Robust long-tailed recognition with distribution-aware adversarial example generation

被引:0
|
作者
Li, Bo [1 ]
Yao, Yongqiang [2 ]
Tan, Jingru [3 ]
Zhu, Dandan [4 ]
Gong, Ruihao [2 ]
Luo, Ye [1 ]
Lu, Jianwei [5 ]
机构
[1] Tongji Univ, 4800 Caoan Rd, Shanghai 201804, Peoples R China
[2] Sensetime Res, 1900 Hongmei Rd, Shanghai 201103, Peoples R China
[3] Cent South Univ, 932 South Lushan Rd, Changsha 410083, Hunan, Peoples R China
[4] East China Normal Univ, 3663, Zhongshan North Rd, Shanghai 200333, Peoples R China
[5] Shanghai Univ Tradit Chinese Med, 530 Lingling Rd, Shanghai 201203, Peoples R China
关键词
Long-tailed recognition; Adversarial robustness; Distribution-aware learning; Adversarial example generation;
D O I
10.1016/j.neunet.2024.106932
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Confronting adversarial attacks and data imbalances, attaining adversarial robustness under long-tailed distribution presents a challenging problem. Adversarial training (AT) is a conventional solution for enhancing adversarial robustness, which generates adversarial examples (AEs) in a generation phase and subsequently trains on these AEs in a training phase. Existing long-tailed adversarial learning methods follow the AT framework and rebalance the AE classification in the training phase. However, few of them realize the impact of the long-tailed distribution on the generation phase. In this paper, we delve into the generation phase and uncover its imbalance across different classes. We evaluate the generation quality for different classes by comparing the differences between their generated AEs and natural examples. Our findings reveal that these differences are less pronounced in tail classes compared to head classes, indicating their inferior generation quality. To solve this problem, we propose the novel Distribution-Aware Adversarial Example Generation (DAG) method, which balances the AE generation for different classes using a Virtual Example Creator (VEC) and a Gradient-Guided Calibrator (GGC). The VEC creates virtual examples to introduce more adversarial perturbations for different classes, while the GGC calibrates the creation process to enhance the focus on tail classes based on their generation quality, effectively addressing the imbalance problem. Extensive experiments on three long-tailed adversarial benchmarks across five attack scenarios demonstrate DAG's effectiveness. On CIFAR-100-LT, DAG outperforms the previous RoBal by 4.0 points under the projected gradient descent (PGD) attack, highlighting its superiority in adversarial scenarios.
引用
收藏
页数:13
相关论文
共 50 条
  • [41] Exploiting the Tail Data for Long-Tailed Face Recognition
    Song, Guo
    Liu, Rujie
    Wang, Mengjiao
    Meng, Zhang
    Nie, Shijie
    Lina, Septiana
    Abe, Narishige
    IEEE ACCESS, 2022, 10 : 97945 - 97953
  • [42] Attentive Feature Augmentation for Long-Tailed Visual Recognition
    Wang, Weiqiu
    Zhao, Zhicheng
    Wang, Pingyu
    Su, Fei
    Meng, Hongying
    IEEE TRANSACTIONS ON CIRCUITS AND SYSTEMS FOR VIDEO TECHNOLOGY, 2022, 32 (09) : 5803 - 5816
  • [43] Enhanced Long-Tailed Recognition With Contrastive CutMix Augmentation
    Pan, Haolin
    Guo, Yong
    Yu, Mianjie
    Chen, Jian
    IEEE TRANSACTIONS ON IMAGE PROCESSING, 2024, 33 : 4215 - 4230
  • [44] A dual progressive strategy for long-tailed visual recognition
    Hong Liang
    Guoqing Cao
    Mingwen Shao
    Qian Zhang
    Machine Vision and Applications, 2024, 35
  • [45] Class-Balanced Regularization for Long-Tailed Recognition
    Xu, Yuge
    Lyu, Chuanlong
    NEURAL PROCESSING LETTERS, 2024, 56 (03)
  • [46] Domain Balancing: Face Recognition on Long-Tailed Domains
    Cao, Dong
    Zhu, Xiangyu
    Huang, Xingyu
    Guo, Jianzhu
    Lei, Zhen
    2020 IEEE/CVF CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION (CVPR), 2020, : 5670 - 5678
  • [47] Long-tailed recognition via key attribute learning
    Fu, Yu
    Han, Jungong
    Chang, Xiang
    Chen, Changrui
    Shang, Changjing
    Shen, Qiang
    NEUROCOMPUTING, 2025, 627
  • [48] Targeted Supervised Contrastive Learning for Long-Tailed Recognition
    Li, Tianhong
    Cao, Peng
    Yuan, Yuan
    Fan, Lijie
    Yang, Yuzhe
    Feris, Rogerio
    Indyk, Piotr
    Katabi, Dina
    2022 IEEE/CVF CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION (CVPR 2022), 2022, : 6908 - 6918
  • [49] A dual progressive strategy for long-tailed visual recognition
    Liang, Hong
    Cao, Guoqing
    Shao, Mingwen
    Zhang, Qian
    MACHINE VISION AND APPLICATIONS, 2024, 35 (01)
  • [50] Local pseudo-attributes for long-tailed recognition
    Kim, Dong-Jin
    Ke, Tsung-Wei
    Yu, Stella X.
    PATTERN RECOGNITION LETTERS, 2023, 172 : 51 - 57