Hidden Cost of Randomized Smoothing

被引:0
|
作者
Mohapatra, Jeet [1 ]
Ko, Ching-Yun [1 ]
Weng, Tsui-Wei [2 ]
Chen, Pin-Yu [3 ]
Liu, Sijia [2 ]
Daniel, Luca [1 ]
机构
[1] MIT, Cambridge, MA 02139 USA
[2] MIT IBM Watson Lab, Boston, MA USA
[3] IBM Res, Armonk, NY USA
关键词
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
The fragility of modern machine learning models has drawn a considerable amount of attention from both academia and the public. While immense interests were in either crafting adversarial attacks as a way to measure the robustness of neural networks or devising worst-case analytical robustness verification with guarantees, few methods could enjoy both scalability and robustness guarantees at the same time. As an alternative to these attempts, randomized smoothing adopts a different prediction rule that enables statistical robustness arguments which easily scale to large networks. However, in this paper, we point out the side effects of current randomized smoothing workflows. Specifically, we articulate and prove two major points: 1) the decision boundaries of smoothed classifiers will shrink, resulting in disparity in class-wise accuracy; 2) applying noise augmentation in the training process does not necessarily resolve the shrinking issue due to the inconsistent learning objectives.
引用
收藏
页数:10
相关论文
共 50 条
  • [41] Optimal Smoothing for Finite State Hidden Reciprocal Processes
    White, Langford B.
    Carravetta, Francesco
    IEEE TRANSACTIONS ON AUTOMATIC CONTROL, 2011, 56 (09) : 2156 - 2161
  • [42] Reduced-complexity smoothing for hidden Markov models
    Shue, L
    Dey, S
    PROCEEDINGS OF THE 39TH IEEE CONFERENCE ON DECISION AND CONTROL, VOLS 1-5, 2000, : 4697 - 4702
  • [43] Minimization of discontinuous cost functions by smoothing
    Martínez, JM
    ACTA APPLICANDAE MATHEMATICAE, 2002, 71 (03) : 245 - 260
  • [44] Minimization of Discontinuous Cost Functions by Smoothing
    José Mario Martínez
    Acta Applicandae Mathematica, 2002, 71 : 245 - 260
  • [45] IMAGE SMOOTHING AND SEGMENTATION BY COST MINIMIZATION
    NARAYANAN, KA
    OLEARY, DP
    ROSENFELD, A
    IEEE TRANSACTIONS ON SYSTEMS MAN AND CYBERNETICS, 1982, 12 (01): : 91 - 96
  • [46] Resource smoothing: a cost minimization approach
    Akpan, EOP
    PRODUCTION PLANNING & CONTROL, 2000, 11 (08) : 775 - 780
  • [47] Randomized Smoothing for (Parallel) Stochastic Optimization
    Duchi, John C.
    Bartlett, Peter L.
    Wainwright, Martin J.
    2012 IEEE 51ST ANNUAL CONFERENCE ON DECISION AND CONTROL (CDC), 2012, : 5442 - 5444
  • [48] THE HIDDEN COST OF BUDGET CUTS
    FRANKLIN, D
    NATION, 1995, 261 (20) : 748 - &
  • [49] The hidden cost of tobacco smoke
    Lee, RL
    MILITARY MEDICINE, 1998, 163 (09) : 624 - 624
  • [50] The Hidden Cost of School Security
    DeAngelis, Karen J.
    Brent, Brian O.
    Ianni, Danielle
    JOURNAL OF EDUCATION FINANCE, 2011, 36 (03) : 312 - 337