2 papers
cs.LG2026
Learning Better Certified Models from Empirically-Robust Teachers
Alessandro De Palma
Adversarial training attains strong empirical robustness to specific adversarial attacks by training on concrete adversarial perturbations, but it produces neural networks that are…
cs.LG2025
On Using Certified Training towards Empirical Robustness
Alessandro De Palma, Serge Durand, Zakaria Chihani +2
Adversarial training is arguably the most popular way to provide empirical robustness against specific adversarial examples. While variants based on multi-step attacks incur signif…