arrow
返回

Adversarial Attack Using Sparse Representation of Feature Maps

delete2022-01-01
delete1
delete
OA
AI
M
Maham Jahangir *
F
Faisal Shafait
DOI:10.1109/ACCESS.2022.3222531delete
delete原文链接
delete原文求助
delete分享
delete收藏
摘要

摘要

En 中文
Deep neural networks can be fooled by small imperceptible perturbations called adversarial examples. Although these examples are carefully crafted, they involve two major concerns. In some cases, adversarial examples generated are much larger than minimal adversarial perturbations while in others the attack method involves an extensive number of iterations making it infeasible. Moreover, the sparse attacks are either too complex or are not sparse enough to achieve imperceptibility. Therefore, attacks designed should be fast and minimum in terms of $\ell _{2}$ -norm. In this research, we used a dictionary learning technique to generate sparse adversarial examples based on feature maps of target images. We present two novel algorithms to tune the dictionary learning process and feature map selection. The results on MNIST and Imagenet show our attack is better or competitive with the state-of-the-art methods. We also compared our method with sparse attacks recently introduced in literature. As a result, we have achieved comparable attack success rate when compared to the state-of-the-art with smaller $\ell _{2}$ -norm. We also tested the efficacy of our attack in the presence of defense mechanisms and none of the defenses were able to combat the effect of our proposed attack
Keyword:
Perturbation methods
Machine learning
Dictionaries
Neural networks
Iterative methods
Image coding
Convolutional neural networks
Adversarial machine learning
Sparse matrices
Adversarial attacks
dictionary learning
sparse representation

期刊

IEEE Access 封面图
IEEE Access
IF:
3.6
论文数:
9.8W
被引数:
29.4W

机构

N
national university of sciences & technology - pakistan
学者数:
7.8K
论文数: 6.6K
被引数: 6
引用论文

引用论文

Steganographic universal adversarial perturbations
err2020-07-01
err19
PREAI
errDin, Salah Ud; Akhtar, Naveed; Younis, Shahzad; Shafait, Faisal; Mansoor, Atif; Shafique, Muhammad
err分享
err收藏
err分享
err收藏
The Yellow Excitonic Series of Cu2O Revisited by Lyman Spectroscopy
err2005-05-15
err0
errOAAI
errTakeshi Tayagaki; Andre Mysyrowicz; Makoto Kuwata-Gonokami
err分享
err收藏
Causal Models
err2009-11-01
err0
errOAAI
errBeverly Levine
err分享
err收藏
学者 查看更多内容