{"id":"W4408146758","doi":"10.1109/icmla61862.2024.00234","title":"Securing 3D Deep Learning Models: Simple and Effective Defense Against Adversarial Attacks","year":2024,"lang":"en","type":"article","venue":"","topic":"Adversarial Robustness in Machine Learning","field":"Computer Science","cited_by":1,"is_retracted":false,"has_abstract":true,"ca_institutions":"Wilfrid Laurier University; University of Waterloo","funders":"Natural Sciences and Engineering Research Council of Canada; University of Waterloo","keywords":"Adversarial system; Computer science; Simple (philosophy); Deep learning; Computer security; Artificial intelligence; Epistemology","routes":{"ca_aff":true,"ca_fund":true,"ca_venue":false,"about_ca":false,"invisible_to_affiliation_only":false},"retraction":null,"screen":null,"direct_labels":[],"prediction":{"model_version":"metacan-v3-hybrid-931329e0061c","candidate_categories":[],"consensus_categories":[],"category_scores_codex":[0.001770689,0.001141666,0.0007365615,0.0004118626,0.0005064653,0.001030377,0.001394984,0.001782467,0.001209177],"category_scores_gemma":[0.006870318,0.0005688445,0.0006866745,0.0002442661,0.00179356,0.002266524,0.004139852,0.002937844,0.000503994],"about_ca_system_candidate":false,"about_ca_system_consensus":false,"about_ca_system_score_codex":0.0008416665,"about_ca_system_score_gemma":0.0007979164,"about_ca_topic_candidate":false,"about_ca_topic_consensus":false,"about_ca_topic_score_codex":0.001577132,"about_ca_topic_score_gemma":0.001537043,"domain_scores_codex":[0.9986984,0.0003281777,0.00005598066,0.0001717963,0.0005471019,0.0001986671],"domain_scores_gemma":[0.9973648,0.001104411,0.0003278111,0.0008403006,0.0002502954,0.00011247],"domain_codex":null,"domain_gemma":null,"domain_candidate":null,"domain_consensus":null,"study_design_codex":"simulation_or_modeling","study_design_gemma":"bench_or_experimental","study_design_scores_codex":[0.0002130857,0.00006867543,0.002315676,0.00006996384,0.00007155806,0.0001965668,0.0001222024,0.866702,0.01647918,0.03018253,0.00302796,0.08055053],"study_design_scores_gemma":[0.000004566117,0.0000460324,0.0001664953,0.00001183315,0.000005663062,0.00006689919,0.0000127344,0.9856567,0.004144912,0.008958054,0.0009169202,0.000009148295],"study_design_candidate":"bench_or_experimental","study_design_consensus":null,"genre_codex":"methods","genre_gemma":"empirical","genre_scores_codex":[0.08117725,0.0009453158,0.9094501,0.001475055,0.0001681449,0.00007089418,0.00009664494,0.001465503,0.005151159],"genre_scores_gemma":[0.9376471,0.0005412282,0.05897247,0.00051059,0.00005035585,0.00007088228,0.0001154697,0.00008097736,0.00201081],"genre_candidate":"empirical","genre_consensus":null,"teacher_disagreement_score":0.001782467,"threshold_uncertainty_score":0.009364426,"prediction_status":"machine_predicted_unvalidated"},"machine_scores":{"provisional":true,"baseline":true,"maturity_gate_passed":false,"score_opus":0.0119266540343275,"score_gpt":0.2518388314573767,"score_spread":0.2399121774230492,"validation_status":"score_only:v0-immature-baseline","note":"Baseline scores from an immature model (maturity gate not passed). Scores rank; they never assert a category."}}