arrow
返回

Robust long-tailed recognition with distribution-aware adversarial example generation

delete2025-04-01
delete0
PRE
AI
B
Bo Li
Y
Yongqiang Yao
J
Jingru Tan *
D
Dandan Zhu
R
Ruihao Gong
罗烨 封面图
罗烨 (Ye Luo) *
J
Jianwei Lu *
DOI:10.1016/j.neunet.2024.106932delete
delete原文链接
delete原文求助
delete分享
delete收藏
摘要

摘要

En 中文
Confronting adversarial attacks and data imbalances, attaining adversarial robustness under long-tailed distribution presents a challenging problem. Adversarial training (AT) is a conventional solution for enhancing adversarial robustness, which generates adversarial examples (AEs) in a generation phase and subsequently trains on these AEs in a training phase. Existing long-tailed adversarial learning methods follow the AT framework and rebalance the AE classification in the training phase. However, few of them realize the impact of the long-tailed distribution on the generation phase. In this paper, we delve into the generation phase and uncover its imbalance across different classes. We evaluate the generation quality for different classes by comparing the differences between their generated AEs and natural examples. Our findings reveal that these differences are less pronounced in tail classes compared to head classes, indicating their inferior generation quality. To solve this problem, we propose the novel Distribution-Aware Adversarial Example Generation (DAG) method, which balances the AE generation for different classes using a Virtual Example Creator (VEC) and a Gradient-Guided Calibrator (GGC). The VEC creates virtual examples to introduce more adversarial perturbations for different classes, while the GGC calibrates the creation process to enhance the focus on tail classes based on their generation quality, effectively addressing the imbalance problem. Extensive experiments on three long-tailed adversarial benchmarks across five attack scenarios demonstrate DAG's effectiveness. On CIFAR-100-LT, DAG outperforms the previous RoBal by 4.0 points under the projected gradient descent (PGD) attack, highlighting its superiority in adversarial scenarios.
Keyword:
Long-tailed recognition
Adversarial robustness
Distribution-aware learning
Adversarial example generation

期刊

Neural Networks 封面图
Neural Networks
IF:
6.3
论文数:
8.2K
被引数:
3.0W

机构

E
east china normal university
学者数:
3.1W
论文数: 2.1W
被引数: 25
C
Central South University
学者数:
10.0W
论文数: 7.2W
被引数: 10.9W
T
tongji university
学者数:
7.9W
论文数: 6.0W
被引数: 98
S
shanghai university of traditional chinese medicine
学者数:
1.7W
论文数: 7.9K
被引数: 15
学者 查看更多机构
引用论文

引用论文

Role of interferon-γ in Vα14+ natural killer T cell-mediated host defense against Streptococcus pneumoniae infection in murine lungs
err2007-03-01
err0
PREAI
errMasashi Nakamatsu; Natsuo Yamamoto; Masumitsu Hatta; Chikara Nakasone; Takeshi Kinjo; Kazuya Miyagi; Kaori Uezu; Kiwamu Nakamura; Toshinori Nakayama; Masaru Taniguchi; Yoichiro Iwakura; Mitsuo Kaku; Jiro Fujita; Kazuyoshi Kawakami
err分享
err收藏
All-cause mortality trends in Dikgale, rural South Africa, 1996—2003
err2008-08-06
err0
PREAI
errIan Cook; Marianne Alberts; Sandy Burger; Peter Byass
err分享
err收藏
Introduction
err2005-08-25
err0
PREAI
errMary Coleman; Catalina Betancur
err分享
err收藏
Non-Circadian Expression Masking Clock-Driven Weak Transcription Rhythms in U2OS Cells
err2014-07-09
err0
errOAAI
errJulia Hoffmann; Laura Symul; Anton Shostak; Tamás Fischer; Felix Naef; Michael Brunner
err分享
err收藏
学者 查看更多内容