Pith. sign in

Paper Citation Record · LEDGER

Ensemble Adversarial Training: Attacks and Defenses

As of 10 August 2026, this Paper Citation Record lists 0 of 0 outbound references and 29 inbound Pith citation observations for arXiv:1705.07204.

A citation records a reference. It does not transfer a finding from one paper to another.

pith.paper-citation-record.v1
1705.07204 v5

Coverage vector

measured 0 of 0 reference resolution

Typed states for the displayed outbound observations.

Source: paper_references, paper_reference_links

measured 29 of 29 standing notices

One-hop event checks from named stored sources.

Source: scholarly_work_events, retraction_status_cache, observed 2026-08-10T06:31:04.303077+00:00

measured 29 of 29 inbound itemization

Pith citing papers itemized under the disclosed page cap.

Source: paper_references, paper_reference_links, observed 2026-08-10T13:00:02.138097Z

measured 1 of 1 external citation measurements

A source-named dated measurement, never combined with another source.

Source: arxiv_reference, observed 2026-08-05T02:28:24.338817Z

Reference resolution

0 of 0 outbound references displayed

  • verified exact0
  • verified fuzzy0
  • unresolved0
  • parse uncertain0
  • malformed identifier0
  • metadata mismatch0

External citation measurements

1109
arxiv_reference, observed 2026-08-05T02:28:24.338817Z

Outbound references

No outbound reference observations are available for this paper version.

Pith citing papers

Observation 4e23e29b-9774-4a26-b6b8-1feb8b8234c0 · inbound

Fooling a Real Car with Adversarial Traffic Signs cites this paper.

Fooling a Real Car with Adversarial Traffic Signs Ensemble Adversarial Training: Attacks and Defenses

Reference 36

Resolution
verified exact
arxiv_id, observed 2026-05-25T12:36:57.742702Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.

source=pdf_text observed=2026-05-25T12:35:57.354399Z digest=sha256:3f7c9f9abfd4edc02818d70d6581aa626607291075ef9ab2d20e772ee6891bae

Observation d68def8e-adaa-45c3-a5f1-02ed1b72d057 · inbound

Affine Disentangled GAN for Interpretable and Robust AV Perception cites this paper.

Affine Disentangled GAN for Interpretable and Robust AV Perception Ensemble Adversarial Training: Attacks and Defenses

Reference 29

Resolution
verified exact
arxiv_id, observed 2026-05-25T01:56:32.519280Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.

source=pdf_text observed=2026-05-25T01:55:24.976737Z digest=sha256:549e53a3c423b2c6485d866f28d7c920a0373590c3f4160bd40427b94cfdd196

Observation 13b161c1-f6ec-4bc6-ac0f-02c8a2f673ec · inbound

Unsolved Problems in ML Safety cites this paper.

Unsolved Problems in ML Safety Ensemble Adversarial Training: Attacks and Defenses

Reference 191

Resolution
verified exact
arxiv_id, observed 2026-05-16T20:45:27.546632Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.

source=pdf_text observed=2026-05-16T20:45:27.421909Z digest=sha256:02aad42d312389bd524a491b43059d704dd3c01042d63746b5461e1f2ebe730e

Observation 5061c0fe-45d8-4e4f-b0bb-dc30ffaf0e6d · inbound

MirrorCheck: Efficient Adversarial Defense for Vision-Language Models cites this paper.

MirrorCheck: Efficient Adversarial Defense for Vision-Language Models Ensemble Adversarial Training: Attacks and Defenses

Reference 87

Resolution
verified exact
arxiv_id, observed 2026-05-25T09:05:35.816389Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.

source=arxiv_source observed=2026-05-25T09:03:31.136506Z digest=sha256:9fda20b44a1f2198a390f6cd9a871918d88d32823a08d845b6ef25853214e976

Observation 8a68ac40-1b1b-4bb2-833d-297827a7113c · inbound

Towards Generalized Certified Robustness with Multi-Norm Training cites this paper.

