paper-with-me

홈 › Papers

On Inherent Adversarial Robustness of Active Vision Systems

2024-03-29 · Amitangshu Mukherjee, Timur Ibrayev, Kaushik Roy

Current Deep Neural Networks are vulnerable to adversarial examples, which alter their predictions by adding carefully crafted noise. Since human eyes are robust to such inputs, it is possible that the vulnerability stems from the standard way of processing inputs in one shot by processing every pixel with the same importance. In contrast, neuroscience suggests that the human vision system can differentiate salient features by (1) switching between multiple fixation points (saccades) and (2) processing the surrounding with a non-uniform external resolution (foveation). In this work, we advocate that the integration of such active vision mechanisms into current deep learning systems can offer robustness benefits. Specifically, we empirically demonstrate the inherent robustness of two active vision methods - GFNet and FALcon - under a black box threat model. By learning and inferencing based on downsampled glimpses obtained from multiple distinct fixation points within an input, we show that these active methods achieve (2-3) times greater robustness compared to a standard passive convolutional network under state-of-the-art adversarial attacks. More importantly, we provide illustrative and interpretable visualization analysis that demonstrates how performing inference from distinct fixation points makes active vision methods less vulnerable to malicious inputs.

📄 PDF Abstract BibTeX arXiv:2404.00185

Code (0)

등록된 구현이 없습니다.

Tasks

Adversarial RobustnessFoveation

Similar Papers 제목 키워드 기반

A Deep Dive into Adversarial Robustness in Zero-Shot Learning

2020-08-17 · Mehmet Kerim Yucel, Ramazan Gokberk Cinbis, Pinar Duygulu

Machine learning (ML) systems have introduced significant advances in various fields, due to the introduction of highly complex models. Despite their success, it has been shown multiple times that machine learning models…

Adversarial RobustnessBIG-bench Machine LearningGeneralized Zero-Shot LearningZero-Shot Learning

Attacking Bayes: On the Adversarial Robustness of Bayesian Neural Networks

2024-04-27 · Yunzhen Feng, Tim G. J. Rudner, Nikolaos Tsilivis, Julia Kempe

Adversarial examples have been shown to cause neural networks to fail on a wide range of vision and language tasks, but recent work has claimed that Bayesian neural networks (BNNs) are inherently robust to adversarial pe…

Adversarial RobustnessPredictionSemantic Shift Detection

Navigating the Trade-off: A Synthesis of Defensive Strategies for Zero-Shot Adversarial Robustness in Vision-Language Models

2025-08-07 · Zane Xu, Jason Sun arxiv

This report synthesizes eight seminal papers on the zero-shot adversarial robustness of vision-language models (VLMs) like CLIP. A central challenge in this domain is the inherent trade-off between enhancing adversarial …

Zero-shot GeneralizationAdversarial Robustness

Attacks against Abstractive Text Summarization Models through Lead Bias and Influence Functions

2024-10-26 · Poojitha Thota, Shirin Nilizadeh

Large Language Models have introduced novel opportunities for text comprehension and generation. Yet, they are vulnerable to adversarial perturbations and data poisoning attacks, particularly in tasks like text classific…

Abstractive Text SummarizationAdversarial RobustnessData PoisoningReading Comprehension+3

On the Natural Robustness of Vision-Language Models Against Visual Perception Attacks in Autonomous Driving

2025-06-13 · Pedram MohajerAnsari, Amir Salarpour, Michael Kühr, Siyu Huang 외

Autonomous vehicles (AVs) rely on deep neural networks (DNNs) for critical tasks such as traffic sign recognition (TSR), automated lane centering (ALC), and vehicle detection (VD). However, these models are vulnerable to…

Autonomous DrivingAutonomous VehiclesTraffic Sign Recognitionvehicle detection