In [1]:
import numpy as np
import pandas as pd
from multiprocessing import Pool
import matplotlib.pyplot as plt
import matplotlib.gridspec as grid_spec
from tqdm.auto import tqdm
from math import ceil
import itertools
import h5py
import io
import robustbench

In [2]:
dataset_path = "/data/output/20220226_robustness/dataset.h5"
df_meta = pd.read_hdf(dataset_path, "meta")
df_meta.Robust = df_meta.Robust.apply(bool)

In [5]:
df_meta.Paper.unique()


array(['https://openreview.net/forum?id=SHB_znlW5G7',
       'https://arxiv.org/abs/2002.11569',
       'https://github.com/MadryLab/robustness',
       'https://arxiv.org/abs/1901.09960',
       'https://arxiv.org/abs/2010.01278',
       'https://openreview.net/forum?id=HkeryxBtPB',
       'https://arxiv.org/abs/2007.02617',
       'https://arxiv.org/abs/2001.03994',
       'https://arxiv.org/abs/2103.01946',
       'https://arxiv.org/abs/2007.08489',
       'https://arxiv.org/abs/2004.05884',
       'https://arxiv.org/abs/2104.09425',
       'https://arxiv.org/abs/2010.03593', nan,
       'https://arxiv.org/abs/1905.13736',
       'https://arxiv.org/abs/2110.05626',
       'https://arxiv.org/abs/2111.02331',
       'https://openreview.net/forum?id=BuD2LmNaU3a',
       'https://arxiv.org/abs/2011.11164',
       'https://arxiv.org/abs/1901.08573',
       'https://arxiv.org/abs/2110.03825',
       'https://arxiv.org/abs/2003.12862',
       'https://arxiv.org/abs/2110.09468',
       'htt

In [4]:
import re
import urllib.request as libreq

ids = []

paper_map = {}

for s in df_meta.Paper.unique():
    if type(s) is str:
        match = re.findall(r"arxiv.*([0-9]{4}.[0-9]{4,5})", s)
        if len(match) > 0:
            idd = match[0]
            ids.append(idd)
            
for idd in set(ids):
    url = f"https://arxiv.org/bibtex/{idd}"
    with libreq.urlopen(url) as data:
        citation = data.read().decode("utf-8")
        print(citation)
        paper_map[idd] = citation

@misc{rebuffi2021fixing,
      title={Fixing Data Augmentation to Improve Adversarial Robustness}, 
      author={Sylvestre-Alvise Rebuffi and Sven Gowal and Dan A. Calian and Florian Stimberg and Olivia Wiles and Timothy Mann},
      year={2021},
      eprint={2103.01946},
      archivePrefix={arXiv},
      primaryClass={cs.CV}
}
@misc{huang2022exploring,
      title={Exploring Architectural Ingredients of Adversarially Robust Deep Neural Networks}, 
      author={Hanxun Huang and Yisen Wang and Sarah Monazam Erfani and Quanquan Gu and James Bailey and Xingjun Ma},
      year={2022},
      eprint={2110.03825},
      archivePrefix={arXiv},
      primaryClass={cs.LG}
}
@misc{zhang2020attacks,
      title={Attacks Which Do Not Kill Training Make Adversarial Learning Stronger}, 
      author={Jingfeng Zhang and Xilie Xu and Bo Han and Gang Niu and Lizhen Cui and Masashi Sugiyama and Mohan Kankanhalli},
      year={2020},
      eprint={2002.11242},
      archivePrefix={arXiv},
      primar