BriefGPT.xyz
Feb, 2022
制造噪声:可靠高效的单步对抗训练
Make Some Noise: Reliable and Efficient Single-Step Adversarial Training
HTML
PDF
Pau de Jorge, Adel Bibi, Riccardo Volpi, Amartya Sanyal, Philip H. S. Torr...
TL;DR
本文重访了单步对抗训练中噪声与剪辑的角色,发现使用强噪声结合不剪辑非常有效地避免了大扰动半径下的灾难性过拟合,提出了Noise-FGSM (N-FGSM),实验结果表明N-FGSM能达到甚至超过之前的GradAlign,同时提高了3倍的速度。
Abstract
Recently, Wong et al. showed that
adversarial training
with single-step FGSM leads to a characteristic failure mode named
catastrophic overfitting
(CO), in which a model becomes suddenly vulnerable to multi-step
→