1,978 research outputs found

    Jacobian ensembles improve robustness trade-offs to adversarial attacks

    Get PDF
    Deep neural networks have become an integral part of our software infrastructure and are being deployed in many widely-used and safety-critical applications. However, their integration into many systems also brings with it the vulnerability to test time attacks in the form of Universal Adversarial Perturbations (UAPs). UAPs are a class of perturbations that when applied to any input causes model misclassification. Although there is an ongoing effort to defend models against these adversarial attacks, it is often difficult to reconcile the trade-offs in model accuracy and robustness to adversarial attacks. Jacobian regularization has been shown to improve the robustness of models against UAPs, whilst model ensembles have been widely adopted to improve both predictive performance and model robustness. In this work, we propose a novel approach, Jacobian Ensembles – a combination of Jacobian regularization and model ensembles to significantly increase the robustness against UAPs whilst maintaining or improving model accuracy. Our results show that Jacobian Ensembles achieves previously unseen levels of accuracy and robustness, greatly improving over previous methods that tend to skew towards only either accuracy or robustness

    Robustness and transferability of universal attacks on compressed models

    Get PDF
    Neural network compression methods like pruning and quantization are very effective at efficiently deploying Deep Neural Networks (DNNs) on edge devices. However, DNNs remain vulnerable to adversarial examples-inconspicuous inputs that are specifically designed to fool these models. In particular, Universal Adversarial Perturbations (UAPs), are a powerful class of adversarial attacks which create adversarial perturbations that can generalize across a large set of inputs. In this work, we analyze the effect of various compression techniques to UAP attacks, including different forms of pruning and quantization. We test the robustness of compressed models to white-box and transfer attacks, comparing them with their uncompressed counterparts on CIFAR-10 and SVHN datasets. Our evaluations reveal clear differences between pruning methods, including Soft Filter and Post-training Pruning. We observe that UAP transfer attacks between pruned and full models are limited, suggesting that the systemic vulnerabilities across these models are different. This finding has practical implications as using different compression techniques can blunt the effectiveness of black-box transfer attacks. We show that, in some scenarios, quantization can produce gradient-masking, giving a false sense of security. Finally, our results suggest that conclusions about the robustness of compressed models to UAP attacks is application dependent, observing different phenomena in the two datasets used in our experiments

    Jacobian Ensembles Improve Robustness Trade-offs to Adversarial Attacks

    Get PDF
    Deep neural networks have become an integral part of our software infrastructure and are being deployed in many widely-used and safety-critical applications. However, their integration into many systems also brings with it the vulnerability to test time attacks in the form of Universal Adversarial Perturbations (UAPs). UAPs are a class of perturbations that when applied to any input causes model misclassification. Although there is an ongoing effort to defend models against these adversarial attacks, it is often difficult to reconcile the trade-offs in model accuracy and robustness to adversarial attacks. Jacobian regularization has been shown to improve the robustness of models against UAPs, whilst model ensembles have been widely adopted to improve both predictive performance and model robustness. In this work, we propose a novel approach, Jacobian Ensembles-a combination of Jacobian regularization and model ensembles to significantly increase the robustness against UAPs whilst maintaining or improving model accuracy. Our results show that Jacobian Ensembles achieves previously unseen levels of accuracy and robustness, greatly improving over previous methods that tend to skew towards only either accuracy or robustness

    An Overview of Patent Law as Applied to the Field of Veterinary Medicine

    Get PDF
    This article analyzes some of the challenges that can arise when patent law is applied to the field of veterinary medicine. Topics covered in this article include an overview of the different kinds of inventions that can be patented in the veterinary field; a review of recent legal developments that may affect the patenting of veterinary pharmaceuticals; a discussion of some potential issues related to patents covering assays; and an identification of some special situations where the law affecting veterinary pharmaceuticals is actually different from the law affecting human pharmaceuticals

