{"id":"W4382463991","doi":"10.1609/aaai.v37i12.26771","title":"Conflicting Interactions among Protection Mechanisms for Machine Learning Models","year":2023,"lang":"en","type":"article","venue":"Proceedings of the AAAI Conference on Artificial Intelligence","topic":"Adversarial Robustness in Machine Learning","field":"Computer Science","cited_by":6,"is_retracted":false,"has_abstract":true,"ca_institutions":"University of Waterloo","funders":"","keywords":"Computer science; Pairwise comparison; Robustness (evolution); Popularity; Mechanism (biology); Evasion (ethics); Computer security; Machine learning; Private information retrieval; Risk analysis (engineering); Artificial intelligence; Business","routes":{"ca_aff":true,"ca_fund":false,"ca_venue":false,"about_ca":false,"invisible_to_affiliation_only":false},"retraction":null,"screen":null,"direct_labels":[],"prediction":{"model_version":"metacan-v3-hybrid-931329e0061c","candidate_categories":[],"consensus_categories":[],"category_scores_codex":[0.02835735,0.001347654,0.001559952,0.001352113,0.00139955,0.004119969,0.003650131,0.00304208,0.003420369],"category_scores_gemma":[0.1631022,0.001116915,0.001815419,0.0008851966,0.003454539,0.008521039,0.006804853,0.00574456,0.0005090432],"about_ca_system_candidate":false,"about_ca_system_consensus":false,"about_ca_system_score_codex":0.002858917,"about_ca_system_score_gemma":0.002390542,"about_ca_topic_candidate":false,"about_ca_topic_consensus":false,"about_ca_topic_score_codex":0.0008423662,"about_ca_topic_score_gemma":0.0007968928,"domain_scores_codex":[0.9662896,0.01899982,0.002078022,0.003933618,0.00637155,0.002327428],"domain_scores_gemma":[0.8088923,0.1275564,0.013649,0.04212454,0.005402667,0.002375167],"domain_codex":null,"domain_gemma":null,"domain_candidate":null,"domain_consensus":null,"study_design_codex":"simulation_or_modeling","study_design_gemma":"simulation_or_modeling","study_design_scores_codex":[0.001459419,0.0004196817,0.02372861,0.0004915147,0.000536516,0.0005593689,0.001017368,0.6318634,0.01681739,0.167676,0.002481857,0.1529489],"study_design_scores_gemma":[0.00006282622,0.0002774329,0.002172946,0.00009244011,0.0001200715,0.0003257481,0.0001705743,0.8653936,0.01134254,0.1182995,0.001689269,0.00005300083],"study_design_candidate":"simulation_or_modeling","study_design_consensus":"simulation_or_modeling","genre_codex":"methods","genre_gemma":"empirical","genre_scores_codex":[0.2150703,0.001035701,0.7752094,0.00253712,0.00008484917,0.0001960867,0.0001644579,0.001195314,0.004506697],"genre_scores_gemma":[0.9433733,0.000158786,0.05504332,0.0002519818,0.00003939982,0.0001059861,0.0001083208,0.000137817,0.00078112],"genre_candidate":"empirical","genre_consensus":null,"teacher_disagreement_score":0.02835735,"threshold_uncertainty_score":0.1499698,"prediction_status":"machine_predicted_unvalidated"},"machine_scores":{"provisional":true,"baseline":true,"maturity_gate_passed":false,"score_opus":0.1333083317816195,"score_gpt":0.3360014266141462,"score_spread":0.2026930948325267,"validation_status":"score_only:v0-immature-baseline","note":"Baseline scores from an immature model (maturity gate not passed). Scores rank; they never assert a category."}}