• 文献检索
  • 文档翻译
  • 深度研究
  • 学术资讯
  • Suppr Zotero 插件Zotero 插件
  • 邀请有礼
  • 套餐&价格
  • 历史记录
应用&插件
Suppr Zotero 插件Zotero 插件浏览器插件Mac 客户端Windows 客户端微信小程序
定价
高级版会员购买积分包购买API积分包
服务
文献检索文档翻译深度研究API 文档MCP 服务
关于我们
关于 Suppr公司介绍联系我们用户协议隐私条款
关注我们

Suppr 超能文献

核心技术专利:CN118964589B侵权必究
粤ICP备2023148730 号-1Suppr @ 2026

文献检索

告别复杂PubMed语法,用中文像聊天一样搜索,搜遍4000万医学文献。AI智能推荐,让科研检索更轻松。

立即免费搜索

文件翻译

保留排版,准确专业,支持PDF/Word/PPT等文件格式,支持 12+语言互译。

免费翻译文档

深度研究

AI帮你快速写综述,25分钟生成高质量综述,智能提取关键信息,辅助科研写作。

立即免费体验

Adversarial Training With Anti-Adversaries.

作者信息

Zhou Xiaoling, Wu Ou, Yang Nan

出版信息

IEEE Trans Pattern Anal Mach Intell. 2024 Dec;46(12):10210-10227. doi: 10.1109/TPAMI.2024.3432973. Epub 2024 Nov 6.

DOI:10.1109/TPAMI.2024.3432973
PMID:39046856
Abstract

Adversarial training is effective in improving the robustness of deep neural networks. However, existing studies still exhibit significant drawbacks in terms of the robustness, generalization, and fairness of models. In this study, we validate the importance of different perturbation directions (i.e., adversarial and anti-adversarial) and bounds from both theoretical and practical perspectives. The influence of adversarial training on deep learning models in terms of fairness, robustness, and generalization is theoretically investigated under a more general perturbation scope that different samples can have different perturbation directions and varied perturbation bounds. Our theoretical explorations suggest that combining adversaries and anti-adversaries with varied bounds in training can be more effective in achieving better fairness among classes and a better tradeoff among robustness, accuracy, and fairness in some typical learning scenarios compared with standard adversarial training. Inspired by our theoretical findings, a more general learning objective that combines adversaries and anti-adversaries with varied bounds on each training sample is presented. To solve this objective, two adversarial training frameworks based on meta-learning and reinforcement learning are proposed, in which the perturbation direction and bound for each sample are determined by its training characteristics. Furthermore, the role of the combination strategy with varied bounds is explained from a regularization perspective. Extensive experiments under different learning scenarios verify our theoretical findings and the effectiveness of the proposed methodology.

摘要

相似文献

1
Adversarial Training With Anti-Adversaries.
IEEE Trans Pattern Anal Mach Intell. 2024 Dec;46(12):10210-10227. doi: 10.1109/TPAMI.2024.3432973. Epub 2024 Nov 6.
2
Between-Class Adversarial Training for Improving Adversarial Robustness of Image Classification.基于类间对抗训练提高图像分类对抗鲁棒性。
Sensors (Basel). 2023 Mar 20;23(6):3252. doi: 10.3390/s23063252.
3
Perturbation diversity certificates robust generalization.摄动多样性证书保证了强健的泛化能力。
Neural Netw. 2024 Apr;172:106117. doi: 10.1016/j.neunet.2024.106117. Epub 2024 Jan 8.
4
Adversary Agnostic Robust Deep Reinforcement Learning.
IEEE Trans Neural Netw Learn Syst. 2023 Sep;34(9):6146-6157. doi: 10.1109/TNNLS.2021.3133537. Epub 2023 Sep 1.
5
Certifiable Robustness to Adversarial State Uncertainty in Deep Reinforcement Learning.深度强化学习中对对抗性状态不确定性的可验证鲁棒性
IEEE Trans Neural Netw Learn Syst. 2022 Sep;33(9):4184-4198. doi: 10.1109/TNNLS.2021.3056046. Epub 2022 Aug 31.
6
Interpolated Adversarial Training: Achieving robust neural networks without sacrificing too much accuracy.插值对抗训练:在不牺牲太多准确性的情况下实现稳健的神经网络。
Neural Netw. 2022 Oct;154:218-233. doi: 10.1016/j.neunet.2022.07.012. Epub 2022 Jul 16.
7
Evaluation of GAN-Based Model for Adversarial Training.基于 GAN 的对抗训练模型评估。
Sensors (Basel). 2023 Mar 1;23(5):2697. doi: 10.3390/s23052697.
8
Attention-based investigation and solution to the trade-off issue of adversarial training.基于注意力的对抗训练权衡问题的研究与解决。
Neural Netw. 2024 Jun;174:106224. doi: 10.1016/j.neunet.2024.106224. Epub 2024 Mar 2.
9
Improving the robustness and accuracy of biomedical language models through adversarial training.通过对抗训练提高生物医学语言模型的稳健性和准确性。
J Biomed Inform. 2022 Aug;132:104114. doi: 10.1016/j.jbi.2022.104114. Epub 2022 Jun 15.
10
Stylized Adversarial Defense.风格化对抗防御
IEEE Trans Pattern Anal Mach Intell. 2023 May;45(5):6403-6414. doi: 10.1109/TPAMI.2022.3207917. Epub 2023 Apr 3.