Towards Generalized Certified Robustness with Multi-Norm Training Ensemble Adversarial Training: Attacks and Defenses

Reference 44

Resolution
verified exact
arxiv_id, observed 2026-05-23T20:03:24.494913Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.

source=arxiv_source observed=2026-05-23T19:59:54.127391Z digest=sha256:6569f04bf8243fd25630f9773d133a3143f1991f1925c005fac19e82166de74a

Observation a585dd47-ef8f-4467-b3d2-74d579ccb889 · inbound

Towards Robust Stability Prediction in Smart Grids: GAN-based Approach under Data Constraints and Adversarial Challenges cites this paper.

Towards Robust Stability Prediction in Smart Grids: GAN-based Approach under Data Constraints and Adversarial Challenges Ensemble Adversarial Training: Attacks and Defenses

Reference 47

Resolution
unresolved
no resolver link, observed 2026-08-10T13:00:02.138097Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-10T13:00:02.138097Z digest=sha256:2ac2986f2361598257506bf7765dc3ffa10f9578e7d9d85112f1398a16b14cdb

Observation 582ae296-6bba-4860-9a73-99cdaca4d3cd · inbound

Boosting Adversarial Transferability via High-Frequency Augmentation and Hierarchical-Gradient Fusion cites this paper.

Boosting Adversarial Transferability via High-Frequency Augmentation and Hierarchical-Gradient Fusion Ensemble Adversarial Training: Attacks and Defenses

Reference 25

Resolution
unresolved
no resolver link, observed 2026-08-07T13:44:41.197374Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-07T13:44:41.197374Z digest=sha256:86a335fbc16ffa69a92ab9637fefacf2cd2ead1d539d2dce9e8789b11e21527a

Observation a5f60b0f-6f56-4bdc-982a-b85ac909052c · inbound

Adversarial Semantic and Label Perturbation Attack for Pedestrian Attribute Recognition cites this paper.

Adversarial Semantic and Label Perturbation Attack for Pedestrian Attribute Recognition Ensemble Adversarial Training: Attacks and Defenses

Reference 31

Resolution
unresolved
no resolver link, observed 2026-08-07T12:55:10.270586Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-07T12:55:10.270586Z digest=sha256:d57aa2949a7821776d3a01ce0520d85bd6b3acaecd864e1e0629ecfee9e3108b

Observation ea67c754-cc8b-4734-bb88-873643d07d82 · inbound

Are classical deep neural networks weakly adversarially robust? cites this paper.

Are classical deep neural networks weakly adversarially robust? Ensemble Adversarial Training: Attacks and Defenses

Reference 4

Resolution
unresolved
no resolver link, observed 2026-08-07T13:21:28.922969Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-07T13:21:28.922969Z digest=sha256:1a887dbb600e629c7b1f5b18406da3741d5b4042a6e85483c970beaaf5faba19

Observation fb0976df-d0a7-4395-96e8-6f1eb14a985f · inbound

Exploring Visual Prompting: Robustness Inheritance and Beyond cites this paper.

Exploring Visual Prompting: Robustness Inheritance and Beyond Ensemble Adversarial Training: Attacks and Defenses

Reference 42

Resolution
unresolved
no resolver link, observed 2026-08-07T05:52:38.777178Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=arxiv_source observed=2026-08-07T05:52:38.777178Z digest=sha256:f985d3a68f18fba3c3bea6742905482e3c1555f19986ca35458ac5053d085aba

Observation 1496df24-8ef4-42b9-ac56-5a8ab9ef9139 · inbound

DUMB and DUMBer: Is Adversarial Training Worth It in the Real World? cites this paper.

