pith. sign in

arxiv: 2007.01356 · v1 · pith:G5N3KEQKnew · submitted 2020-07-02 · 📊 stat.ML · cs.CV· cs.LG· cs.NE

Decoder-free Robustness Disentanglement without (Additional) Supervision

classification 📊 stat.ML cs.CVcs.LGcs.NE
keywords adversarialfeaturesnon-robustrobustaccuracyadditionaldisentanglementlearning
0
0 comments X
read the original abstract

Adversarial Training (AT) is proposed to alleviate the adversarial vulnerability of machine learning models by extracting only robust features from the input, which, however, inevitably leads to severe accuracy reduction as it discards the non-robust yet useful features. This motivates us to preserve both robust and non-robust features and separate them with disentangled representation learning. Our proposed Adversarial Asymmetric Training (AAT) algorithm can reliably disentangle robust and non-robust representations without additional supervision on robustness. Empirical results show our method does not only successfully preserve accuracy by combining two representations, but also achieve much better disentanglement than previous work.

This paper has not been read by Pith yet.

discussion (0)

Sign in with ORCID, Apple, or X to comment. Anyone can read and Pith papers without signing in.