Historical milestone · 2015
Explaining and harnessing adversarial examples
Reviewed through September 18, 2026
2015 · Historical milestone
Explaining and harnessing adversarial examples
- Era
- 2010s
- Theme
- Safety, security & alignment
- Evidence form
- Theory + attack experiments
- School / paradigm
- Robust machine learning
- Institution / context
- Researchers
- Ian Goodfellow; Jonathon Shlens; Christian Szegedy
Understand
Plain-language record, transferred from the reviewed source module.
Theory or experimental setup. Related adversarial vulnerability to locally linear behavior and introduced the fast gradient sign method and adversarial training experiments.
Result / historical claim. Made adversarial perturbations cheap to generate and turned robustness into a repeatable learning experiment.
Apply
Professional implication, only where the reviewed record states one.
The checked-in record does not state a separate professional application for this entry. The topic page places it in the wider research lineage: .
Verify
Evidence status, stated limitations, and the external sources this record actually carries.
Evidence form. Theory + attack experiments
Limitation / debate. Norm-bounded image perturbations do not cover semantic, physical, tool, or agentic threat models.
Source status. This milestone row does not carry a primary-source URL in the approved export, and we do not have a verified link for it in our own research. We do not guess one.
No primary-source URL is recorded for this entry in our reviewed data. Rather than manufacture a citation, we link the Implement Agentic research page that carries the record.
Reproduce
A reproduction tutorial is linked only when one exists for this exact record.
A reproduction tutorial is not yet available for this entry. The closest reviewed material is .
Cite or share
APA-like: This historical record carries a year only, and no author or publisher of record in the checked-in data. An APA reference would have to invent that metadata.
BibTeX: BibTeX requires an author and publication venue. Historical lineage entries store a narrative record and its source link, not structured authorship, so the field would be fabricated.
