Our new X account is live! Follow @wizwand_team for updates
WorkDL logo mark

Robust Reinforcement Learning on State Observations with Learned Optimal Adversary

About

We study the robustness of reinforcement learning (RL) with adversarially perturbed state observations, which aligns with the setting of many adversarial attacks to deep reinforcement learning (DRL) and is also important for rolling out real-world RL agent under unpredictable sensing noise. With a fixed agent policy, we demonstrate that an optimal adversary to perturb state observations can be found, which is guaranteed to obtain the worst case agent reward. For DRL settings, this leads to a novel empirical adversarial attack to RL agents via a learned adversary that is much stronger than previous ones. To enhance the robustness of an agent, we propose a framework of alternating training with learned adversaries (ATLA), which trains an adversary online together with the agent using policy gradient following the optimal adversarial attack framework. Additionally, inspired by the analysis of state-adversarial Markov decision process (SA-MDP), we show that past states and actions (history) can be useful for learning a robust agent, and we empirically find a LSTM based policy can be more robust under adversaries. Empirical evaluations on a few continuous control environments show that ATLA achieves state-of-the-art performance under strong adversaries. Our code is available at https://github.com/huanzhang12/ATLA_robust_RL.

Huan Zhang, Hongge Chen, Duane Boning, Cho-Jui Hsieh• 2021

Related benchmarks

TaskDatasetResultRank
Robotic ManipulationLift Shifted Environment (test)
Testing Reward0.61
8
Robotic ManipulationWipe Shifted Environment (test)
Testing Reward0.29
8
Robotic ManipulationDoor Shifted Environment (test)
Testing Reward0.28
8
Autonomous DrivingBehavior Shifted Environment (test)
Testing Reward0.14
8
Autonomous DrivingCrossing Shifted Environment (test)
Testing Reward0.61
8
Autonomous DrivingCarType Shifted Environment (test)
Testing Reward0.52
8
Autonomous DrivingBrightness Shifted Environment (test)
Testing Reward0.48
8
Robotic ManipulationStack Shifted Environment (test)
Testing Reward0.21
8
faucet-closeMeta-World v2 (test)
Best Attack Reward4.11e+3
7
faucet-openMeta-World v2 (test)
Best Attack Reward4.38e+3
7
Showing 10 of 37 rows

Other info

Follow for update