• 文献检索
  • 文档翻译
  • 深度研究
  • 学术资讯
  • Suppr Zotero 插件Zotero 插件
  • 邀请有礼
  • 套餐&价格
  • 历史记录
应用&插件
Suppr Zotero 插件Zotero 插件浏览器插件Mac 客户端Windows 客户端微信小程序
定价
高级版会员购买积分包购买API积分包
服务
文献检索文档翻译深度研究API 文档MCP 服务
关于我们
关于 Suppr公司介绍联系我们用户协议隐私条款
关注我们

Suppr 超能文献

核心技术专利:CN118964589B侵权必究
粤ICP备2023148730 号-1Suppr @ 2026

文献检索

告别复杂PubMed语法,用中文像聊天一样搜索,搜遍4000万医学文献。AI智能推荐,让科研检索更轻松。

立即免费搜索

文件翻译

保留排版,准确专业,支持PDF/Word/PPT等文件格式,支持 12+语言互译。

免费翻译文档

深度研究

AI帮你快速写综述,25分钟生成高质量综述,智能提取关键信息,辅助科研写作。

立即免费体验

DAMAD:数据库、攻击与模型无关的对抗扰动检测器。

DAMAD: Database, Attack, and Model Agnostic Adversarial Perturbation Detector.

作者信息

Agarwal Akshay, Goswami Gaurav, Vatsa Mayank, Singh Richa, Ratha Nalini K

出版信息

IEEE Trans Neural Netw Learn Syst. 2022 Aug;33(8):3277-3289. doi: 10.1109/TNNLS.2021.3051529. Epub 2022 Aug 3.

DOI:10.1109/TNNLS.2021.3051529
PMID:33710959
Abstract

Adversarial perturbations have demonstrated the vulnerabilities of deep learning algorithms to adversarial attacks. Existing adversary detection algorithms attempt to detect the singularities; however, they are in general, loss-function, database, or model dependent. To mitigate this limitation, we propose DAMAD-a generalized perturbation detection algorithm which is agnostic to model architecture, training data set, and loss function used during training. The proposed adversarial perturbation detection algorithm is based on the fusion of autoencoder embedding and statistical texture features extracted from convolutional neural networks. The performance of DAMAD is evaluated on the challenging scenarios of cross-database, cross-attack, and cross-architecture training and testing along with traditional evaluation of testing on the same database with known attack and model. Comparison with state-of-the-art perturbation detection algorithms showcase the effectiveness of the proposed algorithm on six databases: ImageNet, CIFAR-10, Multi-PIE, MEDS, point and shoot challenge (PaSC), and MNIST. Performance evaluation with nearly a quarter of a million adversarial and original images and comparison with recent algorithms show the effectiveness of the proposed algorithm.

摘要

对抗性扰动已证明深度学习算法易受对抗性攻击。现有的对抗检测算法试图检测这些异常情况;然而,它们通常依赖于损失函数、数据库或模型。为了缓解这一限制,我们提出了DAMAD——一种广义扰动检测算法,它与模型架构、训练数据集以及训练期间使用的损失函数无关。所提出的对抗性扰动检测算法基于自动编码器嵌入与从卷积神经网络中提取的统计纹理特征的融合。DAMAD的性能在跨数据库、跨攻击和跨架构训练与测试的具有挑战性的场景中进行评估,同时还包括在具有已知攻击和模型的同一数据库上进行测试的传统评估。与现有最先进的扰动检测算法的比较表明,该算法在六个数据库上是有效的:ImageNet、CIFAR-10、Multi-PIE、MEDS、即拍即得挑战(PaSC)和MNIST。使用近25万张对抗性图像和原始图像进行的性能评估以及与最近算法的比较表明了该算法的有效性。

相似文献

1
DAMAD: Database, Attack, and Model Agnostic Adversarial Perturbation Detector.DAMAD:数据库、攻击与模型无关的对抗扰动检测器。
IEEE Trans Neural Netw Learn Syst. 2022 Aug;33(8):3277-3289. doi: 10.1109/TNNLS.2021.3051529. Epub 2022 Aug 3.
2
Crafting Adversarial Perturbations via Transformed Image Component Swapping.通过变换图像组件交换来生成对抗性扰动
IEEE Trans Image Process. 2022;31:7338-7349. doi: 10.1109/TIP.2022.3204206. Epub 2022 Nov 30.
3
Enhancing robustness in video recognition models: Sparse adversarial attacks and beyond.增强视频识别模型的鲁棒性:稀疏对抗攻击及其他。
Neural Netw. 2024 Mar;171:127-143. doi: 10.1016/j.neunet.2023.11.056. Epub 2023 Nov 25.
4
Adv-BDPM: Adversarial attack based on Boundary Diffusion Probability Model.Adv-BDPM:基于边界扩散概率模型的对抗攻击。
Neural Netw. 2023 Oct;167:730-740. doi: 10.1016/j.neunet.2023.08.048. Epub 2023 Sep 9.
5
ABCAttack: A Gradient-Free Optimization Black-Box Attack for Fooling Deep Image Classifiers.ABC攻击:一种用于欺骗深度图像分类器的无梯度优化黑盒攻击。
Entropy (Basel). 2022 Mar 15;24(3):412. doi: 10.3390/e24030412.
6
Defense against adversarial attacks based on color space transformation.基于颜色空间变换的对抗攻击防御。
Neural Netw. 2024 May;173:106176. doi: 10.1016/j.neunet.2024.106176. Epub 2024 Feb 14.
7
A Distributed Black-Box Adversarial Attack Based on Multi-Group Particle Swarm Optimization.基于多群组粒子群优化的分布式黑盒对抗攻击。
Sensors (Basel). 2020 Dec 14;20(24):7158. doi: 10.3390/s20247158.
8
New Adversarial Image Detection Based on Sentiment Analysis.基于情感分析的新型对抗性图像检测
IEEE Trans Neural Netw Learn Syst. 2024 Oct;35(10):14060-14074. doi: 10.1109/TNNLS.2023.3274538. Epub 2024 Oct 7.
9
Adversarial Robustness of Deep Reinforcement Learning Based Dynamic Recommender Systems.基于深度强化学习的动态推荐系统的对抗鲁棒性
Front Big Data. 2022 May 3;5:822783. doi: 10.3389/fdata.2022.822783. eCollection 2022.
10
Enhanced covertness class discriminative universal adversarial perturbations.增强型隐蔽类判别通用对抗扰动。
Neural Netw. 2023 Aug;165:516-526. doi: 10.1016/j.neunet.2023.06.006. Epub 2023 Jun 8.