arXiv · 1911.10364
Universal Adversarial Robustness of Texture and Shape-Biased Models
Abstract
Increasing shape-bias in deep neural networks has been shown to improve robustness to common corruptions and noise. In this paper we analyze the adversarial robustness of texture and shape-biased models to Universal Adversarial Perturbations (UAPs). We use UAPs to evaluate the robustness of DNN models with varying degrees of shape-based training. We find that shape-biased models do not markedly improve adversarial robustness, and we show that ensembles of texture and shape-biased models can improve universal adversarial robustness while maintaining strong performance.
Explore related subjects
Keep this discovery
Kenneth T. Co, Luis Muñoz-González, Leslie Kanthan, Ben Glocker, Emil C. Lupu. 2019-11-23. Universal Adversarial Robustness of Texture and Shape-Biased Models. https://doi.org/10.1109/icip42928.2021.9506325
Cite the original work for its findings. Save a collection to share your selection of sources.