Generating adversarial samples by manipulating image features with auto-encoder

被引:0
|
作者
Yang, Jianxin [1 ]
Shao, Mingwen [1 ]
Liu, Huan [1 ]
Zhuang, Xinkai [1 ]
机构
[1] China Univ Petr East China, Coll Comp Sci & Technol, Qingdao 266000, Shandong, Peoples R China
基金
中国国家自然科学基金;
关键词
Deep neural networks; Adversarial attacks; Adversarial samples; Style features; ATTACK;
D O I
10.1007/s13042-023-01778-w
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Existing adversarial attack methods usually add perturbations directly to the pixel space of an image, resulting in significant local noise in the image. Besides, the performance of existing attack methods is affected by various pixel-space based defense strategies. In this paper, we propose a novel method to generate adversarial examples by adding perturbations to the feature space. Specifically, the perturbation of the feature space is induced by a style-shifting-based network architecture called AdvAdaIN. Furthermore, we expose the feature space to the attacker via an encoder, and then the perturbation is injected into the feature space by AdvAdaIN. Simultaneously, due to the specificity of feature space perturbations, we trained a decoder to reflect the changes in feature space to pixel space and ensure that the perturbations are not easily detected. Meanwhile, we align the original image with another image in the feature space, adding additional adversarial information to the model. In addition, we can generate diverse adversarial samples by varying the perturbation parameters, which mainly change the overall color and brightness of the image. Experiments demonstrate that the proposed method outperforms existing methods and produces more natural adversarial samples when facing defensive strategies.
引用
收藏
页码:2499 / 2509
页数:11
相关论文
共 50 条
  • [31] Underwater image reconstruction using convolutional auto-encoder
    Yasukawa, Shinsuke
    Raghura, Sreeraman Srinivasa
    Nishida, Yuya
    Ishii, Kazuo
    PROCEEDINGS OF THE 2021 INTERNATIONAL CONFERENCE ON ARTIFICIAL LIFE AND ROBOTICS (ICAROB 2021), 2021, : P86 - P86
  • [32] Collaborative and adversarial deep transfer auto-encoder for intelligent fault diagnosis
    Ma, Yulin
    Yang, Jun
    Li, Lei
    NEUROCOMPUTING, 2022, 486 : 1 - 15
  • [33] Underwater image reconstruction using convolutional auto-encoder
    Yasukawa, Shinsuke
    Raghura, Sreeraman Srinivasa
    Nishida, Yuya
    Ishii, Kazuo
    PROCEEDINGS OF THE 2021 INTERNATIONAL CONFERENCE ON ARTIFICIAL LIFE AND ROBOTICS (ICAROB 2021), 2021, : 262 - 265
  • [34] Brain Lesion Synthesis via Progressive Adversarial Variational Auto-Encoder
    Huo, Jiayu
    Vakharia, Vejay
    Wu, Chengyuan
    Sharan, Ashwini
    Ko, Andrew
    Ourselin, Sebastien
    Sparks, Rachel
    SIMULATION AND SYNTHESIS IN MEDICAL IMAGING, SASHIMI 2022, 2022, 13570 : 101 - 111
  • [35] Differentially Private Adversarial Auto-Encoder to Protect Gender in Voice Biometrics
    Chouchane, Oubaida
    Panariello, Michele
    Zari, Oualid
    Kerenciler, Ismet
    Chihaoui, Imen
    Todisco, Massimiliano
    Onen, Melek
    PROCEEDINGS OF THE 2023 ACM WORKSHOP ON INFORMATION HIDING AND MULTIMEDIA SECURITY, IH&MMSEC 2023, 2023, : 127 - 132
  • [36] Data Fused Motor Fault Identification Based on Adversarial Auto-Encoder
    Wang, Botao
    Shen, Chuanwen
    Yu, Chenxi
    Yang, Yutao
    2019 IEEE 10TH INTERNATIONAL SYMPOSIUM ON POWER ELECTRONICS FOR DISTRIBUTED GENERATION SYSTEMS (PEDG 2019), 2019, : 299 - 305
  • [37] De-Convolutional Auto-Encoder for Enhancement of Fingerprint Samples
    Schuch, Patrick
    Schulz, Simon
    Busch, Christoph
    2016 SIXTH INTERNATIONAL CONFERENCE ON IMAGE PROCESSING THEORY, TOOLS AND APPLICATIONS (IPTA), 2016,
  • [38] Efficiently generating sentence-level textual adversarial examples with Seq2seq Stacked Auto-Encoder
    Li, Ang
    Zhang, Fangyuan
    Li, Shuangjiao
    Chen, Tianhua
    Su, Pan
    Wang, Hongtao
    EXPERT SYSTEMS WITH APPLICATIONS, 2023, 213
  • [39] AUTO-ENCODER BOTTLENECK FEATURES USING DEEP BELIEF NETWORKS
    Sainath, Tara N.
    Kingsbury, Brian
    Ramabhadran, Bhuvana
    2012 IEEE INTERNATIONAL CONFERENCE ON ACOUSTICS, SPEECH AND SIGNAL PROCESSING (ICASSP), 2012, : 4153 - 4156
  • [40] Hyperspectral image classification using an extended Auto-Encoder method
    Ghasrodashti, Elham Kordi
    Sharma, Nabin
    SIGNAL PROCESSING-IMAGE COMMUNICATION, 2021, 92