Skip to main content

Showing 1–6 of 6 results for author: Drachsler-Cohen, D

Searching in archive cs. Search in all archives.
.
  1. arXiv:2405.10924  [pdf, other

    cs.LG cs.LO cs.PL

    Boosting Few-Pixel Robustness Verification via Covering Verification Designs

    Authors: Yuval Shapira, Naor Wiesel, Shahar Shabelman, Dana Drachsler-Cohen

    Abstract: Proving local robustness is crucial to increase the reliability of neural networks. While many verifiers prove robustness in $L_\infty$ $ε$-balls, very little work deals with robustness verification in $L_0$ $ε$-balls, capturing robustness to few pixel attacks. This verification introduces a combinatorial challenge, because the space of pixels to perturb is discrete and of exponential size. A prev… ▽ More

    Submitted 2 June, 2024; v1 submitted 17 May, 2024; originally announced May 2024.

  2. arXiv:2402.19322  [pdf, other

    cs.LG cs.CR cs.PL

    Verification of Neural Networks' Global Robustness

    Authors: Anan Kabaha, Dana Drachsler-Cohen

    Abstract: Neural networks are successful in various applications but are also susceptible to adversarial attacks. To show the safety of network classifiers, many verifiers have been introduced to reason about the local robustness of a given input to a given perturbation. While successful, local robustness cannot generalize to unseen inputs. Several works analyze global robustness properties, however, neithe… ▽ More

    Submitted 6 March, 2024; v1 submitted 29 February, 2024; originally announced February 2024.

  3. arXiv:2310.20299  [pdf, other

    cs.LG cs.CR cs.LO

    Verification of Neural Networks Local Differential Classification Privacy

    Authors: Roie Reshef, Anan Kabaha, Olga Seleznova, Dana Drachsler-Cohen

    Abstract: Neural networks are susceptible to privacy attacks. To date, no verifier can reason about the privacy of individuals participating in the training set. We propose a new privacy property, called local differential classification privacy (LDCP), extending local robustness to a differential privacy setting suitable for black-box classifiers. Given a neighborhood of inputs, a classifier is LDCP if it… ▽ More

    Submitted 31 October, 2023; originally announced October 2023.

  4. arXiv:2209.05446  [pdf, other

    cs.LG

    Boosting Robustness Verification of Semantic Feature Neighborhoods

    Authors: Anan Kabaha, Dana Drachsler-Cohen

    Abstract: Deep neural networks have been shown to be vulnerable to adversarial attacks that perturb inputs based on semantic features. Existing robustness analyzers can reason about semantic feature neighborhoods to increase the networks' reliability. However, despite the significant progress in these techniques, they still struggle to scale to deep networks and large neighborhoods. In this work, we introdu… ▽ More

    Submitted 12 September, 2022; originally announced September 2022.

  5. arXiv:1706.05070  [pdf, other

    cs.LG

    Learning Disjunctions of Predicates

    Authors: Nader H. Bshouty, Dana Drachsler-Cohen, Martin Vechev, Eran Yahav

    Abstract: Let $F$ be a set of boolean functions. We present an algorithm for learning $F_\vee := \{\vee_{f\in S} f \mid S \subseteq F\}$ from membership queries. Our algorithm asks at most $|F| \cdot OPT(F_\vee)$ membership queries where $OPT(F_\vee)$ is the minimum worst case number of membership queries for learning $F_\vee$. When $F$ is a set of halfspaces over a constant dimension space or a set of vari… ▽ More

    Submitted 15 June, 2017; originally announced June 2017.

  6. arXiv:1608.00089  [pdf, other

    cs.PL

    Optimal Learning of Specifications from Examples

    Authors: Dana Drachsler-Cohen, Martin Vechev, Eran Yahav

    Abstract: A fundamental challenge in synthesis from examples is designing a learning algorithm that poses the minimal number of questions to an end user while guaranteeing that the target hypothesis is discovered. Such guarantees are practically important because they ensure that end users will not be overburdened with unnecessary questions. We present SPEX -- a learning algorithm that addresses the above… ▽ More

    Submitted 30 July, 2016; originally announced August 2016.