Adversarial Robustness under Long-Tailed Distribution

被引:45
|
作者
Wu, Tong [1 ,5 ]
Liu, Ziwei [2 ]
Huang, Qingqiu [3 ]
Wang, Yu [4 ]
Lin, Dahua [1 ,5 ,6 ]
机构
[1] Chinese Univ Hong Kong, Hong Kong, Peoples R China
[2] Nanyang Technol Univ, S Lab, Singapore, Singapore
[3] Huawei, Shenzhen, Peoples R China
[4] Tsinghua Univ, Beijing, Peoples R China
[5] SenseTime CUHK Joint Lab, Hong Kong, Peoples R China
[6] Ctr Perceptual & Interact Intelligence, Hong Kong, Peoples R China
关键词
D O I
10.1109/CVPR46437.2021.00855
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Adversarial robustness has attracted extensive studies recently by revealing the vulnerability and intrinsic characteristics of deep networks. However; existing works on adversarial robustness mainly focus on balanced datasets, while real-world data usually exhibits a long-tailed distribution. To push adversarial robustness towards more realistic scenarios, in this work we investigate the adversarial vulnerability as well as defense under long-tailed distributions. In particular, we first reveal the negative impacts induced by imbalanced data on both recognition performance and adversarial robustness, uncovering the intrinsic challenges of this problem. We then perform a systematic study on existing long-tailed recognition methods in conjunction with the adversarial training framework. Several valuable observations are obtained: 1) natural accuracy is relatively easy to improve, 2) fake gain of robust accuracy exists under unreliable evaluation, and 3) boundary error limits the promotion of robustness. Inspired by these observations, we propose a clean yet effective framework, RoBal, which consists of two dedicated modules, a scale-invariant classifier and data re-balancing via both margin engineering at training stage and boundary adjustment during inference. Extensive experiments demonstrate the superiority of our approach over other state-of-the-art defense methods. To our best knowledge, we are the first to tackle adversarial robustness under long-tailed distributions, which we believe would be a significant step towards real-world robustness. Our code is available at: https://github. com/wutong16/Adversarial_Long-Tai1.
引用
收藏
页码:8655 / 8664
页数:10
相关论文
共 50 条
  • [1] DRL: Dynamic rebalance learning for adversarial robustness of UAV with long-tailed distribution
    Sun, Yancheng
    Chen, Yuling
    Wu, Peng
    Wang, Xuewei
    Wang, Qi
    COMPUTER COMMUNICATIONS, 2023, 205 : 14 - 23
  • [2] Revisiting Visual Model Robustness: A Frequency Long-Tailed Distribution View
    Lin, Zhiyu
    Gao, Yifei
    Yang, Yunfan
    Sang, Jitao
    ADVANCES IN NEURAL INFORMATION PROCESSING SYSTEMS 36 (NEURIPS 2023), 2023,
  • [3] Long-tailed Distribution Adaptation
    Peng, Zhiliang
    Huang, Wei
    Guo, Zonghao
    Zhang, Xiaosong
    Jiao, Jianbin
    Ye, Qixiang
    PROCEEDINGS OF THE 29TH ACM INTERNATIONAL CONFERENCE ON MULTIMEDIA, MM 2021, 2021, : 3275 - 3282
  • [4] Robust long-tailed recognition with distribution-aware adversarial example generation
    Li, Bo
    Yao, Yongqiang
    Tan, Jingru
    Zhu, Dandan
    Gong, Ruihao
    Luo, Ye
    Lu, Jianwei
    NEURAL NETWORKS, 2025, 184
  • [5] Tackling Long-Tailed Category Distribution Under Domain Shifts
    Gu, Xiao
    Guo, Yao
    Li, Zeju
    Qiu, Jianing
    Dou, Qi
    Liu, Yuxuan
    Lo, Benny
    Yang, Guang-Zhong
    COMPUTER VISION, ECCV 2022, PT XXIII, 2022, 13683 : 727 - 743
  • [6] Adaptive estimation of autoregression models under long-tailed symmetric distribution
    Yentur, Begum
    Akkaya, Aysen D.
    Bayrak, Ozlem Turker
    COMMUNICATIONS IN STATISTICS-SIMULATION AND COMPUTATION, 2024, 53 (07) : 3395 - 3417
  • [7] CONFIDENCE-INTERVAL ROBUSTNESS WITH LONG-TAILED SYMMETRIC DISTRIBUTIONS
    GROSS, AM
    JOURNAL OF THE AMERICAN STATISTICAL ASSOCIATION, 1976, 71 (354) : 409 - 416
  • [8] Fitting long-tailed distribution to empirical data
    Gil, Joseph
    Monni, Cristina
    CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2017, 29 (24):
  • [9] Decoupled Contrastive Learning for Long-Tailed Distribution
    Chen, Xiaohua
    Zhou, Yucan
    Wang, Lin
    Wu, Dayan
    Zhang, Wanqian
    Li, Bo
    Wang, Weiping
    PATTERN RECOGNITION AND COMPUTER VISION, PRCV 2023, PT IX, 2024, 14433 : 3 - 15
  • [10] Handling Long-tailed Feature Distribution in AdderNets
    Dong, Minjing
    Wang, Yunhe
    Chen, Xinghao
    Xu, Chang
    ADVANCES IN NEURAL INFORMATION PROCESSING SYSTEMS 34 (NEURIPS 2021), 2021, 34