• 文献检索
  • 文档翻译
  • 深度研究
  • 学术资讯
  • Suppr Zotero 插件Zotero 插件
  • 邀请有礼
  • 套餐&价格
  • 历史记录
应用&插件
Suppr Zotero 插件Zotero 插件浏览器插件Mac 客户端Windows 客户端微信小程序
定价
高级版会员购买积分包购买API积分包
服务
文献检索文档翻译深度研究API 文档MCP 服务
关于我们
关于 Suppr公司介绍联系我们用户协议隐私条款
关注我们

Suppr 超能文献

核心技术专利:CN118964589B侵权必究
粤ICP备2023148730 号-1Suppr @ 2026

文献检索

告别复杂PubMed语法,用中文像聊天一样搜索,搜遍4000万医学文献。AI智能推荐,让科研检索更轻松。

立即免费搜索

文件翻译

保留排版,准确专业,支持PDF/Word/PPT等文件格式,支持 12+语言互译。

免费翻译文档

深度研究

AI帮你快速写综述,25分钟生成高质量综述,智能提取关键信息,辅助科研写作。

立即免费体验

生成式扰动网络:针对脑机接口的通用对抗攻击

Generative Perturbation Network for Universal Adversarial Attacks on Brain-Computer Interfaces.

出版信息

IEEE J Biomed Health Inform. 2023 Nov;27(11):5622-5633. doi: 10.1109/JBHI.2023.3303494. Epub 2023 Nov 7.

DOI:10.1109/JBHI.2023.3303494
PMID:37556336
Abstract

Deep neural networks (DNNs) have successfully classified EEG-based brain-computer interface (BCI) systems. However, recent studies have found that well-designed input samples, known as adversarial examples, can easily fool well-performed deep neural networks model with minor perturbations undetectable by a human. This paper proposes an efficient generative model named generative perturbation network (GPN), which can generate universal adversarial examples with the same architecture for non-targeted and targeted attacks. Furthermore, the proposed model can be efficiently extended to conditionally or simultaneously generate perturbations for various targets and victim models. Our experimental evaluation demonstrates that perturbations generated by the proposed model outperform previous approaches for crafting signal-agnostic perturbations. We demonstrate that the extended network for signal-specific methods also significantly reduces generation time while performing similarly. The transferability across classification networks of the proposed method is superior to the other methods, which shows our perturbations' high level of generality.

摘要

深度神经网络(DNN)已经成功地对基于脑电图的脑机接口(BCI)系统进行了分类。然而,最近的研究发现,经过精心设计的输入样本,即对抗样本,只需进行微小的人类无法察觉的扰动,就可以轻易欺骗性能良好的深度神经网络模型。本文提出了一种名为生成式扰动网络(GPN)的高效生成模型,该模型可以使用相同的架构为非定向和定向攻击生成通用对抗样本。此外,所提出的模型可以有效地扩展为针对各种目标和受害模型条件或同时生成扰动。我们的实验评估表明,所提出模型生成的扰动在制作信号无关的扰动方面优于以前的方法。我们证明,针对信号特定方法的扩展网络在执行类似任务时也能显著减少生成时间。所提出方法在分类网络之间的可转移性优于其他方法,这表明我们的扰动具有高度的通用性。

相似文献

1
Generative Perturbation Network for Universal Adversarial Attacks on Brain-Computer Interfaces.生成式扰动网络:针对脑机接口的通用对抗攻击
IEEE J Biomed Health Inform. 2023 Nov;27(11):5622-5633. doi: 10.1109/JBHI.2023.3303494. Epub 2023 Nov 7.
2
Universal adversarial perturbations for CNN classifiers in EEG-based BCIs.基于 EEG 的脑机接口中 CNN 分类器的通用对抗扰动。
J Neural Eng. 2021 Jul 15;18(4). doi: 10.1088/1741-2552/ac0f4c.
3
On the Vulnerability of CNN Classifiers in EEG-Based BCIs.基于 EEG 的脑机接口中 CNN 分类器的脆弱性
IEEE Trans Neural Syst Rehabil Eng. 2019 May;27(5):814-825. doi: 10.1109/TNSRE.2019.2908955. Epub 2019 Apr 2.
4
Adversarial Patch Attacks on Deep-Learning-Based Face Recognition Systems Using Generative Adversarial Networks.基于生成对抗网络的深度学习人脸识别系统对抗性补丁攻击。
Sensors (Basel). 2023 Jan 11;23(2):853. doi: 10.3390/s23020853.
5
Remix: Towards the transferability of adversarial examples.对抗样本的可迁移性研究
Neural Netw. 2023 Jun;163:367-378. doi: 10.1016/j.neunet.2023.04.012. Epub 2023 Apr 18.
6
PSAT-GAN: Efficient Adversarial Attacks Against Holistic Scene Understanding.PSAT-GAN:高效对抗整体场景理解的对抗攻击。
IEEE Trans Image Process. 2021;30:7541-7553. doi: 10.1109/TIP.2021.3106807. Epub 2021 Sep 8.
7
Universal adversarial attacks on deep neural networks for medical image classification.针对医学图像分类的深度神经网络的通用对抗攻击。
BMC Med Imaging. 2021 Jan 7;21(1):9. doi: 10.1186/s12880-020-00530-y.
8
Boosting the transferability of adversarial examples via stochastic serial attack.通过随机串行攻击提升对抗样本的可转移性。
Neural Netw. 2022 Jun;150:58-67. doi: 10.1016/j.neunet.2022.02.025. Epub 2022 Mar 7.
9
A Domain Generative Graph Network for EEG-Based Emotion Recognition.基于脑电的情绪识别的领域生成图网络。
IEEE J Biomed Health Inform. 2023 May;27(5):2377-2386. doi: 10.1109/JBHI.2023.3242090. Epub 2023 May 4.
10
Extended Spatially Localized Perturbation GAN (eSLP-GAN) for Robust Adversarial Camouflage Patches.用于鲁棒对抗性伪装补丁的扩展空间局部化扰动生成对抗网络(eSLP-GAN)。
Sensors (Basel). 2021 Aug 6;21(16):5323. doi: 10.3390/s21165323.