CREATING A SIGNATURE FOR IDENTIFYING A PARTICULAR MACHINE LEARNING MODEL

A computer accesses a machine learning model and multiple samples, each classified with a separate original class of multiple classes within training data used to train the machine learning model to identify each of the classes. The computer generates multiple synthetic samples, each comprising a sa...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
Hauptverfasser: Murdock, James W, Navratil, Jiri
Format: Patent
Sprache:eng
Schlagworte:
Online-Zugang:Volltext bestellen
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
Beschreibung
Zusammenfassung:A computer accesses a machine learning model and multiple samples, each classified with a separate original class of multiple classes within training data used to train the machine learning model to identify each of the classes. The computer generates multiple synthetic samples, each comprising a sample distorted to induce the machine learning model to misclassify the sample to a different class from the original class. The computer creates a synthetic sample signature, for use in verifying the identity of the machine learning model at runtime, from the synthetic samples and a matrix of returned class labels each identifying one of the classes, determined from actual classifications of each the synthetic samples in response to running the synthetic samples on the machine learning model.