{"id":"W4283728566","doi":"10.1007/s11432-021-3457-7","title":"Certified defense against patch attacks via mask-guided randomized smoothing","year":2022,"lang":"en","type":"article","venue":"Science China Information Sciences","topic":"Adversarial Robustness in Machine Learning","field":"Computer Science","cited_by":4,"is_retracted":false,"has_abstract":false,"ca_institutions":"Simon Fraser University","funders":"","keywords":"Certification; Computer science; Certificate; Smoothing; Artificial intelligence; Gaussian; Computer security; Machine learning; Computer vision; Algorithm","routes":{"ca_aff":true,"ca_fund":false,"ca_venue":false,"about_ca":false,"invisible_to_affiliation_only":false},"retraction":null,"screen":null,"direct_labels":[],"prediction":{"model_version":"metacan-v3-hybrid-931329e0061c","candidate_categories":[],"consensus_categories":[],"category_scores_codex":[0.001469783,0.0009376286,0.001268588,0.0005841068,0.0005659218,0.001035915,0.001171197,0.002169512,0.003091965],"category_scores_gemma":[0.007914417,0.0004756488,0.000680758,0.0004103105,0.001573771,0.001703404,0.003240308,0.0022931,0.0009568845],"about_ca_system_candidate":false,"about_ca_system_consensus":false,"about_ca_system_score_codex":0.000593917,"about_ca_system_score_gemma":0.001070749,"about_ca_topic_candidate":false,"about_ca_topic_consensus":false,"about_ca_topic_score_codex":0.0004828177,"about_ca_topic_score_gemma":0.000447179,"domain_scores_codex":[0.9983138,0.0003549854,0.00005516977,0.0003862861,0.0005772038,0.0003126051],"domain_scores_gemma":[0.9951836,0.002176141,0.0004267838,0.001581044,0.0004081164,0.0002243866],"domain_codex":null,"domain_gemma":null,"domain_candidate":null,"domain_consensus":null,"study_design_codex":"simulation_or_modeling","study_design_gemma":"simulation_or_modeling","study_design_scores_codex":[0.001633227,0.0002327085,0.002802972,0.0002748632,0.0002354579,0.0005113217,0.0002402077,0.4833131,0.1169954,0.2272747,0.01436332,0.1521228],"study_design_scores_gemma":[0.00006223921,0.0001383799,0.0005208711,0.0000155259,0.00002543378,0.0001806094,0.00002290356,0.9362873,0.01091716,0.05020306,0.001599385,0.00002707982],"study_design_candidate":"simulation_or_modeling","study_design_consensus":"simulation_or_modeling","genre_codex":"methods","genre_gemma":"methods","genre_scores_codex":[0.104954,0.0003885312,0.8816087,0.001061168,0.0002465104,0.0001052328,0.000191854,0.002806307,0.008637589],"genre_scores_gemma":[0.9451753,0.0001193893,0.05071958,0.0002830585,0.0001038823,0.00006645345,0.0001361305,0.0001184044,0.003277795],"genre_candidate":"methods","genre_consensus":"methods","teacher_disagreement_score":0.003091965,"threshold_uncertainty_score":0.01034361,"prediction_status":"machine_predicted_unvalidated"},"machine_scores":{"provisional":true,"baseline":true,"maturity_gate_passed":false,"score_opus":0.01983673073073933,"score_gpt":0.2840578002274118,"score_spread":0.2642210694966725,"validation_status":"score_only:v0-immature-baseline","note":"Baseline scores from an immature model (maturity gate not passed). Scores rank; they never assert a category."}}