CREATING A SIGNATURE FOR IDENTIFYING A PARTICULAR MACHINE LEARNING MODEL
A computer accesses a machine learning model and multiple samples, each classified with a separate original class of multiple classes within training data used to train the machine learning model to identify each of the classes. The computer generates multiple synthetic samples, each comprising a sa...
Gespeichert in:
Hauptverfasser: | , |
---|---|
Format: | Patent |
Sprache: | eng |
Schlagworte: | |
Online-Zugang: | Volltext bestellen |
Tags: |
Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
|
Zusammenfassung: | A computer accesses a machine learning model and multiple samples, each classified with a separate original class of multiple classes within training data used to train the machine learning model to identify each of the classes. The computer generates multiple synthetic samples, each comprising a sample distorted to induce the machine learning model to misclassify the sample to a different class from the original class. The computer creates a synthetic sample signature, for use in verifying the identity of the machine learning model at runtime, from the synthetic samples and a matrix of returned class labels each identifying one of the classes, determined from actual classifications of each the synthetic samples in response to running the synthetic samples on the machine learning model. |
---|