跳到主要导航 跳到搜索 跳到主要内容

多尺度梯度对抗样本生成网络

  • Xi'an Jiaotong University
  • Harbin Institute of Technology
  • Megvii Technology Limited

科研成果: 期刊稿件文章同行评审

2 引用 (Scopus)

摘要

Traditional person re-identification (ReID) adversarial attack methods hold some limitations, such as the dependence on the registry(Gallery) to generate adversarial examples and too single examples generation method . To address these problems, an efficient ReID adversarial attack model, multi-scale gradient adversarial examples generation network (MSG-AEGN), is put forward. MSG-AEGN is based on the multi-scale gradient adversarial networks. A multi-scale network structure is adopted to obtain different semantic levels of the input images and the intermediate features of the generator. An attention module is adopted to convert the intermediate features of the generator into multi-scale weights, thereby modulating the image pixels. Finally, the network outputs high-quality adversarial examples to confuse the ReID models. On this basis, an improved adversarial loss function based on the average distance of image features and the triplet loss is proposed to constrain and guide the training of MSG-AEGN. Experiments on three pedestrian ReID datasets, namely Market1501, CUHK03 and DukeMTMC-ReID, show that the proposed method produces promising attack effects on both the mainstream Re-ID models based on deep convolutional neural networks and the transformer networks. Moreover, MSG-AEGN possesses the advantages of low required attack energy and high structural similarity between adversarial samples and original images.

投稿的翻译标题Multi-scale Gradient Adversarial Examples Generation Network
源语言繁体中文
页(从-至)483-496
页数14
期刊Moshi Shibie yu Rengong Zhineng/Pattern Recognition and Artificial Intelligence
35
6
DOI
出版状态已出版 - 6月 2022

关键词

  • Adversarial Attack
  • Improved Adversarial Loss
  • Multi-scale Generative Adversarial Network
  • Person Re-identification

学术指纹

探究 '多尺度梯度对抗样本生成网络' 的科研主题。它们共同构成独一无二的指纹。

引用此