Improving Adversarial Robustness via Probabilistically Compact Loss with Logit Constraints

被引:0
|
作者
Li, Xin [1 ]
Li, Xiangrui [1 ]
Pan, Deng [1 ]
Zhu, Dongxiao [1 ]
机构
[1] Wayne State Univ, Dept Comp Sci, Detroit, MI 48202 USA
基金
美国国家科学基金会;
关键词
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Convolutional neural networks (CNNs) have achieved state-of-the-art performance on various tasks in computer vision. However, recent studies demonstrate that these models are vulnerable to carefully crafted adversarial samples and suffer from a significant performance drop when predicting them. Many methods have been proposed to improve adversarial robustness (e.g., adversarial training and new loss functions to learn adversarially robust feature representations). Here we offer a unique insight into the predictive behavior of CNNs that they tend to misclassify adversarial samples into the most probable false classes. This inspires us to propose a new Probabilistically Compact (PC) loss with logit constraints which can be used as a drop-in replacement for cross-entropy (CE) loss to improve CNN's adversarial robustness. Specifically, PC loss enlarges the probability gaps between true class and false classes meanwhile the logit constraints prevent the gaps from being melted by a small perturbation. We extensively compare our method with the state-of-the-art using large scale datasets under both white-box and black-box attacks to demonstrate its effectiveness. The source codes are available at https://github.com/xinli0928/PC-LC.
引用
收藏
页码:8482 / 8490
页数:9
相关论文
共 50 条
  • [21] Are Labels Required for Improving Adversarial Robustness?
    Uesato, Jonathan
    Alayrac, Jean-Baptiste
    Huang, Po-Sen
    Stanforth, Robert
    Fawzi, Alhussein
    Kohli, Pushmeet
    ADVANCES IN NEURAL INFORMATION PROCESSING SYSTEMS 32 (NIPS 2019), 2019, 32
  • [22] Feature Denoising for Improving Adversarial Robustness
    Xie, Cihang
    Wu, Yuxin
    van der Maaten, Laurens
    Yuille, Alan
    He, Kaiming
    2019 IEEE/CVF CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION (CVPR 2019), 2019, : 501 - 509
  • [23] Improving the adversarial robustness of quantized neural networks via exploiting the feature diversity
    Chu, Tianshu
    Fang, Kun
    Yang, Jie
    Huang, Xiaolin
    PATTERN RECOGNITION LETTERS, 2023, 176 : 117 - 122
  • [24] Improving Robustness of DNNs against Common Corruptions via Gaussian Adversarial Training
    Yi, Chenyu
    Li, Haoliang
    Wan, Renjie
    Kot, Alex C.
    2020 IEEE INTERNATIONAL CONFERENCE ON VISUAL COMMUNICATIONS AND IMAGE PROCESSING (VCIP), 2020, : 17 - 20
  • [25] Improving adversarial robustness of deep neural networks via adaptive margin evolution
    Ma, Linhai
    Liang, Liang
    NEUROCOMPUTING, 2023, 551
  • [26] Improving Adversarial Robustness on Single Model via Feature Fusion and Ensemble Diversity
    Wei F.
    Song Y.-F.
    Shao M.-L.
    Liu T.
    Chen X.-H.
    Wang X.-F.
    Chen M.-S.
    Ruan Jian Xue Bao/Journal of Software, 2020, 31 (09): : 2756 - 2769
  • [27] Improving the robustness of steganalysis in the adversarial environment with Generative Adversarial Network
    Peng, Ye
    Yu, Qi
    Fu, Guobin
    Zhang, WenWen
    Duan, ChaoFan
    JOURNAL OF INFORMATION SECURITY AND APPLICATIONS, 2024, 82
  • [28] Improving Ensemble Robustness by Collaboratively Promoting and Demoting Adversarial Robustness
    Anh Tuan Bui
    Trung Le
    Zhao, He
    Montague, Paul
    deVel, Olivier
    Abraham, Tamas
    Dinh Phung
    THIRTY-FIFTH AAAI CONFERENCE ON ARTIFICIAL INTELLIGENCE, THIRTY-THIRD CONFERENCE ON INNOVATIVE APPLICATIONS OF ARTIFICIAL INTELLIGENCE AND THE ELEVENTH SYMPOSIUM ON EDUCATIONAL ADVANCES IN ARTIFICIAL INTELLIGENCE, 2021, 35 : 6831 - 6839
  • [29] Improving Transferable Targeted Adversarial Attack for Object Detection Using RCEN Framework and Logit Loss Optimization
    Ding, Zhiyi
    Sun, Lei
    Mao, Xiuqing
    Dai, Leyu
    Ding, Ruiyang
    CMC-COMPUTERS MATERIALS & CONTINUA, 2024, 80 (03): : 4387 - 4412
  • [30] Improving Adversarial Robustness by Reconstructing Interclass Relationships
    Xu, Li
    Guo, Huiting
    Yang, Zejin
    Wan, Xu
    Fan, Chunlong
    PROCEEDINGS OF THE 2024 27 TH INTERNATIONAL CONFERENCE ON COMPUTER SUPPORTED COOPERATIVE WORK IN DESIGN, CSCWD 2024, 2024, : 1968 - 1973