arXiv · 2002.06789
CAT: Customized Adversarial Training for Improved Robustness
Abstract
Adversarial training has become one of the most effective methods for improving robustness of neural networks. However, it often suffers from poor generalization on both clean and perturbed data. In this paper, we propose a new algorithm, named Customized Adversarial Training (CAT), which adaptively customizes the perturbation level and the corresponding label for each training sample in adversarial training. We show that the proposed algorithm achieves better clean and robust accuracy than previous adversarial training methods through extensive experiments.
Explore related subjects
Keep this discovery
Minhao Cheng, Qi Lei, Pin-Yu Chen, Inderjit Dhillon, Cho-Jui Hsieh. 2020-02-17. CAT: Customized Adversarial Training for Improved Robustness. https://arxiv.org/abs/2002.06789
Cite the original work for its findings. Save a collection to share your selection of sources.