Luca Volpato
Neural Networks for image classification - An approach to adversarial perturbation robustness.
Rel. Enrico Magli. Politecnico di Torino, Corso di laurea magistrale in Communications And Computer Networks Engineering (Ingegneria Telematica E Delle Comunicazioni), 2019
|
Preview |
PDF (Tesi_di_laurea)
- Tesi
Licenza: Creative Commons Attribution Non-commercial No Derivatives. Download (3MB) | Preview |
Abstract
This thesis is the study of an alternative method for standard classification problems for neural networks, developed with the purpose of obtaining increased robustness to adversarial perturbations. ??Through the use of an encoder, the system maps its input data to distributions with arbitrarily selected target mean values, inside of a latent space with a dimensionality equal to the number of classes. The hope is that, by enforcing a great a great enough distance among the classes distributions, adversarial attacks will succed less often. ??A prototype of the system was already developed for two classes, authorized and not-authorized, and this document explores the results and methods of a multi-class implementation.
?? ??Studies were executed on the MNIST and CIFAR datasets, but the outcomes obtained are solid enough for extension to other databases
Relatori
Anno Accademico
Tipo di pubblicazione
Numero di pagine
Corso di laurea
Classe di laurea
URI
![]() |
Modifica (riservato agli operatori) |
