Improving Ensemble Robustness by Collaboratively Promoting and Demoting Adversarial Robustness

被引:0
|
作者
Anh Tuan Bui [1 ]
Trung Le [1 ]
Zhao, He [1 ]
Montague, Paul [2 ]
deVel, Olivier [2 ]
Abraham, Tamas [2 ]
Dinh Phung [1 ]
机构
[1] Monash Univ, Clayton, Vic, Australia
[2] Def Sci & Technol Grp, Canberra, ACT, Australia
关键词
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Ensemble-based adversarial training is a principled approach to achieve robustness against adversarial attacks. An important technique of this approach is to control the transferability of adversarial examples among ensemble members. We propose in this work a simple yet effective strategy to collaborate among committee models of an ensemble model. This is achieved via the secure and insecure sets defined for each model member on a given sample, hence help us to quantify and regularize the transferability. Consequently, our proposed framework provides the flexibility to reduce the adversarial transferability as well as to promote the diversity of ensemble members, which are two crucial factors for better robustness in our ensemble approach. We conduct extensive and comprehensive experiments to demonstrate that our proposed method outperforms the state-of-the-art ensemble baselines, at the same time can detect a wide range of adversarial examples with a nearly perfect accuracy. Our code is available at: https://github.com/tuananhbui89/Crossing-Collaborative-Ensemble.
引用
收藏
页码:6831 / 6839
页数:9
相关论文
共 50 条
  • [1] Improving Adversarial Robustness via Promoting Ensemble Diversity
    Pang, Tianyu
    Xu, Kun
    Du, Chao
    Chen, Ning
    Zhu, Jun
    INTERNATIONAL CONFERENCE ON MACHINE LEARNING, VOL 97, 2019, 97
  • [2] Improving Adversarial Robustness With Adversarial Augmentations
    Chen, Chuanxi
    Ye, Dengpan
    He, Yiheng
    Tang, Long
    Xu, Yue
    IEEE INTERNET OF THINGS JOURNAL, 2024, 11 (03) : 5105 - 5117
  • [3] Improving Adversarial Robustness on Single Model via Feature Fusion and Ensemble Diversity
    Wei F.
    Song Y.-F.
    Shao M.-L.
    Liu T.
    Chen X.-H.
    Wang X.-F.
    Chen M.-S.
    Ruan Jian Xue Bao/Journal of Software, 2020, 31 (09): : 2756 - 2769
  • [4] Improving Adversarial Robustness of Ensemble Classifiers by Diversified Feature Selection and Stochastic Aggregation
    Zhang, Fuyong
    Li, Kuan
    Ren, Ziliang
    MATHEMATICS, 2024, 12 (06)
  • [5] Are Labels Required for Improving Adversarial Robustness?
    Uesato, Jonathan
    Alayrac, Jean-Baptiste
    Huang, Po-Sen
    Stanforth, Robert
    Fawzi, Alhussein
    Kohli, Pushmeet
    ADVANCES IN NEURAL INFORMATION PROCESSING SYSTEMS 32 (NIPS 2019), 2019, 32
  • [6] Feature Denoising for Improving Adversarial Robustness
    Xie, Cihang
    Wu, Yuxin
    van der Maaten, Laurens
    Yuille, Alan
    He, Kaiming
    2019 IEEE/CVF CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION (CVPR 2019), 2019, : 501 - 509
  • [7] Diversity supporting robustness: Enhancing adversarial robustness via differentiated ensemble predictions
    Chen, Xi
    Huang, Wei
    Peng, Ziwen
    Guo, Wei
    Zhang, Fan
    COMPUTERS & SECURITY, 2024, 142
  • [8] EXPLOITING DOUBLY ADVERSARIAL EXAMPLES FOR IMPROVING ADVERSARIAL ROBUSTNESS
    Byun, Junyoung
    Go, Hyojun
    Cho, Seungju
    Kim, Changick
    2022 IEEE INTERNATIONAL CONFERENCE ON IMAGE PROCESSING, ICIP, 2022, : 1331 - 1335
  • [9] Sliced Wasserstein adversarial training for improving adversarial robustness
    Lee W.
    Lee S.
    Kim H.
    Lee J.
    Journal of Ambient Intelligence and Humanized Computing, 2024, 15 (08) : 3229 - 3242
  • [10] Improving Adversarial Robustness by Reconstructing Interclass Relationships
    Xu, Li
    Guo, Huiting
    Yang, Zejin
    Wan, Xu
    Fan, Chunlong
    PROCEEDINGS OF THE 2024 27 TH INTERNATIONAL CONFERENCE ON COMPUTER SUPPORTED COOPERATIVE WORK IN DESIGN, CSCWD 2024, 2024, : 1968 - 1973