Enhancing Robustness in Incremental Learning with Adversarial Training
Abstract
Adversarial training is one of the most effective approaches against adversarial attacks. However, adversarial training has primarily been studied in scenarios where data for all classes is provided, with limited research conducted in the context of incremental learning where knowledge is introduced sequentially. In this study, we investigate Adversarially Robust Class Incremental Learning (ARCIL), which deals with adversarial robustness in incremental learning. We first explore a series of baselines that integrate incremental learning with existing adversarial training methods, finding that they lead to conflicts between acquiring new knowledge and retaining past knowledge. Furthermore, we discover that training new knowledge causes the disappearance of a key characteristic in robust models: a flat loss landscape in input space. To address such issues, we propose a novel and robust baseline for ARCIL, named FLatness preserving Adversarial Incremental learning for Robustness (FLAIR). Experimental results demonstrate that FLAIR significantly outperforms other baselines. To the best of our knowledge, we are the first to comprehensively investigate the baselines, challenges, and solutions for ARCIL, which we believe represents a significant advance toward achieving real-world robustness.
Cite
Text
Cho et al. "Enhancing Robustness in Incremental Learning with Adversarial Training." AAAI Conference on Artificial Intelligence, 2025. doi:10.1609/AAAI.V39I3.32254Markdown
[Cho et al. "Enhancing Robustness in Incremental Learning with Adversarial Training." AAAI Conference on Artificial Intelligence, 2025.](https://mlanthology.org/aaai/2025/cho2025aaai-enhancing/) doi:10.1609/AAAI.V39I3.32254BibTeX
@inproceedings{cho2025aaai-enhancing,
title = {{Enhancing Robustness in Incremental Learning with Adversarial Training}},
author = {Cho, Seungju and Lee, Hongsin and Kim, Changick},
booktitle = {AAAI Conference on Artificial Intelligence},
year = {2025},
pages = {2518-2526},
doi = {10.1609/AAAI.V39I3.32254},
url = {https://mlanthology.org/aaai/2025/cho2025aaai-enhancing/}
}