Skip to content

Empirical Robustness Metric Support for all Evasion attacks #1228

Discussion options

You must be logged in to vote

Hi @shreyakhandelwal07 Thank you very much for your question! I have moved your issue to our new Discussion forum.

Yes, empirical_robustness should be applicable to all evasion attacks. The SUPPORTED_METHODS is not exclusive and would need to be adapted by the user. A few drawbacks and reason for caution are that the implementation of empirical_robustness includes the default values for the attacks in SUPPORTED_METHODS which might need adaptations to a specific problem, it does not adapt to models and defences, and it attacks the predictions of the model instead of the stronger attack against true labels. I think these are the main reasons why it has not been updated recently.

Would you b…

Replies: 1 comment

Comment options

You must be logged in to vote
0 replies
Answer selected by beat-buesser
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
question Further information is requested
2 participants
Converted from issue

This discussion was converted from issue #1226 on July 12, 2021 14:07.