资源论文Deep Neural Networks are Easily Fooled: High Confidence Predictions for Unrecognizable Images

Deep Neural Networks are Easily Fooled: High Confidence Predictions for Unrecognizable Images

2019-12-25 | |  56 |   54 |   0

Abstract

Deep neural networks (DNNs) have recently beenachieving state-of-the-art performance on a variety ofpattern-recognition tasks, most notably visual classificationproblems. Given that DNNs are now able to classify objectsin images with near-human-level performance, questionsnaturally arise as to what differences remain between com-puter and human vision. A recent study [30] revealed thatchanging an image (e.g. of a lion) in a way imperceptible tohumans can cause a DNN to label the image as somethingelse entirely (e.g. mislabeling a lion a library). Here weshow a related result: it is easy to produce images that arecompletely unrecognizable to humans, but that state-of-the-art DNNs believe to be recognizable objects with 99.99%confidence (e.g. labeling with certainty that white noisestatic is a lion). Specifically, we take convolutional neu-ral networks trained to perform well on either the ImageNetor MNIST datasets and then find images with evolutionaryalgorithms or gradient ascent that DNNs label with highconfidence as belonging to each dataset class. It is possi-ble to produce images totally unrecognizable to human eyesthat DNNs believe with near certainty are familiar objects,which we call “fooling images” (more generally, fooling examples). Our results shed light on interesting differences between human vision and current DNNs, and raise questions about the generality of DNN computer vision.

上一篇:The Application of Two-level Attention Models in Deep Convolutional Neural Network for Fine-grained Image Classification

下一篇:The Stitched Puppet: A Graphical Model of 3D Human Shape and Pose

用户评价
全部评价

热门资源

  • A Mathematical Mo...

    Direct democracy, where each voter casts one vo...

  • Learning to Predi...

    Much of model-based reinforcement learning invo...

  • The Variational S...

    Unlike traditional images which do not offer in...

  • Hierarchical Task...

    We extend hierarchical task network planning wi...

  • Shape-based Autom...

    We present an algorithm for automatic detection...