An Adversarial Contrastive Distillation Algorithm Based on Masked Auto-Encoder

被引:0
|
作者
Zhang, Dian [1 ]
Dong, Yun-Wei [2 ]
机构
[1] School of Computer Science, Northwestern Polytechnical University, Xi’an,710129, China
[2] School of Software, Northwestern Polytechnical University, Xi’an,710129, China
来源
关键词
Contrastive Learning - Deep neural networks - Generative adversarial networks - Image enhancement - Network coding - Personnel training;
D O I
10.11897/SP.J.1016.2024.02274
中图分类号
学科分类号
摘要
With the continuous development of artificial intelligence, neural networks have exhibited exceptional performance across various domains. However, the existence of adversarial samples poses a significant challenge to the application of neural networks in security-related fields. As research progresses, there is an increasing focus on the robustness of neural networks and their inherent performance. This paper aims to improve neural networks to enhance their adversarial robustness. Although adversarial training has shown great potential in improving adversarial robustness, it suffers from the drawback of long running times. This is primarily because it requires generating adversarial samples for the target model at each iteration step. To address the issues of time-consuming adversarial sample generation and lack of diversity in adversarial training, this paper proposes a contrastive distillation algorithm based on masked autoencoders (MAE) to enhance the adversarial robustness of neural networks. Due to the low information density in images, the loss of image pixels caused by masking can often be recovered using neural networks. Thus, masking-based methods are commonly employed to increase sample diversity and improve the feature learning capabilities of neural networks. Given that adversarial training methods often require considerable time to generate adversarial samples, this paper adopts masking methods to mitigate the time-consuming issue of continuously generating adversarial samples during adversarial training. Additionally, randomly occluding parts of the image can effectively enhance sample diversity, which helps create multi-view samples to address the problem of feature in contrastive learning. Firstly, to reduce the teacher model's reliance on global image features, the teacher model learns in an improved masked autoencoder how to infer the features of obscured blocks based on visible sub-blocks. This method allows the teacher model to focus on learning how to reconstruct global features from limited visible parts, thereby enhancing its deep feature learning ability. Then, to mitigate the impact of adversarial interference, this paper employs knowledge distillation and contrastive learning methods to enhance the target model's adversarial robustness. Knowledge distillation reduces the target model's dependence on global features by transfering the knowledge from the teacher model, while contrastive learning enhances the model's ability to recognize tine-grained information among images by leveraging the diverty of the generated multi-view samples. Finally, label information is utilized to adjust the classification head to ensure recognition accuracy. By fine-tuning the classification head with label information, the model can maintain high accuracy in recognizing dean samples while improving its robustness against adversarial attacks. Experimental results conducted on ResNet50 and WideResNet50 demonstrate an average improvement of 11.50% in adversarial accuracy on CIFAR-10 and an average improvement of 6.35% on CIFAR-100. These results validate the effectiveness of the proposed contrastive distillation algorithm based on masked autoencoders. The algorithm attenuates the impact of adversarial interference by generating adversarial samples only once, enhances sample diversity through random masking, and improves the neural network's adversarial robustness. © 2024 Science Press. All rights reserved.
引用
收藏
页码:2274 / 2288
相关论文
共 50 条
  • [21] An Auto-Encoder based Membership Inference Attack against Generative Adversarial Network
    Azadmanesh, Maryam
    Ghahfarokhi, Behrouz Shahgholi
    Talouki, Maede Ashouri
    ISECURE-ISC INTERNATIONAL JOURNAL OF INFORMATION SECURITY, 2023, 15 (02): : 240 - 253
  • [22] Rating Prediction in Review-based Recommendations via Adversarial Auto-Encoder
    Yi, Jin
    Huang, Jiajin
    Qin, Jin
    2018 IEEE/WIC/ACM INTERNATIONAL CONFERENCE ON WEB INTELLIGENCE (WI 2018), 2018, : 144 - 149
  • [23] Adversarial Collaborative Auto-encoder for Top-N Recommendation
    Yuan, Feng
    Yao, Lina
    Benatallah, Boualem
    2019 INTERNATIONAL JOINT CONFERENCE ON NEURAL NETWORKS (IJCNN), 2019,
  • [24] Unsupervised deep feature representation using adversarial auto-encoder
    Cai, Jinyu
    Wang, Shiping
    Guo, Wenzhong
    2019 IEEE INTERNATIONAL CONFERENCE ON INDUSTRIAL CYBER PHYSICAL SYSTEMS (ICPS 2019), 2019, : 749 - 754
  • [25] Data expansion method and application of couple adversarial auto-encoder
    Xu X.
    Ao J.
    Liu G.
    Wang Y.
    Huazhong Keji Daxue Xuebao (Ziran Kexue Ban)/Journal of Huazhong University of Science and Technology (Natural Science Edition), 2023, 51 (12): : 29 - 36
  • [26] Structural Adversarial Variational Auto-Encoder for Attributed Network Embedding
    Zhan, Junjian
    Li, Feng
    Wang, Yang
    Lin, Daoyu
    Xu, Guangluan
    APPLIED SCIENCES-BASEL, 2021, 11 (05): : 1 - 11
  • [27] Unregularized Auto-Encoder with Generative Adversarial Networks for Image Generation
    Wang, Jiayu
    Zhou, Wengang
    Tang, Jinhui
    Fu, Zhongqian
    Tian, Qi
    Li, Houqiang
    PROCEEDINGS OF THE 2018 ACM MULTIMEDIA CONFERENCE (MM'18), 2018, : 709 - 717
  • [28] Unsupervised discriminative feature representation via adversarial auto-encoder
    Wenzhong Guo
    Jinyu Cai
    Shiping Wang
    Applied Intelligence, 2020, 50 : 1155 - 1171
  • [29] Generating adversarial samples by manipulating image features with auto-encoder
    Jianxin Yang
    Mingwen Shao
    Huan Liu
    Xinkai Zhuang
    International Journal of Machine Learning and Cybernetics, 2023, 14 : 2499 - 2509
  • [30] Generating adversarial samples by manipulating image features with auto-encoder
    Yang, Jianxin
    Shao, Mingwen
    Liu, Huan
    Zhuang, Xinkai
    INTERNATIONAL JOURNAL OF MACHINE LEARNING AND CYBERNETICS, 2023, 14 (07) : 2499 - 2509