The Price of Implicit Bias in Adversarially Robust Generalization
Tsilivis, Nikolaos, Frank, Natalie, Srebro, Nathan, Kempe, Julia
We study the implicit bias of optimization in robust empirical risk minimization (robust ERM) and its connection with robust generalization. In classification settings under adversarial perturbations with linear models, we study what type of regularization should ideally be applied for a given perturbation set to improve (robust) generalization. We then show that the implicit bias of optimization in robust ERM can significantly affect the robustness of the model and identify two ways this can happen; either through the optimization algorithm or the architecture. We verify our predictions in simulations with synthetic data and experimentally study the importance of implicit bias in robust ERM with deep neural networks.
Jun-7-2024
- Country:
- Africa > Ethiopia
- Addis Ababa > Addis Ababa (0.04)
- Asia > Middle East
- Jordan (0.04)
- Europe
- Austria > Styria
- Graz (0.04)
- Czechia > Prague (0.04)
- Denmark > Capital Region
- Copenhagen (0.04)
- France (0.04)
- Germany > Saarland
- Saarbrücken (0.04)
- Italy (0.04)
- Sweden > Stockholm
- Stockholm (0.04)
- United Kingdom > England
- Cambridgeshire > Cambridge (0.04)
- Austria > Styria
- North America
- Canada
- Alberta > Census Division No. 15
- Improvement District No. 9 > Banff (0.04)
- British Columbia > Metro Vancouver Regional District
- Vancouver (0.14)
- Quebec > Montreal (0.04)
- Alberta > Census Division No. 15
- United States
- New York > New York County
- New York City (0.04)
- California
- Los Angeles County > Long Beach (0.14)
- San Diego County > San Diego (0.04)
- Santa Clara County > San Jose (0.04)
- Georgia > Fulton County
- Atlanta (0.04)
- Wisconsin > Dane County
- Madison (0.04)
- Illinois > Cook County
- Chicago (0.04)
- Tennessee > Davidson County
- Nashville (0.04)
- Louisiana > Orleans Parish
- New Orleans (0.04)
- Hawaii > Honolulu County
- Honolulu (0.04)
- Colorado > Denver County
- Denver (0.04)
- New York > New York County
- Canada
- Africa > Ethiopia
- Genre:
- Research Report > New Finding (0.46)
- Technology: