atlas

Research map / Adversarial robustness and security

Certified and empirical robustness: research map

1,156 accepted papers on Certified and empirical robustness in Adversarial robustness and security, from ICML, NeurIPS, ICLR, CVPR and AAAI (2016–2026), grouped into 4 clusters and 16 approaches. The busiest year so far is 2023.

Within Adversarial robustness and security, its share shrank from 38.9% in 2023–24 to 23.5% in 2025–26 (303 → 231 papers at ICML, NeurIPS, CVPR and AAAI, the venues with data for all four years).

2016: 3162017: 9172018: 56182019: 107192020: 150202021: 144212022: 153222023: 162232024: 141242025: 117252026: 11426

Explore Certified and empirical robustness in the interactive map

Working on something in this topic? Describe your idea in scime atlas to see which approach it falls under, the closest papers by meaning and how crowded the spot has become.

Approaches and key papers

adversarially · generalization · overfitting · 476 papers

Approaches in this cluster:

Most cited and most cited since 2024:

verification · bounds · worst case · 300 papers

Approaches in this cluster:

Most cited and most cited since 2024:

cifar · 10 · imagenet · 273 papers

Approaches in this cluster:

Most cited and most cited since 2024:

smoothing · randomized · certified robustness · 107 papers

Approaches in this cluster:

Most cited and most cited since 2024:

Related topics in Adversarial robustness and security