Skip to main content

Showing 1–8 of 8 results for author: Galloway, A

Searching in archive cs. Search in all archives.
.
  1. arXiv:2207.09408  [pdf, other

    cs.LG cs.AI

    Bounding generalization error with input compression: An empirical study with infinite-width networks

    Authors: Angus Galloway, Anna Golubeva, Mahmoud Salem, Mihai Nica, Yani Ioannou, Graham W. Taylor

    Abstract: Estimating the Generalization Error (GE) of Deep Neural Networks (DNNs) is an important task that often relies on availability of held-out data. The ability to better predict GE based on a single training set may yield overarching DNN design principles to reduce a reliance on trial-and-error, along with other performance assessment advantages. In search of a quantity relevant to GE, we investigate… ▽ More

    Submitted 19 July, 2022; originally announced July 2022.

    Comments: 12 pages main content, 26 pages total

  2. arXiv:2206.13034  [pdf, other

    cs.LG cs.AI

    Monitoring Shortcut Learning using Mutual Information

    Authors: Mohammed Adnan, Yani Ioannou, Chuan-Yung Tsai, Angus Galloway, H. R. Tizhoosh, Graham W. Taylor

    Abstract: The failure of deep neural networks to generalize to out-of-distribution data is a well-known problem and raises concerns about the deployment of trained networks in safety-critical domains such as healthcare, finance and autonomous vehicles. We study a particular kind of distribution shift $\unicode{x2013}$ shortcuts or spurious correlations in the training data. Shortcut learning is often only e… ▽ More

    Submitted 26 June, 2022; originally announced June 2022.

    Comments: Accepted at ICML 2022 Workshop on Spurious Correlations, Invariance, and Stability

  3. arXiv:1905.02161  [pdf, other

    cs.LG stat.ML

    Batch Normalization is a Cause of Adversarial Vulnerability

    Authors: Angus Galloway, Anna Golubeva, Thomas Tanay, Medhat Moussa, Graham W. Taylor

    Abstract: Batch normalization (batch norm) is often used in an attempt to stabilize and accelerate training in deep neural networks. In many cases it indeed decreases the number of parameter updates required to achieve low training error. However, it also reduces robustness to small adversarial input perturbations and noise by double-digit percentages, as we show on five standard datasets. Furthermore, subs… ▽ More

    Submitted 29 May, 2019; v1 submitted 6 May, 2019; originally announced May 2019.

    Comments: To appear in the ICML 2019 Workshop on Identifying and Understanding Deep Learning Phenomena

  4. arXiv:1811.12601  [pdf, other

    cs.LG cs.CR stat.ML

    Adversarial Examples as an Input-Fault Tolerance Problem

    Authors: Angus Galloway, Anna Golubeva, Graham W. Taylor

    Abstract: We analyze the adversarial examples problem in terms of a model's fault tolerance with respect to its input. Whereas previous work focuses on arbitrarily strict threat models, i.e., $ε$-perturbations, we consider arbitrary valid inputs and propose an information-based characteristic for evaluating tolerance to diverse input faults.

    Submitted 29 November, 2018; originally announced November 2018.

    Comments: NIPS 2018 Workshop on Security and Machine Learning. Source available at https://github.com/uoguelph-mlrg/nips18-secml-advex-input-fault

  5. arXiv:1804.03308  [pdf, other

    cs.LG stat.ML

    Adversarial Training Versus Weight Decay

    Authors: Angus Galloway, Thomas Tanay, Graham W. Taylor

    Abstract: Performance-critical machine learning models should be robust to input perturbations not seen during training. Adversarial training is a method for improving a model's robustness to some perturbations by including them in the training process, but this tends to exacerbate other vulnerabilities of the model. The adversarial training framework has the effect of translating the data with respect to t… ▽ More

    Submitted 22 July, 2018; v1 submitted 9 April, 2018; originally announced April 2018.

  6. arXiv:1802.04457  [pdf, other

    cs.LG stat.ML

    Predicting Adversarial Examples with High Confidence

    Authors: Angus Galloway, Graham W. Taylor, Medhat Moussa

    Abstract: It has been suggested that adversarial examples cause deep learning models to make incorrect predictions with high confidence. In this work, we take the opposite stance: an overly confident model is more likely to be vulnerable to adversarial examples. This work is one of the most proactive approaches taken to date, as we link robustness with non-calibrated model confidence on noisy images, provid… ▽ More

    Submitted 12 February, 2018; originally announced February 2018.

    Comments: Under review by the International Conference on Machine Learning (ICML)

  7. arXiv:1711.00449  [pdf, other

    cs.LG stat.ML

    Attacking Binarized Neural Networks

    Authors: Angus Galloway, Graham W. Taylor, Medhat Moussa

    Abstract: Neural networks with low-precision weights and activations offer compelling efficiency advantages over their full-precision equivalents. The two most frequently discussed benefits of quantization are reduced memory consumption, and a faster forward pass when implemented with efficient bitwise operations. We propose a third benefit of very low-precision neural networks: improved robustness against… ▽ More

    Submitted 31 January, 2018; v1 submitted 1 November, 2017; originally announced November 2017.

    Comments: Published as a conference paper at ICLR 2018

  8. The Ciona17 Dataset for Semantic Segmentation of Invasive Species in a Marine Aquaculture Environment

    Authors: Angus Galloway, Graham W. Taylor, Aaron Ramsay, Medhat Moussa

    Abstract: An original dataset for semantic segmentation, Ciona17, is introduced, which to the best of the authors' knowledge, is the first dataset of its kind with pixel-level annotations pertaining to invasive species in a marine environment. Diverse outdoor illumination, a range of object shapes, colour, and severe occlusion provide a significant real world challenge for the computer vision community. An… ▽ More

    Submitted 17 February, 2017; originally announced February 2017.

    Comments: Submitted to the Conference on Computer and Robot Vision (CRV) 2017