Загрузка страницы

Robust Superpixel-Guided Attentional Adversarial Attack

Authors: Xiaoyi Dong, Jiangfan Han, Dongdong Chen, Jiayang Liu, Huanyu Bian, Zehua Ma, Hongsheng Li, Xiaogang Wang, Weiming Zhang, Nenghai Yu

Deep Neural Networks are vulnerable to adversarial samples, which can fool classifiers by adding small perturbations onto the original image. Since the pioneering optimization-based adversarial attack method, many following methods have been proposed in the past several years. However most of these methods add perturbations in a \textit{``pixel-wise"} and \textit{``global"} way. Firstly, because of the contradiction between the local smoothness of natural images and the noisy property of these adversarial perturbations, this \textit{``pixel-wise"} way makes these methods not robust to image processing based defense methods and steganalysis based detection methods. Secondly, we find adding perturbations to the background is less useful than to the salient object, thus the \textit{``global"} way is also not optimal. Based on these two considerations, we propose the first robust superpixel-guided attentional adversarial attack method. Specifically, the adversarial perturbations are only added to the salient regions and guaranteed to be same within each superpixel. Through extensive experiments, we demonstrate our method can preserve the attack ability even in this highly constrained modification space. More importantly, compared to existing methods, it is significantly more robust to image processing based defense and steganalysis based detection.

Видео Robust Superpixel-Guided Attentional Adversarial Attack канала ComputerVisionFoundation Videos
Показать
Комментарии отсутствуют
Введите заголовок:

Введите адрес ссылки:

Введите адрес видео с YouTube:

Зарегистрируйтесь или войдите с
Информация о видео
14 мая 2021 г. 20:26:51
00:01:01
Другие видео канала
Unsupervised Representation Learning for Gaze EstimationUnsupervised Representation Learning for Gaze EstimationSyn2Real Transfer Learning for Image Deraining Using Gaussian ProcessesSyn2Real Transfer Learning for Image Deraining Using Gaussian ProcessesLearning to Dress 3D People in Generative ClothingLearning to Dress 3D People in Generative ClothingLearning Physics-Guided Face Relighting Under Directional LightLearning Physics-Guided Face Relighting Under Directional LightWACV20: Keynote Talk: Maja Pantic, Imperial College London and SAICWACV20: Keynote Talk: Maja Pantic, Imperial College London and SAICOrthogonal Convolutional Neural NetworksOrthogonal Convolutional Neural Networks232 - Improving Video Captioning with Temporal Composition of a Visual-Syntactic Embedding232 - Improving Video Captioning with Temporal Composition of a Visual-Syntactic Embedding1276 - ClassMix: Segmentation-Based Data Augmentation for Semi-Supervised Learning1276 - ClassMix: Segmentation-Based Data Augmentation for Semi-Supervised LearningMatch or No Match: Keypoint Filtering Based on Matching ProbabilityMatch or No Match: Keypoint Filtering Based on Matching ProbabilityHandVoxNet: Deep Voxel-Based Network for 3D Hand Shape and Pose Estimation From a Single Depth MapHandVoxNet: Deep Voxel-Based Network for 3D Hand Shape and Pose Estimation From a Single Depth MapDSGN: Deep Stereo Geometry Network for 3D Object DetectionDSGN: Deep Stereo Geometry Network for 3D Object DetectionDeepLPF: Deep Local Parametric Filters for Image EnhancementDeepLPF: Deep Local Parametric Filters for Image Enhancement324 - Weakly Supervised Deep Reinforcement Learning for Video Summarization With Semantically Meani324 - Weakly Supervised Deep Reinforcement Learning for Video Summarization With Semantically MeaniInverse Rendering for Complex Indoor Scenes: Shape, Spatially-Varying Lighting and SVBRDF From a...Inverse Rendering for Complex Indoor Scenes: Shape, Spatially-Varying Lighting and SVBRDF From a...368 - DB-GAN: Boosting Object Recognition Under Strong Lighting Conditions368 - DB-GAN: Boosting Object Recognition Under Strong Lighting ConditionsNeural Pose Transfer by Spatially Adaptive Instance NormalizationNeural Pose Transfer by Spatially Adaptive Instance NormalizationALFRED: A Benchmark for Interpreting Grounded Instructions for Everyday TasksALFRED: A Benchmark for Interpreting Grounded Instructions for Everyday TasksHigh-Frequency Component Helps Explain the Generalization of Convolutional Neural NetworksHigh-Frequency Component Helps Explain the Generalization of Convolutional Neural NetworksBlendedMVS: A Large-Scale Dataset for Generalized Multi-View Stereo NetworksBlendedMVS: A Large-Scale Dataset for Generalized Multi-View Stereo Networks1257 - Multimodal Prototypical Networks for Few-shot Learning1257 - Multimodal Prototypical Networks for Few-shot Learning1369 - CenterFusion:Center-based Radar and Camera Fusionfor 3D Object Detection1369 - CenterFusion:Center-based Radar and Camera Fusionfor 3D Object Detection
Яндекс.Метрика