{"id":"https://openalex.org/W7161950953","doi":"https://doi.org/10.48550/arxiv.2605.20308","title":"SDM: A Powerful Tool for Evaluating Model Robustness","display_name":"SDM: A Powerful Tool for Evaluating Model Robustness","publication_year":2026,"publication_date":"2026-05-19","ids":{"openalex":"https://openalex.org/W7161950953","doi":"https://doi.org/10.48550/arxiv.2605.20308"},"language":null,"primary_location":{"id":"doi:10.48550/arxiv.2605.20308","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2605.20308","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"article"},"type":"preprint","indexed_in":["datacite"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://doi.org/10.48550/arxiv.2605.20308","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5136621589","display_name":"Xinlei Liu","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Liu, Xinlei","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5136649532","display_name":"Tao Hu","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Hu, Tao","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5136659636","display_name":"Jichao Xie","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Xie, Jichao","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5136721629","display_name":"Peng Yi","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Yi, Peng","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5136617911","display_name":"Hailong Ma","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Ma, Hailong","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"last","author":{"id":"https://openalex.org/A5136695126","display_name":"Baolin Li","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Li, Baolin","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]}],"institutions":[],"countries_distinct_count":0,"institutions_distinct_count":6,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":null,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":null,"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":null,"last_page":null},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9818999767303467,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9818999767303467,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12026","display_name":"Explainable Artificial Intelligence (XAI)","score":0.0020000000949949026,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12535","display_name":"Machine Learning and Data Classification","score":0.0010999999940395355,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness (evolution)","score":0.7229999899864197},{"id":"https://openalex.org/keywords/maximization","display_name":"Maximization","score":0.6467000246047974},{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.545799970626831},{"id":"https://openalex.org/keywords/upper-and-lower-bounds","display_name":"Upper and lower bounds","score":0.4986000061035156},{"id":"https://openalex.org/keywords/ideal","display_name":"Ideal (ethics)","score":0.4821000099182129},{"id":"https://openalex.org/keywords/ideal-point","display_name":"Ideal point","score":0.4341999888420105},{"id":"https://openalex.org/keywords/function","display_name":"Function (biology)","score":0.41269999742507935}],"concepts":[{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.7229999899864197},{"id":"https://openalex.org/C2776330181","wikidata":"https://www.wikidata.org/wiki/Q18358244","display_name":"Maximization","level":2,"score":0.6467000246047974},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.5837000012397766},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.545799970626831},{"id":"https://openalex.org/C126255220","wikidata":"https://www.wikidata.org/wiki/Q141495","display_name":"Mathematical optimization","level":1,"score":0.5235999822616577},{"id":"https://openalex.org/C77553402","wikidata":"https://www.wikidata.org/wiki/Q13222579","display_name":"Upper and lower bounds","level":2,"score":0.4986000061035156},{"id":"https://openalex.org/C2776639384","wikidata":"https://www.wikidata.org/wiki/Q840396","display_name":"Ideal (ethics)","level":2,"score":0.4821000099182129},{"id":"https://openalex.org/C11413529","wikidata":"https://www.wikidata.org/wiki/Q8366","display_name":"Algorithm","level":1,"score":0.4555000066757202},{"id":"https://openalex.org/C2779952087","wikidata":"https://www.wikidata.org/wiki/Q11831792","display_name":"Ideal