Papers
Topics
Authors
Recent
Gemini 2.5 Flash
Gemini 2.5 Flash
102 tokens/sec
GPT-4o
59 tokens/sec
Gemini 2.5 Pro Pro
43 tokens/sec
o3 Pro
6 tokens/sec
GPT-4.1 Pro
50 tokens/sec
DeepSeek R1 via Azure Pro
28 tokens/sec
2000 character limit reached

ADBM: Adversarial diffusion bridge model for reliable adversarial purification (2408.00315v1)

Published 1 Aug 2024 in cs.LG, cs.AI, and cs.CV

Abstract: Recently Diffusion-based Purification (DiffPure) has been recognized as an effective defense method against adversarial examples. However, we find DiffPure which directly employs the original pre-trained diffusion models for adversarial purification, to be suboptimal. This is due to an inherent trade-off between noise purification performance and data recovery quality. Additionally, the reliability of existing evaluations for DiffPure is questionable, as they rely on weak adaptive attacks. In this work, we propose a novel Adversarial Diffusion Bridge Model, termed ADBM. ADBM directly constructs a reverse bridge from the diffused adversarial data back to its original clean examples, enhancing the purification capabilities of the original diffusion models. Through theoretical analysis and experimental validation across various scenarios, ADBM has proven to be a superior and robust defense mechanism, offering significant promise for practical applications.

User Edit Pencil Streamline Icon: https://streamlinehq.com
Authors (8)
  1. Xiao Li (354 papers)
  2. Wenxuan Sun (5 papers)
  3. Huanran Chen (21 papers)
  4. Qiongxiu Li (26 papers)
  5. Yining Liu (10 papers)
  6. Yingzhe He (3 papers)
  7. Jie Shi (32 papers)
  8. Xiaolin Hu (97 papers)
Citations (1)
X Twitter Logo Streamline Icon: https://streamlinehq.com

Tweets