Matches in SemOpenAlex for { <https://semopenalex.org/work/W2945893265> ?p ?o ?g. }
Showing items 1 to 97 of
97
with 100 items per page.
- W2945893265 abstract "Adversarial examples pose a threat to deep neural network models in a variety of scenarios, from settings where the adversary has complete knowledge of the model and to the opposite setting. Black box attacks are particularly threatening as the adversary only needs access to the input and output of the model. Defending against black box adversarial example generation attacks is paramount as currently proposed defenses are not effective. Since these types of attacks rely on repeated queries to the model to estimate gradients over input dimensions, we investigate the use of randomization to thwart such adversaries from successfully creating adversarial examples. Randomization applied to the output of the deep neural network model has the potential to confuse potential attackers, however this introduces a tradeoff between accuracy and robustness. We show that for certain types of randomization, we can bound the probability of introducing errors by carefully setting distributional parameters. For the particular case of finite difference black box attacks, we quantify the error introduced by the defense in the finite difference estimate of the gradient. Lastly, we show empirically that the defense can thwart two adaptive black box adversarial attack algorithms." @default.
- W2945893265 created "2019-05-29" @default.
- W2945893265 creator A5007069562 @default.
- W2945893265 creator A5038560946 @default.
- W2945893265 creator A5073676361 @default.
- W2945893265 creator A5083382561 @default.
- W2945893265 date "2019-09-25" @default.
- W2945893265 modified "2023-09-27" @default.
- W2945893265 title "Thwarting finite difference adversarial attacks with output randomization" @default.
- W2945893265 cites W1522301498 @default.
- W2945893265 cites W1945616565 @default.
- W2945893265 cites W2108598243 @default.
- W2945893265 cites W2151965738 @default.
- W2945893265 cites W2408141691 @default.
- W2945893265 cites W2460937040 @default.
- W2945893265 cites W2543927648 @default.
- W2945893265 cites W2561498661 @default.
- W2945893265 cites W2603766943 @default.
- W2945893265 cites W2786118190 @default.
- W2945893265 cites W2787496614 @default.
- W2945893265 cites W2787708942 @default.
- W2945893265 cites W2787733970 @default.
- W2945893265 cites W2795725650 @default.
- W2945893265 cites W2798801120 @default.
- W2945893265 cites W2889210204 @default.
- W2945893265 cites W2911919851 @default.
- W2945893265 cites W2913848079 @default.
- W2945893265 cites W2950864148 @default.
- W2945893265 cites W2963744840 @default.
- W2945893265 cites W2963857521 @default.
- W2945893265 cites W2963920068 @default.
- W2945893265 cites W2964082701 @default.
- W2945893265 cites W2964153729 @default.
- W2945893265 cites W2964253222 @default.
- W2945893265 cites W2964301649 @default.
- W2945893265 hasPublicationYear "2019" @default.
- W2945893265 type Work @default.
- W2945893265 sameAs 2945893265 @default.
- W2945893265 citedByCount "0" @default.
- W2945893265 crossrefType "posted-content" @default.
- W2945893265 hasAuthorship W2945893265A5007069562 @default.
- W2945893265 hasAuthorship W2945893265A5038560946 @default.
- W2945893265 hasAuthorship W2945893265A5073676361 @default.
- W2945893265 hasAuthorship W2945893265A5083382561 @default.
- W2945893265 hasConcept C104317684 @default.
- W2945893265 hasConcept C119857082 @default.
- W2945893265 hasConcept C154945302 @default.
- W2945893265 hasConcept C185592680 @default.
- W2945893265 hasConcept C2984842247 @default.
- W2945893265 hasConcept C37736160 @default.
- W2945893265 hasConcept C38652104 @default.
- W2945893265 hasConcept C41008148 @default.
- W2945893265 hasConcept C41065033 @default.
- W2945893265 hasConcept C50644808 @default.
- W2945893265 hasConcept C55493867 @default.
- W2945893265 hasConcept C63479239 @default.
- W2945893265 hasConcept C94966114 @default.
- W2945893265 hasConceptScore W2945893265C104317684 @default.
- W2945893265 hasConceptScore W2945893265C119857082 @default.
- W2945893265 hasConceptScore W2945893265C154945302 @default.
- W2945893265 hasConceptScore W2945893265C185592680 @default.
- W2945893265 hasConceptScore W2945893265C2984842247 @default.
- W2945893265 hasConceptScore W2945893265C37736160 @default.
- W2945893265 hasConceptScore W2945893265C38652104 @default.
- W2945893265 hasConceptScore W2945893265C41008148 @default.
- W2945893265 hasConceptScore W2945893265C41065033 @default.
- W2945893265 hasConceptScore W2945893265C50644808 @default.
- W2945893265 hasConceptScore W2945893265C55493867 @default.
- W2945893265 hasConceptScore W2945893265C63479239 @default.
- W2945893265 hasConceptScore W2945893265C94966114 @default.
- W2945893265 hasLocation W29458932651 @default.
- W2945893265 hasOpenAccess W2945893265 @default.
- W2945893265 hasPrimaryLocation W29458932651 @default.
- W2945893265 hasRelatedWork W2765725061 @default.
- W2945893265 hasRelatedWork W2783555701 @default.
- W2945893265 hasRelatedWork W2894427974 @default.
- W2945893265 hasRelatedWork W2904331652 @default.
- W2945893265 hasRelatedWork W2949103145 @default.
- W2945893265 hasRelatedWork W2950906520 @default.
- W2945893265 hasRelatedWork W2950947818 @default.
- W2945893265 hasRelatedWork W2963894448 @default.
- W2945893265 hasRelatedWork W2978305311 @default.
- W2945893265 hasRelatedWork W3018207982 @default.
- W2945893265 hasRelatedWork W3018322762 @default.
- W2945893265 hasRelatedWork W3020995107 @default.
- W2945893265 hasRelatedWork W3080260826 @default.
- W2945893265 hasRelatedWork W3091857398 @default.
- W2945893265 hasRelatedWork W3105389675 @default.
- W2945893265 hasRelatedWork W3108822760 @default.
- W2945893265 hasRelatedWork W3109966548 @default.
- W2945893265 hasRelatedWork W3127671926 @default.
- W2945893265 hasRelatedWork W3133328097 @default.
- W2945893265 hasRelatedWork W3205743548 @default.
- W2945893265 isParatext "false" @default.
- W2945893265 isRetracted "false" @default.
- W2945893265 magId "2945893265" @default.
- W2945893265 workType "article" @default.