Learning Provably Robust Estimators for Inverse Problems via Jittering
Anselm Krainovic, Mahdi Soltanolkotabi, Reinhard Heckel
Abstract
Deep neural networks provide excellent performance for inverse problems such as denoising. However, neural networks can be sensitive to adversarial or worst-case perturbations. This raises the question of whether such networks can be trained efficiently to be worst-case robust. In this paper, we investigate whether jittering, a simple regularization technique that adds isotropic Gaussian noise during training, is effective for learning worst-case robust estimators for inverse problems. While well studied for prediction in classification tasks, the effectiveness of jittering for inverse problems has not been systematically investigated. In this paper, we present a novel analytical characterization of the optimal ℓ 2 -worst-case robust estimator for linear denoising and show that jittering yields optimal robust denoisers. Furthermore, we examine jittering empirically via training deep neural networks (U-nets) for natural image denoising, deconvolution, and accelerated magnetic resonance imaging (MRI). The results show that jittering significantly enhances the worst-case robustness, but can be suboptimal for inverse problems beyond denoising. Moreover, our results imply that training on real data which often contains slight noise is somewhat robustness enhancing.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext 27ec1844-2e16-4e7e-b33b-682a51fe911eCited by top-tier papers2
- Robustness of Deep Learning for Accelerated MRI: Benefits of Diverse Training DataKang Lin, Reinhard HeckelICML 2024 · 12 citations
- SGD Jittering: A Training Strategy for Robust and Accurate Model-Based ArchitecturesPeimeng Guan, Mark A. DavenportICML 2025
Builds on6
- Fast is better than free: Revisiting adversarial trainingEric Wong, Leslie Rice, J. Zico KolterICLR 2020 · 1,352 citations
- Denoised Smoothing: A Provable Defense for Pretrained ClassifiersHadi Salman, Mingjie Sun, Greg Yang, Ashish Kapoor et al.NeurIPS 2020 · 191 citations
- Measuring Robustness in Deep Learning Based Compressive SensingMohammad Zalbagi Darestani, Akshay S. Chaudhari, Reinhard HeckelICML 2021 · 94 citations
- Evaluating Robustness of Deep Image Super-Resolution Against Adversarial AttacksJun-Ho Choi, Huan Zhang, Jun-Hyuk Kim, Cho-Jui Hsieh et al.ICCV 2019 · 82 citations
- Improving Robustness of Deep-Learning-Based Image ReconstructionAnkit Raj, Yoram Bresler, Bo LiICML 2020 · 58 citations
Related papers
- Stochastic Deep Restoration Priors for Imaging Inverse ProblemsYuyang Hu, Albert Peng, Weijie Gan, Peyman Milanfar et al.ICML 2025
- Efficient Noise Calculation in Deep Learning-based MRI ReconstructionsOnat Dalmaz, Arjun D. Desai, Reinhard Heckel, Tolga Çukur et al.ICML 2025
- Noise Injection Node Regularization for Robust LearningNoam Levi, Itay M. Bloch, Marat Freytsis, Tomer VolanskyICLR 2023 · 2 citations
- Scaling Laws For Deep Learning Based Image ReconstructionTobit Klug, Reinhard HeckelICLR 2023 · 22 citations
- Masked Image Training for Generalizable Deep Image DenoisingHaoyu Chen, Jinjin Gu, Yihao Liu, Salma Abdel Magid et al.CVPR 2023
