We gratefully acknowledge support from
the Simons Foundation and member institutions.
Full-text links:

Download:

Current browse context:

cs.LG

Change to browse by:

References & Citations

DBLP - CS Bibliography

Bookmark

(what is this?)
CiteULike logo BibSonomy logo Mendeley logo del.icio.us logo Digg logo Reddit logo

Computer Science > Machine Learning

Title: Measuring the Contribution of Multiple Model Representations in Detecting Adversarial Instances

Abstract: Deep learning models have been used for a wide variety of tasks. They are prevalent in computer vision, natural language processing, speech recognition, and other areas. While these models have worked well under many scenarios, it has been shown that they are vulnerable to adversarial attacks. This has led to a proliferation of research into ways that such attacks could be identified and/or defended against. Our goal is to explore the contribution that can be attributed to using multiple underlying models for the purpose of adversarial instance detection. Our paper describes two approaches that incorporate representations from multiple models for detecting adversarial examples. We devise controlled experiments for measuring the detection impact of incrementally utilizing additional models. For many of the scenarios we consider, the results show that performance increases with the number of underlying models used for extracting representations.
Comments: Correction: replaced "model-wise" with "unit-wise" in the first sentence of Section 3.2
Subjects: Machine Learning (cs.LG); Cryptography and Security (cs.CR)
Cite as: arXiv:2111.07035 [cs.LG]
  (or arXiv:2111.07035v2 [cs.LG] for this version)

Submission history

From: Daniel Steinberg [view email]
[v1] Sat, 13 Nov 2021 04:24:57 GMT (286kb,D)
[v2] Sat, 12 Feb 2022 04:08:31 GMT (286kb,D)

Link back to: arXiv, form interface, contact.