arXiv is now an independent nonprofit! Learn more
License: arXiv.org perpetual non-exclusive license
arXiv:1809.02499v3 [cs.LG] 22 Nov 2018

MixUp as Locally Linear Out-Of-Manifold Regularization

Hongyu Guo Affiliation: National Research Council Canada Affiliation: 1200 Montreal Road, Ottawa Email: hongyu.guo@nrc-cnrc.gc.ca    Yongyi Mao Affiliation: School of Electrical Engineering & Computer Science Affiliation: University of Ottawa, Ottawa, Ontario Email: yymao@eecs.uottawa.ca    Richong Zhang Affiliation: BDBC, School of Computer Science and Engineering Affiliation: Beihang University, Beijing, China Email: zhangrc@act.buaa.edu.cn
Abstract

MixUp [\citeauthoryearZhang et al.2017] is a recently proposed data-augmentation scheme, which linearly interpolates a random pair of training examples and correspondingly the one-hot representations of their labels. Training deep neural networks with such additional data is shown capable of significantly improving the predictive accuracy of the current art. The power of MixUp, however, is primarily established empirically and its working and effectiveness have not been explained in any depth. In this paper, we develop an understanding for MixUp as a form of “out-of-manifold regularization”, which imposes certain “local linearity” constraints on the model’s input space beyond the data manifold. This analysis enables us to identify a limitation of MixUp, which we call “manifold intrusion”. In a nutshell, manifold intrusion in MixUp is a form of under-fitting resulting from conflicts between the synthetic labels of the mixed-up examples and the labels of original training data. Such a phenomenon usually happens when the parameters controlling the generation of mixing policies are not sufficiently fine-tuned on the training data. To address this issue, we propose a novel adaptive version of MixUp, where the mixing policies are automatically learned from the data using an additional network and objective function designed to avoid manifold intrusion. The proposed regularizer, AdaMixUp, is empirically evaluated on several benchmark datasets. Extensive experiments demonstrate that AdaMixUp improves upon MixUp when applied to the current art of deep classification models.

Introduction

Deep learning techniques have achieved profound success in many challenging real-world applications, including image recognition [\citeauthoryearKrizhevsky, Sutskever, and Hinton2012, \citeauthoryearHe et al.2016], speech recognition [\citeauthoryearHinton et al.2012, \citeauthoryearGraves, Mohamed, and Hinton2013], and machine translation [\citeauthoryearSutskever, Vinyals, and Le2014, \citeauthoryearBahdanau, Cho, and Bengio2014], amongst many others [\citeauthoryearGoodfellow et al.2014, \citeauthoryearSilver et al.2016, \citeauthoryearKipf and Welling2016]. A recently proposed such technique, MixUp [\citeauthoryearZhang et al.2017], is a simple and yet very effective data-augmentation approach to enhance the performance of deep classification models. Through linearly interpolating random data sample pairs and their training targets, MixUp generates a synthetic set of examples and use these examples to augment the training set. In [\citeauthoryearZhang et al.2017], MixUp is shown to dramatically improve the predictive accuracy of the current art of deep neural networks.

Despite its demonstrated effectiveness, the power of MixUp is mostly established empirically. To date, the working of MixUp has not been well explained. In addition, the mixing (i.e., interpolation) policies in MixUp are controlled by a global hyper-parameter α\alpha, which needs to be tuned by trial and error on the data set. This on one hand makes MixUp inconvenient to use, and on the other hand, adds to the mystery what role such a parameter controls and how to tune it properly.

The study of this current paper is motivated by developing a deeper understanding of MixUp, specifically pertaining to why it works. To that end, we formulate MixUp as a new form of regularization. Specifically, we categorize regularization schemes as data-independent regularization and data-dependent regularization. Data-independent regularization imposes constraints on the model without exploiting the structure (e.g., the distribution) of data; typical examples include penalizing various forms of the norm of the network parameters (e.g., weight decay [\citeauthoryearHanson and Pratt1988]) or dropout [\citeauthoryearSrivastava et al.2014]. Data-dependent regularization constrains the parameter space of the model in a way that depends on the structure of the data; previous examples of such schemes include, data augmentation schemes [\citeauthoryearSimard et al.1998, \citeauthoryearLecun et al.1998, \citeauthoryearSimonyan and Zisserman2014], adversarial training schemes (e.g., [\citeauthoryearGoodfellow, Shlens, and Szegedy2014]), and some information bottleneck based regularization schemes (e.g., [\citeauthoryearAlemi et al.2016]). In this paper, we show that MixUp is also a data-dependent regularization scheme in the sense that the imposed constraints on the model explicitly exploit the data distribution. But different from all previous data-dependent regularization schemes, MixUp imposes its constraints by making use of the regions in the input space of the model that are outside of the data manifold. Identifying the constraints imposed by MixUp with a set of “locally linear” constraints, we call such a data-dependent regularization scheme a “locally linear out-of-manifold” regularization scheme.

Under this perspective, we identify an intrinsic problem in MixUp, which we refer to as “manifold intrusion”. Briefly, manifold intrusion occurs when a mixed example collides with a real example in the data manifold, but is given a soft label that is different from the label of the real example. Figure 1 (left) shows some examples of manifold intrusion. In the figure, the mixed images (top row) look close to a hand-written “8” (which indeed live in the data set) and yet MixUp assigns a soft-label that is not “8”. For example, the soft-label of the top-left image is given as the half-half mix of labels “1” and “5”.

Figure 1: Left: Linearly interpolated images (top row) from the original images (bottom two rows). Right: Performance of MixUp on a reduced Cifar100 data set (reduced to containing 20% of data samples) vs various values of α\alpha.
Refer to caption

We explain in this work that manifold intrusion necessarily results in under-fitting and degradation of the model performance. This is confirmed by our experiments, where we see MixUp with an inappropriate hyper-parameter α\alpha actually deteriorates the model performance (Figure 1, right). Indeed, with MixUp, one has to select hyper-parameter α\alpha carefully via trial and error, in order to enhance the base model.

Built on our understanding and motivated by the potential manifold intrusion in MixUp, we then propose a generalized and adaptive version of MixUp, which we call AdaMixUp. On one hand, AdaMixUp extends the mixing policies in the standard MixUp from 2-fold to higher-fold; more importantly it adaptively learns good policy regions from the data and automatically avoids manifold intrusion. Our experiments on several image classification tasks show that AdaMixUp significantly improves the current art of deep classification models and outperforms the standard MixUp by a large margin.

Preliminaries

In a standard classification setting, let 𝒳{\cal X} denote the vector space in which each example xx lives. Throughout the paper, the elements of 𝒳{\cal X} will be treated as vectors and all vectors in this paper are taken as column vectors.

Let 𝒴{\cal Y} denote the set of all class labels. The objective of our classification problem is to develop a classifier which assigns every example a label in 𝒴{\cal Y}.

It is worth noting however that not every x𝒳x\in{\cal X} is a valid example. That is, some xx cannot be associated to a label in 𝒴{\cal Y}. Specifically, the set of all valid examples is only a subset of 𝒳{\cal X}, which we refer to as the data manifold, or in short, the manifold, and denote it by {\cal M}.

The following hypothesis is adopted for nearly every classification problem.

Hypothesis 1 (Basic Hypothesis)

Each xx\in{\cal M} has a unique label in 𝒴{\cal Y}. We use g(x)g(x) to denote the label of xx, where gg is a function mapping {\cal M} onto 𝒴{\cal Y}. We stress that on 𝒳{\cal X} outside {\cal M}, gg is not defined.

