{"id":994,"date":"2020-07-20T05:21:46","date_gmt":"2020-07-20T05:21:46","guid":{"rendered":"https:\/\/kukan-joho.plus\/?p=994"},"modified":"2024-04-30T08:43:14","modified_gmt":"2024-04-30T08:43:14","slug":"adversarial-example","status":"publish","type":"post","link":"https:\/\/club.informatix.co.jp\/?p=994","title":{"rendered":"AI\u3092\u3060\u307e\u3059!? \u6575\u5bfe\u7684\u30b5\u30f3\u30d7\u30eb\uff08Adversarial Example\uff09\u3068\u306f\uff5c\u8aa4\u8a8d\u8b58\u306e\u4f8b\u30fb\u5bfe\u51e6\u6cd5"},"content":{"rendered":"<p>\u3053\u3093\u306b\u3061\u306f\u3001<a href=\"https:\/\/www.informatix.co.jp\/\" target=\"_blank\" rel=\"noopener noreferrer\">\u30a4\u30f3\u30d5\u30a9\u30de\u30c6\u30a3\u30af\u30b9<\/a>\u3067\u6a5f\u68b0\u5b66\u7fd2\u7cfb\u306e\u696d\u52d9\u3092\u62c5\u5f53\u3057\u3066\u3044\u308b\u5927\u6a4b\u3067\u3059\u3002<\/p>\n<p>\u4eca\u56de\u304b\u3089\u4e0d\u5b9a\u671f\u3067\u306f\u3042\u308a\u307e\u3059\u304c\u3001\u305d\u306e\u6642\u3005\u3067\u6c17\u306b\u306a\u3063\u305f\u8ad6\u6587\u3084\u6280\u8853\u3092\u7d39\u4ecb\u3057\u3066\u3044\u3053\u3046\u3068\u601d\u3044\u307e\u3059\u3002<\/p>\n<p>\u4eca\u56de\u306f\u30cb\u30e5\u30fc\u30e9\u30eb\u30cd\u30c3\u30c8\u30ef\u30fc\u30af\u306e\u8106\u5f31\u6027\u304c\u30c6\u30fc\u30de\u3067\u3059\u3002\u8106\u5f31\u6027\u306b\u95a2\u9023\u3059\u308b\u6575\u5bfe\u7684\u30b5\u30f3\u30d7\u30eb\uff08Adversarial Example\uff09\u3068\u306f\u4f55\u306a\u306e\u304b\u3092\u6982\u89b3\u3057\u305f\u3044\u3068\u601d\u3044\u307e\u3059\u3002<\/p>\n<div id=\"ez-toc-container\" class=\"ez-toc-v2_0_82_2 counter-hierarchy ez-toc-counter ez-toc-grey ez-toc-container-direction\">\n<p class=\"ez-toc-title\" style=\"cursor:inherit\">\u76ee\u6b21<\/p>\n<label for=\"ez-toc-cssicon-toggle-item-69f64148396bb\" class=\"ez-toc-cssicon-toggle-label\"><span class=\"\"><span class=\"eztoc-hide\" style=\"display:none;\">Toggle<\/span><span class=\"ez-toc-icon-toggle-span\"><svg style=\"fill: #999;color:#999\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" class=\"list-377408\" width=\"20px\" height=\"20px\" viewBox=\"0 0 24 24\" fill=\"none\"><path d=\"M6 6H4v2h2V6zm14 0H8v2h12V6zM4 11h2v2H4v-2zm16 0H8v2h12v-2zM4 16h2v2H4v-2zm16 0H8v2h12v-2z\" fill=\"currentColor\"><\/path><\/svg><svg style=\"fill: #999;color:#999\" class=\"arrow-unsorted-368013\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" width=\"10px\" height=\"10px\" viewBox=\"0 0 24 24\" version=\"1.2\" baseProfile=\"tiny\"><path d=\"M18.2 9.3l-6.2-6.3-6.2 6.3c-.2.2-.3.4-.3.7s.1.5.3.7c.2.2.4.3.7.3h11c.3 