Print Email Facebook Twitter Adversarial Attack and Training on Deep Learning-based Gaze estimation Title Adversarial Attack and Training on Deep Learning-based Gaze estimation Author feng, Clio (TU Delft Electrical Engineering, Mathematics and Computer Science) Contributor Lan, G. (mentor) Du, L. (mentor) Zhang, X. (graduation committee) Degree granting institution Delft University of Technology Programme Computer Science and Engineering Project CSE3000 Research Project Date 2023-06-28 Abstract Recently, while gaze estimation has gained a substantial improvement by using deep learning models, research had shown that neural networks are weak against adversarial attacks. Despite researchers has been done numerous on adversarial training, there are little to no studies on adversarial training in gaze estimation. Therefore, the objective of this project is to investigate how these adversarial samples affect the gaze estimation’s performance and how the adversarial training elevates the effect of these adversarial attacks. For projected gradient descent adversarial attack, the result shows that the bound of the final noise, the step size and the number of steps toward the gradient, and the randomized noise initiation are all able to worsen the baseline performance to varying degrees. Further, the performance reveals that while projected gradient descent adversarial training can defend against certain adversarial attacks, its performance is not converging to the baseline. In general, the performance of adversarial training on gaze estimation could be influenced by data augmentation, loss function, model capacity, and the type of adversarial training. Subject Gaze EstimationNeural NeworkAdversarial attacksAdversarial Machine Learning To reference this document use: http://resolver.tudelft.nl/uuid:2f86d1d9-791d-4cac-88d7-cb4443167334 Part of collection Student theses Document type bachelor thesis Rights © 2023 Clio feng Files PDF CSE3000_Final_Paper.pdf 17.71 MB Close viewer /islandora/object/uuid:2f86d1d9-791d-4cac-88d7-cb4443167334/datastream/OBJ/view