In the classification problem, we are given a subset 𝒟{\cal D}\subset{\cal M} as the training examples, where for each x𝒟x\in{\cal D}, g(x)g(x) is given.

A distribution over a set of mm elements will be denoted by a vector in m{\mathbb{R}}^{m}. It is well known that the set of all such distributions form the probability simplex in m{\mathbb{R}}^{m}, which we will denote by 𝕊m{\mathbb{S}}_{m}. The set of all distributions on 𝒴{\cal Y} is obviously a probability simplex, but we will give it a separate notation 𝒫(𝒴){\cal P}({\cal Y}) for distinction. Specifically, each distribution in 𝒫(𝒴){\cal P}({\cal Y}) is regarded as a “soft label”, whereas each distribution in other probability simplexes potentially serves as a set of coefficients, which will be used to mix training examples via a convex combination. For example, a Bernoulli distribution [α,1α]T[\alpha,1-\alpha]^{T} as a distribution in 𝕊2{\mathbb{S}}_{2} may potentially be used to mix two examples x,x𝒳x,x^{\prime}\in{\cal X} by αx+(1α)x\alpha x+(1-\alpha)x^{\prime}. Thus the distributions in these simplexes will be referred to as a mixing policy, or simply policy. Any subset Λ\Lambda of these probability simplex with non-zero Lebesgue measure will then be called a policy region. A distribution or policy will be called degenerate if it is a distribution containing a single non-zero probability mass.

Let (𝒳,𝒴){\cal F}({\cal X},{\cal Y}) denote the space of all functions mapping 𝒳{\cal X} to 𝒫(𝒴){\cal P}({\cal Y}). A discriminative classification model (such as a neural network model) that outputs a predictive distribution over 𝒴{\cal Y} for an example x𝒳x\in{\cal X} can be characterized as a subset (𝒳,𝒴){\cal H}\subset{\cal F}({\cal X},{\cal Y})

Given the model {\cal H}, the objective of learning is then finding a member function HH\in{\cal H} which hopefully, for each xx\in{\cal M}, returns a predictive distribution that puts highest probability on g(x)g(x). Usually such an HH is found by optimizing a well-defined loss function 𝒟(H){\cal L}_{\cal D}(H) over all HH in the space {\cal H}

H^:=argminH𝒟(H).\widehat{H}:=\arg\min_{H\in{\cal H}}{\cal L}_{\cal D}(H). (1)

We note that we subscript the loss with 𝒟{\cal D} to emphasize its dependency on the training data 𝒟{\cal D}.

Regularization

It is well known that when the space {\cal H} is large (for example, high dimensional), or when the model is too complex, the model tends to overfit and generalize poorly. The main techniques to cure such a problem is regularization.

Regularization, in our view, may refer to any technique that effectively reduces the model capacity or reduces the space {\cal H}. In this paper, we wish to divide regularization into two categories: data-dependent and data-independent.

Data-independent regularization is the usual notion of regularization. Typical such techniques directly impose certain constraint, say, C(H)<AC(H)<A, on the functions HH\in{\cal H}. This turns the optimization problem (1) to a constrained optimization problem, which, under the Lagrangian formulation, can be expressed by

H^:=argminH{𝒟(H)+βC(H)}\widehat{H}:=\arg\min_{H\in{\cal H}}\left\{{\cal L}_{\cal D}(H)+\beta C(H)\right\} (2)

For example, the weight-decay regularization is a data-independent regularization, which essentially imposes a L2-norm constraint on the model parameters. Dropout [\citeauthoryearSrivastava et al.2014] can be regarded as another example of such a regularizer, which can be understood as reducing the model capacity in a Bayesian style [\citeauthoryearGal and Ghahramani2015] and which has an equivalent loss function similar to the form of (2). A key feature in data-independent regularization is that the training data do not enter the regularization term C(H)C(H) in such a scheme.

Data-dependent regularization imposes constraints or makes additional assumptions on {\cal H} with respect to the training data 𝒟{\cal D}.

The most well known such techniques are data augmentation. Specifically, in a data augmentation scheme, another set 𝒟𝒳{\cal D}^{\prime}\subset{\cal X}, believed to be inside {\cal M} but beyond the training set 𝒟{\cal D}, are introduced for training. For example, if 𝒟{\cal D} is a set of images, 𝒟{\cal D}^{\prime} can be obtained by rotating each image in 𝒟{\cal D}; the label g(x)g(x) of an image xx in 𝒟{\cal D}^{\prime} is taken as the label of the image xx before rotation. Data augmentation turns the optimization problem (1) into

H^:=argminH{𝒟(H)+𝒟(H)}\widehat{H}:=\arg\min_{H\in{\cal H}}\left\{{\cal L}_{\cal D}(H)+{\cal L}_{{\cal D}^{\prime}}(H)\right\} (3)

where 𝒟{\cal L}_{{\cal D}^{\prime}} is the same loss function but on data 𝒟{\cal D}^{\prime}. Aligning (3) with (2), one can equivalently regard data augmentation as imposing a constraint on the space {\cal H} (hence a regularization scheme), and such a constraint, depending on the data set 𝒟{\cal D}, is precisely due to the hypothesis that 𝒟{\cal D}^{\prime}\subset{\cal M} and g()g(\cdot) is rotation-invariant.

Another data-dependent regularization scheme is adversarial training (see, e.g., [\citeauthoryearGoodfellow, Shlens, and Szegedy2014]). In such a scheme, for each training example xx, an adversarial example xx^{\prime} is found, and it is assumed that xx^{\prime} has the same label as xx. The adversarial examples are then also used for training purpose. Although delicate procedures have been proposed to find adversarial examples, the found adversarial examples are used in the same way as the additional data set 𝒟{\cal D}^{\prime} in data augmentation.

In both data augmentation and adversarial training, the constraints imposed on the label function gg is in the data manifold; the constraints essentially specify how function gg should behave on additional points in the manifold {\cal M}. Next we will argue that MixUp may be viewed as another data-dependent regularization scheme, which introduces constraints on gg outside the manifold {\cal M}.

Locally Linear Out-of-Manifold Regularization

For each y𝒴y\in{\cal Y}, let δy𝒫(𝒴)\delta_{y}\in{\cal P}({\cal Y}) be the single-point-mass (namely, degenerate) distribution on 𝒴{\cal Y} which puts all the probability mass on yy. Now we associate with gg a function G:𝒳𝒫(𝒴)G:{\cal X}\rightarrow{\cal P}({\cal Y}) satisfying

G(x):=δg(x),foranyx.G(x):=\delta_{g(x)},{\rm for\penalty\ any}\penalty\ x\in{\cal M}. (4)

Obviously, on the data manifold {\cal M}, GG is simply a representation of gg in (𝒳,𝒴){\cal F}({\cal X},{\cal Y}). Additionally any 𝒢{\cal G} satisfying the above equation is as perfect as gg for any valid example. Thus, any such function GG can be taken as a “ground-truth” classifier.

Then the classification problem can be reformulated as constructing a model (𝒳,𝒴){\cal H}\subset{\cal F}({\cal X},{\cal Y}) and finding a member HH\in{\cal H} that well approximates a function GG satisfying (4).

