{"id":"W2963693747","doi":"10.1109/cvpr.2019.00445","title":"Decoupling direction and norm for efficient gradient-based L2 adversarial attacks and defenses","year":2019,"lang":"","type":"article","venue":"Espace ÉTS (ETS)","topic":"Adversarial Robustness in Machine Learning","field":"Computer Science","cited_by":252,"is_retracted":false,"has_abstract":true,"ca_institutions":"École de Technologie Supérieure","funders":"","keywords":"MNIST database; Adversarial system; Norm (philosophy); Computer science; Decoupling (probability); Robustness (evolution); Artificial intelligence; Perturbation (astronomy); Algorithm; Pattern recognition (psychology); Machine learning; Mathematical optimization; Deep learning; Mathematics; Engineering","routes":{"ca_aff":true,"ca_fund":false,"ca_venue":false,"about_ca":false,"invisible_to_affiliation_only":false},"retraction":null,"screen":null,"direct_labels":[],"prediction":{"model_version":"metacan-v3-hybrid-931329e0061c","candidate_categories":[],"consensus_categories":[],"category_scores_codex":[0.002323513,0.001845522,0.001212456,0.0009603419,0.0004670915,0.00103676,0.001145274,0.001581304,0.002572459],"category_scores_gemma":[0.007901757,0.0005478729,0.0008282248,0.000538032,0.001979738,0.002181844,0.00368525,0.003400518,0.001353801],"about_ca_system_candidate":false,"about_ca_system_consensus":false,"about_ca_system_score_codex":0.0006405483,"about_ca_system_score_gemma":0.0008994113,"about_ca_topic_candidate":false,"about_ca_topic_consensus":false,"about_ca_topic_score_codex":0.000626336,"about_ca_topic_score_gemma":0.0007486698,"domain_scores_codex":[0.9981201,0.0007376198,0.0000990175,0.0002688968,0.000594863,0.000179497],"domain_scores_gemma":[0.9976476,0.001298534,0.0002405203,0.0004796812,0.0002219074,0.0001117762],"domain_codex":null,"domain_gemma":null,"domain_candidate":null,"domain_consensus":null,"study_design_codex":"simulation_or_modeling","study_design_gemma":"simulation_or_modeling","study_design_scores_codex":[0.0003650836,0.0001510921,0.000639899,0.0001240579,0.00008522471,0.0001651962,0.0001088519,0.743817,0.02352087,0.07868282,0.005073653,0.1472662],"study_design_scores_gemma":[0.00001373037,0.00006910969,0.00008252312,0.00001086277,0.000005817386,0.00007177443,0.00001000623,0.9742835,0.003772488,0.02065257,0.001014772,0.00001294941],"study_design_candidate":"simulation_or_modeling","study_design_consensus":"simulation_or_modeling","genre_codex":"methods","genre_gemma":"empirical","genre_scores_codex":[0.01002459,0.0002719346,0.9863316,0.0002529004,0.00005008834,0.00005539058,0.00003571049,0.0006297137,0.002348118],"genre_scores_gemma":[0.6503485,0.0005172004,0.3420276,0.0005140351,0.0001603556,0.0003134762,0.0002736983,0.0003463093,0.005498778],"genre_candidate":"empirical","genre_consensus":null,"teacher_disagreement_score":0.002572459,"threshold_uncertainty_score":0.01228803,"prediction_status":"machine_predicted_unvalidated"},"machine_scores":{"provisional":true,"baseline":true,"maturity_gate_passed":false,"score_opus":0.01118041105150784,"score_gpt":0.2603883496451301,"score_spread":0.2492079385936223,"validation_status":"score_only:v0-immature-baseline","note":"Baseline scores from an immature model (maturity gate not passed). Scores rank; they never assert a category."}}