2021
Certified Robustness to Programmable Transformations in LSTMs
EMNLP 2021main
Deep neural networks for natural language processing are fragile in the face of adversarial examples—small input perturbations, like synonym substitution or word duplication, which cause a neural network to change its prediction. We present an approach to certifying the robustness of LSTMs (and exte…