Network Moments: Extensions and Sparse-Smooth Attacks
dc.contributor.author | Alfadly, Modar | |
dc.contributor.author | Bibi, Adel | |
dc.contributor.author | Botero, Emilio | |
dc.contributor.author | Al-Subaihi, Salman | |
dc.contributor.author | Ghanem, Bernard | |
dc.date.accessioned | 2020-06-28T13:54:16Z | |
dc.date.available | 2020-06-28T13:54:16Z | |
dc.date.issued | 2020-06-21 | |
dc.identifier.uri | http://hdl.handle.net/10754/663903 | |
dc.description.abstract | The impressive performance of deep neural networks (DNNs) has immensely strengthened the line of research that aims at theoretically analyzing their effectiveness. This has incited research on the reaction of DNNs to noisy input, namely developing adversarial input attacks and strategies that lead to robust DNNs to these attacks. To that end, in this paper, we derive exact analytic expressions for the first and second moments (mean and variance) of a small piecewise linear (PL) network (Affine, ReLU, Affine) subject to Gaussian input. In particular, we generalize the second-moment expression of Bibi et al. to arbitrary input Gaussian distributions, dropping the zero-mean assumption. We show that the new variance expression can be efficiently approximated leading to much tighter variance estimates as compared to the preliminary results of Bibi et al. Moreover, we experimentally show that these expressions are tight under simple linearizations of deeper PL-DNNs, where we investigate the effect of the linearization sensitivity on the accuracy of the moment estimates. Lastly, we show that the derived expressions can be used to construct sparse and smooth Gaussian adversarial attacks (targeted and non-targeted) that tend to lead to perceptually feasible input attacks. | |
dc.publisher | arXiv | |
dc.relation.url | https://arxiv.org/pdf/2006.11776 | |
dc.rights | Archived with thanks to arXiv | |
dc.title | Network Moments: Extensions and Sparse-Smooth Attacks | |
dc.type | Preprint | |
dc.contributor.department | Computer Science Program | |
dc.contributor.department | Computer, Electrical and Mathematical Sciences and Engineering (CEMSE) Division | |
dc.contributor.department | Electrical Engineering | |
dc.contributor.department | Electrical Engineering Program | |
dc.contributor.department | VCC Analytics Research Group | |
dc.eprint.version | Pre-print | |
dc.contributor.institution | Universite de Montr ´ eal, Quebec, Canada . | |
dc.identifier.arxivid | 2006.11776 | |
kaust.person | Alfadly, Modar | |
kaust.person | Bibi, Adel | |
kaust.person | Botero, Emilio | |
kaust.person | Al-Subaihi, Salman | |
kaust.person | Ghanem, Bernard | |
refterms.dateFOA | 2020-06-28T13:55:02Z |
Files in this item
This item appears in the following Collection(s)
-
Preprints
-
Computer Science Program
For more information visit: https://cemse.kaust.edu.sa/cs -
Electrical and Computer Engineering Program
For more information visit: https://cemse.kaust.edu.sa/ece -
Computer, Electrical and Mathematical Science and Engineering (CEMSE) Division
For more information visit: https://cemse.kaust.edu.sa/