Skip to main content

Showing 1–21 of 21 results for author: Fawzi, A

Searching in archive cs. Search in all archives.
.
  1. arXiv:2402.14396  [pdf, other

    quant-ph cs.LG

    Quantum Circuit Optimization with AlphaTensor

    Authors: Francisco J. R. Ruiz, Tuomas Laakkonen, Johannes Bausch, Matej Balog, Mohammadamin Barekatain, Francisco J. H. Heras, Alexander Novikov, Nathan Fitzpatrick, Bernardino Romera-Paredes, John van de Wetering, Alhussein Fawzi, Konstantinos Meichanetzidis, Pushmeet Kohli

    Abstract: A key challenge in realizing fault-tolerant quantum computers is circuit optimization. Focusing on the most expensive gates in fault-tolerant quantum computation (namely, the T gates), we address the problem of T-count optimization, i.e., minimizing the number of T gates that are needed to implement a given circuit. To achieve this, we develop AlphaTensor-Quantum, a method based on deep reinforcem… ▽ More

    Submitted 5 March, 2024; v1 submitted 22 February, 2024; originally announced February 2024.

    Comments: 25 pages main paper + 19 pages appendix

  2. arXiv:1907.02610  [pdf, other

    stat.ML cs.LG

    Adversarial Robustness through Local Linearization

    Authors: Chongli Qin, James Martens, Sven Gowal, Dilip Krishnan, Krishnamurthy Dvijotham, Alhussein Fawzi, Soham De, Robert Stanforth, Pushmeet Kohli

    Abstract: Adversarial training is an effective methodology for training deep neural networks that are robust against adversarial, norm-bounded perturbations. However, the computational cost of adversarial training grows prohibitively as the size of the model and number of input dimensions increase. Further, training against less expensive and therefore weaker adversaries produces models that are robust agai… ▽ More

    Submitted 10 October, 2019; v1 submitted 4 July, 2019; originally announced July 2019.

  3. arXiv:1906.01681  [pdf, other

    cs.LG cs.CC math.OC stat.ML

    Learning dynamic polynomial proofs

    Authors: Alhussein Fawzi, Mateusz Malinowski, Hamza Fawzi, Omar Fawzi

    Abstract: Polynomial inequalities lie at the heart of many mathematical disciplines. In this paper, we consider the fundamental computational task of automatically searching for proofs of polynomial inequalities. We adopt the framework of semi-algebraic proof systems that manipulate polynomial inequalities via elementary inference rules that infer new inequalities from the premises. These proof systems are… ▽ More

    Submitted 4 June, 2019; originally announced June 2019.

  4. arXiv:1905.13725  [pdf, other

    cs.LG cs.CV stat.ML

    Are Labels Required for Improving Adversarial Robustness?

    Authors: Jonathan Uesato, Jean-Baptiste Alayrac, Po-Sen Huang, Robert Stanforth, Alhussein Fawzi, Pushmeet Kohli

    Abstract: Recent work has uncovered the interesting (and somewhat surprising) finding that training models to be invariant to adversarial perturbations requires substantially larger datasets than those required for standard classification. This result is a key hurdle in the deployment of robust machine learning models in many real world applications where labeled data is expensive. Our main insight is that… ▽ More

    Submitted 5 December, 2019; v1 submitted 31 May, 2019; originally announced May 2019.

    Comments: Appears in the Thirty-Third Annual Conference on Neural Information Processing Systems (NeurIPS 2019)

  5. arXiv:1812.02795  [pdf, other

    cs.LG stat.ML

    Verification of deep probabilistic models

    Authors: Krishnamurthy Dvijotham, Marta Garnelo, Alhussein Fawzi, Pushmeet Kohli

    Abstract: Probabilistic models are a critical part of the modern deep learning toolbox - ranging from generative models (VAEs, GANs), sequence to sequence models used in machine translation and speech processing to models over functional spaces (conditional neural processes, neural processes). Given the size and complexity of these models, safely deploying them in applications requires the development of to… ▽ More

    Submitted 6 December, 2018; originally announced December 2018.

