Papers › A Person Re-identification Data Augmentation Method with Adversarial Defense Effect

A Person Re-identification Data Augmentation Method with Adversarial Defense Effect

21 Jan 2021arXiv:2101.08783archive 2025-07-28

Yunpeng Gong, Zhiyong Zeng, Liwen Chen, Yifan Luo, Bin Weng, Feng Ye

The security of the Person Re-identification(ReID) model plays a decisive role in the application of ReID. However, deep neural networks have been shown to be vulnerable, and adding undetectable adversarial perturbations to clean images can trick deep neural networks that perform well in clean images. We propose a ReID multi-modal data augmentation method with adversarial defense effect: 1) Grayscale Patch Replacement, it consists of Local Grayscale Patch Replacement(LGPR) and Global Grayscale Patch Replacement(GGPR). This method can not only improve the accuracy of the model, but also help the model defend against adversarial examples; 2) Multi-Modal Defense, it integrates three homogeneous modal images of visible, grayscale and sketch, and further strengthens the defense ability of the model. These methods fuse different modalities of homogeneous images to enrich the input sample variety, the variaty of samples will reduce the over-fitting of the ReID model to color variations and make the adversarial space of the dataset that the attack method can find difficult to align, thus the accuracy of model is improved, and the attack effect is greatly reduced. The more modal homogeneous images are fused, the stronger the defense capabilities is . The proposed method performs well on multiple datasets, and successfully defends the attack of MS-SSIM proposed by CVPR2020 against ReID [10], and increases the accuracy by 467 times(0.2% to 93.3%).The code is available at https://github.com/finger-monkey/ReID_Adversarial_Defense.

PaperPDFCode

Code

finger-monkey/ReID_Adversarial_Defense officialmentioned in papermentioned on GitHubpytorch report
finger-monkey/Data-Augmentation mentioned on GitHubpytorch report

Repository list and official/mentioned flags are the archive's, frozen 2025-07-28. Reachability, where shown, is from one Syntology probe window (2026-09-16 to 2026-09-18); repositories not probed show nothing. GitHub stars are not tracked.

Code Syntology ran Syntology

Not run by Syntology. Nothing on this page verifies that the listed code works.

Tasks

Adversarial DefenseData AugmentationMS-SSIMPerson Re-IdentificationSSIM

Results from the paper archive 2025-07-28

TaskDatasetModelMetricValueRank at snapshotLeaderboardReport
Person Re-Identification Market-1501-C F-LGPR Rank-1 29.35 #17 of 22 Archive leaderboard report
Person Re-Identification Market-1501-C F-LGPR mAP 9.08 #17 of 22 Archive leaderboard report
Person Re-Identification Market-1501-C F-LGPR mINP 0.23 #17 of 22 Archive leaderboard report
Person Re-Identification Market-1501-C LGPR Rank-1 27.72 #19 of 22 Archive leaderboard report
Person Re-Identification Market-1501-C LGPR mAP 8.26 #19 of 22 Archive leaderboard report
Person Re-Identification Market-1501-C LGPR mINP 0.24 #19 of 22 Archive leaderboard report

Ranks are positions in the archive's leaderboards as they stood at the 2025-07-28 snapshot. Results published since then are not among these rows, so a rank here is not a current standing.

Report a problem or propose a change · a person checks every report against the paper or source before anything changes; decisions are listed on /corrections