Hidden Cost of Randomized Smoothing

被引:0
|
作者
Mohapatra, Jeet [1 ]
Ko, Ching-Yun [1 ]
Weng, Tsui-Wei [2 ]
Chen, Pin-Yu [3 ]
Liu, Sijia [2 ]
Daniel, Luca [1 ]
机构
[1] MIT, Cambridge, MA 02139 USA
[2] MIT IBM Watson Lab, Boston, MA USA
[3] IBM Res, Armonk, NY USA
关键词
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
The fragility of modern machine learning models has drawn a considerable amount of attention from both academia and the public. While immense interests were in either crafting adversarial attacks as a way to measure the robustness of neural networks or devising worst-case analytical robustness verification with guarantees, few methods could enjoy both scalability and robustness guarantees at the same time. As an alternative to these attempts, randomized smoothing adopts a different prediction rule that enables statistical robustness arguments which easily scale to large networks. However, in this paper, we point out the side effects of current randomized smoothing workflows. Specifically, we articulate and prove two major points: 1) the decision boundaries of smoothed classifiers will shrink, resulting in disparity in class-wise accuracy; 2) applying noise augmentation in the training process does not necessarily resolve the shrinking issue due to the inconsistent learning objectives.
引用
收藏
页数:10
相关论文
共 50 条
  • [1] A Randomized cost smoothing approach for optical network design
    Juttner, Alpar
    Cinkler, Tibor
    Dezso, Balazs
    ICTON 2007: PROCEEDINGS OF THE 9TH INTERNATIONAL CONFERENCE ON TRANSPARENT OPTICAL NETWORKS, VOL 1, 2007, : 75 - +
  • [2] Promoting Robustness of Randomized Smoothing: Two Cost-Effective Approaches
    Liu, Linbo
    Hoang, Trong Nghia
    Nguyen, Lam M.
    Weng, Tsui-Wei
    23RD IEEE INTERNATIONAL CONFERENCE ON DATA MINING, ICDM 2023, 2023, : 1145 - 1150
  • [3] The Hidden Cost of Accommodating Crowdfunder Privacy Preferences: A Randomized Field Experiment
    Burtch, Gordon
    Ghose, Anindya
    Wattal, Sunil
    MANAGEMENT SCIENCE, 2015, 61 (05) : 949 - 962
  • [4] The Hidden Cost of Hidden Terminals
    Liu, Feilu
    Lin, Jian
    Tao, Zhifeng
    Korakis, Thanasis
    Erkip, Elza
    Panwar, Shivendra
    2010 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS, 2010,
  • [5] Randomized smoothing networks
    Herlihy, M
    Tirthapura, S
    JOURNAL OF PARALLEL AND DISTRIBUTED COMPUTING, 2006, 66 (05) : 626 - 632
  • [6] Hierarchical Randomized Smoothing
    Scholten, Yan
    Schuchardt, Jan
    Bojchevski, Aleksandar
    Guennemann, Stephan
    ADVANCES IN NEURAL INFORMATION PROCESSING SYSTEMS 36 (NEURIPS 2023), 2023,
  • [7] The Hidden Cost
    Trappey, Bernard E.
    AMERICAN JOURNAL OF MEDICINE, 2023, 136 (04): : 399 - 400
  • [8] A Hidden Cost
    Mehmel, Peter
    MINNESOTA REVIEW, 2009, (73-74) : 18 - 20
  • [9] Hidden cost
    Studebaker, P.
    Control (Chicago, Ill), 2001, 14 (04):
  • [10] The hidden cost
    Barker, Steve
    COMPUTING AND CONTROL ENGINEERING, 2007, 18 (01): : 10 - 11