Ranking Variance Reduced Ensemble Attack with Dual Optimization Surrogate Search

被引:0
|
作者
He, Zhichao [1 ]
Hu, Cong [1 ]
机构
[1] Jiangnan Univ, Sch Artificial Intelligence & Comp Sci, Wuxi, Jiangsu, Peoples R China
基金
中国博士后科学基金; 中国国家自然科学基金;
关键词
Adversarial attack; Adversarial transferability; Ensemble attack;
D O I
10.1007/978-981-99-8462-6_18
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Deep neural networks have achieved remarkable success, but they are vulnerable to adversarial attacks. Previous studies have shown that combining transfer-based and query-based attacks in ensemble attacks can generate highly transferable adversarial examples. However, simply aggregating the output results of various models without considering the gradient variance among different models will lead to a suboptimal result. Moreover, fixed weights or inefficient methods for model weight updates can result in excessive query iterations. This paper proposes a novel method called Ranking Variance Reduced Ensemble attack with Dual Optimization surrogate search (RVREDO) as an enhanced ensemble attack method for improving adversarial transferability. Specifically, RVREDO mitigate the influence of gradient variance among models to improve the attack success rate of generated adversarial examples during the attack process. Simultaneously, a dual optimization weight updating strategy is employed to dynamically adjust the surrogate weight set, enhancing the efficiency of perturbation optimization. Experimental results on the ImageNet dataset demonstrate that our method outperforms previous state-of-the-art methods in terms of both attack success rate and average number of queries.
引用
收藏
页码:212 / 223
页数:12
相关论文
共 50 条
  • [1] Stochastic Variance Reduced Ensemble Adversarial Attack for Boosting the Adversarial Transferability
    Xiong, Yifeng
    Lin, Jiadong
    Zhang, Min
    Hopcroft, John E.
    He, Kun
    2022 IEEE/CVF CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION (CVPR 2022), 2022, : 14963 - 14972
  • [2] Variance reduced ensemble Kalman filtering
    Heemink, AW
    Verlaan, M
    Segers, AJ
    MONTHLY WEATHER REVIEW, 2001, 129 (07) : 1718 - 1728
  • [3] Stochastic Variance Reduced Primal Dual Algorithms for Empirical Composition Optimization
    Devraj, Adithya M.
    Chen, Jianshu
    ADVANCES IN NEURAL INFORMATION PROCESSING SYSTEMS 32 (NIPS 2019), 2019, 32
  • [4] Blackbox Attacks via Surrogate Ensemble Search
    Cai, Zikui
    Song, Chengyu
    Krishnamurthy, Srikanth
    Roy-Chowdhury, Amit
    Asif, M. Salman
    ADVANCES IN NEURAL INFORMATION PROCESSING SYSTEMS 35 (NEURIPS 2022), 2022,
  • [5] Harmony Search Algorithm with Ensemble of Surrogate Models
    Mohanarangam, Krithikaa
    Mallipeddi, Rammohan
    HARMONY SEARCH ALGORITHM, 2016, 382 : 19 - 28
  • [6] Offline data-driven optimization based on dual-scale surrogate ensemble
    Ku, Junhua
    Zhen, Huixiang
    Gong, Wenyin
    MEMETIC COMPUTING, 2023, 15 (02) : 139 - 154
  • [7] Offline data-driven optimization based on dual-scale surrogate ensemble
    Junhua Ku
    Huixiang Zhen
    Wenyin Gong
    Memetic Computing, 2023, 15 : 139 - 154
  • [8] Constrained evolutionary optimization by approximate ranking and surrogate models
    Runarsson, TP
    PARALLEL PROBLEM SOLVING FROM NATURE - PPSN VIII, 2004, 3242 : 401 - 410
  • [9] Sequential ensemble optimization based on general surrogate model prediction variance and its application on engine acceleration schedule design
    Yifan YE
    Zhanxue WANG
    Xiaobo ZHANG
    Chinese Journal of Aeronautics , 2021, (08) : 16 - 33
  • [10] Sequential ensemble optimization based on general surrogate model prediction variance and its application on engine acceleration schedule design
    Yifan YE
    Zhanxue WANG
    Xiaobo ZHANG
    Chinese Journal of Aeronautics, 2021, 34 (08) : 16 - 33