{"id":"W4226140795","doi":"10.1007/978-3-031-01333-1_18","title":"AGS: Attribution Guided Sharpening as a Defense Against Adversarial Attacks","year":2022,"lang":"en","type":"book-chapter","venue":"Lecture notes in computer science","topic":"Adversarial Robustness in Machine Learning","field":"Computer Science","cited_by":2,"is_retracted":false,"has_abstract":false,"ca_institutions":"University of Toronto; University of British Columbia, Okanagan Campus; University of British Columbia","funders":"","keywords":"MNIST database; Sharpening; Computer science; Adversarial system; Oracle; Deep neural networks; Artificial intelligence; Deep learning; Classifier (UML); Artificial neural network; Benchmark (surveying); Machine learning; Handwriting; Software engineering","routes":{"ca_aff":true,"ca_fund":false,"ca_venue":false,"about_ca":false,"invisible_to_affiliation_only":false},"retraction":null,"screen":null,"direct_labels":[],"prediction":{"model_version":"metacan-v3-hybrid-931329e0061c","candidate_categories":[],"consensus_categories":[],"category_scores_codex":[0.001384863,0.00119312,0.0009405491,0.0008688478,0.0005213785,0.001618331,0.001806947,0.002175667,0.008368495],"category_scores_gemma":[0.00448041,0.0004881018,0.0006914525,0.0006243022,0.0022784,0.002486791,0.004213535,0.004178008,0.002767639],"about_ca_system_candidate":false,"about_ca_system_consensus":false,"about_ca_system_score_codex":0.0005643083,"about_ca_system_score_gemma":0.0005761423,"about_ca_topic_candidate":false,"about_ca_topic_consensus":false,"about_ca_topic_score_codex":0.0003088379,"about_ca_topic_score_gemma":0.0002765484,"domain_scores_codex":[0.9988523,0.0002218979,0.00003889124,0.0002361607,0.0004684285,0.0001822856],"domain_scores_gemma":[0.9976425,0.0009772839,0.0002242515,0.0008143362,0.0002165691,0.0001249728],"domain_codex":null,"domain_gemma":null,"domain_candidate":null,"domain_consensus":null,"study_design_codex":"design_other","study_design_gemma":"simulation_or_modeling","study_design_scores_codex":[0.001056992,0.0002399739,0.0007133625,0.0002923481,0.0001147208,0.0003252629,0.000210346,0.2845096,0.06464784,0.2194473,0.02884451,0.3995979],"study_design_scores_gemma":[0.00005396003,0.0002769144,0.0003540063,0.00003723453,0.00003238965,0.0002586677,0.00004570723,0.7740101,0.02080473,0.1937176,0.01036504,0.00004382086],"study_design_candidate":"simulation_or_modeling","study_design_consensus":null,"genre_codex":"methods","genre_gemma":"methods","genre_scores_codex":[0.02125993,0.0008508414,0.9558185,0.0007055352,0.0004833734,0.0001044478,0.0001282142,0.005826463,0.01482281],"genre_scores_gemma":[0.7905244,0.0008347183,0.17484,0.001020335,0.0004808461,0.0001378271,0.0003328657,0.0009876366,0.03084138],"genre_candidate":"methods","genre_consensus":"methods","teacher_disagreement_score":0.008368495,"threshold_uncertainty_score":0.02799541,"prediction_status":"machine_predicted_unvalidated"},"machine_scores":{"provisional":true,"baseline":true,"maturity_gate_passed":false,"score_opus":0.02268317233576097,"score_gpt":0.2769208999543222,"score_spread":0.2542377276185613,"validation_status":"score_only:v0-immature-baseline","note":"Baseline scores from an immature model (maturity gate not passed). Scores rank; they never assert a category."}}