point","level":2,"score":0.4341999888420105},{"id":"https://openalex.org/C14036430","wikidata":"https://www.wikidata.org/wiki/Q3736076","display_name":"Function (biology)","level":2,"score":0.41269999742507935},{"id":"https://openalex.org/C197096303","wikidata":"https://www.wikidata.org/wiki/Q869887","display_name":"Probability mass function","level":3,"score":0.3425000011920929},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.3165999948978424},{"id":"https://openalex.org/C137836250","wikidata":"https://www.wikidata.org/wiki/Q984063","display_name":"Optimization problem","level":2,"score":0.31040000915527344},{"id":"https://openalex.org/C2776760102","wikidata":"https://www.wikidata.org/wiki/Q5139990","display_name":"Code (set theory)","level":3,"score":0.3089999854564667},{"id":"https://openalex.org/C193254401","wikidata":"https://www.wikidata.org/wiki/Q2160088","display_name":"Robust optimization","level":2,"score":0.304500013589859},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.2793000042438507},{"id":"https://openalex.org/C197055811","wikidata":"https://www.wikidata.org/wiki/Q207522","display_name":"Probability density function","level":2,"score":0.27410000562667847},{"id":"https://openalex.org/C26517878","wikidata":"https://www.wikidata.org/wiki/Q228039","display_name":"Key (lock)","level":2,"score":0.2728999853134155},{"id":"https://openalex.org/C149441793","wikidata":"https://www.wikidata.org/wiki/Q200726","display_name":"Probability distribution","level":2,"score":0.26159998774528503}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.48550/arxiv.2605.20308","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2605.20308","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":null,"raw_source_name":null,"raw_type":"article"}],"best_oa_location":{"id":"doi:10.48550/arxiv.2605.20308","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2605.20308","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"article"},"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":0,"referenced_works":[],"related_works":[],"abstract_inverted_index":{"Gradient-based":[0],"attacks":[1],"are":[2],"important":[3],"methods":[4,21],"for":[5,19,56],"evaluating":[6],"model":[7],"robustness.":[8],"However,":[9],"since":[10],"the":[11,34,63,67,70,77,105,111,120,129],"proposal":[12],"of":[13,36,101,132],"APGD,":[14],"it":[15],"has":[16],"been":[17],"difficult":[18],"such":[20,28],"to":[22],"achieve":[23,27],"significant":[24],"breakthroughs.":[25],"To":[26],"an":[29],"effect,":[30],"we":[31,61],"first":[32],"analyze":[33],"issue":[35,51],"\"high-loss":[37],"non-adversarial":[38],"examples\"":[39],"that":[40,49,142],"degrades":[41],"attack":[42,88,153],"performance":[43,154],"in":[44,119],"previous":[45,145],"methods,":[46,147],"and":[47,76,81,85,110,122,127],"prove":[48],"this":[50],"arises":[52],"from":[53],"inappropriate":[54],"objectives":[55],"adversarial":[57,133],"example":[58,134],"generation.":[59],"Subsequently,":[60],"reconstruct":[62],"objective":[64,131],"as":[65],"\"maximizing":[66],"difference":[68],"between":[69],"non-ground-truth":[71],"label":[72,79],"probability":[73,107],"upper":[74],"bound":[75],"ground-truth":[78],"probability\",":[80],"proposes":[82],"a":[83,97],"novel":[84],"powerful":[86],"gradient-based":[87],"method":[89],"named":[90],"Sequential":[91],"Difference":[92,114],"Maximization":[93],"(SDM).":[94],"SDM":[95,148],"establishes":[96],"three-layer":[98],"optimization":[99,124],"framework":[100],"\"cycle-stage-step\".":[102],"It":[103],"adopts":[104],"negative":[106],"loss":[108,117],"function":[109,118],"Directional":[112],"Probability":[113],"Ratio":[115],"(DPDR)":[116],"initial":[121],"subsequent":[123],"stages,":[125],"respectively,":[126],"approaches":[128],"ideal":[130],"generation":[135],"via":[136],"stage-wise":[137],"sequential":[138],"optimization.":[139],"Experiments":[140],"demonstrate":[141],"compared":[143],"with":[144],"state-of-the-art":[146],"not":[149],"only":[150],"achieves":[151],"stronger":[152],"but":[155],"also":[156],"exhibits":[157],"superior":[158],"cost-effectiveness.":[159],"The":[160],"code":[161],"is":[162],"available":[163],"at":[164],"https://github.com/X-L-Liu/ICML-SDM.":[165]},"counts_by_year":[],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2026-05-22T00:00:00"}
