On the Robustness of Bayesian Neural Networks to Adversarial Attacks

Summary

Bayesian neural networks (BNNs) show robustness to adversarial attacks in the over-parameterized limit. This is due to data distribution geometry, making BNN posteriors resistant to gradient-based attacks.