Battista Biggio
Evaluating line-level localization ability of learning-based code vulnerability detection models
2026-01-01 Pintore, Marco; Piras, Giorgio; Sotgiu, Angelo; Pintor, Maura; Biggio, Battista
Buffer-free class-incremental learning with out-of-distribution detection
2026-01-01 Gupta, Srishti; Angioni, Daniele; Pintor, Maura; Demontis, Ambra; Schönherr, Lea; Roli, Fabio; Biggio, Battista
Sonic: Fast and transferable data poisoning on clustering algorithms
2026-01-01 Villani, Francesco; Lazzaro, Dario; Emanuele Cinà, Antonio; Dell'Amico, Matteo; Biggio, Battista; Roli, Fabio
Robust Large-Scale Detection of Living-Off-the-Land Reverse Shells via Data Synthesis
2026-01-01 Trizna, Dmitrijs; Demetrio, Luca; Biggio, Battista; Roli, Fabio
Poison once, fool many: practical poisoning attacks against text-to-image retrieval systems
2026-01-01 Lazzaro, Dario; Mura, Raffaele; Ciná, Antonio Emanuele; Laurita, Giuseppe; Vercelli, Gianni; Oneto, Luca; Biggio, Battista; Roli, Fabio
SOM directions are better than one: multi-directional refusal suppression in language models
2026-01-01 Piras, Giorgio; Mura, Raffaele; Brau, Fabio; Oneto, Luca; Roli, Fabio; Biggio, Battista
On the robustness of adversarial training against uncertainty attacks
2026-01-01 Ledda, Emanuele; Scodeller, Giovanni; Angioni, Daniele; Piras, Giorgio; Cinà, Antonio Emanuele; Fumera, Giorgio; Biggio, Battista; Roli, Fabio
A comparative analysis of active learning strategies for Android malware detection
2025-01-01 Manca, Cristian; Minnei, Luca; Pintor, Maura; Brau, Fabio; Biggio, Battista
Less is more? An ablation study on AutoAttack for adversarial robustness evaluation
2025-01-01 Melis, Luca; Scionis, Luca; Brau, Fabio; Pintor, Maura; Biggio, Battista
\textbackslash sigma-zero: Gradient-based Optimization of \textbackslash ell\_0-norm Adversarial Examples
2025-01-01 Cinà, Antonio Emanuele; Villani, Francesco; Pintor, Maura; Schönherr, Lea; Biggio, Battista; Pelillo, Marcello
An Experimental Analysis of Semi-supervised Learning for Malware Detection
2025-01-01 Minnei, Luca; Piras, Giorgio; Sotgiu, Angelo; Pintor, Maura; Demontis, Ambra; Maiorca, Davide; Biggio, Battista
CoEvolution: a comprehensive trustworthy framework for connected machine learning and secure interconnected AI solutions
2025-01-01 Makris, Antonios; Fournaris, Apostolos; Aghaie, Anita; Arakas, Ioannis; Anaxagorou, Anna Maria; Arapakis, Ioannis; Bacciu, Davide; Biggio, Battista; Bouloukakis, Georgios; Bouras, Stavros; Bröring, Arne; Carta, Antonio; Caselli, Marco; Giannakopoulou, Olympia; Gkatzios, Nikolaos; Gkillas, Alexandros; Haleplidis, Evangelos; Ioannidis, Sotiris; Kalogeraki, Eleni-Maria; Karantzias, Panagiotis; Kritharakis, Emmanouil; Lalos, Aris; Lenk, David; Markopoulou, Stella; Metai, Entrit; Miaoudakis, Andreas; Mouratidis, Haralambos; Najar, Jihane; Panagiotakopoulos, Theodor; Peischl, Bernhard; Pintor, Maura; Piperigkos, Nikos; Prevelakis, Vassilis; Segura, Carlos; Spanoudakis, Georgios; Tsirakis, Orestis; Veledar, Omar; Tserpes, Konstantinos
Data drift in Android malware detection
2025-01-01 Minnei, Luca; Eddoubi, Hicham; Sotgiu, Angelo; Pintor, Maura; Demontis, Ambra; Biggio, Battista
LFPD: Local-Feature-Powered Defense against adaptive backdoor attacks
2025-01-01 Guo, Wei; Demontis, Ambra; Pintor, Maura; Chan, Patrick P. K.; Biggio, Battista
Demystifying the role of rule-based detection in AI systems for Windows malware detection
2025-01-01 Ponte, Andrea; Demetrio, Luca; Oneto, Luca; Ogbu, Ivan Tesfai; Biggio, Battista; Roli, Fabio
Exploiting edge features for transferable adversarial attacks in distributed machine learning
2025-01-01 Rossolini, G.; Brau, F.; Biondi, A.; Biggio, B.; Buttazzo, G.
