134 citations · 153 across the 2 of their papers we have counts for
3 papers
cs.CV2020
Evading Deepfake-Image Detectors with White- and Black-Box Attacks
Nicholas Carlini, Hany Farid
It is now possible to synthesize highly realistic images of people who don't exist. Such content has, for example, been implicated in the creation of fraudulent social-media profil…
cs.LG2019★ 19 cited
Is AmI (Attacks Meet Interpretability) Robust to Adversarial Examples?
Nicholas Carlini
No.
cs.LG2019★ 134 cited
Adversarial Examples Are a Natural Consequence of Test Error in Noise
Nic Ford, Justin Gilmer, Nicolas Carlini +1
Over the last few years, the phenomenon of adversarial examples --- maliciously constructed inputs that fool trained machine learning models --- has captured the attention of the r…