The following paper received the Best Paper Award at the ICCV Workshop on Adversarial Robustness In the Real World (AROW).
Hiroki Azuma and Yusuke Matsui, Defense-Prefix for Preventing Typographic Attacks on CLIP
https://iccv23-arow.github.io/
Hiroki Azuma and Yusuke Matsui, Defense-Prefix for Preventing Typographic Attacks on CLIP
https://iccv23-arow.github.io/