Skip to main content

Showing 1–6 of 6 results for author: Pavlitskaya, S

.
  1. arXiv:2209.13382  [pdf, other

    cs.LG

    Measuring Overfitting in Convolutional Neural Networks using Adversarial Perturbations and Label Noise

    Authors: Svetlana Pavlitskaya, Joël Oswald, J. Marius Zöllner

    Abstract: Although numerous methods to reduce the overfitting of convolutional neural networks (CNNs) exist, it is still not clear how to confidently measure the degree of overfitting. A metric reflecting the overfitting level might be, however, extremely helpful for the comparison of different architectures and for the evaluation of various techniques to tackle overfitting. Motivated by the fact that overf… ▽ More

    Submitted 27 September, 2022; originally announced September 2022.

    Comments: Accepted for publication at IEEE Symposium on Deep Learning at IEEE SSCI 2022

  2. arXiv:2209.13353  [pdf, other

    cs.CV

    Suppress with a Patch: Revisiting Universal Adversarial Patch Attacks against Object Detection

    Authors: Svetlana Pavlitskaya, Jonas Hendl, Sebastian Kleim, Leopold Müller, Fabian Wylczoch, J. Marius Zöllner

    Abstract: Adversarial patch-based attacks aim to fool a neural network with an intentionally generated noise, which is concentrated in a particular region of an input image. In this work, we perform an in-depth analysis of different patch generation parameters, including initialization, patch size, and especially positioning a patch in an image during training. We focus on the object vanishing attack and ru… ▽ More

    Submitted 22 December, 2022; v1 submitted 27 September, 2022; originally announced September 2022.

    Comments: Accepted for publication at ICECCME 2022

  3. arXiv:2208.10773  [pdf, other

    cs.CV cs.CR cs.LG

    Adversarial Vulnerability of Temporal Feature Networks for Object Detection

    Authors: Svetlana Pavlitskaya, Nikolai Polley, Michael Weber, J. Marius Zöllner

    Abstract: Taking into account information across the temporal domain helps to improve environment perception in autonomous driving. However, it has not been studied so far whether temporally fused neural networks are vulnerable to deliberately generated perturbations, i.e. adversarial attacks, or whether temporal history is an inherent defense against them. In this work, we study whether temporal feature ne… ▽ More

    Submitted 23 August, 2022; originally announced August 2022.

    Comments: Accepted for publication at ECCV 2022 SAIAD workshop

  4. arXiv:2207.07347  [pdf, other

    cs.CV cs.LG

    Feasibility of Inconspicuous GAN-generated Adversarial Patches against Object Detection

    Authors: Svetlana Pavlitskaya, Bianca-Marina Codău, J. Marius Zöllner

    Abstract: Standard approaches for adversarial patch generation lead to noisy conspicuous patterns, which are easily recognizable by humans. Recent research has proposed several approaches to generate naturalistic patches using generative adversarial networks (GANs), yet only a few of them were evaluated on the object detection use case. Moreover, the state of the art mostly focuses on suppressing a single l… ▽ More

    Submitted 15 July, 2022; originally announced July 2022.

    Comments: Accepted for publication at the IJCAI 2022 AISafety workshop

  5. arXiv:2204.10027  [pdf, other

    cs.CV cs.LG

    Is Neuron Coverage Needed to Make Person Detection More Robust?

    Authors: Svetlana Pavlitskaya, Şiyar Yıkmış, J. Marius Zöllner

    Abstract: The growing use of deep neural networks (DNNs) in safety- and security-critical areas like autonomous driving raises the need for their systematic testing. Coverage-guided testing (CGT) is an approach that applies mutation or fuzzing according to a predefined coverage metric to find inputs that cause misbehavior. With the introduction of a neuron coverage metric, CGT has also recently been applied… ▽ More

    Submitted 21 April, 2022; originally announced April 2022.

    Comments: Accepted for publication at CVPR 2022 TCV workshop

  6. Inspect, Understand, Overcome: A Survey of Practical Methods for AI Safety

    Authors: Sebastian Houben, Stephanie Abrecht, Maram Akila, Andreas Bär, Felix Brockherde, Patrick Feifel, Tim Fingscheidt, Sujan Sai Gannamaneni, Seyed Eghbal Ghobadi, Ahmed Hammam, Anselm Haselhoff, Felix Hauser, Christian Heinzemann, Marco Hoffmann, Nikhil Kapoor, Falk Kappel, Marvin Klingner, Jan Kronenberger, Fabian Küppers, Jonas Löhdefink, Michael Mlynarski, Michael Mock, Firas Mualla, Svetlana Pavlitskaya, Maximilian Poretschkin , et al. (16 additional authors not shown)

    Abstract: The use of deep neural networks (DNNs) in safety-critical applications like mobile health and autonomous driving is challenging due to numerous model-inherent shortcomings. These shortcomings are diverse and range from a lack of generalization over insufficient interpretability to problems with malicious inputs. Cyber-physical systems employing DNNs are therefore likely to suffer from safety conce… ▽ More

    Submitted 29 April, 2021; originally announced April 2021.

    Comments: 94 pages

    Journal ref: Fingscheidt, T., Gottschalk, H., Houben, S. (eds) Deep Neural Networks and Data for Automated Driving, Springer, Cham (2022)