ylecun/mnist
Viewer • Updated • 70k • 151k • 249
TRM trained with PGD adversarial training at ε=0.15/255.
| ε (L∞) | Verified | vs IBP |
|---|---|---|
| 0.06 | 48% | -13% |
| 0.08 | 63% | -15% |
| 0.10 | 63% | -12% |
Finding: PGD underperforms IBP on simple MNIST by ~15%.
import torch
from veriphi.models import TinyRecursiveMLP
model = TinyRecursiveMLP(x_dim=784, y_dim=512, z_dim=512, hidden=1024,
num_classes=10, H_cycles=2, L_cycles=2)
model.load_state_dict(torch.load("trm-mnist-adv-eps015.pt"))
model.eval()
@article{deshmukh2026veriphi,
title={Veriphi: Attack-Guided Neural Network Verification with Dataset-Dependent Training Methods},
author={Deshmukh, Pratik and Savin, Vasili and Arya, Kartik},
journal={arXiv preprint arXiv:2606.18454},
year={2026}
}
Paper: arXiv:2606.18454 | Code: GitHub