IPMix: Label-Preserving Data Augmentation Method for Training Robust Classifiers

Abstract

Data augmentation has been proven effective for training high-accuracy convolutional neural network classifiers by preventing overfitting. However, building deep neural networks in real-world scenarios requires not only high accuracy on clean data but also robustness when data distributions shift. While prior methods have proposed that there is a trade-off between accuracy and robustness, we propose IPMix, a simple data augmentation approach to improve robustness without hurting clean accuracy. IPMix integrates three levels of data augmentation (image-level, patch-level, and pixel-level) into a coherent and label-preserving technique to increase the diversity of training data with limited computational overhead. To further improve the robustness, IPMix introduces structural complexity at different levels to generate more diverse images and adopts the random mixing method for multi-scale information fusion. Experiments demonstrate that IPMix outperforms state-of-the-art corruption robustness on CIFAR-C and ImageNet-C. In addition, we show that IPMix also significantly improves the other safety measures, including robustness to adversarial perturbations, calibration, prediction consistency, and anomaly detection, achieving state-of-the-art or comparable results on several benchmarks, including ImageNet-R, ImageNet-A, and ImageNet-O.

Cite

Text

Huang et al. "IPMix: Label-Preserving Data Augmentation Method for Training Robust Classifiers." Neural Information Processing Systems, 2023.

Markdown

[Huang et al. "IPMix: Label-Preserving Data Augmentation Method for Training Robust Classifiers." Neural Information Processing Systems, 2023.](https://mlanthology.org/neurips/2023/huang2023neurips-ipmix/)

BibTeX

@inproceedings{huang2023neurips-ipmix,
  title     = {{IPMix: Label-Preserving Data Augmentation Method for Training Robust Classifiers}},
  author    = {Huang, Zhenglin and Bao, Xiaoan and Zhang, Na and Zhang, Qingqi and Tu, Xiao and Wu, Biao and Yang, Xi},
  booktitle = {Neural Information Processing Systems},
  year      = {2023},
  url       = {https://mlanthology.org/neurips/2023/huang2023neurips-ipmix/}
}