Robust long-tailed recognition with distribution-aware adversarial example generation

被引:0
|
作者
Li, Bo [1 ]
Yao, Yongqiang [2 ]
Tan, Jingru [3 ]
Zhu, Dandan [4 ]
Gong, Ruihao [2 ]
Luo, Ye [1 ]
Lu, Jianwei [5 ]
机构
[1] Tongji Univ, 4800 Caoan Rd, Shanghai 201804, Peoples R China
[2] Sensetime Res, 1900 Hongmei Rd, Shanghai 201103, Peoples R China
[3] Cent South Univ, 932 South Lushan Rd, Changsha 410083, Hunan, Peoples R China
[4] East China Normal Univ, 3663, Zhongshan North Rd, Shanghai 200333, Peoples R China
[5] Shanghai Univ Tradit Chinese Med, 530 Lingling Rd, Shanghai 201203, Peoples R China
关键词
Long-tailed recognition; Adversarial robustness; Distribution-aware learning; Adversarial example generation;
D O I
10.1016/j.neunet.2024.106932
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Confronting adversarial attacks and data imbalances, attaining adversarial robustness under long-tailed distribution presents a challenging problem. Adversarial training (AT) is a conventional solution for enhancing adversarial robustness, which generates adversarial examples (AEs) in a generation phase and subsequently trains on these AEs in a training phase. Existing long-tailed adversarial learning methods follow the AT framework and rebalance the AE classification in the training phase. However, few of them realize the impact of the long-tailed distribution on the generation phase. In this paper, we delve into the generation phase and uncover its imbalance across different classes. We evaluate the generation quality for different classes by comparing the differences between their generated AEs and natural examples. Our findings reveal that these differences are less pronounced in tail classes compared to head classes, indicating their inferior generation quality. To solve this problem, we propose the novel Distribution-Aware Adversarial Example Generation (DAG) method, which balances the AE generation for different classes using a Virtual Example Creator (VEC) and a Gradient-Guided Calibrator (GGC). The VEC creates virtual examples to introduce more adversarial perturbations for different classes, while the GGC calibrates the creation process to enhance the focus on tail classes based on their generation quality, effectively addressing the imbalance problem. Extensive experiments on three long-tailed adversarial benchmarks across five attack scenarios demonstrate DAG's effectiveness. On CIFAR-100-LT, DAG outperforms the previous RoBal by 4.0 points under the projected gradient descent (PGD) attack, highlighting its superiority in adversarial scenarios.
引用
收藏
页数:13
相关论文
共 50 条
  • [31] MujavaX: A distribution-aware mutation generation system for Java
    Sun, C. (casun@ustb.edu.cn), 1600, Science Press (51):
  • [32] Fitting long-tailed distribution to empirical data
    Gil, Joseph
    Monni, Cristina
    CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2017, 29 (24):
  • [33] Decoupled Contrastive Learning for Long-Tailed Distribution
    Chen, Xiaohua
    Zhou, Yucan
    Wang, Lin
    Wu, Dayan
    Zhang, Wanqian
    Li, Bo
    Wang, Weiping
    PATTERN RECOGNITION AND COMPUTER VISION, PRCV 2023, PT IX, 2024, 14433 : 3 - 15
  • [34] Handling Long-tailed Feature Distribution in AdderNets
    Dong, Minjing
    Wang, Yunhe
    Chen, Xinghao
    Xu, Chang
    ADVANCES IN NEURAL INFORMATION PROCESSING SYSTEMS 34 (NEURIPS 2021), 2021, 34
  • [35] Robust estimation of scattering center parameters in long-tailed K-distribution clutter
    Shi zhiguang
    Zhou jianxiong
    Zhao hongzhong
    Fu qiang
    PROCEEDINGS OF 2006 CIE INTERNATIONAL CONFERENCE ON RADAR, VOLS 1 AND 2, 2006, : 1671 - +
  • [36] DISTRIBUTION-AWARE CONTRASTIVE LEARNING FOR ROBUST MEDICAL IMAGE SEGMENTATION
    Qin, Zheyun
    Xi, Xiaoming
    Yin, Yilong
    2024 IEEE INTERNATIONAL CONFERENCE ON ACOUSTICS, SPEECH AND SIGNAL PROCESSING, ICASSP 2024, 2024, : 1991 - 1995
  • [37] Partial and Asymmetric Contrastive Learning for Out-of-Distribution Detection in Long-Tailed Recognition
    Wang, Haotao
    Zhang, Aston
    Zhu, Yi
    Zheng, Shuai
    Li, Mu
    Smola, Alex
    Wang, Zhangyang
    INTERNATIONAL CONFERENCE ON MACHINE LEARNING, VOL 162, 2022,
  • [38] Class-Balanced Regularization for Long-Tailed Recognition
    Xu, Yuge
    Lyu, Chuanlong
    NEURAL PROCESSING LETTERS, 2024, 56 (03)
  • [39] Feature fusion network for long-tailed visual recognition
    Zhou, Xuesong
    Zhai, Junhai
    Cao, Yang
    PATTERN RECOGNITION, 2023, 144
  • [40] Balanced Product of Calibrated Experts for Long-Tailed Recognition
    Aimar, Emanuel Sanchez
    Jonnarth, Arvi
    Felsberg, Michael
    Kuhlmann, Marco
    2023 IEEE/CVF CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION (CVPR), 2023, : 19967 - 19977