Search papers, labs, and topics across Lattice.
Information and Technology
1
0
2
Challenging the conventional wisdom that strong certified robustness requires heavy partitioning, this work shows how white-box knowledge of base classifiers in partition-aggregation ensembles can yield significantly tighter robustness guarantees against label-flipping attacks with fewer partitions.