Global News Digest

arXiv

CEAR: Certified Ensemble Adversarial Robustness in DNNs

Title: CEAR: Certified Ensemble Adversarial Robustness in DNNs

Abstract:

Deep Neural Networks (DNNs) exhibit significant vulnerability to adversarial perturbations, prompting extensive research into robustness frameworks for safety-critical systems. While state-of-the-art empirical defenses enhance DNN resilience during training, they often remain ineffective against adaptive white-box attacks. Conversely, certified defenses provide provable robustness guarantees within defined perturbation limits, ensuring security even when attackers possess complete model knowledge. This paper introduces CEAR, an ensemble-based approach that integrates empirical and certified defense strategies. CEAR employs varying Gaussian noise and temperature settings to train individual networks within the ensemble, thereby obscuring gradients and logits to bolster resistance against potent gradient-based assaults. Additionally, we leverage noisy logits alongside two distinct voting mechanisms to further enhance robustness. The study also extends randomized smoothing techniques to validate the robustness of ensemble-based classifiers. Experimental results across MNIST, CIFAR10, and TinyImageNet datasets indicate that CEAR achieves higher average certified accuracy, a larger robustness radius, and reduced transferability relative to baseline methods.


Source: arXiv Generated at: 2026-06-02 00:00:00 UTC

Related Articles

Schroders Renewable Unit Targets AI Assets as Power Demand Soars
Bloomberg

Schroders Renewable Unit Targets AI Assets as Power Demand Soars

Schroders’ renewable unit targets AI infrastructure, pivoting to meet soaring energy demand from artificial intelligence...

State Street's Paglia on SBI Group Partnership, ETFs
Bloomberg

State Street's Paglia on SBI Group Partnership, ETFs

State Street's Paglia discusses the SBI Group partnership and ETFs, but the source text is missing. Please provide the a...

Nvidia Boss Says Workers Should Be Paid ‘as Much as Possible’
Bloomberg

Nvidia Boss Says Workers Should Be Paid ‘as Much as Possible’

Nvidia CEO Jensen Huang advocates for paying workers “as much as possible,” emphasizing maximum compensation. This stanc...

TSE Talking With Regulator For Easing ETF Listing Rules
Bloomberg

TSE Talking With Regulator For Easing ETF Listing Rules

The Tokyo Stock Exchange is discussing with regulators to ease ETF listing rules. This aims to simplify market access an...

S&P DJI CEO on Japan Markets, Mega IPOs
Bloomberg

S&P DJI CEO on Japan Markets, Mega IPOs

S&P DJI CEO discusses Japan's financial markets and major IPOs.