Robustness of Neural Networks Based on MIP Optimization - IRT SystemX Accéder directement au contenu
Pré-Publication, Document De Travail Année : 2023

Robustness of Neural Networks Based on MIP Optimization

Ramzi Ben Mhenni
  • Fonction : Auteur
  • PersonId : 1224863
Mohamed Ibn Khedher
  • Fonction : Auteur
  • PersonId : 1224892

Résumé

Even though Deep Learning methods have demonstrated their efficiency, they do not currently provide the expected security guarantees. They are known to be vulnerable to adversarial attacks where malicious perturbed inputs lead to erroneous model outputs. The success of Deep Learning and its potential use in many safety-critical applications has motivated research on formal verification of Neural Network models. A possible way to find the minimal optimal perturbation that change the model decision (adversarial attack) is to transform the problem, with the help of binary variables and the classical bigM formulation, into a Mixed Integer Program (MIP). In this paper, we propose a global optimization approach to get the optimal perturbation using a dedicated branch-and-bound algorithm. A specific tree search strategy is built based on greedy forward selection algorithms. We show that each subproblem involved at a given node can be evaluated via a specific convex optimization problem with box constraints and without binary variables, for which an active-set algorithm is used. Our method is more efficient than the generic MIP solver Gurobi and the state-of-the-art method for MIPs such as MIPverify.
Fichier principal
Vignette du fichier
Robustness_of_Neural_Networks_Based_on_MIP_Optimization (3).pdf (461.93 Ko) Télécharger le fichier
Origine : Fichiers produits par l'(les) auteur(s)

Dates et versions

hal-03978730 , version 1 (08-02-2023)

Identifiants

  • HAL Id : hal-03978730 , version 1

Citer

Ramzi Ben Mhenni, Mohamed Ibn Khedher, Stéphane Canu. Robustness of Neural Networks Based on MIP Optimization. 2023. ⟨hal-03978730⟩
75 Consultations
81 Téléchargements

Partager

Gmail Facebook X LinkedIn More