Adversarial sample dynamic generation method, device, electronic device and storage medium

An adversarial sample, dynamic generation technology, applied in the field of artificial intelligence, can solve the problems of poor flexibility, affecting the attack success rate, and unable to adjust the disturbance pattern in real time, so as to improve the matching degree, avoid unknown losses, and improve the attack success rate.

Active Publication Date: 2022-08-02
BEIJING REALAI TECH CO LTD
View PDF0 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0004] However, due to the color limitation of the printer, it is impossible to completely restore the perturbation pattern in the digital world, which will affect the success rate of the attack, and the above attack method cannot adjust the perturbation pattern in real time during the attack process, which has poor flexibility.

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Adversarial sample dynamic generation method, device, electronic device and storage medium
  • Adversarial sample dynamic generation method, device, electronic device and storage medium
  • Adversarial sample dynamic generation method, device, electronic device and storage medium

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0034] Embodiments of the present application will be described in more detail below with reference to the accompanying drawings. While certain embodiments of the present application are shown in the drawings, it is to be understood that the present application may be embodied in various forms and should not be construed as limited to the embodiments set forth herein, but rather are provided for the purpose of A more thorough and complete understanding of this application. It should be understood that the drawings and embodiments of the present application are only used for exemplary purposes, and are not used to limit the protection scope of the present application.

[0035] It should be understood that the various steps described in the method embodiments of the present application may be performed in different orders and / or in parallel. Furthermore, method embodiments may include additional steps and / or omit performing the illustrated steps. The scope of this application ...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The present application relates to a method, device, electronic device and storage medium for dynamically generating adversarial samples. The method includes: acquiring a first face image of a first user in real time; performing target detection and tracking on the first face image, generating a candidate frame for marking the face in the first face image; adjusting the target confrontation pattern projected on the holographic film based on the candidate frame to generate a target disturbance image; acquiring a target confrontation sample, the target confrontation A sample includes the first face image and the target perturbation image. The present application can realize the conversion of the confrontation disturbance image of the digital world displayed in the electronic device into the real physical world by means of holographic imaging, without the need to print out the confrontation disturbance image, which is beneficial to improve the attack success rate of the physical world confrontation sample, and It can realize the corresponding adjustment of the confrontation pattern with the adjustment of the face, and improve the matching degree between the confrontation pattern and the face in the obtained target confrontation sample.

Description

technical field [0001] The present application relates to the technical field of artificial intelligence, and in particular, to a method, device, electronic device and storage medium for dynamic generation of adversarial samples. Background technique [0002] Adversarial example physical world attack studies the problem of how to construct adversarial examples in the real physical world when deploying deep learning models in the real physical world. [0003] At present, the physical world attack methods disclosed in the field of attack and defense of adversarial samples need to print specific forms of physical confrontation disturbance patterns (such as masks, glasses, 3D masks, etc.) when applied in real scenarios to transfer the disturbance patterns from the digital world to the physical world. . [0004] However, because the printer is limited by color, it cannot fully restore the perturbation pattern in the digital world, which will affect the success rate of the attack...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Patents(China)
IPC IPC(8): G06V40/16G06N20/00
CPCG06N20/00
Inventor 不公告发明人
Owner BEIJING REALAI TECH CO LTD
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products