paper-with-me

홈 › Papers

Towards A Unified Min-Max Framework for Adversarial Exploration and Robustness

2019-09-25 · Jingkang Wang, Tianyun Zhang, Sijia Liu, Pin-Yu Chen, Jiacen Xu, Makan Fardad, Bo Li

The worst-case training principle that minimizes the maximal adversarial loss, also known as adversarial training (AT), has shown to be a state-of-the-art approach for enhancing adversarial robustness against norm-ball bounded input perturbations. Nonetheless, min-max optimization beyond the purpose of AT has not been rigorously explored in the research of adversarial attack and defense. In particular, given a set of risk sources (domains), minimizing the maximal loss induced from the domain set can be reformulated as a general min-max problem that is different from AT. Examples of this general formulation include attacking model ensembles, devising universal perturbation under multiple inputs or data transformations, and generalized AT over different types of attack models. We show that these problems can be solved under a unified and theoretically principled min-max optimization framework. We also show that the self-adjusted domain weights learned from our method provides a means to explain the difficulty level of attack and defense over multiple domains. Extensive experiments show that our approach leads to substantial performance improvement over the conventional averaging strategy.

📄 PDF Abstract BibTeX

Code (0)

등록된 구현이 없습니다.

Tasks

Adversarial AttackAdversarial Robustness

Similar Papers 제목 키워드 기반

Out-of-Distribution Data: An Acquaintance of Adversarial Examples -- A Survey

2024-04-08 · Naveen Karunanayake, Ravin Gunawardena, Suranga Seneviratne, Sanjay Chawla

Deep neural networks (DNNs) deployed in real-world applications can encounter out-of-distribution (OOD) data and adversarial examples. These represent distinct forms of distributional shifts that can significantly impact…

Adversarial RobustnessAnomaly DetectionOpen Set Learning

ExAL: An Exploration Enhanced Adversarial Learning Algorithm

2024-11-24 · A Vinil, Aneesh Sreevallabh Chivukula, Pranav Chintareddy

Adversarial learning is critical for enhancing model robustness, aiming to defend against adversarial attacks that jeopardize machine learning systems. Traditional methods often lack efficient mechanisms to explore diver…

From Adversarial Arms Race to Model-centric Evaluation: Motivating a Unified Automatic Robustness Evaluation Framework

2023-05-29 · Yangyi Chen, Hongcheng Gao, Ganqu Cui, Lifan Yuan 외

Textual adversarial attacks can discover models' weaknesses by adding semantic-preserved but misleading perturbations to the inputs. The long-lasting adversarial attack-and-defense arms race in Natural Language Processin…

Adversarial Attack

Pareto Adversarial Robustness: Balancing Spatial Robustness and Sensitivity-based Robustness

2021-11-03 · Ke Sun, Mingjie Li, Zhouchen Lin

Adversarial robustness, which primarily comprises sensitivity-based robustness and spatial robustness, plays an integral part in achieving robust generalization. In this paper, we endeavor to design strategies to achieve…

Adversarial RobustnessSensitivity

Towards a Unified Game-Theoretic View of Adversarial Perturbations and Robustness

2021-12-01 · NeurIPS 2021 12 · Jie Ren, Die Zhang, Yisen Wang, Lu Chen 외

This paper provides a unified view to explain different adversarial attacks and defense methods, i.e. the view of multi-order interactions between input variables of DNNs. Based on the multi-order interaction, we discove…

Adversarial Robustness