Energy-latency attacks via sponge poisoning
2025-01-01 Cinà, Antonio Emanuele; Demontis, Ambra; Biggio, Battista; Roli, Fabio; Pelillo, Marcello
AttackBench: Evaluating Gradient-based Attacks for Adversarial Examples
2025-01-01 Cinà, Antonio Emanuele; Rony, Jérôme; Pintor, Maura; Demetrio, Luca; Demontis, Ambra; Biggio, Battista; Ayed, Ismail Ben; Roli, Fabio
ModSec-AdvLearn: countering adversarial SQL injections with robust machine learning
2025-01-01 Floris, Giuseppe; Scano, Christian; Montaruli, Biagio; Demetrio, Luca; Valenza, Andrea; Compagna, Luca; Ariu, Davide; Piras, Luca; Balzarotti, Davide; Biggio, Battista
ModSec-Learn: Boosting ModSecurity with Machine Learning
2025-01-01 Scano, Christian; Floris, Giuseppe; Montaruli, Biagio; Demetrio, Luca; Valenza, Andrea; Compagna, Luca; Ariu, Davide; Piras, Luca; Balzarotti, Davide; Biggio, Battista
Adversarial pruning: A survey and benchmark of pruning methods for adversarial robustness
2025-01-01 Piras, Giorgio; Pintor, Maura; Demontis, Ambra; Biggio, Battista; Giacinto, Giorgio; Roli, Fabio
Understanding Regression in Continual Learning for Malware Detection
2025-01-01 Ghiani, Daniele; Angioni, Daniele; Sotgiu, Angelo; Pintor, Maura; Biggio, Battista
HO-FMN: Hyperparameter optimization for fast minimum-norm attacks
2025-01-01 Mura, Raffaele; Floris, Giuseppe; Scionis, Luca; Piras, Giorgio; Pintor, Maura; Demontis, Ambra; Giacinto, Giorgio; Biggio, Battista; Roli, Fabio
SLIFER: Investigating performance and robustness of malware detection pipelines
2025-01-01 Ponte, Andrea; Trizna, Dmitrijs; Demetrio, Luca; Biggio, Battista; Ogbu, Ivan Tesfai; Roli, Fabio
Robustness-Congruent Adversarial Training for Secure Machine Learning Model Updates
2025-01-01 Angioni, Daniele; Demetrio, Luca; Pintor, Maura; Oneto, Luca; Anguita, Davide; Biggio, Battista; Roli, Fabio
Toward Effective Traffic Sign Detection via Two-Stage Fusion Neural Networks
2024-01-01 Li, Zhishan; Chen, Hongxu; Biggio, Battista; He, Yifan; Cai, Haoran; Roli, Fabio; Xie, Lei
Machine Learning Security Against Data Poisoning: Are We There Yet?
2024-01-01 Cinà, Antonio Emanuele; Grosse, Kathrin; Demontis, Ambra; Biggio, Battista; Roli, Fabio; Pelillo, Marcello
Nebula: Self-Attention for Dynamic Malware Analysis
2024-01-01 Trizna, Dmitrijs; Demetrio, Luca; Biggio, Battista; Roli, Fabio
Rethinking data augmentation for adversarial robustness
2024-01-01 Eghbal-zadeh, Hamid; Zellinger, Werner; Pintor, Maura; Grosse, Kathrin; Koutini, Khaled; Moser, Bernhard A.; Biggio, Battista; Widmer, Gerhard
Machine learning in computer security is difficult to fix
2024-01-01 Biggio, Battista
When your AI becomes a target: AI security incidents and best practices
2024-01-01 Grosse, Kathrin; Bieringer, Lukas; Besold, Tarek R.; Biggio, Battista; Alahi, Alexandre
Backdoor Learning Curves: Explaining Backdoor Poisoning Beyond Influence Functions
2024-01-01 Cinà, A. E.; Grosse, K.; Vascon, S.; Demontis, A.; Biggio, B.; Roli, F.; Pelillo, M.
