Adversarial Robustness under Long-Tailed Distribution

被引:45
|
作者
Wu, Tong [1 ,5 ]
Liu, Ziwei [2 ]
Huang, Qingqiu [3 ]
Wang, Yu [4 ]
Lin, Dahua [1 ,5 ,6 ]
机构
[1] Chinese Univ Hong Kong, Hong Kong, Peoples R China
[2] Nanyang Technol Univ, S Lab, Singapore, Singapore
[3] Huawei, Shenzhen, Peoples R China
[4] Tsinghua Univ, Beijing, Peoples R China
[5] SenseTime CUHK Joint Lab, Hong Kong, Peoples R China
[6] Ctr Perceptual & Interact Intelligence, Hong Kong, Peoples R China
关键词
D O I
10.1109/CVPR46437.2021.00855
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Adversarial robustness has attracted extensive studies recently by revealing the vulnerability and intrinsic characteristics of deep networks. However; existing works on adversarial robustness mainly focus on balanced datasets, while real-world data usually exhibits a long-tailed distribution. To push adversarial robustness towards more realistic scenarios, in this work we investigate the adversarial vulnerability as well as defense under long-tailed distributions. In particular, we first reveal the negative impacts induced by imbalanced data on both recognition performance and adversarial robustness, uncovering the intrinsic challenges of this problem. We then perform a systematic study on existing long-tailed recognition methods in conjunction with the adversarial training framework. Several valuable observations are obtained: 1) natural accuracy is relatively easy to improve, 2) fake gain of robust accuracy exists under unreliable evaluation, and 3) boundary error limits the promotion of robustness. Inspired by these observations, we propose a clean yet effective framework, RoBal, which consists of two dedicated modules, a scale-invariant classifier and data re-balancing via both margin engineering at training stage and boundary adjustment during inference. Extensive experiments demonstrate the superiority of our approach over other state-of-the-art defense methods. To our best knowledge, we are the first to tackle adversarial robustness under long-tailed distributions, which we believe would be a significant step towards real-world robustness. Our code is available at: https://github. com/wutong16/Adversarial_Long-Tai1.
引用
收藏
页码:8655 / 8664
页数:10
相关论文
共 50 条
  • [21] Towards better long-tailed oracle character recognition with adversarial data augmentation
    Li, Jing
    Wang, Qiu-Feng
    Huang, Kaizhu
    Yang, Xi
    Zhang, Rui
    Goulermas, John Y.
    PATTERN RECOGNITION, 2023, 140
  • [22] Label-Aware Distribution Calibration for Long-Tailed Classification
    Wang, Chaozheng
    Gao, Shuzheng
    Wang, Pengyun
    Gao, Cuiyun
    Pei, Wenjie
    Pan, Lujia
    Xu, Zenglin
    IEEE TRANSACTIONS ON NEURAL NETWORKS AND LEARNING SYSTEMS, 2024, 35 (05) : 6963 - 6975
  • [23] Real-Time Activities of Daily Living Recognition Under Long-Tailed Class Distribution
    Chaudhary, Atul
    Gupta, Hari Prabhat
    Shukla, K. K.
    IEEE TRANSACTIONS ON EMERGING TOPICS IN COMPUTATIONAL INTELLIGENCE, 2022, 6 (04): : 740 - 750
  • [24] Virtual Student Distribution Knowledge Distillation for Long-Tailed Recognition
    Liu, Haodong
    Huang, Xinlei
    Tang, Jialiang
    Jiang, Ning
    PATTERN RECOGNITION AND COMPUTER VISION, PRCV 2024, PT IV, 2025, 15034 : 406 - 419
  • [25] EAT: Towards Long-Tailed Out-of-Distribution Detection
    Wei, Tong
    Wang, Bo-Lin
    Zhang, Min-Ling
    THIRTY-EIGHTH AAAI CONFERENCE ON ARTIFICIAL INTELLIGENCE, VOL 38 NO 14, 2024, : 15787 - 15795
  • [26] Spatial distribution model of a Hantavirus reservoir, the long-tailed colilargo
    Carbajo, Anibal E.
    Pardinas, Ulyses F. J.
    JOURNAL OF MAMMALOGY, 2007, 88 (06) : 1555 - 1568
  • [27] Propheter: Prophetic Teacher Guided Long-Tailed Distribution Learning
    Xu, Wenxiang
    Jing, Yongcheng
    Zhou, Linyun
    Huang, Wenqi
    Cheng, Lechao
    Feng, Zunlei
    Song, Mingli
    NEURAL INFORMATION PROCESSING, ICONIP 2023, PT IV, 2024, 14450 : 213 - 225
  • [28] Trustworthy Long-Tailed Classification
    Li, Bolian
    Han, Zongbo
    Li, Haining
    Fu, Huazhu
    Zhang, Changqing
    2022 IEEE/CVF CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION (CVPR 2022), 2022, : 6960 - 6969
  • [29] The long-tailed field mouse
    不详
    AMERICAN NATURALIST, 1901, 35 : 683 - 683
  • [30] Long-Tailed Food Classification
    He, Jiangpeng
    Lin, Luotao
    Eicher-Miller, Heather A.
    Zhu, Fengqing
    NUTRIENTS, 2023, 15 (12)