Promoting Robustness of Randomized Smoothing: Two Cost-Effective Approaches

被引:0
|
作者
Liu, Linbo [1 ,2 ]
Hoang, Trong Nghia [3 ]
Nguyen, Lam M. [4 ]
Weng, Tsui-Wei [2 ]
机构
[1] AWS AI Labs, Palo Alto, CA 94303 USA
[2] Univ Calif San Diego, La Jolla, CA 92093 USA
[3] Washington State Univ, Pullman, WA 99164 USA
[4] IBM Res, Yorktown Hts, NY USA
基金
美国国家科学基金会;
关键词
D O I
10.1109/ICDM58522.2023.00139
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Randomized smoothing has recently attracted attentions in the field of adversarial robustness to provide provable robustness guarantees on smoothed neural network classifiers. However, existing works show that vanilla randomized smoothing usually does not provide good robustness performance and often requires (re)training techniques on the base classifier in order to boost the robustness of the resulting smoothed classifier. In this work, we propose two cost-effective approaches to boost the robustness of randomized smoothing while preserving its clean performance. The first approach introduces a new robust training method AdvMacer which combines adversarial training and robustness certification maximization for randomized smoothing. We show that AdvMacer can improve the robustness performance of randomized smoothing classifiers compared to SOTA baselines, while being 3x faster to train than MACER baseline. The second approach introduces a post-processing method EsbRS which greatly improves the robustness certificate based on building model ensembles. Extensive experiments verify the superior performance of our methods on various datasets.
引用
收藏
页码:1145 / 1150
页数:6
相关论文
共 50 条
  • [31] Cost-Effective Variability Reduction Approaches to Enable Future Technology Nodes
    Strojwas, Andrzej J.
    SISPAD 2010 - 15TH INTERNATIONAL CONFERENCE ON SIMULATION OF SEMICONDUCTOR PROCESSES AND DEVICES, 2010, : 117 - 117
  • [32] Cost-effective Approaches for Sustainable Groundwater Management in Alluvial Aquifer Systems
    Madan K. Jha
    Y. Kamii
    K. Chikamori
    Water Resources Management, 2009, 23
  • [33] Cost-effective Approaches for Sustainable Groundwater Management in Alluvial Aquifer Systems
    Jha, Madan K.
    Kamii, Y.
    Chikamori, K.
    WATER RESOURCES MANAGEMENT, 2009, 23 (02) : 219 - 233
  • [34] Cost-effective approaches for deadline-constrained workflow scheduling in clouds
    Zengpeng Li
    Huiqun Yu
    Guisheng Fan
    The Journal of Supercomputing, 2023, 79 : 7484 - 7512
  • [35] Exploring cost-effective approaches to human evaluation of search engine relevance
    Ali, K
    Chang, CC
    Juan, YF
    ADVANCES IN INFORMATION RETRIEVAL, 2005, 3408 : 360 - 374
  • [36] Novel cost-effective approaches to the treatment of community-acquired infections
    Schwarzmann, SW
    ANNALS OF PHARMACOTHERAPY, 1998, 32 (01) : S27 - S30
  • [37] Fluorescent Rhodopsins: A Challenging Test for Cost-Effective QM/MM Approaches
    Di Prima, Duccio
    Pedraza-Gonzalez, Laura
    Reinholdt, Peter
    Kongsted, Jacob
    Mennucci, Benedetta
    JOURNAL OF PHYSICAL CHEMISTRY A, 2025, 129 (06): : 1769 - 1778
  • [38] Hidden Cost of Randomized Smoothing
    Mohapatra, Jeet
    Ko, Ching-Yun
    Weng, Tsui-Wei
    Chen, Pin-Yu
    Liu, Sijia
    Daniel, Luca
    24TH INTERNATIONAL CONFERENCE ON ARTIFICIAL INTELLIGENCE AND STATISTICS (AISTATS), 2021, 130
  • [39] COST-EFFECTIVE ANALYSIS OF DIAGNOSTIC APPROACHES FOR MONITORING ASYMPTOMATIC PANCREATIC NEOPLASMS
    Ptak, D. M.
    Gricar, J.
    Pearlman, D. M.
    Gardner, T.
    McKenna, D.
    Huang, Y.
    VALUE IN HEALTH, 2013, 16 (03) : A214 - A215
  • [40] Proficient and Cost-Effective Approaches for the Prevention and Treatment of Venous Thrombosis and Thromboembolism
    Rodger L. Bick
    Drugs, 2000, 60 : 575 - 595