The Threat of Offensive AI to Organizations
2023-01-01 Mirsky, Y.; Demontis, A.; Kotak, J.; Shankar, R.; Gelei, D.; Yang, L.; Zhang, X.; Pintor, M.; Lee, W.; Elovici, Y.; Biggio, B.
AI Security and Safety: The PRALab Research Experience
2023-01-01 Demontis, Ambra; Pintor, Maura; Demetrio, Luca; Sotgiu, Angelo; Angioni, Daniele; Piras, Giorgio; Gupta, Srishti; Biggio, Battista; Roli, Fabio
Hardening RGB-D object recognition systems against adversarial patch attacks
2023-01-01 Zheng, Yang; Demetrio, Luca; Cinà, Antonio Emanuele; Feng, Xiaoyi; Xia, Zhaoqiang; Jiang, Xiaoyue; Demontis, Ambra; Biggio, Battista; Roli, Fabio
Stateful detection of adversarial reprogramming
2023-01-01 Zheng, Yang; Feng, Xiaoyi; Xia, Zhaoqiang; Jiang, Xiaoyue; Pintor, Maura; Demontis, Ambra; Biggio, Battista; Roli, Fabio
Why adversarial reprogramming works, when it fails, and how to tell the difference
2023-01-01 Zheng, Yang; Feng, Xiaoyi; Xia, Zhaoqiang; Jiang, Xiaoyue; Demontis, Ambra; Pintor, Maura; Biggio, Battista; Roli, Fabio
Samples on Thin Ice: Re-evaluating Adversarial Pruning of Neural Networks
2023-01-01 Piras, Giorgio; Pintor, Maura; Demontis, Ambra; Biggio, Battista
Detecting Attacks Against Deep Reinforcement Learning for Autonomous Driving
2023-01-01 Pintor, Maura; Demetrio, Luca; Sotgiu, Angelo; Lin, HSIAO-YING; Fang, Chengfang; Demontis, Ambra; Biggio, Battista
Machine Learning Security in Industry: A Quantitative Survey
2023-01-01 Grosse, Kathrin; Bieringer, Lukas; Besold, Tarek R.; Biggio, Battista; Krombholz, Katharina
Improving Fast Minimum-Norm Attacks with Hyperparameter Optimization
2023-01-01 Floris, Giuseppe; Mura, Raffaele; Scionis, Luca; Piras, Giorgio; Pintor, Maura; Demontis, Ambra; Biggio, Battista
Phantom Sponges: Exploiting Non-Maximum Suppression to Attack Deep Object Detectors
2023-01-01 Shapira, Avishag; Zolfi, Alon; Demetrio, Luca; Biggio, Battista; Shabtai, Asaf
Adversarial Attacks Against Uncertainty Quantification
2023-01-01 Ledda, Emanuele; Angioni, Daniele; Piras, Giorgio; Fumera, Giorgio; Biggio, Battista; Roli, Fabio
Cybersecurity and AI: The PRALab Research Experience
2023-01-01 Pintor, Maura; Orru, Giulia; Maiorca, Davide; Demontis, Ambra; Demetrio, Luca; Marcialis, GIAN LUCA; Biggio, Battista; Roli, Fabio
Wild Patterns Reloaded: A Survey of Machine Learning Security against Training Data Poisoning
2023-01-01 Emanuele Cinà, Antonio; Grosse, Kathrin; Demontis, Ambra; Vascon, Sebastiano; Zellinger, Werner; Moser, Bernhard A.; Oprea, Alina; Biggio, Battista; Pelillo, Marcello; Roli, Fabio
ImageNet-Patch: a dataset for benchmarking machine learning robustness against adversarial patches
2023-01-01 Pintor, Maura; Angioni, Daniele; Sotgiu, Angelo; Demetrio, Luca; Demontis, Ambra; Biggio, Battista; Roli, Fabio
Raze to the ground: query-efficient adversarial HTML attacks on machine-learning phishing webpage detectors
2023-01-01 Montaruli, Biagio; Demetrio, Luca; Pintor, Maura; Compagna, Luca; Balzarotti, Davide; Biggio, Battista
Minimizing Energy Consumption of Deep Learning Models by Energy-Aware Training
2023-01-01 Lazzaro, Dario; Cinà, Antonio Emanuele; Pintor, Maura; Demontis, Ambra; Biggio, Battista; Roli, Fabio; Pelillo, Marcello
Backdoor smoothing: Demystifying backdoor attacks on deep neural networks
2022-01-01 Grosse, K; Lee, Ts; Biggio, B; Park, Y; Backes, M; Molloy, I
Do gradient-based explanations tell anything about adversarial robustness to android malware?
