paper-with-me

홈 › Papers

Unrestricted Adversarial Examples via Semantic Manipulation

2019-04-12 · ICLR 2020 1 · Anand Bhattad, Min Jin Chong, Kaizhao Liang, Bo Li, D. A. Forsyth

Machine learning models, especially deep neural networks (DNNs), have been shown to be vulnerable against adversarial examples which are carefully crafted samples with a small magnitude of the perturbation. Such adversarial perturbations are usually restricted by bounding their $\mathcal{L}_p$ norm such that they are imperceptible, and thus many current defenses can exploit this property to reduce their adversarial impact. In this paper, we instead introduce "unrestricted" perturbations that manipulate semantically meaningful image-based visual descriptors - color and texture - in order to generate effective and photorealistic adversarial examples. We show that these semantically aware perturbations are effective against JPEG compression, feature squeezing and adversarially trained model. We also show that the proposed methods can effectively be applied to both image classification and image captioning tasks on complex datasets such as ImageNet and MSCOCO. In addition, we conduct comprehensive user studies to show that our generated semantic adversarial examples are photorealistic to humans despite large magnitude perturbations when compared to other attacks.

📄 PDF Abstract BibTeX arXiv:1904.06347

Code (1)

mchong6/Semantic_Adversarial_Cadv pytorch

Tasks

ColorizationImage Captioningimage-classificationImage Classification

Similar Papers 제목 키워드 기반

SemanticAdv: Generating Adversarial Examples via Attribute-conditional Image Editing

2019-06-19 · Haonan Qiu, Chaowei Xiao, Lei Yang, Xinchen Yan 외

Deep neural networks (DNNs) have achieved great success in various applications due to their strong expressive power. However, recent studies have shown that DNNs are vulnerable to adversarial examples which are manipula…

AttributeFace RecognitionFace Verification

Content-based Unrestricted Adversarial Attack

2023-05-18 · NeurIPS 2023 11

Unrestricted adversarial attacks typically manipulate the semantic content of an image (e.g., color or texture) to create adversarial examples that are both effective and photorealistic, demonstrating their ability to de…

Adversarial Attack

AdvSPADE: Realistic Unrestricted Attacks for Semantic Segmentation

2019-10-06 · Guangyu Shen, Chengzhi Mao, Junfeng Yang, Baishakhi Ray

Due to the inherent robustness of segmentation models, traditional norm-bounded attack methods show limited effect on such type of models. In this paper, we focus on generating unrestricted adversarial examples for seman…

Adversarial AttackSegmentationSemantic Segmentation

VENOM: Text-driven Unrestricted Adversarial Example Generation with Diffusion Models

2025-01-14 · Hui Kuurila-Zhang, Haoyu Chen, Guoying Zhao

Adversarial attacks have proven effective in deceiving machine learning models by subtly altering input images, motivating extensive research in recent years. Traditional methods constrain perturbations within $l_p$-norm…

Fine-grained Synthesis of Unrestricted Adversarial Examples

2019-11-20 · Omid Poursaeed, Tianxing Jiang, Yordanos Goshu, Harry Yang 외

We propose a novel approach for generating unrestricted adversarial examples by manipulating fine-grained aspects of image generation. Unlike existing unrestricted attacks that typically hand-craft geometric transformati…

Image Generationobject-detectionObject DetectionSemantic Segmentation