Delayed Adversarial Training with Non-Sequential Adversarial Epochs

2021 IEEE 33RD INTERNATIONAL CONFERENCE ON TOOLS WITH ARTIFICIAL INTELLIGENCE (ICTAI 2021)(2021)

引用 0|浏览5
暂无评分
摘要
Adversarial Training (AT) has so far been considered as the most effective approach for building robust computer vision architectures that can adequately handle adversarial attacks. However, its high complexity, rising from the need to repeatedly generate attacks against image batches over training epochs, has been a controlling factor to its generalized use. Therefore, to date, AT has only been used for training on vanilla datasets, casting doubt on how soon it can be applied to real world computer vision systems in safety critical domains. Few researchers have to a certain extent addressed the issue by proposing AT variations which have moderately improved the complexity. Extending these advances, this work explores simple yet effective ways to further improve the complexity of AT in terms of training time. Specifically, it is explored through this work whether a) training sequential adversarial epochs and b) attacking the entire dataset during adversarial epochs are necessary for a robust learned model.
更多
查看译文
关键词
adversarial training,non-sequential
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要