2022-01-01 Melis, M.; Scalas, M.; Demontis, A.; Maiorca, D.; Biggio, B.; Giacinto, G.; Roli, F.
| Title | Issue Date | Author(s) | Journal | Publisher |
|---|---|---|---|---|
| Evaluating line-level localization ability of learning-based code vulnerability detection models | 1-Jan-2026 | Pintore, Marco; Piras, Giorgio; Sotgiu, Angelo; Pintor, Maura; Biggio, Battista | MACHINE LEARNING | - |
| Buffer-free class-incremental learning with out-of-distribution detection | 1-Jan-2026 | Gupta, Srishti; Angioni, Daniele; Pintor, Maura; Demontis, Ambra; Schönherr, Lea; Roli, Fabio; Biggio, Battista | PATTERN RECOGNITION | - |
| Sonic: Fast and transferable data poisoning on clustering algorithms | 1-Jan-2026 | Villani, Francesco; Lazzaro, Dario; Emanuele Cinà, Antonio; Dell'Amico, Matteo; Biggio, Battista; Roli, Fabio | INFORMATION SCIENCES | - |
| Robust Large-Scale Detection of Living-Off-the-Land Reverse Shells via Data Synthesis | 1-Jan-2026 | Trizna, Dmitrijs; Demetrio, Luca; Biggio, Battista; Roli, Fabio | ACM TRANSACTIONS ON PRIVACY AND SECURITY | - |
| Poison once, fool many: practical poisoning attacks against text-to-image retrieval systems | 1-Jan-2026 | Lazzaro, Dario; Mura, Raffaele; Ciná, Antonio Emanuele; Laurita, Giuseppe; Vercelli, Gianni; Oneto, Luca; Biggio, Battista; Roli, Fabio | KNOWLEDGE-BASED SYSTEMS | - |
| SOM directions are better than one: multi-directional refusal suppression in language models | 1-Jan-2026 | Piras, Giorgio; Mura, Raffaele; Brau, Fabio; Oneto, Luca; Roli, Fabio; Biggio, Battista | - | - |
| On the robustness of adversarial training against uncertainty attacks | 1-Jan-2026 | Ledda, Emanuele; Scodeller, Giovanni; Angioni, Daniele; Piras, Giorgio; Cinà, Antonio Emanuele; Fumera, Giorgio; Biggio, Battista; Roli, Fabio | PATTERN RECOGNITION | - |
| A comparative analysis of active learning strategies for Android malware detection | 1-Jan-2025 | Manca, Cristian; Minnei, Luca; Pintor, Maura; Brau, Fabio; Biggio, Battista | - | IEEE |
| Less is more? An ablation study on AutoAttack for adversarial robustness evaluation | 1-Jan-2025 | Melis, Luca; Scionis, Luca; Brau, Fabio; Pintor, Maura; Biggio, Battista | - | IEEE |
| \textbackslash sigma-zero: Gradient-based Optimization of \textbackslash ell\_0-norm Adversarial Examples | 1-Jan-2025 | Cinà, Antonio Emanuele; Villani, Francesco; Pintor, Maura; Schönherr, Lea; Biggio, Battista; Pelillo, Marcello | - | - |
| An Experimental Analysis of Semi-supervised Learning for Malware Detection | 1-Jan-2025 | Minnei, Luca; Piras, Giorgio; Sotgiu, Angelo; Pintor, Maura; Demontis, Ambra; Maiorca, Davide; Biggio, Battista | - | - |
| CoEvolution: a comprehensive trustworthy framework for connected machine learning and secure interconnected AI solutions | 1-Jan-2025 | Makris, Antonios; Fournaris, Apostolos; Aghaie, Anita; Arakas, Ioannis; Anaxagorou, Anna Maria; Arapakis, Ioannis; Bacciu, Davide; Biggio, Battista; Bouloukakis, Georgios; Bouras, Stavros; Bröring, Arne; Carta, Antonio; Caselli, Marco; Giannakopoulou, Olympia; Gkatzios, Nikolaos; Gkillas, Alexandros; Haleplidis, Evangelos; Ioannidis, Sotiris; Kalogeraki, Eleni-Maria; Karantzias, Panagiotis; Kritharakis, Emmanouil; Lalos, Aris; Lenk, David; Markopoulou, Stella; Metai, Entrit; Miaoudakis, Andreas; Mouratidis, Haralambos; Najar, Jihane; Panagiotakopoulos, Theodor; Peischl, Bernhard; Pintor, Maura; Piperigkos, Nikos; Prevelakis, Vassilis; Segura, Carlos; Spanoudakis, Georgios; Tsirakis, Orestis; Veledar, Omar; Tserpes, Konstantinos | - | Institute of Electrical and Electronics Engineers Inc. |