DUMB and DUMBer: Is Adversarial Training Worth It in the Real World? Ensemble Adversarial Training: Attacks and Defenses

Reference 23

Resolution
unresolved
no resolver link, observed 2026-08-06T23:20:08.256508Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-06T23:20:08.256508Z digest=sha256:e4ba143f780fef1b9243c724edcaad30ac91cce51d4d8061c780aa82deef63e5

Observation 2fb10254-2d2a-456a-99e0-b5a014516c29 · inbound

Boosting Adversarial Transferability Against Defenses via Multi-Scale Transformation cites this paper.

Boosting Adversarial Transferability Against Defenses via Multi-Scale Transformation Ensemble Adversarial Training: Attacks and Defenses

Reference 16

Resolution
unresolved
no resolver link, observed 2026-08-06T20:46:44.645596Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-06T20:46:44.645596Z digest=sha256:f267a690b1080bbb7608030d426cbffc211df6db02461c3adafec02615a48c48

Observation 5123c869-efcf-4be5-b141-c88b49df9fec · inbound

PRM-Free Security Alignment of Large Models via Red Teaming and Adversarial Training cites this paper.

PRM-Free Security Alignment of Large Models via Red Teaming and Adversarial Training Ensemble Adversarial Training: Attacks and Defenses

Reference 75

Resolution
unresolved
no resolver link, observed 2026-08-06T17:35:48.467325Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=arxiv_source observed=2026-08-06T17:35:48.467325Z digest=sha256:27043a67b67451e2f7b9c2042e52f7e17ee48f0fb997e5e6baffc5baf5b69626

Observation af883479-0476-4a8a-96a6-4bc37fb667cc · inbound

Improving Adversarial Robustness Through Adaptive Learning-Driven Multi-Teacher Knowledge Distillation cites this paper.

Improving Adversarial Robustness Through Adaptive Learning-Driven Multi-Teacher Knowledge Distillation Ensemble Adversarial Training: Attacks and Defenses

Reference 23

Resolution
unresolved
no resolver link, observed 2026-08-06T13:10:29.006476Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-06T13:10:29.006476Z digest=sha256:82ad8f7574565ee45ee49d317d15482422c4bee686c49daedb3191d22bae9fb1

Observation 8af4d71c-6a3a-4efd-85c6-4a45efedc56e · inbound

Make me an Expert: Distilling from Generalist Black-Box Models into Specialized Models for Semantic Segmentation cites this paper.

Make me an Expert: Distilling from Generalist Black-Box Models into Specialized Models for Semantic Segmentation Ensemble Adversarial Training: Attacks and Defenses

Reference 59

Resolution
unresolved
no resolver link, observed 2026-08-05T13:35:39.282015Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-05T13:35:39.282015Z digest=sha256:e4d18c629b891d918fe15d9fc54591f05daa9b54a03ef0a4069e435a60dceb5b

Observation 6e8ad9be-f1a7-4bed-a3da-dd00d0fd8c4a · inbound

Generating Transferrable Adversarial Examples via Local Mixing and Logits Optimization for Remote Sensing Object Recognition cites this paper.

Generating Transferrable Adversarial Examples via Local Mixing and Logits Optimization for Remote Sensing Object Recognition Ensemble Adversarial Training: Attacks and Defenses

Reference 35

Resolution
unresolved
no resolver link, observed 2026-08-04T22:10:18.157008Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-04T22:10:18.157008Z digest=sha256:69fe5ae814794e0ca74f82ac06d11261822366ca0582ae6a35db875a906ea018

Observation 50223b02-2745-4288-86e4-5ad36dbf3785 · inbound

DeepDefense: Robust Learning via Layer-Wise Gradient-Feature Alignment cites this paper.

DeepDefense: Robust Learning via Layer-Wise Gradient-Feature Alignment Ensemble Adversarial Training: Attacks and Defenses

Reference 4979

Resolution
malformed identifier
no resolver link, observed 2026-08-04T06:50:47.972317Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-04T06:50:47.972317Z digest=sha256:cdb5cedd5e5da13c9518e5bc8c6719480625c306b6ffd85af721931c4a8d00a2

Observation bea8a810-5066-4387-924e-5d09a3e1c032 · inbound

Enhancing Adversarial Transferability through Block Stretch and Shrink cites this paper.

