Adversarial Robustness of Flow-Based Generative Models

被引:0
|
作者
Pope, Phillip [1 ]
Balaji, Yogesh [1 ]
Feizi, Soheil [1 ]
机构
[1] Univ Maryland, College Pk, MD 20742 USA
关键词
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Flow-based generative models leverage invertible generator functions to fit a distribution to the training data using maximum likelihood. Despite their use in several application domains, robustness of these models to adversarial attacks has hardly been explored. In this paper, we study adversarial robustness of flow-based generative models both theoretically (for some simple models) and empirically (for more complex ones). First, we consider a linear flow-based generative model and compute optimal sample-specific and universal adversarial perturbations that maximally decrease the likelihood scores. Using this result, we study the robustness of the well-known adversarial training procedure, where we characterize the fundamental trade-off between model robustness and accuracy. Next, we empirically study the robustness of two prominent deep, nonlinear, flow-based generative models, namely GLOW and RealNVP. We design two types of adversarial attacks; one that minimizes the likelihood scores of in-distribution samples, while the other that maximizes the likelihood scores of out-of-distribution ones. We find that GLOW and RealNVP are extremely sensitive to both types of attacks. Finally, using a hybrid adversarial training procedure, we significantly boost the robustness of these generative models.
引用
收藏
页码:3795 / 3804
页数:10
相关论文
共 50 条
  • [1] Investigating on the robustness of flow-based intrusion detection system against adversarial samples using Generative Adversarial Networks
    Duy, Phan The
    Khoa, Nghi Hoang
    Hien, Do Thi Thu
    Hoang, Hien Do
    Pham, Van-Hau
    [J]. JOURNAL OF INFORMATION SECURITY AND APPLICATIONS, 2023, 74
  • [2] Adversarial Robustness of Flow-based Image Super-Resolution
    Park, Junha
    Choi, Jun-Ho
    Lee, Jong-Seok
    [J]. 2022 IEEE 24TH INTERNATIONAL WORKSHOP ON MULTIMEDIA SIGNAL PROCESSING (MMSP), 2022,
  • [3] Flow-based network traffic generation using Generative Adversarial Networks
    Ring, Markus
    Schloer, Daniel
    Landes, Dieter
    Hotho, Andreas
    [J]. COMPUTERS & SECURITY, 2019, 82 : 156 - 172
  • [4] Expression Transfer Using Flow-based Generative Models
    Valenzuela, Andrea
    Segura, Carlos
    Diego, Ferran
    Gomez, Vicenc
    [J]. 2021 IEEE/CVF CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION WORKSHOPS, CVPRW 2021, 2021, : 1023 - 1031
  • [5] Synthetic flow-based cryptomining attack generation through Generative Adversarial Networks
    Alberto Mozo
    Ángel González-Prieto
    Antonio Pastor
    Sandra Gómez-Canaval
    Edgar Talavera
    [J]. Scientific Reports, 12
  • [6] Synthetic flow-based cryptomining attack generation through Generative Adversarial Networks
    Mozo, Alberto
    Gonzalez-Prieto, Angel
    Pastor, Antonio
    Gomez-Canaval, Sandra
    Talavera, Edgar
    [J]. SCIENTIFIC REPORTS, 2022, 12 (01)
  • [7] Flow-based Generative Models for Learning Manifold to Manifold Mappings
    Zhen, Xingjian
    Chakraborty, Rudrasis
    Yang, Liu
    Singh, Vikas
    [J]. THIRTY-FIFTH AAAI CONFERENCE ON ARTIFICIAL INTELLIGENCE, THIRTY-THIRD CONFERENCE ON INNOVATIVE APPLICATIONS OF ARTIFICIAL INTELLIGENCE AND THE ELEVENTH SYMPOSIUM ON EDUCATIONAL ADVANCES IN ARTIFICIAL INTELLIGENCE, 2021, 35 : 11042 - 11052
  • [8] Flow-based Generative Emulation of Grids of Stellar Evolutionary Models
    Hon, Marc
    Li, Yaguang
    Ong, Joel
    [J]. ASTROPHYSICAL JOURNAL, 2024, 973 (02):
  • [9] Gradient flow-based meta generative adversarial network for data augmentation in fault diagnosis
    Wang, Rugen
    Chen, Zhuyun
    Li, Weihua
    [J]. APPLIED SOFT COMPUTING, 2023, 142
  • [10] Super-resolution of spin configurations based on flow-based generative models
    Shiina, Kenta
    Mori, Hiroyuki
    Okabe, Yutaka
    Lee, Hwee Kuan
    [J]. JOURNAL OF PHYSICS A-MATHEMATICAL AND THEORETICAL, 2024, 57 (38)