{"id":"https://openalex.org/W4378718389","doi":"https://doi.org/10.1145/3597926.3598127","title":"A Tale of Two Approximations: Tightening Over-Approximation for DNN Robustness Verification via Under-Approximation","display_name":"A Tale of Two Approximations: Tightening Over-Approximation for DNN Robustness Verification via Under-Approximation","publication_year":2023,"publication_date":"2023-07-12","ids":{"openalex":"https://openalex.org/W4378718389","doi":"https://doi.org/10.1145/3597926.3598127"},"language":"en","primary_location":{"id":"doi:10.1145/3597926.3598127","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3597926.3598127","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 32nd ACM SIGSOFT International Symposium on Software Testing and Analysis","raw_type":"proceedings-article"},"type":"preprint","indexed_in":["arxiv","crossref"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://arxiv.org/pdf/2305.16998","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5086079123","display_name":"Zhiyi Xue","orcid":"https://orcid.org/0000-0002-1357-202X"},"institutions":[{"id":"https://openalex.org/I66867065","display_name":"East China Normal University","ror":"https://ror.org/02n96ep67","country_code":"CN","type":"education","lineage":["https://openalex.org/I66867065"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Zhiyi Xue","raw_affiliation_strings":["East China Normal University, China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"East China Normal University, China","institution_ids":["https://openalex.org/I66867065"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100330142","display_name":"Si Liu","orcid":"https://orcid.org/0000-0003-3578-7432"},"institutions":[{"id":"https://openalex.org/I35440088","display_name":"ETH Zurich","ror":"https://ror.org/05a28rw58","country_code":"CH","type":"education","lineage":["https://openalex.org/I2799323385","https://openalex.org/I35440088"]}],"countries":["CH"],"is_corresponding":false,"raw_author_name":"Si Liu","raw_affiliation_strings":["ETH Zurich, Switzerland"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"ETH Zurich, Switzerland","institution_ids":["https://openalex.org/I35440088"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5102797016","display_name":"Zhaodi Zhang","orcid":"https://orcid.org/0000-0002-0230-0301"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Zhaodi Zhang","raw_affiliation_strings":["Chengdu Education Research Institute, China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Chengdu Education Research Institute, China","institution_ids":[]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5101728011","display_name":"Yiting Wu","orcid":null},"institutions":[{"id":"https://openalex.org/I66867065","display_name":"East China Normal University","ror":"https://ror.org/02n96ep67","country_code":"CN","type":"education","lineage":["https://openalex.org/I66867065"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yiting Wu","raw_affiliation_strings":["East China Normal University, China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"East China Normal University, China","institution_ids":["https://openalex.org/I66867065"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5100402899","display_name":"Min Zhang","orcid":"https://orcid.org/0000-0002-3152-4347"},"institutions":[{"id":"https://openalex.org/I66867065","display_name":"East China Normal University","ror":"https://ror.org/02n96ep67","country_code":"CN","type":"education","lineage":["https://openalex.org/I66867065"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Min Zhang","raw_affiliation_strings":["East China Normal University, China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"East China Normal University, China","institution_ids":["https://openalex.org/I66867065"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":5,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":0.8158,"has_fulltext":true,"cited_by_count":5,"citation_normalized_percentile":{"value":0.77522925,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":90,"max":96},"biblio":{"volume":null,"issue":null,"first_page":"1182","last_page":"1194"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10036","display_name":"Advanced Neural Network