Noting that the condition (4) on GG is only within {\cal M}, and it imposes no condition on the space 𝒳{\cal X} outside {\cal M}. However, the functions in {\cal H} are defined on 𝒳{\cal X}, well beyond {\cal M}. Thus, if one chooses to regularize the model in a data-dependent manner, there is a lots of degrees of freedom beyond {\cal M} which one can exploit. We will show that the MixUp strategy presented in [\citeauthoryearZhang et al.2017] can be seen as such a technique.

To begin, for any subset Ω𝒳{\Omega}\subseteq{\cal X}, we will use Ω(k){\Omega}^{(k)} to denote the set of all kk-column matrices in which each column is a point (vector) in Ω\Omega. This also defines notations (k){\cal M}^{(k)} and 𝒟(k){\cal D}^{(k)}; however with these latter two notations, we require each matrix in (k){\cal M}^{(k)} and 𝒟(k){\cal D}^{(k)} satisfy an additional condition, namely, the labels of the columns of the matrix must be all distinct.

Let kk be a given integer not less than 2. Let Λ𝕊k\Lambda\subseteq{\mathbb{S}}_{k} be a policy region, and 𝐗𝒳(k){\bf X}\in{\cal X}^{(k)}. We say that a function F(𝒳,𝒴)F\in{\cal F}({\cal X},{\cal Y}) is Λ\Lambda-linear with respect to 𝐗{\bf X} if for any λΛ\lambda\in\Lambda

F(𝐗λ)=F(𝐗)λF({\bf X}\lambda)=F({\bf X})\lambda

where F()F(\cdot), when having its domain extended to matrices, acts on matrix 𝐗{\bf X} column-wise. We also refer to such a notion of linearity as a kk-fold local linearity. We note that if we allow Λ\Lambda to k{\mathbb{R}}^{k}, then k{\mathbb{R}}^{k}-linearity with respect to all 𝐗𝒳(k){\bf X}\in{\cal X}^{(k)} for every integer k1k\geq 1 implies the standard linearity.

Standard MixUp

Hypothesis 2 (Standard MixUp Hypothesis)

There exists a policy region Λ𝕊2\Lambda\subset{\mathbb{S}}^{2} such that for any matrix 𝐗(2){\bf X}\in{\cal M}^{(2)}, the function G{G} is Λ\Lambda-linear with respect to 𝐗{\bf X}.

We note that this hypothesis only assumes a fold-2 local linearity and a global choice of Λ\Lambda. If Hypothesis 2 holds and one is given Λ\Lambda, then one can implementing the hypothesis as a constraint on {\cal H}, by imposing on the optimization problem the following constraint.

Standard MixUp Constraint: Every HH\in{\cal H} is Λ\Lambda-linear w.r.t. every 𝐗𝒟(2){\bf X}\in{\cal D}^{(2)},

This gives rise a regularization scheme, which can be implemented by repeating the following process: draw a random pair data points11 1 Although we have required in the definition of 𝒟(2){\cal D}^{(2)} that two points in matrix 𝐗{\bf X} should have different labels, this needs not to be rigorously followed in implementation. Relaxing this condition in fact is expected to decrease the chance of manifold intrusion. Similar comments apply to the AdaMixUp later. in 𝒟{\cal D} to form 𝐗{\bf X}, and draw a random λ\lambda from Λ\Lambda; take 𝐗λ{\bf X}\lambda as an additional training example and G(𝐗)λG({\bf X})\lambda as its training target.

This scheme, generating more training examples, is essentially the standard MixUp scheme [\citeauthoryearZhang et al.2017].

In this paper, we however point out that one needs to caution with such a regularization scheme.

Lemma 1

Let Λ\Lambda be a policy region in 𝕊2{\mathbb{S}}_{2} and 𝐗(2){\bf X}\in{\cal M}^{(2)}. If there is a non-degenerate λΛ\lambda\in\Lambda with 𝐗λ{\bf X}\lambda\in{\cal M}, then Hypothesis 2 can not hold with this choice Λ\Lambda22 2 More precisely, in order to make the hypothesis fail, instead of requiring a single non-degenerate λ\lambda, we in fact require a subset of Λ\Lambda having non-zero measure. But we abbreviate it here for simplicity. Similar comments apply to Lemma. 2. .

Proof: The condition of the lemma, stated more precisely in Footnote 2 suggests that there is a region ΛΛ\Lambda^{\prime}\subseteq\Lambda with non-zero Lebesgue measure such that every λΛ\lambda\in\Lambda^{\prime} is non-degenerate and 𝐗λ{\bf X}\lambda\in{\cal M}. The fact that 𝐗λ{\bf X}\lambda\in{\cal M} suggests, by Hypothesis 1, that g(𝐗λ)𝒴g({\bf X}\lambda)\in{\cal Y}, or 𝒢(𝐗λ){\cal G}({\bf X}\lambda) is a single-point-mass distribution for every λΛ\lambda\in\Lambda^{\prime}.

To induce a contradiction, suppose that Hypothesis 2 holds for Λ\Lambda, namely, GG is Λ\Lambda-linear with respect to every 𝐗(2){\bf X}\in{\cal M}^{(2)}. Then 𝒢(𝐗λ)=𝒢(𝐗)λ{\cal G}({\bf X}\lambda)={\cal G}({\bf X})\lambda for every λΛΛ\lambda\in\Lambda^{\prime}\subseteq\Lambda. Since the two columns (points) in 𝐗{\bf X} have different labels, the two columns of G(𝐗)G({\bf X}) must be two different one-hot vectors (degenerate distributions). But every λΛ\lambda\in\Lambda^{\prime} is non-degenerate; as a consequence, every G(𝐗)λG({\bf X})\lambda must be non-degenerate. This contradicts the previous argument that 𝒢(𝐗λ){\cal G}({\bf X}\lambda) is a single-point-mass. Therefore Hypothesis 2 fails on a region in Λ\Lambda with non-zero measure. \Box

Geometrically, the failure of Hypothesis 2 in this lemma is due to that the mixing x1x_{1} and x2x_{2} by λ\lambda causes the mixed point 𝐗λ{\bf X}\lambda to “intrude” into {\cal M} and “collide” with a point, say, xx^{\prime} in {\cal M}. We call such a phenomenon manifold intrusion. Note that in this case, 𝐗λ{\bf X}\lambda and xx^{\prime} are in fact the same point, but they have different labels. Obviously, when such intrusion occurs, regularization using 𝐗{\bf X} and λ\lambda will contradict with the original training data. This essentially induces a form of under-fitting.

Figure 2 depicts the effect of MixUp on constraining the space {\cal H}, where the region 𝒢{\cal G} denotes the space of functions in (𝒳,𝒴){\cal F}({\cal X},{\cal Y}) satisfying (4).

When the space {\cal H} is large, there is a large region of {\cal H} satisfying (4). This gives a large intersection of {\cal H} and 𝒢{\cal G}, each member of which is a perfect classifier on the training set but performing questionably on the testing set. Thus the model without MixUp tends to result in large prediction variances or over-fitting (left figure).

When MixUp is applied and manifold intrusion does not occur (middle figure), the MixUp constraint effectively reduces the space {\cal H}. Since the MixUp constraint does not conflict (4) (at least explicitly), the reduced {\cal H} would contain members compatible with (4). Thus the intersection of 𝒢{\cal G} and {\cal H} reduces while remaining non-empty. Each member in the intersection is a perfect classifier on the training set and the mixed examples. But the significantly reduced intersection gives rise to significantly lower prediction variances on the testing set, thereby serving to regularize the model and reduce over-fitting.

