Skip to main content

Showing 1–11 of 11 results for author: Karjauv, A

  1. arXiv:2407.06059  [pdf, other

    cs.CV

    LaFAM: Unsupervised Feature Attribution with Label-free Activation Maps

    Authors: Aray Karjauv, Sahin Albayrak

    Abstract: Convolutional Neural Networks (CNNs) are known for their ability to learn hierarchical structures, naturally developing detectors for objects, and semantic concepts within their deeper layers. Activation maps (AMs) reveal these saliency regions, which are crucial for many Explainable AI (XAI) methods. However, the direct exploitation of raw AMs in CNNs for feature attribution remains underexplored… ▽ More

    Submitted 9 July, 2024; v1 submitted 8 July, 2024; originally announced July 2024.

  2. arXiv:2401.05735  [pdf, other

    cs.CV cs.LG

    Object-Centric Diffusion for Efficient Video Editing

    Authors: Kumara Kahatapitiya, Adil Karjauv, Davide Abati, Fatih Porikli, Yuki M. Asano, Amirhossein Habibian

    Abstract: This paper aims to accelerate video stream processing, such as object detection and semantic segmentation, by leveraging the temporal redundancies that exist between video frames. Instead of propagating and warping features using motion alignment, such as optical flow, we propose a novel knowledge distillation schema coined as Delta Distillation. In our proposal, the student learns the variations… ▽ More

    Submitted 15 July, 2024; v1 submitted 11 January, 2024; originally announced January 2024.

    Comments: ECCV24

  3. arXiv:2204.14226  [pdf, other

    eess.IV cs.AI cs.CV cs.LG physics.med-ph

    Recommendations on test datasets for evaluating AI solutions in pathology

    Authors: André Homeyer, Christian Geißler, Lars Ole Schwen, Falk Zakrzewski, Theodore Evans, Klaus Strohmenger, Max Westphal, Roman David Bülow, Michaela Kargl, Aray Karjauv, Isidre Munné-Bertran, Carl Orge Retzlaff, Adrià Romero-López, Tomasz Sołtysiński, Markus Plass, Rita Carvalho, Peter Steinbach, Yu-Chia Lan, Nassim Bouteldja, David Haber, Mateo Rojas-Carulla, Alireza Vafaei Sadr, Matthias Kraft, Daniel Krüger, Rutger Fick , et al. (5 additional authors not shown)

    Abstract: Artificial intelligence (AI) solutions that automatically extract information from digital histology images have shown great promise for improving pathological diagnosis. Prior to routine use, it is important to evaluate their predictive performance and obtain regulatory approval. This assessment requires appropriate test datasets. However, compiling such datasets is challenging and specific recom… ▽ More

    Submitted 21 April, 2022; originally announced April 2022.

    Journal ref: Mod Pathol (2022)

  4. arXiv:2204.00089  [pdf, other

    cs.LG cs.AI cs.CR cs.CV

    Investigating Top-$k$ White-Box and Transferable Black-box Attack

    Authors: Chaoning Zhang, Philipp Benz, Adil Karjauv, Jae Won Cho, Kang Zhang, In So Kweon

    Abstract: Existing works have identified the limitation of top-$1$ attack success rate (ASR) as a metric to evaluate the attack strength but exclusively investigated it in the white-box setting, while our work extends it to a more practical black-box setting: transferable attack. It is widely reported that stronger I-FGSM transfers worse than simple FGSM, leading to a popular belief that transferability is… ▽ More

    Submitted 30 March, 2022; originally announced April 2022.

    Comments: Accepted by CVPR2022

  5. arXiv:2110.02797  [pdf, other

    cs.CV cs.CR cs.LG

    Adversarial Robustness Comparison of Vision Transformer and MLP-Mixer to CNNs

    Authors: Philipp Benz, Soomin Ham, Chaoning Zhang, Adil Karjauv, In So Kweon

    Abstract: Convolutional Neural Networks (CNNs) have become the de facto gold standard in computer vision applications in the past years. Recently, however, new model architectures have been proposed challenging the status quo. The Vision Transformer (ViT) relies solely on attention modules, while the MLP-Mixer architecture substitutes the self-attention modules with Multi-Layer Perceptrons (MLPs). Despite t… ▽ More

    Submitted 11 October, 2021; v1 submitted 6 October, 2021; originally announced October 2021.

