Share your thoughts, 1 month free Claude Pro on usSee more
WorkDL logo mark

Adversarial Examples Improve Image Recognition

About

Adversarial examples are commonly viewed as a threat to ConvNets. Here we present an opposite perspective: adversarial examples can be used to improve image recognition models if harnessed in the right manner. We propose AdvProp, an enhanced adversarial training scheme which treats adversarial examples as additional examples, to prevent overfitting. Key to our method is the usage of a separate auxiliary batch norm for adversarial examples, as they have different underlying distributions to normal examples. We show that AdvProp improves a wide range of models on various image recognition tasks and performs better when the models are bigger. For instance, by applying AdvProp to the latest EfficientNet-B7 [28] on ImageNet, we achieve significant improvements on ImageNet (+0.7%), ImageNet-C (+6.5%), ImageNet-A (+7.0%), Stylized-ImageNet (+4.8%). With an enhanced EfficientNet-B8, our method achieves the state-of-the-art 85.5% ImageNet top-1 accuracy without extra data. This result even surpasses the best model in [20] which is trained with 3.5B Instagram images (~3000X more than ImageNet) and ~9.4X more parameters. Models are available at https://github.com/tensorflow/tpu/tree/master/models/official/efficientnet.

Cihang Xie, Mingxing Tan, Boqing Gong, Jiang Wang, Alan Yuille, Quoc V. Le• 2019

Related benchmarks

TaskDatasetResultRank
Image ClassificationImageNet-1k (val)
Top-1 Accuracy85.5
1469
Image ClassificationImageNet 1k (test)
Top-1 Accuracy85.5
848
Image ClassificationImageNet-1k (val)
Top-1 Acc85.5
706
Image ClassificationImageNet A
Top-1 Acc57.39
654
Image ClassificationImageNet V2
Top-1 Acc76.1
611
Image ClassificationImageNet-1K
Top-1 Acc84.82
600
Image ClassificationImageNet-R
Top-1 Acc53.35
529
Image ClassificationImageNet-Sketch
Top-1 Accuracy39.07
407
Image ClassificationObjectNet
Top-1 Accuracy54.5
219
Image ClassificationImageNet-ReaL
Precision@189.6
211
Showing 10 of 22 rows

Other info

Code

Follow for update