REVIEW 2 cited by
Adversarial Phenomenon in the Eyes of Bayesian Deep Learning
Not yet reviewed by Pith; the record is open.
This paper has not been read by Pith yet. Machine review is queued; the pith claim, tier, and objections will appear here once it completes.
SPECIMEN: schema-true, not a live event
T0 review · schema-true
One-sentence machine reading of the paper's core claim.
pith:XXXXXXXX · record.json · timestamp
read the original abstract
Deep Learning models are vulnerable to adversarial examples, i.e.\ images obtained via deliberate imperceptible perturbations, such that the model misclassifies them with high confidence. However, class confidence by itself is an incomplete picture of uncertainty. We therefore use principled Bayesian methods to capture model uncertainty in prediction for observing adversarial misclassification. We provide an extensive study with different Bayesian neural networks attacked in both white-box and black-box setups. The behaviour of the networks for noise, attacks and clean test data is compared. We observe that Bayesian neural networks are uncertain in their predictions for adversarial perturbations, a behaviour similar to the one observed for random Gaussian perturbations. Thus, we conclude that Bayesian neural networks can be considered for detecting adversarial examples.
Forward citations
Cited by 2 Pith papers
-
OFAL: An Oracle-Free Active Learning Framework
OFAL improves an MNIST classifier from 93.0% to 95.7% test accuracy without oracle labels, by generating uncertain synthetic samples from confident seeds using a VAE and dropout uncertainty.
-
Uncertainty Quantification for Collaborative Object Detection Under Adversarial Attacks
TUQCP combines PGD-based adversarial training, a learning-based uncertainty head, and conformal prediction to improve the accuracy and uncertainty estimates of collaborative object detection models under white-box attacks.
Discussion (0). Continue with ORCID to comment.