REVIEW 3 cited by
Lipschitz regularized Deep Neural Networks generalize and are adversarially robust
Not yet reviewed by Pith; the record is open.
This paper has not been read by Pith yet. Machine review is queued; the pith claim, tier, and objections will appear here once it completes.
SPECIMEN: schema-true, not a live event
T0 review · schema-true
One-sentence machine reading of the paper's core claim.
pith:XXXXXXXX · record.json · timestamp
read the original abstract
In this work we study input gradient regularization of deep neural networks, and demonstrate that such regularization leads to generalization proofs and improved adversarial robustness. The proof of generalization does not overcome the curse of dimensionality, but it is independent of the number of layers in the networks. The adversarial robustness regularization combines adversarial training, which we show to be equivalent to Total Variation regularization, with Lipschitz regularization. We demonstrate empirically that the regularized models are more robust, and that gradient norms of images can be used for attack detection.
Forward citations
Cited by 3 Pith papers
-
Consensus-based optimization for closed-box adversarial attacks and a connection to evolution strategies
Consensus-based optimization matches or beats natural evolution strategies as a closed-box adversarial attack method in easier attack scenarios, and consensus hopping is shown to be a gradient-descent-like limit of CBO.
-
A Tunable Despeckling Neural Network Stabilized via Diffusion Equation
Alternating a shallow denoising CNN with an implicit heat equation step produces a tunable SAR despeckling network with improved robustness to adversarial perturbations.
-
A New Formulation of Lipschitz Constrained With Functional Gradient Learning for GANs
Li-CFG adds an ε-centered gradient penalty to the CFG GAN method and claims this enlarges the discriminator gradient norm, shrinking the latent neighborhood size and thereby increasing image diversity.
Discussion (0). Continue with ORCID to comment.