Paper
15 July 2022 An adversarial example generation scheme for gait recognition
Changbao Li, Wenmin Li, Jinkou Ding
Author Affiliations +
Proceedings Volume 12258, International Conference on Neural Networks, Information, and Communication Engineering (NNICE 2022); 122580R (2022) https://doi.org/10.1117/12.2639315
Event: International Conference on Neural Networks, Information, and Communication Engineering (NNICE 2022), 2022, Qingdao, China
Abstract
Gait recognition is widely used due to its advantages of long-distance recognition, unnecessity of active participation of the recognized person, etc. In recent years, many gait recognition models based on deep neural networks have achieved relatively high accuracy. However, many studies have shown that deep neural networks are vulnerable to adversarial attacks, and the recognition of deep neural networks can be made wrong by the addition of small perturbance to the input samples. Therefore, it is very important to explore the robustness of neural networks for gait recognition. Since the structure and parameters of the gait recognition model are often difficult to obtain in practical applications, a half-white-box adversarial attack method based on GAN was proposed in thesis. The difference between the adversarial examples generated by using this method and the original examples is difficult to be distinguished by the naked eye. Through experiments, it is found that the input of adversarial examples has a large impact on the output of the gait recognition model. To make sure that the generated adversarial perturbance can be easily implemented in the physical environment, we changed the model structure and increased the input data based on the above method, and proposed a new method. In this method, the generator of GAN can generate adversarial perturbance in specific shapes. The experimental results show that even without knowing the network structure and parameters of the target model, the accuracy of the gait recognition model in the face of adversarial examples will decrease, indicating that there are problems with the robustness of even very advanced gait recognition models.
© (2022) COPYRIGHT Society of Photo-Optical Instrumentation Engineers (SPIE). Downloading of the abstract is permitted for personal use only.
Changbao Li, Wenmin Li, and Jinkou Ding "An adversarial example generation scheme for gait recognition", Proc. SPIE 12258, International Conference on Neural Networks, Information, and Communication Engineering (NNICE 2022), 122580R (15 July 2022); https://doi.org/10.1117/12.2639315
Advertisement
Advertisement
RIGHTS & PERMISSIONS
Get copyright permission  Get copyright permission on Copyright Marketplace
KEYWORDS
Gait analysis

Gallium nitride

Neural networks

Eye models

Target recognition

Data modeling

Eye

Back to Top