Reviews: Provably Robust Deep Learning via Adversarially Trained Smoothed Classifiers
–Neural Information Processing Systems
This work shows how to improve the previous state of the art for L2 robustness using smoothed classifiers (introduced by Cohen et al.) The empirical results are very strong in a very competitive area where many research groups are competing. The theoretical work, the presentation and the various technical details involved in using smoothness in PGD are all great contributions. This is an important paper in the space of adversarial ML.
Neural Information Processing Systems
Jan-23-2025, 00:58:37 GMT
- Technology: