Adversarial Robustness of Implicit Neural Representation-Based Classifiers
Jayoung Kim, Kookjin Lee, Noseong Park, Sanghyun Hong
Abstract
Implicit neural representations (INRs) encode data as continuous coordinate-based functions parameterized by neural networks, shifting downstream tasks such as image recognition to operate on functional rather than discrete representations. Despite their increasing adoption, the adversarial robustness of INR-based classification pipelines remain largely underexplored. In this work, we present the first systematic study of adversarial robustness in INR-based classifiers. A key challenge is that generating an INR requires a neural network for each input sample, resulting in an optimization-in-the-loop forward pass that renders standard gradient-based attacks computationally prohibitive. To address this, we design surrogate models that amortizes the INR-generation process, serving as a practical proxy for attacking INR-based classifiers. We also develop speed-up techniques that substantially reduce the training cost of the surrogate. We show that in contrast to recent work, INR-based classifiers are vulnerable: under adversarial input perturbations, classification accuracy collapses to near zero. Moreover, existing countermeasures designed to operate on discrete representations offer limited protection.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext 5f1f3d9e-5783-4d22-a26f-c8d666f737bfBuilds on20
- Towards Evaluating the Robustness of Neural NetworksNicholas Carlini, David A. WagnerS&P 2017 · 9,786 citations
- Improved Denoising Diffusion Probabilistic ModelsAlexander Quinn Nichol, Prafulla DhariwalICML 2021 · 5,234 citations
- Fourier Features Let Networks Learn High Frequency Functions in Low Dimensional DomainsMatthew Tancik, Pratul P. Srinivasan, Ben Mildenhall, Sara Fridovich-Keil et al.NeurIPS 2020 · 4,036 citations
- Implicit Neural Representations with Periodic Activation FunctionsVincent Sitzmann, Julien N. P. Martel, Alexander W. Bergman, David B. Lindell et al.NeurIPS 2020 · 4,008 citations
- Reliable evaluation of adversarial robustness with an ensemble of diverse parameter-free attacksFrancesco Croce, Matthias HeinICML 2020 · 2,337 citations
Related papers
- Refine Now, Query Fast: A Decoupled Refinement Paradigm for Implicit Neural FieldsTianyu Xiong, Skylar W. Wurster, Han-Wei ShenICLR 2026
- Isometric Regularization for Manifolds of Functional DataHyeongjun Heo, Seonghun Oh, Jae Yong Lee, Young Min Kim et al.ICLR 2025
- Adversarial Generation of Continuous ImagesIvan Skorokhodov, Savva Ignatyev, Mohamed ElhoseinyCVPR 2021
- Hindering Adversarial Attacks with Implicit Neural RepresentationsAndrei A. Rusu, Dan Andrei Calian, Sven Gowal, Raia HadsellICML 2022 · 5 citations
- I-INR: Iterative Implicit Neural RepresentationsAli Haider, Muhammad Salman Ali, Maryam Qamar, Tahir Khalil et al.AAAI 2026 · 1 citation
