Exploring Adversarially Robust Training for Unsupervised Domain Adaptation

02/18/2022
by   Shao-Yuan Lo, et al.
0

Unsupervised Domain Adaptation (UDA) methods aim to transfer knowledge from a labeled source domain to an unlabeled target domain. UDA has been extensively studied in the computer vision literature. Deep networks have been shown to be vulnerable to adversarial attacks. However, very little focus is devoted to improving the adversarial robustness of deep UDA models, causing serious concerns about model reliability. Adversarial Training (AT) has been considered to be the most successful adversarial defense approach. Nevertheless, conventional AT requires ground-truth labels to generate adversarial examples and train models, which limits its effectiveness in the unlabeled target domain. In this paper, we aim to explore AT to robustify UDA models: How to enhance the unlabeled data robustness via AT while learning domain-invariant features for UDA? To answer this, we provide a systematic study into multiple AT variants that potentially apply to UDA. Moreover, we propose a novel Adversarially Robust Training method for UDA accordingly, referred to as ARTUDA. Extensive experiments on multiple attacks and benchmarks show that ARTUDA consistently improves the adversarial robustness of UDA models.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
09/02/2021

Adversarial Robustness for Unsupervised Domain Adaptation

Extensive Unsupervised Domain Adaptation (UDA) studies have shown great ...
research
11/18/2020

Robustified Domain Adaptation

Unsupervised domain adaptation (UDA) is widely used to transfer a model ...
research
08/04/2021

On the Robustness of Domain Adaption to Adversarial Attacks

State-of-the-art deep neural networks (DNNs) have been proved to have ex...
research
06/21/2021

CUDA-GR: Controllable Unsupervised Domain Adaptation for Gaze Redirection

The aim of gaze redirection is to manipulate the gaze in an image to the...
research
03/08/2022

Robust Local Preserving and Global Aligning Network for Adversarial Domain Adaptation

Unsupervised domain adaptation (UDA) requires source domain samples with...
research
06/05/2021

RDA: Robust Domain Adaptation via Fourier Adversarial Attacking

Unsupervised domain adaptation (UDA) involves a supervised loss in a lab...
research
05/23/2021

Exploring Robustness of Unsupervised Domain Adaptation in Semantic Segmentation

Recent studies imply that deep neural networks are vulnerable to adversa...

Please sign up or login with your details

Forgot password? Click here to reset