Presentation + Paper
31 May 2022 A geometric statistic for deep learning model confidence and adversarial defense
Donald Waagen, Don Hulsey, Jamie Godwin, David Gray
Author Affiliations +
Abstract
Deep learning models are pervasive for a multitude of tasks, but the complexity of these models can limit interpretation and inhibit trust in their estimates of confidence. For the classification task, we investigate the induced geometric relationships between the class conditioned data distributions with the deep learning models’ output weight vectors. We propose a simple statistic, which we call Angular Margin, to characterize the “confidence” of the model given a new input. We compare and contrast our statistic to Angular Visual Hardness and Softmax outputs. We demonstrate that Angular Margin provides a superior statistic for detecting minimum-perturbation adversarial attacks and/or misclassified images than standard Softmax predictions.
Conference Presentation
© (2022) COPYRIGHT Society of Photo-Optical Instrumentation Engineers (SPIE). Downloading of the abstract is permitted for personal use only.
Donald Waagen, Don Hulsey, Jamie Godwin, and David Gray "A geometric statistic for deep learning model confidence and adversarial defense", Proc. SPIE 12096, Automatic Target Recognition XXXII, 1209606 (31 May 2022); https://doi.org/10.1117/12.2618299
Advertisement
Advertisement
RIGHTS & PERMISSIONS
Get copyright permission  Get copyright permission on Copyright Marketplace
KEYWORDS
Data modeling

Statistical modeling

Neurons

Convolution

Image classification

Image processing

Visualization

Back to Top