Improving Deep Neural Network Robustness with Siamese Empowered Adversarial Training

Yu Zhu,Zongfei Li,Fengyuan Xu,Sheng Zhong
DOI: https://doi.org/10.1007/978-3-030-68851-6_4
2021-01-01
Abstract:Deep neural networks (DNNs) have been widely used in many critical application domains. However, the security of DNNs are threatened by adversarial examples, and the problem has not been fully solved. In this work, observing the deficiency of existing adversarial training methods, we propose a new adversarial training method with a specially-crafted contrastive loss and the siamese training architecture. Our method fully leverages the distance relationships between the benign examples and adversarial examples. We conduct extensive experiments to evaluate our proposed design. The results show that the DNN models trained by our methods are more robust to adversarial examples compared to those been trained with other SOTA methods.
What problem does this paper attempt to address?