Adversarial Robustness under Long-Tailed Distribution

被引:45
作者
Wu, Tong [1 ,5 ]
Liu, Ziwei [2 ]
Huang, Qingqiu [3 ]
Wang, Yu [4 ]
Lin, Dahua [1 ,5 ,6 ]
机构
[1] Chinese Univ Hong Kong, Hong Kong, Peoples R China
[2] Nanyang Technol Univ, S Lab, Singapore, Singapore
[3] Huawei, Shenzhen, Peoples R China
[4] Tsinghua Univ, Beijing, Peoples R China
[5] SenseTime CUHK Joint Lab, Hong Kong, Peoples R China
[6] Ctr Perceptual & Interact Intelligence, Hong Kong, Peoples R China
来源
2021 IEEE/CVF CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION, CVPR 2021 | 2021年
关键词
D O I
10.1109/CVPR46437.2021.00855
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Adversarial robustness has attracted extensive studies recently by revealing the vulnerability and intrinsic characteristics of deep networks. However; existing works on adversarial robustness mainly focus on balanced datasets, while real-world data usually exhibits a long-tailed distribution. To push adversarial robustness towards more realistic scenarios, in this work we investigate the adversarial vulnerability as well as defense under long-tailed distributions. In particular, we first reveal the negative impacts induced by imbalanced data on both recognition performance and adversarial robustness, uncovering the intrinsic challenges of this problem. We then perform a systematic study on existing long-tailed recognition methods in conjunction with the adversarial training framework. Several valuable observations are obtained: 1) natural accuracy is relatively easy to improve, 2) fake gain of robust accuracy exists under unreliable evaluation, and 3) boundary error limits the promotion of robustness. Inspired by these observations, we propose a clean yet effective framework, RoBal, which consists of two dedicated modules, a scale-invariant classifier and data re-balancing via both margin engineering at training stage and boundary adjustment during inference. Extensive experiments demonstrate the superiority of our approach over other state-of-the-art defense methods. To our best knowledge, we are the first to tackle adversarial robustness under long-tailed distributions, which we believe would be a significant step towards real-world robustness. Our code is available at: https://github. com/wutong16/Adversarial_Long-Tai1.
引用
收藏
页码:8655 / 8664
页数:10
相关论文
共 50 条
  • [31] ASYMMETRIC LONG-TAILED PAIR
    HART, BL
    WIRELESS WORLD, 1971, 77 (1432): : 484 - &
  • [32] ROOSTING OF LONG-TAILED TITS
    SMITH, RT
    BRITISH BIRDS, 1978, 71 (08): : 362 - 362
  • [33] Long-tailed tipplers (Malaysia)
    不详
    SMITHSONIAN, 2008, 39 (07) : 16 - 16
  • [34] OHD: An Online Category-Aware Framework for Learning With Noisy Labels Under Long-Tailed Distribution
    Zhao, Qihao
    Zhang, Fan
    Hu, Wei
    Feng, Songhe
    Liu, Jun
    IEEE TRANSACTIONS ON CIRCUITS AND SYSTEMS FOR VIDEO TECHNOLOGY, 2024, 34 (05) : 3806 - 3818
  • [35] The distribution, ecology and conservation status of the long-tailed woodnymph Thalurania watertonii
    Berryman, Alex J.
    Collar, Nigel J.
    Crozariol, Marco A.
    Gussoni, Carlos O. A.
    Kirwan, Guy M.
    Sharpe, Christopher J.
    ORNITHOLOGY RESEARCH, 2023, 31 (01): : 1 - 12
  • [36] A long-tailed distribution time-series dataset in boiler equipment
    Weijun Hu
    Anze Jiang
    Kaihong Chen
    Jie Zheng
    Wenli Shang
    Zhong Cao
    Scientific Data, 12 (1)
  • [37] Stochastic analysis of covariance when the error distribution is long-tailed symmetric
    Kasap, Pelin
    Senoglu, Birdal
    Arslan, Olcay
    JOURNAL OF APPLIED STATISTICS, 2016, 43 (11) : 1977 - 1997
  • [38] Discovery of a paired Gaussian and long-tailed distribution of potential energies in nanoglasses
    Zhang, D. M.
    Sun, D. Y.
    Gong, X. G.
    PHYSICAL REVIEW B, 2022, 105 (03)
  • [39] The distribution, ecology and conservation status of the long-tailed woodnymph Thalurania watertonii
    Alex J. Berryman
    Nigel J. Collar
    Marco A. Crozariol
    Carlos O. A. Gussoni
    Guy M. Kirwan
    Christopher J. Sharpe
    Ornithology Research, 2023, 31 : 1 - 12
  • [40] Mutual Learning for Long-Tailed Recognition
    Park, Changhwa
    Yim, Junho
    Jun, Eunji
    2023 IEEE/CVF WINTER CONFERENCE ON APPLICATIONS OF COMPUTER VISION (WACV), 2023, : 2674 - 2683