Improving Adversarial Robustness with Hypersphere Embedding and Angular-based Regularizations

03/15/2023
by   Olukorede Fakorede, et al.
0

Adversarial training (AT) methods have been found to be effective against adversarial attacks on deep neural networks. Many variants of AT have been proposed to improve its performance. Pang et al. [1] have recently shown that incorporating hypersphere embedding (HE) into the existing AT procedures enhances robustness. We observe that the existing AT procedures are not designed for the HE framework, and thus fail to adequately learn the angular discriminative information available in the HE framework. In this paper, we propose integrating HE into AT with regularization terms that exploit the rich angular information available in the HE framework. Specifically, our method, termed angular-AT, adds regularization terms to AT that explicitly enforce weight-feature compactness and inter-class separation; all expressed in terms of angular features. Experimental results show that angular-AT further improves adversarial robustness.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
06/01/2019

Disentangling Improves VAEs' Robustness to Adversarial Attacks

This paper is concerned with the robustness of VAEs to adversarial attac...
research
01/30/2022

Improving Corruption and Adversarial Robustness by Enhancing Weak Subnets

Deep neural networks have achieved great success in many computer vision...
research
08/12/2019

A Study on Angular Based Embedding Learning for Text-independent Speaker Verification

Learning a good speaker embedding is important for many automatic speake...
research
10/08/2020

Improve Adversarial Robustness via Weight Penalization on Classification Layer

It is well-known that deep neural networks are vulnerable to adversarial...
research
05/06/2022

Norm-Scaling for Out-of-Distribution Detection

Out-of-Distribution (OoD) inputs are examples that do not belong to the ...
research
06/10/2020

Towards Robust Fine-grained Recognition by Maximal Separation of Discriminative Features

Adversarial attacks have been widely studied for general classification ...
research
11/05/2019

Goal-based angular adaptivity for Boltzmann transport in the presence of ray-effects

Boltzmann transport problems often involve heavy streaming, where partic...

Please sign up or login with your details

Forgot password? Click here to reset