synthesizing robust adversarial examples
play

Synthesizing Robust Adversarial Examples Anish Athalye*, Logan - PowerPoint PPT Presentation

Synthesizing Robust Adversarial Examples Anish Athalye*, Logan Engstrom*, Andrew Ilyas*, Kevin Kwok Standard Adversarial Examples Given image x ; target class y Maximize with projected gradient descent: Standard Adversarial Examples Standard


  1. Synthesizing Robust Adversarial Examples Anish Athalye*, Logan Engstrom*, Andrew Ilyas*, Kevin Kwok

  2. Standard Adversarial Examples Given image x ; target class y Maximize with projected gradient descent:

  3. Standard Adversarial Examples

  4. Standard Adversarial Examples

  5. Standard Adversarial Examples Given image x ; target class y Maximize with projected gradient descent: What happens when we transform the images?

  6. Standard Examples are Fragile

  7. Robust Adversarial Examples Given image x ; target class y ; distribution of transformations T Maximize expectation over transformation : What happens when we transform the images?

  8. Robust Adversarial Examples

  9. Implementation Euclidean LAB distance: Lagrangian Relaxation: Law of Large Numbers:

  10. Results

  11. Scaling EOT to 3D Bundle everything into the transformation: - 3D rendering - 3D rotation - Perspective projection - Lighting - Noise

  12. Challenges - Implementing a differentiable renderer - Modeling 3D printer color inaccuracy - Approximating physical phenomena - Choosing parameters of distribution

  13. Demo

Recommend


More recommend