    Comments: Code: https://github.com/phibenz/robustness_comparison_vit_mlp-mixer_cnn

  6. arXiv:2104.03000  [pdf, other

    cs.LG cs.CV

    Universal Adversarial Training with Class-Wise Perturbations

    Authors: Philipp Benz, Chaoning Zhang, Adil Karjauv, In So Kweon

    Abstract: Despite their overwhelming success on a wide range of applications, convolutional neural networks (CNNs) are widely recognized to be vulnerable to adversarial examples. This intriguing phenomenon led to a competition between adversarial attacks and defense techniques. So far, adversarial training is the most widely used method for defending against adversarial attacks. It has also been extended to… ▽ More

    Submitted 7 April, 2021; originally announced April 2021.

    Comments: Accepted to ICME 2021

  7. A Survey On Universal Adversarial Attack

    Authors: Chaoning Zhang, Philipp Benz, Chenguo Lin, Adil Karjauv, Jing Wu, In So Kweon

    Abstract: The intriguing phenomenon of adversarial examples has attracted significant attention in machine learning and what might be more surprising to the community is the existence of universal adversarial perturbations (UAPs), i.e. a single perturbation to fool the target DNN for most images. With the focus on UAP against deep classifiers, this survey summarizes the recent progress on universal adversar… ▽ More

    Submitted 4 January, 2022; v1 submitted 2 March, 2021; originally announced March 2021.

    Comments: Accepted by IJCAI 2021, survey track: https://www.ijcai.org/proceedings/2021/635

    Journal ref: International Joint Conferences on Artificial Intelligence (IJCAI) 2021, survey track

  8. arXiv:2102.06479  [pdf, other

    cs.LG cs.CV

    Universal Adversarial Perturbations Through the Lens of Deep Steganography: Towards A Fourier Perspective

    Authors: Chaoning Zhang, Philipp Benz, Adil Karjauv, In So Kweon

    Abstract: The booming interest in adversarial attacks stems from a misalignment between human vision and a deep neural network (DNN), i.e. a human imperceptible perturbation fools the DNN. Moreover, a single perturbation, often called universal adversarial perturbation (UAP), can be generated to fool the DNN for most images. A similar misalignment phenomenon has recently also been observed in the deep stega… ▽ More

    Submitted 12 February, 2021; originally announced February 2021.

    Comments: Accepted to AAAI 2021

  9. arXiv:2101.00973  [pdf, other

    eess.IV cs.CR cs.CV cs.LG

    Towards Robust Data Hiding Against (JPEG) Compression: A Pseudo-Differentiable Deep Learning Approach

    Authors: Chaoning Zhang, Adil Karjauv, Philipp Benz, In So Kweon

    Abstract: Data hiding is one widely used approach for protecting authentication and ownership. Most multimedia content like images and videos are transmitted or saved in the compressed form. This kind of lossy compression, such as JPEG, can destroy the hidden data, which raises the need of robust data hiding. It is still an open challenge to achieve the goal of data hiding that can be against these compress… ▽ More

    Submitted 30 December, 2020; originally announced January 2021.

  10. arXiv:2010.13365  [pdf, other

    cs.LG cs.CV

    Robustness May Be at Odds with Fairness: An Empirical Study on Class-wise Accuracy

    Authors: Philipp Benz, Chaoning Zhang, Adil Karjauv, In So Kweon

    Abstract: Convolutional neural networks (CNNs) have made significant advancement, however, they are widely known to be vulnerable to adversarial attacks. Adversarial training is the most widely used technique for improving adversarial robustness to strong white-box attacks. Prior works have been evaluating and improving the model average robustness without class-wise evaluation. The average evaluation alone… ▽ More

    Submitted 10 October, 2021; v1 submitted 26 October, 2020; originally announced October 2020.

  11. arXiv:2010.03630  [pdf, other

    cs.CV

    Revisiting Batch Normalization for Improving Corruption Robustness

    Authors: Philipp Benz, Chaoning Zhang, Adil Karjauv, In So Kweon

    Abstract: The performance of DNNs trained on clean images has been shown to decrease when the test images have common corruptions. In this work, we interpret corruption robustness as a domain shift and propose to rectify batch normalization (BN) statistics for improving model robustness. This is motivated by perceiving the shift from the clean domain to the corruption domain as a style shift that is represe… ▽ More

    Submitted 28 January, 2021; v1 submitted 7 October, 2020; originally announced October 2020.

    Comments: Accepted at WACV 2021