BriefGPT.xyz
Oct, 2024
利用认证训练提升经验鲁棒性
On Using Certified Training towards Empirical Robustness
HTML
PDF
Alessandro De Palma, Serge Durand, Zakaria Chihani, François Terrier, Caterina Urban
TL;DR
本研究针对现有对抗训练在大扰动下的实践效用不足的问题,提出了一种基于认证训练的新方法。通过实验证明,经过调优的认证训练算法能够有效防止单步攻击下的灾难性过拟合,并在适当的实验条件下缩小与多步基线之间的差距。研究最后提出了一种新型正则化方法,显著降低运行时间的同时实现类似效果。
Abstract
Adversarial Training
is arguably the most popular way to provide
Empirical Robustness
against specific adversarial examples. While variants based on multi-step attacks incur significant computational overhead, si
→