Who is Responsible for Adversarial Defense?
arXiv:2106.14152
Abstract
We have seen a surge in research aims toward adversarial attacks and defenses in AI/ML systems. While it is crucial to formulate new attack methods and devise novel defense strategies for robustness, it is also imperative to recognize who is responsible for implementing, validating, and justifying the necessity of these defenses. In particular, which components of the system are vulnerable to what type of adversarial attacks, and the expertise needed to realize the severity of adversarial attacks. Also how to evaluate and address the adversarial challenges in order to recommend defense strategies for different applications. This paper opened a discussion on who should examine and implement the adversarial defenses and the reason behind such efforts.
Accepted for poster presentation in ICML 2021 workshop "Challenges in Deploying and monitoring Machine Learning Systems"
References in corpus (7)
- Explaining and Harnessing Adversarial Examples
- On Evaluating Adversarial Robustness
- Defensive Distillation is Not Robust to Adversarial Examples
- NO Need to Worry about Adversarial Examples in Object Detection in Autonomous Vehicles
- MagNet and "Efficient Defenses Against Adversarial Attacks" are Not Robust to Adversarial Examples
- A Boundary Tilting Persepective on the Phenomenon of Adversarial Examples
- Detecting and Correcting Adversarial Images Using Image Processing Operations