A Causal View on Robustness of Neural Networks
arXiv:2005.01095
Abstract
We present a causal view on the robustness of neural networks against input manipulations, which applies not only to traditional classification tasks but also to general measurement data. Based on this view, we design a deep causal manipulation augmented model (deep CAMA) which explicitly models possible manipulations on certain causes leading to changes in the observed effect. We further develop data augmentation and test-time fine-tuning methods to improve deep CAMA's robustness. When compared with discriminative deep neural networks, our proposed model shows superior robustness against unseen manipulations. As a by-product, our model achieves disentangled representation which separates the representation of manipulations from those of other latent causes.
NeurIPS 2020
References in corpus (3)
Cited by in corpus (7)
- Adversarial Machine Learning: Bayesian Perspectives
- Out-of-distribution Prediction with Invariant Risk Minimization: The Limitation and An Effective Fix
- Proactive Pseudo-Intervention: Causally Informed Contrastive Learning For Interpretable Vision Models
- Embracing the Disharmony in Medical Imaging: A Simple and Effective Framework for Domain Adaptation
- Enhancing Model Robustness and Fairness with Causality: A Regularization Approach
- Causally Constrained Data Synthesis for Private Data Release
- Decoder-free Robustness Disentanglement without (Additional) Supervision