{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,4]],"date-time":"2026-05-04T03:31:32Z","timestamp":1777865492430,"version":"3.51.4"},"reference-count":72,"publisher":"IEEE","license":[{"start":{"date-parts":[[2025,10,19]],"date-time":"2025-10-19T00:00:00Z","timestamp":1760832000000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2025,10,19]],"date-time":"2025-10-19T00:00:00Z","timestamp":1760832000000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2025,10,19]]},"DOI":"10.1109\/iccv51701.2025.01858","type":"proceedings-article","created":{"date-parts":[[2026,4,29]],"date-time":"2026-04-29T19:45:49Z","timestamp":1777491949000},"page":"19978-19988","source":"Crossref","is-referenced-by-count":0,"title":["CNS-Bench: Benchmarking Image Classifier Robustness Under Continuous Nuisance Shifts"],"prefix":"10.1109","author":[{"given":"Olaf","family":"D\u00fcnkel","sequence":"first","affiliation":[{"name":"Max Planck Institute for Informatics, Saarland Informatics Campus"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Artur","family":"Jesslen","sequence":"additional","affiliation":[{"name":"University of Freiburg"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Jiahao","family":"Xie","sequence":"additional","affiliation":[{"name":"Max Planck Institute for Informatics, Saarland Informatics Campus"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Christian","family":"Theobalt","sequence":"additional","affiliation":[{"name":"Max Planck Institute for Informatics, Saarland Informatics Campus"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Christian","family":"Rupprecht","sequence":"additional","affiliation":[{"name":"University of Oxford"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Adam","family":"Kortylewski","sequence":"additional","affiliation":[{"name":"Max Planck Institute for Informatics, Saarland Informatics Campus"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1126\/science.adi6000"},{"key":"ref2","article-title":"ObjectNet: A large-scale bias-controlled dataset for pushing the limits of object recognition models","author":"Barbu","year":"2019","journal-title":"In NeurIPS"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52734.2025.01235"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.52202\/075280-1952"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV48922.2021.00951"},{"key":"ref6","article-title":"A simple framework for contrastive learning of visual representations","author":"Chen","year":"2020","journal-title":"In ICML"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV48922.2021.00950"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2009.5206848"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1109\/MSP.2012.2211477"},{"key":"ref10","article-title":"An image is worth 16 \u00d7 16 words: Transformers for image recognition at scale","author":"Dosovitskiy","year":"2020","journal-title":"In ICLR"},{"key":"ref11","article-title":"Robustness in deep learning for computer vision: Mind the gap?","author":"Drenkow","year":"2021","journal-title":"arXiv preprint"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1145\/3343031.3350535"},{"key":"ref13","volume-title":"VGG image annotator (VIA)","author":"Dutta","year":"2016"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1198\/jasa.2011.tm11181"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1007\/s11263-009-0275-4"},{"key":"ref16","article-title":"An image is worth one word: Personalizing text-to-image generation using textual inversion","author":"Gal","year":"2023","journal-title":"In ICLR"},{"key":"ref17","article-title":"Test-time training with masked autoencoders","author":"Gandelsman","year":"2022","journal-title":"In NeurIPS"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-031-73661-2_10"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1145\/3458723"},{"key":"ref20","article-title":"Imagenet-trained cnns are biased towards texture; increasing shape bias improves accuracy and robustness","author":"Geirhos","year":"2018","journal-title":"In ICLR"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.90"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR42600.2020.00975"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52688.2022.01553"},{"key":"ref24","article-title":"Benchmarking neural network robustness to common corruptions and perturbations","author":"Hendrycks","year":"2018","journal-title":"In ICLR"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV48922.2021.00823"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR46437.2021.01501"},{"key":"ref27","article-title":"Denoising diffusion probabilistic models","author":"Ho","year":"2020","journal-title":"In NeurIPS"},{"key":"ref28","article-title":"Lora: Low-rank adaptation of large language models","author":"Hu","year":"2022","journal-title":"In ICLR"},{"key":"ref29","article-title":"Imagenet-x: Understanding model mistakes with factor of variation annotations","author":"Youbi Idrissi","year":"2022","journal-title":"arXiv preprint"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52688.2022.01839"},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-031-73209-6_15"},{"key":"ref32","article-title":"Imagenet classification with deep convolutional neural networks","author":"Krizhevsky","year":"2012","journal-title":"In NeurIPS"},{"key":"ref33","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV51070.2023.00210"},{"key":"ref34","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52729.2023.01450"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52729.2023.01951"},{"key":"ref36","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-10602-1_48"},{"key":"ref37","article-title":"Instruct2attack: Language-guided semantic adversarial attacks","author":"Liu","year":"2023","journal-title":"arXiv preprint"},{"key":"ref38","article-title":"Vmamba: Visual state space model","author":"Liu","year":"2024","journal-title":"In NeurIPS"},{"key":"ref39","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52688.2022.01167"},{"key":"ref40","volume-title":"Easyrobust: A comprehensive and easy-to-use toolkit for robust computer vision","author":"Mao","year":"2022"},{"key":"ref41","article-title":"Sdedit: Guided image synthesis and editing with stochastic differential equations","volume-title":"In ICLR","author":"Meng","year":"2021"},{"key":"ref42","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV51070.2023.00467"},{"key":"ref43","article-title":"Accuracy on the line: on the strong correlation between out-of-distribution and indistribution generalization","author":"Miller","year":"2021","journal-title":"In ICML"},{"key":"ref44","doi-asserted-by":"publisher","DOI":"10.1109\/CVPRW59228.2023.00085"},{"key":"ref45","article-title":"Dinov2: Learning robust visual features without supervision","author":"Oquab","year":"2023","journal-title":"TMLR"},{"key":"ref46","doi-asserted-by":"publisher","DOI":"10.52202\/075280-1094"},{"key":"ref47","article-title":"Rdumb: A simple approach that questions our progress in continual test-time adaptation","author":"Press","year":"2023","journal-title":"In NeurIPS"},{"key":"ref48","article-title":"Learning transferable visual models from natural language supervision","author":"Radford","year":"2021","journal-title":"In ICML"},{"key":"ref49","author":"Recht","year":"2019","journal-title":"Do imagenet classifiers generalize to imagenet? In ICML"},{"key":"ref50","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52688.2022.01042"},{"key":"ref51","article-title":"Improving robustness against common corruptions by covariate shift adaptation","author":"Schneider","year":"2020","journal-title":"In NeurIPS"},{"key":"ref52","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v34i07.6876"},{"key":"ref53","article-title":"Deep unsupervised learning using nonequilibrium thermodynamics","author":"Sohl-Dickstein","year":"2015","journal-title":"JMLR"},{"key":"ref54","article-title":"Denoising diffusion implicit models","author":"Song","year":"2021","journal-title":"In ICLR"},{"key":"ref55","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52688.2022.02068"},{"key":"ref56","article-title":"Test-time training with selfsupervision for generalization under distribution shifts","author":"Sun","year":"2020","journal-title":"In ICLR"},{"key":"ref57","article-title":"Measuring robustness to natural distribution shifts in image classification","author":"Taori","year":"2020","journal-title":"In NeurIPS"},{"key":"ref58","article-title":"Training data-efficient image transformers & distillation through attention","author":"Touvron","year":"2021","journal-title":"In ICML"},{"key":"ref59","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-031-20053-3_30"},{"key":"ref60","article-title":"Dataset interfaces: Diagnosing model failures using controllable counterfactual generation","author":"Vendrow","year":"2023","journal-title":"arXiv preprint"},{"key":"ref61","volume-title":"Diffusers: State-of-the-art diffusion models","author":"Von Platen","year":"2022"},{"key":"ref62","article-title":"Learning robust global representations by penalizing local predictive power","author":"Wang","year":"2019","journal-title":"In NeurIPS"},{"key":"ref63","article-title":"A sober look at the robustness of clips to spurious features","author":"Wang","year":"2024","journal-title":"In NeurIPS"},{"key":"ref64","article-title":"Unsupervised object-level representation learning from scene images","author":"Xie","year":"2021","journal-title":"In NeurIPS"},{"key":"ref65","doi-asserted-by":"publisher","DOI":"10.1007\/s11263-022-01681-x"},{"key":"ref66","article-title":"Masked frequency modeling for self-supervised visual pre-training","author":"Xie","year":"2023","journal-title":"In ICLR"},{"key":"ref67","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52734.2025.01862"},{"key":"ref68","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR42600.2020.00672"},{"key":"ref69","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52733.2024.02055"},{"key":"ref70","article-title":"Ood-cv: A benchmark for robustness to out-ofdistribution shifts of individual nuisances in natural images","author":"Zhao","year":"2022","journal-title":"In ECCV"},{"key":"ref71","doi-asserted-by":"publisher","DOI":"10.1109\/TPAMI.2024.3462293"},{"key":"ref72","article-title":"Unipc: A unified predictor-corrector framework for fast sampling of diffusion models","author":"Zhao","year":"2023","journal-title":"In NeurIPS"}],"event":{"name":"2025 IEEE\/CVF International Conference on Computer Vision (ICCV)","location":"Honolulu, HI, USA","start":{"date-parts":[[2025,10,19]]},"end":{"date-parts":[[2025,10,25]]}},"container-title":["2025 IEEE\/CVF International Conference on Computer Vision (ICCV)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/11443115\/11443287\/11444451.pdf?arnumber=11444451","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,4,30]],"date-time":"2026-04-30T06:41:23Z","timestamp":1777531283000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/11444451\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,10,19]]},"references-count":72,"URL":"https:\/\/doi.org\/10.1109\/iccv51701.2025.01858","relation":{},"subject":[],"published":{"date-parts":[[2025,10,19]]}}}