• Complex
  • Title
  • Keyword
  • Abstract
  • Scholars
  • Journal
  • ISSN
  • Conference
成果搜索

author:

Chen, Chuanxi (Chen, Chuanxi.) [1] | Wang, Jiaming (Wang, Jiaming.) [2] | Tang, Yunbo (Tang, Yunbo.) [3] (Scholars:汤云波) | Fang, He (Fang, He.) [4] | Xu, Li (Xu, Li.) [5]

Indexed by:

EI Scopus SCIE

Abstract:

Adversarial training has emerged as a straightforward and effective defense approach against adversarial attacks, with ensemble adversarial learning (EAL) being a feasible branch to enhance the adversarial robustness of deep neural networks (DNNs). However, the existing EAL methods either incur massive costs in multi-model ensemble training, leading to low adaptability, or overlook the existence of gradient conflicts in single-model self-ensemble learning, resulting in only limited improvement in robustness. To address these issues, in this paper, we first analyze the importance of weight state information during network training, which plays a key role in ensemble learning, especially in adversarial settings. Then, we present anew gradient manipulation strategy, it implements random sampling in normal distribution to conduct consensual gradients for alleviating the gradient conflicts. Based on these, we propose a novel Weight-wise Ensemble Adversarial Learning (WEAL), which makes full use of the states of the weights and mitigates the conflicts indifferent gradients. It can greatly improve the adversarial robustness of the target model within an appropriate consumption cost. Extensive experiments on benchmark datasets and models verify the effectiveness of the proposed WEAL, e.g., in defending against white-box and black-box adversarial attacks, compared to representative adversarial training methods, the adversarial accuracy is increased by an average of 5.4% and 4.2%, and improving the adversarial accuracy by an average of 2.8% and 1.8% as compared to state-of-the-art ensemble adversarial learning method.

Keyword:

Adversarial defense Adversarial example Deep neural networks Ensemble adversarial learning Gradient manipulation

Community:

  • [ 1 ] [Chen, Chuanxi]Fujian Normal Univ, Coll Comp & Cyber Secur, Fuzhou 350007, Peoples R China
  • [ 2 ] [Fang, He]Fujian Normal Univ, Coll Comp & Cyber Secur, Fuzhou 350007, Peoples R China
  • [ 3 ] [Xu, Li]Fujian Normal Univ, Coll Comp & Cyber Secur, Fuzhou 350007, Peoples R China
  • [ 4 ] [Wang, Jiaming]Wuhan Inst Technol, Hubei Key Lab Intelligent Robot, Wuhan 430205, Peoples R China
  • [ 5 ] [Tang, Yunbo]Fuzhou Univ, Coll Comp & Data Sci, Fuzhou 350108, Peoples R China
  • [ 6 ] [Xu, Li]Fujian Normal Univ, Fujian Prov Key Lab Network Secur & Cryptol, Fuzhou 350007, Peoples R China

Reprint 's Address:

  • [Xu, Li]Fujian Normal Univ, Coll Comp & Cyber Secur, Fuzhou 350007, Peoples R China;;[Xu, Li]Fujian Normal Univ, Fujian Prov Key Lab Network Secur & Cryptol, Fuzhou 350007, Peoples R China;;

Show more details

Related Keywords:

Related Article:

Source :

KNOWLEDGE-BASED SYSTEMS

ISSN: 0950-7051

Year: 2025

Volume: 309

7 . 2 0 0

JCR@2023

Cited Count:

WoS CC Cited Count:

SCOPUS Cited Count:

ESI Highly Cited Papers on the List: 0 Unfold All

WanFang Cited Count:

Chinese Cited Count:

30 Days PV: 0

Online/Total:47/10042420
Address:FZU Library(No.2 Xuyuan Road, Fuzhou, Fujian, PRC Post Code:350116) Contact Us:0591-22865326
Copyright:FZU Library Technical Support:Beijing Aegean Software Co., Ltd. 闽ICP备05005463号-1