University of Tubingen
Excessive Invariance Causes Adversarial Vulnerability
Uses bijective networks to identify large subspaces of invariance-based vulnerability and introduces the independence cross-entropy loss which partially alleviates it.
ImageNet-trained CNNs are biased towards texture; increasing shape bias improves accuracy and robustness
Evaluating object recognition performance of humans and CNNs on images with varying levels of shape and texture cues reveals contrasting biases, which can be partially alleviated by training CNNs with stylized images.