paper-with-me

홈 › Papers

Model-Agnostic Meta-Attack: Towards Reliable Evaluation of Adversarial Robustness

2021-10-13 · Xiao Yang, Yinpeng Dong, Wenzhao Xiang, Tianyu Pang, Hang Su, Jun Zhu

The vulnerability of deep neural networks to adversarial examples has motivated an increasing number of defense strategies for promoting model robustness. However, the progress is usually hampered by insufficient robustness evaluations. As the de facto standard to evaluate adversarial robustness, adversarial attacks typically solve an optimization problem of crafting adversarial examples with an iterative process. In this work, we propose a Model-Agnostic Meta-Attack (MAMA) approach to discover stronger attack algorithms automatically. Our method learns the optimizer in adversarial attacks parameterized by a recurrent neural network, which is trained over a class of data samples and defenses to produce effective update directions during adversarial example generation. Furthermore, we develop a model-agnostic training algorithm to improve the generalization ability of the learned optimizer when attacking unseen defenses. Our approach can be flexibly incorporated with various attacks and consistently improves the performance with little extra computational cost. Extensive experiments demonstrate the effectiveness of the learned attacks by MAMA compared to the state-of-the-art attacks on different defenses, leading to a more reliable evaluation of adversarial robustness.

📄 PDF Abstract BibTeX arXiv:2110.08256

Code (0)

등록된 구현이 없습니다.

Tasks

Adversarial Robustness

Similar Papers 제목 키워드 기반

Meta-Attack: Class-Agnostic and Model-Agnostic Physical Adversarial Attack

2021-01-01 · ICCV 2021 10 · Weiwei Feng, Baoyuan Wu, Tianzhu Zhang, Yong Zhang 외

Modern deep neural networks are often vulnerable to adversarial examples. Most exist attack methods focus on crafting adversarial examples in the digital domain, while only limited works study physical adversarial at…

Adversarial AttackFew-Shot LearningMeta-Learning

Adaptive Adversarial Training for Meta Reinforcement Learning

2021-04-27 · Shiqi Chen, Zhengyu Chen, Donglin Wang

Meta Reinforcement Learning (MRL) enables an agent to learn from a limited number of past trajectories and extrapolate to a new task. In this paper, we attempt to improve the robustness of MRL. We build upon model-agnost…

Generative Adversarial NetworkMeta-LearningMeta Reinforcement Learningreinforcement-learning+2

Meta Adversarial Perturbations

2021-11-19 · AAAI Workshop AdvML 2022 2 · Chia-Hung Yuan, Pin-Yu Chen, Chia-Mu Yu

A plethora of attack methods have been proposed to generate adversarial examples, among which the iterative methods have been demonstrated the ability to find a strong attack. However, the computation of an adversarial p…

Are Factuality Checkers Reliable? Adversarial Meta-evaluation of Factuality in Summarization

2021-11-01 · Findings (EMNLP) 2021 11 · Yiran Chen, PengFei Liu, Xipeng Qiu

With the continuous upgrading of the summarization systems driven by deep neural networks, researchers have higher requirements on the quality of the generated summaries, which should be not only fluent and informative b…

Data AugmentationDiagnostic

Towards Evaluating the Robustness of Deep Diagnostic Models by Adversarial Attack

2021-03-05 · Mengting Xu, Tao Zhang, Zhongnian Li, Mingxia Liu 외

Deep learning models (with neural networks) have been widely used in challenging tasks such as computer-aided disease diagnosis based on medical images. Recent studies have shown deep diagnostic models may not be robust …

Adversarial AttackDiagnosticMulti-Label ClassificationMUlTI-LABEL-ClASSIFICATION