When the application of MixUp results in manifold intrusion (right figure), there is no member in {\cal H} that satisfies both the MixUp constraint and the condition (4). The intersection of {\cal H} and 𝒢{\cal G} then becomes empty. In this case, no member in {\cal H} can fit both the original training data and the (intruding) mixed examples. This gives rise to under-fitting and high prediction biases.

From the view point of restricting the space {\cal H}, one wishes to make Λ\Lambda as large as possible. But this lemma sets a limit on the possible Λ\Lambda that makes Hypothesis 2 hold. Due to this lemma, we need to assure that the Λ\Lambda we choose does not cause such an “intrusion”.

Let Λ\Lambda^{*} denote the largest policy region in 𝕊2{\mathbb{S}}_{2} such that manifold intrusion does not occur. In the original MixUp, recall that inappropriate hyper-parameter result in no gain and only negative impact. We believe that much of this is due to manifold intrusion. On the other hand, the search of good hyper-parameter α\alpha in the original MixUp can be seen as searching for Λ\Lambda^{*} by trial and error.

Figure 2: Effect of MixUp on constraining {\cal H}
Refer to caption

In this paper, we generalize the standard MixUp to regularization with higher-fold local linearities, where Λ\Lambda^{*} (more precisely its generalization) is learned from the data.

Adaptive MixUp (AdaMixUp)

Hypothesis 3 (Generalized MixUp Hypothesis)

For any integer kk not less than 22 and not greater than some kmaxk_{\rm max}, and for any matrix 𝐗(k){\bf X}\in{\cal M}^{(k)}, there exists a policy region Λ𝕊k\Lambda\subset{\mathbb{S}}^{k} such that the function GG is Λ\Lambda-linear w.r.t. 𝐗{\bf X}. Note that here Λ\Lambda depends on 𝐗{\bf X}, which we will denote by Λ(𝐗)\Lambda({\bf X}).

If this hypothesis holds, and if for every k{2,3,,kmax}k\in\{2,3,\ldots,k_{\rm max}\} and every 𝐗(k){\bf X}\in{\cal M}^{(k)}, Λ(𝐗)\Lambda({\bf X}) in the hypothesis is given, then the hypothesis can be implemented as the following constraint on {\cal H}.

Generalized MixUp Constraint: For every k{2,3,,kmax}k\in\{2,3,\ldots,k_{\rm max}\}, every 𝐗𝒟(k){\bf X}\in{\cal D}^{(k)} and every Λ(𝐗)\Lambda({\bf X}), every HH\in{\cal H} is Λ(𝐗)\Lambda({\bf X})-linear w.r.t. 𝐗{\bf X}.

Imposing such a constraint in training provides another regularization scheme, which will be one ingredient of the proposed AdaMixUp scheme. We will present AdaMixUp in the next section, after developing its other ingredients.

Lemma 2

Let k{2,3,,kmax}k\in\{2,3,\ldots,k_{\rm max}\} and 𝐗(k){\bf X}\in{\cal M}^{(k)}. Suppose that Λ\Lambda is a policy region in 𝕊k{\mathbb{S}}_{k}. If there is a non-degenerate λΛ\lambda\in\Lambda with 𝐗λ{\bf X}\lambda\in{\cal M}, then Hypothesis 3 with Λ(𝐗)=Λ\Lambda({\bf X})=\Lambda can not hold.

This lemma parallels Lemma 1 and can be proved similarly. Lemma 2 similarly suggests that when the imposed constraint results in intrusion into the manifold {\cal M}, Hypothesis 3 necessarily fails. The lemma also sets a limit for each Λ(𝐗)\Lambda({\bf X}). For each 𝐗{\bf X}, we will denote the largest Λ(𝐗)\Lambda({\bf X}) by Λ(𝐗)\Lambda^{*}({\bf X}). The following result immediately follows.

Lemma 3

For any 𝐗(2){\bf X}\in{\cal M}^{(2)}, ΛΛ(𝐗)\Lambda^{*}\subseteq\Lambda^{*}({\bf X}).

Proof: By the definitions of Λ\Lambda^{*} and Λ(𝐗)\Lambda^{*}({\bf X}), Λ=𝐗(2)Λ(𝐗)\Lambda^{*}=\bigcap_{{\bf X}\in{\cal M}^{(2)}}\Lambda^{*}({\bf X}). Thus ΛΛ(𝐗)\Lambda^{*}\subseteq\Lambda^{*}({\bf X}). \Box

In reality, one expects that Λ\Lambda^{*} is strictly contained in Λ(𝐗)\Lambda^{*}({\bf X}). That is, even when we take kmax=2k_{\rm max}=2, the Generalized MixUp Hypothesis imposes a stronger constraint than the Standard MixUp Hypothesis, and hence can provide a stronger regularization without causing under-fitting. When kmax>2k_{\rm max}>2, the Generalized MixUp Hypothesis imposes additional constraints, which further regularizes the model and improves generalization.

AdaMixUp

From here on, we stay in the Generalized MixUp regime, namely assuming Hypothesis 3 holds. We now explore the possibility of learning Λ(𝐗)\Lambda({\bf X}) for each 𝐗{\bf X}.

Suppose that each Λ(𝐗)𝕊k\Lambda^{*}({\bf X})\subset{\mathbb{S}}_{k} can be sufficiently parametrized by πk(𝐗)\pi_{k}({\bf X}) in some space Π\Pi. Then πk()\pi_{k}(\cdot) can be regarded as a function mapping (k){\cal M}^{(k)} to Π\Pi. Then learning each Λ(𝐗)\Lambda({\bf X}) reduces to learning the function πk()\pi_{k}(\cdot). We now consider using a neural network to represent the function πk\pi_{k}. This network will be referred to as a policy region generator. With a slight abuse of notation, we will use πk(𝐗)\pi_{k}({\bf X}) to denote any candidate choice of Λ(𝐗)𝕊k\Lambda^{*}({\bf X})\subset{\mathbb{S}}_{k} generated by the network πk()\pi_{k}(\cdot).

To train the networks {πk}\{\pi_{k}\}, consider the construction of another network φ()\varphi(\cdot). The network takes any x𝒳x\in{\cal X} as input and outputs a predictive distribution on whether the xx lies in manifold {\cal M}.

This network, which we refer to as an intrusion discriminator, aims at distinguishing elements inside the manifold {\cal M} and those outside. By assuring that the virtual examples obtained by mixing with the policies in πk(𝐗)\pi_{k}({\bf X}) are outside the manifold and the original examples are inside the manifold, the supervising signal trains both the networks {πk}\{\pi_{k}\} and φ\varphi. More details are given below.

For a given x𝒳x\in{\cal X}, let p(|x;φ)p(\cdot|x;\varphi) be the predictive distribution on {1,0}\{1,0\} generated by network φ\varphi, where 11 denotes xx is outside {\cal M}. The loss function for training {πk}\{\pi_{k}\} and φ\varphi is given by the following cross-entropy loss, which we call the “intrusion loss”:

intr:=1kmax1k=2kmax𝔼𝐗𝒟(k),λπk(𝐗)logp(1|𝐗λ;φ)+𝔼x𝒟logp(0|x;φ)\begin{split}{\cal L}_{\rm intr}:=&\frac{1}{k_{\rm max}\!\!\!-1}\sum\limits_{k=2}^{k_{\rm max}}{\mathbb{E}}_{{\bf X}\sim{\cal D}^{(k)},\lambda\sim\pi_{k}({\bf X})}\log p(1|{\bf X}\lambda;\varphi)\\ &+{\mathbb{E}}_{x\sim{\cal D}}\log p(0|x;\varphi)\end{split} (5)

This intrusion loss intr{\cal L}_{\rm intr}, depending on both πk\pi_{k}’s and φ\varphi will be responsible for providing training signals for πk\pi_{k}’s and φ\varphi.

