Improving Ensemble Robustness by Collaboratively Promoting and Demoting Adversarial Robustness

被引:0
|
作者
Anh Tuan Bui [1 ]
Trung Le [1 ]
Zhao, He [1 ]
Montague, Paul [2 ]
deVel, Olivier [2 ]
Abraham, Tamas [2 ]
Dinh Phung [1 ]
机构
[1] Monash Univ, Clayton, Vic, Australia
[2] Def Sci & Technol Grp, Canberra, ACT, Australia
关键词
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Ensemble-based adversarial training is a principled approach to achieve robustness against adversarial attacks. An important technique of this approach is to control the transferability of adversarial examples among ensemble members. We propose in this work a simple yet effective strategy to collaborate among committee models of an ensemble model. This is achieved via the secure and insecure sets defined for each model member on a given sample, hence help us to quantify and regularize the transferability. Consequently, our proposed framework provides the flexibility to reduce the adversarial transferability as well as to promote the diversity of ensemble members, which are two crucial factors for better robustness in our ensemble approach. We conduct extensive and comprehensive experiments to demonstrate that our proposed method outperforms the state-of-the-art ensemble baselines, at the same time can detect a wide range of adversarial examples with a nearly perfect accuracy. Our code is available at: https://github.com/tuananhbui89/Crossing-Collaborative-Ensemble.
引用
收藏
页码:6831 / 6839
页数:9
相关论文
共 50 条
  • [41] Class-aware domain adaptation for improving adversarial robustness
    Hou, Xianxu
    Liu, Jingxin
    Xu, Bolei
    Wang, Xiaolong
    Liu, Bozhi
    Qiu, Guoping
    IMAGE AND VISION COMPUTING, 2020, 99 (99)
  • [42] Towards Improving Robustness of Deep Neural Networks to Adversarial Perturbations
    Amini, Sajjad
    Ghaemmaghami, Shahrokh
    IEEE TRANSACTIONS ON MULTIMEDIA, 2020, 22 (07) : 1889 - 1903
  • [43] Improving adversarial robustness of traffic sign image recognition networks
    Hashemi, Atiye Sadat
    Mozaffari, Saeed
    Alirezaee, Shahpour
    DISPLAYS, 2022, 74
  • [44] Improving the Robustness of the Bug Triage Model through Adversarial Training
    Kim, Min-ha
    Wang, Dae-sung
    Wang, Sheng-tsai
    Park, Seo-Hyeon
    Lee, Chan-gun
    36TH INTERNATIONAL CONFERENCE ON INFORMATION NETWORKING (ICOIN 2022), 2022, : 478 - 481
  • [45] Improving DNN Robustness to Adversarial Attacks Using Jacobian Regularization
    Jakubovitz, Daniel
    Girye, Raja
    COMPUTER VISION - ECCV 2018, PT XII, 2018, 11216 : 525 - 541
  • [46] Robust Proxy: Improving Adversarial Robustness by Robust Proxy Learning
    Lee, Hong Joo
    Ro, Yong Man
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2023, 18 : 4021 - 4033
  • [47] SPLASH: Learnable activation functions for improving accuracy and adversarial robustness
    Tavakoli, Mohammadamin
    Agostinelli, Forest
    Baldi, Pierre
    NEURAL NETWORKS, 2021, 140 : 1 - 12
  • [48] Improving Adversarial Robustness via Distillation-Based Purification
    Koo, Inhwa
    Chae, Dong-Kyu
    Lee, Sang-Chul
    Cascio, Donato
    APPLIED SCIENCES-BASEL, 2023, 13 (20):
  • [49] Improving the Robustness of Model Compression by On-Manifold Adversarial Training
    Kwon, Junhyung
    Lee, Sangkyun
    FUTURE INTERNET, 2021, 13 (12)
  • [50] Ensemble-in-One: Ensemble Learning within Random Gated Networks for Enhanced Adversarial Robustness
    Cai, Yi
    Ning, Xuefei
    Yang, Huazhong
    Wang, Yu
    THIRTY-SEVENTH AAAI CONFERENCE ON ARTIFICIAL INTELLIGENCE, VOL 37 NO 12, 2023, : 14738 - 14747