Latest papers

7 papers
defense arXiv Feb 9, 2026 · 8w ago

RIFLE: Robust Distillation-based FL for Deep Model Deployment on Resource-Constrained IoT Networks

Pouria Arefijamal, Mahdi Ahmadlou, Bardia Safaei et al. · Sharif University of Technology · Karlsruhe Institute of Technology

Defends federated learning on IoT against poisoning attacks via KL-divergence client validation and knowledge distillation aggregation

Data Poisoning Attack federated-learningvision
PDF
attack arXiv Feb 2, 2026 · 9w ago

Efficient Adversarial Attacks on High-dimensional Offline Bandits

Seyed Mohammad Hadi Hosseini, Amir Najafi, Mahdieh Soleymani Baghshah · Sharif University of Technology

Adversarial weight perturbations on reward models hijack offline bandit evaluation with near-perfect attack success, scaling dangerously with input dimensionality

Model Poisoning reinforcement-learningvisiongenerative
PDF
defense arXiv Dec 14, 2025 · Dec 2025

GradID: Adversarial Detection via Intrinsic Dimensionality of Gradients

Mohammad Mahdi Razmjoo, Mohammad Mahdi Sharifian, Saeed Bagheri Shouraki · Sharif University of Technology

Detects adversarial examples by measuring intrinsic dimensionality of input-loss gradient space, achieving 92%+ detection on CIFAR-10

Input Manipulation Attack vision
PDF
defense arXiv Oct 24, 2025 · Oct 2025

FrameShield: Adversarially Robust Video Anomaly Detection

Mojtaba Nafez, Mobina Poulaei, Nikan Vasei et al. · Sharif University of Technology · Okinawa Institute of Science and Technology

Defends weakly supervised video anomaly detection against adversarial attacks by generating synthetic anomalies to enable effective frame-level adversarial training

Input Manipulation Attack vision
PDF Code
attack arXiv Oct 18, 2025 · Oct 2025

A Versatile Framework for Designing Group-Sparse Adversarial Attacks

Alireza Heshmati, Saman Soleimani Roudi, Sajjad Amini et al. · Sharif University of Technology

Proposes ATOS, a sparse group-wise white-box adversarial attack achieving 100% success on CIFAR-10 and ImageNet with structured perturbations

Input Manipulation Attack vision
1 citations PDF
defense arXiv Oct 10, 2025 · Oct 2025

MemLoss: Enhancing Adversarial Training with Recycling Adversarial Examples

Soroush Mahdi, Maryam Amirmazlaghani, Saeed Saravani et al. · Amirkabir University of Technology · Sharif University of Technology

Adversarial training defense that recycles past-epoch adversarial examples to improve accuracy-robustness trade-off without external data

Input Manipulation Attack vision
PDF
tool arXiv Oct 7, 2025 · Oct 2025

Redefining Generalization in Visual Domains: A Two-Axis Framework for Fake Image Detection with FusionDetect

Amirtaha Amanzadi, Zahra Dehghanian, Hamid Beigy et al. · Sharif University of Technology

Proposes FusionDetect, a CLIP+DINOv2 fusion detector for AI-generated images, plus OmniGen cross-domain benchmark

Output Integrity Attack visiongenerative
PDF Code