3 papers
cs.CR2024
Are We There Yet? Timing and Floating-Point Attacks on Differential Privacy Systems
Jiankai Jin, Eleanor McMurtry, Benjamin I. P. Rubinstein +1
Differential privacy is a de facto privacy framework that has seen adoption in practice via a number of mature software platforms. Implementation of differentially private (DP) mec…
cs.CR2024
Getting a-Round Guarantees: Floating-Point Attacks on Certified Robustness
Jiankai Jin, Olga Ohrimenko, Benjamin I. P. Rubinstein
Adversarial examples pose a security risk as they can alter decisions of a machine learning classifier through slight input perturbations. Certified robustness has been proposed as…
cs.LG2024
Et Tu Certifications: Robustness Certificates Yield Better Adversarial Examples
Andrew C. Cullen, Shijie Liu, Paul Montague +2
In guaranteeing the absence of adversarial examples in an instance's neighbourhood, certification mechanisms play an important role in demonstrating neural net robustness. In this…