paper-with-me

홈 › Papers

Mutual Adversarial Training: Learning together is better than going alone

2021-12-09 · Jiang Liu, Chun Pong Lau, Hossein Souri, Soheil Feizi, Rama Chellappa

Recent studies have shown that robustness to adversarial attacks can be transferred across networks. In other words, we can make a weak model more robust with the help of a strong teacher model. We ask if instead of learning from a static teacher, can models "learn together" and "teach each other" to achieve better robustness? In this paper, we study how interactions among models affect robustness via knowledge distillation. We propose mutual adversarial training (MAT), in which multiple models are trained together and share the knowledge of adversarial examples to achieve improved robustness. MAT allows robust models to explore a larger space of adversarial samples, and find more robust feature spaces and decision boundaries. Through extensive experiments on CIFAR-10 and CIFAR-100, we demonstrate that MAT can effectively improve model robustness and outperform state-of-the-art methods under white-box attacks, bringing $\sim$8% accuracy gain to vanilla adversarial training (AT) under PGD-100 attacks. In addition, we show that MAT can also mitigate the robustness trade-off among different perturbation types, bringing as much as 13.1% accuracy gain to AT baselines against the union of $l_\infty$, $l_2$ and $l_1$ attacks. These results show the superiority of the proposed method and demonstrate that collaborative learning is an effective strategy for designing robust models.

📄 PDF Abstract BibTeX arXiv:2112.05005

Code (0)

등록된 구현이 없습니다.

Tasks

Knowledge Distillation

Similar Papers 제목 키워드 기반

C-MI-GAN : Estimation of Conditional Mutual Information using MinMax formulation

2020-05-17 · Arnab Kumar Mondal, Arnab Bhattacharya, Sudipto Mukherjee, Prathosh AP 외

Estimation of information theoretic quantities such as mutual information and its conditional variant has drawn interest in recent times owing to their multifaceted applications. Newly proposed neural estimators for thes…

Learning Adversarially Robust Representations via Worst-Case Mutual Information Maximization

2020-02-26 · ICML 2020 1 · Sicheng Zhu, Xiao Zhang, David Evans

Training machine learning models that are robust against adversarial inputs poses seemingly insurmountable challenges. To better understand adversarial robustness, we consider the underlying problem of learning robust re…

Adversarial Robustness

Speech Representation Disentanglement with Adversarial Mutual Information Learning for One-shot Voice Conversion

2022-08-18 · Sicheng Yang, Methawee Tantrawenith, Haolin Zhuang, Zhiyong Wu 외

One-shot voice conversion (VC) with only a single target speaker's speech for reference has become a hot research topic. Existing works generally disentangle timbre, while information about pitch, rhythm and content is s…

DisentanglementRhythmVoice Conversion

Adversarial Learning with Cost-Sensitive Classes

2021-01-29 · Haojing Shen, Sihong Chen, Ran Wang, XiZhao Wang

It is necessary to improve the performance of some special classes or to particularly protect them from attacks in adversarial learning. This paper proposes a framework combining cost-sensitive classification and adversa…

Adversarial Robustness

DeSIGN: Design Inspiration from Generative Networks

2018-04-03 · Othman Sbai, Mohamed Elhoseiny, Antoine Bordes, Yann Lecun 외

Can an algorithm create original and compelling fashion designs to serve as an inspirational assistant? To help answer this question, we design and investigate different image generation models associated with different …

Image GenerationRetrieval