Robust Bayesian Neural Networks by Spectral Expectation Bound Regularization
Jiaru Zhang, Yang Hua, Zhengui Xue, Tao Song, Chengyu Zheng, Ruhui Ma, Haibing Guan
摘要
Bayesian neural networks have been widely used in many applications because of the distinctive probabilistic representation framework. Even though Bayesian neural networks have been found more robust to adversarial attacks compared with vanilla neural networks, their ability to deal with adversarial noises in practice is still limited. In this paper, we propose Spectral Expectation Bound Regularization (SEBR) to enhance the robustness of Bayesian neural networks. Our theoretical analysis reveals that training with SEBR improves the robustness to adversarial noises. We also prove that training with SEBR can reduce the epistemic uncertainty of the model and hence it can make the model more confident with the predictions, which verifies the robustness of the model from another point of view. Experiments on multiple Bayesian neural network structures and different adversarial attacks validate the correctness of the theoretical findings and the effectiveness of the proposed approach.
问问这篇 Paper
智能体会读完全文。
Lune 把这篇 Paper 索引到了每一个公式,引用它的顶会 Paper 也一样。你提问,回答直接引用原文。
引用它的顶会 Paper2
- Improving Bayesian Neural Networks by Adversarial SamplingJiaru Zhang, Yang Hua, Tao Song, Hao Wang 等AAAI 2022 · 被引用 14 次
- Learning model uncertainty as variance-minimizing instance weightsNishant Jain, Karthikeyan Shanmugam, Pradeep ShenoyICLR 2024 · 被引用 7 次
它引用的顶会 Paper1
相关 Paper
- Defense Through Diverse DirectionsChristopher M. Bender, Yang Li, Yifeng Shi, Michael K. Reiter 等ICML 2020 · 被引用 4 次
- Simple and Effective Stochastic Neural NetworksTianyuan Yu, Yongxin Yang, Da Li, Timothy M. Hospedales 等AAAI 2021 · 被引用 34 次
- Tackling covariate shift with node-based Bayesian neural networksTrung Q. Trinh, Markus Heinonen, Luigi Acerbi, Samuel KaskiICML 2022 · 被引用 7 次
- Bayesian Learning with Information Gain Provably Bounds Risk for a Robust Adversarial DefenseBao Gia Doan, Ehsan Abbasnejad, Javen Qinfeng Shi, Damith C. RanasingheICML 2022 · 被引用 8 次
- BNN-DP: Robustness Certification of Bayesian Neural Networks via Dynamic ProgrammingSteven Adams, Andrea Patane, Morteza Lahijanian, Luca LaurentiICML 2023 · 被引用 8 次
