-
Interpreting Adversarial Attacks and Defences using Architectures with Enhanced Interpretability
Authors:
Akshay G Rao,
Chandrashekhar Lakshminarayanan,
Arun Rajkumar
Abstract:
Adversarial attacks in deep learning represent a significant threat to the integrity and reliability of machine learning models. Adversarial training has been a popular defence technique against these adversarial attacks. In this work, we capitalize on a network architecture, namely Deep Linearly Gated Networks (DLGN), which has better interpretation capabilities than regular deep network architec…
▽ More
Adversarial attacks in deep learning represent a significant threat to the integrity and reliability of machine learning models. Adversarial training has been a popular defence technique against these adversarial attacks. In this work, we capitalize on a network architecture, namely Deep Linearly Gated Networks (DLGN), which has better interpretation capabilities than regular deep network architectures. Using this architecture, we interpret robust models trained using PGD adversarial training and compare them with standard training. Feature networks in DLGN act as feature extractors, making them the only medium through which an adversary can attack the model. We analyze the feature network of DLGN with fully connected layers with respect to properties like alignment of the hyperplanes, hyperplane relation with PCA, and sub-network overlap among classes and compare these properties between robust and standard models. We also consider this architecture having CNN layers wherein we qualitatively (using visualizations) and quantitatively contrast gating patterns between robust and standard models. We uncover insights into hyperplanes resembling principal components in PGD-AT and STD-TR models, with PGD-AT hyperplanes aligned farther from the data points. We use path activity analysis to show that PGD-AT models create diverse, non-overlapping active subnetworks across classes, preventing attack-induced gating overlaps. Our visualization ideas show the nature of representations learnt by PGD-AT and STD-TR models.
△ Less
Submitted 20 February, 2025;
originally announced February 2025.
-
A novel Artificial Neural Network-based streamline tracing strategy applied to hypersonic waverider design
Authors:
Anagha G Rao,
Umesh Siddarth U S,
Srisha M V Rao
Abstract:
Streamline tracing in conical hypersonic flows is essential for designing high-performance waverider and intake. Conventionally, the streamline equations are solved after obtaining the velocity field from the solution of the axisymmetric conical flow field. The hypersonic waverider shape is generated from the base conical flow field by repeatedly applying the streamline tracing approach along seve…
▽ More
Streamline tracing in conical hypersonic flows is essential for designing high-performance waverider and intake. Conventionally, the streamline equations are solved after obtaining the velocity field from the solution of the axisymmetric conical flow field. The hypersonic waverider shape is generated from the base conical flow field by repeatedly applying the streamline tracing approach along several planes. When exploring the design space for optimization of the waverider, streamline tracing can be computationally expensive. We provide a novel strategy where first the Taylor-Maccoll equations for the inviscid axisymmetric conical flowfield and the streamlines from the shock are solved for a wide range of cone angle and Mach number conditions resulting in an extensive database. The streamlines are parametrized by a third-order polynomial, and an Artificial Neural Network (ANN) is trained to predict the coefficients of the polynomial for arbitrary inputs of Mach number, cone angle, and streamline originating location on the shock . We apply this strategy to design a cone derived waverider and compare the geometry obtained with the standard conical waverider design method and the simplified waverider design method. The ANN technique is highly accurate, with a difference of 0.68% with the standard in the coordinates of the waverider. RANS computations show that the ANN derived waverider does not indicate severe flow spillage at the leading edge, which is observed in the waverider generated from the simplified method. The new ANN-based approach is 20 times faster than the conventional method.
△ Less
Submitted 15 July, 2022;
originally announced July 2022.
-
Generalized Isoscaling of Isotopic Distributions
Authors:
R. Shomin,
M. B. Tsang,
O. Bjarki,
C. K. Gelbke,
G. J. Kunde1,
R. C. Lemmon,
W. G. Lynch,
D. Magestro,
R. Popescu,
A. M. Vandermolen,
G. Verde,
G. D. Westfall,
H. F. Xi,
W. A. Friedman,
G. Imme,
V. Maddalena,
C. Nociforo,
G. Raciti,
G. Riccobene,
F. P. Romano,
A. Saija,
C. Sfienti,
S. Fritz,
C. Gross,
T. Odeh
, et al. (4 additional authors not shown)
Abstract:
Generalized isoscaling relationships are proposed that may permit one to relate the isotopic distributions of systems that may not be at the same temperature. The proposed relationships are applied to multifragmentation excitation functions for central Kr+Nb and Ar+Sc collisions.
Generalized isoscaling relationships are proposed that may permit one to relate the isotopic distributions of systems that may not be at the same temperature. The proposed relationships are applied to multifragmentation excitation functions for central Kr+Nb and Ar+Sc collisions.
△ Less
Submitted 25 September, 2002;
originally announced September 2002.