English

Adversarial Machine Learning Phases of Matter

Disordered Systems and Neural Networks 2024-01-26 v2 Strongly Correlated Electrons Quantum Physics

Abstract

We study the robustness of machine learning approaches to adversarial perturbations, with a focus on supervised learning scenarios. We find that typical phase classifiers based on deep neural networks are extremely vulnerable to adversarial perturbations: adding a tiny amount of carefully crafted noises into the original legitimate examples will cause the classifiers to make incorrect predictions at a notably high confidence level. Through the lens of activation maps, we find that some important underlying physical principles and symmetries remain to be adequately captured for classifiers with even near-perfect performance. This explains why adversarial perturbations exist for fooling these classifiers. In addition, we find that, after adversarial training, the classifiers will become more consistent with physical laws and consequently more robust to certain kinds of adversarial perturbations. Our results provide valuable guidance for both theoretical and experimental future studies on applying machine learning techniques to condensed matter physics.

Keywords

Cite

@article{arxiv.1910.13453,
  title  = {Adversarial Machine Learning Phases of Matter},
  author = {Si Jiang and Sirui Lu and Dong-Ling Deng},
  journal= {arXiv preprint arXiv:1910.13453},
  year   = {2024}
}

Comments

5 pages main text plus 9 pages supplementary materials

R2 v1 2026-06-23T11:58:44.128Z