%PDF-1.3 1 0 obj << /Kids [ 4 0 R 5 0 R 6 0 R 7 0 R 8 0 R 9 0 R 10 0 R 11 0 R 12 0 R 13 0 R 14 0 R 15 0 R ] /Type /Pages /Count 12 >> endobj 2 0 obj << /Subject (Neural Information Processing Systems http\072\057\057nips\056cc\057) /Publisher (Curran Associates\054 Inc\056) /Language (en\055US) /Created (2019) /EventType (Poster) /Description-Abstract (Explanation methods aim to make neural networks more trustworthy and interpretable\056 In this paper\054 we demonstrate a property of explanation methods which is disconcerting for both of these purposes\056 Namely\054 we show that explanations can be manipulated arbitrarily by applying visually hardly perceptible perturbations to the input that keep the network\047s output approximately constant\056 We establish theoretically that this phenomenon can be related to certain geometrical properties of neural networks\056 This allows us to derive an upper bound on the susceptibility of explanations to manipulations\056 Based on this result\054 we propose effective mechanisms to enhance the robustness of explanations\056) /Producer (PyPDF2) /Title (Explanations can be manipulated and geometry is to blame) /Date (2019) /ModDate (D\07220200213051748\05508\04700\047) /Published (2019) /Type (Conference Proceedings) /firstpage (13589) /Book (Advances in Neural Information Processing Systems 32) /Description (Paper accepted and presented at the Neural Information Processing Systems Conference \050http\072\057\057nips\056cc\057\051) /Editors (H\056 Wallach and H\056 Larochelle and A\056 Beygelzimer and F\056 d\047Alch\351\055Buc and E\056 Fox and R\056 Garnett) /Author (Ann\055Kathrin Dombrowski\054 Maximillian Alber\054 Christopher Anders\054 Marcel Ackermann\054 Klaus\055Robert M\374ller\054 Pan Kessel) /lastpage (13600) >> endobj 3 0 obj << /Type /Catalog /Pages 1 0 R >> endobj 4 0 obj << /Contents 16 0 R /Parent 1 0 R /Resources 17 0 R /Group 29 0 R /MediaBox [ 0 0 612 792 ] /Type /Page >> endobj 5 0 obj << /Contents 44 0 R /Parent 1 0 R /Resources 45 0 R /MediaBox [ 0 0 612 792 ] /Annots [ 46 0 R 47 0 R 48 0 R 49 0 R 50 0 R 51 0 R 52 0 R 53 0 R 54 0 R ] /Type /Page >> endobj 6 0 obj << /Contents 55 0 R /Parent 1 0 R /Resources 56 0 R /MediaBox [ 0 0 612 792 ] /Annots [ 109 0 R 110 0 R 111 0 R 112 0 R 113 0 R 114 0 R 115 0 R 116 0 R 117 0 R 118 0 R 119 0 R ] /Type /Page >> endobj 7 0 obj << /Contents 120 0 R /Parent 1 0 R /Resources 121 0 R /Group 138 0 R /MediaBox [ 0 0 612 792 ] /Annots [ 140 0 R 141 0 R ] /Type /Page >> endobj 8 0 obj << /Contents 142 0 R /Parent 1 0 R /Resources 143 0 R /Group 158 0 R /MediaBox [ 0 0 612 792 ] /Annots [ 160 0 R 161 0 R 162 0 R 163 0 R 164 0 R 165 0 R ] /Type /Page >> endobj 9 0 obj << /Contents 166 0 R /Parent 1 0 R /Resources 167 0 R /MediaBox [ 0 0 612 792 ] /Annots [ 173 0 R 174 0 R 175 0 R 176 0 R 177 0 R 178 0 R 179 0 R 180 0 R 181 0 R 182 0 R 183 0 R 184 0 R 185 0 R ] /Type /Page >> endobj 10 0 obj << /Contents 186 0 R /Parent 1 0 R /Resources 187 0 R /Group 257 0 R /MediaBox [ 0 0 612 792 ] /Annots [ 259 0 R 260 0 R ] /Type /Page >> endobj 11 0 obj << /Contents 261 0 R /Parent 1 0 R /Resources 262 0 R /Group 272 0 R /MediaBox [ 0 0 612 792 ] /Annots [ 290 0 R 291 0 R 292 0 R 293 0 R 294 0 R 295 0 R 296 0 R 297 0 R 298 0 R ] /Type /Page >> endobj 12 0 obj << /Contents 299 0 R /Parent 1 0 R /Resources 300 0 R /Group 322 0 R /MediaBox [ 0 0 612 792 ] /Type /Page >> endobj 13 0 obj << /Contents 324 0 R /Parent 1 0 R /Type /Page /Resources 325 0 R /MediaBox [ 0 0 612 792 ] >> endobj 14 0 obj << /Contents 326 0 R /Parent 1 0 R /Type /Page /Resources 327 0 R /MediaBox [ 0 0 612 792 ] >> endobj 15 0 obj << /Contents 332 0 R /Parent 1 0 R /Type /Page /Resources 333 0 R /MediaBox [ 0 0 612 792 ] >> endobj 16 0 obj << /Length 1784 /Filter /FlateDecode >> stream xڕXI۸CBע x㉓$ 8 8mקٲ9 , We)ʢw7Y"UQUih7"i]Hx7/R8]9$z8F)+EY5!%~edF(9&fqä_1ɯ#$ˣ: Uύ>/xXv͛A;~5>{rzgdu=طl/T3i^HZG)wiFV^'Ui|V=`GEZrP9(±K6 E8u|d_D/:1{n9Jj%~E&55'yA
$%i6V*QϘഗ\wB\vNK( 6xoL Tᅭ TRŦ?)̺4|$[u'.M ?;9a&ou%JqV/O ";|zɣF<e{mO2"- V~;/5qAW$HO~#O4ai4g_IsRй|gjre ._LԦJO"@GB Ae]CjfMd?ٶmTD.G0yA@Zp=[u_vO%Y7͓R1\ᶞFحaӴs!!
C&
m0Wzܰ}ǡ`@;2ElZi<̇Oܟ8p k}6L\n.q|[(wOYgVw&Pyx!u{eZr*
L#a҃hgd:Hilpnl'eZfjci+ʭy
1RloNM#"
0ڪҝӊhk;'bX=Cp"H`&n[Q" a'
6FXX?sBI