Publication | Closed Access
Adversarial Contrastive Distillation with Adaptive Denoising
17
Citations
27
References
2023
Year
Unknown Venue
Artificial IntelligenceEngineeringMachine LearningData ScienceKnowledge DistillationAdversarial Robustness DistillationAdversarial Machine LearningAdversarial Contrastive DistillationImage DenoisingComputer ScienceTransfer LearningDeep LearningRobust Knowledge TransferImplicit Robustness Knowledge
Adversarial Robustness Distillation (ARD) is a novel method to boost the robustness of small models. Unlike general adversarial training, its robust knowledge transfer can be less easily restricted by the model capacity. However, the teacher model that provides the robustness of knowledge does not always make correct predictions, interfering with the student’s robust performance. Besides, in the previous ARD methods, the robustness comes entirely from one-to-one imitation, ignoring the relationship between examples. To this end, we propose a novel structured ARD method called Contrastive Relationship DeNoise Distillation (CRDND). We design an adaptive compensation module to model the instability of the teacher. Moreover, we utilize the contrastive relationship to explore implicit robustness knowledge among multiple examples. Experimental results on multiple attack benchmarks show CRDND can transfer robust knowledge efficiently and achieves state-of-the-art performance.
| Year | Citations | |
|---|---|---|
Page 1
Page 1