Scalable Inference of Symbolic Adversarial Examples

07/23/2020
by   Dimitar I. Dimitrov, et al.
4

We present a novel method for generating symbolic adversarial examples: input regions guaranteed to only contain adversarial examples for the given neural network. These regions can generate real-world adversarial examples as they summarize trillions of adversarial examples. We theoretically show that computing optimal symbolic adversarial examples is computationally expensive. We present a method for approximating optimal examples in a scalable manner. Our method first selectively uses adversarial attacks to generate a candidate region and then prunes this region with hyperplanes that fit points obtained via specialized sampling. It iterates until arriving at a symbolic adversarial example for which it can prove, via state-of-the-art convex relaxation techniques, that the region only contains adversarial examples. Our experimental results demonstrate that our method is practically effective: it only needs a few thousand attacks to infer symbolic summaries guaranteed to contain ≈ 10^258 adversarial examples.

READ FULL TEXT

page 2

page 22

page 23

page 24

research
12/19/2019

Does Symbolic Knowledge Prevent Adversarial Fooling?

Arguments in favor of injecting symbolic knowledge into neural architect...
research
05/18/2017

Delving into adversarial attacks on deep policies

Adversarial examples have been shown to exist for a variety of deep lear...
research
07/30/2019

Not All Adversarial Examples Require a Complex Defense: Identifying Over-optimized Adversarial Examples with IQR-based Logit Thresholding

Detecting adversarial examples currently stands as one of the biggest ch...
research
09/12/2019

Inspecting adversarial examples using the Fisher information

Adversarial examples are slight perturbations that are designed to fool ...
research
06/01/2023

Constructing Semantics-Aware Adversarial Examples with Probabilistic Perspective

In this study, we introduce a novel, probabilistic viewpoint on adversar...
research
02/06/2020

Reliability Validation of Learning Enabled Vehicle Tracking

This paper studies the reliability of a real-world learning-enabled syst...

Please sign up or login with your details

Forgot password? Click here to reset