Generating adversarial samples by manipulating image features with auto-encoder

被引:0
|
作者
Yang, Jianxin [1 ]
Shao, Mingwen [1 ]
Liu, Huan [1 ]
Zhuang, Xinkai [1 ]
机构
[1] China Univ Petr East China, Coll Comp Sci & Technol, Qingdao 266000, Shandong, Peoples R China
基金
中国国家自然科学基金;
关键词
Deep neural networks; Adversarial attacks; Adversarial samples; Style features; ATTACK;
D O I
10.1007/s13042-023-01778-w
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Existing adversarial attack methods usually add perturbations directly to the pixel space of an image, resulting in significant local noise in the image. Besides, the performance of existing attack methods is affected by various pixel-space based defense strategies. In this paper, we propose a novel method to generate adversarial examples by adding perturbations to the feature space. Specifically, the perturbation of the feature space is induced by a style-shifting-based network architecture called AdvAdaIN. Furthermore, we expose the feature space to the attacker via an encoder, and then the perturbation is injected into the feature space by AdvAdaIN. Simultaneously, due to the specificity of feature space perturbations, we trained a decoder to reflect the changes in feature space to pixel space and ensure that the perturbations are not easily detected. Meanwhile, we align the original image with another image in the feature space, adding additional adversarial information to the model. In addition, we can generate diverse adversarial samples by varying the perturbation parameters, which mainly change the overall color and brightness of the image. Experiments demonstrate that the proposed method outperforms existing methods and produces more natural adversarial samples when facing defensive strategies.
引用
收藏
页码:2499 / 2509
页数:11
相关论文
共 50 条
  • [41] Network Intrusion Detection Based on Supervised Adversarial Variational Auto-Encoder With Regularization
    Yang, Yanqing
    Zheng, Kangfeng
    Wu, Bin
    Yang, Yixian
    Wang, Xiujuan
    IEEE ACCESS, 2020, 8 : 42169 - 42184
  • [42] AMAE: Adversarial multimodal auto-encoder for crisis-related tweet analysis
    Jiandong Lv
    Xingang Wang
    Cuiling Shao
    Computing, 2023, 105 : 13 - 28
  • [43] A Variational Auto-Encoder Approach for Image Transmission in Noisy Channel
    Estiri, Amir Hossein
    Sabramooz, Mohammad Reza
    Banaei, Ali
    Dehghan, Amir Hossein
    Jamialahmadi, Benyamin
    Siavoshani, Mahdi Jafari
    2020 10TH INTERNATIONAL SYMPOSIUM ON TELECOMMUNICATIONS (IST), 2020, : 227 - 233
  • [44] Image retrieval based on auto-encoder and clustering with centroid update
    Bel, K. Nalini Sujantha
    Sam, I. Shatheesh
    COMPUTER JOURNAL, 2024, : 3031 - 3041
  • [45] Anomaly detection of mechanical systems based on generative adversarial network and auto-encoder
    Dai J.
    Wang J.
    Zhu Z.
    Shen C.
    Huang W.
    Yi Qi Yi Biao Xue Bao/Chinese Journal of Scientific Instrument, 2019, 40 (09): : 16 - 26
  • [46] Applying adversarial auto-encoder for estimating human walking gait abnormality index
    Trong-Nguyen Nguyen
    Jean Meunier
    Pattern Analysis and Applications, 2019, 22 : 1597 - 1608
  • [47] An intrusion detection method combining variational auto-encoder and generative adversarial networks
    Li, Zhengfa
    Huang, Chuanhe
    Qiu, Wanyu
    COMPUTER NETWORKS, 2024, 253
  • [48] Hyperspectral Remote Sensing Image Classification Based on Auto-Encoder
    Dong Anguo
    Liu Hongchao
    Zhang Qian
    Liang Miaomiao
    LASER & OPTOELECTRONICS PROGRESS, 2019, 56 (19)
  • [49] Study on Image Recognition Based on Stacked Sparse Auto-encoder
    Cao, Gui-Ming
    Ding, Xiang-Qian
    Gong, Hui-Li
    PROCEEDINGS OF THE 3RD ANNUAL INTERNATIONAL CONFERENCE ON ELECTRONICS, ELECTRICAL ENGINEERING AND INFORMATION SCIENCE (EEEIS 2017), 2017, 131 : 372 - 378
  • [50] Blurred Image Region Detection based on Stacked Auto-Encoder
    Zhou, Yuan
    Yang, Jianxing
    Chen, Yang
    Kung, Sun-Yuan
    2018 24TH INTERNATIONAL CONFERENCE ON PATTERN RECOGNITION (ICPR), 2018, : 2959 - 2964