Pith. sign in

REVIEW 1 cited by

On the Need for Topology-Aware Generative Models for Manifold-Based Defenses

Not yet reviewed by Pith; the record is open.

This paper has not been read by Pith yet. Machine review is queued; the pith claim, tier, and objections will appear here once it completes.

SPECIMEN: schema-true, not a live event

T0 review · schema-true

One-sentence machine reading of the paper's core claim.

pith:XXXXXXXX · record.json · timestamp

arxiv 1909.03334 v4 pith:TTFNJY4H submitted 2019-09-07 cs.LG cs.CRstat.ML

classification cs.LGcs.CRstat.ML
keywords defensesadversarialalgorithmsexamplesgenerativemanifold-basedmodelsdata
verification ladder T0 review T1 audit T2 compute T3 formal
0 comments
read the original abstract

Machine-learning (ML) algorithms or models, especially deep neural networks (DNNs), have shown significant promise in several areas. However, researchers have recently demonstrated that ML algorithms, especially DNNs, are vulnerable to adversarial examples (slightly perturbed samples that cause misclassification). The existence of adversarial examples has hindered the deployment of ML algorithms in safety-critical sectors, such as security. Several defenses for adversarial examples exist in the literature. One of the important classes of defenses are manifold-based defenses, where a sample is ``pulled back" into the data manifold before classifying. These defenses rely on the assumption that data lie in a manifold of a lower dimension than the input space. These defenses use a generative model to approximate the input distribution. In this paper, we investigate the following question: do the generative models used in manifold-based defenses need to be topology-aware? We suggest the answer is yes, and we provide theoretical and empirical evidence to support our claim.

Discussion (0). Continue with ORCID to comment.

Forward citations

Cited by 1 Pith paper

Reviewed papers in the Pith corpus that reference this work. Sorted by Pith novelty score. Full citation record

  1. Amortized Inference of Multi-Modal Posteriors using Likelihood-Weighted Normalizing Flows

    cs.LG 2025-12 reject novelty 3.0 of 10

    Training a normalizing flow on prior samples weighted by likelihood can approximate a posterior, but matching the base distribution's number of modes to the target is needed to avoid spurious bridges.

Pith tools