Enhancing Adversarial Transferability through Block Stretch and Shrink Ensemble Adversarial Training: Attacks and Defenses

Reference 33

Resolution
unresolved
no resolver link, observed 2026-08-03T21:01:01.515466Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-03T21:01:01.515466Z digest=sha256:e3067ef3540fe432ddd55a28127ae4e2922a8be38e0ef96e2823c8699576f2ab

Observation e6c3b071-6b86-44a5-aac4-8eed3b7db475 · inbound

Breaking the Illusion: Consensus-Based Generative Mitigation of Adversarial Illusions in Multi-Modal Embeddings cites this paper.

Breaking the Illusion: Consensus-Based Generative Mitigation of Adversarial Illusions in Multi-Modal Embeddings Ensemble Adversarial Training: Attacks and Defenses

Reference 27

Resolution
verified exact
arxiv_id, observed 2026-05-17T04:19:00.699702Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.

source=pdf_text observed=2026-05-17T04:15:38.632039Z digest=sha256:37df946437b9a1c9711f5b02abc7e3f44e5c30e76e991461deebb6ed7ca5fa50

Observation 44a93510-9cbb-467d-a94b-3baa9d2595b4 · inbound

REVERB-FL: Server-Side Adversarial and Reserve-Enhanced Federated Learning for Robust Audio Classification cites this paper.

REVERB-FL: Server-Side Adversarial and Reserve-Enhanced Federated Learning for Robust Audio Classification Ensemble Adversarial Training: Attacks and Defenses

Reference 33

Resolution
metadata mismatch
arxiv_id, observed 2026-05-21T16:40:22.607783Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.

source=pdf_text observed=2026-05-21T16:36:44.396496Z digest=sha256:58903e391c362e88078cd76b26e31264fe966355962a41616a4983630c5bae94

Observation 2187b2e8-1245-4e20-9c46-06d2570aeb06 · inbound

Compression as an Adversarial Amplifier Through Decision Space Reduction cites this paper.

Compression as an Adversarial Amplifier Through Decision Space Reduction Ensemble Adversarial Training: Attacks and Defenses

Reference 41

Resolution
verified exact
arxiv_id, observed 2026-05-11T05:20:57.579782Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.

source=pdf_text observed=2026-05-10T18:12:45.350958Z digest=sha256:3de3bcea04e7ad2ae0ddeef4c2192af257ad675bbc092cb1473704000b24425f

Observation d1813063-dc8d-4e79-98d4-35cbe7905d48 · inbound

Quantum Patches: Enhancing Robustness of Quantum Machine Learning Models cites this paper.

Quantum Patches: Enhancing Robustness of Quantum Machine Learning Models Ensemble Adversarial Training: Attacks and Defenses

Reference 20

Resolution
verified exact
arxiv_id, observed 2026-05-11T08:11:00.416113Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.

source=pdf_text observed=2026-05-10T16:48:29.222134Z digest=sha256:f4c342554d2e80d0270c175a20e1452bb50022bbbe95466b6845a8d0a431b59b

Observation 0ab9852a-fe21-4f85-aa9c-4ba4f603c1d9 · inbound

UniAda: Universal Adaptive Multi-objective Adversarial Attack for End-to-End Autonomous Driving Systems cites this paper.

UniAda: Universal Adaptive Multi-objective Adversarial Attack for End-to-End Autonomous Driving Systems Ensemble Adversarial Training: Attacks and Defenses

Reference 18

Resolution
verified exact
arxiv_id, observed 2026-05-11T20:51:08.883946Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.

source=pdf_text observed=2026-05-08T07:53:59.293260Z digest=sha256:0cc1aeefb390373bab9d119c488c7a2b5cfc7ad31105b3e6dab958cff84e1780

Observation 02c859eb-a213-4139-835e-13aaa49a2fa4 · inbound

When AI reviews science: Can we trust the referee? cites this paper.

