adversarialexamples pose a great threat to the application of neural network as a classifier in areas with high security ***,the adversarial property of neural network is closely related to the ***,works barely give ...
详细信息
adversarialexamples pose a great threat to the application of neural network as a classifier in areas with high security ***,the adversarial property of neural network is closely related to the ***,works barely give a rigorous description of *** paper for the first time studies the boundary of ReLU NN,which separates the sample space into distinct cells,each of which belongs to the same *** the demonstration,we discuss the algebraic property of border points upon the separating boundary and the topological difference between border points and odd *** derive Theorem Ⅲ.7 to give a rigorous,comprehensive and concise description on the boundary of ReLU ***,an algorithm,based on the description,is proposed to give a standard and exact metric for the local robustness of ReLU *** metric gives the local adversarial property of NN and reflects some aspects of its security performance,*** nimimum distortion needed to craft an adversarial *** the best of our knowledge,this is the first work proposed to give a rigorous and example-specific metric for the local robustness of ReLU NN.
暂无评论