Pith. sign in

REVIEW 3 cited by

CausalAdv: Adversarial Robustness through the Lens of Causality

Not yet reviewed by Pith; the record is open.

This paper has not been read by Pith yet. Machine review is queued; the pith claim, tier, and objections will appear here once it completes.

SPECIMEN: schema-true, not a live event

T0 review · schema-true

One-sentence machine reading of the paper's core claim.

pith:XXXXXXXX · record.json · timestamp

arxiv 2106.06196 v2 pith:7HU2RGUS submitted 2021-06-11 cs.LG

classification cs.LG
keywords adversarialcausaldistributionattackscausalityvulnerabilitycausaladvchange
verification ladder T0 review T1 audit T2 compute T3 formal
0 comments
read the original abstract

The adversarial vulnerability of deep neural networks has attracted significant attention in machine learning. As causal reasoning has an instinct for modelling distribution change, it is essential to incorporate causality into analyzing this specific type of distribution change induced by adversarial attacks. However, causal formulations of the intuition of adversarial attacks and the development of robust DNNs are still lacking in the literature. To bridge this gap, we construct a causal graph to model the generation process of adversarial examples and define the adversarial distribution to formalize the intuition of adversarial attacks. From the causal perspective, we study the distinction between the natural and adversarial distribution and conclude that the origin of adversarial vulnerability is the focus of models on spurious correlations. Inspired by the causal understanding, we propose the Causal inspired Adversarial distribution alignment method, CausalAdv, to eliminate the difference between natural and adversarial distributions by considering spurious correlations. Extensive experiments demonstrate the efficacy of the proposed method. Our work is the first attempt towards using causality to understand and mitigate the adversarial vulnerability.

Discussion (0). Continue with ORCID to comment.

Forward citations

Cited by 3 Pith papers

Reviewed papers in the Pith corpus that reference this work. Sorted by Pith novelty score. Full citation record

  1. DefenseSplat: Enhancing the Robustness of 3D Gaussian Splatting via Frequency-Aware Filtering

    cs.CV 2026-02 conditional novelty 6.0 of 10

    Zeroing high-frequency wavelet subbands of training views before 3D Gaussian Splatting suppresses Poison-Splat adversarial artifacts, yielding more robust training and rendering across Mip-NeRF 360, Tanks-and-Temples,...

  2. Causal Transfer in Medical Image Analysis

    cs.CV 2026-03 accept novelty 5.0 of 10

    Causal Transfer Learning unifies structural causal models, invariant risk minimisation and counterfactuals with transfer learning to produce domain-robust medical image models.

  3. Orchestrating the Symphony of Prompt Distribution Learning for Human-Object Interaction Detection

    cs.CV 2024-12 conditional novelty 5.0 of 10

    InterProDa models each HOI category as a Gaussian distribution over soft prompt embeddings, sampled with a learnable noise factor, and reports SOTA results on HICO-DET and V-COCO.

Pith tools