paper-with-me

Papers

Can Implicit Bias Imply Adversarial Robustness?

2024-05-24 · Hancheng Min, René Vidal

The implicit bias of gradient-based training algorithms has been considered mostly beneficial as it leads to trained networks that often generalize well. However, Frei et al. (2023) show that such implicit bias can harm adversarial robustness. Specifically, they show that if the data consists of clusters with small inter-cluster correlation, a shallow (two-layer) ReLU network trained by gradient flow generalizes well, but it is not robust to adversarial attacks of small radius. Moreover, this phenomenon occurs despite the existence of a much more robust classifier that can be explicitly constructed from a shallow network. In this paper, we extend recent analyses of neuron alignment to show that a shallow network with a polynomial ReLU activation (pReLU) trained by gradient flow not only generalizes well but is also robust to adversarial attacks. Our results highlight the importance of the interplay between data structure and architecture design in the implicit bias and robustness of trained networks.

📄 PDF Abstract BibTeX arXiv:2405.15942

Code (0)

등록된 구현이 없습니다.

Tasks

Adversarial Robustness

Similar Papers 제목 키워드 기반

Bridging the Gap Between Adversarial Robustness and Optimization Bias

2021-02-17 · Fartash Faghri, Sven Gowal, Cristina Vasconcelos, David J. Fleet 외

We demonstrate that the choice of optimizer, neural network architecture, and regularizer significantly affect the adversarial robustness of linear neural networks, providing guarantees without the need for adversarial t…

Adversarial Robustness

The Double-Edged Sword of Implicit Bias: Generalization vs. Robustness in ReLU Networks

2023-03-02 · NeurIPS 2023 11

In this work, we study the implications of the implicit bias of gradient flow on generalization and adversarial robustness in ReLU networks. We focus on a setting where the data consists of clusters and the correlations …

Adversarial Robustness

The Price of Implicit Bias in Adversarially Robust Generalization

2024-06-07 · Nikolaos Tsilivis, Natalie Frank, Nathan Srebro, Julia Kempe

We study the implicit bias of optimization in robust empirical risk minimization (robust ERM) and its connection with robust generalization. In classification settings under adversarial perturbations with linear models, …

Local Convolutions Cause an Implicit Bias towards High Frequency Adversarial Examples

2020-06-19 · Josue Ortega Caro, Yilong Ju, Ryan Pyle, Sourav Dey 외

Adversarial Attacks are still a significant challenge for neural networks. Recent work has shown that adversarial perturbations typically contain high-frequency features, but the root cause of this phenomenon remains unk…

Adversarial RobustnessVocal Bursts Intensity Prediction

Adversarial Examples Generation for Reducing Implicit Gender Bias in Pre-trained Models

2021-10-03 · Wenqian Ye, Fei Xu, Yaojia Huang, Cassie Huang 외

Over the last few years, Contextualized Pre-trained Neural Language Models, such as BERT, GPT, have shown significant gains in various NLP tasks. To enhance the robustness of existing pre-trained models, one way is adver…

Data AugmentationSentence