Toronto Metropolitan University
Browse
2007.01507.pdf (243.74 kB)

Towards Robust Deep Learning With Ensemble Networks and Noisy Layers

Download (243.74 kB)
preprint
posted on 2023-09-13, 16:44 authored by Yuting Liang, Reza SamaviReza Samavi

In this paper we provide an approach for deep learning that protects against adversarial examples in image classification-type networks. The approach relies on two mechanisms:1) a mechanism that increases robustness at the expense of accuracy, and, 2) a mechanism that improves accuracy but does not always increase robustness. We show that an approach combining the two mechanisms can provide protection against adversarial examples while retaining accuracy. We formulate potential attacks on our approach with experimental results to demonstrate its effectiveness. We also provide a robustness guarantee for our approach along with an interpretation for the guarantee.

History

Language

English

Usage metrics

    Computer Engineering

    Licence

    Exports

    RefWorks
    BibTeX
    Ref. manager
    Endnote
    DataCite
    NLM
    DC