The Enemy of My Enemy is My Friend: Exploring Inverse Adversaries for Improving Adversarial Training

被引:18
|
作者
Dong, Junhao [1 ]
Moosavi-Dezfooli, Seyed-Mohsen [2 ]
Lai, Jianhuang [1 ,3 ,4 ]
Xie, Xiaohua [1 ,3 ,4 ]
机构
[1] Sun Yat Sen Univ, Sch Comp Sci & Engn, Guangzhou, Peoples R China
[2] Imperial Coll London, London, England
[3] Guangdong Prov Key Lab Informat Secur Technol, Guangzhou, Peoples R China
[4] Minist Educ, Key Lab Machine Intelligence & Adv Comp, Beijing, Peoples R China
关键词
D O I
10.1109/CVPR52729.2023.02364
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Although current deep learning techniques have yielded superior performance on various computer vision tasks, yet they are still vulnerable to adversarial examples. Adversarial training and its variants have been shown to be the most effective approaches to defend against adversarial examples. A particular class of these methods regularize the difference between output probabilities for an adversarial and its corresponding natural example. However, it may have a negative impact if a natural example is misclassified. To circumvent this issue, we propose a novel adversarial training scheme that encourages the model to produce similar output probabilities for an adversarial example and its "inverse adversarial" counterpart. Particularly, the counterpart is generated by maximizing the likelihood in the neighborhood of the natural example. Extensive experiments on various vision datasets and architectures demonstrate that our training method achieves state-of-the-art robustness as well as natural accuracy among robust models. Furthermore, using a universal version of inverse adversarial examples, we improve the performance of single-step adversarial training techniques at a low computational cost.
引用
收藏
页码:24678 / 24687
页数:10
相关论文
共 50 条
  • [41] Ecology - The enemy of my enemy is my ally
    Sabelis, MW
    Janssen, A
    Kant, MR
    SCIENCE, 2001, 291 (5511) : 2104 - 2105
  • [42] Helminth infections and immunosenescence: The friend of my enemy
    Abdoli, Amir
    Ardakani, Hoda Mirzaian
    EXPERIMENTAL GERONTOLOGY, 2020, 133
  • [43] The Enemy of My Enemy is My Friend: Adults Derive Arbitrary Sameness Relations through Trained Opposition
    Sbrocco, Guilherme
    Harte, Colin
    de Rose, Julio C.
    PSYCHOLOGICAL RECORD, 2025,
  • [44] Bacteriophages and medicine: will the enemy of my enemy be my ally?
    Morello, Eric
    Debarbieux, Laurent
    BIOFUTUR, 2010, (309) : 33 - 36
  • [45] My Enemy's Enemy
    Mancino, Anton Giulio
    CINEFORUM, 2009, 49 (03): : 92 - 92
  • [46] My enemy's enemy
    Shasha, DE
    DR DOBBS JOURNAL, 1999, 24 (12): : 123 - 125
  • [47] My enemy's enemy
    Whelan, J
    NEW SCIENTIST, 2005, 188 (2526) : 43 - 46
  • [48] The Refugee of My Enemy Is My Friend: Rivalry Type and Refugee Admission
    Jackson, Joshua L.
    Atkinson, Douglas B.
    POLITICAL RESEARCH QUARTERLY, 2019, 72 (01) : 63 - 74
  • [49] Commentary: "The Enemy of My Enemy Is My Friend"-The Saga of Platelet Quiescence in Heparin-Induced Thrombocytopenia Continues
    Sale, Shiva
    Geube, Mariya
    SEMINARS IN THORACIC AND CARDIOVASCULAR SURGERY, 2020, 32 (04) : 770 - 771
  • [50] My Enemy's Enemy is my Friend: Martin Luther and Joseph Ratzinger on the Bi-Dimensionality of Conscience
    Phillips, Jacob
    HEYTHROP JOURNAL, 2020, 61 (02): : 317 - 326