arrow
返回

Implicit adversarial data augmentation and robustness with Noise-based Learning

delete2021-09-01
delete12
delete
OA
AI
P
Priyadarshini Panda *
K
Kaushik Roy
DOI:10.1016/j.neunet.2021.04.008delete
delete原文链接
delete分享
delete收藏
查看原文
摘要

摘要

En 中文
We introduce a Noise-based Learning (NoL) approach for training neural networks that are intrinsically robust to adversarial attacks. We find that the learning of random noise introduced with the input with the same loss function used during posterior maximization, improves a model's adversarial resistance. We show that the learnt noise performs implicit adversarial data augmentation boosting a model's adversary generalization capability. We evaluate our approach's efficacy and provide a simplistic visualization tool for understanding adversarial data, using Principal Component Analysis. We conduct comprehensive experiments on prevailing benchmarks such as MNIST, CIFAR10, CIFAR100, Tiny ImageNet and show that our approach performs remarkably well against a wide range of attacks. Furthermore, combining NoL with state-of-the-art defense mechanisms, such as adversarial training, consistently outperforms prior techniques in both white-box and black-box attacks. (C) 2021 Elsevier Ltd. All rights reserved.
Keyword:
Adversarial robustness
Deep learning
Principal Component Analysis
AI总结

AI总结

对已上传原文的论文进行重点信息的提取,主要内容包括:简要概述、研究摘要、背景介绍、关键亮点、图文解析、展望与总结。

期刊

Neural Networks 封面图
Neural Networks
IF:
6.3
论文数:
7.8K
被引数:
3.0W

机构

Y
Yale University
学者数:
6.5W
论文数: 6.0W
被引数: 10.0W
Purdue University System 封面图
Purdue University System
学者数:
3.9W
论文数: 3.6W
被引数: 66