    Comments: Accepted to NeurIPS 2018 Workshop on Security in Machine Learning

  6. arXiv:1811.09716  [pdf, other

    cs.LG cs.CV stat.ML

    Robustness via curvature regularization, and vice versa

    Authors: Seyed-Mohsen Moosavi-Dezfooli, Alhussein Fawzi, Jonathan Uesato, Pascal Frossard

    Abstract: State-of-the-art classifiers have been shown to be largely vulnerable to adversarial perturbations. One of the most effective strategies to improve robustness is adversarial training. In this paper, we investigate the effect of adversarial training on the geometry of the classification landscape and decision boundaries. We show in particular that adversarial training leads to a significant decreas… ▽ More

    Submitted 23 November, 2018; originally announced November 2018.

  7. arXiv:1805.00980  [pdf, other

    cs.CV cs.LG stat.ML

    SaaS: Speed as a Supervisor for Semi-supervised Learning

    Authors: Safa Cicek, Alhussein Fawzi, Stefano Soatto

    Abstract: We introduce the SaaS Algorithm for semi-supervised learning, which uses learning speed during stochastic gradient descent in a deep neural network to measure the quality of an iterative estimate of the posterior probability of unknown labels. Training speed in supervised learning correlates strongly with the percentage of correct labels, so we use it as an inference criterion for the unknown labe… ▽ More

    Submitted 2 May, 2018; originally announced May 2018.

  8. arXiv:1802.08686  [pdf, other

    cs.LG cs.CR cs.CV stat.ML

    Adversarial vulnerability for any classifier

    Authors: Alhussein Fawzi, Hamza Fawzi, Omar Fawzi

    Abstract: Despite achieving impressive performance, state-of-the-art classifiers remain highly vulnerable to small, imperceptible, adversarial perturbations. This vulnerability has proven empirically to be very intricate to address. In this paper, we study the phenomenon of adversarial perturbations under the assumption that the data is generated with a smooth generative model. We derive fundamental upper b… ▽ More

    Submitted 30 November, 2018; v1 submitted 23 February, 2018; originally announced February 2018.

    Comments: NeurIPS 2018

  9. arXiv:1802.07971  [pdf, other

    cs.LG cs.CV stat.ML

    Robustness of classifiers to uniform $\ell\_p$ and Gaussian noise

    Authors: Jean-Yves Franceschi, Alhussein Fawzi, Omar Fawzi

    Abstract: We study the robustness of classifiers to various kinds of random noise models. In particular, we consider noise drawn uniformly from the $\ell\_p$ ball for $p \in [1, \infty]$ and Gaussian noise with an arbitrary covariance matrix. We characterize this robustness to random noise in terms of the distance to the decision boundary of the classifier. This analysis applies to linear classifiers as wel… ▽ More

    Submitted 22 February, 2018; originally announced February 2018.

    Journal ref: 21st International Conference on Artificial Intelligence and Statistics (AISTATS) 2018, Apr 2018, Playa Blanca, Spain. 2018, http://www.aistats.org/

  10. arXiv:1705.09554  [pdf, other

    cs.CV cs.AI cs.LG stat.ML

    Robustness of classifiers to universal perturbations: a geometric perspective

    Authors: Seyed-Mohsen Moosavi-Dezfooli, Alhussein Fawzi, Omar Fawzi, Pascal Frossard, Stefano Soatto

    Abstract: Deep networks have recently been shown to be vulnerable to universal perturbations: there exist very small image-agnostic perturbations that cause most natural images to be misclassified by such classifiers. In this paper, we propose the first quantitative analysis of the robustness of classifiers to universal perturbations, and draw a formal link between the robustness to universal perturbations,… ▽ More

    Submitted 1 March, 2021; v1 submitted 26 May, 2017; originally announced May 2017.

