Sharpness-Aware Minimization Leads to Better Robustness in Meta-learning

被引:0
|
作者
Xu, Mengke [1 ]
Wang, Huiwei [2 ,3 ]
机构
[1] Southwest Univ, Coll Elect & Informat Engn, Chongqing 400715, Peoples R China
[2] Chongqing Three Gorges Univ, Key Lab Intelligent Informat Proc, Chongqing 404100, Peoples R China
[3] Beijing Inst Technol, Chongqing Innovat Ctr, Chongqing 401120, Peoples R China
基金
中国博士后科学基金;
关键词
Meta-learning; R2D2; Sharpness-Aware Minimization;
D O I
10.1109/ICACI58115.2023.10146130
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Transforming few-shot learning into meta-learning is an important way to narrow the gap between human ability and machine learning. In this paper, we study the adversarial robustness of meta-learning model and propose Defending R2D2 algorithm (DeR2D2) to resist attacks. We pay more attention to the two problems of adversarial meta-learning: the high training cost and the significant decrease of classification accuracy on clean samples. First, we demonstrate that the introduction of adversarial samples in R2D2 training can improve its adversarial robustness. Second, we choose Randomized Fast Gradient Sign Method (R+FGSM) instead of Projected Gradient Descent (PGD) as the adversarial training method, which significantly reduces the training cost. Finally, due to the Sharpness-Aware Minimization (SAM), our method further reduces adversarial training time and significantly improves the classification accuracy on clean samples. In addition, we verify that in most cases, DeR2D2 also has a strong ability to defend against attacks.
引用
收藏
页数:8
相关论文
共 50 条
  • [41] Class-Conditional Sharpness-Aware Minimization for Deep Long-Tailed Recognition
    Zhou, Zhipeng
    Li, Lanqing
    Zhao, Peilin
    Heng, Pheng-Ann
    Gong, Wei
    2023 IEEE/CVF CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION, CVPR, 2023, : 3499 - 3509
  • [42] Generalized Federated Learning via Sharpness Aware Minimization
    Qu, Zhe
    Li, Xingyu
    Duan, Rui
    Liu, Yao
    Tang, Bo
    Lu, Zhuo
    INTERNATIONAL CONFERENCE ON MACHINE LEARNING, VOL 162, 2022,
  • [43] Learning with noisy labels via clean aware sharpness aware minimization
    Huang, Bin
    Xie, Ying
    Xu, Chaoyang
    SCIENTIFIC REPORTS, 2025, 15 (01):
  • [44] Meta-Learning for Simple Regret Minimization
    Azizi, Javad
    Kveton, Branislav
    Ghavamzadeh, Mohammad
    Katariya, Sumeet
    THIRTY-SEVENTH AAAI CONFERENCE ON ARTIFICIAL INTELLIGENCE, VOL 37 NO 6, 2023, : 6709 - 6717
  • [45] Sharpness-aware gradient guidance for few-shot class-incremental learning
    Chen, Runhang
    Jing, Xiao-Yuan
    Wu, Fei
    Chen, Haowen
    KNOWLEDGE-BASED SYSTEMS, 2024, 299
  • [46] Bayesian Sharpness-Aware Prompt Tuning for Cross-Domain Few-shot Learning
    Fan, Shuo
    Zhuang, Liansheng
    Li, Aodi
    2023 INTERNATIONAL JOINT CONFERENCE ON NEURAL NETWORKS, IJCNN, 2023,
  • [47] Unifying and revisiting Sharpness-Aware Minimization with noise-injected micro-batch scheduler for efficiency improvement
    Wei, Zheng
    Zhang, Xingjun
    Tan, Zhendong
    NEURAL NETWORKS, 2025, 185
  • [48] Fairness-Aware Online Meta-learning
    Zhao, Chen
    Chen, Feng
    Thuraisingham, Bhavani
    KDD '21: PROCEEDINGS OF THE 27TH ACM SIGKDD CONFERENCE ON KNOWLEDGE DISCOVERY & DATA MINING, 2021, : 2294 - 2304
  • [49] Clustered Task-Aware Meta-Learning by Learning From Learning Paths
    Peng, Danni
    Pan, Sinno Jialin
    IEEE TRANSACTIONS ON PATTERN ANALYSIS AND MACHINE INTELLIGENCE, 2023, 45 (08) : 9426 - 9438
  • [50] Difficulty-Aware Meta-Learning for Rare Disease Diagnosis
    Li, X.
    Lyu, L.
    Xing, L.
    MEDICAL PHYSICS, 2020, 47 (06) : E603 - E603