0 .5-.1.7-.3.2-.2.3-.5.3-.7s-.1-.5-.3-.7zM5.8 14.7l6.2 6.3 6.2-6.3c.2-.2.3-.5.3-.7s-.1-.5-.3-.7c-.2-.2-.4-.3-.7-.3h-11c-.3 0-.5.1-.7.3-.2.2-.3.5-.3.7s.1.5.3.7z\"\/><\/svg><\/span><\/span><\/label><input type=\"checkbox\"  id=\"ez-toc-cssicon-toggle-item-69f64148396bb\" checked aria-label=\"Toggle\" \/><nav><ul class='ez-toc-list ez-toc-list-level-1 ' ><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-1\" href=\"https:\/\/club.informatix.co.jp\/?p=994\/#%E6%95%B5%E5%AF%BE%E7%9A%84%E3%82%B5%E3%83%B3%E3%83%97%E3%83%AB%EF%BC%88Adversarial_Example%EF%BC%89%E3%81%A8%E3%81%AF\" >\u6575\u5bfe\u7684\u30b5\u30f3\u30d7\u30eb\uff08Adversarial Example\uff09\u3068\u306f<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-2\" href=\"https:\/\/club.informatix.co.jp\/?p=994\/#%E6%95%B5%E5%AF%BE%E7%9A%84%E3%82%B5%E3%83%B3%E3%83%97%E3%83%AB%EF%BC%88Adversarial_Example%EF%BC%89%E3%81%AE%E3%83%AC%E3%82%B7%E3%83%94\" >\u6575\u5bfe\u7684\u30b5\u30f3\u30d7\u30eb\uff08Adversarial Example\uff09\u306e\u30ec\u30b7\u30d4<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-3\" href=\"https:\/\/club.informatix.co.jp\/?p=994\/#%E5%85%B7%E4%BD%93%E4%BE%8B\" >\u5177\u4f53\u4f8b<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-4\" href=\"https:\/\/club.informatix.co.jp\/?p=994\/#%E5%AF%BE%E5%87%A6%E6%B3%95\" >\u5bfe\u51e6\u6cd5<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-5\" href=\"https:\/\/club.informatix.co.jp\/?p=994\/#%E3%81%8A%E3%82%8F%E3%82%8A%E3%81%AB\" >\u304a\u308f\u308a\u306b<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-6\" href=\"https:\/\/club.informatix.co.jp\/?p=994\/#%E5%8F%82%E8%80%83%E6%96%87%E7%8C%AE\" >\u53c2\u8003\u6587\u732e<\/a><\/li><\/ul><\/nav><\/div>\n\n<h2><span class=\"ez-toc-section\" id=\"%E6%95%B5%E5%AF%BE%E7%9A%84%E3%82%B5%E3%83%B3%E3%83%97%E3%83%AB%EF%BC%88Adversarial_Example%EF%BC%89%E3%81%A8%E3%81%AF\"><\/span>\u6575\u5bfe\u7684\u30b5\u30f3\u30d7\u30eb\uff08Adversarial Example\uff09\u3068\u306f<span class=\"ez-toc-section-end\"><\/span><\/h2>\n<p>\u8fd1\u5e74\u3001\u30c7\u30a3\u30fc\u30d7\u30cb\u30e5\u30fc\u30e9\u30eb\u30cd\u30c3\u30c8\u30ef\u30fc\u30af\uff08\u4ee5\u4e0b\u3001DNN\uff09\u3068\u547c\u3070\u308c\u308b\u6280\u8853\u304c\u753b\u50cf\u51e6\u7406\u306e\u5206\u91ce\u3067\u76ee\u899a\u307e\u3057\u3044\u9032\u6b69\u3092\u9042\u3052\u3066\u3044\u307e\u3059\u3002<\/p>\n<p>\u7279\u306b\u753b\u50cf\u306e\u4e2d\u306b\u5199\u3063\u3066\u3044\u308b\u3082\u306e\u3092\u8b58\u5225\u3059\u308b\u30bf\u30b9\u30af\u306b\u304a\u3044\u3066\u306f\u3001\u4eba\u9