Invention Grant
- Patent Title: Systems and methods for increasing robustness of machine-learned models and other software systems against adversarial attacks
-
Application No.: US16262178Application Date: 2019-01-30
-
Publication No.: US11263323B2Publication Date: 2022-03-01
- Inventor: Pedro Gonnet Anders , Philippe Gervais
- Applicant: Google LLC
- Applicant Address: US CA Mountain View
- Assignee: Google LLC
- Current Assignee: Google LLC
- Current Assignee Address: US CA Mountain View
- Agency: Dority & Manning, P.A.
- Main IPC: G06F21/56
- IPC: G06F21/56 ; G06N20/00 ; G06K9/62

Abstract:
The present disclosure provides systems and methods that reduce vulnerability of software systems (e.g., machine-learned models) to adversarial attacks by increasing variety within the software system. In particular, a software system can include a number of subcomponents that interoperate using predefined interfaces. To increase variety within the software system, multiple, different versions of one or more of the subcomponents of the software system can be generated. In particular, the different versions of the subcomponent(s) can be different from each other in some way, while still remaining functionally equivalent (e.g., able to perform the same functions with comparable accuracy/success). A plurality of different variants of the software system can be constructed by mixing and matching different versions of the subcomponents. A large amount of variety can be exhibited by the variants of the software system deployed at a given time, thereby leading to increased robustness against adversarial attacks.
Information query