{"id":"W4280506080","doi":"10.1007/s10489-022-03495-3","title":"Advanced defensive distillation with ensemble voting and noisy logits","year":2022,"lang":"en","type":"article","venue":"Applied Intelligence","topic":"Adversarial Robustness in Machine Learning","field":"Computer Science","cited_by":10,"is_retracted":false,"has_abstract":false,"ca_institutions":"Toronto Metropolitan University; Vector Institute","funders":"","keywords":"Computer science; Adversarial system; Robustness (evolution); Voting; Artificial intelligence; Artificial neural network; Vulnerability (computing); Machine learning; Logit; Distillation; Data mining; Computer security","routes":{"ca_aff":true,"ca_fund":false,"ca_venue":false,"about_ca":false,"invisible_to_affiliation_only":false},"retraction":null,"screen":null,"direct_labels":[],"prediction":{"model_version":"metacan-v3-hybrid-931329e0061c","candidate_categories":[],"consensus_categories":[],"category_scores_codex":[0.002961073,0.00123703,0.001782806,0.0009606828,0.0009435788,0.001694882,0.002166798,0.001908152,0.00463273],"category_scores_gemma":[0.007723382,0.0007206718,0.001123168,0.00100685,0.001665566,0.003585828,0.004437629,0.003365593,0.000936401],"about_ca_system_candidate":false,"about_ca_system_consensus":false,"about_ca_system_score_codex":0.0007402502,"about_ca_system_score_gemma":0.001115602,"about_ca_topic_candidate":false,"about_ca_topic_consensus":false,"about_ca_topic_score_codex":0.001644886,"about_ca_topic_score_gemma":0.002578935,"domain_scores_codex":[0.9983261,0.0006953754,0.00007953475,0.0002799773,0.0003965819,0.0002224871],"domain_scores_gemma":[0.9977557,0.001207194,0.0001503143,0.0004312942,0.000351969,0.0001035175],"domain_codex":null,"domain_gemma":null,"domain_candidate":null,"domain_consensus":null,"study_design_codex":"simulation_or_modeling","study_design_gemma":"simulation_or_modeling","study_design_scores_codex":[0.0002895621,0.0001216173,0.0006806374,0.00008223277,0.0001235016,0.0000878517,0.00007678531,0.7914965,0.003184275,0.09544984,0.002783287,0.1056238],"study_design_scores_gemma":[0.000005581003,0.00001772775,0.00004367813,0.000005555848,0.000007209713,0.0000136602,0.000003705881,0.9800271,0.0007224722,0.01888448,0.0002619399,0.00000688358],"study_design_candidate":"simulation_or_modeling","study_design_consensus":"simulation_or_modeling","genre_codex":"methods","genre_gemma":"empirical","genre_scores_codex":[0.0211101,0.0003386324,0.9745874,0.0004156302,0.0001280367,0.00002985562,0.00007397473,0.0004957076,0.002820582],"genre_scores_gemma":[0.7792491,0.0002187526,0.2097048,0.0003076178,0.0001768211,0.0001128857,0.0002823646,0.0001928904,0.009754793],"genre_candidate":"empirical","genre_consensus":null,"teacher_disagreement_score":0.00463273,"threshold_uncertainty_score":0.01565981,"prediction_status":"machine_predicted_unvalidated"},"machine_scores":{"provisional":true,"baseline":true,"maturity_gate_passed":false,"score_opus":0.01004385080624384,"score_gpt":0.2261156491019867,"score_spread":0.2160717982957429,"validation_status":"score_only:v0-immature-baseline","note":"Baseline scores from an immature model (maturity gate not passed). Scores rank; they never assert a category."}}