{"id":"W7108704788","doi":"10.5281/zenodo.17818478","title":"The Adversarial Conditioning Paradox: Why Attacked Inputs Are More Stable, Not Less","year":2025,"lang":"en","type":"preprint","venue":"Zenodo (CERN European Organization for Nuclear Research)","topic":"Adversarial Robustness in Machine Learning","field":"Computer Science","cited_by":0,"is_retracted":false,"has_abstract":true,"ca_institutions":"University of Toronto","funders":"","keywords":"Adversarial system; Exploit; Embedding; Conditioning; Jacobian matrix and determinant; Property (philosophy); Trigonometric functions","routes":{"ca_aff":true,"ca_fund":false,"ca_venue":false,"about_ca":false,"invisible_to_affiliation_only":false},"retraction":null,"screen":null,"direct_labels":[],"prediction":{"model_version":"metacan-v3-hybrid-931329e0061c","candidate_categories":[],"consensus_categories":[],"category_scores_codex":[0.00496375,0.00105467,0.0007696402,0.0009335971,0.0005890519,0.002038922,0.0007572667,0.00152382,0.002713713],"category_scores_gemma":[0.02869787,0.0004298124,0.000589381,0.0004177956,0.003607351,0.004158052,0.002206974,0.003211722,0.0007924096],"about_ca_system_candidate":false,"about_ca_system_consensus":false,"about_ca_system_score_codex":0.0008470095,"about_ca_system_score_gemma":0.0005337882,"about_ca_topic_candidate":false,"about_ca_topic_consensus":false,"about_ca_topic_score_codex":0.000770161,"about_ca_topic_score_gemma":0.0007040838,"domain_scores_codex":[0.9970487,0.001024178,0.0001348798,0.00081885,0.00075766,0.0002157549],"domain_scores_gemma":[0.9818205,0.01098989,0.002182631,0.003285263,0.001085058,0.0006366016],"domain_codex":null,"domain_gemma":null,"domain_candidate":null,"domain_consensus":null,"study_design_codex":"simulation_or_modeling","study_design_gemma":"theoretical_or_conceptual","study_design_scores_codex":[0.002430645,0.0003263843,0.05569034,0.0005613447,0.000575422,0.0008171904,0.0007375772,0.4652279,0.1390156,0.07953423,0.009688264,0.2453951],"study_design_scores_gemma":[0.00005440344,0.0004858948,0.01430955,0.00007500533,0.00008093537,0.0006307466,0.0001587772,0.7783673,0.08893884,0.1145294,0.002288631,0.00008037303],"study_design_candidate":"theoretical_or_conceptual","study_design_consensus":null,"genre_codex":"methods","genre_gemma":"empirical","genre_scores_codex":[0.47261,0.0007836372,0.5136032,0.002753159,0.0002039597,0.0000908635,0.000391886,0.002277509,0.007285807],"genre_scores_gemma":[0.9775367,0.0001069171,0.02070674,0.0003199163,0.00003417335,0.00002303329,0.0001952141,0.0001955033,0.0008818505],"genre_candidate":"empirical","genre_consensus":null,"teacher_disagreement_score":0.00496375,"threshold_uncertainty_score":0.02625114,"prediction_status":"machine_predicted_unvalidated"},"machine_scores":{"provisional":true,"baseline":true,"maturity_gate_passed":false,"score_opus":0.04310674875477501,"score_gpt":0.2834536411488886,"score_spread":0.2403468923941136,"validation_status":"score_only:v0-immature-baseline","note":"Baseline scores from an immature model (maturity gate not passed). Scores rank; they never assert a category."}}