A Survey on Model Robustness under Adversarial Example

WANG Kedi,YI Ping
DOI: https://doi.org/10.19363/j.cnki.cn10-1380/tn.2020.05.02
2020-01-01
Journal of Cyber Security
Abstract:In recent years, the research on artificial intelligence has developed rapidly. However, in order to apply machine learning model to real-world setting, we need to consider its security issues in particular. Recent studies have found that for unprotected models, attackers can easily fool the machine learning models by adding small, imperceptible disturbances to the samples, leading to serious security problems. Adversarial sample is a popular research direction nowadays. There are many researches on new attack methods, defense methods and robustness certifications, but there is no well-known and unified framework for certificating model’s robustness. Our paper summarizes the research on model robustness in artificial intelligence adversarial setting. This paper describes the popular research methods of model robustness, discusses the research progress of model robustness in adversarial setting from a more comprehensive perspective, and puts forward some future research directions.
What problem does this paper attempt to address?