ransfer learning, in which a network is trained on one task and re-purposed on another, is often used to produce neural network classifiers when data is scarce or full-scale training is too costly. When the goal is to produce a model that is not only accurate but also adversarially robust, data scarcity and computational limitations become even more cumbersome. We consider robust transfer learning, in which we transfer not only performance but also robustness from a source model to a target domain. We start by observing that robust networks contain robust feature extractors. By training classifiers on top of these feature extractors, we produce new models that inherit the robustness of their parent networks. We then consider the case of "fi...
Traditional machine learning operates under the assumption that training and testing data are drawn ...
Deep Neural Networks (DNN) have been shown to be vulnerable to adversarial examples. Adversarial tra...
Adversarial training is an effective learning technique to improve the robustness of deep neural net...
In the last decade, deep neural networks have achieved tremendous success in many fields of machine ...
Adversarial training has been actively studied in recent computer vision research to improve the rob...
With the widespread use of machine learning, concerns over its security and reliability have become ...
Extended version of paper published in ACM AISec 2019; first two authors contributed equallyInternat...
Despite their impressive performance on large-scale benchmarks, machine learning sys- tems turn out ...
Adversarial robustness has become a central goal in deep learning, both in theory and in practice. H...
Adversarial robustness has become a central goal in deep learning, both in the theory and the practi...
Knowledge distillation is effective for producing small, high-performance neural networks for classi...
The performance decay experienced by deep neural networks (DNNs) when confronted with distributional...
Enhancing model robustness under new and even adversarial environments is a crucial milestone toward...
We propose a principled framework that combines adversarial training and provable robustness verific...
One of the main goal of Artificial Intelligence is to develop models capable of providing valuable p...
Traditional machine learning operates under the assumption that training and testing data are drawn ...
Deep Neural Networks (DNN) have been shown to be vulnerable to adversarial examples. Adversarial tra...
Adversarial training is an effective learning technique to improve the robustness of deep neural net...
In the last decade, deep neural networks have achieved tremendous success in many fields of machine ...
Adversarial training has been actively studied in recent computer vision research to improve the rob...
With the widespread use of machine learning, concerns over its security and reliability have become ...
Extended version of paper published in ACM AISec 2019; first two authors contributed equallyInternat...
Despite their impressive performance on large-scale benchmarks, machine learning sys- tems turn out ...
Adversarial robustness has become a central goal in deep learning, both in theory and in practice. H...
Adversarial robustness has become a central goal in deep learning, both in the theory and the practi...
Knowledge distillation is effective for producing small, high-performance neural networks for classi...
The performance decay experienced by deep neural networks (DNNs) when confronted with distributional...
Enhancing model robustness under new and even adversarial environments is a crucial milestone toward...
We propose a principled framework that combines adversarial training and provable robustness verific...
One of the main goal of Artificial Intelligence is to develop models capable of providing valuable p...
Traditional machine learning operates under the assumption that training and testing data are drawn ...
Deep Neural Networks (DNN) have been shown to be vulnerable to adversarial examples. Adversarial tra...
Adversarial training is an effective learning technique to improve the robustness of deep neural net...