{"id":"W4206243656","doi":"10.1186/s13635-021-00125-2","title":"Secure machine learning against adversarial samples at test time","year":2022,"lang":"en","type":"article","venue":"EURASIP Journal on Information Security","topic":"Adversarial Robustness in Machine Learning","field":"Computer Science","cited_by":13,"is_retracted":false,"has_abstract":true,"ca_institutions":"","funders":"U.S. Air Force; Canadian Institute for Advanced Research; National Science Foundation","keywords":"Computer science; Adversarial system; Artificial intelligence; Machine learning; Deep neural networks; Test set; Robustness (evolution); Scalability; Classifier (UML); Gradient descent; Deep learning; Adversarial machine learning; Attack model; Artificial neural network; Computer security","routes":{"ca_aff":false,"ca_fund":true,"ca_venue":false,"about_ca":false,"invisible_to_affiliation_only":true},"retraction":null,"screen":null,"direct_labels":[],"prediction":{"model_version":"metacan-v3-hybrid-931329e0061c","candidate_categories":[],"consensus_categories":[],"category_scores_codex":[0.002265692,0.001065529,0.0007426176,0.0004509885,0.0005112655,0.000709576,0.001262723,0.0009451835,0.001706186],"category_scores_gemma":[0.01115985,0.000255781,0.0006184835,0.0002929466,0.00113077,0.001654959,0.00169419,0.001752755,0.0007688679],"about_ca_system_candidate":false,"about_ca_system_consensus":false,"about_ca_system_score_codex":0.001064798,"about_ca_system_score_gemma":0.0009075428,"about_ca_topic_candidate":false,"about_ca_topic_consensus":false,"about_ca_topic_score_codex":0.00133303,"about_ca_topic_score_gemma":0.000977335,"domain_scores_codex":[0.9976038,0.000673074,0.0001474832,0.0005260138,0.000749286,0.0003002713],"domain_scores_gemma":[0.9925796,0.003109927,0.0006038973,0.002629838,0.0008089999,0.0002677553],"domain_codex":null,"domain_gemma":null,"domain_candidate":null,"domain_consensus":null,"study_design_codex":"simulation_or_modeling","study_design_gemma":"simulation_or_modeling","study_design_scores_codex":[0.001564783,0.0002985119,0.007704398,0.00009977855,0.0001418763,0.0005995109,0.000141384,0.8171051,0.03390804,0.01335183,0.004938589,0.1201462],"study_design_scores_gemma":[0.00001092069,0.00008424779,0.0002791797,0.000006470078,0.000006473115,0.0000510711,0.00001069304,0.982852,0.01354899,0.00278843,0.0003551913,0.00000637003],"study_design_candidate":"simulation_or_modeling","study_design_consensus":"simulation_or_modeling","genre_codex":"methods","genre_gemma":"empirical","genre_scores_codex":[0.4855162,0.0006742545,0.4991253,0.001094962,0.0002570245,0.0001732081,0.0003314413,0.007755747,0.005071935],"genre_scores_gemma":[0.9744975,0.00004406097,0.02415979,0.0001384525,0.00001608428,0.0000649422,0.0001869595,0.00008532927,0.0008069518],"genre_candidate":"empirical","genre_consensus":null,"teacher_disagreement_score":0.002265692,"threshold_uncertainty_score":0.01198226,"prediction_status":"machine_predicted_unvalidated"},"machine_scores":{"provisional":true,"baseline":true,"maturity_gate_passed":false,"score_opus":0.008340035973071574,"score_gpt":0.2230166545099525,"score_spread":0.2146766185368809,"validation_status":"score_only:v0-immature-baseline","note":"Baseline scores from an immature model (maturity gate not passed). Scores rank; they never assert a category."}}