{"about":{"site":"https://codewithpapers.app","non_affiliation":"Code with Papers and Syntology are not affiliated with, endorsed by, or sponsored by Papers with Code, Meta, or the pwc-archive mirror.","licence":"CC BY-SA 4.0","licence_url":"https://creativecommons.org/licenses/by-sa/4.0/legalcode","attribution":"https://codewithpapers.app/attribution","modified":"archive material modified by Syntology; see the attribution page"},"url":"/paper/to-be-robust-or-to-be-fair-towards-fairness-1","title":"To be Robust or to be Fair: Towards Fairness in Adversarial Training","arxiv_id":"2010.06121","date":"2020-10-13","proceeding":null,"authors":["Han Xu","Xiaorui Liu","Yaxin Li","Anil K. Jain","Jiliang Tang"],"abstract":"Adversarial training algorithms have been proved to be reliable to improve machine learning models' robustness against adversarial examples. However, we find that adversarial training algorithms tend to introduce severe disparity of accuracy and robustness between different groups of data. For instance, a PGD adversarially trained ResNet18 model on CIFAR-10 has 93% clean accuracy and 67% PGD l-infty-8 robust accuracy on the class \"automobile\" but only 65% and 17% on the class \"cat\". This phenomenon happens in balanced datasets and does not exist in naturally trained models when only using clean samples. In this work, we empirically and theoretically show that this phenomenon can happen under general adversarial training algorithms which minimize DNN models' robust errors. Motivated by these findings, we propose a Fair-Robust-Learning (FRL) framework to mitigate this unfairness problem when doing adversarial defenses. Experimental results validate the effectiveness of FRL.","url_abs":"https://arxiv.org/abs/2010.06121v2","url_pdf":"https://arxiv.org/pdf/2010.06121v2.pdf","source":{"archive":"pwc-archive (Hugging Face), CC BY-SA 4.0","snapshot":"2025-07-28","licence_url":"https://creativecommons.org/licenses/by-sa/4.0/legalcode","row_kind":"abstracts"},"code_links":[{"paper_slug":"to-be-robust-or-to-be-fair-towards-fairness-1","repo_url":"https://github.com/Ian-Hardy/Fair_Robust_Modeling","is_official":0,"mentioned_in_paper":0,"mentioned_in_github":1,"framework":"pytorch","reach":{"status":"ok"}},{"paper_slug":"to-be-robust-or-to-be-fair-towards-fairness-1","repo_url":"https://github.com/hannxu123/fair_robust","is_official":0,"mentioned_in_paper":0,"mentioned_in_github":1,"framework":"pytorch","reach":null}],"tasks":[{"task_slug":"fairness","task_name":"Fairness"}],"methods":[],"datasets_introduced":[],"methods_introduced":[],"results":[],"syntology":{"atlas_url":"https://app.syntology.ai/?focus=2010.06121","mcp":{"get_harvested_code_for_paper":{"arxiv_id":"2010.06121"}},"developers":"https://syntology.ai/developers","read_at":"2026-09-24T18:15:14+00:00","read_at_is":"when the build read Syntology's graph, not when any sample ran","claim":"Per-sample execution status on synthesized fixtures; not a correctness claim about the paper. Samples come from repositories linked to the paper, official or community; repo_kind says which.","repos":[{"provenance":"external:paperswithcode_snapshot_2025-07-28","url":"https://github.com/hannxu123/fair_robust","reach":null},{"provenance":"external:paperswithcode_snapshot_2025-07-28","url":"https://github.com/Ian-Hardy/Fair_Robust_Modeling","reach":{"status":"ok"}}],"summary":{"ran_fixture":1,"ran_draft_wrong":2},"by_repo_kind":{"listed":{"samples":3,"ran":3,"repositories":1}},"repo_kind_vocabulary":{"official":"The archive marks this repository official for the paper","named_in_paper":"The archive records that the paper mentions this repository; it is not marked official","listed":"In the archive's code links for this paper, not marked official and not recorded as mentioned in the paper","found_in_text":"Syntology found this repository in the paper's own text; whether it is the authors' implementation is not asserted","community":"Not in the archive's code links for this paper; a community repository Syntology harvested"},"n_pointer_only_for_licence":3,"samples":[{"code_sha256_prefix":"0504a54e17169d2e","entry":"in_class","repo":"hannxu123/fair_robust","repo_kind":"listed","path":"utils_frl.py","file_url":"https://github.com/hannxu123/fair_robust/blob/HEAD/utils_frl.py","link_basis":"first_harvest_node","language":"python","status":"ran_fixture","verification_level":1,"contract_check":"RAISES","metamorphic_tier":"invariant","behaviour_fingerprint":false,"licence":"NONE","inline_ok":false,"mcp_get_code":{"code_sha256":"0504a54e17169d2e"}},{"code_sha256_prefix":"ee1e48fc088d1214","entry":"pgd_attack","repo":"hannxu123/fair_robust","repo_kind":"listed","path":"utils_frl.py","file_url":"https://github.com/hannxu123/fair_robust/blob/HEAD/utils_frl.py","link_basis":"first_harvest_node","language":"python","status":"ran_draft_wrong","verification_level":1,"contract_check":"MISDECLARED","metamorphic_tier":"invariant","behaviour_fingerprint":false,"licence":"NONE","inline_ok":false,"mcp_get_code":{"code_sha256":"ee1e48fc088d1214"}},{"code_sha256_prefix":"ade943fd18bb90aa","entry":"pgd_attack_frl","repo":"hannxu123/fair_robust","repo_kind":"listed","path":"utils_frl.py","file_url":"https://github.com/hannxu123/fair_robust/blob/HEAD/utils_frl.py","link_basis":"first_harvest_node","language":"python","status":"ran_draft_wrong","verification_level":1,"contract_check":"MISDECLARED","metamorphic_tier":"invariant","behaviour_fingerprint":false,"licence":"NONE","inline_ok":false,"mcp_get_code":{"code_sha256":"ade943fd18bb90aa"}}]},"arxiv_metadata":null,"syntology_extracted_results":null}