{"id":"https://openalex.org/W3201574205","doi":"https://doi.org/10.1609/aaai.v36i7.20768","title":"CC-CERT: A Probabilistic Approach to Certify General Robustness of Neural Networks","display_name":"CC-CERT: A Probabilistic Approach to Certify General Robustness of Neural Networks","publication_year":2022,"publication_date":"2022-06-28","ids":{"openalex":"https://openalex.org/W3201574205","doi":"https://doi.org/10.1609/aaai.v36i7.20768","mag":"3201574205"},"language":"en","primary_location":{"is_oa":true,"landing_page_url":"https://doi.org/10.1609/aaai.v36i7.20768","pdf_url":"https://ojs.aaai.org/index.php/AAAI/article/download/20768/20527","source":{"id":"https://openalex.org/S4210191458","display_name":"Proceedings of the AAAI Conference on Artificial Intelligence","issn_l":"2159-5399","issn":["2159-5399","2374-3468"],"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/P4310320058","host_organization_name":"Association for the Advancement of Artificial Intelligence","host_organization_lineage":["https://openalex.org/P4310320058"],"host_organization_lineage_names":["Association for the Advancement of Artificial Intelligence"],"type":"conference"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true},"type":"article","type_crossref":"journal-article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"gold","oa_url":"https://ojs.aaai.org/index.php/AAAI/article/download/20768/20527","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5081195553","display_name":"Mikhail Pautov","orcid":"https://orcid.org/0000-0003-0438-6361"},"institutions":[{"id":"https://openalex.org/I125989756","display_name":"Skolkovo Institute of Science and Technology","ror":"https://ror.org/03f9nc143","country_code":"RU","type":"education","lineage":["https://openalex.org/I125989756"]}],"countries":["RU"],"is_corresponding":false,"raw_author_name":"Mikhail Pautov","raw_affiliation_strings":["Skolkovo Institute of Science and Technology"],"affiliations":[{"raw_affiliation_string":"Skolkovo Institute of Science and Technology","institution_ids":["https://openalex.org/I125989756"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5020804657","display_name":"Nurislam Tursynbek","orcid":null},"institutions":[{"id":"https://openalex.org/I125989756","display_name":"Skolkovo Institute of Science and Technology","ror":"https://ror.org/03f9nc143","country_code":"RU","type":"education","lineage":["https://openalex.org/I125989756"]}],"countries":["RU"],"is_corresponding":false,"raw_author_name":"Nurislam Tursynbek","raw_affiliation_strings":["Skolkovo Institute of Science and Technology"],"affiliations":[{"raw_affiliation_string":"Skolkovo Institute of Science and Technology","institution_ids":["https://openalex.org/I125989756"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5078804592","display_name":"Marina Munkhoeva","orcid":"https://orcid.org/0000-0002-5638-3712"},"institutions":[{"id":"https://openalex.org/I125989756","display_name":"Skolkovo Institute of Science and Technology","ror":"https://ror.org/03f9nc143","country_code":"RU","type":"education","lineage":["https://openalex.org/I125989756"]}],"countries":["RU"],"is_corresponding":false,"raw_author_name":"Marina Munkhoeva","raw_affiliation_strings":["Skolkovo Institute of Science and Technology"],"affiliations":[{"raw_affiliation_string":"Skolkovo Institute of Science and Technology","institution_ids":["https://openalex.org/I125989756"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5026405951","display_name":"Nikita Muravev","orcid":"https://orcid.org/0000-0002-2828-8283"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Nikita Muravev","raw_affiliation_strings":["Lomonosov MSU\nHuawei Moscow Research Center"],"affiliations":[{"raw_affiliation_string":"Lomonosov MSU\nHuawei Moscow Research Center","institution_ids":[]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5030110484","display_name":"Aleksandr Petiushko","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Aleksandr Petiushko","raw_affiliation_strings":["Lomonosov MSU\nHuawei Moscow Research Center\nAIRI, Moscow"],"affiliations":[{"raw_affiliation_string":"Lomonosov MSU\nHuawei Moscow Research Center\nAIRI, Moscow","institution_ids":[]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5004111307","display_name":"Ivan