{"id":"W3168455774","doi":"10.1007/978-3-030-62144-5_4","title":"Extraction of Complex DNN Models: Real Threat or Boogeyman?","year":2020,"lang":"en","type":"book-chapter","venue":"Communications in computer and information science","topic":"Adversarial Robustness in Machine Learning","field":"Computer Science","cited_by":28,"is_retracted":false,"has_abstract":false,"ca_institutions":"University of Waterloo","funders":"","keywords":"Computer science; Granularity; Adversary; Confidentiality; Artificial intelligence; Business model; Information extraction; Extraction (chemistry); Data mining; Machine learning; Computer security; Programming language","routes":{"ca_aff":true,"ca_fund":false,"ca_venue":false,"about_ca":false,"invisible_to_affiliation_only":false},"retraction":null,"screen":null,"direct_labels":[],"prediction":{"model_version":"metacan-v3-hybrid-931329e0061c","candidate_categories":[],"consensus_categories":[],"category_scores_codex":[0.002704742,0.001393494,0.001131594,0.0006988308,0.0004144949,0.002768644,0.001559211,0.001912174,0.006987157],"category_scores_gemma":[0.01270644,0.0009278352,0.0008936376,0.0008429632,0.001246171,0.006209794,0.002518565,0.004155585,0.004857254],"about_ca_system_candidate":false,"about_ca_system_consensus":false,"about_ca_system_score_codex":0.001057238,"about_ca_system_score_gemma":0.0006758007,"about_ca_topic_candidate":false,"about_ca_topic_consensus":false,"about_ca_topic_score_codex":0.001083831,"about_ca_topic_score_gemma":0.001756914,"domain_scores_codex":[0.999002,0.000260844,0.00006522376,0.0002648724,0.0003398464,0.00006707288],"domain_scores_gemma":[0.9963397,0.002020604,0.0002152013,0.0009613488,0.0003637729,0.00009936976],"domain_codex":null,"domain_gemma":null,"domain_candidate":null,"domain_consensus":null,"study_design_codex":"design_other","study_design_gemma":"simulation_or_modeling","study_design_scores_codex":[0.0002443104,0.00006744632,0.001493213,0.0003570533,0.0001749296,0.0003925926,0.0001856185,0.1219242,0.0110621,0.1302038,0.02930691,0.7045878],"study_design_scores_gemma":[0.00000937014,0.00003956423,0.0004213826,0.0001284399,0.00003152528,0.0003998803,0.00004561643,0.7716388,0.008687221,0.1954316,0.02313569,0.00003091717],"study_design_candidate":"simulation_or_modeling","study_design_consensus":null,"genre_codex":"methods","genre_gemma":"empirical","genre_scores_codex":[0.005208586,0.001220867,0.9852299,0.001615154,0.0002911591,0.00003439591,0.0002173267,0.0009218762,0.005260766],"genre_scores_gemma":[0.2639688,0.006154788,0.6888496,0.002486022,0.001063834,0.0001389882,0.002671289,0.001441226,0.03322547],"genre_candidate":"empirical","genre_consensus":null,"teacher_disagreement_score":0.006987157,"threshold_uncertainty_score":0.02337438,"prediction_status":"machine_predicted_unvalidated"},"machine_scores":{"provisional":true,"baseline":true,"maturity_gate_passed":false,"score_opus":0.1159252221904646,"score_gpt":0.3438986858909415,"score_spread":0.2279734637004769,"validation_status":"score_only:v0-immature-baseline","note":"Baseline scores from an immature model (maturity gate not passed). Scores rank; they never assert a category."}}