| Data drift in Android malware detection | 1-Jan-2025 | Minnei, Luca; Eddoubi, Hicham; Sotgiu, Angelo; Pintor, Maura; Demontis, Ambra; Biggio, Battista | - | IEEE Computer Society |
| LFPD: Local-Feature-Powered Defense against adaptive backdoor attacks | 1-Jan-2025 | Guo, Wei; Demontis, Ambra; Pintor, Maura; Chan, Patrick P. K.; Biggio, Battista | - | IEEE Computer Society |
| Demystifying the role of rule-based detection in AI systems for Windows malware detection | 1-Jan-2025 | Ponte, Andrea; Demetrio, Luca; Oneto, Luca; Ogbu, Ivan Tesfai; Biggio, Battista; Roli, Fabio | - | Institute of Electrical and Electronics Engineers Inc. |
| Exploiting edge features for transferable adversarial attacks in distributed machine learning | 1-Jan-2025 | Rossolini, G.; Brau, F.; Biondi, A.; Biggio, B.; Buttazzo, G. | INTERNET OF THINGS | - |
| Energy-latency attacks via sponge poisoning | 1-Jan-2025 | Cinà, Antonio Emanuele; Demontis, Ambra; Biggio, Battista; Roli, Fabio; Pelillo, Marcello | INFORMATION SCIENCES | - |
| AttackBench: Evaluating Gradient-based Attacks for Adversarial Examples | 1-Jan-2025 | Cinà, Antonio Emanuele; Rony, Jérôme; Pintor, Maura; Demetrio, Luca; Demontis, Ambra; Biggio, Battista; Ayed, Ismail Ben; Roli, Fabio | - | - |
| ModSec-AdvLearn: countering adversarial SQL injections with robust machine learning | 1-Jan-2025 | Floris, Giuseppe; Scano, Christian; Montaruli, Biagio; Demetrio, Luca; Valenza, Andrea; Compagna, Luca; Ariu, Davide; Piras, Luca; Balzarotti, Davide; Biggio, Battista | IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY | - |
| ModSec-Learn: Boosting ModSecurity with Machine Learning | 1-Jan-2025 | Scano, Christian; Floris, Giuseppe; Montaruli, Biagio; Demetrio, Luca; Valenza, Andrea; Compagna, Luca; Ariu, Davide; Piras, Luca; Balzarotti, Davide; Biggio, Battista | - | Springer, Cham |
| Adversarial pruning: A survey and benchmark of pruning methods for adversarial robustness | 1-Jan-2025 | Piras, Giorgio; Pintor, Maura; Demontis, Ambra; Biggio, Battista; Giacinto, Giorgio; Roli, Fabio | PATTERN RECOGNITION | - |
| Understanding Regression in Continual Learning for Malware Detection | 1-Jan-2025 | Ghiani, Daniele; Angioni, Daniele; Sotgiu, Angelo; Pintor, Maura; Biggio, Battista | - | CEUR-WS |
| HO-FMN: Hyperparameter optimization for fast minimum-norm attacks | 1-Jan-2025 | Mura, Raffaele; Floris, Giuseppe; Scionis, Luca; Piras, Giorgio; Pintor, Maura; Demontis, Ambra; Giacinto, Giorgio; Biggio, Battista; Roli, Fabio | NEUROCOMPUTING | - |
| SLIFER: Investigating performance and robustness of malware detection pipelines | 1-Jan-2025 | Ponte, Andrea; Trizna, Dmitrijs; Demetrio, Luca; Biggio, Battista; Ogbu, Ivan Tesfai; Roli, Fabio | COMPUTERS & SECURITY | - |
