Robust shortcut and disordered robustness: Improving adversarial training through adaptive smoothing
Abstract: Highlights•Adversarial training can overfit through robust shortcut.•Some training data exhibit disordered robustness after adversarial training.•Adversarial training can be improved via instance adaptive loss smoothing.
Loading