Generating adversarial samples by manipulating image features with auto-encoder

被引:0
|
作者
Yang, Jianxin [1 ]
Shao, Mingwen [1 ]
Liu, Huan [1 ]
Zhuang, Xinkai [1 ]
机构
[1] China Univ Petr East China, Coll Comp Sci & Technol, Qingdao 266000, Shandong, Peoples R China
基金
中国国家自然科学基金;
关键词
Deep neural networks; Adversarial attacks; Adversarial samples; Style features; ATTACK;
D O I
10.1007/s13042-023-01778-w
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Existing adversarial attack methods usually add perturbations directly to the pixel space of an image, resulting in significant local noise in the image. Besides, the performance of existing attack methods is affected by various pixel-space based defense strategies. In this paper, we propose a novel method to generate adversarial examples by adding perturbations to the feature space. Specifically, the perturbation of the feature space is induced by a style-shifting-based network architecture called AdvAdaIN. Furthermore, we expose the feature space to the attacker via an encoder, and then the perturbation is injected into the feature space by AdvAdaIN. Simultaneously, due to the specificity of feature space perturbations, we trained a decoder to reflect the changes in feature space to pixel space and ensure that the perturbations are not easily detected. Meanwhile, we align the original image with another image in the feature space, adding additional adversarial information to the model. In addition, we can generate diverse adversarial samples by varying the perturbation parameters, which mainly change the overall color and brightness of the image. Experiments demonstrate that the proposed method outperforms existing methods and produces more natural adversarial samples when facing defensive strategies.
引用
收藏
页码:2499 / 2509
页数:11
相关论文
共 50 条
  • [21] Unsupervised discriminative feature representation via adversarial auto-encoder
    Guo, Wenzhong
    Cai, Jinyu
    Wang, Shiping
    APPLIED INTELLIGENCE, 2020, 50 (04) : 1155 - 1171
  • [22] Learning image by-parts using early and late fusion of auto-encoder features
    Susan, Seba
    Malhotra, Jatin
    MULTIMEDIA TOOLS AND APPLICATIONS, 2021, 80 (19) : 29601 - 29615
  • [23] An Ensemble Net of Convolutional Auto-Encoder and Graph Auto-Encoder for Auto-Diagnosis
    Li, Jianqiang
    Ji, Changping
    Yan, Guokai
    You, Linlin
    Chen, Jie
    IEEE TRANSACTIONS ON COGNITIVE AND DEVELOPMENTAL SYSTEMS, 2021, 13 (01) : 189 - 199
  • [24] DEEP AUTO-ENCODER NETWORK FOR HYPERSPECTRAL IMAGE UNMIXING
    Su, Yuanchao
    Li, Jun
    Plaza, Antonio
    Marinoni, Andrea
    Gamba, Paolo
    Huang, Yuancheng
    IGARSS 2018 - 2018 IEEE INTERNATIONAL GEOSCIENCE AND REMOTE SENSING SYMPOSIUM, 2018, : 6400 - 6403
  • [25] Learning image by-parts using early and late fusion of auto-encoder features
    Seba Susan
    Jatin Malhotra
    Multimedia Tools and Applications, 2021, 80 : 29601 - 29615
  • [26] Image enhancement algorithm with convolutional auto-encoder network
    Wang W.-L.
    Yang X.-H.
    Zhao Y.-W.
    Gao N.
    Lv C.
    Zhang Z.-J.
    Zhejiang Daxue Xuebao (Gongxue Ban)/Journal of Zhejiang University (Engineering Science), 2019, 53 (09): : 1728 - 1740
  • [27] A selectional auto-encoder approach for document image binarization
    Calvo-Zaragoza, Jorge
    Gallego, Antonio-Javier
    PATTERN RECOGNITION, 2019, 86 : 37 - 47
  • [28] Deep Supervised Auto-encoder Hashing for Image Retrieval
    Tang, Sanli
    Chi, Haoyuan
    Yang, Jie
    Huang, Xiaolin
    Zareapoor, Masoumeh
    PATTERN RECOGNITION AND COMPUTER VISION, PT II, 2018, 11257 : 193 - 205
  • [29] Layered Image Compression using Scalable Auto-encoder
    Jia, Chuanmin
    Liu, Zhaoyi
    Wang, Yao
    Ma, Siwei
    Gao, Wen
    2019 2ND IEEE CONFERENCE ON MULTIMEDIA INFORMATION PROCESSING AND RETRIEVAL (MIPR 2019), 2019, : 431 - 436
  • [30] The Depression of Noises in Acoustic Signals of Transformer Based on Adversarial Auto-encoder
    Li, Guowei
    Wang, Junbo
    Tang, Qi
    Li, Xiaolong
    Li, Zhijing
    Xie, Zhiyang
    Ma, Jiaqi
    Wang, Fenghua
    2022 IEEE/IAS INDUSTRIAL AND COMMERCIAL POWER SYSTEM ASIA (I&CPS ASIA 2022), 2022, : 941 - 945