Robustness Quantification for Classification with Gaussian Processes

05/28/2019
by   Arno Blaas, et al.
0

We consider Bayesian classification with Gaussian processes (GPs) and define robustness of a classifier in terms of the worst-case difference in the classification probabilities with respect to input perturbations. For a subset of the input space T⊆R^m such properties reduce to computing the infimum and supremum of the classification probabilities for all points in T. Unfortunately, computing the above values is very challenging, as the classification probabilities cannot be expressed analytically. Nevertheless, using the theory of Gaussian processes, we develop a framework that, for a given dataset D, a compact set of input points T⊆R^m and an error threshold ϵ>0, computes lower and upper bounds of the classification probabilities by over-approximating the exact range with an error bounded by ϵ. We provide experimental comparison of several approximate inference methods for classification on tasks associated to MNIST and SPAM datasets showing that our results enable quantification of uncertainty in adversarial classification settings.

READ FULL TEXT

page 7

page 8

research
04/07/2021

Adversarial Robustness Guarantees for Gaussian Processes

Gaussian processes (GPs) enable principled computation of model uncertai...
research
09/17/2018

Robustness Guarantees for Bayesian Inference with Gaussian Processes

Bayesian inference and Gaussian processes are widely used in application...
research
03/05/2019

Statistical Guarantees for the Robustness of Bayesian Neural Networks

We introduce a probabilistic robustness measure for Bayesian Neural Netw...
research
05/26/2018

Calibrating Deep Convolutional Gaussian Processes

The wide adoption of Convolutional Neural Networks (CNNs) in application...
research
03/02/2021

Kernel Interpolation for Scalable Online Gaussian Processes

Gaussian processes (GPs) provide a gold standard for performance in onli...
research
06/23/2023

Adversarial Robustness Certification for Bayesian Neural Networks

We study the problem of certifying the robustness of Bayesian neural net...
research
01/22/2019

Modelling Numerical Systems with Two Distinct Labelled Output Classes

We present a new method of modelling numerical systems where there are t...

Please sign up or login with your details

Forgot password? Click here to reset