#040 - Adversarial Examples (Dr. Nicholas Carlini, Dr. Wieland Brendel, Florian Tramèr)

#040 - Adversarial Examples (Dr. Nicholas Carlini, Dr. Wieland Brendel, Florian Tramèr)

Adversarial examples have attracted significant attention in machine learning, but the reasons for their existence and pervasiveness remain unclear. there's good reason to believe neural networks look at very different features than we would have expected. As articulated in the 2019 "features not bugs" paper Adversarial examples can be directly attributed to the presence of non-robust features: features derived from patterns in the data distribution that are highly predictive, yet brittle and incomprehensible to humans.


Adversarial examples don't just affect deep learning models. A cottage industry has sprung up around Threat Modeling in AI and ML Systems and their dependencies. Joining us this evening are some of currently leading researchers in adversarial examples;


Florian Tramèr - A fifth year PhD student in Computer Science at Stanford University

https://floriantramer.com/​

https://twitter.com/florian_tramer​


Dr. Wieland Brendel - Machine Learning Researcher at the University of Tübingen & Co-Founder of layer7.ai

https://medium.com/@wielandbr​

https://twitter.com/wielandbr​



Dr. Nicholas Carlini - Research scientist at Google Brain working in that exciting space between machine learning and computer security.

https://nicholas.carlini.com/​


We really hope you enjoy the conversation, remember to subscribe!


Yannic Intro [00:00:00​]

Tim Intro [00:04:07​]

Threat Taxonomy [00:09:00​]

Main show intro [00:11:30​]

Whats wrong with Neural Networks? [00:14:52​]

The role of memorization [00:19:51​]

Anthropomorphization of models [00:22:42​]

Whats the harm really though / focusing on actual ML security risks [00:27:03​]

Shortcut learning / OOD generalization [00:36:18​]

Human generalization [00:40:11​]

An existential problem in DL getting the models to learn what we want? [00:41:39​]

Defenses to adversarial examples [00:47:15​]

What if we had all the data and the labels? Still problems? [00:54:28​]

Defenses are easily broken [01:00:24​]

Self deception in academia [01:06:46​]

ML Security [01:28:15​]


https://www.youtube.com/watch?v=2PenK06tvE4

Det här avsnittet är hämtat från ett öppet RSS-flöde och publiceras inte av Podme. Det kan innehålla reklam.

Avsnitt(260)

Stealing Reasoning Traces from Proprietary LLM APIs — Ilia Shumailov & Alexander Panfilov

Stealing Reasoning Traces from Proprietary LLM APIs — Ilia Shumailov & Alexander Panfilov

Tim Scarfe speaks with Ilia Shumailov and Alexander Panfilov about their paper, Stealing Reasoning Traces from Proprietary LLM APIs.The core bug sounds deceptively simple: providers return encrypted r...

22 Aug 49min

Every Exponential Ends — Silicon Valley Forgot — Adam Becker

Every Exponential Ends — Silicon Valley Forgot — Adam Becker

Astrophysicist Adam Becker, author of "What Is Real?", joins Tim Scarfe to take apart the futures Silicon Valley keeps selling: the 2045 singularity, mind uploading, Mars colonies, and the AI apocalyp...

20 Aug 1h 18min

AI Is Learning at the Wrong Level of Abstraction — Matthieu Wyart

AI Is Learning at the Wrong Level of Abstraction — Matthieu Wyart

This episode is sponsored by Notion. Learn more about Notion's Developer Platform today at https://notion.com/mlstWhy can deep networks discover abstractions that shallow models miss? Statistical phys...

10 Aug 1h 18min

How Researchers Test AI for Hidden Goals — Apollo Research

How Researchers Test AI for Hidden Goals — Apollo Research

Can an AI do the right thing for the wrong reason? Tim Scarfe speaks with Apollo Research’s Alexander Meinke, Axel Højmark and Jérémy Scheurer about Measuring Reward-Seeking via Contrastive Belief Upd...

31 Juli 1h 18min

Why a Nation Can't Outsource Its Frontier AI - Alistair Pullen (Cosine AI)

Why a Nation Can't Outsource Its Frontier AI - Alistair Pullen (Cosine AI)

This episode is sponsored by Notion. Learn more about Notion's Developer Platform today at https://notion.com/mlstBritain's most capable coding model can't be exported, and that ban is the whole reaso...

13 Juli 55min

 The Benchmark With No Instructions — ARC-AGI-3 (winning team!)

The Benchmark With No Instructions — ARC-AGI-3 (winning team!)

Tim Scarfe travels to Zurich to sit down with the Tufa Labs ARC-AGI-3 team — founder Benjamin Crouzier, with Jeroen Cottaar, Dries Smit, Stefano Viel and Michal Tesnar — to work out what their leaderb...

1 Juli 1h 24min

The Thermodynamic AI Computing Chip - Thomas Ahle

The Thermodynamic AI Computing Chip - Thomas Ahle

Thomas Ahle wants Normal Computing to be the Lovable for chip design: type your intent, and a swarm of agents carries it from design through optimisation, formalisation and verification to tape-out. T...

28 Juni 1h 2min

He won a Nobel here for AlphaFold. Then he left. - John Jumper

He won a Nobel here for AlphaFold. Then he left. - John Jumper

This episode is sponsored by Notion. Learn more about Notion's Developer Platform today at https://notion.com/mlstProtein folding stalled biology for fifty years. A sequence of amino acids dictates a ...

22 Juni 53min

Populärt inom Teknik

uppgang-och-fall
market-makers
rss-elektrikerpodden
 och-bilen-gar-bra
rss-laddstationen-med-elbilen-i-sverige
bli-saker-podden
rss-technokratin
rss-en-ai-till-kaffet
rss-uppgang-och-fall
skogsforum-podcast
hej-bruksbil
gubbar-som-tjotar-om-bilar
bilar-med-sladd
rss-milpodden
natets-morka-sida
klocksnack-tillsammans-med-nymans-ur-1851
rss-fabriken-2
rss-veckans-ai
elbilsveckan
developers-mer-an-bara-kod