arXiv · 2105.14116
Visualizing Representations of Adversarially Perturbed Inputs
Abstract
It has been shown that deep learning models are vulnerable to adversarial attacks. We seek to further understand the consequence of such attacks on the intermediate activations of neural networks. We present an evaluation metric, POP-N, which scores the effectiveness of projecting data to N dimensions under the context of visualizing representations of adversarially perturbed inputs. We conduct experiments on CIFAR-10 to compare the POP-2 score of several dimensionality reduction algorithms across various adversarial attacks. Finally, we utilize the 2D data corresponding to high POP-2 scores to generate example visualizations.
Explore related subjects
Keep this discovery
Daniel Steinberg, Paul Munro. 2021-05-28. Visualizing Representations of Adversarially Perturbed Inputs. https://arxiv.org/abs/2105.14116
Cite the original work for its findings. Save a collection to share your selection of sources.