Improving the Transferability of Adversarial Samples through Automatically Learning Augmentation Strategies from Data

被引:0
|
作者
Xu, Ru-Zhi [1 ]
Lyu, Chang-Ran [1 ]
机构
[1] School of Control and Computer Engineering, North China Electric Power University, Beijing,102206, China
关键词
Reinforcement learning;
D O I
10.6633/IJNS.202311 25(6).09
中图分类号
学科分类号
摘要
The attackers cause the deep neural network (DNN) to misclassify the original image by adding perceptible perturbations, which brings security risks to deploying deep neural networks. Since the existing transfer-based attack algorithms overfit to the source model resulting in poor transferability of black-box attacks and data augmentation is one of the main methods to avoid overfitting the source model. We propose an auto-augmented transferable black-box attack method. Firstly, we set up a search space for data augmentation strategies, and then we use reinforcement learning to search for the best augmentation strategy automatically. We use the strategies to augment images that are used to compute gradients. Finally, we employ the fast gradient sign algorithm to generate adversarial examples. Extensive experiments on ImageNet show the superiority of our method to stateof-the-art baselines in attacking different undefended and defended models. © 2023, Femto Technique Co. All rights reserved.
引用
收藏
页码:983 / 991
相关论文
共 50 条
  • [41] Data Augmentation Based on Adversarial Autoencoder Handling Imbalance for Learning to Rank
    Yu, Qian
    Lam, Wai
    [J]. THIRTY-THIRD AAAI CONFERENCE ON ARTIFICIAL INTELLIGENCE / THIRTY-FIRST INNOVATIVE APPLICATIONS OF ARTIFICIAL INTELLIGENCE CONFERENCE / NINTH AAAI SYMPOSIUM ON EDUCATIONAL ADVANCES IN ARTIFICIAL INTELLIGENCE, 2019, : 411 - 418
  • [42] Implicit adversarial data augmentation and robustness with Noise-based Learning
    Panda, Priyadarshini
    Roy, Kaushik
    [J]. NEURAL NETWORKS, 2021, 141 : 120 - 132
  • [43] INTELLIGENT GLAUCOMA DIAGNOSIS VIA ACTIVE LEARNING AND ADVERSARIAL DATA AUGMENTATION
    Wang, Zhanyu
    Wang, Zhe
    Qu, Guoxiang
    Li, Fei
    Yuan, Ye
    Lams, Dennis S. C.
    Zhang, Xiulan
    Zhang, Yue
    Qiao, Yu
    [J]. 2019 IEEE 16TH INTERNATIONAL SYMPOSIUM ON BIOMEDICAL IMAGING (ISBI 2019), 2019, : 1234 - 1237
  • [44] Adversarial Examples Can Be Effective Data Augmentation for Unsupervised Machine Learning
    Hsu, Chia-Yi
    Chen, Pin-Yu
    Lu, Songtao
    Liu, Sijia
    Yu, Chia-Mu
    [J]. THIRTY-SIXTH AAAI CONFERENCE ON ARTIFICIAL INTELLIGENCE / THIRTY-FOURTH CONFERENCE ON INNOVATIVE APPLICATIONS OF ARTIFICIAL INTELLIGENCE / THE TWELVETH SYMPOSIUM ON EDUCATIONAL ADVANCES IN ARTIFICIAL INTELLIGENCE, 2022, : 6926 - 6934
  • [45] Label Distribution Learning with Data Augmentation using Generative Adversarial Networks
    Rong, Bin-Yuan
    Zhang, Heng-Ru
    Li, Gui-Lin
    Min, Fan
    [J]. 2022 IEEE 9TH INTERNATIONAL CONFERENCE ON DATA SCIENCE AND ADVANCED ANALYTICS (DSAA), 2022, : 21 - 30
  • [46] Ada: Adversarial learning based data augmentation for malicious users detection
    Wang, Jia
    Gao, Min
    Wang, Zongwei
    Lin, Chenghua
    Zhou, Wei
    Wen, Junhao
    [J]. APPLIED SOFT COMPUTING, 2022, 117
  • [47] Source-Guided Adversarial Learning and Data Augmentation for Domain Generalization
    Chen Y.
    Lin T.-W.
    Hsu C.-T.
    [J]. SN Computer Science, 2020, 1 (6)
  • [48] Improving hydraulic conductivity prediction of bentonite using machine learning with generative adversarial network-based data augmentation
    Huzhou Key Laboratory of Environmental Functional Materials and Pollution Control, Huzhou University, Huzhou
    313000, China
    [J]. Constr Build Mater, 2025, 462
  • [49] Improving Coronary Heart Disease Prediction Through Machine Learning and an Innovative Data Augmentation Technique
    Al-Ssulami, Abdulrakeeb M.
    Alsorori, Randh S.
    Azmi, Aqil M.
    Aboalsamh, Hatim
    [J]. COGNITIVE COMPUTATION, 2023, 15 (05) : 1687 - 1702
  • [50] Improving Coronary Heart Disease Prediction Through Machine Learning and an Innovative Data Augmentation Technique
    Abdulrakeeb M. Al-Ssulami
    Randh S. Alsorori
    Aqil M. Azmi
    Hatim Aboalsamh
    [J]. Cognitive Computation, 2023, 15 : 1687 - 1702