Zero-Shot Attribute Attacks on Fine-Grained Recognition Models

被引:1
|
作者
Shafiee, Nasim [1 ]
Elhamifar, Ehsan [1 ]
机构
[1] Northeastern Univ, Boston, MA 02115 USA
来源
关键词
Fine-grained recognition; Zero-shot models; Adversarial attacks; Attribute-based universal perturbations; Compositional model;
D O I
10.1007/978-3-031-20065-6_16
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Zero-shot fine-grained recognition is an important classification task, whose goal is to recognize visually very similar classes, including the ones without training images. Despite recent advances on the development of zero-shot fine-grained recognition methods, the robustness of such models to adversarial attacks is not well understood. On the other hand, adversarial attacks have been widely studied for conventional classification with visually distinct classes. Such attacks, in particular, universal perturbations that are class-agnostic and ideally should generalize to unseen classes, however, cannot leverage or capture small distinctions among fine-grained classes. Therefore, we propose a compositional attribute-based framework for generating adversarial attacks on zero-shot fine-grained recognition models. To generate attacks that capture small differences between fine-grained classes, generalize well to previously unseen classes and can be applied in real-time, we propose to learn and compose multiple attribute-based universal perturbations (AUPs). Each AUP corresponds to an image-agnostic perturbation on a specific attribute. To build our attack, we compose AUPs with weights obtained by learning a class-attribute compatibility function. To learn the AUPs and the parameters of our model, we minimize a loss, consisting of a ranking loss and a novel utility loss, which ensures AUPs are effectively learned and utilized. By extensive experiments on three datasets for zero-shot fine-grained recognition, we show that our attacks outperform conventional universal classification attacks and transfer well between different recognition architectures.
引用
收藏
页码:262 / 282
页数:21
相关论文
共 50 条
  • [31] Knowledge Graph Enhancement for Fine-Grained Zero-Shot Learning on ImageNet21K
    Chen, Xingyu
    Liu, Jiaxu
    Liu, Zeyang
    Wan, Lipeng
    Lan, Xuguang
    Zheng, Nanning
    IEEE TRANSACTIONS ON CIRCUITS AND SYSTEMS FOR VIDEO TECHNOLOGY, 2024, 34 (10) : 9090 - 9101
  • [32] CLIP for All Things Zero-Shot Sketch-Based Image Retrieval, Fine-Grained or Not
    Sain, Aneeshan
    Bhunia, Ayan Kumar
    Chowdhury, Pinaki Nath
    Koley, Subhadeep
    Xiang, Tao
    Song, Yi-Zhe
    2023 IEEE/CVF CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION, CVPR, 2023, : 2765 - 2775
  • [33] RE-Matching: A Fine-Grained Semantic Matching Method for Zero-Shot Relation Extraction
    Zhao, Jun
    Zhan, Wenyu
    Zhao, Xin
    Zhang, Qi
    Gui, Tao
    Wei, Zhongyu
    Wang, Junzhe
    Peng, Minlong
    Sun, Mingming
    PROCEEDINGS OF THE 61ST ANNUAL MEETING OF THE ASSOCIATION FOR COMPUTATIONAL LINGUISTICS, ACL 2023, VOL 1, 2023, : 6680 - 6691
  • [34] Webly Supervised Learning Meets Zero-shot Learning: A Hybrid Approach for Fine-grained Classification
    Niu, Li
    Veeraraghavan, Ashok
    Sabharwal, Ashu
    2018 IEEE/CVF CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION (CVPR), 2018, : 7171 - 7180
  • [35] Visual Question Answering Models for Zero-Shot Pedestrian Attribute Recognition: A Comparative Study
    Castrillón-Santana M.
    Sánchez-Nielsen E.
    Freire-Obregón D.
    Santana O.J.
    Hernández-Sosa D.
    Lorenzo-Navarro J.
    SN Computer Science, 5 (6)
  • [36] A Method of Pedestrian Fine-grained Attribute Detection and Recognition
    Ma, Xianqin
    Yu, Chongchong
    Yang, Xin
    Chen, Xiuxin
    Chen, Jianzhang
    Zhou, Lan
    2019 INTERNATIONAL JOINT CONFERENCE ON NEURAL NETWORKS (IJCNN), 2019,
  • [37] Fine-grained Action Recognition using Attribute Vectors
    Yenduri, Sravani
    Perveen, Nazil
    Chalavadi, Vishnu
    Mohan, C. Krishna
    PROCEEDINGS OF THE 17TH INTERNATIONAL JOINT CONFERENCE ON COMPUTER VISION, IMAGING AND COMPUTER GRAPHICS THEORY AND APPLICATIONS (VISAPP), VOL 5, 2022, : 134 - 143
  • [38] Towards Fine-grained Open Zero-shot Learning: Inferring Unseen Visual Features from Attributes
    Long, Yang
    Liu, Li
    Shao, Ling
    2017 IEEE WINTER CONFERENCE ON APPLICATIONS OF COMPUTER VISION (WACV 2017), 2017, : 944 - 952
  • [39] Fine-Grained Crowdsourcing for Fine-Grained Recognition
    Jia Deng
    Krause, Jonathan
    Li Fei-Fei
    2013 IEEE CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION (CVPR), 2013, : 580 - 587
  • [40] Robust fine-tuning of zero-shot models
    Wortsman, Mitchell
    Ilharco, Gabriel
    Kim, Jong Wook
    Li, Mike
    Kornblith, Simon
    Roelofs, Rebecca
    Lopes, Raphael Gontijo
    Hajishirzi, Hannaneh
    Farhadi, Ali
    Namkoong, Hongseok
    Schmidt, Ludwig
    2022 IEEE/CVF CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION (CVPR), 2022, : 7949 - 7961