Self-Supervised Frontalization and Rotation Gan With Random Swap For Pose-invariant Face Recognition
Jiashu Liao, Victor Sanchez, Tanaya Guha
-
SPS
IEEE Members: $11.00
Non-members: $15.00Length: 00:13:47
Numerous researches on adversarial black-box attacks have proved that deep neural networks have certain insecurity. However, the current black-box attack methods still have shortages in incomplete utilization of query information. The newly proposed Simulator Attack based on meta-learning shows good performance in query-efficiency but still misses some hidden information. For this disadvantage, our research finds the usability of the feature layer output information in a simulator model for the first time. Then we propose an optimized Simulator Attack+ framework based on this discovery. By conducting experiments on the CIFAR-10 and CIFAR-100 datasets, results legibly show that Simulator Attack+ can further reduce the number of consuming queries to improve query-efficiency meanwhile maintaining attack effect. Our code is available at https://github.com/Rain117E/SimulatorAttackplus.