Toward Efficiently Evaluating the Robustness of Deep Neural Networks in IoT Systems: A GAN-Based Method

被引:4
|
作者
Bai, Tao [1 ]
Zhao, Jun [1 ]
Zhu, Jinlin [2 ]
Han, Shoudong [3 ,4 ]
Chen, Jiefeng [5 ]
Li, Bo [6 ]
Kot, Alex [2 ]
机构
[1] Nanyang Technol Univ, Sch Comp Sci & Engn, Singapore 639798, Singapore
[2] Nanyang Technol Univ, Sch Elect & Elect Engn, Singapore 639798, Singapore
[3] Huazhong Univ Sci & Technol, Natl Key Lab Sci & Technol Multispectral Informat, Wuhan 430074, Peoples R China
[4] Huazhong Univ Sci & Technol, Sch Artificial Intelligence & Automat, Wuhan 430074, Peoples R China
[5] Univ Wisconsin, Dept Comp Sci, Madison, WI 53706 USA
[6] Univ Illinois, Comp Sci Dept, Urbana, IL 61801 USA
关键词
Perturbation methods; Generative adversarial networks; Generators; Neural networks; Internet of Things; Training; Optimization; Adversarial examples; deep learning; generative adversarial networks (GANs); INTERNET; SECURITY; THINGS;
D O I
10.1109/JIOT.2021.3091683
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Intelligent Internet of Things (IoT) systems based on deep neural networks (DNNs) have been widely deployed in the real world. However, DNNs are found to be vulnerable to adversarial examples, which raises people's concerns about intelligent IoT systems' reliability and security. Testing and evaluating the robustness of IoT systems become necessary and essential. Recently, various attacks and strategies have been proposed, but the efficiency problem remains unsolved properly. Existing methods are either computationally extensive or time consuming, which is not applicable in practice. In this article, we propose a novel framework, called attack-inspired generative adversarial networks (AI-GAN) to generate adversarial examples conditionally. Once trained, it can generate adversarial perturbations efficiently given input images and target classes. We apply AI-GAN on different data sets in white-box settings, black-box settings, and targeted models protected by state-of-the-art defenses. Through extensive experiments, AI-GAN achieves high attack success rates, outperforming existing methods, and reduces generation time significantly. Moreover, for the first time, AI-GAN successfully scales to complex data sets, e.g., CIFAR-100 and ImageNet, with about 90% success rates among all classes.
引用
收藏
页码:1875 / 1884
页数:10
相关论文
共 50 条
  • [1] GAN-based deep neural networks for graph representation learning
    Zhao, Ming
    Zhang, Yinglong
    ENGINEERING REPORTS, 2022, 4 (11)
  • [2] A GAN-based Hybrid Deep Learning Approach for Enhancing Intrusion Detection in IoT Networks
    Balaji, S.
    Dhanabalan, G.
    Umarani, C.
    Naskath, J.
    INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2024, 15 (06) : 348 - 354
  • [3] Evaluating the Robustness of Ultrasound Beamforming with Deep Neural Networks
    Luchies, Adam
    Byram, Brett
    2018 IEEE INTERNATIONAL ULTRASONICS SYMPOSIUM (IUS), 2018,
  • [4] Toward Evaluating the Reliability of Deep-Neural-Network-Based IoT Devices
    Fan, Mingyuan
    Liu, Yang
    Chen, Cen
    Yu, Shengxing
    Guo, Wenzhong
    Wang, Li
    Liu, Ximeng
    IEEE INTERNET OF THINGS JOURNAL, 2022, 9 (18): : 17002 - 17013
  • [5] A GAN-Based Image Transformation Scheme for Privacy-Preserving Deep Neural Networks
    Sirichotedumrong, Warit
    Kiya, Hitoshi
    28TH EUROPEAN SIGNAL PROCESSING CONFERENCE (EUSIPCO 2020), 2021, : 745 - 749
  • [6] GAN-Based Enhanced Deep Subspace Clustering Networks
    Yu, Zhiwen
    Zhang, Zhongfan
    Cao, Wenming
    Liu, Cheng
    Chen, C. L. Philip
    Wong, Hau-San
    IEEE TRANSACTIONS ON KNOWLEDGE AND DATA ENGINEERING, 2022, 34 (07) : 3267 - 3281
  • [7] Efficient Robustness Verification of the Deep Neural Networks for Smart IoT Devices
    Zhang, Zhaodi
    Liu, Jing
    Zhang, Min
    Sun, Haiying
    COMPUTER JOURNAL, 2022, 65 (11): : 2894 - 2908
  • [8] Evaluating the Robustness of Trigger Set-Based Watermarks Embedded in Deep Neural Networks
    Lee, Suyoung
    Song, Wonho
    Jana, Suman
    Cha, Meeyoung
    Son, Sooel
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2023, 20 (04) : 3434 - 3448
  • [9] GAN-based Privacy Abuse Attack on Federated Learning in IoT Networks
    Hao, Runzhe
    Hussain, Rasheed
    Parra-Ullauri, Juan Marcelo
    Vasilakos, Xenofon
    Nejabati, Reza
    Simeonidou, Dimitra
    IEEE INFOCOM 2024-IEEE CONFERENCE ON COMPUTER COMMUNICATIONS WORKSHOPS, INFOCOM WKSHPS 2024, 2024,
  • [10] Lychee Surface Defect Detection Based on Deep Convolutional Neural Networks with GAN-Based Data Augmentation
    Wang, Chenglong
    Xiao, Zhifeng
    AGRONOMY-BASEL, 2021, 11 (08):