paper-with-me

Papers

Precise Statistical Analysis of Classification Accuracies for Adversarial Training

2020-10-21 · Adel Javanmard, Mahdi Soltanolkotabi

Despite the wide empirical success of modern machine learning algorithms and models in a multitude of applications, they are known to be highly susceptible to seemingly small indiscernible perturbations to the input data known as \emph{adversarial attacks}. A variety of recent adversarial training procedures have been proposed to remedy this issue. Despite the success of such procedures at increasing accuracy on adversarially perturbed inputs or \emph{robust accuracy}, these techniques often reduce accuracy on natural unperturbed inputs or \emph{standard accuracy}. Complicating matters further, the effect and trend of adversarial training procedures on standard and robust accuracy is rather counter intuitive and radically dependent on a variety of factors including the perceived form of the perturbation during training, size/quality of data, model overparameterization, etc. In this paper we focus on binary classification problems where the data is generated according to the mixture of two Gaussians with general anisotropic covariance matrices and derive a precise characterization of the standard and robust accuracy for a class of minimax adversarially trained models. We consider a general norm-based adversarial model, where the adversary can add perturbations of bounded $\ell_p$ norm to each input data, for an arbitrary $p\ge 1$. Our comprehensive analysis allows us to theoretically explain several intriguing empirical phenomena and provide a precise understanding of the role of different problem parameters on standard and robust accuracies.

📄 PDF Abstract BibTeX arXiv:2010.11213

Code (0)

등록된 구현이 없습니다.

Tasks

Binary ClassificationClassificationGeneral Classification

Similar Papers 제목 키워드 기반

Metamorphic Adversarial Detection Pipeline for Face Recognition Systems

2021-11-22 · AAAI Workshop AdvML 2022 2 · Rohan Reddy Mekala, Sai Yerramreddy, Adam Porter

Adversarial examples pose a serious threat to the robustness of machine learning models in general and deep learning models in particular. Computer vision tasks like image classification, facial recognition, object detec…

Adversarial AttackFace Recognitionimage-classificationImage Classification+5

Precise Tradeoffs in Adversarial Training for Linear Regression

2020-02-24 · Adel Javanmard, Mahdi Soltanolkotabi, Hamed Hassani

Despite breakthrough performance, modern learning models are known to be highly vulnerable to small adversarial perturbations in their inputs. While a wide variety of recent \emph{adversarial training} methods have been …

regression

Benford's law: what does it say on adversarial images?

2021-02-09 · João G. Zago, Fabio L. Baldissera, Eric A. Antonelo, Rodrigo T. Saad

Convolutional neural networks (CNNs) are fragile to small perturbations in the input images. These networks are thus prone to malicious attacks that perturb the inputs to force a misclassification. Such slightly manipula…

Evaluating the Adversarial Robustness of a Foveated Texture Transform Module in a CNN

2021-10-12 · NeurIPS Workshop SVRHM 2021 12 · Jonathan M Gant, Andrzej Banburski, Arturo Deza

Biologically inspired mechanisms such as foveation and multiple fixation points have previously been shown to help alleviate adversarial examples (Reddy et al., 2020). By mimicking the effects of visual crowding present …

Adversarial RobustnessFoveationScene ClassificationTexture Synthesis

Dual Stage Classification of Hand Gestures using Surface Electromyogram

2020-04-27 · Karush Suri, Rinki Gupta

Surface electromyography (sEMG) is becoming exceeding useful in applications involving analysis of human motion such as in human-machine interface, assistive technology, healthcare and prosthetic development. The propose…

ClassificationGeneral Classification