Effective Targeted Attacks for Adversarial Self-Supervised Learning

被引:0
|
作者
Kim, Minseon [1 ]
Ha, Hyeonjeong [1 ]
Son, Sooel [1 ]
Hwang, Sung Ju [1 ,2 ]
机构
[1] Korea Adv Inst Sci & Technol KAIST, Seoul, South Korea
[2] DeepAuto Ai, Seoul, South Korea
关键词
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Recently, unsupervised adversarial training (AT) has been highlighted as a means of achieving robustness in models without any label information. Previous studies in unsupervised AT have mostly focused on implementing self-supervised learning (SSL) frameworks, which maximize the instance-wise classification loss to generate adversarial examples. However, we observe that simply maximizing the self-supervised training loss with an untargeted adversarial attack often results in generating ineffective adversaries that may not help improve the robustness of the trained model, especially for non-contrastive SSL frameworks without negative examples. To tackle this problem, we propose a novel positive mining for targeted adversarial attack to generate effective adversaries for adversarial SSL frameworks. Specifically, we introduce an algorithm that selects the most confusing yet similar target example for a given instance based on entropy and similarity, and subsequently perturbs the given instance towards the selected target. Our method demonstrates significant enhancements in robustness when applied to non-contrastive SSL frameworks, and less but consistent robustness improvements with contrastive SSL frameworks, on the benchmark datasets.
引用
收藏
页数:18
相关论文
共 50 条
  • [21] Adversarial Self-Supervised Learning for Robust SAR Target Recognition
    Xu, Yanjie
    Sun, Hao
    Chen, Jin
    Lei, Lin
    Ji, Kefeng
    Kuang, Gangyao
    REMOTE SENSING, 2021, 13 (20)
  • [22] Identity-Disentangled Adversarial Augmentation for Self-Supervised Learning
    Yang, Kaiwen
    Zhou, Tianyi
    Tian, Xinmei
    Tao, Dacheng
    INTERNATIONAL CONFERENCE ON MACHINE LEARNING, VOL 162, 2022,
  • [23] Augmentation Adversarial Training for Self-Supervised Speaker Representation Learning
    Kang, Jingu
    Huh, Jaesung
    Heo, Hee Soo
    Chung, Joon Son
    IEEE JOURNAL OF SELECTED TOPICS IN SIGNAL PROCESSING, 2022, 16 (06) : 1253 - 1262
  • [24] Contrastive Self-Supervised Learning Leads to Higher Adversarial Susceptibility
    Gupta, Rohit
    Akhtar, Naveed
    Mian, Ajmal
    Shah, Mubarak
    THIRTY-SEVENTH AAAI CONFERENCE ON ARTIFICIAL INTELLIGENCE, VOL 37 NO 12, 2023, : 14838 - 14846
  • [25] Sample Efficient Detection and Classification of Adversarial Attacks via Self-Supervised Embeddings
    Moayeri, Mazda
    Feizi, Soheil
    2021 IEEE/CVF INTERNATIONAL CONFERENCE ON COMPUTER VISION (ICCV 2021), 2021, : 7657 - 7666
  • [26] SELF-SUPERVISED ADVERSARIAL SHAPE COMPLETION
    Peters, Torben
    Schindler, Konrad
    Brenner, Claus
    XXIV ISPRS CONGRESS IMAGING TODAY, FORESEEING TOMORROW, COMMISSION II, 2022, 5-2 : 143 - 150
  • [27] Self-Supervised Generative Adversarial Compression
    Yu, Chong
    Pool, Jeff
    ADVANCES IN NEURAL INFORMATION PROCESSING SYSTEMS 33, NEURIPS 2020, 2020, 33
  • [28] A Self-supervised Approach for Adversarial Robustness
    Naseer, Muzammal
    Khan, Salman
    Hayat, Munawar
    Khan, Fahad Shahbaz
    Porikli, Fatih
    2020 IEEE/CVF CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION (CVPR), 2020, : 259 - 268
  • [29] Self-supervised learning for effective denoising of flow fields
    Yu, Linqi
    Yousif, Mustafa Z.
    Zhou, Dan
    Zhang, Meng
    Lee, Jung Sub
    Lim, Hee-Chang
    PHYSICS OF FLUIDS, 2024, 36 (10)
  • [30] Self-supervised Graph-level Representation Learning with Adversarial Contrastive Learning
    Luo, Xiao
    Ju, Wei
    Gu, Yiyang
    Mao, Zhengyang
    Liu, Luchen
    Yuan, Yuhui
    Zhang, Ming
    ACM TRANSACTIONS ON KNOWLEDGE DISCOVERY FROM DATA, 2024, 18 (02)