Spartan Networks: Self-Feature-Squeezing Networks for Increased Robustness in Adversarial Settings

computer and communications security(2018)

引用 14|浏览24
暂无评分
摘要
Deep Learning Models are vulnerable to adversarial inputs, samples modified in order to maximize error of the system. We hereby introduce Spartan Networks, Deep Learning models that are inherently more resistant to adverarial examples, without doing any input preprocessing out of the network or adversarial training. These networks have an adversarial layer within the network designed to starve the network of information, using a new activation function to discard data. This layer trains the neural network to filter-out usually-irrelevant parts of its input. These models thus have a slightly lower precision, but report a higher robustness under attack than unprotected models.
更多
查看译文
关键词
Artificial Intelligence, Cybersecurity, Adversarial AI
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要