| Robustness-Congruent Adversarial Training for Secure Machine Learning Model Updates | 1-Jan-2025 | Angioni, Daniele; Demetrio, Luca; Pintor, Maura; Oneto, Luca; Anguita, Davide; Biggio, Battista; Roli, Fabio | IEEE TRANSACTIONS ON PATTERN ANALYSIS AND MACHINE INTELLIGENCE | - |
| Toward Effective Traffic Sign Detection via Two-Stage Fusion Neural Networks | 1-Jan-2024 | Li, Zhishan; Chen, Hongxu; Biggio, Battista; He, Yifan; Cai, Haoran; Roli, Fabio; Xie, Lei | IEEE TRANSACTIONS ON INTELLIGENT TRANSPORTATION SYSTEMS | - |
| Machine Learning Security Against Data Poisoning: Are We There Yet? | 1-Jan-2024 | Cinà, Antonio Emanuele; Grosse, Kathrin; Demontis, Ambra; Biggio, Battista; Roli, Fabio; Pelillo, Marcello | COMPUTER | - |
| Nebula: Self-Attention for Dynamic Malware Analysis | 1-Jan-2024 | Trizna, Dmitrijs; Demetrio, Luca; Biggio, Battista; Roli, Fabio | IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY | - |
| Rethinking data augmentation for adversarial robustness | 1-Jan-2024 | Eghbal-zadeh, Hamid; Zellinger, Werner; Pintor, Maura; Grosse, Kathrin; Koutini, Khaled; Moser, Bernhard A.; Biggio, Battista; Widmer, Gerhard | INFORMATION SCIENCES | - |
| Machine learning in computer security is difficult to fix | 1-Jan-2024 | Biggio, Battista | COMMUNICATIONS OF THE ACM | - |
| When your AI becomes a target: AI security incidents and best practices | 1-Jan-2024 | Grosse, Kathrin; Bieringer, Lukas; Besold, Tarek R.; Biggio, Battista; Alahi, Alexandre | - | AAAI Press |
| Backdoor Learning Curves: Explaining Backdoor Poisoning Beyond Influence Functions | 1-Jan-2024 | Cinà, A. E.; Grosse, K.; Vascon, S.; Demontis, A.; Biggio, B.; Roli, F.; Pelillo, M. | INTERNATIONAL JOURNAL OF MACHINE LEARNING AND CYBERNETICS | - |
| The Threat of Offensive AI to Organizations | 1-Jan-2023 | Mirsky, Y.; Demontis, A.; Kotak, J.; Shankar, R.; Gelei, D.; Yang, L.; Zhang, X.; Pintor, M.; Lee, W.; Elovici, Y.; Biggio, B. | COMPUTERS & SECURITY | - |
| AI Security and Safety: The PRALab Research Experience | 1-Jan-2023 | Demontis, Ambra; Pintor, Maura; Demetrio, Luca; Sotgiu, Angelo; Angioni, Daniele; Piras, Giorgio; Gupta, Srishti; Biggio, Battista; Roli, Fabio | - | CEUR-WS Team, Redaktion Sun SITE |
| Hardening RGB-D object recognition systems against adversarial patch attacks | 1-Jan-2023 | Zheng, Yang; Demetrio, Luca; Cinà, Antonio Emanuele; Feng, Xiaoyi; Xia, Zhaoqiang; Jiang, Xiaoyue; Demontis, Ambra; Biggio, Battista; Roli, Fabio | INFORMATION SCIENCES | - |
| Stateful detection of adversarial reprogramming | 1-Jan-2023 | Zheng, Yang; Feng, Xiaoyi; Xia, Zhaoqiang; Jiang, Xiaoyue; Pintor, Maura; Demontis, Ambra; Biggio, Battista; Roli, Fabio | INFORMATION SCIENCES | - |
| Why adversarial reprogramming works, when it fails, and how to tell the difference | 1-Jan-2023 | Zheng, Yang; Feng, Xiaoyi; Xia, Zhaoqiang; Jiang, Xiaoyue; Demontis, Ambra; Pintor, Maura; Biggio, Battista; Roli, Fabio | INFORMATION SCIENCES | - |
