Adversarially Robust Few-Shot Learning: A Meta-Learning Approach
Previous work on adversarially robust neural networks for image classification requires large training sets and computationally expensive training procedures. On the other hand, few-shot learning methods are highly vulnerable to adversarial examples. The goal of our work is to produce networks which both perform well at few-shot classification tasks and are simultaneously robust to adversarial examples. We develop an algorithm, called Adversarial Querying (AQ), for producing adversarially robust meta-learners, and we thoroughly investigate the causes for adversarial vulnerability. Moreover, our method achieves far superior robust performance on few-shot image classification tasks, such as Mini-ImageNet and CIFAR-FS, than robust transfer learning.
Code (1)
Tasks
ClassificationFew-Shot Image ClassificationFew-Shot LearningGeneral Classificationimage-classificationImage ClassificationMeta-LearningTransfer LearningSimilar Papers 제목 키워드 기반
Long-term Cross Adversarial Training: A Robust Meta-learning Method for Few-shot Classification Tasks
Meta-learning model can quickly adapt to new tasks using few-shot labeled data. However, despite achieving good generalization on few-shot classification tasks, it is still challenging to improve the adversarial robustne…
Adversarial RobustnessClassificationFew-Shot LearningMeta-LearningZero-shot Meta-learning for Tabular Prediction Tasks with Adversarially Pre-trained Transformer
We present an Adversarially Pre-trained Transformer (APT) that is able to perform zero-shot meta-learning on tabular prediction tasks without pre-training on any real-world dataset, extending on the recent development of…
Meta-LearningMissing ValuesLearning Transferable Adversarial Robust Representations via Multi-view Consistency
Despite the success on few-shot learning problems, most meta-learned models only focus on achieving good performance on clean examples and thus easily break down when given adversarially perturbed samples. While some rec…
Adversarial AttackAdversarial RobustnessDomain AdaptationFew-Shot Learning+3A Simple Approach to Adversarial Robustness in Few-shot Image Classification
Few-shot image classification, where the goal is to generalize to tasks with limited labeled data, has seen great progress over the years. However, the classifiers are vulnerable to adversarial examples, posing a questio…
Adversarial RobustnessFew-Shot Image ClassificationFew-Shot Learningimage-classification+3Improving Adversarially Robust Few-Shot Image Classification With Generalizable Representations
Few-Shot Image Classification (FSIC) aims to recognize novel image classes with limited data, which is significant in practice. In this paper, we consider the FSIC problem in the case of adversarial examples. This is…
ClassificationFew-Shot Image Classificationimage-classificationImage Classification+1