Adversarial defenses for object detectors based on Gabor convolutional layers

被引:9
作者
Amirkhani, Abdollah [1 ]
Karimi, Mohammad Parsa [1 ]
机构
[1] Iran Univ Sci & Technol, Sch Automot Engn, Tehran 1684613114, Iran
关键词
Machine vision; Object detection; Adversarial attack; Robust detector; ATTACKS;
D O I
10.1007/s00371-021-02256-6
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
Despite their many advantages and positive features, the deep neural networks are extremely vulnerable against adversarial attacks. This drawback has substantially reduced the adversarial accuracy of the visual object detectors. To make these object detectors robust to adversarial attacks, a new Gabor filter-based method has been proposed in this paper. This method has then been applied on the YOLOv3 with different backbones, the SSD with different input sizes and on the FRCNN; and thus, six robust object detector models have been presented. In order to evaluate the efficacy of the models, they have been subjected to adversarial training via three types of targeted attacks (TOG-fabrication, TOG-vanishing, and TOG-mislabeling) and three types of untargeted random attacks (DAG, RAP, and UEA). The best average accuracy (49.6%) was achieved by the YOLOv3-d model, and for the PASCAL VOC dataset. This is far superior to the best performance and accuracy and obtained in previous works (25.4%). Empirical results show that, while the presented approach improves the adversarial accuracy of the object detector models, it does not affect the performance of these models on clean data.
引用
收藏
页码:1929 / 1944
页数:16
相关论文
共 38 条
[11]   Detecting and Mitigating Adversarial Perturbations for Robust Face Recognition [J].
Goswami, Gaurav ;
Agarwal, Akshay ;
Ratha, Nalini ;
Sing, Richa ;
Vatsa, Mayank .
INTERNATIONAL JOURNAL OF COMPUTER VISION, 2019, 127 (6-7) :719-742
[12]  
Guo Q., 2019, P EUR C COMP VIS ECC
[13]   A comprehensive survey and deep learning-based approach for human recognition using ear biometric [J].
Kamboj, Aman ;
Rani, Rajneesh ;
Nigam, Aditya .
VISUAL COMPUTER, 2022, 38 (07) :2383-2416
[14]  
Karan, 2020, 2020 International Conference on Electronics and Sustainable Communication Systems (ICESC). Proceedings, P45, DOI 10.1109/ICESC48915.2020.9155891
[15]   FoveaBox: Beyound Anchor-Based Object Detection [J].
Kong, Tao ;
Sun, Fuchun ;
Liu, Huaping ;
Jiang, Yuning ;
Li, Lei ;
Shi, Jianbo .
IEEE TRANSACTIONS ON IMAGE PROCESSING, 2020, 29 :7389-7398
[16]  
Lee M., 2019, PHYS ADVERSARIAL PAT
[17]  
Li D., PATTERN RECOGN, V110, P2021
[18]   ROSA: Robust Salient Object Detection Against Adversarial Attacks [J].
Li, Haofeng ;
Li, Guanbin ;
Yu, Yizhou .
IEEE TRANSACTIONS ON CYBERNETICS, 2020, 50 (11) :4835-4847
[19]  
Li Y., 2018, P BRIT MACH VIS C, P231
[20]   SSD: Single Shot MultiBox Detector [J].
Liu, Wei ;
Anguelov, Dragomir ;
Erhan, Dumitru ;
Szegedy, Christian ;
Reed, Scott ;
Fu, Cheng-Yang ;
Berg, Alexander C. .
COMPUTER VISION - ECCV 2016, PT I, 2016, 9905 :21-37