QuEst: Adversarial Attack Intensity Estimation via Query Response Analysis
Eun Gi Lee,
Chi Hyeok Min and
Seok Bong Yoo ()
Additional contact information
Eun Gi Lee: Department of Artificial Intelligence Convergence, Chonnam National University, Gwangju 61186, Republic of Korea
Chi Hyeok Min: Department of Artificial Intelligence Convergence, Chonnam National University, Gwangju 61186, Republic of Korea
Seok Bong Yoo: Department of Artificial Intelligence Convergence, Chonnam National University, Gwangju 61186, Republic of Korea
Mathematics, 2024, vol. 12, issue 22, 1-22
Abstract:
Deep learning has dramatically advanced computer vision tasks, including person re-identification (re-ID), substantially improving matching individuals across diverse camera views. However, person re-ID systems remain vulnerable to adversarial attacks that introduce imperceptible perturbations, leading to misidentification and undermining system reliability. This paper addresses the challenge of robust person re-ID in the presence of adversarial examples by estimating attack intensity to enable effective detection and adaptive purification. The proposed approach leverages the observation that adversarial examples in retrieval tasks disrupt the relevance and internal consistency of retrieval results, degrading re-ID accuracy. This approach estimates the attack intensity and dynamically adjusts the purification strength by analyzing the query response data, addressing the limitations of fixed purification methods. This approach also preserves the performance of the model on clean data by avoiding unnecessary manipulation while improving the robustness of the system and its reliability in the presence of adversarial examples. The experimental results demonstrate that the proposed method effectively detects adversarial examples and estimates the attack intensity through query response analysis. This approach enhances purification performance when integrated with adversarial purification techniques in person re-ID systems.
Keywords: computer vision; deep learning; adversarial metric attack; person re-identification; attack intensity estimation (search for similar items in EconPapers)
JEL-codes: C (search for similar items in EconPapers)
Date: 2024
References: View references in EconPapers View complete reference list from CitEc
Citations:
Downloads: (external link)
https://www.mdpi.com/2227-7390/12/22/3508/pdf (application/pdf)
https://www.mdpi.com/2227-7390/12/22/3508/ (text/html)
Related works:
This item may be available elsewhere in EconPapers: Search for items with the same title.
Export reference: BibTeX
RIS (EndNote, ProCite, RefMan)
HTML/Text
Persistent link: https://EconPapers.repec.org/RePEc:gam:jmathe:v:12:y:2024:i:22:p:3508-:d:1517592
Access Statistics for this article
Mathematics is currently edited by Ms. Emma He
More articles in Mathematics from MDPI
Bibliographic data for series maintained by MDPI Indexing Manager ().