Controllable Stochastic Quantization Encoding for Adversarially Robust Spiking Neural Networks
Yujia Liu, Peiyu Liu, Yajing Zheng, Tiejun Huang
Abstract
Spiking Neural Networks (SNNs) have attracted increasing attention due to their impressive temporal dynamics, energy efficiency, and brain-inspired mechanisms. Although SNNs have demonstrated promising performance in image classification tasks, recent studies have shown that they remain vulnerable to adversarial attacks, where imperceptible perturbations are added to input images to mislead model predictions. Existing defense methods mainly focus on training strategies, while the role of input encoding remains less explored. An observation is that the robustness advantage of Poisson encoding over direct encoding may benefit from its inherent randomness. Motivated by this, we propose a stochastic quantization encoding method that encodes the input image with controllable randomness adjusted by the quantization scale, thereby improving the adversarial robustness of SNNs. We further show that this method constitutes a general framework that reduces to both Poisson encoding and direct encoding under different choices of the quantization scale. Since it enhances robustness at the input encoding stage, it can be combined with existing training-based defenses for further gains. Experimental results on CIFAR-10 and CIFAR-100 demonstrate the effectiveness of the proposed stochastic quantization encoding method. To sum up, this work highlights the importance of input encoding for the adversarial robustness of SNNs, providing a new perspective for understanding and improving it.
Create a lesson
Related papers
TRACE: Tackling Real-World Resource Assignment Problems via Agentic Heuristic Design
Jose A. Ayala-Romero, Andres Garcia-Saavedra, Xavier Costa-Perez
Continual Reinforcement Learning with Neuroevolution
Eleni Nisioti, Andrea Cossu, Kathrin Korte et al.
LESS: Lightweight Evolutionary Supernet Search in Minutes
Aviral Gandhi, Jinglue Xu, Jialong Li et al.
Inherited Learning in an Artificial Ecology: How Controls and Update Allocation Shape Benefits
Xuening Wu, Lei Li, Shan Yu
Neuromorphic Pseudo-Random Number Generators with a Low Power Hardware Implementation
Jafar Shamsi, Navid Akbari, Sonia Sennik et al.
Large Language Model-Guided Evolutionary Discovery of Native Neural Architectures for Spiking Sequence Modeling
Ruoyu Zhao, Jiaqi Wu, Chenyu Zhu et al.