Residential College | false |
Status | 已發表Published |
Towards evaluating the robustness of deep neural semantic segmentation networks with Feature-Guided Method | |
Xiao, Yatie1; Pun, Chi Man2; Chen, Kongyang3,4 | |
2023-10-18 | |
Source Publication | Knowledge-Based Systems |
ISSN | 0950-7051 |
Volume | 281Pages:111063 |
Abstract | Although deep neural networks (DNNs) demonstrated its superior performance in computer vision, recent works proved that the vulnerability of deep neural task systems to carefully crafted human-imperceptible perturbations. We observe that the majority of adversarial attack methods for generating perturbations are based on rotation or modification of the input-diagnostic. Regardless of the characteristics completed by additional sources, such approaches yield comparable properties to enrich initial details. It motivates us to consider views about using various information apart from original inputs to deliver adversarial features. For such needs, we induce a simple yet adaptable adversarial attack strategy with a Feature-Guided Method (FGM) for crafting adversarial examples (AEs) in segmentation domain. FGM first induces the multi-source patterns that are apart from the original inputs. Then, producing feature diversities generated with the original data to deliver the perturbed components. Finally, FGM blends original inputs with created features in a defined norm constraint to form the adversarial examples. In such way, it preserves the original positive class-general characteristics and enriches the new positive class-specific diversities when performing adversarial attacks. Moreover, FGM employs the adaptive gradient-based strategy on such generated information, which lowers the risk of falling into the local optimum when searching for the decision boundary of the source and target models in latent space. We conduct detailed experiments to evaluate the performance of the proposed method compared to baselines on public segmentation models. The experimental results reveal better performance of FGMs in fooling source and target segmentation systems leading large margins over 5% on mIoU, mRec, and mAcc. We also deploy the adversarial training with proposed work and PGD on widely used models. Our approach improves the robust quality of adversarially trained models on FCN, PSPNet, and DeepLabv3 with various backbones by significant margins with over 13% improvement on mIoU and 12% on mRec, which indicates a better impact of deploying such mechanisms on robust deep neural segmentation models. |
Keyword | Adversarial Attack Deep Neural Networks Feature Guide Segmentation |
DOI | 10.1016/j.knosys.2023.111063 |
URL | View the original |
Indexed By | SCIE |
Language | 英語English |
WOS Research Area | Computer Science |
WOS Subject | Computer Science, Artificial Intelligence |
WOS ID | WOS:001103638400001 |
Publisher | ELSEVIER, RADARWEG 29, 1043 NX AMSTERDAM, NETHERLANDS |
Scopus ID | 2-s2.0-85174799243 |
Fulltext Access | |
Citation statistics | |
Document Type | Journal article |
Collection | Faculty of Science and Technology DEPARTMENT OF COMPUTER AND INFORMATION SCIENCE |
Corresponding Author | Pun, Chi Man |
Affiliation | 1.School of Computer Science and Cyber Engineering, Guangzhou University, China 2.Department of Computer and Information Science, University of Macau, China 3.Institute of Artificial Intelligence and Blockchain, Guangzhou University, China 4.Pazhou Lab, Guangzhou, China |
Corresponding Author Affilication | University of Macau |
Recommended Citation GB/T 7714 | Xiao, Yatie,Pun, Chi Man,Chen, Kongyang. Towards evaluating the robustness of deep neural semantic segmentation networks with Feature-Guided Method[J]. Knowledge-Based Systems, 2023, 281, 111063. |
APA | Xiao, Yatie., Pun, Chi Man., & Chen, Kongyang (2023). Towards evaluating the robustness of deep neural semantic segmentation networks with Feature-Guided Method. Knowledge-Based Systems, 281, 111063. |
MLA | Xiao, Yatie,et al."Towards evaluating the robustness of deep neural semantic segmentation networks with Feature-Guided Method".Knowledge-Based Systems 281(2023):111063. |
Files in This Item: | There are no files associated with this item. |
Items in the repository are protected by copyright, with all rights reserved, unless otherwise indicated.
Edit Comment