ML Security

Zero-One Attack: Degrading Closed-Loop Neural Network Control Systems using State-Time Perturbations
Falsification using Reachability of Surrogate Koopman Models
Provable Observation Noise Robustness for Neural Network Control Systems
On the Feasibility of Compressing Certifiably Robust Neural Networks
Ares: A System-Oriented Wargame Framework for Adversarial ML