Authors
Shibani Santurkar, Andrew Ilyas, Dimitris Tsipras, Logan Engstrom, Brandon Tran, Aleksander Madry
Publication date
2019
Journal
Advances in Neural Information Processing Systems
Volume
32
Description
We show that the basic classification framework alone can be used to tackle some of the most challenging tasks in image synthesis. In contrast to other state-of-the-art approaches, the toolkit we develop is rather minimal: it uses a single, off-the-shelf classifier for all these tasks. The crux of our approach is that we train this classifier to be adversarially robust. It turns out that adversarial robustness is precisely what we need to directly manipulate salient features of the input. Overall, our findings demonstrate the utility of robustness in the broader machine learning context.
Total citations
2018201920202021202220232024154554484920
Scholar articles
S Santurkar, A Ilyas, D Tsipras, L Engstrom, B Tran… - Advances in Neural Information Processing Systems, 2019
S Santurkar, D Tsipras, B Tran, A Ilyas, L Engstrom… - arXiv preprint arXiv:1906.09453, 2019