We gratefully acknowledge support from
the Simons Foundation and member institutions.
Full-text links:

Download:

Current browse context:

cs.CV

Change to browse by:

cs

References & Citations

DBLP - CS Bibliography

Bookmark

(what is this?)
CiteULike logo BibSonomy logo Mendeley logo del.icio.us logo Digg logo Reddit logo

Computer Science > Computer Vision and Pattern Recognition

Title: Towards Robust Fine-grained Recognition by Maximal Separation of Discriminative Features

Abstract: Adversarial attacks have been widely studied for general classification tasks, but remain unexplored in the context of fine-grained recognition, where the inter-class similarities facilitate the attacker's task. In this paper, we identify the proximity of the latent representations of different classes in fine-grained recognition networks as a key factor to the success of adversarial attacks. We therefore introduce an attention-based regularization mechanism that maximally separates the discriminative latent features of different classes while minimizing the contribution of the non-discriminative regions to the final class prediction. As evidenced by our experiments, this allows us to significantly improve robustness to adversarial attacks, to the point of matching or even surpassing that of adversarial training, but without requiring access to adversarial samples.
Subjects: Computer Vision and Pattern Recognition (cs.CV)
Cite as: arXiv:2006.06028 [cs.CV]
  (or arXiv:2006.06028v1 [cs.CV] for this version)

Submission history

From: Krishna Kanth Nakka [view email]
[v1] Wed, 10 Jun 2020 18:34:45 GMT (12978kb,D)

Link back to: arXiv, form interface, contact.