Machine-learning-based image classifiers are vulnerable to "adversarial preturbations" where small, seemingly innocuous modifications to images (including very trivial ones) can totally confound them.
This 3D-printed sculpture of a turtle has been subjected to a tiny adversarial preturbation that reliably tricks InceptionV3 image classifier into thinking that it's a rifle. The preturbation is visually imperceptible, and a version that the human eye perceives as identical is correctly classified by InceptionV3 as a turtle.
The same research team has preturbed an image of an adorable kitty-cat so that InceptionV3 always mistakes it for guacamole.
Here is a 3D-printed turtle that is classified at every viewpoint as a “rifle” by Google’s InceptionV3 image classifier, whereas the unperturbed turtle is consistently classified as “turtle”.
We do this using a new algorithm for reliably producing adversarial examples that cause targeted misclassification under transformations like blur, rotation, zoom, or translation, and we use it to generate both 2D printouts and 3D models that fool a standard neural network at any angle.
Our process works for arbitrary 3D models - not just turtles! We also made a baseball that classifies as an espresso at every angle! The examples still fool the neural network when we put them in front of semantically relevant backgrounds; for example, you’d never see a rifle underwater, or an espresso in a baseball mitt.
Fooling Neural Networks in the Physical World with 3D Adversarial Objects
Russia’s communications regulator says it has blocked IP addresses owned by Google and Amazon because Moscow claims the internet addresses are used by the Telegram messaging service that was banned by Putin’s regime this week.
Steven Melendez discovered some public domain government documents in Google Books that the service wouldn't let him download because they had been misclassified as copyrighted; he filled in an online form and less than a week later, a human had reviewed the documents, agreed that they had been misclassified and removed all restrictions.
Public records requests have revealed that on at least four occasions, the Raleigh-Durham police obtained warrants forcing Google to reveal the identities of every mobile user within acres of a crime scene, sweeping up the personal information of thousands of people in a quest to locate a single perp.
Our world is a colorful one, and when it comes time to repaint the house or create a new design, many of us look to our surroundings for inspiration. However, matching colors from the outside world to our canvas isn’t the most precise process when we’re just eyeballing it. The Nix Pro Color Sensor removes the […]
You probably remember the Twisty Glass Blunt since we love to write about it. And you may also remember its little buddy, the Twisty Glass Mini. Well, today we’ve got a fun surprise that isn’t so little. Less isn’t always more, and on those days when you need to decompress with a good smoke, the Twisty XL […]
Another year, another iteration of Samsung’s Galaxy smartphone—except this time around Samsung sought to redefine what a smartphone can do completely. Boasting a 6.2″ Quad HD+ Super AMOLED (2960×1440) infinity display, and an elite 10nm 64-bit Octa-Core Processor with 6GB RAM, the S9+ is an absolute powerhouse with a price tag to match. However, you […]