{"id":"W2963564844","doi":"10.1145/3128572.3140444","title":"Adversarial Examples Are Not Easily Detected","year":2017,"lang":"en","type":"article","venue":"","topic":"Adversarial Robustness in Machine Learning","field":"Computer Science","cited_by":1415,"is_retracted":false,"has_abstract":true,"ca_institutions":"","funders":"Air Force Office of Scientific Research; Multidisciplinary University Research Initiative; Canadian Institute for Advanced Research; William and Flora Hewlett Foundation","keywords":"Adversarial system; Computer science; Artificial intelligence; Simple (philosophy); Deep neural networks; Space (punctuation); Artificial neural network; Machine learning; Theoretical computer science; Epistemology","routes":{"ca_aff":false,"ca_fund":true,"ca_venue":false,"about_ca":false,"invisible_to_affiliation_only":true},"retraction":null,"screen":null,"direct_labels":[],"prediction":{"model_version":"metacan-v3-hybrid-931329e0061c","candidate_categories":[],"consensus_categories":[],"category_scores_codex":[0.007169367,0.00135848,0.001544517,0.001040323,0.001089423,0.002805996,0.00226083,0.003700048,0.002479791],"category_scores_gemma":[0.05858501,0.0008152102,0.001167183,0.0006016237,0.004734504,0.00600921,0.004297606,0.005838945,0.001067271],"about_ca_system_candidate":false,"about_ca_system_consensus":false,"about_ca_system_score_codex":0.001033573,"about_ca_system_score_gemma":0.0007646628,"about_ca_topic_candidate":false,"about_ca_topic_consensus":false,"about_ca_topic_score_codex":0.0003389715,"about_ca_topic_score_gemma":0.0003532658,"domain_scores_codex":[0.9918064,0.002891167,0.0003990504,0.001473945,0.002848502,0.0005810459],"domain_scores_gemma":[0.93902,0.04324694,0.00467742,0.01027005,0.002100323,0.0006853228],"domain_codex":null,"domain_gemma":null,"domain_candidate":null,"domain_consensus":null,"study_design_codex":"simulation_or_modeling","study_design_gemma":"simulation_or_modeling","study_design_scores_codex":[0.0006970602,0.0002157993,0.009345509,0.0008474126,0.0005104699,0.0009130301,0.0004362754,0.4002705,0.02665229,0.3350818,0.01576431,0.2092655],"study_design_scores_gemma":[0.00005892958,0.0003443548,0.002167785,0.0002823569,0.0001024058,0.002091822,0.000180037,0.6602111,0.0269362,0.2949456,0.01259099,0.00008837481],"study_design_candidate":"simulation_or_modeling","study_design_consensus":"simulation_or_modeling","genre_codex":"methods","genre_gemma":"empirical","genre_scores_codex":[0.07236969,0.001568344,0.9037754,0.004134302,0.0004407458,0.0002057215,0.0002583293,0.001485245,0.01576223],"genre_scores_gemma":[0.8898156,0.00111501,0.1028002,0.001673969,0.000293234,0.0002123997,0.0003692415,0.0002659829,0.003454262],"genre_candidate":"empirical","genre_consensus":null,"teacher_disagreement_score":0.007169367,"threshold_uncertainty_score":0.03791571,"prediction_status":"machine_predicted_unvalidated"},"machine_scores":{"provisional":true,"baseline":true,"maturity_gate_passed":false,"score_opus":0.03649618725626082,"score_gpt":0.2836542017279437,"score_spread":0.2471580144716829,"validation_status":"score_only:v0-immature-baseline","note":"Baseline scores from an immature model (maturity gate not passed). Scores rank; they never assert a category."}}