Given πk\pi_{k}’s, let 𝒟{\cal D}^{\prime} be the set of all the virtual examples 𝐗λ{\bf X}\lambda that can be obtained by drawing an 𝐗{\bf X} from 𝒟(k){\cal D}^{(k)} for some kk and mixing with some policy λ\lambda in region πk(𝐗)\pi_{k}({\bf X}). Let the “MixUp Loss” 𝒟{\cal L}_{{\cal D}^{\prime}} be the average cross-entropy loss for the virtual examples 𝐗λ{\bf X}\lambda in 𝒟{\cal D}^{\prime} with respect to their respective soft labels G(𝐗)λG({\bf X})\lambda. Then we arrive at an overall loss function

total:=𝒟(H)+𝒟(H,{πk})+intr({πk},φ){\cal L}_{\rm total}:={\cal L}_{\cal D}(H)+{\cal L}_{{\cal D}^{\prime}}(H,\{\pi_{k}\})+{\cal L}_{\rm intr}(\{\pi_{k}\},\varphi) (6)

Training the networks HH, {πk}\{\pi_{k}\} and φ\varphi on total{\cal L}_{\rm total} then gives rise to the proposed AdaMixUp framework. Comparing the loss in (6) with the objective function in (2), one can equate 𝒟(H,{πk})+intr({πk},φ){\cal L}_{{\cal D}^{\prime}}(H,\{\pi_{k}\})+{\cal L}_{\rm intr}(\{\pi_{k}\},\varphi) in (6) with regularization term βC(H)\beta C(H) in (2). Specifically, here 𝒟(H,{πk}){\cal L}_{{\cal D}^{\prime}}(H,\{\pi_{k}\}) serves to regularize the model and intr({πk},φ){\cal L}_{\rm intr}(\{\pi_{k}\},\varphi) serves to prevent the model from “over-regularization”, namely, intrusion or under-fitting. This justifies AdaMixUp (and the standard MixUp) as a regularization technique. The difference between AdaMixUp (6) and the standard regularization (2) is however two fold: first, unlike the standard regularization which is data-independent, AdaMixUp depends on the dataset; on the other hand, AdaMixUp contains parameters, which are adaptively learned from the dataset 𝒟{\cal D}.

Given that each πk\pi_{k} has sufficient capacity and properly trained, in theory πk(𝐗)\pi_{k}({\bf X}) can approximate Λ(𝐗)\Lambda^{*}({\bf X}) well. Then if the φ{\varphi} also has sufficient capacity, the intrusion loss intr{\cal L}_{\rm intr} can be driven to near zero. In practice however, one usually need to reduce the capacities of πk\pi_{k}’s and φ\varphi. Then the intrusion loss may be seen as an approximate measure of the extent to which the data allows for mix up without causing intrusion under the architectural choices of πk\pi_{k}’s and φ\varphi.

Implementation of AdaMixUp

Implementation of {πk}\{\pi_{k}\}

Instead of constructing kmax1k_{\rm max}-1 networks πk\pi_{k}’s, we in fact implement these networks recursively using a single network π2\pi_{2}. For this purpose, we recursively parametrize Λ(𝐗)𝕊k\Lambda({\bf X})\in{\mathbb{S}}_{k}, which we will rewrite as Λk(𝐗)\Lambda_{k}({\bf X}) for clarity.

For an 𝐗𝒳(k){\bf X}\in{\cal X}^{(k)}, we may express it as [𝐗(k1),xk][{\bf X}^{(k-1)},x_{k}], where 𝐗(k1){\bf X}^{(k-1)} is the sub-matrix of 𝐗{\bf X} containing the first k1k-1 columns. Then, for k>2k>2, we parametrize

Λk(𝐗):={[γλ1γ]:λΛk1(𝐗(k1)),[γ1γ]Λ2([λ𝐗(k1),xk])}\begin{split}\Lambda_{k}({\bf X}):=&\left\{\left[\begin{array}[]{c}\gamma\lambda\\ 1-\gamma\end{array}\right]:\right.\lambda\in\Lambda_{k-1}\left({\bf X}^{(k-1)}\right),\\ &\left.\left[\begin{array}[]{c}\gamma\\ 1-\gamma\end{array}\right]\in\Lambda_{2}\left([\lambda{\bf X}^{(k-1)},x_{k}]\right)\right\}\end{split} (7)

This then allows the use of single network π2\pi_{2} to express Λk(𝐗)\Lambda_{k}({\bf X}) for all 𝐗{\bf X} and all kk.

Specifically, a Fold-2 mixing policy is parameterized by a single number γ\gamma. For each input 𝐗𝒳(2){\bf X}\in{\cal X}^{(2)}, π2\pi_{2} returns two positive values α\alpha and Δ\Delta with α+Δ1\alpha+\Delta\leq 1, which specifies Λ(𝐗)\Lambda({\bf X}) as the interval (α,α+Δ)(\alpha,\alpha+\Delta) as the range for γ\gamma. To this end, the last layer of the π2\pi_{2} network is implemented as a softmax function, which generates a triplet of values (α,Δ,α)(\alpha,\Delta,\alpha^{\prime}) with sum of one, where the third element α\alpha^{\prime} is discarded. Using network π2\pi_{2}, we generate a set of Fold-2 mixed examples by repeatedly drawing a pair of samples in 𝒟{\cal D} and mixing them using a random policy drawn from policy region generated by π2\pi_{2} on the pair of samples.

To generate mixed samples with an increased maximum fold number, we consider the original examples and previously generated mixed examples as the new training set 𝒟new{\cal D}_{\rm new}. We then repeat the following process: draw a pair of samples, one from 𝒟new{\cal D}_{\rm new} and the other from 𝒟{\cal D}; submit the pair to network π2\pi_{2} to generate a policy region; draw a random policy from the region and obtain a new sample by mixing the pair of samples using the drawn policy.

Reparametrization Trick

To allow the gradient signal to back-propagate through the policy sampler, a reparametrization trick similar to that of [\citeauthoryearKingma and Welling2013] is used. Specifically, drawing γ\gamma from (α,α+Δ)(\alpha,\alpha+\Delta) is implemented by drawing ϵ\epsilon from the uniform distribution over (0,1)(0,1), then let γ:=Δϵ+α\gamma:=\Delta\cdot\epsilon+\alpha.

x1x_{1}x2x_{2} Policy Region Generator γ\gammax^=γx1+(1γ)x2\hat{x}=\gamma x_{1}+(1-\gamma)x_{2}x1x_{1}x2x_{2}x^\hat{x}x^/+\hat{x}/+x1/x_{1}/-x2/x_{2}/-x3/x_{3}/- Intrusion Discriminator x3x_{3} Classifier
Figure 3: Fold-2 AdaMixUp for a single triplet (x1,x2,x3)(x_{1},x_{2},x_{3}).

