Adversarial Robustness of Flow-Based Generative Models

被引:0
|
作者
Pope, Phillip [1 ]
Balaji, Yogesh [1 ]
Feizi, Soheil [1 ]
机构
[1] Univ Maryland, College Pk, MD 20742 USA
关键词
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Flow-based generative models leverage invertible generator functions to fit a distribution to the training data using maximum likelihood. Despite their use in several application domains, robustness of these models to adversarial attacks has hardly been explored. In this paper, we study adversarial robustness of flow-based generative models both theoretically (for some simple models) and empirically (for more complex ones). First, we consider a linear flow-based generative model and compute optimal sample-specific and universal adversarial perturbations that maximally decrease the likelihood scores. Using this result, we study the robustness of the well-known adversarial training procedure, where we characterize the fundamental trade-off between model robustness and accuracy. Next, we empirically study the robustness of two prominent deep, nonlinear, flow-based generative models, namely GLOW and RealNVP. We design two types of adversarial attacks; one that minimizes the likelihood scores of in-distribution samples, while the other that maximizes the likelihood scores of out-of-distribution ones. We find that GLOW and RealNVP are extremely sensitive to both types of attacks. Finally, using a hybrid adversarial training procedure, we significantly boost the robustness of these generative models.
引用
收藏
页码:3795 / 3804
页数:10
相关论文
共 50 条
  • [31] Versatile anomaly detection method for medical images with semi-supervised flow-based generative models
    Shibata, Hisaichi
    Hanaoka, Shouhei
    Nomura, Yukihiro
    Nakao, Takahiro
    Sato, Issei
    Sato, Daisuke
    Hayashi, Naoto
    Abe, Osamu
    [J]. INTERNATIONAL JOURNAL OF COMPUTER ASSISTED RADIOLOGY AND SURGERY, 2021, 16 (12) : 2261 - 2267
  • [32] Adversarial examples for generative models
    Kos, Jernej
    Fischer, Ian
    Song, Dawn
    [J]. 2018 IEEE SYMPOSIUM ON SECURITY AND PRIVACY WORKSHOPS (SPW 2018), 2018, : 36 - 42
  • [33] Robustness Certification with Generative Models
    Mirman, Matthew
    Haegele, Alexander
    Bielik, Pavol
    Gehr, Timon
    Vechev, Martin
    [J]. PROCEEDINGS OF THE 42ND ACM SIGPLAN INTERNATIONAL CONFERENCE ON PROGRAMMING LANGUAGE DESIGN AND IMPLEMENTATION (PLDI '21), 2021, : 1141 - 1154
  • [34] A Method Using Generative Adversarial Networks for Robustness Optimization
    Feldkamp, Niclas
    Bergmann, Soeren
    Conrad, Florian
    Strassburger, Steffen
    [J]. ACM TRANSACTIONS ON MODELING AND COMPUTER SIMULATION, 2022, 32 (02):
  • [35] FlowGANAnomaly: Flow-Based Anomaly Network Intrusion Detection with Adversarial Learning
    Li, Zeyi
    Wang, Pan
    Wang, Zixuan
    Zhan, De-chuan
    [J]. CHINESE JOURNAL OF ELECTRONICS, 2024, 33 (01) : 58 - 71
  • [36] FlowGANAnomaly: Flow-Based Anomaly Network Intrusion Detection with Adversarial Learning
    Zeyi LI
    Pan WANG
    Zixuan WANG
    [J]. Chinese Journal of Electronics, 2024, 33 (01) : 58 - 71
  • [37] Reservoir Inflow Forecasting in Hydropower Industry: A Generative Flow-Based Approach
    Zhou, Fan
    Wang, Zhiyuan
    Chen, Dajiang
    Zhang, Kuan
    [J]. IEEE TRANSACTIONS ON INDUSTRIAL INFORMATICS, 2023, 19 (02) : 1196 - 1206
  • [38] Scenario forecasting for wind power using flow-based generative networks
    Hu, Shifeng
    Zhu, Ruijin
    Li, Guoguang
    Song, Like
    [J]. ENERGY REPORTS, 2021, 7 : 369 - 377
  • [39] Assessing the Accuracy and Efficiency of Free Energy Differences Obtained from Reweighted Flow-Based Probabilistic Generative Models
    Olehnovics, Edgar
    Liu, Yifei Michelle
    Mehio, Nada
    Sheikh, Ahmad Y.
    Shirts, Michael R.
    Salvalaglio, Matteo
    [J]. JOURNAL OF CHEMICAL THEORY AND COMPUTATION, 2024, 20 (14) : 5913 - 5922
  • [40] DualFlow: Generating imperceptible adversarial examples by flow field and normalize flow-based model
    Liu, Renyang
    Jin, Xin
    Hu, Dongting
    Zhang, Jinhong
    Wang, Yuanyu
    Zhang, Jin
    Zhou, Wei
    [J]. FRONTIERS IN NEUROROBOTICS, 2023, 17