Oseledets","orcid":"https://orcid.org/0000-0003-2071-2163"},"institutions":[{"id":"https://openalex.org/I125989756","display_name":"Skolkovo Institute of Science and Technology","ror":"https://ror.org/03f9nc143","country_code":"RU","type":"education","lineage":["https://openalex.org/I125989756"]}],"countries":["RU"],"is_corresponding":false,"raw_author_name":"Ivan Oseledets","raw_affiliation_strings":["Skolkovo Institute of Science and Technology"],"affiliations":[{"raw_affiliation_string":"Skolkovo Institute of Science and Technology","institution_ids":["https://openalex.org/I125989756"]}]}],"institution_assertions":[],"countries_distinct_count":1,"institutions_distinct_count":1,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":1.446,"has_fulltext":false,"cited_by_count":9,"citation_normalized_percentile":{"value":0.999875,"is_in_top_1_percent":true,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":90,"max":91},"biblio":{"volume":"36","issue":"7","first_page":"7975","last_page":"7983"},"is_retracted":false,"is_paratext":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9324,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9156,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness","score":0.6056312}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.74625623},{"id":"https://openalex.org/C49937458","wikidata":"https://www.wikidata.org/wiki/Q2599292","display_name":"Probabilistic logic","level":2,"score":0.689218},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.65718913},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.6056312},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.53070086},{"id":"https://openalex.org/C34388435","wikidata":"https://www.wikidata.org/wiki/Q2267362","display_name":"Bounded function","level":2,"score":0.48020586},{"id":"https://openalex.org/C80444323","wikidata":"https://www.wikidata.org/wiki/Q2878974","display_name":"Theoretical computer science","level":1,"score":0.42793876},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.3504179},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.16534686},{"id":"https://openalex.org/C134306372","wikidata":"https://www.wikidata.org/wiki/Q7754","display_name":"Mathematical analysis","level":1,"score":0.0},{"id":"https://openalex.org/C55493867","wikidata":"https://www.wikidata.org/wiki/Q7094","display_name":"Biochemistry","level":1,"score":0.0},{"id":"https://openalex.org/C185592680","wikidata":"https://www.wikidata.org/wiki/Q2329","display_name":"Chemistry","level":0,"score":0.0},{"id":"https://openalex.org/C104317684","wikidata":"https://www.wikidata.org/wiki/Q7187","display_name":"Gene","level":2,"score":0.0}],"mesh":[],"locations_count":2,"locations":[{"is_oa":true,"landing_page_url":"https://doi.org/10.1609/aaai.v36i7.20768","pdf_url":"https://ojs.aaai.org/index.php/AAAI/article/download/20768/20527","source":{"id":"https://openalex.org/S4210191458","display_name":"Proceedings of the AAAI Conference on Artificial Intelligence","issn_l":"2159-5399","issn":["2159-5399","2374-3468"],"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/P4310320058","host_organization_name":"Association for the Advancement of Artificial Intelligence","host_organization_lineage":["https://openalex.org/P4310320058"],"host_organization_lineage_names":["Association for the Advancement of Artificial Intelligence"],"type":"conference"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true},{"is_oa":true,"landing_page_url":"https://arxiv.org/abs/2109.10696","pdf_url":"https://arxiv.org/pdf/2109.10696","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":["Cornell University"],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false}],"best_oa_location":{"is_oa":true,"landing_page_url":"https://doi.org/10.1609/aaai.v36i7.20768","pdf_url":"https://ojs.aaai.org/index.php/AAAI/article/download/20768/20527","source":{"id":"https://openalex.org/S4210191458","display_name":"Proceedings of the AAAI Conference on Artificial Intelligence","issn_l":"2159-5399","issn":["2159-5399","2374-3468"],"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/P4310320058","host_organization_name":"Association for the Advancement of Artificial Intelligence","host_organization_lineage":["https://openalex.org/P4310320058"],"host_organization_lineage_names":["Association for the Advancement of Artificial