    Comments: Published at ICLR 2018

  11. arXiv:1705.09552  [pdf, other

    cs.CV cs.AI cs.LG stat.ML

    Classification regions of deep neural networks

    Authors: Alhussein Fawzi, Seyed-Mohsen Moosavi-Dezfooli, Pascal Frossard, Stefano Soatto

    Abstract: The goal of this paper is to analyze the geometric properties of deep neural network classifiers in the input space. We specifically study the topology of classification regions created by deep networks, as well as their associated decision boundary. Through a systematic empirical investigation, we show that state-of-the-art deep nets learn connected classification regions, and that the decision b… ▽ More

    Submitted 26 May, 2017; originally announced May 2017.

  12. arXiv:1610.08401  [pdf, other

    cs.CV cs.AI cs.LG stat.ML

    Universal adversarial perturbations

    Authors: Seyed-Mohsen Moosavi-Dezfooli, Alhussein Fawzi, Omar Fawzi, Pascal Frossard

    Abstract: Given a state-of-the-art deep neural network classifier, we show the existence of a universal (image-agnostic) and very small perturbation vector that causes natural images to be misclassified with high probability. We propose a systematic algorithm for computing universal perturbations, and show that state-of-the-art deep neural networks are highly vulnerable to such perturbations, albeit being q… ▽ More

    Submitted 9 March, 2017; v1 submitted 26 October, 2016; originally announced October 2016.

    Comments: Accepted at IEEE Conference on Computer Vision and Pattern Recognition (CVPR), 2017

  13. arXiv:1608.08967  [pdf, other

    cs.LG cs.CV stat.ML

    Robustness of classifiers: from adversarial to random noise

    Authors: Alhussein Fawzi, Seyed-Mohsen Moosavi-Dezfooli, Pascal Frossard

    Abstract: Several recent works have shown that state-of-the-art classifiers are vulnerable to worst-case (i.e., adversarial) perturbations of the datapoints. On the other hand, it has been empirically observed that these same classifiers are relatively robust to random noise. In this paper, we propose to study a \textit{semi-random} noise regime that generalizes both the random and worst-case noise regimes.… ▽ More

    Submitted 31 August, 2016; originally announced August 2016.

    Comments: Accepted to NIPS 2016

  14. arXiv:1511.04599  [pdf, other

    cs.LG cs.CV

    DeepFool: a simple and accurate method to fool deep neural networks

    Authors: Seyed-Mohsen Moosavi-Dezfooli, Alhussein Fawzi, Pascal Frossard

    Abstract: State-of-the-art deep neural networks have achieved impressive results on many image classification tasks. However, these same architectures have been shown to be unstable to small, well sought, perturbations of the images. Despite the importance of this phenomenon, no effective methods have been proposed to accurately compute the robustness of state-of-the-art deep classifiers to such perturbatio… ▽ More

    Submitted 4 July, 2016; v1 submitted 14 November, 2015; originally announced November 2015.

    Comments: In Proceedings of IEEE Conference on Computer Vision and Pattern Recognition (CVPR), 2016

  15. arXiv:1507.06535  [pdf, other

    cs.CV cs.LG stat.ML

    Manitest: Are classifiers really invariant?

    Authors: Alhussein Fawzi, Pascal Frossard

    Abstract: Invariance to geometric transformations is a highly desirable property of automatic classifiers in many image recognition tasks. Nevertheless, it is unclear to which extent state-of-the-art classifiers are invariant to basic transformations such as rotations and translations. This is mainly due to the lack of general methods that properly measure such an invariance. In this paper, we propose a rig… ▽ More

    Submitted 23 July, 2015; originally announced July 2015.

    Comments: BMVC 2015

  16. arXiv:1505.04966  [pdf, other

    stat.ML cs.LG

    Multi-task additive models with shared transfer functions based on dictionary learning

    Authors: Alhussein Fawzi, Mathieu Sinn, Pascal Frossard

    Abstract: Additive models form a widely popular class of regression models which represent the relation between covariates and response variables as the sum of low-dimensional transfer functions. Besides flexibility and accuracy, a key benefit of these models is their interpretability: the transfer functions provide visual means for inspecting the models and identifying domain-specific relations between inp… ▽ More

    Submitted 19 May, 2015; originally announced May 2015.