Applications","score":0.9968000054359436,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12072","display_name":"Machine Learning and Algorithms","score":0.98580002784729,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness (evolution)","score":0.8170406222343445},{"id":"https://openalex.org/keywords/function-approximation","display_name":"Function approximation","score":0.6604609489440918},{"id":"https://openalex.org/keywords/approximation-algorithm","display_name":"Approximation algorithm","score":0.6350961923599243},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.6320807933807373},{"id":"https://openalex.org/keywords/scalability","display_name":"Scalability","score":0.6148333549499512},{"id":"https://openalex.org/keywords/linear-approximation","display_name":"Linear approximation","score":0.5753848552703857},{"id":"https://openalex.org/keywords/linear-programming","display_name":"Linear programming","score":0.5706533193588257},{"id":"https://openalex.org/keywords/approximation-error","display_name":"Approximation error","score":0.5362910628318787},{"id":"https://openalex.org/keywords/approximation-theory","display_name":"Approximation theory","score":0.5194498896598816},{"id":"https://openalex.org/keywords/mathematical-optimization","display_name":"Mathematical optimization","score":0.47221639752388},{"id":"https://openalex.org/keywords/benchmark","display_name":"Benchmark (surveying)","score":0.431079626083374},{"id":"https://openalex.org/keywords/deep-neural-networks","display_name":"Deep neural networks","score":0.4201034903526306},{"id":"https://openalex.org/keywords/algorithm","display_name":"Algorithm","score":0.37427061796188354},{"id":"https://openalex.org/keywords/artificial-neural-network","display_name":"Artificial neural network","score":0.3577246069908142},{"id":"https://openalex.org/keywords/applied-mathematics","display_name":"Applied mathematics","score":0.342548131942749},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.27723920345306396},{"id":"https://openalex.org/keywords/mathematics","display_name":"Mathematics","score":0.23341375589370728}],"concepts":[{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.8170406222343445},{"id":"https://openalex.org/C91873725","wikidata":"https://www.wikidata.org/wiki/Q3445816","display_name":"Function approximation","level":3,"score":0.6604609489440918},{"id":"https://openalex.org/C148764684","wikidata":"https://www.wikidata.org/wiki/Q621751","display_name":"Approximation algorithm","level":2,"score":0.6350961923599243},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6320807933807373},{"id":"https://openalex.org/C48044578","wikidata":"https://www.wikidata.org/wiki/Q727490","display_name":"Scalability","level":2,"score":0.6148333549499512},{"id":"https://openalex.org/C160824197","wikidata":"https://www.wikidata.org/wiki/Q2071054","display_name":"Linear approximation","level":3,"score":0.5753848552703857},{"id":"https://openalex.org/C41045048","wikidata":"https://www.wikidata.org/wiki/Q202843","display_name":"Linear programming","level":2,"score":0.5706533193588257},{"id":"https://openalex.org/C122383733","wikidata":"https://www.wikidata.org/wiki/Q865920","display_name":"Approximation error","level":2,"score":0.5362910628318787},{"id":"https://openalex.org/C145242015","wikidata":"https://www.wikidata.org/wiki/Q774123","display_name":"Approximation theory","level":2,"score":0.5194498896598816},{"id":"https://openalex.org/C126255220","wikidata":"https://www.wikidata.org/wiki/Q141495","display_name":"Mathematical optimization","level":1,"score":0.47221639752388},{"id":"https://openalex.org/C185798385","wikidata":"https://www.wikidata.org/wiki/Q1161707","display_name":"Benchmark (surveying)","level":2,"score":0.431079626083374},{"id":"https://openalex.org/C2984842247","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep neural networks","level":3,"score":0.4201034903526306},{"id":"https://openalex.org/C11413529","wikidata":"https://www.wikidata.org/wiki/Q8366","display_name":"Algorithm","level":1,"score":0.37427061796188354},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.3577246069908142},{"id":"https://openalex.org/C28826006","wikidata":"https://www.wikidata.org/wiki/Q33521","display_name":"Applied