org/F4320306078","display_name":"U.S. Department of Defense","ror":"https://ror.org/0447fe631"},{"id":"https://openalex.org/F4320332180","display_name":"Defense Advanced Research Projects Agency","ror":"https://ror.org/02caytj08"},{"id":"https://openalex.org/F4320332815","display_name":"Advanced Research Projects Agency","ror":"https://ror.org/02caytj08"},{"id":"https://openalex.org/F4320337345","display_name":"Office of Naval Research","ror":"https://ror.org/00rk2pe57"}],"has_content":{"pdf":true,"grobid_xml":false},"content_urls":{"pdf":"https://content.openalex.org/works/W4319453776.pdf"},"referenced_works_count":0,"referenced_works":[],"related_works":["https://openalex.org/W2924161931","https://openalex.org/W4310513257","https://openalex.org/W4225319475","https://openalex.org/W2981213860","https://openalex.org/W2019469476","https://openalex.org/W2580636385","https://openalex.org/W103332046","https://openalex.org/W598997827","https://openalex.org/W4307307693","https://openalex.org/W4294023778"],"abstract_inverted_index":{"The":[0],"robustness":[1,156,179],"of":[2,52,67,75,110,172],"a":[3,44,82],"deep":[4],"classifier":[5],"can":[6],"be":[7],"characterized":[8],"by":[9],"its":[10],"margins:":[11],"the":[12,31,49,53,64,68,76,87,111,122,143,160,169,173,186],"decision":[13,54,69,88,112,123,174],"boundary's":[14],"distances":[15],"to":[16,58,100,125,136,185],"natural":[17],"data":[18],"points.":[19],"However,":[20],"it":[21],"is":[22,85,191],"unclear":[23],"whether":[24],"existing":[25],"robust":[26,79],"training":[27,80],"methods":[28],"effectively":[29],"increase":[30],"margin":[32],"for":[33,47,151],"each":[34,59],"vulnerable":[35,94],"point":[36],"during":[37],"training.":[38],"To":[39,105],"understand":[40],"this,":[41],"we":[42,114],"propose":[43,115],"continuous-time":[45],"framework":[46],"quantifying":[48],"relative":[50],"speed":[51,66],"boundary":[55,70,89,124,175],"with":[56],"respect":[57],"individual":[60],"point.":[61],"Through":[62],"visualizing":[63],"moving":[65],"under":[71,180],"Adversarial":[72],"Training,":[73],"one":[74],"most":[77],"effective":[78,155],"algorithms,":[81],"surprising":[83],"moving-behavior":[84],"revealed:":[86],"moves":[90,98],"away":[91],"from":[92],"some":[93],"points":[95],"but":[96],"simultaneously":[97],"closer":[99],"others,":[101],"decreasing":[102],"their":[103,147],"margins.":[104,133],"alleviate":[106],"these":[107],"conflicting":[108,170],"dynamics":[109,171],"boundary,":[113],"Dynamics-aware":[116],"Robust":[117],"Training":[118],"(DyART),":[119],"which":[120],"encourages":[121],"engage":[126],"in":[127],"movement":[128],"that":[129,166],"prioritizes":[130],"increasing":[131],"smaller":[132],"In":[134],"contrast":[135],"prior":[137],"works,":[138],"DyART":[139,167],"directly":[140],"operates":[141],"on":[142,159],"margins":[144],"rather":[145],"than":[146],"indirect":[148],"approximations,":[149],"allowing":[150],"more":[152],"targeted":[153],"and":[154,162,176],"improvement.":[157],"Experiments":[158],"CIFAR-10":[161],"Tiny-ImageNet":[163],"datasets":[164],"verify":[165],"alleviates":[168],"obtains":[177],"improved":[178],"various":[181],"perturbation":[182],"sizes":[183],"compared":[184],"state-of-the-art":[187],"defenses.":[188],"Our":[189],"code":[190],"available":[192],"at":[193],"https://github.com/Yuancheng-Xu/Dynamics-Aware-Robust-Training.":[194]},"counts_by_year":[{"year":2025,"cited_by_count":3},{"year":2024,"cited_by_count":7}],"updated_date":"2026-04-21T08:09:41.155169","created_date":"2023-02-09T00:00:00"}
