{"id":"W3173829726","doi":"10.1109/tsc.2021.3090365","title":"Defending Adversarial Attacks via Semantic Feature Manipulation","year":2021,"lang":"en","type":"article","venue":"IEEE Transactions on Services Computing","topic":"Adversarial Robustness in Machine Learning","field":"Computer Science","cited_by":10,"is_retracted":false,"has_abstract":true,"ca_institutions":"University of British Columbia","funders":"","keywords":"Adversarial system; Computer science; Artificial intelligence; Autoencoder; Transferability; Pattern recognition (psychology); Machine learning; Intuition; Feature (linguistics); Deep learning","routes":{"ca_aff":true,"ca_fund":false,"ca_venue":false,"about_ca":false,"invisible_to_affiliation_only":false},"retraction":null,"screen":null,"direct_labels":[],"prediction":{"model_version":"metacan-v3-hybrid-931329e0061c","candidate_categories":[],"consensus_categories":[],"category_scores_codex":[0.001679946,0.001228285,0.000980898,0.0005997648,0.000450932,0.0009179749,0.001132306,0.001310832,0.00102831],"category_scores_gemma":[0.008141681,0.0003635225,0.0007896688,0.0003532605,0.001875283,0.002000849,0.002811708,0.002347305,0.000399873],"about_ca_system_candidate":false,"about_ca_system_consensus":false,"about_ca_system_score_codex":0.0005330629,"about_ca_system_score_gemma":0.0004916633,"about_ca_topic_candidate":false,"about_ca_topic_consensus":false,"about_ca_topic_score_codex":0.000297691,"about_ca_topic_score_gemma":0.000371002,"domain_scores_codex":[0.9982444,0.0005803439,0.00009271,0.0003370149,0.0005710677,0.000174489],"domain_scores_gemma":[0.9954289,0.002259452,0.0005241368,0.001417082,0.0002776919,0.00009270023],"domain_codex":null,"domain_gemma":null,"domain_candidate":null,"domain_consensus":null,"study_design_codex":"simulation_or_modeling","study_design_gemma":"simulation_or_modeling","study_design_scores_codex":[0.0003853388,0.000197538,0.004214474,0.0002356509,0.0002035885,0.0004231929,0.0002155371,0.6166204,0.06811118,0.08924492,0.004017389,0.2161308],"study_design_scores_gemma":[0.00001117121,0.0001155068,0.0004578972,0.00002034503,0.00001649493,0.0002546403,0.00002218486,0.9595535,0.01560624,0.02255643,0.001367004,0.00001849742],"study_design_candidate":"simulation_or_modeling","study_design_consensus":"simulation_or_modeling","genre_codex":"methods","genre_gemma":"empirical","genre_scores_codex":[0.06799296,0.0004440598,0.9263057,0.00049428,0.00006703268,0.00009523804,0.00009351888,0.001132036,0.003375194],"genre_scores_gemma":[0.9072346,0.000220959,0.09018546,0.0002858274,0.00005567689,0.0001013457,0.0001577224,0.00008451066,0.001673879],"genre_candidate":"empirical","genre_consensus":null,"teacher_disagreement_score":0.001679946,"threshold_uncertainty_score":0.00888449,"prediction_status":"machine_predicted_unvalidated"},"machine_scores":{"provisional":true,"baseline":true,"maturity_gate_passed":false,"score_opus":0.01397747120093319,"score_gpt":0.2614147768365508,"score_spread":0.2474373056356176,"validation_status":"score_only:v0-immature-baseline","note":"Baseline scores from an immature model (maturity gate not passed). Scores rank; they never assert a category."}}