Improving robustness with image filtering

被引:0
|
作者
Terzi, Matteo [2 ]
Carletti, Mattia [1 ,2 ]
Susto, Gian Antonio [1 ,2 ]
机构
[1] Univ Padua, Human Inspired Technol Res Ctr, Padua, Italy
[2] Univ Padua, Dept Informat Engn, Padua, Italy
关键词
Robustness; Adversarial attacks and defenses; Adversarial training; Deep Neural Networks;
D O I
10.1016/j.neucom.2024.127927
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Adversarial robustness is one of the most challenging problems in Deep Learning and Computer Vision research. State-of-the-art techniques to enforce robustness are based on Adversarial Training, a computationally costly optimization procedure. For this reason, many alternative solutions have been proposed, but none proved effective under stronger or adaptive attacks. This paper presents Image-Graph Extractor (IGE), a new image filtering scheme that extracts the fundamental nodes of an image and their connections through a graph structure. By utilizing the IGE representation, we have developed a new defense technique, Filtering as a Defense, which prevents attackers from creating malicious patterns that can deceive image classifiers. Moreover, we show that data augmentation with filtered images effectively improves the model's robustness to data corruptions. We validate our techniques on Convolutional Neural Networks on CIFAR-10, CIFAR-100, and ImageNet.
引用
收藏
页数:11
相关论文
共 50 条
  • [41] Improving satellite image classification by using fractional type convolution filtering
    Quintano, C.
    Cuesta, E.
    INTERNATIONAL JOURNAL OF APPLIED EARTH OBSERVATION AND GEOINFORMATION, 2010, 12 (04): : 298 - 301
  • [42] Improving the robustness of DCT-based image watermarking against JPEG compression
    Lin, Shinfeng D.
    Shie, Shih-Chieh
    Guo, J. Y.
    COMPUTER STANDARDS & INTERFACES, 2010, 32 (1-2) : 54 - 60
  • [43] IMPROVING IMAGE-BASED VISUAL SERVOING WITH REFERENCE FEATURES FILTERING
    Ernesto Solanes, J.
    Armesto, Leopoldo
    Tornero, Josep
    Girbes, Vicent
    2013 IEEE INTERNATIONAL CONFERENCE ON ROBOTICS AND AUTOMATION (ICRA), 2013, : 3083 - 3088
  • [44] Improving the Robustness of JPEG Steganography With Robustness Cost
    Zhang, Jimin
    Zhao, Xianfeng
    He, Xiaolei
    Zhang, Hong
    IEEE SIGNAL PROCESSING LETTERS, 2022, 29 : 164 - 168
  • [45] Improving the Robustness of Scagnostics
    Wang, Yunhai
    Wang, Zeyu
    Liu, Tingting
    Correll, Michael
    Cheng, Zhanglin
    Deussen, Oliver
    Sedlmair, Michael
    IEEE TRANSACTIONS ON VISUALIZATION AND COMPUTER GRAPHICS, 2020, 26 (01) : 759 - 769
  • [46] Improving network robustness
    Beygelzimer, A
    Grinstein, G
    Linsker, R
    Rish, I
    INTERNATIONAL CONFERENCE ON AUTONOMIC COMPUTING, PROCEEDINGS, 2004, : 322 - 323
  • [47] Improving Accuracy and Robustness in HF-RFID-Based Indoor Positioning With Kalman Filtering and Tukey Smoothing
    Shirehjini, Ali Asghar Nazari
    Shirmohammadi, Shervin
    IEEE TRANSACTIONS ON INSTRUMENTATION AND MEASUREMENT, 2020, 69 (11) : 9190 - 9202
  • [48] ROBUSTNESS OF NOISE FILTERING BY KRIGING ANALYSIS
    BOURGAULT, G
    MATHEMATICAL GEOLOGY, 1994, 26 (06): : 733 - 752
  • [49] Robustness and risk-sensitive filtering
    Boel, RK
    James, MR
    Petersen, IR
    IEEE TRANSACTIONS ON AUTOMATIC CONTROL, 2002, 47 (03) : 451 - 461
  • [50] Robustness and risk-sensitive filtering
    Boel, RK
    James, MR
    Petersen, IR
    PROCEEDINGS OF THE 36TH IEEE CONFERENCE ON DECISION AND CONTROL, VOLS 1-5, 1997, : 2273 - 2278