Please use this identifier to cite or link to this item: http://repository.iiitd.edu.in/xmlui/handle/123456789/1635
Title: Sinkhorn attacks
Authors: Chaudhuri, Dibyendu Roy
Subramanyam, A V (Advisor)
Keywords: Adversarial Attacks
Adversarial Defense
Entropic Regularized Optimal Transport
Issue Date: 1-Jul-2021
Publisher: IIIT-Delhi
Abstract: Adversarial attacks have been extensively investigated in the recent past. Quite interestingly, a majority of these attacks primarily work in the lp space. In this work, we propose a novel approach for generating adversarial samples using Wasserstein distance. Existing Wasserstein distance-based works generate adversarial samples using balanced optimal transport (OT). However, balanced OT requires input marginals to be of the same total probability masses these precluding its immediate application to images. Motivated by the recent unbalanced OT theory, we propose a UOT based adversarial threat model with relaxed marginal equality constraints. Our experiments on retrieval and classification tasks demonstrate significantly stronger attacks with better image quality as well as less computational overhead.
URI: http://repository.iiitd.edu.in/xmlui/handle/123456789/1635
Appears in Collections:Year-2021

Files in This Item:
File Description SizeFormat 
Sinkhorn_Attack_Dibyendu_Roy_Chaudhuri_MT19034 - Copy.pdf1.51 MBAdobe PDFView/Open


Items in DSpace are protected by copyright, with all rights reserved, unless otherwise indicated.