织梦CMS - 轻松建站从此开始!

欧博ABG官网-欧博官方网址-会员登入

Evaluating皇冠 the Robustness of Neural Networks: An

时间:2025-08-21 01:16来源: 作者:admin 点击: 4 次
We propose the first attack-independent robustness metric, a.k.a CLEVER, that can be applied to any neural network classifier.

Abstract: The robustness of neural networks to adversarial examples has received great attention due to security implications. Despite various attack approaches to crafting visually imperceptible adversarial examples, little has been developed towards a comprehensive measure of robustness. In this paper, we provide theoretical justification for converting robustness analysis into a local Lipschitz constant estimation problem, and propose to use the Extreme Value Theory for efficient evaluation. Our analysis yields a novel robustness metric called CLEVER, which is short for Cross Lipschitz Extreme Value for nEtwork Robustness. The proposed CLEVER score is attack-agnostic and is computationally feasible for large neural networks. Experimental results on various networks, including ResNet, Inception-v3 and MobileNet, show that (i) CLEVER is aligned with the robustness indication measured by the $\ell_2$ and $\ell_\infty$ norms of adversarial examples from powerful attacks, and (ii) defended networks using defensive distillation or bounded ReLU indeed give better CLEVER scores. To the best of our knowledge, CLEVER is the first attack-independent robustness metric that can be applied to any neural network classifiers.

TL;DR: We propose the first attack-independent robustness metric, a.k.a CLEVER, that can be applied to any neural network classifier.

Keywords: robustness, adversarial machine learning, neural network, extreme value theory, adversarial example, adversarial perturbation

Code: [![github](/images/github_icon.svg) huanzhang12/CLEVER](https://github.com/huanzhang12/CLEVER)

Community Implementations: [![CatalyzeX](/images/catalyzex_icon.svg) 2 code implementations](https://www.catalyzex.com/paper/evaluating-the-robustness-of-neural-networks/code)

(责任编辑:)
------分隔线----------------------------
发表评论
请自觉遵守互联网相关的政策法规,严禁发布色情、暴力、反动的言论。
评价:
表情:
用户名: 验证码:
发布者资料
查看详细资料 发送留言 加为好友 用户等级: 注册时间:2025-08-23 15:08 最后登录:2025-08-23 15:08
栏目列表
推荐内容