Adversarial Robustness of Flow-Based Generative Models

11/20/2019
by   Phillip Pope, et al.
0

Flow-based generative models leverage invertible generator functions to fit a distribution to the training data using maximum likelihood. Despite their use in several application domains, robustness of these models to adversarial attacks has hardly been explored. In this paper, we study adversarial robustness of flow-based generative models both theoretically (for some simple models) and empirically (for more complex ones). First, we consider a linear flow-based generative model and compute optimal sample-specific and universal adversarial perturbations that maximally decrease the likelihood scores. Using this result, we study the robustness of the well-known adversarial training procedure, where we characterize the fundamental trade-off between model robustness and accuracy. Next, we empirically study the robustness of two prominent deep, non-linear, flow-based generative models, namely GLOW and RealNVP. We design two types of adversarial attacks; one that minimizes the likelihood scores of in-distribution samples, while the other that maximizes the likelihood scores of out-of-distribution ones. We find that GLOW and RealNVP are extremely sensitive to both types of attacks. Finally, using a hybrid adversarial training procedure, we significantly boost the robustness of these generative models.

READ FULL TEXT

page 2

page 9

page 15

research
05/24/2017

Flow-GAN: Bridging implicit and prescribed learning in generative models

Evaluating the performance of generative models for unsupervised learnin...
research
04/19/2023

GREAT Score: Global Robustness Evaluation of Adversarial Perturbation using Generative Models

Current studies on adversarial robustness mainly focus on aggregating lo...
research
01/31/2022

On the Robustness of Quality Measures for GANs

This work evaluates the robustness of quality measures of generative mod...
research
07/10/2020

Flow-Based Likelihoods for Non-Gaussian Inference

We investigate the use of data-driven likelihoods to bypass a key assump...
research
11/16/2015

How (not) to Train your Generative Model: Scheduled Sampling, Likelihood, Adversary?

Modern applications and progress in deep learning research have created ...
research
11/06/2020

Generative adversarial training of product of policies for robust and adaptive movement primitives

In learning from demonstrations, many generative models of trajectories ...
research
01/04/2019

Coverage and Quality Driven Training of Generative Image Models

Generative modeling of natural images has been extensively studied in re...

Please sign up or login with your details

Forgot password? Click here to reset