Each batch is implemented to contain multiple such triplets. “+” and “-” indicate positive and negative examples, respectively.

Implementation of φ()\varphi(\cdot)

The network φ\varphi is a neural network that classifies original examples from the mixed examples. In our implementation, φ\varphi shares with the classifier network all but the final layers. The final layer of φ\varphi is a simple logistic regression binary classifier.

Training

The network φ\varphi and π2\pi_{2} are trained jointly, where we iterate over minimizing 𝒟+𝒟{\cal L}_{\cal D}+{\cal L}_{{\cal D}^{\prime}} and minimizing intr{\cal L}_{\rm intr} in (6) via mini-batched SGD. A Fold-2 AdaMixUp is illustrated in Figure 3.

Experiments

Data Sets and Experimental Settings

We evaluate AdaMixUp on eight benchmarks. MNIST is the popular digit (1-10) recognition dataset with 60,000 training and 10,000 test gray-level, 784-dimensional images. Fashion is an image recognition dataset having the same scale as MNIST, containing 10 classes of fashion product pictures. SVHN is the Google street view house numbers recognition data set with 73,257 digits (1-10) 32x32 color images for training, 26,032 for testing, and 531,131 additional, easier samples. We did not use the additional images. Cifar10 is an image classification dataset with 10 classes, 50,000 training and 10,000 test samples. Cifar100 is similar to CIFAR10 but with 100 classes and 600 images each. Cifar10-S and Cifar100-S are respectively Cifar10 and Cifar100 reduced to containing only 20% of the training samples. ImageNet-R is the ImageNet-2012 classification dataset [\citeauthoryearRussakovsky et al.2014] with 1.3 million training images, 50,000 validation images, and 1,000 classes. We follow the data processing approaches used in Mixup [\citeauthoryearZhang et al.2017], except that the crop size is 100x100 instead of 224x224 due to our limited computational resources. We report both top-1 and top-5 error rates.

In our experiments, the Intrusion Discriminator, Classifier, and Policy Region Generator have the same network architecture, and the first two share the same set of parameters. We test AdaMixUp on two types of baseline networks: a three layers CNN as implemented in [\citeauthoryearWu and others2016] as the baseline for easier tasks MNIST and Fashion, and a ResNet-18 as implemented in [\citeauthoryearZagoruyko and Komodakis2016] for the other six more difficult tasks. All models examined are trained using mini-batched backprop, as specified in [\citeauthoryearWu and others2016] and [\citeauthoryearZagoruyko and Komodakis2016], for 400 epochs. Each reported performance value (accuracy or error rate) is the median of the performance values obtained in the final 10 epochs.

Predictive Performance

Our first experiment compares Fold-2 AdaMixUp (i.e., mixing image pairs) to two networks: the baseline networks (i.e., 3-layer CNN for MNIST and Fashion and ResNet-18 for the rest datasets) and MixUp on the baseline networks. We present the error rates obtained by the Baseline, MixUp, and AdaMixUp, along with the relative error reduction of AdaMixUp over the Baseline, in Table 1.

Table 1 indicates that the AdaMixUp outperforms both the Baseline and MixUp on all the eight testing datasets. Also, the relative error reduction of AdaMixUp over the Baseline is at least 5.7%, and with a large margin in some cases. For example, for the SVHN and Cifar10 datasets, the relative error reduction achieved by AdaMixUp are over 30%.

Table 1 also suggests that, with the default α\alpha value, MixUp failed to improve the baseline systems’ accuracy on four out of the eight datasets, namely the MNIST, Cifar10-S, Cifar100-S, and Imagenet-R datasets, as underlined in Table 1, suggesting over-regularization or under-fitting.

Data Set Baseline MixUp Ada Relative
MixUp Impro. (%)
mnist 0.52 0.57 0.49 5.77
fashion 7.37 6.92 6.21 15.74
svhn 4.50 3.80 3.12 30.67
cifar10 5.53 4.24 3.52 36.35
cifar100 25.6 21.14 20.97 18.09
cifar10-S 7.68 7.88 6.85 10.81
cifar100-S 28.47 29.39 26.72 6.15
ImageNet-R top1 53.00 54.89 49.17 7.22
ImageNet-R top5 29.41 31.02 25.78 12.34
Table 1: Error rates (%) obtained by the testing methods.

In Table 2, we also present the α\alpha and Δ\Delta values learned by the Policy Region Generator, along with the losses of both the Intrusion Discriminator and the Classifier of the AdaMixUp method. Results in Table 2 indicate that the values of α\alpha and Δ\Delta vary for different datasets; the former ranges from 0.4 to 0.9 but the range for Δ\Delta is much smaller, with values between 0.010 and 0.035. Noting that the intrusion losses are fairly close to 0 on all the datasets, suggesting that these datasets well support Fold-2 AdaMixUp under the proposed structure of Policy Region Generator.

Ada values α\alpha Δ\Delta intr{\cal L}_{\rm intr} 𝒟+𝒟{\cal L}_{\cal D}+{\cal L}_{{\cal D}^{\prime}}
mnist 0.497 0.010 0.002 0.201
fashion 0.511 0.011 0.003 0.290
svhn 0.924 0.011 0.002 0.116
cifar10 0.484 0.029 0.003 0.371
cifar100 0.484 0.034 0.002 0.679
cifar10-S 0.486 0.027 0.003 0.479
cifar100-S 0.482 0.035 0.007 0.712
ImageNet-R 0.493 0.004 0.038 2.382
Table 2: Fold-2 AdaMixUp: Mean α\alpha, Δ\Delta, and training losses.

Training Characteristics

Figure 4 depicts the behavior of Policy Region Generator in Fold-2 AdaMixUp over training iterations. It appears that the Policy Region Generator initially explores a wide range of policy space before settling down at around 40K iterations (when the means of α\alpha and Δ\Delta both stabilize, at 0.48 and 0.03 respectively).

Figure 5 shows the average of the drawn mixing policy γ\gamma in Fold-2 AdaMixUp during training iterations and the corresponding classification performance of the model. The range of γ\gamma appears to stabilize at around 40K iterations (left plot), consistent with the observation in Figure 4. Interestingly, also at the same time, the classification error drops and begins to stabilize (right plot).

Figure 4: The mean of α\alpha (left) and the mean of Δ\Delta (right) in Fold-2 AdaMixUp on Cifar10.
Refer to caption
Figure 5: Fold-2 AdaMixUp on Cifar10: Mean of mixing policy γ\gamma (left) and training/testing error rates (right).
Refer to caption

Figures 6 shows some typical mixed images in Fold-2 AdaMixUp and their corresponding original images in MNIST. We note that these mixed images obviously distinguish themselves from the original images. Thus they do not intrude into the data manifold.

Figure 6: Mixed images (top row) in Fold-2 AdaMixUp from the original images (bottom 2 rows) in MNIST.
Refer to caption

Impact of Mixing Fold

Table 3 presents the error rates obtained by Fold-3 and Fold-4 AdaMixUp on the seven testing datasets (excluding ImageNet due to limited computational resources). We see that increasing the mixing fold from 2 to higher values, the performance of AdaMixUp improves. This is due to stronger constraints are imposed to the model and hence results in stronger regularization. One however expects that imposing stronger constraints makes the model more difficult to fit and further increasing mixing fold may eventually lead to diminishing gain and even under-fitting. This is hinted by Table 4, where the averages of learned mixing parameters and the training losses of the Fold-3 AdaMixUp are presented.

