{"id":"W2901440361","doi":"10.1109/cvpr.2019.00445","title":"Decoupling Direction and Norm for Efficient Gradient-Based L2 Adversarial Attacks and Defenses","year":2019,"lang":"en","type":"preprint","venue":"","topic":"Adversarial Robustness in Machine Learning","field":"Computer Science","cited_by":16,"is_retracted":false,"has_abstract":true,"ca_institutions":"Artificial Intelligence in Medicine (Canada); École de Technologie Supérieure","funders":"Natural Sciences and Engineering Research Council of Canada; Conselho Nacional de Desenvolvimento Científico e Tecnológico","keywords":"MNIST database; Adversarial system; Norm (philosophy); Computer science; Decoupling (probability); Artificial intelligence; Robustness (evolution); Perturbation (astronomy); Algorithm; Pattern recognition (psychology); Mathematical optimization; Machine learning; Deep learning; Mathematics; Engineering","routes":{"ca_aff":true,"ca_fund":true,"ca_venue":false,"about_ca":false,"invisible_to_affiliation_only":false},"retraction":null,"screen":null,"direct_labels":[],"prediction":{"model_version":"metacan-v3-hybrid-931329e0061c","candidate_categories":[],"consensus_categories":[],"category_scores_codex":[0.002326788,0.001902682,0.001260308,0.0009530063,0.0004779709,0.001072063,0.001158927,0.001654678,0.002597209],"category_scores_gemma":[0.008274626,0.0005657775,0.0008483604,0.0005622655,0.002094205,0.002297105,0.003755779,0.00363627,0.001332274],"about_ca_system_candidate":false,"about_ca_system_consensus":false,"about_ca_system_score_codex":0.0006682794,"about_ca_system_score_gemma":0.0008809277,"about_ca_topic_candidate":false,"about_ca_topic_consensus":false,"about_ca_topic_score_codex":0.0006145581,"about_ca_topic_score_gemma":0.0007533787,"domain_scores_codex":[0.998087,0.0007470928,0.00010256,0.0002704412,0.0006076373,0.0001852271],"domain_scores_gemma":[0.9975234,0.001341472,0.0002451903,0.0005423768,0.0002275033,0.000120109],"domain_codex":null,"domain_gemma":null,"domain_candidate":null,"domain_consensus":null,"study_design_codex":"simulation_or_modeling","study_design_gemma":"simulation_or_modeling","study_design_scores_codex":[0.0003663955,0.0001521622,0.0006551816,0.0001380053,0.00008982782,0.000171678,0.000120004,0.732227,0.02320919,0.09243124,0.005543672,0.1448957],"study_design_scores_gemma":[0.00001492329,0.0000680811,0.0000853851,0.00001160916,0.000006295539,0.00007567962,0.00001102575,0.9691692,0.003963202,0.02542277,0.001158523,0.00001333361],"study_design_candidate":"simulation_or_modeling","study_design_consensus":"simulation_or_modeling","genre_codex":"methods","genre_gemma":"empirical","genre_scores_codex":[0.01078756,0.0003038983,0.9852475,0.0002998573,0.00005470293,0.00005864314,0.00003970295,0.0006448255,0.002563365],"genre_scores_gemma":[0.6437012,0.0005992425,0.348167,0.0005605956,0.0001712365,0.0003308062,0.0002844528,0.000395804,0.005789571],"genre_candidate":"empirical","genre_consensus":null,"teacher_disagreement_score":0.002597209,"threshold_uncertainty_score":0.01230538,"prediction_status":"machine_predicted_unvalidated"},"machine_scores":{"provisional":true,"baseline":true,"maturity_gate_passed":false,"score_opus":0.0169786913421727,"score_gpt":0.274125652303942,"score_spread":0.2571469609617693,"validation_status":"score_only:v0-immature-baseline","note":"Baseline scores from an immature model (maturity gate not passed). Scores rank; they never assert a category."}}