Literatur vom gleichen Autor/der gleichen Autor*in
plus bei Google Scholar

Bibliografische Daten exportieren
 

Towards Creating Robust Adversarial Examples for DNNs by MILPs

Titelangaben

Rambau, Jörg ; Richter, Rónán R.C.:
Towards Creating Robust Adversarial Examples for DNNs by MILPs.
2024
Veranstaltung: International Conference on Operations Research - OR 2024 , 03.-06. September 2024 , München.
(Veranstaltungsbeitrag: Kongress/Konferenz/Symposium/Tagung , Vortrag )

Abstract

Deep Neutral Networks (DNNs) have been gaining more and more attention during the last few years. As a growing number of companies and customers begin to use DNN-based systems, governments have taken first actions into regulating AI-applications’ use. Thus, there also is an increasing interest for methods to analyze the trustworthiness of a DNN and its results along with the limits of its applications.

A long-established demonstration of the shortcomings of DNNs is an Adversarial Examples. Adversarial Examples are marginally alternated versions of regular input data, that lead a DNN into wrong answers. Fischetti and Jo (2018) have shown, that such Adversarial Examples can be systematically generated by using mathematical programming. The application of their method allows to find Adversarial Examples, that are provably optimal in respect to a given criterion, e.g. the distance to some given input. However, such examples are tailored to one specific DNN and its parameters and may therefore not work for slightly different DNNs. Working in the direction of addressing this point, we are giving a mixed-integer programming model for generating Adversarial Examples, that incorporate robustness to small changes in the weights and biases of a DNN. For reasons of solvability, we will initially illustrate the impact of robustification using relaxations of the model. Additionally, we will present experimental results on the influence of various factors, e.g. selection of training data or structure of the DNN, on the transferability of our Adversarial Examples.

Weitere Angaben

Publikationsform: Veranstaltungsbeitrag (Vortrag)
Begutachteter Beitrag: Nein
Zusätzliche Informationen: Speaker: Ronan Richter
Keywords: Artificial Intelligence; Mixed-Integer Programming; Robust Optimization
Institutionen der Universität: Fakultäten
Fakultäten > Fakultät für Mathematik, Physik und Informatik
Fakultäten > Fakultät für Mathematik, Physik und Informatik > Mathematisches Institut
Fakultäten > Fakultät für Mathematik, Physik und Informatik > Mathematisches Institut > Lehrstuhl Wirtschaftsmathematik
Fakultäten > Fakultät für Mathematik, Physik und Informatik > Mathematisches Institut > Lehrstuhl Wirtschaftsmathematik > Lehrstuhl Wirtschaftsmathematik - Univ.-Prof. Dr. Jörg Rambau
Forschungseinrichtungen
Forschungseinrichtungen > Zentrale wissenschaftliche Einrichtungen
Forschungseinrichtungen > Zentrale wissenschaftliche Einrichtungen > Bayreuther Zentrum für Modellierung und Simulation (MODUS)
Titel an der UBT entstanden: Ja
Themengebiete aus DDC: 500 Naturwissenschaften und Mathematik > 510 Mathematik
Eingestellt am: 23 Dec 2025 07:45
Letzte Änderung: 23 Dec 2025 07:45
URI: https://eref.uni-bayreuth.de/id/eprint/95515