We gratefully acknowledge support from
the Simons Foundation and member institutions.
Full-text links:

Download:

Current browse context:

stat

Change to browse by:

References & Citations

Bookmark

(what is this?)
CiteULike logo BibSonomy logo Mendeley logo del.icio.us logo Digg logo Reddit logo

Computer Science > Machine Learning

Title: Erratum Concerning the Obfuscated Gradients Attack on Stochastic Activation Pruning

Abstract: Stochastic Activation Pruning (SAP) (Dhillon et al., 2018) is a defense to adversarial examples that was attacked and found to be broken by the "Obfuscated Gradients" paper (Athalye et al., 2018). We discover a flaw in the re-implementation that artificially weakens SAP. When SAP is applied properly, the proposed attack is not effective. However, we show that a new use of the BPDA attack technique can still reduce the accuracy of SAP to 0.1%.
Subjects: Machine Learning (cs.LG); Machine Learning (stat.ML)
Cite as: arXiv:2010.00071 [cs.LG]
  (or arXiv:2010.00071v1 [cs.LG] for this version)

Submission history

From: Guneet Singh Dhillon [view email]
[v1] Wed, 30 Sep 2020 19:26:11 GMT (23kb)

Link back to: arXiv, form interface, contact.