α
Research
Alpha Leak
Conferences
Topics
Top Authors
Rankings
Browse All
EN
中
Home
/
Authors
/
Matthias Hein
Matthias Hein
18
papers
1,809
total citations
papers (18)
Square Attack: a query-efficient black-box adversarial attack via random search
ECCV 2020
arXiv
1,191
citations
Adversarial Robustness on In- and Out-Distribution Improves Explainability
ECCV 2020
arXiv
109
citations
Diffusion Visual Counterfactual Explanations
NEURIPS 2022
arXiv
101
citations
Revisiting Adversarial Training for ImageNet: Architectures, Training and Generalization across Threat Models
NEURIPS 2023
arXiv
96
citations
Robust CLIP: Unsupervised Adversarial Fine-Tuning of Vision Embeddings for Robust Large Vision-Language Models
ICML 2024
arXiv
88
citations
Relating Adversarially Robust Generalization to Flat Minima
ICCV 2021
arXiv
78
citations
Spurious Features Everywhere - Large-Scale Detection of Harmful Spurious Features in ImageNet
ICCV 2023
arXiv
40
citations
Normalization Layers Are All That Sharpness-Aware Minimization Needs
NEURIPS 2023
arXiv
34
citations
Meta-Learning the Search Distribution of Black-Box Random Search Based Adversarial Attacks
NEURIPS 2021
arXiv
15
citations
Towards Reliable Evaluation and Fast Training of Robust Semantic Segmentation Models
ECCV 2024
arXiv
12
citations
An Interpretable N-gram Perplexity Threat Model for Large Language Model Jailbreaks
ICML 2025
arXiv
9
citations
Certifiably Adversarially Robust Detection of Out-of-Distribution Data
NEURIPS 2020
arXiv
9
citations
An Infinite-Feature Extension for Bayesian ReLU Nets That Fixes Their Asymptotic Overconfidence
NEURIPS 2021
arXiv
9
citations
DiG-IN: Diffusion Guidance for Investigating Networks - Uncovering Classifier Differences Neuron Visualisations and Visual Counterfactual Explanations
CVPR 2024
arXiv
9
citations
DASH: Detection and Assessment of Systematic Hallucinations of VLMs
ICCV 2025
arXiv
7
citations
Advancing Compositional Awareness in CLIP with Efficient Fine-Tuning
NEURIPS 2025
arXiv
2
citations
Bias of Stochastic Gradient Descent or the Architecture: Disentangling the Effects of Overparameterization of Neural Networks
ICML 2024
arXiv
0
citations
Provably Adversarially Robust Detection of Out-of-Distribution Data (Almost) for Free
NEURIPS 2022
0
citations