Recent Advances in Adversarial Machine Learning
Nicholas Carlini
Google Research
Recent Advances in Adversarial Machine Learning Nicholas Carlini - - PowerPoint PPT Presentation
Recent Advances in Adversarial Machine Learning Nicholas Carlini Google Research Recent Advances in Adversarial (Examples in) Machine Learning Nicholas Carlini Google Research The Year is 2014 Someone tells you they have a new algorithm to
Recent Advances in Adversarial Machine Learning
Nicholas Carlini
Google Research
Recent Advances in Adversarial (Examples in) Machine Learning
Nicholas Carlini
Google Research
Someone tells you they have a new algorithm to generate human faces
"the theoretical work is primitive, and the experiments are pretty basic." "more results of how this helps on real tasks
Someone tells you they have a new algorithm to generate human faces
Someone tells you they have discovered a flaw in the robustness of neural networks
Someone tells you they have discovered a flaw in the robustness of neural networks
Truck Dog
Random Direction Random Direction
Dog Truck Airplane
Random Direction Adversarial Direction Adversarial Direction Random Direction
( (
CAT
CAT
DOG
DOG
DOG
DOG
DOG
DOG
DOG
DOG
DOG
You are being evil
Randomized Mechanism
Original
L2 distortion: 4
Original
L2 distortion: 10
L2 = 75
Original
L2 distortion: 75
L2 distortion: 75
Dog Truck Airplane
Adversarial Direction Random Direction Adversarial Direction Random Direction
CAT DOG
Standard Training Dataset
Standard Testing Setup
Adversarial Testing Setup
CAT DOG
Standard Training Dataset
DOG CAT
Adversarial Training Dataset
Standard Testing Setup
Adversarial Testing Setup
CAT DOG
Standard Training Dataset
DOG CAT
Adversarial Training Dataset
DOG CAT
Confusing Training Dataset
Standard Testing Setup
DOG CAT
?!??!?!?? Training Dataset
Is a well-generalizing feature of CAT
Conclusion