When AI reviews science: Can we trust the referee? Ensemble Adversarial Training: Attacks and Defenses

Reference 82

Resolution
verified exact
arxiv_id, observed 2026-05-08T23:19:29.795058Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.

source=pdf_text observed=2026-05-08T06:19:54.727724Z digest=sha256:58244b739f3b1fbb6b084424c2ab65ce9d36cacf8dedde2a0a6008f244f038c0

Observation 3b058ae9-e4df-4862-8f08-a2a66f030170 · inbound

Enhancing Adversarial Robustness in Network Intrusion Detection: A Layer-wise Adaptive Regularization Approach cites this paper.

Enhancing Adversarial Robustness in Network Intrusion Detection: A Layer-wise Adaptive Regularization Approach Ensemble Adversarial Training: Attacks and Defenses

Reference 22

Resolution
metadata mismatch
arxiv_id, observed 2026-05-12T01:51:13.932899Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.

source=pdf_text observed=2026-05-12T01:51:12.534482Z digest=sha256:2c7ac099e4074443e0a36f92f73e75ce01b62b597873a979a9dbf962b3968022

Observation c75e075a-334f-4599-a74a-1e212525fffa · inbound

Guaranteed Jailbreaking Defense via Disrupt-and-Rectify Smoothing cites this paper.

Guaranteed Jailbreaking Defense via Disrupt-and-Rectify Smoothing Ensemble Adversarial Training: Attacks and Defenses

Reference 49

Resolution
metadata mismatch
arxiv_id, observed 2026-05-12T05:51:27.489190Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.

source=arxiv_source observed=2026-05-12T04:50:08.866969Z digest=sha256:7c7f5272ea63d5019acf777aecaab1b95294366cd5e14424d622174f6599084b

Observation f12a7dc1-cb66-4ac0-ade2-5ee86a4fb368 · inbound

Margin-Adaptive Confidence Ranking for Reliable LLM Judgement cites this paper.

Margin-Adaptive Confidence Ranking for Reliable LLM Judgement Ensemble Adversarial Training: Attacks and Defenses

Reference 64

Resolution
metadata mismatch
arxiv_id, observed 2026-05-19T16:12:39.524794Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.

source=arxiv_source observed=2026-05-19T16:05:41.505091Z digest=sha256:5497f5149bc4294e187c72f4a37b3069bcd223e6ef06ead7af3402160356ade3

Observation da90b048-6f43-4901-80eb-064a7334b2f0 · inbound

Measuring Model Robustness via Fisher Information: Spectral Bounds, Theoretical Guarantees, and Practical Algorithms cites this paper.

Measuring Model Robustness via Fisher Information: Spectral Bounds, Theoretical Guarantees, and Practical Algorithms Ensemble Adversarial Training: Attacks and Defenses

Reference 77

Resolution
metadata mismatch
arxiv_id, observed 2026-07-02T06:36:43.884209Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.

source=arxiv_source observed=2026-06-28T07:23:53.481722Z digest=sha256:a063189283c4609f2fbee7fd96664b57d23a8e3ef713174eebae8e958d18871d

Observation cfca49be-b075-4913-9153-669d6b25a136 · inbound

Foveation-Guided Dynamic Token Selection for Robust and Efficient Vision Transformers cites this paper.

Foveation-Guided Dynamic Token Selection for Robust and Efficient Vision Transformers Ensemble Adversarial Training: Attacks and Defenses

Reference 43

Resolution
unresolved
no resolver link, observed 2026-07-13T02:43:47.779443Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-07-13T02:43:47.779443Z digest=sha256:f7e4e92e27bacabf3dc551ff2c331d4c960d675e6380b9473fe5a2fe4fd325df