SlideShare a Scribd company logo
Robustness of classifiers: from
adversarial to random noise
hskksk @ 2017/2/3
1
•
• nota&on
• /
•
•
2
3
Fawzi, A., Moosavi-Dezfooli, S.-M., & Frossard, P. (2016).
Robustness of classifiers: from adversarial to random noise. In
NIPS (pp. 1624–1632).
4
• Deep learning state-of-the-art
• Adversarial ( )
•
• Adversarial
5
Adversarial (1)
•
•
• :
6
Adversarial (2)
•
•
worst-case
• worst-case
7
(1)
• [1, 10, 19]
• DL adversarial example [17]
• DL adversarial example
• [3, 5, 14, 18]
• robust network [6, 8, 20, 13, 15, 12]
8
(2)
• [18] empirical adversarial example
pixel
• [3] random adversarial
9
• semi-random
• semi-random random/worst-case
• worst-case semi-random
•
10
nota%on
11
nota%on
クラス分類器
データ点
推定されたラベル
次元 の の任意の部分空間
12
•
•
•
13
adversarial
•
•
• adversarial
→ adversarial
14
15
16
•
•
17
1:
•
18
• 1
•
•
•
19
(d )
•
•
• e.g.
(
)
20
(m=1 )
•
21
1
•
• m
22
23
•
• pairwise
•
•
•
24
( )
•
•
25
(1)
• bound
•
• i j
worst-case
26
(2)
• worst-case radius:
• :
•
•
27
2: ( )
•
•
28
•
•
• affine classifier
29
•
•
( )
•
30
2-1: (1)
• (5)
•
31
2-1: (2)
•
• global 2
• 2
( )
32
33
1: 2-1 (1)
•
•
• 1 1
34
1: 2-1 (2)
• [13]
• 1000
35
1 (1)
• 1 2-1
36
1 (2)
•
37
2: (5)
•
•
•
38
2 (1)
39
2 (2)
•
• (5)
•
(5)
•
40
3:
•
• NIPS,SPAIN,2016
•
•
•
41
3
•
Po$lower → Pineapple
42
• → adversarial
•
robust
• state-of-the-art semi-random
43

More Related Content

PDF
Generative adversarial nets
PDF
BUGSを使うメリット
 
PDF
Probabilistic Graphical Models 輪読会 #1
PDF
From mcmc to sgnht
PDF
PRML8章
PDF
Hyperoptとその周辺について
PDF
Kaggle bosch presentation material for Kaggle Tokyo Meetup #2
PDF
Kaggle boschコンペ振り返り
Generative adversarial nets
BUGSを使うメリット
 
Probabilistic Graphical Models 輪読会 #1
From mcmc to sgnht
PRML8章
Hyperoptとその周辺について
Kaggle bosch presentation material for Kaggle Tokyo Meetup #2
Kaggle boschコンペ振り返り

Recently uploaded (20)

PPTX
Qualitative Qantitative and Mixed Methods.pptx
PDF
Business Analytics and business intelligence.pdf
PDF
Lecture1 pattern recognition............
PPTX
Business Acumen Training GuidePresentation.pptx
PPT
Reliability_Chapter_ presentation 1221.5784
PDF
TRAFFIC-MANAGEMENT-AND-ACCIDENT-INVESTIGATION-WITH-DRIVING-PDF-FILE.pdf
PPTX
Introduction to Firewall Analytics - Interfirewall and Transfirewall.pptx
PDF
“Getting Started with Data Analytics Using R – Concepts, Tools & Case Studies”
PPTX
Introduction to Knowledge Engineering Part 1
PPT
ISS -ESG Data flows What is ESG and HowHow
PPTX
Database Infoormation System (DBIS).pptx
PPTX
climate analysis of Dhaka ,Banglades.pptx
PPT
Miokarditis (Inflamasi pada Otot Jantung)
PPTX
DISORDERS OF THE LIVER, GALLBLADDER AND PANCREASE (1).pptx
PPTX
mbdjdhjjodule 5-1 rhfhhfjtjjhafbrhfnfbbfnb
PPTX
ALIMENTARY AND BILIARY CONDITIONS 3-1.pptx
PPTX
Data_Analytics_and_PowerBI_Presentation.pptx
PPTX
MODULE 8 - DISASTER risk PREPAREDNESS.pptx
PPTX
oil_refinery_comprehensive_20250804084928 (1).pptx
PDF
22.Patil - Early prediction of Alzheimer’s disease using convolutional neural...
Qualitative Qantitative and Mixed Methods.pptx
Business Analytics and business intelligence.pdf
Lecture1 pattern recognition............
Business Acumen Training GuidePresentation.pptx
Reliability_Chapter_ presentation 1221.5784
TRAFFIC-MANAGEMENT-AND-ACCIDENT-INVESTIGATION-WITH-DRIVING-PDF-FILE.pdf
Introduction to Firewall Analytics - Interfirewall and Transfirewall.pptx
“Getting Started with Data Analytics Using R – Concepts, Tools & Case Studies”
Introduction to Knowledge Engineering Part 1
ISS -ESG Data flows What is ESG and HowHow
Database Infoormation System (DBIS).pptx
climate analysis of Dhaka ,Banglades.pptx
Miokarditis (Inflamasi pada Otot Jantung)
DISORDERS OF THE LIVER, GALLBLADDER AND PANCREASE (1).pptx
mbdjdhjjodule 5-1 rhfhhfjtjjhafbrhfnfbbfnb
ALIMENTARY AND BILIARY CONDITIONS 3-1.pptx
Data_Analytics_and_PowerBI_Presentation.pptx
MODULE 8 - DISASTER risk PREPAREDNESS.pptx
oil_refinery_comprehensive_20250804084928 (1).pptx
22.Patil - Early prediction of Alzheimer’s disease using convolutional neural...
Ad
Ad

Robustness of classifiers_from_adversarial_to_random_noise