Efficient Robustness Verification of the Deep Neural Networks for Smart IoT Devices. (1st October 2022)
- Record Type:
- Journal Article
- Title:
- Efficient Robustness Verification of the Deep Neural Networks for Smart IoT Devices. (1st October 2022)
- Main Title:
- Efficient Robustness Verification of the Deep Neural Networks for Smart IoT Devices
- Authors:
- Zhang, Zhaodi
Liu, Jing
Zhang, Min
Sun, Haiying - Abstract:
- Abstract: In the Internet of Things, smart devices are expected to correctly capture and process data from environments, regardless of perturbation and adversarial attacks. Therefore, it is important to guarantee the robustness of their intelligent components, e.g. neural networks, to protect the system from environment perturbation and adversarial attacks. In this paper, we propose a formal verification technique for rigorously proving the robustness of neural networks. Our approach leverages a tight liner approximation technique and constraint substitution, by which we transform the robustness verification problem into an efficiently solvable linear programming problem. Unlike existing approaches, our approach can automatically generate adversarial examples when a neural network fails to verify. Besides, it is general and applicable to more complex neural network architectures such as CNN, LeNet and ResNet. We implement the approach in a prototype tool called WiNR and evaluate it on extensive benchmarks, including Fashion MNIST, CIFAR10 and GTSRB. Experimental results show that WiNR can verify neural networks that contain over 10 000 neurons on one input image in a minute with a 6.28% probability of false positive on average.
- Is Part Of:
- Computer journal. Volume 65:Number 11(2022)
- Journal:
- Computer journal
- Issue:
- Volume 65:Number 11(2022)
- Issue Display:
- Volume 65, Issue 11 (2022)
- Year:
- 2022
- Volume:
- 65
- Issue:
- 11
- Issue Sort Value:
- 2022-0065-0011-0000
- Page Start:
- 2894
- Page End:
- 2908
- Publication Date:
- 2022-10-01
- Subjects:
- robustness verification -- neural networks -- smart IoT devices -- linear approximation -- adversarial examples
Computers -- Periodicals
005.1 - Journal URLs:
- http://comjnl.oxfordjournals.org/ ↗
http://ukcatalogue.oup.com/ ↗ - DOI:
- 10.1093/comjnl/bxac094 ↗
- Languages:
- English
- ISSNs:
- 0010-4620
- Deposit Type:
- Legaldeposit
- View Content:
- Available online (eLD content is only available in our Reading Rooms) ↗
- Physical Locations:
- British Library DSC - 3394.060000
British Library DSC - BLDSS-3PM
British Library HMNTS - ELD Digital store - Ingest File:
- 24771.xml