Train, but Verify: Towards Practical AI Robustness
Abstract
Outline: What is a sufficient condition for training a convolutional neural network (CNN) image classifier such that adversarial examples against that model are recognizable to humans? Comparison of defensive methods; Experimental results; Privacy.
Document Details
- Document Type
- Technical Report
- Publication Date
- Jan 01, 2020
- Accession Number
- AD1145657
Entities
People
- Grace Lewis
- Jon Helland
- Matt Churilla
- Nathan Vanhoudnos
- Oren Wright
Organizations
- Carnegie Mellon University