(yet another) Broken Adversarial Example Defense at IEEE S&P 2024

from blog Nicholas Carlini, | ↗ original
IEEE SP 2024 (one of the top computer security conferences) has, again, accepted an adversarial example defense paper that is broken with simple attacks. It contains claims that are mathematically impossible, does not follow recommended guidance on evaluating adversarial robustness, and its own figures present all the necessary evidence that the...