    Identifying factors for job motivation of rural health workers in North Viet Nam

    Get PDF
    BACKGROUND: In Viet Nam, most of the public health staff (84%) currently works in rural areas, where 80% of the people live. To provide good quality health care services, it is important to develop strategies influencing staff motivation for better performance. METHOD: An exploratory qualitative research was carried out among health workers in two provinces in North Viet Nam so as to identify entry points for developing strategies that improve staff performance in rural areas. The study aimed to determine the major motivating factors and it is the first in Viet Nam that looks at health workers' job perception and motivation. Apart from health workers, managers at national and at provincial level were interviewed as well as some community representatives. RESULTS: The study showed that motivation is influenced by both financial and non-financial incentives. The main motivating factors for health workers were appreciation by managers, colleagues and the community, a stable job and income and training. The main discouraging factors were related to low salaries and difficult working conditions. CONCLUSION: Activities associated with appreciation such as performance management are currently not optimally implemented, as health workers perceive supervision as control, selection for training as unclear and unequal, and performance appraisal as not useful. The kind of non-financial incentives identified should be taken into consideration when developing HRM strategies. Areas for further studies are identified

    Neutrino-nucleus quasi-elastic scattering and strange quark effects

    Full text link
    A relativistic distorted-wave impulse-approximation model is applied to quasi-elastic neutrino-nucleus scattering. The bound state is obtained in the framework of the relativistic mean field theory and the final state interaction is taken into account in the scattering state. Results for the charged- and neutral-current neutrino (antineutrino) reactions on 12^{12}C target nucleus are presented and the sensitivity of various quantities to the strange quark content of the nucleon weak current is discussed.Comment: 18 pages, 10 figure

    Foreign Aid Transaction Costs: What are they and when are they minimised?

    Full text link
    'Transaction costs' are commonly referred to in the recent literature on aid effectiveness. Aid transaction costs, however, have been neither consistently defined nor measured. This article defines aid transaction costs as all the economic costs associated with aid management that add no value to aid delivery. This enables the 'net' transaction costs that should be minimised to be identified. An analytical framework is then developed for assessing these costs. This allows the effectiveness of different aid modalities to be compared, according to the characteristics of the aid transaction. The article shows that the choice of aid modality should depend on these characteristics and, therefore, that the minimisation of transaction costs should not be an end in itself.Peer reviewe

    A strong conditional mutualism limits and enhances seed dispersal and germination of a tropical palm

    Get PDF
    Seed predation and seed dispersal can have strong effects on early life history stages of plants. These processes have often been studied as individual effects, but the degree to which their relative importance co-varies with seed predator abundance and how this influences seed germination rates is poorly understood. Therefore, we used a combination of observations and field experiments to determine the degree to which germination rates of the palm Astrocaryum mexicanum varied with abundance of a small mammal seed predator/disperser, Heteromysdesmarestianus, in a lowland tropical forest. Patterns of abundance of the two species were strongly related; density of H. desmarestianus was low in sites with low density of A. mexicanum and vice versa. Rates of predation and dispersal of A. mexicanum seeds depended on abundance of H. desmarestianus; sites with high densities of H. desmarestianus had the highest rates of seed predation and lowest rates of seed germination, but a greater total number of seeds were dispersed and there was greater density of seedlings, saplings, and adults of A. mexicanum in these sites. When abundance of H. desmarestianus was experimentally reduced, rates of seed predation decreased, but so did dispersal of A. mexicanum seeds. Critically, rates of germination of dispersed seeds were 5 times greater than undispersed seeds. The results suggest that the relationship between A. mexicanum and H. desmarestianus is a conditional mutualism that results in a strong local effect on the abundance of each species. However, the magnitude and direction of these effects are determined by the relative strength of opposing, but related, mechanisms. A. mexicanum nuts provide H. desmarestianus with a critical food resource, and while seed predation on A. mexicanum nuts by H. desmarestianus is very intense, A. mexicanum ultimately benefits because of the relatively high germination rates of its seeds that are dispersed by H. desmarestianus
    corecore