  17. arXiv:1502.02590  [pdf, other

    cs.LG cs.CV stat.ML

    Analysis of classifiers' robustness to adversarial perturbations

    Authors: Alhussein Fawzi, Omar Fawzi, Pascal Frossard

    Abstract: The goal of this paper is to analyze an intriguing phenomenon recently discovered in deep networks, namely their instability to adversarial perturbations (Szegedy et. al., 2014). We provide a theoretical framework for analyzing the robustness of classifiers to adversarial perturbations, and show fundamental upper bounds on the robustness of classifiers. Specifically, we establish a general upper b… ▽ More

    Submitted 28 March, 2016; v1 submitted 9 February, 2015; originally announced February 2015.

  18. arXiv:1410.0719  [pdf, other

    math.NA cs.CV cs.IT cs.LG math.OC math.ST

    Proceedings of the second "international Traveling Workshop on Interactions between Sparse models and Technology" (iTWIST'14)

    Authors: L. Jacques, C. De Vleeschouwer, Y. Boursier, P. Sudhakar, C. De Mol, A. Pizurica, S. Anthoine, P. Vandergheynst, P. Frossard, C. Bilen, S. Kitic, N. Bertin, R. Gribonval, N. Boumal, B. Mishra, P. -A. Absil, R. Sepulchre, S. Bundervoet, C. Schretter, A. Dooms, P. Schelkens, O. Chabiron, F. Malgouyres, J. -Y. Tourneret, N. Dobigeon , et al. (42 additional authors not shown)

    Abstract: The implicit objective of the biennial "international - Traveling Workshop on Interactions between Sparse models and Technology" (iTWIST) is to foster collaboration between international scientific teams by disseminating ideas through both specific oral/poster presentations and free discussions. For its second edition, the iTWIST workshop took place in the medieval and picturesque town of Namur in… ▽ More

    Submitted 9 October, 2014; v1 submitted 2 October, 2014; originally announced October 2014.

    Comments: 69 pages, 24 extended abstracts, iTWIST'14 website: http://sites.google.com/site/itwist14

  19. arXiv:1402.1973  [pdf, other

    cs.CV cs.LG stat.ML

    Dictionary learning for fast classification based on soft-thresholding

    Authors: Alhussein Fawzi, Mike Davies, Pascal Frossard

    Abstract: Classifiers based on sparse representations have recently been shown to provide excellent results in many visual recognition and classification tasks. However, the high cost of computing sparse representations at test time is a major obstacle that limits the applicability of these methods in large-scale problems, or in scenarios where computational power is restricted. We consider in this paper a… ▽ More

    Submitted 2 October, 2014; v1 submitted 9 February, 2014; originally announced February 2014.

  20. Image registration with sparse approximations in parametric dictionaries

    Authors: Alhussein Fawzi, Pascal Frossard

    Abstract: We examine in this paper the problem of image registration from the new perspective where images are given by sparse approximations in parametric dictionaries of geometric functions. We propose a registration algorithm that looks for an estimate of the global transformation between sparse images by examining the set of relative geometrical transformations between the respective features. We propos… ▽ More

    Submitted 4 July, 2013; v1 submitted 28 January, 2013; originally announced January 2013.

    Journal ref: SIAM Journal on Imaging Sciences 2013 6:4, 2370-2403

  21. arXiv:1109.5938  [pdf, other

    cs.NI cs.IT

    Thresholding-based reconstruction of compressed correlated signals

    Authors: Alhussein Fawzi, Tamara Tosic, Pascal Frossard

    Abstract: We consider the problem of recovering a set of correlated signals (e.g., images from different viewpoints) from a few linear measurements per signal. We assume that each sensor in a network acquires a compressed signal in the form of linear measurements and sends it to a joint decoder for reconstruction. We propose a novel joint reconstruction algorithm that exploits correlation among underlying s… ▽ More

    Submitted 2 April, 2012; v1 submitted 27 September, 2011; originally announced September 2011.

    Comments: 11 pages, 3 figures