On the Role of Randomization in Adversarially Robust Classification
–Neural Information Processing Systems
Deep neural networks are known to be vulnerable to small adversarial perturbations in test data. To defend against adversarial attacks, probabilistic classifiers have been proposed as an alternative to deterministic ones. However, literature has conflicting findings on the effectiveness of probabilistic classifiers in comparison to deterministic ones.
Neural Information Processing Systems
Nov-20-2025, 01:38:20 GMT
- Country:
- Europe
- France (0.04)
- United Kingdom > England
- Cambridgeshire > Cambridge (0.04)
- North America
- Canada
- Alberta > Census Division No. 15
- Improvement District No. 9 > Banff (0.04)
- British Columbia > Vancouver (0.04)
- Alberta > Census Division No. 15
- Costa Rica > Heredia Province
- Heredia (0.04)
- United States > California
- San Diego County > San Diego (0.04)
- Canada
- Europe
- Industry:
- Leisure & Entertainment > Games (0.67)
- Technology: