Improving robustness with image filtering

被引:0
|
作者
Terzi, Matteo [2 ]
Carletti, Mattia [1 ,2 ]
Susto, Gian Antonio [1 ,2 ]
机构
[1] Univ Padua, Human Inspired Technol Res Ctr, Padua, Italy
[2] Univ Padua, Dept Informat Engn, Padua, Italy
关键词
Robustness; Adversarial attacks and defenses; Adversarial training; Deep Neural Networks;
D O I
10.1016/j.neucom.2024.127927
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Adversarial robustness is one of the most challenging problems in Deep Learning and Computer Vision research. State-of-the-art techniques to enforce robustness are based on Adversarial Training, a computationally costly optimization procedure. For this reason, many alternative solutions have been proposed, but none proved effective under stronger or adaptive attacks. This paper presents Image-Graph Extractor (IGE), a new image filtering scheme that extracts the fundamental nodes of an image and their connections through a graph structure. By utilizing the IGE representation, we have developed a new defense technique, Filtering as a Defense, which prevents attackers from creating malicious patterns that can deceive image classifiers. Moreover, we show that data augmentation with filtered images effectively improves the model's robustness to data corruptions. We validate our techniques on Convolutional Neural Networks on CIFAR-10, CIFAR-100, and ImageNet.
引用
收藏
页数:11
相关论文
共 50 条
  • [31] Probabilistic Robustness for Data Filtering
    Yu, Yu
    Khan, Abdul Rafae
    Khadivi, Shahram
    Xu, Jia
    17TH CONFERENCE OF THE EUROPEAN CHAPTER OF THE ASSOCIATION FOR COMPUTATIONAL LINGUISTICS, EACL 2023, 2023, : 2950 - 2959
  • [32] Manipulation Robustness of Collaborative Filtering
    Van Roy, Benjamin
    Yan, Xiang
    MANAGEMENT SCIENCE, 2010, 56 (11) : 1911 - 1929
  • [33] A ROBUSTNESS APPROACH TO ADAPTIVE FILTERING
    YIN, G
    ZHU, YM
    PROCEEDINGS OF THE 28TH IEEE CONFERENCE ON DECISION AND CONTROL, VOLS 1-3, 1989, : 2607 - 2612
  • [34] Digital Filtering and Model Updating Methods for Improving the Robustness of Near-Infrared Multivariate Calibrations
    Kramer, Kirsten E.
    Small, Gary W.
    APPLIED SPECTROSCOPY, 2009, 63 (02) : 246 - 255
  • [35] Improving the robustness of DCT-Based image watermarking against JPEG compression
    Lin, SD
    Shie, SC
    Guo, JY
    ICCE: 2005 INTERNATIONAL CONFERENCE ON CONSUMER ELECTRONICS, DIGEST OF TECHNICAL PAPERS, 2005, : 343 - 344
  • [36] Improving Robustness of Quantization-Based Image Watermarking via Adaptive Receiver
    Kang, Xiangui
    Huang, Jiwu
    Zeng, Wenjun
    IEEE TRANSACTIONS ON MULTIMEDIA, 2008, 10 (06) : 953 - 959
  • [37] Research on Improving Image Recognition Robustness by Combining Multiple Features with Associative Memory
    Guo, Dongwei
    Wang, Zhe
    6TH INTERNATIONAL CONFERENCE ON COMPUTER-AIDED DESIGN, MANUFACTURING, MODELING AND SIMULATION (CDMMS 2018), 2018, 1967
  • [38] Between-Class Adversarial Training for Improving Adversarial Robustness of Image Classification
    Wang, Desheng
    Jin, Weidong
    Wu, Yunpu
    SENSORS, 2023, 23 (06)
  • [39] Multiscale bilateral filtering for improving image quality in digital breast tomosynthesis
    Lu, Yao
    Chan, Heang-Ping
    Wei, Jun
    Hadjiiski, Lubomir M.
    Samala, Ravi K.
    MEDICAL PHYSICS, 2015, 42 (01) : 182 - 195
  • [40] Improving the Adversarial Robustness of Neural ODE Image Classifiers by Tuning the Tolerance Parameter
    Carrara, Fabio
    Caldelli, Roberto
    Falchi, Fabrizio
    Amato, Giuseppe
    INFORMATION, 2022, 13 (12)