Enhancing Certified Robustness via Block Reflector Orthogonal Layers and Logit Annealing Loss
Enhancing Certified Robustness via Block Reflector Orthogonal Layers and Logit Annealing Loss
Lipschitz neural networks are well-known for providing certified robustness in deep learning. In this paper, we present a novel, efficient Block Reflector Orthogonal (BRO) layer that enhances the capability of orthogonal layers on constructing more expressive Lipschitz neural architectures. In addition, by theoretically analyzing the nature of Lipschitz neural networks, we introduce a new loss function that employs an annealing mechanism to increase margin for most data points. This enables Lipschitz models to provide better certified robustness. By employing our BRO layer and loss function, we design BRONet - a simple yet effective Lipschitz neural network that achieves state-of-the-art certified robustness. Extensive experiments and empirical analysis on CIFAR-10/100, Tiny-ImageNet, and ImageNet validate that our method outperforms existing baselines. The implementation is available at \href{https://github.com/ntuaislab/BRONet}{https://github.com/ntuaislab/BRONet}.
Bo-Han Lai、Pin-Han Huang、Bo-Han Kung、Shang-Tse Chen
计算技术、计算机技术
Bo-Han Lai,Pin-Han Huang,Bo-Han Kung,Shang-Tse Chen.Enhancing Certified Robustness via Block Reflector Orthogonal Layers and Logit Annealing Loss[EB/OL].(2025-05-21)[2025-06-27].https://arxiv.org/abs/2505.15174.点此复制
评论