Adversarial Examples Improve Image Recognition

@article{Xie2020AdversarialEI,
  title={Adversarial Examples Improve Image Recognition},
  author={Cihang Xie and Mingxing Tan and Boqing Gong and Jiang Wang and A. Yuille and Quoc V. Le},
  journal={2020 IEEE/CVF Conference on Computer Vision and Pattern Recognition (CVPR)},
  year={2020},
  pages={816-825}
}
Adversarial examples are commonly viewed as a threat to ConvNets. Here we present an opposite perspective: adversarial examples can be used to improve image recognition models if harnessed in the right manner. We propose AdvProp, an enhanced adversarial training scheme which treats adversarial examples as additional examples, to prevent overfitting. Key to our method is the usage of a separate auxiliary batch norm for adversarial examples, as they have different underlying distributions to… Expand
102 Citations

Paper Mentions

Prepare for the Worst: Generalizing across Domain Shifts with Adversarial Batch Normalization
  • Highly Influenced
  • PDF
Preparing for the Worst: Making Networks Less Brittle with Adversarial Batch Normalization
  • 3
Intriguing generalization and simplicity of adversarially trained neural networks
  • 1
The shape and simplicity biases of adversarially robust ImageNet-trained CNNs.
  • 1
  • Highly Influenced
  • PDF
Error Diffusion Halftoning Against Adversarial Examples
  • PDF
Contrastive Learning with Adversarial Examples
  • 5
  • Highly Influenced
  • PDF
Adversarial Feature Augmentation and Normalization for Visual Recognition
  • Tianlong Chen, Yu Cheng, +4 authors Jingjing Liu
  • Computer Science
  • ArXiv
  • 2021
  • Highly Influenced
  • PDF
Intriguing properties of adversarial training
  • 12
  • PDF
Intriguing Properties of Adversarial Training at Scale
  • 45
...
1
2
3
4
5
...

References

SHOWING 1-10 OF 58 REFERENCES
Natural Adversarial Examples
  • 102
  • PDF
Feature Denoising for Improving Adversarial Robustness
  • 324
  • PDF
Are Labels Required for Improving Adversarial Robustness?
  • 109
  • PDF
Adversarial Machine Learning at Scale
  • 1,308
  • Highly Influential
  • PDF
Virtual Adversarial Training: A Regularization Method for Supervised and Semi-Supervised Learning
  • 832
  • PDF
Deep Co-Training for Semi-Supervised Image Recognition
  • 107
  • PDF
Boosting Adversarial Training with Hypersphere Embedding
  • 12
  • PDF
Ensemble Adversarial Training: Attacks and Defenses
  • 1,177
  • PDF
Towards Deep Learning Models Resistant to Adversarial Attacks
  • 3,092
  • Highly Influential
  • PDF
...
1
2
3
4
5
...