DiffSmooth: Certifiably Robust Learning via Diffusion Models and Local Smoothing

Published in 32nd USENIX Security Symposium (USENIX Security 23), 2023

DiffSmooth combines the power of diffusion models with local smoothing techniques to achieve certifiably robust learning. This work provides both theoretical guarantees and practical defense mechanisms against adversarial attacks.

*Equal contribution

Recommended citation: Jiawei Zhang*, Zhongzhu Chen*, Huan Zhang, Chaowei Xiao, and Bo Li. (2023). "DiffSmooth: Certifiably Robust Learning via Diffusion Models and Local Smoothing." USENIX Security 23, pp. 4787-4804.
Download Paper