paper-with-me

Papers

Robustness to Transformations Across Categories: Is Robustness To Transformations Driven by Invariant Neural Representations?

2020-06-30 · Hojin Jang, Syed Suleman Abbas Zaidi, Xavier Boix, Neeraj Prasad, Sharon Gilad-Gutnick, Shlomit Ben-Ami, Pawan Sinha

Deep Convolutional Neural Networks (DCNNs) have demonstrated impressive robustness to recognize objects under transformations (eg. blur or noise) when these transformations are included in the training set. A hypothesis to explain such robustness is that DCNNs develop invariant neural representations that remain unaltered when the image is transformed. However, to what extent this hypothesis holds true is an outstanding question, as robustness to transformations could be achieved with properties different from invariance, eg. parts of the network could be specialized to recognize either transformed or non-transformed images. This paper investigates the conditions under which invariant neural representations emerge by leveraging that they facilitate robustness to transformations beyond the training distribution. Concretely, we analyze a training paradigm in which only some object categories are seen transformed during training and evaluate whether the DCNN is robust to transformations across categories not seen transformed. Our results with state-of-the-art DCNNs indicate that invariant neural representations do not always drive robustness to transformations, as networks show robustness for categories seen transformed during training even in the absence of invariant neural representations. Invariance only emerges as the number of transformed categories in the training set is increased. This phenomenon is much more prominent with local transformations such as blurring and high-pass filtering than geometric transformations such as rotation and thinning, which entail changes in the spatial arrangement of the object. Our results contribute to a better understanding of invariant neural representations in deep learning and the conditions under which it spontaneously emerges.

📄 PDF Abstract BibTeX arXiv:2007.00112

Code (0)

등록된 구현이 없습니다.

Similar Papers 제목 키워드 기반

Towards Robust Protective Perturbation against DeepFake Face Swapping

2025-12-08 · Hengyang Yao, Lin Li, Ke Sun, Jianing Qiu 외 arxiv

DeepFake face swapping enables highly realistic identity forgeries, posing serious privacy and security risks. A common defence embeds invisible perturbations into images, but these are fragile and often destroyed by bas…

Reinforcement LearningFace Swapping

TSS: Transformation-Specific Smoothing for Robustness Certification

2020-02-27 · Linyi Li, Maurice Weber, Xiaojun Xu, Luka Rimanic 외

As machine learning (ML) systems become pervasive, safeguarding their security is critical. However, recently it has been demonstrated that motivated adversaries are able to mislead ML systems by perturbing test data usi…

Old Tricks, New Models: How Simple Image Transformations Break Modern AI-based Content Moderation

2026-07-30 · Marco Alecci, Francesco Marchiori, Iyiola Emmanuel Olatunji, Tegawendé F. Bissyandé 외 arxiv

While automated content-moderation systems have become essential for screening harmful content at scale, conventional task-specific classifiers often provide limited policy cov- erage and contextual understanding. Recent…

Using Videos to Evaluate Image Model Robustness

2019-04-22 · Keren Gu, Brandon Yang, Jiquan Ngiam, Quoc Le 외

Human visual systems are robust to a wide range of image transformations that are challenging for artificial networks. We present the first study of image model robustness to the minute transformations found across video…

model

TPC: Transformation-Specific Smoothing for Point Cloud Models

2022-01-30 · Wenda Chu, Linyi Li, Bo Li

Point cloud models with neural network architectures have achieved great success and have been widely used in safety-critical applications, such as Lidar-based recognition systems in autonomous vehicles. However, such mo…

Autonomous Vehicles