Historical milestone · 2015

    Explaining and harnessing adversarial examples

    Reviewed through September 18, 2026

    2015 · Historical milestone

    Explaining and harnessing adversarial examples

    Era
    2010s
    Theme
    Safety, security & alignment
    Evidence form
    Theory + attack experiments
    School / paradigm
    Robust machine learning
    Institution / context
    Google
    Researchers
    Ian Goodfellow; Jonathon Shlens; Christian Szegedy

    Understand

    Plain-language record, transferred from the reviewed source module.

    Theory or experimental setup. Related adversarial vulnerability to locally linear behavior and introduced the fast gradient sign method and adversarial training experiments.

    Result / historical claim. Made adversarial perturbations cheap to generate and turned robustness into a repeatable learning experiment.

    Apply

    Professional implication, only where the reviewed record states one.

    The checked-in record does not state a separate professional application for this entry. The topic page places it in the wider research lineage: .

    Verify

    Evidence status, stated limitations, and the external sources this record actually carries.

    Evidence form. Theory + attack experiments

    Limitation / debate. Norm-bounded image perturbations do not cover semantic, physical, tool, or agentic threat models.

    Source status. This milestone row does not carry a primary-source URL in the approved export, and we do not have a verified link for it in our own research. We do not guess one.

    No primary-source URL is recorded for this entry in our reviewed data. Rather than manufacture a citation, we link the Implement Agentic research page that carries the record.

    Reproduce

    A reproduction tutorial is linked only when one exists for this exact record.

    A reproduction tutorial is not yet available for this entry. The closest reviewed material is .

    Cite or share

    APA-like: This historical record carries a year only, and no author or publisher of record in the checked-in data. An APA reference would have to invent that metadata.

    BibTeX: BibTeX requires an author and publication venue. Historical lineage entries store a narrative record and its source link, not structured authorship, so the field would be fabricated.

    Related