Pruning Adversarially Robust Neural Networks without Adversarial Examples

被引:2
|
作者
Jian, Tong [1 ]
Wang, Zifeng [1 ]
Wang, Yanzhi [1 ]
Dy, Jennifer [1 ]
Ioannidis, Stratis [1 ]
机构
[1] Northeastern Univ, Dept Elect & Comp Engn, Boston, MA 02115 USA
基金
美国国家科学基金会;
关键词
Adversarial Robustness; Adversarial Pruning; Self-distillation; HSIC Bottleneck;
D O I
10.1109/ICDM54844.2022.00120
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Adversarial pruning compresses models while preserving robustness. Current methods require access to adversarial examples during pruning. This significantly hampers training efficiency. Moreover, as new adversarial attacks and training methods develop at a rapid rate, adversarial pruning methods need to be modified accordingly to keep up. In this work, we propose a novel framework to prune a previously trained robust neural network while maintaining adversarial robustness, without further generating adversarial examples. We leverage concurrent self-distillation and pruning to preserve knowledge in the original model as well as regularizing the pruned model via the HilbertSchmidt Information Bottleneck. We comprehensively evaluate our proposed framework and show its superior performance in terms of both adversarial robustness and efficiency when pruning architectures trained on the MNIST, CIFAR-10, and CIFAR-100 datasets against five state-of-the-art attacks..
引用
收藏
页码:993 / 998
页数:6
相关论文
共 50 条
  • [21] Adversarially robust neural style transfer
    Nakano, Reiichiro
    Distill, 2019, 4 (08):
  • [22] Developing a Robust Defensive System against Adversarial Examples Using Generative Adversarial Networks
    Taheri, Shayan
    Khormali, Aminollah
    Salem, Milad
    Yuan, Jiann-Shiun
    BIG DATA AND COGNITIVE COMPUTING, 2020, 4 (02) : 1 - 15
  • [23] Adversarially Robust Fault Zone Prediction in Smart Grids With Bayesian Neural Networks
    Efatinasab, Emad
    Sinigaglia, Alberto
    Azadi, Nahal
    Antonio Susto, Gian
    Rampazzo, Mirco
    IEEE ACCESS, 2024, 12 : 121169 - 121184
  • [24] Accelerating Adversarially Robust Model Selection for Deep Neural Networks via Racing
    Konig, Matthias
    Hoos, Holger H.
    van Rijn, Jan. N.
    THIRTY-EIGHTH AAAI CONFERENCE ON ARTIFICIAL INTELLIGENCE, VOL 38 NO 19, 2024, : 21267 - 21275
  • [25] Generalized Depthwise-Separable Convolutions for Adversarially Robust and Efficient Neural Networks
    Dbouk, Hassan
    Shanbhag, Naresh R.
    ADVANCES IN NEURAL INFORMATION PROCESSING SYSTEMS 34 (NEURIPS 2021), 2021, 34
  • [26] Synthesizing Robust Adversarial Examples
    Athalye, Anish
    Engstrom, Logan
    Ilyas, Andrew
    Kwok, Kevin
    INTERNATIONAL CONFERENCE ON MACHINE LEARNING, VOL 80, 2018, 80
  • [27] Robust Neural Pruning with Gradient Sampling Optimization for Residual Neural Networks
    Yun, Juyoung
    2024 INTERNATIONAL JOINT CONFERENCE ON NEURAL NETWORKS, IJCNN 2024, 2024,
  • [28] Summary of Adversarial Examples Techniques Based on Deep Neural Networks
    Bai, Zhixu
    Wang, Hengjun
    Guo, Kexiang
    Computer Engineering and Applications, 57 (23): : 61 - 70
  • [29] Towards Explaining Adversarial Examples Phenomenon in Artificial Neural Networks
    Barati, Ramin
    Safabakhsh, Reza
    Rahmati, Mohammad
    2020 25TH INTERNATIONAL CONFERENCE ON PATTERN RECOGNITION (ICPR), 2021, : 7036 - 7042
  • [30] Efficient and Transferable Adversarial Examples from Bayesian Neural Networks
    Gubri, Martin
    Cordy, Maxime
    Papadakis, Mike
    Le Traon, Yves
    Sen, Koushik
    UNCERTAINTY IN ARTIFICIAL INTELLIGENCE, VOL 180, 2022, 180 : 738 - 748