593\u306e\u8b58\u5225\u7cbe\u5ea6\u3092\u8d85\u3048\u3066\u4e45\u3057\u3044\u3067\u3059\u3002<\/p>\n<p>DNN\u306f\u305d\u308c\u4ee5\u524d\u306e\u624b\u6cd5\u3068\u6bd4\u3079\u3066\u5224\u5225\u7cbe\u5ea6\u306f\u9ad8\u3044\u306e\u3067\u3059\u304c\u3001\u305d\u306e\u69cb\u9020\u304c\u8907\u96d1\u306a\u305f\u3081\u6b63\u3057\u304f\u5b66\u7fd2\u3067\u304d\u3066\u3044\u308b\u306e\u304b\u306f\u3088\u304f\u5206\u304b\u3063\u3066\u3044\u307e\u305b\u3093\u3002<\/p>\n<p>\u5b66\u7fd2\u6e08\u307f\u306eDNN\u306e\u6027\u8cea\u3092\u8a73\u7d30\u306b\u8abf\u3079\u3066\u307f\u308b\u3068\u3001\u671f\u5f85\u306b\u53cd\u3059\u308b\u6027\u8cea\u3092\u6301\u3064\u3053\u3068\u304c\u5206\u304b\u308a\u307e\u3057\u305f\u3002\u76f4\u89b3\u7684\u306b\u306f\u5165\u529b\u753b\u50cf\u306b\u5fae\u5c0f\u306e\u6442\u52d5\u3092\u52a0\u3048\u305f\u3068\u3057\u3066\u3082\u3001\u4e88\u6e2c\u7d50\u679c\u306f\u5909\u5316\u3057\u306a\u3044\u3068\u671f\u5f85\u3057\u307e\u3059\u3002<\/p>\n<p>\u3057\u304b\u3057\u3001\u5fae\u5c0f\u306e\u6442\u52d5\uff08\u305b\u3064\u3069\u3046\uff1a\u5909\u5316\u3001\u652a\u4e71\uff09\u3092\u52a0\u3048\u305f\u3060\u3051\u3067\u8aa4\u3063\u305f\u4e88\u6e2c\u3092\u3057\u3066\u3057\u307e\u3044\u3001\u307e\u305f\u305d\u308c\u304c\u666e\u904d\u7684\u306a\u6027\u8cea\u3067\u3042\u308b\u3053\u3068\u304c\u660e\u3089\u304b\u306b\u306a\u308a\u307e\u3057\u305f\u3002<\/p>\n<p>\u3053\u306e\u3088\u3046\u306a\u3001\u5165\u529b\u306b\u5fae\u5c0f\u306a\u6442\u52d5\u3092\u52a0\u3048\u3066\u3001\u5b66\u7fd2\u6e08\u307f\u306eDNN\u306b\u8aa4\u3063\u305f\u4e88\u6e2c\u3092\u3055\u305b\u308b\u3082\u306e\u306e\u3053\u3068\u3092\u6575\u5bfe\u7684\u30b5\u30f3\u30d7\u30eb\uff08Adversarial Example\uff09\u3068\u547c\u3073\u307e\u3059\u3002<\/p>\n<p>DNN\u3092\u73fe\u5b9f\u4e16\u754c\u306b\u5fdc\u7528\u3057\u3088\u3046\u3068\u3057\u305f\u6642\u3001\u6575\u5bfe\u7684\u30b5\u30f3\u30d7\u30eb\u306f\u8105\u5a01\u3068\u306a\u308a\u307e\u3059\u3002\u4f8b\u3048\u3070\u81ea\u52d5\u904b\u8ee2\u306e\u5834\u5408\u3001\u6a19\u8b58\u306b\u3061\u3087\u3063\u3068\u6c5a\u308c\u304c\u3064\u3044\u3066\u3044\u305f\u3060\u3051\u3067\u8aa4\u8a8d\u8b58\u3057\u4e8b\u6545\u3092\u8d77\u3053\u3059\u53ef\u80fd\u6027\u304c\u3042\u308b\u304b\u3089\u3067\u3059\u3002<\/p>\n<p>\u533b\u7642\u306e\u73fe\u5834\u306e\u5834\u5408\u3001\u4e9b\u7d30\u306a\u64ae\u5f71\u6761\u4ef6\u306e\u9055\u3044\u3067\u91cd\u5927\u306a\u75be\u60a3\u3092\u898b\u843d\u3068\u3059\u53ef\u80fd\u6027\u3082\u3042\u308a\u307e\u3059\u3002\u307e\u305f\u3001\u3053\u306e\u3088\u3046\u306a\u8106\u5f31\u6027\u3092\u3064\u3044\u3066\u653b\u6483\u3055\u308c\u308b\u304a\u305d\u308c\u3082\u3042\u308a\u307e\u3059\u3002\u305d\u306e\u305f\u3081\u73fe\u5728\u3001\u6d3b\u767a\u306b\u7814\u7a76\u3055\u308c\u3066\u3044\u308b\u5206\u91ce\u3067\u3059\u3002<\/p>\n<h2><span