Assessing the Adversarial Robustness of Monte Carlo and Distillation Methods for Deep Bayesian Neural Network Classification

02/07/2020
by   Meet P. Vadera, et al.
0

In this paper, we consider the problem of assessing the adversarial robustness of deep neural network models under both Markov chain Monte Carlo (MCMC) and Bayesian Dark Knowledge (BDK) inference approximations. We characterize the robustness of each method to two types of adversarial attacks: the fast gradient sign method (FGSM) and projected gradient descent (PGD). We show that full MCMC-based inference has excellent robustness, significantly outperforming standard point estimation-based learning. On the other hand, BDK provides marginal improvements. As an additional contribution, we present a storage-efficient approach to computing adversarial examples for large Monte Carlo ensembles using both the FGSM and PGD attacks.

READ FULL TEXT
research
08/01/2022

Computing Bayes: From Then 'Til Now'

This paper takes the reader on a journey through the history of Bayesian...
research
01/04/2023

Bayesian Weapon System Reliability Modeling with Cox-Weibull Neural Network

We propose to integrate weapon system features (such as weapon system ma...
research
02/08/2022

Impact of Parameter Sparsity on Stochastic Gradient MCMC Methods for Bayesian Deep Learning

Bayesian methods hold significant promise for improving the uncertainty ...
research
06/11/2021

Adversarial purification with Score-based generative models

While adversarial training is considered as a standard defense method ag...
research
03/18/2022

Defending Variational Autoencoders from Adversarial Attacks with MCMC

Variational autoencoders (VAEs) are deep generative models used in vario...
research
11/03/2014

Sampling for Inference in Probabilistic Models with Fast Bayesian Quadrature

We propose a novel sampling framework for inference in probabilistic mod...
research
09/25/2021

Contributions to Large Scale Bayesian Inference and Adversarial Machine Learning

The rampant adoption of ML methodologies has revealed that models are us...

Please sign up or login with your details

Forgot password? Click here to reset