AI Models May Be More Fragile Than We Think
Last Week in AI182 字 (约 1 分钟)
75
Flipping just two signed bits in ResNet-50 can cause a 99.8% drop in ImageNet accuracy without any data access or training, revealing an extreme vulnerability called 'deep neural lesion' in neural networks.
入选理由:攻击仅需翻转 2 个参数的符号位,无需接触训练数据或进行优化
FeaturedVideo#Neural Network Security#Adversarial Attack#Model Robustness#Bit-level Attack#ResNet英文
