[edit]
Understanding Measures of Uncertainty for Adversarial Example Detection
Proceedings of the 34th Conference on Uncertainty in Artificial Intelligence, PMLR R16:559-568, 2018.
Abstract
Measuring uncertainty is a promising technique for detecting adversarial examples, crafted in- puts on which the model predicts an incorrect class with high confidence. There are various measures of uncertainty, including predictive entropy and mutual information, each capturing distinct types of uncertainty. We study these measures, and shed light on why mutual infor- mation seems to be effective at the task of adver- sarial example detection. We highlight failure modes for MC dropout, a widely used approach for estimating uncertainty in deep models. This leads to an improved understanding of the draw- backs of current methods, and a proposal to im- prove the quality of uncertainty estimates using probabilistic model ensembles. We give illustra- tive experiments using MNIST to demonstrate the intuition underlying the different measures of uncertainty, as well as experiments on a real- world Kaggle dogs vs cats classification dataset.