Out of the Black Box: Properties of deep neural networks and their applications

08/10/2018
by   Nizar Ouarti, et al.
0

Deep neural networks are powerful machine learning approaches that have exhibited excellent results on many classification tasks. However, they are considered as black boxes and some of their properties remain to be formalized. In the context of image recognition, it is still an arduous task to understand why an image is recognized or not. In this study, we formalize some properties shared by eight state-of-the-art deep neural networks in order to grasp the principles allowing a given deep neural network to classify an image. Our results, tested on these eight networks, show that an image can be sub-divided into several regions (patches) responding at different degrees of probability (local property). With the same patch, some locations in the image can answer two (or three) orders of magnitude higher than other locations (spatial property). Some locations are activators and others inhibitors (activation-inhibition property). The repetition of the same patch can increase (or decrease) the probability of recognition of an object (cumulative property). Furthermore, we propose a new approach called Deepception that exploits these properties to deceive a deep neural network. We obtain for the VGG-VDD-19 neural network a fooling ratio of 88%. Thanks to our "Psychophysics" approach, no prior knowledge on the networks architectures is required.

READ FULL TEXT
research
12/08/2013

Scalable Object Detection using Deep Neural Networks

Deep convolutional neural networks have recently achieved state-of-the-a...
research
09/19/2017

Verifying Properties of Binarized Deep Neural Networks

Understanding properties of deep neural networks is an important challen...
research
09/24/2020

Theoretical Analysis of the Advantage of Deepening Neural Networks

We propose two new criteria to understand the advantage of deepening neu...
research
04/09/2022

Knowledge-Free Black-Box Watermark and Ownership Proof for Image Classification Neural Networks

Watermarking has become a plausible candidate for ownership verification...
research
02/13/2018

Turning Your Weakness Into a Strength: Watermarking Deep Neural Networks by Backdooring

Deep Neural Networks have recently gained lots of success after enabling...
research
08/13/2018

iNNvestigate neural networks!

In recent years, deep neural networks have revolutionized many applicati...
research
05/09/2023

Metric Space Magnitude and Generalisation in Neural Networks

Deep learning models have seen significant successes in numerous applica...

Please sign up or login with your details

Forgot password? Click here to reset