Matches in SemOpenAlex for { <https://semopenalex.org/work/W4295698813> ?p ?o ?g. }
Showing items 1 to 77 of
77
with 100 items per page.
- W4295698813 abstract "Adversarial examples, inputs designed to induce worst-case behavior in machine learning models, have been extensively studied over the past decade. Yet, our understanding of this phenomenon stems from a rather fragmented pool of knowledge; at present, there are a handful of attacks, each with disparate assumptions in threat models and incomparable definitions of optimality. In this paper, we propose a systematic approach to characterize worst-case (i.e., optimal) adversaries. We first introduce an extensible decomposition of attacks in adversarial machine learning by atomizing attack components into surfaces and travelers. With our decomposition, we enumerate over components to create 576 attacks (568 of which were previously unexplored). Next, we propose the Pareto Ensemble Attack (PEA): a theoretical attack that upper-bounds attack performance. With our new attacks, we measure performance relative to the PEA on: both robust and non-robust models, seven datasets, and three extended lp-based threat models incorporating compute costs, formalizing the Space of Adversarial Strategies. From our evaluation we find that attack performance to be highly contextual: the domain, model robustness, and threat model can have a profound influence on attack efficacy. Our investigation suggests that future studies measuring the security of machine learning should: (1) be contextualized to the domain & threat models, and (2) go beyond the handful of known attacks used today." @default.
- W4295698813 created "2022-09-14" @default.
- W4295698813 creator A5044742451 @default.
- W4295698813 creator A5055368149 @default.
- W4295698813 creator A5056794879 @default.
- W4295698813 creator A5088915686 @default.
- W4295698813 date "2022-09-09" @default.
- W4295698813 modified "2023-09-27" @default.
- W4295698813 title "The Space of Adversarial Strategies" @default.
- W4295698813 doi "https://doi.org/10.48550/arxiv.2209.04521" @default.
- W4295698813 hasPublicationYear "2022" @default.
- W4295698813 type Work @default.
- W4295698813 citedByCount "0" @default.
- W4295698813 crossrefType "posted-content" @default.
- W4295698813 hasAuthorship W4295698813A5044742451 @default.
- W4295698813 hasAuthorship W4295698813A5055368149 @default.
- W4295698813 hasAuthorship W4295698813A5056794879 @default.
- W4295698813 hasAuthorship W4295698813A5088915686 @default.
- W4295698813 hasBestOaLocation W42956988131 @default.
- W4295698813 hasConcept C104317684 @default.
- W4295698813 hasConcept C111919701 @default.
- W4295698813 hasConcept C119857082 @default.
- W4295698813 hasConcept C124101348 @default.
- W4295698813 hasConcept C126255220 @default.
- W4295698813 hasConcept C134306372 @default.
- W4295698813 hasConcept C137635306 @default.
- W4295698813 hasConcept C140547941 @default.
- W4295698813 hasConcept C154945302 @default.
- W4295698813 hasConcept C185592680 @default.
- W4295698813 hasConcept C2778403875 @default.
- W4295698813 hasConcept C2778572836 @default.
- W4295698813 hasConcept C2780009758 @default.
- W4295698813 hasConcept C2780264999 @default.
- W4295698813 hasConcept C33923547 @default.
- W4295698813 hasConcept C36503486 @default.
- W4295698813 hasConcept C37736160 @default.
- W4295698813 hasConcept C38652104 @default.
- W4295698813 hasConcept C41008148 @default.
- W4295698813 hasConcept C55493867 @default.
- W4295698813 hasConcept C63479239 @default.
- W4295698813 hasConceptScore W4295698813C104317684 @default.
- W4295698813 hasConceptScore W4295698813C111919701 @default.
- W4295698813 hasConceptScore W4295698813C119857082 @default.
- W4295698813 hasConceptScore W4295698813C124101348 @default.
- W4295698813 hasConceptScore W4295698813C126255220 @default.
- W4295698813 hasConceptScore W4295698813C134306372 @default.
- W4295698813 hasConceptScore W4295698813C137635306 @default.
- W4295698813 hasConceptScore W4295698813C140547941 @default.
- W4295698813 hasConceptScore W4295698813C154945302 @default.
- W4295698813 hasConceptScore W4295698813C185592680 @default.
- W4295698813 hasConceptScore W4295698813C2778403875 @default.
- W4295698813 hasConceptScore W4295698813C2778572836 @default.
- W4295698813 hasConceptScore W4295698813C2780009758 @default.
- W4295698813 hasConceptScore W4295698813C2780264999 @default.
- W4295698813 hasConceptScore W4295698813C33923547 @default.
- W4295698813 hasConceptScore W4295698813C36503486 @default.
- W4295698813 hasConceptScore W4295698813C37736160 @default.
- W4295698813 hasConceptScore W4295698813C38652104 @default.
- W4295698813 hasConceptScore W4295698813C41008148 @default.
- W4295698813 hasConceptScore W4295698813C55493867 @default.
- W4295698813 hasConceptScore W4295698813C63479239 @default.
- W4295698813 hasLocation W42956988131 @default.
- W4295698813 hasOpenAccess W4295698813 @default.
- W4295698813 hasPrimaryLocation W42956988131 @default.
- W4295698813 hasRelatedWork W3013617128 @default.
- W4295698813 hasRelatedWork W3046843850 @default.
- W4295698813 hasRelatedWork W3172173631 @default.
- W4295698813 hasRelatedWork W4225586443 @default.
- W4295698813 hasRelatedWork W4248052496 @default.
- W4295698813 hasRelatedWork W4251088474 @default.
- W4295698813 hasRelatedWork W4283771505 @default.
- W4295698813 hasRelatedWork W4379258830 @default.
- W4295698813 hasRelatedWork W4383468834 @default.
- W4295698813 hasRelatedWork W4385713380 @default.
- W4295698813 isParatext "false" @default.
- W4295698813 isRetracted "false" @default.
- W4295698813 workType "article" @default.