conference-paper Open access

Evaluating the Robustness of Defense Mechanisms based on AutoEncoder Reconstructions against Carlini-Wagner Adversarial Attacks

  • Proceedings of the Northern Lights Deep Learning Workshop
Research footprint

At a glance

Citations
9
References
47
Comments
0
Paper overview

Abstract

Adversarial Examples represent a serious problem affecting the security of machine learning systems. In this paper we focus on a defense mechanism based on reconstructing images before classification using an autoencoder. We experiment on several types of autoencoders and evaluate the impact of strategies such as injecting noise in the input during training and in the latent space at inference time.We tested the models on adversarial examples generated with the Carlini-Wagner attack, in a white-box scenario and on the stacked system composed by the autoencoder and the classifier.

Record transparency

Publication details

DOI
10.7557/18.5173
OpenAlex
W3007834030
Document type
conference-paper
Language
EN
Source
Proceedings of the Northern Lights Deep Learning Workshop
Last metadata update
Community

Comments

Log in to join the discussion.

  1. No comments yet. Start the discussion.