Pith. sign in

REVIEW 1 cited by

A Sequential Framework Towards an Exact SDP Verification of Neural Networks

Not yet reviewed by Pith; the record is open.

This paper has not been read by Pith yet. Machine review is queued; the pith claim, tier, and objections will appear here once it completes.

SPECIMEN: schema-true, not a live event

T0 review · schema-true

One-sentence machine reading of the paper's core claim.

pith:XXXXXXXX · record.json · timestamp

arxiv 2010.08603 v2 pith:62DKIQY3 submitted 2020-10-16 cs.LG math.OC

classification cs.LGmath.OC
keywords networksneuralsequentialapproachbeencutsframeworknumber
verification ladder T0 review T1 audit T2 compute T3 formal
0 comments
read the original abstract

Although neural networks have been applied to several systems in recent years, they still cannot be used in safety-critical systems due to the lack of efficient techniques to certify their robustness. A number of techniques based on convex optimization have been proposed in the literature to study the robustness of neural networks, and the semidefinite programming (SDP) approach has emerged as a leading contender for the robust certification of neural networks. The major challenge to the SDP approach is that it is prone to a large relaxation gap. In this work, we address this issue by developing a sequential framework to shrink this gap to zero by adding non-convex cuts to the optimization problem via disjunctive programming. We analyze the performance of this sequential SDP method both theoretically and empirically, and show that it bridges the gap as the number of cuts increases.

Discussion (0). Continue with ORCID to comment.

Forward citations

Cited by 1 Pith paper

Reviewed papers in the Pith corpus that reference this work. Sorted by Pith novelty score. Full citation record

  1. SDP-CROWN: Efficient Bound Propagation for Neural Network Verification with Tightness of Semidefinite Programming

    cs.LG 2025-06 reject novelty 7.0 of 10

    SDP-CROWN's deep-network integration is unsound: the per-layer L2 ball is centered at the linear network's preactivation instead of the actual forward preactivation, allowing invalid robustness certificates.

Pith tools