paper-with-me

홈 › Papers

Position: Certified Robustness Does Not (Yet) Imply Model Security

2025-06-16 · Andrew C. Cullen, Paul Montague, Sarah M. Erfani, Benjamin I. P. Rubinstein

While certified robustness is widely promoted as a solution to adversarial examples in Artificial Intelligence systems, significant challenges remain before these techniques can be meaningfully deployed in real-world applications. We identify critical gaps in current research, including the paradox of detection without distinction, the lack of clear criteria for practitioners to evaluate certification schemes, and the potential security risks arising from users' expectations surrounding ``guaranteed" robustness claims. This position paper is a call to arms for the certification research community, proposing concrete steps to address these fundamental challenges and advance the field toward practical applicability.

📄 PDF Abstract BibTeX arXiv:2506.13024

Code (0)

등록된 구현이 없습니다.

Tasks

Position

Similar Papers 제목 키워드 기반

Certified Robustness for Deep Equilibrium Models via Serialized Random Smoothing

2024-11-01 · Weizhi Gao, Zhichao Hou, Han Xu, Xiaorui Liu

Implicit models such as Deep Equilibrium Models (DEQs) have emerged as promising alternative approaches for building deep neural networks. Their certified robustness has gained increasing research attention due to securi…

Classification

Certified Multi-Turn Robustness for LLM Safety via Compositional Bounds and Safety Persistence

2026-08-21 · Yang Liu, Bin Chong, Wenkai Yang, Shuai Zhang 외 arxiv

Large language models (LLMs) are vulnerable to multi-turn jailbreak attacks that progressively manipulate conversation context. Existing certified robustness methods are limited to single-turn inputs; naive multi-turn co…

Boosting Certified Robustness of Deep Networks via a Compositional Architecture

2021-01-01 · ICLR 2021 1 · Mark Niklas Mueller, Mislav Balunovic, Martin Vechev

A core challenge with existing certified defense mechanisms is that while they improve certified robustness, they also tend to drastically decrease standard accuracy, making it difficult to use these methods in practice.…

SAFER: A Structure-free Approach for Certified Robustness to Adversarial Word Substitutions

2020-05-29 · ACL 2020 6 · Mao Ye, Chengyue Gong, Qiang Liu

State-of-the-art NLP models can often be fooled by human-unaware transformations such as synonymous word substitution. For security reasons, it is of critical importance to develop models with certified robustness that c…

text-classificationText Classification

PointCert: Point Cloud Classification with Deterministic Certified Robustness Guarantees

2023-03-03 · CVPR 2023 1 · Jinghuai Zhang, Jinyuan Jia, Hongbin Liu, Neil Zhenqiang Gong

Point cloud classification is an essential component in many security-critical applications such as autonomous driving and augmented reality. However, point cloud classifiers are vulnerable to adversarially perturbed poi…

Autonomous DrivingClassificationPoint Cloud Classification