arrow
Return

Continual Adversarial Example Detection via Incremental Attack Configuration Within a Knowledge Distillation Framework

delete2026-02-11
delete0
PRE
AI
H
H. Peng
Y
Yunhong Wang
H
Hui Miao
J
Jiantao Zhou
Y
Yuanfang Guo
DOI:10.1109/LSP.2026.3663884delete
deleteOriginal
deleteOriginal request for help
deleteShare
deleteSave
Abstract

Abstract

En 中文
Adversarial example detection has emerged as a prominent defense strategy owing to its efficiency in training and deployment. Nevertheless, existing detectors are typically developed under a single-step paradigm, where models become static after training on adversarial examples generated by a single attack. This paradigm is infeasible in dynamic real-world scenarios, since retraining from scratch for each newly encountered attack is impractical and computationally prohibitive. To address this limitation, we propose Continual Adversarial example Detection via Incremental Attack Configuration (IAC-CAD), which pioneers to exploit continual learning for adversarial detection within a knowledge distillation framework. IAC-CAD constructs a sequence of continuous detection tasks which require only a limited number of samples per task. Moreover, the proposed Incremental Attack Configuration (IAC) mechanism selects the representative attacks which maximally cover the entire adversarial feature space and optimizes their training sequence through the Memory-aware Attack Ordering. This design simultaneously mitigates catastrophic forgetting of known attacks and enhances generalization ability against unseen attacks. Extensive experiments verify the superiority and practicality of IAC-CAD.
Keywords:
Adversarial example detection
continual adversarial detection
generalization ability
catastrophic forgetting

Journal

I
IEEE Signal Processing Letters
IF:
3.9
Papers:
596
Citations:
0

Organization

B
beihang university
Scholars:
5.2K
Papers: 2.0K
Citations: 21
U
university of macau
Scholars:
2.5K
Papers: 1.3K
Citations: 0