Publications

You can also find my articles on my Google Scholar profile.

  • PANDAS: Improving Many-shot Jailbreaking via Positive Affirmation, Negative Demonstration, and Adaptive Sampling [ paper ]

    Avery Ma, Yangchen Pan, Amir-massoud Farahmand

    In International Conference on Machine Learning (spotlight), 2025

  • Improving Adversarial Transferability via Model Alignment [ paper ] [ code ]

    Avery Ma, Amir-massoud Farahmand, Yangchen Pan, Philip Torr, Jindong Gu

    In European Conference on Computer Vision, 2024

  • A Survey on Transferability of Adversarial Examples across Deep Neural Networks [ paper ]

    Jindong Gu, Xiaojun Jia, Pau de Jorge, Wenqain Yu, Xinwei Liu, Avery Ma, Yuan Xun, Anjun Hu, Ashkan Khakzar, Zhijiang Li, Xiaochun Cao, Philip Torr

    In Transactions on Machine Learning Research

  • Understanding the robustness difference between stochastic gradient descent and adaptive gradient methods [ blog ] [ paper ] [ code ]

    Avery Ma, Yangchen Pan, Amir-massoud Farahmand

    In Transactions on Machine Learning Research with Featured Certification (ICLR'24 Journal-to-Conference)

  • SAGE: Saliency-Guided Mixup with Optimal Rearrangements [ paper ] [ code ]

    Avery Ma, Nikita Dvornik, Ran Zhang, Leila Pishdad, Konstantinos G. Derpanis, Afsaneh Fazly

    In British Machine Vision Conference, 2022

  • Improving Hierarchical Adversarial Robustness of Deep Neural Networks [ paper ]

    Avery Ma, Aladin Virmaux, Kevin Scaman, Juwei Lu

    Preprint, 2021

  • SOAR: Second-Order Adversarial Regularization [ paper ]

    Avery Ma, Fartash Faghri, Nicolas Papernot, Amir-massoud Farahmand

    Preprint, 2020


Patents

  • SAGE: Saliency-Guided Mixup with Optimal Re-arrangements for Efficient Data Augmentation

    Avery Ma, Nikita Dvornik, Ran Zhang, Konstantinos Derpanis, Afsaneh Fazly

    Patent Pending: [ US20240144652A1 B1 ]

  • Real-time spatial-based resolution enhancement using shifted superposition

    Avery Ma, Ahmed Gawish, Mark Lamm, Alexander Wong, Paul Fieguth

    Patent No.: [ 10009587 B1 ]


Thesis

  • Computational Depth from Defocus via Active Quasi-random Pattern Projections [ pdf ]

    Avery Ma

    University of Waterloo MASc Thesis


Projects

  • RideOn - All Terrain Personal Transportation Device [ video ]

    Avery Ma, Jonathan Tham, Terry Yang, Chris Song, Terry Ho

    University of Waterloo 2016 Mechatronics Engineering Capstone Design Project