class=\"ez-toc-section\" id=\"%E6%95%B5%E5%AF%BE%E7%9A%84%E3%82%B5%E3%83%B3%E3%83%97%E3%83%AB%EF%BC%88Adversarial_Example%EF%BC%89%E3%81%AE%E3%83%AC%E3%82%B7%E3%83%94\"><\/span>\u6575\u5bfe\u7684\u30b5\u30f3\u30d7\u30eb\uff08Adversarial Example\uff09\u306e\u30ec\u30b7\u30d4<span class=\"ez-toc-section-end\"><\/span><\/h2>\n<p>\u6575\u5bfe\u7684\u30b5\u30f3\u30d7\u30eb\u306fDNN\u306b\u9593\u9055\u3063\u305f\u4e88\u6e2c\u3092\u3055\u305b\u308b\u6442\u52d5\u3092\u52a0\u3048\u305f\u3082\u306e\u3067\u3059\u3002\u3064\u307e\u308a\u3001\u2460\u6b63\u89e3\u4ee5\u5916\u306e\u7279\u5b9a\u306e\u30e9\u30d9\u30eb\u306b\u8aa4\u8a8d\u8b58\u3059\u308b\u3088\u3046\u306a\u6700\u5c0f\u306e\u6442\u52d5\u3092\u52a0\u3048\u308b\u3001\u3082\u3057\u304f\u306f\u2461\u6b63\u89e3\u30e9\u30d9\u30eb\u306e\u4e88\u6e2c\u8aa4\u5dee\u3092\u6700\u5927\u5316\u3055\u305b\u308b\u6442\u52d5\u3092\u63a2\u305b\u3070\u3088\u3044\u3053\u3068\u306b\u306a\u308a\u307e\u3059\u3002<\/p>\n<p>\u2460\u306f\u6570\u5f0f\u3067\u8868\u73fe\u3059\u308b\u3068\u3001\\(f\\)\u3092DNN\u3001\\(J\\)\u3092DNN\u306e\u640d\u5931\u95a2\u6570\u3001\\(\\theta\\)\u3092DNN\u306e\u30d1\u30e9\u30e1\u30fc\u30bf\u3001\\(x\\)\u3092\u5165\u529b\u753b\u50cf\u3001\\(r\\)\u3092\u5165\u529b\u753b\u50cf\u306b\u5bfe\u3059\u308b\u6442\u52d5\u3001\\(y^{\\prime}\\)\u306f\\(x\\)\u306e\u6b63\u89e3\u3068\u306f\u7570\u306a\u308b\u30e9\u30d9\u30eb\u3068\u3059\u308b\u3068\\(f(x+r)=y^{\\prime}\\)\u3092\u6e80\u305f\u3057\u3064\u3064\\(|r|\\)\u3092\u6700\u5c0f\u5316\u3055\u305b\u308b\u3053\u3068\u306b\u306a\u308a\u307e\u3059\u3002<\/p>\n<p>[1]\u3067\u306f\u3053\u306e\u554f\u984c\u3092box-constrained L-BFGS\u3068\u3044\u3046\u624b\u6cd5\u3092\u7528\u3044\u3066\u304a\u308a\u3001\u4ee5\u4e0b\u306e\u95a2\u6570\u3092\\(r\\)\u306b\u95a2\u3057\u3066\u6700\u5c0f\u5316\u3059\u308b\u554f\u984c\u3068\u3057\u3066\u8fd1\u4f3c\u7684\u306b\u89e3\u3044\u3066\u3044\u307e\u3059\u3002<\/p>\n<p>$$c|r|+J(\\theta,x+r,y^{\\prime})$$<\/p>\n<p>\u3053\u3053\u3067\\(c\\)\u306f\u6b63\u306e\u5b9a\u6570\u3067\u3059\u3002\u3053\u306e\u65b9\u6cd5\u3092\u7528\u3044\u308b\u3068\u3001\u308f\u305a\u304b\u306a\u6442\u52d5\u3092\u52a0\u3048\u308b\u3060\u3051\u3067DNN\u3092100%\u8aa4\u8a8d\u8b58\u3055\u305b\u308b\u3053\u3068\u304c\u53ef\u80fd\u3067\u3059\uff08\u8a73\u7d30\u306f[1]\u53c2\u7167\uff09\u3002<\/p>\n<p>\u2461\u306f\u6570\u5f0f\u3067\u8868\u73fe\u3059\u308b\u3068\u4ee5\u4e0b\u306e\u6442\u52d5\\(r\\)\u3092\u4e0e\u3048\u308b\u3053\u3068\u306b\u306a\u308a\u307e\u3059\u3002\u8868\u8a18\u306f\u2460\u3068\u540c\u69d8\u3067\u3059\u3002<\/p>\n<p>$$r =\\epsilon \\nabla_{x} J(\\theta,x,y)$$<\/p>\n<p>\u3053\u3053\u3067\\(\\epsilon\\)\u306f\u6b63\u306e\u5fae\u5c0f\u5b9a\u6570\u3001\\(y\\)\u306f\\(x\\)\u306e\u6b63\u89e3\u30e9\u30d9\u30eb\u3067\u3059\u3002\\(\\epsilon\\)\u304c\u6b63\u306e\u305f\u3081\u4e0a\u5f0f\u304c\u640d\u5931\u3092\u5927\u304d\u3059\u308b\u65b9\u5411\u306b\u306a\u308a\u307e\u3059\u3002\u8ca0\u306e\u5834\u5408\u306fDNN\u306e\u8a13\u7df4\u6642\u540c\u69d8\u3001\u640d\u5931\u304c\u5c0f\u3055\u304f\u306a\u308b\u65b9\u5411\u306b\u306a\u308a\u307e\u3059\u3002<\/p>\n<p>[2]\u3067\u306f\u3001&#8221;fast gradient sign method&#8221;\u3068\u3057\u3066\u4ee5\u4e0b\u306e\u6442\u52d5\u3092\u52a0\u3048\u3066\u3044\u307e\u3059\u3002<\/p>\n<p>$$r =\\epsilon \\mathrm{sgn} ( \\nabla_{x} J(\\theta,x,y) )$$<\/p>\n<p>\u3053\u306e\u65b9\u6cd5\u3067\u3082\u5927\u534a\u306e\u5165\u529b\u306b\u5bfe\u3057\u3066DNN\u3092\u8aa4\u8a8d\u8b58\u3055\u305b\u308b\u3053\u3068\u304c\u53ef\u80fd\u3067\u3059\u3002\uff08\u8a73\u7d30\u306f[2]\u53c2\u7167\uff09<\/p>\n<h2><span class=\"ez-toc-section\" id=\"%E5%85%B7%E4%BD%93%E4%BE%8B\"><\/span>\u5177\u4f53\u4f8b<span class=\"ez-toc-section-end\"><\/span><\/h2>\n<p>\u3053\u308c\u307e\u3067\u89e3\u8aac\u3057\u3066\u304d\u305f\u6575\u5bfe\u7684\u30b5\u30f3\u30d7\u30eb\u306e\u5177\u4f53\u4f8b\u3092\u3044\u304f\u3064\u304b\u7d39\u4ecb\u3057\u307e\u3059\u3002<\/p>\n<p>\u4ee5\u4e0b\u306f\u2460\u306e\u65b9\u6cd5\u3067\u751f\u6210\u3055\u308c\u305f\u3001AlexNet\u306b\u5bfe\u3057\u3066\u306e\u6575\u5bfe\u7684\u30b5\u30f3\u30d7\u30eb\u3067\u3059\u3002\u5de6\u304c\u6b63\u3057\u304f\u4e88\u6e2c\u3055\u308c\u305f\u753b\u50cf\u3001\u771f\u4e2d\u304c\u52a0\u3048\u305f\u6442\u52d5\uff08\u309210\u500d\u306b\u5897\u5e45\u3055\u305b\u305f\u3082\u306e\uff09\u3001\u53f3\u304c\u8aa4\u8a8d\u8b58\u3055\u308c\u305f\u753b\u50cf\u3067\u3059\u3002<\/p>\n<p>\u53f3\u306e\u753b\u50cf\u306f\u3059\u3079\u3066\u30c0\u30c1\u30e7\u30a6\u3068\u8aa4\u8a8d\u8b58\u3055\u308c\u3066\u3044\u307e\u3059\u3002<\/p>\n<p><span class=\"photoline\"><span class=\"photoline\"><img decoding=\"async\" class=\"wp-image-1086 aligncenter\" src=\"https:\/\/club.informatix.co.jp\/wp-content\/uploads\/2020-p\/07\/\u7121\u984c-300x110.png\" alt=\"\" width=\"728\" height=\"267\" \/><\/span><\/span><\/p>\n<p