arrow
返回

Facial attributes: Accuracy and adversarial robustness

delete2019-06-01
delete32
delete
OA
AI
A
Andras Rozsa *
M
Manuel Günther
E
Ethan M. Rudd
T
Terrance E. Boult
DOI:10.1016/j.patrec.2017.10.024delete
delete原文链接
delete分享
delete收藏
查看原文
摘要

摘要

En 中文
Facial attributes, emerging soft biometrics, must be automatically and reliably extracted from images in order to be usable in stand-alone systems. While recent methods extract facial attributes using deep neural networks (DNNs) trained on labeled facial attribute data, the robustness of deep attribute representations has not been evaluated. In this paper, we examine the representational stability of several approaches that recently advanced the state of the art on the CelebA benchmark by generating adversarial examples formed by adding small, non-random perturbations to inputs yielding altered classifications. We show that our fast flipping attribute (FFA) technique generates more adversarial examples than traditional algorithms, and that the adversarial robustness of DNNs varies highly between facial attributes. We also test the correlation of facial attributes and find that only for related attributes do the formed adversarial perturbations change the classification of others. Finally, we introduce the concept of natural adversarial samples, i.e., misclassified images where predictions can be corrected via small perturbations. We demonstrate that natural adversarial samples commonly occur and show that many of these images remain misclassified even with additional training epochs, even though their correct classification may require only a small adjustment to network parameters. (C) 2017 Elsevier B.V. All rights reserved.
Keyword:
Facial attributes
Adversarial images
Deep learning
AI总结

AI总结

对已上传原文的论文进行重点信息的提取,主要内容包括:简要概述、研究摘要、背景介绍、关键亮点、图文解析、展望与总结。

期刊

Pattern Recognition Letters 封面图
Pattern Recognition Letters
IF:
3.3
论文数:
8.0K
被引数:
1.6W

机构

University of Colorado System 封面图
University of Colorado System
学者数:
6.3W
论文数: 5.5W
被引数: 1.8K
引用论文

引用论文