DeformRS: Certifying input deformations with randomized smoothing

Deep neural networks are vulnerable to input deformations in the form of vector fields of pixel displacements and to other parameterized geometric deformations e.g. translations, rotations, etc. Current input deformation certification methods either 1. do not scale to deep networks on large input da...

Full description

Bibliographic Details
Main Authors: Alfarra, M, Bibi, A, Khan, N, Torr, P, Ghanem, B
Format: Conference item
Language:English
Published: Association for the Advancement of Artificial Intelligence 2022