Generating Adversarial Images in Quantized Domains

被引:9
|
作者
Bonnet, Benoit [1 ]
Furon, Teddy [1 ]
Bas, Patrick [2 ]
机构
[1] Univ Rennes, CNRS, IRISA, INRIA, F-35000 Rennes, France
[2] Ecole Cent Lille, CRIStAL Lab, CNRS, UMR 9189, F-59650 Lille, France
关键词
Computational and artificial intelligence; neural networks; feedforward neural network; multi-layer neural network; signal processing; quantization (signal); COMPRESSION;
D O I
10.1109/TIFS.2021.3138616
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Many adversarial attacks produce floating-point tensors which are no longer adversarial when converted to raster or JPEG images due to rounding. This paper proposes a method dedicated to quantize adversarial perturbations. This "smart" quantization is conveniently implemented as versatile post-processing. It can be used on top of any white-box attack targeting any model. Its principle is tantamount to a constrained optimization problem aiming to minimize the quantization error while keeping the image adversarial after quantization. A Lagrangian formulation is proposed and an appropriate search of the Lagrangian multiplier enables to increase the success rate. We also add a control mechanism of the l(infinity)-distortion. Our method operates in both spatial and JPEG domains with little complexity. This study shows that forging adversarial images is not a hard constraint: our quantization does not introduce any extra distortion. Moreover, adversarial images quantized as JPEG also challenge defenses relying on the robustness of neural networks against JPEG compression.
引用
收藏
页码:373 / 385
页数:13
相关论文
共 50 条
  • [21] Generating Fundus Fluorescence Angiography Images from Structure Fundus Images Using Generative Adversarial Networks
    Li, Wanyue
    Kong, Wen
    Chen, Yiwei
    Wang, Jing
    He, Yi
    Shi, Guohua
    Deng, Guohua
    MEDICAL IMAGING WITH DEEP LEARNING, VOL 121, 2020, 121 : 424 - 439
  • [22] Quantized Adversarial Training: An Iterative Quantized Local Search Approach
    Guo, Yifan
    Ji, Tianxi
    Wang, Qianlong
    Yu, Lixing
    Li, Pan
    2019 19TH IEEE INTERNATIONAL CONFERENCE ON DATA MINING (ICDM 2019), 2019, : 1066 - 1071
  • [23] Generating Cartoon Images from Face Photos with Cycle-Consistent Adversarial Networks
    Zhang, Tao
    Zhang, Zhanjie
    Jia, Wenjing
    He, Xiangjian
    Yang, Jie
    CMC-COMPUTERS MATERIALS & CONTINUA, 2021, 69 (02): : 2733 - 2747
  • [24] GENERATING SYNTHETIC IMAGES OF POLYPOID LESION IN SMALL BOWEL USING GENERATIVE ADVERSARIAL NETWORKS
    Atsawarungruangkit, Amporn
    Songsuittipong, Thanadon
    Numpacharoen, Kawee
    Charoenpong, Theekapun
    Wiwatwattana, Nuwee
    GASTROINTESTINAL ENDOSCOPY, 2021, 93 (06) : AB201 - AB202
  • [25] Beyond Narrative Description: Generating Poetry from Images by Multi-Adversarial Training
    Liu, Bei
    Fu, Jianlong
    Kato, Makoto P.
    Yoshikawa, Masatoshi
    PROCEEDINGS OF THE 2018 ACM MULTIMEDIA CONFERENCE (MM'18), 2018, : 783 - 791
  • [26] Generating synthetic CTs from magnetic resonance images using generative adversarial networks
    Emami, Hajar
    Dong, Ming
    Nejad-Davarani, Siamak P.
    Glide-Hurst, Carri K.
    MEDICAL PHYSICS, 2018, 45 (08) : 3627 - 3636
  • [27] Generating Multiscale Maps From Satellite Images via Series Generative Adversarial Networks
    Chen, Xu
    Yin, Bangguo
    Chen, Songqiang
    Li, Haifeng
    Xu, Tian
    IEEE GEOSCIENCE AND REMOTE SENSING LETTERS, 2022, 19
  • [28] Generating De-identification facial images based on the attention models and adversarial examples
    Yang, Jingjing
    Zhang, Weijia
    Liu, Jiaxing
    Wu, Jinzhao
    Yang, Jie
    ALEXANDRIA ENGINEERING JOURNAL, 2022, 61 (11) : 8417 - 8429
  • [29] Generating Synthetic CTs From Magnetic Resonance Images Using Generative Adversarial Networks
    Gehari, H. Emami
    Nejad-Davarani, S. P.
    Dong, M.
    Glide-Hurst, C.
    MEDICAL PHYSICS, 2018, 45 (06) : E131 - E131
  • [30] A principled approach for generating adversarial images under non-smooth dissimilarity metrics
    Pooladian, Aram-Alexandre
    Finlay, Chris
    Hoheisel, Tim
    Oberman, Adam M.
    INTERNATIONAL CONFERENCE ON ARTIFICIAL INTELLIGENCE AND STATISTICS, VOL 108, 2020, 108 : 1442 - 1451