FUNN: Flexible Unsupervised Neural Network - IRT Saint Exupéry - Institut de Recherche Technologique Accéder directement au contenu
Communication Dans Un Congrès Année : 2019

FUNN: Flexible Unsupervised Neural Network

Résumé

Deep neural networks have shown high accuracy incomputer vision tasks. However, they are known to beweak against adversarial examples. A small perturbationin the image can change the classification dramatically. Inrecent years, several defences methods have been proposedto solve the issue in the context of supervised classificationtasks.We propose a method to find robust featuresagainst adversarial attacks in the context of unsupervisedlearning. Our method differs from existing solutions bydirectly learning the robust features without projecting the adversarial examples in the original distribution space.Afirst auto-encoder, called attacker, perturbs the input imagein order to fool a second auto-encoder, called defender,which tries to regenerate the original image.The goal ofthe attacker is to perturb images as little as possible whileguaranteeing that the reconstructed images will be at a givendistance from the original images.After such training, weextract from the defender an encoder that should be robustagainst adversarial attacks. Using state-of-art network architectures, we demonstrate the robustness of the features obtained by this method in classification tasks
Fichier principal
Vignette du fichier
paper_6.pdf (175.52 Ko) Télécharger le fichier
Origine : Fichiers produits par l'(les) auteur(s)
Loading...

Dates et versions

hal-02301983 , version 1 (01-10-2019)

Identifiants

  • HAL Id : hal-02301983 , version 1

Citer

David Vigouroux, Sylvain Picard. FUNN: Flexible Unsupervised Neural Network. 13èmes Journées d’Intelligence Artificielle Fondamentale (JIAF 2019), Jul 2019, Toulouse, France. ⟨hal-02301983⟩
17 Consultations
26 Téléchargements

Partager

Gmail Facebook X LinkedIn More