style=\"text-align: right;\">\u53c2\u8003\u6587\u732e[1]\u3088\u308a\u5f15\u7528<\/p>\n<p>\u307e\u305f\u4ee5\u4e0b\u306f\u2461\u306e\u65b9\u6cd5\u3067\u751f\u6210\u3055\u308c\u305f\u3001GoogLeNet\u306b\u5bfe\u3059\u308b\u6575\u5bfe\u7684\u30b5\u30f3\u30d7\u30eb\u3067\u3059\u3002\u5de6\u304c\u6b63\u3057\u304f\u4e88\u6e2c\u3055\u308c\u305f\u753b\u50cf\u3001\u771f\u4e2d\u304c\u52a0\u3048\u305f\u6442\u52d5\u3001\u53f3\u304c\u8aa4\u8a8d\u8b58\u3055\u308c\u305f\u753b\u50cf\u3067\u3059\u3002<\/p>\n<p>\u3053\u306e\u4f8b\u3067\u306f\u30d1\u30f3\u30c0\u304c\u30c6\u30ca\u30ac\u30b6\u30eb\u3068\u8aa4\u8a8d\u8b58\u3055\u308c\u3066\u3044\u307e\u3059\u3002<\/p>\n<p><span class=\"photoline\"><img decoding=\"async\" class=\"wp-image-1087 aligncenter\" src=\"https:\/\/club.informatix.co.jp\/wp-content\/uploads\/2020-p\/07\/\u7121\u984c-1-300x116.png\" alt=\"\" width=\"525\" height=\"203\" \/><\/span><\/p>\n<p style=\"text-align: right;\">\u53c2\u8003\u6587\u732e[2]\u3088\u308a\u5f15\u7528<\/p>\n<p>\u8aa4\u8a8d\u8b58\u3055\u308c\u305f\u753b\u50cf\u306f\u3001\u4eba\u9593\u304c\u898b\u308c\u3070\u9055\u3044\u306f\u307b\u3068\u3093\u3069\u3042\u308a\u307e\u305b\u3093\u3002\u3053\u306e\u7a0b\u5ea6\u306e\u5909\u5316\u3067DNN\u304c\u8aa4\u8a8d\u8b58\u3059\u308b\u306e\u306f\u9a5a\u304d\u3067\u3059\u306d\u3002<\/p>\n<h2><span class=\"ez-toc-section\" id=\"%E5%AF%BE%E5%87%A6%E6%B3%95\"><\/span>\u5bfe\u51e6\u6cd5<span class=\"ez-toc-section-end\"><\/span><\/h2>\n<p>\u3053\u306e\u3088\u3046\u306a\u5fae\u5c0f\u306a\u5909\u5316\u3067DNN\u304c\u8aa4\u8a8d\u8b58\u3057\u3066\u3057\u307e\u3046\u306e\u306f\u3001\u73fe\u5b9f\u306b\u5fdc\u7528\u3059\u308b\u969b\u306b\u306f\u5927\u304d\u306a\u8ab2\u984c\u3068\u306a\u308a\u307e\u3059\u3002\u7279\u306b\u81ea\u52d5\u904b\u8ee2\u3084\u533b\u7642\u306e\u69d8\u306b\u9593\u9055\u3044\u304c\u91cd\u5927\u306a\u640d\u5bb3\u3092\u3082\u305f\u3089\u3059\u305f\u3081\u6df1\u523b\u306a\u554f\u984c\u3067\u3059\u3002<\/p>\n<p>\u73fe\u5728\u3067\u3082\u3053\u306e\u3088\u3046\u306aDNN\u3092\u8aa4\u8a8d\u8b58\u3055\u305b\u308b\u5165\u529b\u306b\u5bfe\u3059\u308b\u5b8c\u5168\u306a\u5bfe\u51e6\u6cd5\u306f\u7121\u3044\u3088\u3046\u306b\u601d\u3044\u307e\u3059\u304c\u3001[1][2]\u3067\u306f\u30aa\u30ea\u30b8\u30ca\u30eb\u306e\u30c7\u30fc\u30bf\u306b\u6575\u5bfe\u7684\u30b5\u30f3\u30d7\u30eb\u3092\u6df7\u305c\u3066\u30c8\u30ec\u30fc\u30cb\u30f3\u30b0\u3059\u308b\u3053\u3068\u3067\u3001\u5b8c\u5168\u3067\u306f\u306a\u3044\u3067\u3059\u304c\u6575\u5bfe\u7684\u30b5\u30f3\u30d7\u30eb\u306b\u5bfe\u3059\u308b\u5805\u7262\u6027\u304c\u5411\u4e0a\u3059\u308b\u3053\u3068\u304c\u5831\u544a\u3055\u308c\u3066\u3044\u307e\u3059\u3002<\/p>\n<h2><span