Search papers, labs, and topics across Lattice.
Information and Technology, Technical University of Munich, Munich Center for Machine Learning
1
0
2
Challenging the conventional wisdom that strong certified robustness requires heavy partitioning, this work shows how white-box knowledge of base classifiers in partition-aggregation ensembles can yield significantly tighter robustness guarantees against label-flipping attacks with fewer partitions.