Secure Learning In Adversarial Environments

Bo Li
DOI: https://doi.org/10.1145/3385003.3410927
2020-10-06
Abstract:Great advancement in deep learning has led to state-of-the-art performance on a wide range of tasks, such as speech recognition, image classification, machine translation, and robotics. Devices and systems powered by deep learning and AI continue to permeate people’s daily lives and make increasingly important decisions. However, current learning systems have severe limitations. For example, we have little confidence how well a learned model will behave under new scenarios. Moreover, when machine learning models are exposed to adversarial behavior, they can be fooled, evaded, and misled in ways that can have profound security implications. For example, recent studies have shown that the current learning systems are vulnerable to attacks such as adversarial examples As machine learning techniques are incorporated into safety-critical systems—from financial systems to selfdriving cars to medical diagnosis—it is vitally important that we develop new techniques and approaches to increase the trustworthiness of machine learning models, so that they can make correct and calibrated decisions under new scenarios and even attacks. In this talk, I will discuss how to systematically explore new directions towards trustworthy machine learning. In particular, I plan to introduce the sensing-reasoning certifiable machine learning pipeline which aims to improve the certifiable robustness of ML by integrating domain knowledge expressed as logic rules. In addition, I will introduce leveraging game theoretic analysis to proactively obtain domain knowledge and further improve the robustness of ML systems.
Computer Science
What problem does this paper attempt to address?