paper-with-me

홈 › Papers

Learning to Generate Noise for Multi-Attack Robustness

2020-06-22 · Divyam Madaan, Jinwoo Shin, Sung Ju Hwang

Adversarial learning has emerged as one of the successful techniques to circumvent the susceptibility of existing methods against adversarial perturbations. However, the majority of existing defense methods are tailored to defend against a single category of adversarial perturbation (e.g. $\ell_\infty$-attack). In safety-critical applications, this makes these methods extraneous as the attacker can adopt diverse adversaries to deceive the system. Moreover, training on multiple perturbations simultaneously significantly increases the computational overhead during training. To address these challenges, we propose a novel meta-learning framework that explicitly learns to generate noise to improve the model's robustness against multiple types of attacks. Its key component is Meta Noise Generator (MNG) that outputs optimal noise to stochastically perturb a given sample, such that it helps lower the error on diverse adversarial perturbations. By utilizing samples generated by MNG, we train a model by enforcing the label consistency across multiple perturbations. We validate the robustness of models trained by our scheme on various datasets and against a wide variety of perturbations, demonstrating that it significantly outperforms the baselines across multiple perturbations with a marginal computational cost.

📄 PDF Abstract BibTeX arXiv:2006.12135

Code (1)

divyam3897/MNG_AC 공식 구현 pytorch

Tasks

Meta-Learning

Similar Papers 제목 키워드 기반

Robust Deep Learning Models Against Semantic-Preserving Adversarial Attack

2023-04-08 · Dashan Gao, Yunce Zhao, Yinghua Yao, Zeqi Zhang 외

Deep learning models can be fooled by small $l_p$-norm adversarial perturbations and natural perturbations in terms of attributes. Although the robustness against each perturbation has been explored, it remains a challen…

Adversarial AttackAttributeDeep LearningDiversity+1

ARIW-Framework: Adaptive Robust Iterative Watermarking Framework

2025-05-19 · Shaowu Wu, Liting Zeng, Wei Lu, Xiangyang Luo

With the rapid rise of large models, copyright protection for generated image content has become a critical security challenge. Although deep learning watermarking techniques offer an effective solution for digital image…

Decoder

On the Noise Stability and Robustness of Adversarially Trained Networks on NVM Crossbars

2021-09-19 · Chun Tao, Deboleena Roy, Indranil Chakraborty, Kaushik Roy

Applications based on Deep Neural Networks (DNNs) have grown exponentially in the past decade. To match their increasing computational needs, several Non-Volatile Memory (NVM) crossbar based accelerators have been propos…

$A^{3}D$: A Platform of Searching for Robust Neural Architectures and Efficient Adversarial Attacks

2022-03-07 · Jialiang Sun, Wen Yao, Tingsong Jiang, Chao Li 외

The robustness of deep neural networks (DNN) models has attracted increasing attention due to the urgent need for security in many applications. Numerous existing open-sourced tools or platforms are developed to evaluate…

Adversarial AttackAdversarial DefenseNeural Architecture Search

Understanding the Robustness of Randomized Feature Defense Against Query-Based Adversarial Attacks

2023-10-01 · Quang H. Nguyen, Yingjie Lao, Tung Pham, Kok-Seng Wong 외

Recent works have shown that deep neural networks are vulnerable to adversarial examples that find samples close to the original image but can make the model misclassify. Even with access only to the model's output, an a…

Image Classification