mathematics","level":1,"score":0.342548131942749},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.27723920345306396},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.23341375589370728},{"id":"https://openalex.org/C205649164","wikidata":"https://www.wikidata.org/wiki/Q1071","display_name":"Geography","level":0,"score":0.0},{"id":"https://openalex.org/C62520636","wikidata":"https://www.wikidata.org/wiki/Q944","display_name":"Quantum mechanics","level":1,"score":0.0},{"id":"https://openalex.org/C158622935","wikidata":"https://www.wikidata.org/wiki/Q660848","display_name":"Nonlinear system","level":2,"score":0.0},{"id":"https://openalex.org/C104317684","wikidata":"https://www.wikidata.org/wiki/Q7187","display_name":"Gene","level":2,"score":0.0},{"id":"https://openalex.org/C134306372","wikidata":"https://www.wikidata.org/wiki/Q7754","display_name":"Mathematical analysis","level":1,"score":0.0},{"id":"https://openalex.org/C121332964","wikidata":"https://www.wikidata.org/wiki/Q413","display_name":"Physics","level":0,"score":0.0},{"id":"https://openalex.org/C55493867","wikidata":"https://www.wikidata.org/wiki/Q7094","display_name":"Biochemistry","level":1,"score":0.0},{"id":"https://openalex.org/C185592680","wikidata":"https://www.wikidata.org/wiki/Q2329","display_name":"Chemistry","level":0,"score":0.0},{"id":"https://openalex.org/C77088390","wikidata":"https://www.wikidata.org/wiki/Q8513","display_name":"Database","level":1,"score":0.0},{"id":"https://openalex.org/C13280743","wikidata":"https://www.wikidata.org/wiki/Q131089","display_name":"Geodesy","level":1,"score":0.0}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1145/3597926.3598127","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3597926.3598127","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 32nd ACM SIGSOFT International Symposium on Software Testing and Analysis","raw_type":"proceedings-article"},{"id":"pmh:oai:arXiv.org:2305.16998","is_oa":true,"landing_page_url":"http://arxiv.org/abs/2305.16998","pdf_url":"https://arxiv.org/pdf/2305.16998","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by-nc-nd","license_id":"https://openalex.org/licenses/cc-by-nc-nd","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"text"}],"best_oa_location":{"id":"pmh:oai:arXiv.org:2305.16998","is_oa":true,"landing_page_url":"http://arxiv.org/abs/2305.16998","pdf_url":"https://arxiv.org/pdf/2305.16998","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by-nc-nd","license_id":"https://openalex.org/licenses/cc-by-nc-nd","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"text"},"sustainable_development_goals":[],"awards":[{"id":"https://openalex.org/G5676270524","display_name":null,"funder_award_id":"2020AAA0107800","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G6956063465","display_name":null,"funder_award_id":"62161146001","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G7068220248","display_name":null,"funder_award_id":"3420/21","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G7611692203","display_name":null,"funder_award_id":"22510750100","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"}],"funders":[{"id":"https://openalex.org/F4320321001","display_name":"National Natural Science Foundation of China","ror":"https://ror.org/01h0zpd94"},{"id":"https://openalex.org/F4320322252","display_name":"Israel Science Foundation","ror":"https://ror.org/04sazxf24"}],"has_content":{"grobid_xml":true,"pdf":true},"content_urls":{"pdf":"https://content.openalex.org/works/W4378718389.pdf","grobid_xml":"https://content.openalex.org/works/W4378718389.grobid-xml"},"referenced_works_count":47,"referenced_works":["https://openalex.org/W398859631","https://openalex.org/W2112796928","https://openalex.org/W2165073069","https://openalex.org/W2180612164","https://openalex.org/W2243397390","https://openalex.org/W2342840547","https://openalex.org/W2594877703","https://openalex.org/W2750384547","https://openalex.org/W2794609696","https://openalex.org/W2885688423","https://openalex.org/W2888824816","https://openalex.org/W2893554781","https://openalex.org/W2900153411","https://openalex.org/W2954746520","https://openalex.org/W2963857521","https://openalex.org/W2970449623","https://openalex.org/W2980222512","https://openalex.org