In Table 4, we see that the intrusion losses of Fold-3 AdaMixUp are much higher than those of Fold-2 AdaMixUp (Table 2). This implies that in higher-fold AdaMixUp, it is more difficult for the Policy Region Generator to carve a good policy region that is not regarded by the Intrusion Discriminator as causing intrusion. This difficulty is also suggested by the high α2\alpha_{2} values in Table 4 (often close to 1). They indicate that in these cases, mixing only occurs “slightly”.

AdaMixUp Fold-2 Fold-3 Fold-4
mnist 0.49 0.42 0.41
fashion 6.21 5.88 5.71
svhn 3.12 2.98 2.91
cifar10 3.52 3.25 3.21
cifar100 20.97 20.68 20.29
cifar10-S 6.85 6.14 5.96
cifar100-S 26.72 25.72 25.49
Table 3: Error rates (%) of Fold-3 and Fold-4 AdaMixUp.
Fold-3 α1\alpha 1/Δ1\Delta 1 α2\alpha 2/Δ2\Delta 2 intr{\cal L}_{\rm intr} 𝒟+𝒟{\cal L}_{\cal D}+{\cal L}_{{\cal D}^{\prime}}
mnist 0.533/0.013 0.662/0.013 0.002 0.337
fashion 0.517/0.015 0.678/0.019 0.024 0.327
svhn 0.637/0.011 0.943/0.020 0.028 0.482
cifar10 0.516/0.028 0.938/0.041 0.003 0.403
cifar100 0.121/0.010 0.959/0.015 0.004 0.305
cifar10-S 0.504/0.039 0.849/0.068 0.028 0.505
cifar100-S 0.639/0.011 0.943/0.018 0.023 0.542
Table 4: Fold-3 AdaMixUp: average training losses and policy region parameters. (α1,Δ1)(\alpha_{1},\Delta_{1}): initial Fold-2 mixing parameter; (α2,Δ2)(\alpha_{2},\Delta_{2}): further mixing parameter.

Sensitivity to Model Capacity

We vary the number of filters on each layer of the ResNet-18 with half quarter, quarter, half, and three-quarter of the original number of filters (denoted as base filter), and present the test error rates on Cifar100 in Figure 7 (green curves).

The green curves in Figure 7 indicate that the Fold-2 AdaMixUp benefits from large number of filters deployed: the accuracy keeps improving while enlarging the number of filters. On the contrary, the ResNet-18 received dramatically accuracy improvement before the number of filters is half of the base but obtained no further improvement after.

Figure 7: Error rates obtained by ResNet-18 and AdaMixUp on Cifar100, when varying the number of filters (green curves) and varying the size of the samples (red curves).
Refer to caption

Effect of Data Size

We down sample the Cifar100 data with 20%, 40%, 60% and 80% of the training samples, and present the test error rates obtained by Fold-2 AdaMixUp in Figure 7 (red curves).

The red curves in Figure 7 indicate that more training samples help with both the ResNet-18 and AdaMixUp, but the accuracy gap between the two methods are widening while increasing the training sample size.

Benefit of the Intrusion Discriminator

Table 5 lists the test error rates obtained by the Fold-2 AdaMixUp with ResNet-18 on the Cifar10 and Cifar100 data, but without the Intrusion Discriminator.

Data Set Baseline Ada AdaMixUp w/o
ResNet-18 MixUp Intru. Discr.
cifar10 5.53 3.52 3.83
cifar100 25.6 20.97 24.75
Table 5: Error rates obtained by Fold-2 AdaMixUp without the Intrusion Discriminator on the Cifar10 and Cifar100.

Table 5 shows that excluding the Intrusion Discriminator component, the AdaMixUp method was still able to improve the accuracy over the baseline, but obtained much lower accuracy than that of including the Intrusion Discriminator unit.

Interpolating on Hidden Layer

We also evaluate an alternative structure for AdaMixUp, where mixing happens on the layer before the final softmax layer in ResNet-18. Our results suggest that the test errors of the Fold-2 AdaMixUp increased dramatically due to the high cost of the Intrusion Discriminator. The error rates increased from 20.97% to 22.21% and from 3.52% to 4.94%, respectively for Cifar100 and Cifar10. Notably, both have large intrusion loss of around 0.49, which may due to the fact that perceptual similarity for images in the hidden embedding space may not as distinguishable as that in the input space. As a result, the Policy Generator failed to find good mixing policies to avoid colliding into the data manifold.

Related Work

Common data augmentation methods have been designed based on substantial domain knowledge [\citeauthoryearLecun et al.1998, \citeauthoryearSimonyan and Zisserman2014, \citeauthoryearAmodei et al.2015, \citeauthoryearZhong et al.2017], relied on specific network architectures [\citeauthoryearGastaldi2017, \citeauthoryearDevries and Taylor2017, \citeauthoryearYamada, Iwamura, and Kise2018], or leveraged feedback signals to search the optimal augmentation strategies [\citeauthoryearLemley, Bazrafkan, and Corcoran2017, \citeauthoryearCubuk et al.2018]. Our method excludes those requirements, and only leverages a simple linear interpolation for data augmentation.

Our work closely relates to approaches linearly interpolating examples and labels [\citeauthoryearZhang et al.2017, \citeauthoryearDeVries and W. Taylor2017, \citeauthoryearVerma et al.2018, \citeauthoryearTokozume, Ushiku, and Harada2017]. Nevertheless, these approaches depends on the correct user-predefined mixing policies. Also, their interpolation typically lies along the lines of sample pairs. On the contrary, our approach automatically learns the mixing policy regions and benefits from mixing multiple images.

Conclusions and Outlook

This work justifies the effectiveness of MixUp from the perspective of out-of-manifold regularization. We also identify the inherent problem with standard MixUp in causing manifold intrusion. This motivates us to develop AdaMixUp, which generalizes MixUp to higher-fold mixing policies and automatically learns the policy regions that avoid manifold intrusion.

To us, this work is only the beginning of a rich research theme. The justification of MixUp and AdaMixUp we provide thus far is primarily qualitative. It is desirable to quantitatively characterize the generalization capability of AdaMixUp. Moreover, the out-of-manifold regularization perspective potentially opens a door to new regularization techniques. Beyond local linearization, we believe that there is a rich space of other possibilities.

