Lune

ICLR2023顶会

Fundamental limits on the robustness of image classifiers

Zheng Dai, David Gifford

出版方
2023年份

摘要

We prove that image classifiers are fundamentally sensitive to small perturbations in their inputs. Specifically, we show that given some image space of nn-by-nn images, all but a tiny fraction of images in any image class induced over that space can be moved outside that class by adding some perturbation whose pp-norm is O(n1/max⁡(p,1))O(n^{1/\max{(p,1)}}), as long as that image class takes up at most half of the image space. We then show that O(n1/max⁡(p,1))O(n^{1/\max{(p,1)}}) is asymptotically optimal. Finally, we show that an increase in the bit depth of the image space leads to a loss in robustness. We supplement our results with a discussion of their implications for vision systems.

问问这篇 Paper

问问你的智能体。

Lune 读过与它相关的顶会 Paper,每个回答都会注明依据哪几篇。

可以从这些问题问起

智能体调用

Lunesearch_papers

在 Lune 里问

免费开始,无需绑卡

相关 Paper

黄昏的海面,两侧是细线勾勒的悬崖