paper-with-me

홈 › Papers

Where is the Bottleneck of Adversarial Learning with Unlabeled Data?

2019-11-20 · Jingfeng Zhang, Bo Han, Gang Niu, Tongliang Liu, Masashi Sugiyama

Deep neural networks (DNNs) are incredibly brittle due to adversarial examples. To robustify DNNs, adversarial training was proposed, which requires large-scale but well-labeled data. However, it is quite expensive to annotate large-scale data well. To compensate for this shortage, several seminal works are utilizing large-scale unlabeled data. In this paper, we observe that seminal works do not perform well, since the quality of pseudo labels on unlabeled data is quite poor, especially when the amount of unlabeled data is significantly larger than that of labeled data. We believe that the quality of pseudo labels is the bottleneck of adversarial learning with unlabeled data. To tackle this bottleneck, we leverage deep co-training, which trains two deep networks and encourages two networks diverged by exploiting peer's adversarial examples. Based on deep co-training, we propose robust co-training (RCT) for adversarial learning with unlabeled data. We conduct comprehensive experiments on CIFAR-10 and SVHN datasets. Empirical results demonstrate that our RCT can significantly outperform baselines (e.g., robust self-training (RST)) in both standard test accuracy and robust test accuracy w.r.t. different datasets, different network structures, and different types of adversarial training.

📄 PDF Abstract BibTeX arXiv:1911.08696

Code (0)

등록된 구현이 없습니다.

Methods 이 논문이 사용한 방법론

Test 설명 없음

Similar Papers 제목 키워드 기반

Are Labels Required for Improving Adversarial Robustness?

2019-05-31 · NeurIPS 2019 12 · Jonathan Uesato, Jean-Baptiste Alayrac, Po-Sen Huang, Robert Stanforth 외

Recent work has uncovered the interesting (and somewhat surprising) finding that training models to be invariant to adversarial perturbations requires substantially larger datasets than those required for standard classi…

4kAdversarial Robustness

Learning From Positive and Unlabeled Data Using Observer-GAN

2022-08-26 · Omar Zamzam, Haleh Akrami, Richard Leahy

The problem of learning from positive and unlabeled data (A.K.A. PU learning) has been studied in a binary (i.e., positive versus negative) classification setting, where the input data consist of (1) observations from th…

Improving Adversarial Robustness via Unlabeled Out-of-Domain Data

2020-06-15 · Zhun Deng, Linjun Zhang, Amirata Ghorbani, James Zou

Data augmentation by incorporating cheap unlabeled data from multiple domains is a powerful way to improve prediction especially when there is limited labeled data. In this work, we investigate how adversarial robustness…

Adversarial RobustnessData AugmentationObject RecognitionRobust classification

Progressive Adversarial Networks for Fine-Grained Domain Adaptation

2020-06-01 · CVPR 2020 6 · Sinan Wang, Xinyang Chen, Yunbo Wang, Mingsheng Long 외

Fine-grained visual categorization has long been considered as an important problem, however, its real application is still restricted, since precisely annotating a large fine-grained image dataset is a laborious task an…

Domain AdaptationFine-Grained Visual Categorization

A Grid Based Adversarial Clustering Algorithm

2018-04-13 · Wutao Wei, Nikhil Gupta, Bowei Xi

Nowadays more and more data are gathered for detecting and preventing cyber attacks. In cyber security applications, data analytics techniques have to deal with active adversaries that try to deceive the data analytics m…

Clustering