Prototype-supervised Adversarial Network for Targeted Attack of Deep Hashing

被引:33
|
作者
Wang, Xunguang [1 ]
Zhang, Zheng [1 ,2 ]
Wu, Baoyuan [3 ,4 ]
Shen, Fumin [5 ,6 ]
Lu, Guangming [1 ]
机构
[1] Harbin Inst Technol, Shenzhen, Peoples R China
[2] Peng Cheng Lab, Shenzhen, Peoples R China
[3] Chinese Univ Hong Kong, Sch Data Sci, Shenzhen, Peoples R China
[4] Shenzhen Res Inst Big Data, Secure Comp Lab Big Data, Shenzhen, Peoples R China
[5] Univ Elect Sci & Technol China, Chengdu, Peoples R China
[6] Koala Uran Tech, Chengdu, Peoples R China
基金
中国国家自然科学基金;
关键词
IMAGE RETRIEVAL;
D O I
10.1109/CVPR46437.2021.01609
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Due to its powerful capability of representation learning and high-efficiency computation, deep hashing has made significant progress in large-scale image retrieval. However, deep hashing networks are vulnerable to adversarial examples, which is a practical secure problem but seldom studied in hashing-based retrieval field. In this paper, we propose a novel prototype-supervised adversarial network (ProS-GAN), which formulates a flexible generative architecture for efficient and effective targeted hashing attack. To the best of our knowledge, this is the first generation-based method to attack deep hashing networks. Generally, our proposed framework consists of three parts, i.e., a PrototypeNet, a generator and a discriminator. Specifically, the designed PrototypeNet embeds the target label into the semantic representation and learns the prototype code as the category-level representative of the target label. Moreover, the semantic representation and the original image are jointly fed into the generator for flexible targeted attack. Particularly, the prototype code is adopted to supervise the generator to construct the targeted adversarial example by minimizing the Hamming distance between the hash code of the adversarial example and the prototype code. Furthermore, the generator is against the discriminator to simultaneously encourage the adversarial examples visually realistic and the semantic representation informative. Extensive experiments verify that the proposed framework can efficiently produce adversarial examples with better targeted attack performance and transferability over state-of-the-art targeted attack methods of deep hashing.
引用
收藏
页码:16352 / 16361
页数:10
相关论文
共 50 条
  • [1] Targeted Attack of Deep Hashing Via Prototype-Supervised Adversarial Networks
    Zhang, Zheng
    Wang, Xunguang
    Lu, Guangming
    Shen, Fumin
    Zhu, Lei
    IEEE TRANSACTIONS ON MULTIMEDIA, 2021, 24 : 3392 - 3404
  • [2] Targeted Adversarial Attack Against Deep Cross-Modal Hashing Retrieval
    Wang, Tianshi
    Zhu, Lei
    Zhang, Zheng
    Zhang, Huaxiang
    Han, Junwei
    IEEE TRANSACTIONS ON CIRCUITS AND SYSTEMS FOR VIDEO TECHNOLOGY, 2023, 33 (10) : 6159 - 6172
  • [3] Targeted Attack and Defense for Deep Hashing
    Wang, Xunguang
    Zhang, Zheng
    Lu, Guangming
    Xu, Yong
    SIGIR '21 - PROCEEDINGS OF THE 44TH INTERNATIONAL ACM SIGIR CONFERENCE ON RESEARCH AND DEVELOPMENT IN INFORMATION RETRIEVAL, 2021, : 2298 - 2302
  • [4] All Points Guided Adversarial Generator for Targeted Attack Against Deep Hashing Retrieval
    Tu, Rongxin
    Kang, Xiangui
    Tan, Chee Wei
    Chi, Chi-Hung
    Lam, Kwok-Yan
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2025, 20 : 1695 - 1709
  • [5] Supervised deep hashing with a joint deep network
    Chen, Yaxiong
    Lu, Xiaoqiang
    Li, Xuelong
    PATTERN RECOGNITION, 2020, 105
  • [6] Supervised deep hashing with a joint deep network
    Chen, Yaxiong
    Lu, Xiaoqiang
    Li, Xuelong
    Lu, Xiaoqiang (luxiaoqiang@opt.ac.cn), 1600, Elsevier Ltd (105):
  • [7] AdvHash: Set-to-set Targeted Attack on Deep Hashing with One Single Adversarial Patch
    Hu, Shengshan
    Zhang, Yechao
    Liu, Xiaogeng
    Zhang, Leo Yu
    Li, Minghui
    Jin, Hai
    PROCEEDINGS OF THE 29TH ACM INTERNATIONAL CONFERENCE ON MULTIMEDIA, MM 2021, 2021, : 2335 - 2343
  • [8] Unsupervised Deep Generative Adversarial Hashing Network
    Dizaji, Kamran Ghasedi
    Zheng, Feng
    Nourabadi, Najmeh Sadoughi
    Yang, Yanhua
    Deng, Cheng
    Huang, Heng
    2018 IEEE/CVF CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION (CVPR), 2018, : 3664 - 3673
  • [9] A Smart Adversarial Attack on Deep Hashing Based Image Retrieval
    Lu, Junda
    Chen, Mingyang
    Sun, Yifang
    Wang, Wei
    Wang, Yi
    Yang, Xiaochun
    PROCEEDINGS OF THE 2021 INTERNATIONAL CONFERENCE ON MULTIMEDIA RETRIEVAL (ICMR '21), 2021, : 227 - 235
  • [10] Deep supervised hashing network with integrated regularisation
    Liao, Jianxin
    Li, Baoran
    Yang, Di
    Wang, Jingyu
    Qi, Qi
    Wang, Jing
    IET IMAGE PROCESSING, 2019, 13 (12) : 2143 - 2151