References

  • [\citeauthoryearAlemi et al.2016] Alemi, A. A.; Fischer, I.; Dillon, J. V.; and Murphy, K. 2016. Deep variational information bottleneck. CoRR abs/1612.00410.
  • [\citeauthoryearAmodei et al.2015] Amodei, D.; Anubhai, R.; Battenberg, E.; Case, C.; Casper, J.; Catanzaro, B.; Chen, J.; Chrzanowski, M.; Coates, A.; Diamos, G.; Elsen, E.; Engel, J.; Fan, L.; Fougner, C.; Han, T.; Hannun, A. Y.; Jun, B.; LeGresley, P.; Lin, L.; Narang, S.; Ng, A. Y.; Ozair, S.; Prenger, R.; Raiman, J.; Satheesh, S.; Seetapun, D.; Sengupta, S.; Wang, Y.; Wang, Z.; Wang, C.; Xiao, B.; Yogatama, D.; Zhan, J.; and Zhu, Z. 2015. Deep speech 2: End-to-end speech recognition in english and mandarin. CoRR abs/1512.02595.
  • [\citeauthoryearBahdanau, Cho, and Bengio2014] Bahdanau, D.; Cho, K.; and Bengio, Y. 2014. Neural machine translation by jointly learning to align and translate. CoRR abs/1409.0473.
  • [\citeauthoryearCubuk et al.2018] Cubuk, E. D.; Zoph, B.; Mané, D.; Vasudevan, V.; and Le, Q. V. 2018. Autoaugment: Learning augmentation policies from data. CoRR abs/1805.09501.
  • [\citeauthoryearDevries and Taylor2017] Devries, T., and Taylor, G. W. 2017. Improved regularization of convolutional neural networks with cutout. CoRR abs/1708.04552.
  • [\citeauthoryearDeVries and W. Taylor2017] DeVries, T., and W. Taylor, G. 2017. Dataset augmentation in feature space. CoRR.
  • [\citeauthoryearGal and Ghahramani2015] Gal, Y., and Ghahramani, Z. 2015. Dropout as a bayesian approximation: Representing model uncertainty in deep learning. CoRR abs/1506.02142.
  • [\citeauthoryearGastaldi2017] Gastaldi, X. 2017. Shake-shake regularization. CoRR abs/1705.07485.
  • [\citeauthoryearGoodfellow et al.2014] Goodfellow, I. J.; Pouget-Abadie, J.; Mirza, M.; Xu, B.; Warde-Farley, D.; Ozair, S.; Courville, A. C.; and Bengio, Y. 2014. Generative adversarial nets. In NIPS, 2672–2680.
  • [\citeauthoryearGoodfellow, Shlens, and Szegedy2014] Goodfellow, I. J.; Shlens, J.; and Szegedy, C. 2014. Explaining and harnessing adversarial examples. CoRR abs/1412.6572.
  • [\citeauthoryearGraves, Mohamed, and Hinton2013] Graves, A.; Mohamed, A.; and Hinton, G. E. 2013. Speech recognition with deep recurrent neural networks. CoRR abs/1303.5778.
  • [\citeauthoryearHanson and Pratt1988] Hanson, S. J., and Pratt, L. Y. 1988. Comparing biases for minimal network construction with back-propagation. In NIPS1988, 177–185.
  • [\citeauthoryearHe et al.2016] He, K.; Zhang, X.; Ren, S.; and Sun, J. 2016. Identity mappings in deep residual networks. CoRR abs/1603.05027.
  • [\citeauthoryearHinton et al.2012] Hinton, G.; Deng, L.; Yu, D.; Dahl, G.; rahman Mohamed, A.; Jaitly, N.; Senior, A.; Vanhoucke, V.; Nguyen, P.; Sainath, T.; and Kingsbury, B. 2012. Deep neural networks for acoustic modeling in speech recognition. Signal Processing Magazine.
  • [\citeauthoryearKingma and Welling2013] Kingma, D. P., and Welling, M. 2013. Auto-encoding variational bayes. CoRR abs/1312.6114.
  • [\citeauthoryearKipf and Welling2016] Kipf, T. N., and Welling, M. 2016. Semi-supervised classification with graph convolutional networks. CoRR abs/1609.02907.
  • [\citeauthoryearKrizhevsky, Sutskever, and Hinton2012] Krizhevsky, A.; Sutskever, I.; and Hinton, G. E. 2012. Imagenet classification with deep convolutional neural networks. In NIPS, 1097–1105. USA: Curran Associates Inc.
  • [\citeauthoryearLecun et al.1998] Lecun, Y.; Bottou, L.; Bengio, Y.; and Haffner, P. 1998. Gradient-based learning applied to document recognition. Proceedings of the IEEE 86(11):2278–2324.
  • [\citeauthoryearLemley, Bazrafkan, and Corcoran2017] Lemley, J.; Bazrafkan, S.; and Corcoran, P. 2017. Smart augmentation - learning an optimal data augmentation strategy. CoRR abs/1703.08383.
  • [\citeauthoryearRussakovsky et al.2014] Russakovsky, O.; Deng, J.; Su, H.; Krause, J.; Satheesh, S.; Ma, S.; Huang, Z.; Karpathy, A.; Khosla, A.; Bernstein, M. S.; Berg, A. C.; and Li, F. 2014. Imagenet large scale visual recognition challenge. CoRR abs/1409.0575.
  • [\citeauthoryearSilver et al.2016] Silver, D.; Huang, A.; Maddison, C. J.; Guez, A.; Sifre, L.; van den Driessche, G.; Schrittwieser, J.; Antonoglou, I.; Panneershelvam, V.; Lanctot, M.; Dieleman, S.; Grewe, D.; Nham, J.; Kalchbrenner, N.; Sutskever, I.; Lillicrap, T. P.; Leach, M.; Kavukcuoglu, K.; Graepel, T.; and Hassabis, D. 2016. Mastering the game of go with deep neural networks and tree search. Nature 529(7587):484–489.
  • [\citeauthoryearSimard et al.1998] Simard, P.; LeCun, Y.; Denker, J. S.; and Victorri, B. 1998. Transformation invariance in pattern recognition-tangent distance and tangent propagation. In Neural Networks: Tricks of the Trade, This Book is an Outgrowth of a 1996 NIPS Workshop, 239–27.
  • [\citeauthoryearSimonyan and Zisserman2014] Simonyan, K., and Zisserman, A. 2014. Very deep convolutional networks for large-scale image recognition. CoRR abs/1409.1556.
  • [\citeauthoryearSrivastava et al.2014] Srivastava, N.; Hinton, G.; Krizhevsky, A.; Sutskever, I.; and Salakhutdinov, R. 2014. Dropout: A simple way to prevent neural networks from overfitting. J. Mach. Learn. Res. 15(1):1929–1958.
  • [\citeauthoryearSutskever, Vinyals, and Le2014] Sutskever, I.; Vinyals, O.; and Le, Q. V. 2014. Sequence to sequence learning with neural networks. CoRR abs/1409.3215.
  • [\citeauthoryearTokozume, Ushiku, and Harada2017] Tokozume, Y.; Ushiku, Y.; and Harada, T. 2017. Between-class learning for image classification. CoRR abs/1711.10284.
  • [\citeauthoryearVerma et al.2018] Verma, V.; Lamb, A.; Beckham, C.; Courville, A.; Mitliagkas, I.; and Bengio, Y. 2018. Manifold mixup: Encouraging meaningful on-manifold interpolation as a regularizer. CoRR.
  • [\citeauthoryearWu and others2016] Wu, Y., et al. 2016. Tensorpack. https://github.com/tensorpack/.
  • [\citeauthoryearYamada, Iwamura, and Kise2018] Yamada, Y.; Iwamura, M.; and Kise, K. 2018. Shakedrop regularization. CoRR abs/1802.02375.
  • [\citeauthoryearZagoruyko and Komodakis2016] Zagoruyko, S., and Komodakis, N. 2016. Url https://github.com/szagoruyko/ wide-residual-networks.
  • [\citeauthoryearZhang et al.2017] Zhang, H.; Cissé, M.; Dauphin, Y. N.; and Lopez-Paz, D. 2017. mixup: Beyond empirical risk minimization.
  • [\citeauthoryearZhong et al.2017] Zhong, Z.; Zheng, L.; Kang, G.; Li, S.; and Yang, Y. 2017. Random erasing data augmentation. CoRR abs/1708.04896.