class=\"ez-toc-section\" id=\"%E3%81%8A%E3%82%8F%E3%82%8A%E3%81%AB\"><\/span>\u304a\u308f\u308a\u306b<span class=\"ez-toc-section-end\"><\/span><\/h2>\n<p>\u4eca\u56de\u306f\u6575\u5bfe\u7684\u30b5\u30f3\u30d7\u30eb\uff08Adversarial Example\uff09\u306b\u3064\u3044\u3066\u7c21\u5358\u306b\u7d39\u4ecb\u3057\u307e\u3057\u305f\u3002<\/p>\n<p>DNN\u306f\u7528\u610f\u3057\u305f\u30c7\u30fc\u30bf\u306e\u4e2d\u3067\u306f\u9ad8\u7cbe\u5ea6\u3092\u305f\u305f\u304d\u51fa\u305b\u305f\u3068\u3057\u3066\u3082\u3001\u5fae\u5c0f\u306a\u6442\u52d5\u3092\u52a0\u3048\u305f\u3060\u3051\u3067\u8aa4\u8a8d\u8b58\u3057\u3066\u3057\u307e\u3046\u5834\u5408\u304c\u3042\u308b\u3068\u3044\u3046\u5185\u5bb9\u306e\u8a18\u4e8b\u3067\u3057\u305f\u3002<\/p>\n<p>\u3053\u3053\u3067\u306f\u8ad6\u6587\u306e\u8981\u65e8\u306e\u307f\u3092\u7d39\u4ecb\u3057\u307e\u3057\u305f\u306e\u3067\u3001\u8a73\u7d30\u304c\u6c17\u306b\u306a\u3063\u305f\u65b9\u306f\u4ee5\u4e0b\u306b\u6319\u3052\u305f\u53c2\u8003\u6587\u732e\u3092\u53c2\u7167\u3057\u3066\u307f\u3066\u304f\u3060\u3055\u3044\u3002<\/p>\n<div class=\"st-header-flexwrap\" style=\"height: auto; width: 100%; box-sizing: border-box; background-color: #efefef; border-radius: 5px; border: solid #ccc 1px; padding: 20px; margin-bottom: 0px;\">\n<div class=\"st-header-flexbox\">\n<p class=\"st-header-flextitle\" style=\"font-size: 110%; color: #000;\">\u7269\u4f53\u691c\u51fa\u306a\u3069AI\u6a5f\u68b0\u5b66\u7fd2\u3092\u6d3b\u7528\u3057\u305f\u30b7\u30b9\u30c6\u30e0\u306e\u69cb\u7bc9\u306b\u95a2\u3059\u308b\u3054\u76f8\u8ac7\uff08\u7121\u6599\uff09\u3092\u627f\u3063\u3066\u3044\u307e\u3059<\/p>\n<p><span class=\"st-mybtn st-mybtn-mini\"><a style=\"background: #01579b; border-radius: 5px; font-weight: normal; color: #fff; box-shadow: 0 3px 0 #01579b;\" href=\"https:\/\/www.informatix.co.jp\/contact-us\/\" target=\"_blank\" rel=\"noopener\">\u304a\u6c17\u8efd\u306b\u304a\u554f\u3044\u5408\u308f\u305b\u304f\u3060\u3055\u3044<i class=\"fa fa-after fa-angle-right st-css-no\" aria-hidden=\"true\"><\/i><\/a><\/span><\/p>\n<\/div>\n<\/div>\n<p>&nbsp;<\/p>\n<h2><span class=\"ez-toc-section\" id=\"%E5%8F%82%E8%80%83%E6%96%87%E7%8C%AE\"><\/span>\u53c2\u8003\u6587\u732e<span class=\"ez-toc-section-end\"><\/span><\/h2>\n<p>[1]Szegedy, C., Zaremba, W., Sutskever, I., Bruna, J., Erhan, D., Goodfellow, I.J., &amp; Fergus, R. (2014). Intriguing properties of neural networks. ,arXiv:1312.6199.