paper-with-me

홈 › Papers

Over-parameterization and Adversarial Robustness in Neural Networks: An Overview and Empirical Analysis

2024-06-14 · Zhang Chen, Luca Demetrio, Srishti Gupta, Xiaoyi Feng, Zhaoqiang Xia, Antonio Emanuele Cinà, Maura Pintor, Luca Oneto, Ambra Demontis, Battista Biggio, Fabio Roli

Thanks to their extensive capacity, over-parameterized neural networks exhibit superior predictive capabilities and generalization. However, having a large parameter space is considered one of the main suspects of the neural networks' vulnerability to adversarial example -- input samples crafted ad-hoc to induce a desired misclassification. Relevant literature has claimed contradictory remarks in support of and against the robustness of over-parameterized networks. These contradictory findings might be due to the failure of the attack employed to evaluate the networks' robustness. Previous research has demonstrated that depending on the considered model, the algorithm employed to generate adversarial examples may not function properly, leading to overestimating the model's robustness. In this work, we empirically study the robustness of over-parameterized networks against adversarial examples. However, unlike the previous works, we also evaluate the considered attack's reliability to support the results' veracity. Our results show that over-parameterized networks are robust against adversarial attacks as opposed to their under-parameterized counterparts.

📄 PDF Abstract BibTeX arXiv:2406.10090

Code (0)

등록된 구현이 없습니다.

Tasks

Adversarial Robustness

Similar Papers 제목 키워드 기반

Robustness and Exploration of Variational and Machine Learning Approaches to Inverse Problems: An Overview

2024-02-19 · Alexander Auras, Kanchana Vaishnavi Gandikota, Hannah Droege, Michael Moeller

This paper provides an overview of current approaches for solving inverse problems in imaging using variational methods and machine learning. A special focus lies on point estimators and their robustness against adversar…

Preventing Gradient Attenuation in Lipschitz Constrained Convolutional Networks

2019-11-03 · NeurIPS 2019 12 · Qiyang Li, Saminul Haque, Cem Anil, James Lucas 외

Lipschitz constraints under L2 norm on deep neural networks are useful for provable adversarial robustness bounds, stable training, and Wasserstein distance estimation. While heuristic approaches such as the gradient pen…

Adversarial Robustness

Can overfitted deep neural networks in adversarial training generalize? -- An approximation viewpoint

2024-01-24 · Zhongjie Shi, Fanghui Liu, Yuan Cao, Johan A. K. Suykens

Adversarial training is a widely used method to improve the robustness of deep neural networks (DNNs) over adversarial perturbations. However, it is empirically observed that adversarial training on over-parameterized ne…

Using Machine Learning for Model Physics: an Overview

2020-02-02 · Vladimir Krasnopolsky, Aleksei A. Belochitski

In the overview, a generic mathematical object (mapping) is introduced, and its relation to model physics parameterization is explained. Machine learning (ML) tools that can be used to emulate and/or approximate mappings…

BIG-bench Machine LearningRelation

Beyond the Universal Law of Robustness: Sharper Laws for Random Features and Neural Tangent Kernels

2023-02-03 · Simone Bombari, Shayan Kiyani, Marco Mondelli

Machine learning models are vulnerable to adversarial perturbations, and a thought-provoking paper by Bubeck and Sellke has analyzed this phenomenon through the lens of over-parameterization: interpolating smoothly the d…