most citedRandom Erasing vs. Model Inversion: A Promising Defense or a False Hope?

1 citations · 1 across the 2 of their papers we have counts for

collaborators

8 papers

cs.CV2026

CertVLA: Certified Defense against Physical Visual Attacks for Vision-Language-Action Models

Hui Lu, Zhijie Peng, Yuqi Lin +8

Vision-Language-Action (VLA) policies are vulnerable to localized physical perturbations, yet existing certified patch defenses target discrete labels and cannot directly certify c…

cs.CV2026

SAVER: Mitigating Hallucinations in Large Vision-Language Models via Style-Aware Visual Early Revision

Zhaoxu Li, Chenqi Kong, Yi Yu +6

Large Vision-Language Models (LVLMs) recently achieve significant breakthroughs in understanding complex visual-textual contexts. However, hallucination issues still limit their re…

cs.LG20261 cited

Random Erasing vs. Model Inversion: A Promising Defense or a False Hope?

Viet-Hung Tran, Ngoc-Bao Nguyen, Son T. Mai +4

Model Inversion (MI) attacks pose a significant privacy threat by reconstructing private training data from machine learning models. While existing defenses primarily concentrate o…

cs.AI2026

Universal Adversarial Attacks against Closed-Source MLLMs via Target-View Routed Meta Optimization

Hui Lu, Yi Yu, Yiming Yang +6

Targeted adversarial attacks on closed-source multimodal large language models (MLLMs) have been increasingly explored under black-box transfer, yet prior methods are predominantly…

cs.CV2026

ActivityForensics: A Comprehensive Benchmark for Localizing Manipulated Activity in Videos

Peijun Bao, Anwei Luo, Gang Pan +2

Temporal forgery localization aims to temporally identify manipulated segments in videos. Most existing benchmarks focus on appearance-level forgeries, such as face swapping and ob…

cs.CV2026

When Robots Obey the Patch: Universal Transferable Patch Attacks on Vision-Language-Action Models

Hui Lu, Yi Yu, Yiming Yang +5

Vision-Language-Action (VLA) models are vulnerable to adversarial attacks, yet universal and transferable attacks remain underexplored, as most existing patches overfit to a single…