We gratefully acknowledge support from
the Simons Foundation and member institutions.
Full-text links:

Download:

Current browse context:

cs.LG

Change to browse by:

References & Citations

DBLP - CS Bibliography

Bookmark

(what is this?)
CiteULike logo BibSonomy logo Mendeley logo del.icio.us logo Digg logo Reddit logo

Computer Science > Machine Learning

Title: On the Adversarial Robustness of Quantized Neural Networks

Abstract: Reducing the size of neural network models is a critical step in moving AI from a cloud-centric to an edge-centric (i.e. on-device) compute paradigm. This shift from cloud to edge is motivated by a number of factors including reduced latency, improved security, and higher flexibility of AI algorithms across several application domains (e.g. transportation, healthcare, defense, etc.). However, it is currently unclear how model compression techniques may affect the robustness of AI algorithms against adversarial attacks. This paper explores the effect of quantization, one of the most common compression techniques, on the adversarial robustness of neural networks. Specifically, we investigate and model the accuracy of quantized neural networks on adversarially-perturbed images. Results indicate that for simple gradient-based attacks, quantization can either improve or degrade adversarial robustness depending on the attack strength.
Subjects: Machine Learning (cs.LG); Cryptography and Security (cs.CR)
DOI: 10.1145/3453688.3461755
Cite as: arXiv:2105.00227 [cs.LG]
  (or arXiv:2105.00227v1 [cs.LG] for this version)

Submission history

From: Cory Merkel [view email]
[v1] Sat, 1 May 2021 11:46:35 GMT (1914kb,D)

Link back to: arXiv, form interface, contact.