<\/p>\n<p>[2]Goodfellow, I.J., Shlens, J., &amp; Szegedy, C. (2015). Explaining and Harnessing Adversarial Examples.\u00a0<em>,arXiv:1412.6572<\/em>.<br \/>\n<\/p>\n","protected":false},"excerpt":{"rendered":"<p>\u3053\u3093\u306b\u3061\u306f\u3001\u30a4\u30f3\u30d5\u30a9\u30de\u30c6\u30a3\u30af\u30b9\u3067\u6a5f\u68b0\u5b66\u7fd2\u7cfb\u306e\u696d\u52d9\u3092\u62c5\u5f53\u3057\u3066\u3044\u308b\u5927\u6a4b\u3067\u3059\u3002 \u4eca\u56de\u304b\u3089\u4e0d\u5b9a\u671f\u3067\u306f\u3042\u308a\u307e\u3059\u304c\u3001\u305d\u306e\u6642\u3005\u3067\u6c17\u306b\u306a\u3063\u305f\u8ad6\u6587\u3084\u6280\u8853\u3092\u7d39\u4ecb\u3057\u3066\u3044\u3053\u3046\u3068\u601d\u3044\u307e\u3059\u3002 \u4eca\u56de\u306f\u30cb\u30e5\u30fc\u30e9\u30eb\u30cd\u30c3\u30c8\u30ef\u30fc\u30af\u306e\u8106\u5f31\u6027 &#8230; <\/p>\n","protected":false},"author":11,"featured_media":11252,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[589,4],"tags":[594],"class_list":["post-994","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-ai","category-4","tag-594"],"jetpack_featured_media_url":"https:\/\/club.informatix.co.jp\/wp-content\/uploads\/2020\/11\/20200720.png","_links":{"self":[{"href":"https:\/\/club.informatix.co.jp\/index.php?rest_route=\/wp\/v2\/posts\/994","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/club.informatix.co.jp\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/club.informatix.co.jp\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/club.informatix.co.jp\/index.php?rest_route=\/wp\/v2\/users\/11"}],"replies":[{"embeddable":true,"href":"https:\/\/club.informatix.co.jp\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=994"}],"version-history":[{"count":19,"href":"https:\/\/club.informatix.co.jp\/index.php?rest_route=\/wp\/v2\/posts\/994\/revisions"}],"predecessor-version":[{"id":19964,"href":"https:\/\/club.informatix.co.jp\/index.php?rest_route=\/wp\/v2\/posts\/994\/revisions\/19964"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/club.informatix.co.jp\/index.php?rest_route=\/wp\/v2\/media\/11252"}],"wp:attachment":[{"href":"https:\/\/club.informatix.co.jp\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=994"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/club.informatix.co.jp\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=994"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/club.informatix.co.jp\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=994"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}