{"id":"W2805329444","doi":"10.1109/mmsp.2018.8547128","title":"Adversarial Attacks on Face Detectors Using Neural Net Based Constrained Optimization","year":2018,"lang":"en","type":"preprint","venue":"","topic":"Adversarial Robustness in Machine Learning","field":"Computer Science","cited_by":22,"is_retracted":false,"has_abstract":true,"ca_institutions":"University of Toronto","funders":"","keywords":"Computer science; Adversarial system; Generator (circuit theory); Robustness (evolution); Artificial intelligence; Detector; Face (sociological concept); Scalability; Artificial neural network; Machine learning; Pattern recognition (psychology)","routes":{"ca_aff":true,"ca_fund":false,"ca_venue":false,"about_ca":false,"invisible_to_affiliation_only":false},"retraction":null,"screen":null,"direct_labels":[],"prediction":{"model_version":"metacan-v3-hybrid-931329e0061c","candidate_categories":[],"consensus_categories":[],"category_scores_codex":[0.001530384,0.00114061,0.0008056877,0.0005012813,0.0003526109,0.0006456738,0.001072523,0.001283095,0.002143074],"category_scores_gemma":[0.004588115,0.0004468164,0.0006801698,0.0002851172,0.001675366,0.001445398,0.001777368,0.002106215,0.0004609826],"about_ca_system_candidate":false,"about_ca_system_consensus":false,"about_ca_system_score_codex":0.001255692,"about_ca_system_score_gemma":0.0007570231,"about_ca_topic_candidate":false,"about_ca_topic_consensus":false,"about_ca_topic_score_codex":0.002468193,"about_ca_topic_score_gemma":0.002679621,"domain_scores_codex":[0.9990931,0.0002932017,0.00002867216,0.0001876337,0.0002818658,0.000115465],"domain_scores_gemma":[0.9984764,0.0009406596,0.0001466161,0.0002575,0.0001256351,0.00005302169],"domain_codex":null,"domain_gemma":null,"domain_candidate":null,"domain_consensus":null,"study_design_codex":"simulation_or_modeling","study_design_gemma":"simulation_or_modeling","study_design_scores_codex":[0.0001113039,0.00005568149,0.0005508778,0.00002979665,0.00004847787,0.00009413566,0.00002757217,0.9403465,0.00864111,0.01469258,0.001664669,0.03373727],"study_design_scores_gemma":[0.000004163331,0.00001581941,0.00005075286,0.000002298043,0.000001638624,0.0000151633,0.00000189315,0.9948933,0.001921671,0.002928908,0.0001614557,0.000002925724],"study_design_candidate":"simulation_or_modeling","study_design_consensus":"simulation_or_modeling","genre_codex":"methods","genre_gemma":"empirical","genre_scores_codex":[0.06503863,0.000233473,0.9278754,0.0005556041,0.0000562406,0.00007922758,0.00008375222,0.001460626,0.004617009],"genre_scores_gemma":[0.8296281,0.0001681905,0.1643409,0.0004763778,0.00004062187,0.0001131988,0.0001730819,0.0001960495,0.004863462],"genre_candidate":"empirical","genre_consensus":null,"teacher_disagreement_score":0.002468193,"threshold_uncertainty_score":0.009110689,"prediction_status":"machine_predicted_unvalidated"},"machine_scores":{"provisional":true,"baseline":true,"maturity_gate_passed":false,"score_opus":0.03387023193404728,"score_gpt":0.2984297830598281,"score_spread":0.2645595511257809,"validation_status":"score_only:v0-immature-baseline","note":"Baseline scores from an immature model (maturity gate not passed). Scores rank; they never assert a category."}}