/W2980264580","https://openalex.org/W2982540258","https://openalex.org/W2998709064","https://openalex.org/W3034726383","https://openalex.org/W3036286896","https://openalex.org/W3043716470","https://openalex.org/W3090972680","https://openalex.org/W3091563033","https://openalex.org/W3102139284","https://openalex.org/W3107089345","https://openalex.org/W3109004940","https://openalex.org/W3176946506","https://openalex.org/W3204683753","https://openalex.org/W3208550642","https://openalex.org/W4205097024","https://openalex.org/W4205950066","https://openalex.org/W4206840646","https://openalex.org/W4220858971","https://openalex.org/W4226119909","https://openalex.org/W4284687826","https://openalex.org/W4284702108","https://openalex.org/W4290087423","https://openalex.org/W4292955347","https://openalex.org/W4297814571","https://openalex.org/W4312091425","https://openalex.org/W4353114094","https://openalex.org/W4366677946","https://openalex.org/W4378718389","https://openalex.org/W4402776467","https://openalex.org/W6958508483"],"related_works":["https://openalex.org/W2171221472","https://openalex.org/W2046314839","https://openalex.org/W2108297731","https://openalex.org/W2167394514","https://openalex.org/W189995875","https://openalex.org/W3177870706","https://openalex.org/W2087686193","https://openalex.org/W3113145869","https://openalex.org/W2768028474","https://openalex.org/W1963832283"],"abstract_inverted_index":{"The":[0],"robustness":[1,27,208],"of":[2,96,184],"deep":[3],"neural":[4],"networks":[5],"(DNNs)":[6],"is":[7],"crucial":[8],"to":[9,21,64,70,141,150,215],"the":[10,34,49,66,93,97,116,197,206,218],"hosting":[11],"system\u2019s":[12],"reliability":[13],"and":[14,83,169,210],"security.":[15],"Formal":[16],"verification":[17,50],"has":[18,43],"been":[19,44,62],"demonstrated":[20],"be":[22,112],"effective":[23],"in":[24,38,88],"providing":[25],"provable":[26],"guarantees.":[28],"To":[29],"improve":[30],"its":[31],"scalability,":[32],"over-approximating":[33],"non-linear":[35],"activation":[36,98,146],"functions":[37],"DNNs":[39,185],"by":[40,74],"linear":[41,56],"constraints":[42],"widely":[45],"adopted,":[46],"which":[47],"transforms":[48],"problem":[51],"into":[52,172],"an":[53,145],"efficiently":[54],"solvable":[55],"programming":[57],"problem.":[58],"Many":[59],"efforts":[60],"have":[61],"dedicated":[63],"defining":[65,89],"so-called":[67],"tightest":[68],"approximations":[69,105],"reduce":[71],"overestimation":[72],"imposed":[73],"over-approximation.":[75],"In":[76],"this":[77,133],"paper,":[78],"we":[79,135],"study":[80],"existing":[81,123],"approaches":[82,124,199],"identify":[84],"a":[85,137,173,181],"dominant":[86],"factor":[87],"tight":[90,104,114,152],"approximation,":[91],"namely":[92],"approximation":[94,108,129,153],"domain":[95,149],"function.":[99],"We":[100,155,177],"find":[101],"out":[102],"that":[103,193],"defined":[106],"on":[107,118,128,132,165,180,205,212,217],"domains":[109],"may":[110],"not":[111],"as":[113,115],"ones":[117],"their":[119],"actual":[120],"domains,":[121],"yet":[122],"all":[125],"rely":[126],"only":[127],"domains.":[130],"Based":[131],"observation,":[134],"propose":[136],"novel":[138],"dual-approximation":[139],"approach":[140,158],"tighten":[142],"overapproximations,":[143],"leveraging":[144],"function\u2019s":[147],"underestimated":[148],"define":[151],"bounds.":[154],"implement":[156],"our":[157],"with":[159,186,200],"two":[160],"complementary":[161],"algorithms":[162],"based":[163],"respectively":[164],"Monte":[166],"Carlo":[167],"simulation":[168],"gradient":[170],"descent":[171],"tool":[174],"called":[175],"DualApp.":[176],"assess":[178],"it":[179],"comprehensive":[182],"benchmark":[183],"different":[187],"architectures.":[188],"Our":[189],"experimental":[190],"results":[191],"show":[192],"DualApp":[194],"significantly":[195],"outperforms":[196],"state-of-the-art":[198],"100%":[201],"\u2212":[202],"1000%":[203],"improvement":[204],"verified":[207],"ratio":[209],"10.64%":[211],"average":[213],"(up":[214],"66.53%)":[216],"certified":[219],"lower":[220],"bound.":[221]},"counts_by_year":[{"year":2025,"cited_by_count":2},{"year":2024,"cited_by_count":2},{"year":2023,"cited_by_count":1}],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2023-05-30T00:00:00"}
