{"id":"W7108749442","doi":"10.5281/zenodo.17818479","title":"The Adversarial Conditioning Paradox: Why Attacked Inputs Are More Stable, Not Less","year":2025,"lang":"en","type":"preprint","venue":"Zenodo (CERN European Organization for Nuclear Research)","topic":"Adversarial Robustness in Machine Learning","field":"Computer Science","cited_by":0,"is_retracted":false,"has_abstract":true,"ca_institutions":"University of Toronto","funders":"","keywords":"Adversarial system; Exploit; Embedding; Conditioning; Jacobian matrix and determinant; Property (philosophy); Trigonometric functions","routes":{"ca_aff":true,"ca_fund":false,"ca_venue":false,"about_ca":false,"invisible_to_affiliation_only":false},"retraction":null,"screen":null,"direct_labels":[],"prediction":{"model_version":"codex-gemma-dda1882f352a","candidate_categories":["metaepi_narrow","sts","scholarly_communication","open_science","insufficient_payload"],"consensus_categories":["open_science"],"category_scores_codex":[0.001710194,0.0004201584,0.0004119518,0.0003624595,0.006854189,0.004290743,0.00673238,0.0002835898,0.0006483794],"category_scores_gemma":[0.002228396,0.0004030611,0.0001659772,0.0008929296,0.0003905306,0.0005611764,0.01688354,0.001957443,0.0008340192],"about_ca_system_candidate":false,"about_ca_system_consensus":false,"about_ca_system_score_codex":0.0004542129,"about_ca_system_score_gemma":0.00004765255,"about_ca_topic_candidate":false,"about_ca_topic_consensus":false,"about_ca_topic_score_codex":0.00005642381,"about_ca_topic_score_gemma":0.000002015687,"domain_scores_codex":[0.9951917,0.001279918,0.0005843206,0.001204674,0.001003011,0.0007363578],"domain_scores_gemma":[0.9959273,0.0002577924,0.0006217809,0.001876799,0.001106901,0.0002094748],"domain_codex":null,"domain_gemma":null,"domain_candidate":null,"domain_consensus":null,"study_design_codex":"not_applicable","study_design_gemma":"not_applicable","study_design_scores_codex":[0.0003778757,0.0002880657,0.00005192031,0.0007084711,0.0006600547,0.0001973795,0.008225305,0.1960433,0.0002775489,0.14008,0.5022388,0.1508513],"study_design_scores_gemma":[0.000917907,0.00006874655,0.0007280337,0.000332851,0.00004712183,0.00003525429,0.0004806059,0.0751333,0.0001779406,0.001839112,0.9196407,0.0005984623],"study_design_candidate":"not_applicable","study_design_consensus":"not_applicable","genre_codex":"methods","genre_gemma":"empirical","genre_scores_codex":[0.002153502,0.000161605,0.9467635,0.01301832,0.002358782,0.001274268,0.0004903509,0.002706935,0.0310728],"genre_scores_gemma":[0.9590726,0.0004213598,0.01711332,0.003615379,0.002370676,0.000001962833,0.006297592,0.003627947,0.00747918],"genre_candidate":"methods","genre_consensus":null,"teacher_disagreement_score":0.9569191,"threshold_uncertainty_score":0.999944,"prediction_status":"machine_predicted_unvalidated"},"machine_scores":{"provisional":true,"baseline":true,"maturity_gate_passed":false,"score_opus":0.04310674875477501,"score_gpt":0.2834536411488886,"score_spread":0.2403468923941136,"validation_status":"score_only:v0-immature-baseline","note":"Baseline scores from an immature model (maturity gate not passed). Scores rank; they never assert a category."}}