Detection as Regression: Certified Object Detection by Median Smoothing

07/07/2020
by   Ping-Yeh Chiang, et al.
0

Despite the vulnerability of object detectors to adversarial attacks, very few defenses are known to date. While adversarial training can improve the empirical robustness of image classifiers, a direct extension to object detection is very expensive. This work is motivated by recent progress on certified classification by randomized smoothing. We start by presenting a reduction from object detection to a regression problem. Then, to enable certified regression, where standard mean smoothing fails, we propose median smoothing, which is of independent interest. We obtain the first model-agnostic, training-free, and certified defense for object detection against ℓ_2-bounded attacks.

READ FULL TEXT

Please sign up or login with your details

Forgot password? Click here to reset