conference-paper
Open access
Evaluating the Robustness of Defense Mechanisms based on AutoEncoder Reconstructions against Carlini-Wagner Adversarial Attacks
Research footprint
At a glance
- Citations
- 9
- References
- 47
- Comments
- 0
Paper overview
Abstract
Adversarial Examples represent a serious problem affecting the security of machine learning systems. In this paper we focus on a defense mechanism based on reconstructing images before classification using an autoencoder. We experiment on several types of autoencoders and evaluate the impact of strategies such as injecting noise in the input during training and in the latent space at inference time.We tested the models on adversarial examples generated with the Carlini-Wagner attack, in a white-box scenario and on the stacked system composed by the autoencoder and the classifier.
Record transparency
Publication details
- DOI
- 10.7557/18.5173
- OpenAlex
- W3007834030
- Document type
- conference-paper
- Language
- EN
- Source
- Proceedings of the Northern Lights Deep Learning Workshop
- Last metadata update
Comments
Log in to join the discussion.