Lecture

Adversarial Machine Learning

Description

This lecture delves into the concept of Adversarial Machine Learning, exploring how neural networks can be easily tricked by small perturbations in input data, leading to incorrect predictions. The instructor explains the importance of robustness in classification tasks, highlighting the distinction between human and neural network behavior. The lecture covers the theoretical foundations of adversarial examples, the risk associated with different norms, and the trade-off between standard and robust accuracy. Practical methods like Projected Gradient Descent (PGD) attacks and adversarial training are discussed, showcasing how training models with adversarial examples can improve robustness. The instructor also demonstrates a simple classification problem to illustrate how robust features can enhance prediction accuracy despite adversarial perturbations.

About this result
This page is automatically generated and may contain information that is not correct, complete, up-to-date, or relevant to your search query. The same applies to every other page on this website. Please make sure to verify the information with EPFL's official sources.