The Double-Edged Sword of Implicit Bias: Generalization vs. Robustness in ReLU Networks
–Neural Information Processing Systems
In a seminal paper, Szegedy et al. [Sze+14] observed that deep networks are extremely vulnerable to adversarial examples, namely, very small perturbations to the inputs
Neural Information Processing Systems
Nov-14-2025, 02:32:07 GMT