Pith. sign in

REVIEW 2 cited by

Robustness properties of Facebook's ResNeXt WSL models

Not yet reviewed by Pith; the record is open.

This paper has not been read by Pith yet. Machine review is queued; the pith claim, tier, and objections will appear here once it completes.

SPECIMEN: schema-true, not a live event

T0 review · schema-true

One-sentence machine reading of the paper's core claim.

pith:XXXXXXXX · record.json · timestamp

arxiv 1907.07640 v5 pith:C3NS4BPN submitted 2019-07-17 cs.CV cs.LGcs.NEstat.ML

classification cs.CVcs.LGcs.NEstat.ML
keywords modelsresnextrobustnessachieveadversarialimageimagenet-aimagenet-c
verification ladder T0 review T1 audit T2 compute T3 formal
0 comments
read the original abstract

We investigate the robustness properties of ResNeXt class image recognition models trained with billion scale weakly supervised data (ResNeXt WSL models). These models, recently made public by Facebook AI, were trained with ~1B images from Instagram and fine-tuned on ImageNet. We show that these models display an unprecedented degree of robustness against common image corruptions and perturbations, as measured by the ImageNet-C and ImageNet-P benchmarks. They also achieve substantially improved accuracies on the recently introduced "natural adversarial examples" benchmark (ImageNet-A). The largest of the released models, in particular, achieves state-of-the-art results on ImageNet-C, ImageNet-P, and ImageNet-A by a large margin. The gains on ImageNet-C, ImageNet-P, and ImageNet-A far outpace the gains on ImageNet validation accuracy, suggesting the former as more useful benchmarks to measure further progress in image recognition. Remarkably, the ResNeXt WSL models even achieve a limited degree of adversarial robustness against state-of-the-art white-box attacks (10-step PGD attacks). However, in contrast to adversarially trained models, the robustness of the ResNeXt WSL models rapidly declines with the number of PGD steps, suggesting that these models do not achieve genuine adversarial robustness. Visualization of the learned features also confirms this conclusion. Finally, we show that although the ResNeXt WSL models are more shape-biased than comparable ImageNet-trained models in a shape-texture cue conflict experiment, they still remain much more texture-biased than humans, suggesting that they share some of the underlying characteristics of ImageNet-trained models that make this benchmark challenging.

Discussion (0). Sign in to comment.

Forward citations

Cited by 2 Pith papers

Reviewed papers in the Pith corpus that reference this work. Sorted by Pith novelty score.

  1. Decoupling Stability and Plasticity for Multi-Modal Test-Time Adaptation

    cs.CV 2026-02 unverdicted novelty 6.0 of 10

    DASP decouples each modality adapter into stable and plastic parts and uses asymmetric updates—plastic for biased modalities, regularized stable for unbiased ones—to balance adaptation and knowledge preservation.

  2. Adapt in the Wild: Test-Time Entropy Minimization with Sharpness and Feature Regularization

    cs.LG 2025-09 conditional novelty 6.0 of 10

    Test-time adaptation is stabilized by filtering unreliable samples, seeking flat entropy minima, and applying redundancy and inequity regularizers to pseudo-labeled class centroids.

Pith tools