Towards Generalized Certified Robustness with Multi-Norm Training
arXiv:2410.03000v3 Announce Type: replace
Abstract: Existing certified training methods can only train models to be robust against a certain perturbation type (e.g. $l_\infty$ or $l_2$). However, an $l_\infty$ certifiably robust model may not be certi…