pith. sign in

arxiv: 2110.12308 · v1 · pith:CWXLFZNLnew · submitted 2021-10-23 · 💻 cs.LG · cs.AI· cs.CV

A Layer-wise Adversarial-aware Quantization Optimization for Improving Robustness

classification 💻 cs.LG cs.AIcs.CV
keywords neuralquantizationnetworksadversarialquantizedrobustnessaccuracyadversarial-aware
0
0 comments X
read the original abstract

Neural networks are getting better accuracy with higher energy and computational cost. After quantization, the cost can be greatly saved, and the quantized models are more hardware friendly with acceptable accuracy loss. On the other hand, recent research has found that neural networks are vulnerable to adversarial attacks, and the robustness of a neural network model can only be improved with defense methods, such as adversarial training. In this work, we find that adversarially-trained neural networks are more vulnerable to quantization loss than plain models. To minimize both the adversarial and the quantization losses simultaneously and to make the quantized model robust, we propose a layer-wise adversarial-aware quantization method, using the Lipschitz constant to choose the best quantization parameter settings for a neural network. We theoretically derive the losses and prove the consistency of our metric selection. The experiment results show that our method can effectively and efficiently improve the robustness of quantized adversarially-trained neural networks.

This paper has not been read by Pith yet.

discussion (0)

Sign in with ORCID, Apple, or X to comment. Anyone can read and Pith papers without signing in.

Forward citations

Cited by 1 Pith paper

Reviewed papers in the Pith corpus that reference this work. Sorted by Pith novelty score.

  1. Boundary-Aware Quantization: Finite-Scale Decision Geometry of Neural Classifiers

    math.OC 2026-07 unverdicted novelty 4.0

    Quantization of neural classifiers produces measurable boundary shifts captured by Jaccard distances and flip rates that correlate between calibration and held-out sets across bit widths.