| Samples on Thin Ice: Re-evaluating Adversarial Pruning of Neural Networks | 1-Jan-2023 | Piras, Giorgio; Pintor, Maura; Demontis, Ambra; Biggio, Battista | - | - |
| Detecting Attacks Against Deep Reinforcement Learning for Autonomous Driving | 1-Jan-2023 | Pintor, Maura; Demetrio, Luca; Sotgiu, Angelo; Lin, HSIAO-YING; Fang, Chengfang; Demontis, Ambra; Biggio, Battista | - | - |
| Machine Learning Security in Industry: A Quantitative Survey | 1-Jan-2023 | Grosse, Kathrin; Bieringer, Lukas; Besold, Tarek R.; Biggio, Battista; Krombholz, Katharina | IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY | - |
| Improving Fast Minimum-Norm Attacks with Hyperparameter Optimization | 1-Jan-2023 | Floris, Giuseppe; Mura, Raffaele; Scionis, Luca; Piras, Giorgio; Pintor, Maura; Demontis, Ambra; Biggio, Battista | - | Ciaco - i6doc.com |
| Phantom Sponges: Exploiting Non-Maximum Suppression to Attack Deep Object Detectors | 1-Jan-2023 | Shapira, Avishag; Zolfi, Alon; Demetrio, Luca; Biggio, Battista; Shabtai, Asaf | - | IEEE |
| Adversarial Attacks Against Uncertainty Quantification | 1-Jan-2023 | Ledda, Emanuele; Angioni, Daniele; Piras, Giorgio; Fumera, Giorgio; Biggio, Battista; Roli, Fabio | - | IEEE COMPUTER SOC |
| Cybersecurity and AI: The PRALab Research Experience | 1-Jan-2023 | Pintor, Maura; Orru, Giulia; Maiorca, Davide; Demontis, Ambra; Demetrio, Luca; Marcialis, GIAN LUCA; Biggio, Battista; Roli, Fabio | - | CEUR-WS Team, Redaktion Sun SITE |
| Wild Patterns Reloaded: A Survey of Machine Learning Security against Training Data Poisoning | 1-Jan-2023 | Emanuele Cinà, Antonio; Grosse, Kathrin; Demontis, Ambra; Vascon, Sebastiano; Zellinger, Werner; Moser, Bernhard A.; Oprea, Alina; Biggio, Battista; Pelillo, Marcello; Roli, Fabio | ACM COMPUTING SURVEYS | - |
| ImageNet-Patch: a dataset for benchmarking machine learning robustness against adversarial patches | 1-Jan-2023 | Pintor, Maura; Angioni, Daniele; Sotgiu, Angelo; Demetrio, Luca; Demontis, Ambra; Biggio, Battista; Roli, Fabio | PATTERN RECOGNITION | - |
| Raze to the ground: query-efficient adversarial HTML attacks on machine-learning phishing webpage detectors | 1-Jan-2023 | Montaruli, Biagio; Demetrio, Luca; Pintor, Maura; Compagna, Luca; Balzarotti, Davide; Biggio, Battista | - | Association for Computing Machinery |
| Minimizing Energy Consumption of Deep Learning Models by Energy-Aware Training | 1-Jan-2023 | Lazzaro, Dario; Cinà, Antonio Emanuele; Pintor, Maura; Demontis, Ambra; Biggio, Battista; Roli, Fabio; Pelillo, Marcello | - | - |
| Backdoor smoothing: Demystifying backdoor attacks on deep neural networks | 1-Jan-2022 | Grosse, K; Lee, Ts; Biggio, B; Park, Y; Backes, M; Molloy, I | COMPUTERS & SECURITY | - |
| Do gradient-based explanations tell anything about adversarial robustness to android malware? | 1-Jan-2022 | Melis, M.; Scalas, M.; Demontis, A.; Maiorca, D.; Biggio, B.; Giacinto, G.; Roli, F. | INTERNATIONAL JOURNAL OF MACHINE LEARNING AND CYBERNETICS | - |
Icon legend
- files available
- files available on intranet
- files available for authorized users
- files available for administrators
- files under embargo
- no files available
University of Cagliari