Intelligence"],"type":"conference"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true},"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/16","display_name":"Peace, justice, and strong institutions","score":0.44}],"grants":[],"datasets":[],"versions":[],"referenced_works_count":57,"referenced_works":["https://openalex.org/W1673923490","https://openalex.org/W1945616565","https://openalex.org/W2120180985","https://openalex.org/W2137591261","https://openalex.org/W2243397390","https://openalex.org/W2594877703","https://openalex.org/W2619479788","https://openalex.org/W2768718880","https://openalex.org/W2773726006","https://openalex.org/W2783784437","https://openalex.org/W2789524546","https://openalex.org/W2801079363","https://openalex.org/W2898963688","https://openalex.org/W2900153411","https://openalex.org/W2902812770","https://openalex.org/W2911634294","https://openalex.org/W2950048339","https://openalex.org/W2950183737","https://openalex.org/W2951735139","https://openalex.org/W2952911150","https://openalex.org/W2955031793","https://openalex.org/W2962851953","https://openalex.org/W2963054787","https://openalex.org/W2963143631","https://openalex.org/W2963207607","https://openalex.org/W2963496101","https://openalex.org/W2963564844","https://openalex.org/W2963565751","https://openalex.org/W2963592643","https://openalex.org/W2963857521","https://openalex.org/W2963952467","https://openalex.org/W2964077693","https://openalex.org/W2964153729","https://openalex.org/W2970456043","https://openalex.org/W2970615870","https://openalex.org/W2970971581","https://openalex.org/W2985282977","https://openalex.org/W2986750569","https://openalex.org/W2989696285","https://openalex.org/W2996296329","https://openalex.org/W2998293245","https://openalex.org/W3025573667","https://openalex.org/W3034215083","https://openalex.org/W3093376659","https://openalex.org/W3101661333","https://openalex.org/W3103340107","https://openalex.org/W3170033309","https://openalex.org/W3173448244","https://openalex.org/W3183022079","https://openalex.org/W3213537051","https://openalex.org/W4231284028","https://openalex.org/W4254362479","https://openalex.org/W4287120115","https://openalex.org/W4287863644","https://openalex.org/W4289293305","https://openalex.org/W4289306490","https://openalex.org/W4295312788"],"related_works":["https://openalex.org/W4246396837","https://openalex.org/W3176240006","https://openalex.org/W3126451824","https://openalex.org/W2502115930","https://openalex.org/W2482350142","https://openalex.org/W2124122503","https://openalex.org/W2071659383","https://openalex.org/W1846253165","https://openalex.org/W1561927205","https://openalex.org/W1497573972"],"abstract_inverted_index":{"In":[0,62],"safety-critical":[1],"machine":[2],"learning":[3,55],"applications,":[4],"it":[5,46],"is":[6,47,97],"crucial":[7],"to":[8,49,92],"defend":[9],"models":[10,56],"against":[11,57],"adversarial":[12],"attacks":[13],"---":[14],"small":[15],"modifications":[16],"of":[17,89],"the":[18,22,87,95],"input":[19,60],"that":[20,77],"change":[21],"predictions.":[23],"Besides":[24],"rigorously":[25],"studied":[26],"$\\ell_p$-bounded":[27],"additive":[28],"perturbations,":[29],"semantic":[30],"perturbations":[31],"(e.g.":[32],"rotation,":[33],"translation)":[34],"raise":[35],"a":[36,67,90,100],"serious":[37],"concern":[38],"on":[39,74,111],"deploying":[40],"ML":[41],"systems":[42],"in":[43,81],"real-world.":[44],"Therefore,":[45],"important":[48],"provide":[50],"provable":[51],"guarantees":[52],"for":[53],"deep":[54],"semantically":[58],"meaningful":[59],"transformations.":[61],"this":[63],"paper,":[64],"we":[65],"propose":[66],"new":[68],"universal":[69],"probabilistic":[70],"certification":[71],"approach":[72],"based":[73],"Chernoff-Cramer":[75],"bounds":[76],"can":[78],"be":[79],"used":[80],"general":[82],"attack":[83,96],"settings.":[84],"We":[85],"estimate":[86],"probability":[88],"model":[91],"fail":[93],"if":[94],"sampled":[98],"from":[99],"certain":[101],"distribution.":[102],"Our":[103],"theoretical":[104],"findings":[105],"are":[106],"supported":[107],"by":[108],"experimental":[109],"results":[110],"different":[112],"datasets.":[113]},"cited_by_api_url":"https://api.openalex.org/works?filter=cites:W3201574205","counts_by_year":[{"year":2024,"cited_by_count":1},{"year":2023,"cited_by_count":7},{"year":2022,"cited_by_count":1}],"updated_date":"2024-12-08T17:30:00.078132","created_date":"2021-09-27"}