Zum Hauptinhalt springen

Showing 1–10 of 10 results for author: Condessa, F

Searching in archive cs. Search in all archives.
.
  1. arXiv:2402.17018  [pdf, other

    cs.LG cs.AI cs.CV

    A Curious Case of Remarkable Resilience to Gradient Attacks via Fully Convolutional and Differentiable Front End with a Skip Connection

    Authors: Leonid Boytsov, Ameya Joshi, Filipe Condessa

    Abstract: We tested front-end enhanced neural models where a frozen classifier was prepended by a differentiable and fully convolutional model with a skip connection. By training them using a small learning rate for about one epoch, we obtained models that retained the accuracy of the backbone classifier while being unusually resistant to gradient attacks including APGD and FAB-T attacks from the AutoAttack… ▽ More

    Submitted 26 February, 2024; originally announced February 2024.

  2. arXiv:2311.08479  [pdf, other

    cs.LG cs.CV cs.DC

    Leveraging Foundation Models to Improve Lightweight Clients in Federated Learning

    Authors: Xidong Wu, Wan-Yi Lin, Devin Willmott, Filipe Condessa, Yufei Huang, Zhenzhen Li, Madan Ravi Ganesh

    Abstract: Federated Learning (FL) is a distributed training paradigm that enables clients scattered across the world to cooperatively learn a global model without divulging confidential data. However, FL faces a significant challenge in the form of heterogeneous data distributions among clients, which leads to a reduction in performance and robustness. A recent approach to mitigating the impact of heterogen… ▽ More

    Submitted 14 November, 2023; originally announced November 2023.

    Comments: 6 Pages + Appendices

  3. arXiv:2206.12714  [pdf, other

    cs.CV cs.CR cs.LG

    Defending Multimodal Fusion Models against Single-Source Adversaries

    Authors: Karren Yang, Wan-Yi Lin, Manash Barman, Filipe Condessa, Zico Kolter

    Abstract: Beyond achieving high performance across many vision tasks, multimodal models are expected to be robust to single-source faults due to the availability of redundant information between modalities. In this paper, we investigate the robustness of multimodal neural networks against worst-case (i.e., adversarial) perturbations on a single modality. We first show that standard multimodal fusion models… ▽ More

    Submitted 25 June, 2022; originally announced June 2022.

    Comments: CVPR 2021

    MSC Class: 68T01; 68T45

  4. arXiv:2205.06154  [pdf, other

    cs.LG cs.CV

    Smooth-Reduce: Leveraging Patches for Improved Certified Robustness

    Authors: Ameya Joshi, Minh Pham, Minsu Cho, Leonid Boytsov, Filipe Condessa, J. Zico Kolter, Chinmay Hegde

    Abstract: Randomized smoothing (RS) has been shown to be a fast, scalable technique for certifying the robustness of deep neural network classifiers. However, methods based on RS require augmenting data with large amounts of noise, which leads to significant drops in accuracy. We propose a training-free, modified smoothing approach, Smooth-Reduce, that leverages patching and aggregation to provide improved… ▽ More

    Submitted 12 May, 2022; originally announced May 2022.

  5. arXiv:2102.00029  [pdf, other

    cs.LG cs.CR

    You Only Query Once: Effective Black Box Adversarial Attacks with Minimal Repeated Queries

    Authors: Devin Willmott, Anit Kumar Sahu, Fatemeh Sheikholeslami, Filipe Condessa, Zico Kolter

    Abstract: Researchers have repeatedly shown that it is possible to craft adversarial attacks on deep classifiers (small perturbations that significantly change the class label), even in the "black-box" setting where one only has query access to the classifier. However, all prior work in the black-box setting attacks the classifier by repeatedly querying the same image with minor modifications, usually thous… ▽ More

    Submitted 29 January, 2021; originally announced February 2021.

  6. arXiv:2004.10608  [pdf, other

    cs.LG stat.ML

    Provably robust deep generative models

    Authors: Filipe Condessa, Zico Kolter

    Abstract: Recent work in adversarial attacks has developed provably robust methods for training deep neural network classifiers. However, although they are often mentioned in the context of robustness, deep generative models themselves have received relatively little attention in terms of formally analyzing their robustness properties. In this paper, we propose a method for training provably robust generati… ▽ More

    Submitted 22 April, 2020; originally announced April 2020.

  7. arXiv:1509.01287  [pdf, other

    cs.CV

    Image Classification with Rejection using Contextual Information

    Authors: Filipe Condessa, José Bioucas-Dias, Carlos Castro, John Ozolek, Jelena Kovačević

    Abstract: We introduce a new supervised algorithm for image classification with rejection using multiscale contextual information. Rejection is desired in image-classification applications that require a robust classifier but not the classification of the entire image. The proposed algorithm combines local and multiscale contextual information with rejection, improving the classification performance. As a p… ▽ More

    Submitted 3 September, 2015; originally announced September 2015.

    Comments: 21 pages, 8 figures

    MSC Class: 68T10

  8. arXiv:1504.07918  [pdf, ps, other

    cs.CV

    Robust hyperspectral image classification with rejection fields

    Authors: Filipe Condessa, Jose Bioucas-Dias, Jelena Kovacevic

    Abstract: In this paper we present a novel method for robust hyperspectral image classification using context and rejection. Hyperspectral image classification is generally an ill-posed image problem where pixels may belong to unknown classes, and obtaining representative and complete training sets is costly. Furthermore, the need for high classification accuracies is frequently greater than the need to cla… ▽ More

    Submitted 29 April, 2015; originally announced April 2015.

    Comments: This paper was submitted to IEEE WHISPERS 2015: 7th Workshop on Hyperspectral Image and Signal Processing: Evolution on Remote Sensing. 5 pages, 1 figure, 2 tables

    MSC Class: 68

  9. arXiv:1504.07028  [pdf, other

    cs.CV

    SegSALSA-STR: A convex formulation to supervised hyperspectral image segmentation using hidden fields and structure tensor regularization

    Authors: Filipe Condessa, Jose Bioucas-Dias, Jelena Kovacevic

    Abstract: We present a supervised hyperspectral image segmentation algorithm based on a convex formulation of a marginal maximum a posteriori segmentation with hidden fields and structure tensor regularization: Segmentation via the Constraint Split Augmented Lagrangian Shrinkage by Structure Tensor Regularization (SegSALSA-STR). This formulation avoids the generally discrete nature of segmentation problems… ▽ More

    Submitted 27 April, 2015; originally announced April 2015.

    Comments: This paper was submitted to IEEE WHISPERS 2015: 7th Workshop on Hyperspectral Image and Signal Processing: Evolution on Remote Sensing. 5 pages, 1 figure

    MSC Class: 68

  10. arXiv:1504.02763  [pdf, other

    cs.CV cs.LG

    Performance measures for classification systems with rejection

    Authors: Filipe Condessa, Jelena Kovacevic, Jose Bioucas-Dias

    Abstract: Classifiers with rejection are essential in real-world applications where misclassifications and their effects are critical. However, if no problem specific cost function is defined, there are no established measures to assess the performance of such classifiers. We introduce a set of desired properties for performance measures for classifiers with rejection, based on which we propose a set of thr… ▽ More

    Submitted 27 January, 2016; v1 submitted 10 April, 2015; originally announced April 2015.

    MSC Class: 68-04