Universal Adversarial Examples in Remote Sensing: Methodology and Benchmark

被引:61
|
作者
Xu, Yonghao [1 ]
Ghamisi, Pedram [1 ,2 ]
机构
[1] Inst Adv Res Artificial Intelligence IARAI, A-1030 Vienna, Austria
[2] Helmholtz Zenuum Dresden Rossendorf, Machine Learning Grp, Helmholtz Inst Freiberg Resource Technol, D-09599 Freiberg, Germany
关键词
Remote sensing; Neural networks; Deep learning; Perturbation methods; Task analysis; Forestry; Optimization; Adversarial attack; adversarial example; remote sensing; scene classification; semantic segmentation; DATA FUSION; ATTACKS;
D O I
10.1109/TGRS.2022.3156392
中图分类号
P3 [地球物理学]; P59 [地球化学];
学科分类号
0708 ; 070902 ;
摘要
Deep neural networks have achieved great success in many important remote sensing tasks. Nevertheless, their vulnerability to adversarial examples should not be neglected. In this study, we systematically analyze the Universal Adversarial Examples in Remote Sensing (UAE-RS) data for the first time, without any knowledge from the victim model. Specifically, we propose a novel black-box adversarial attack method, namely, Mixup-Attack, and its simple variant Mixcut-Attack, for remote sensing data. The key idea of the proposed methods is to find common vulnerabilities among different networks by attacking the features in the shallow layer of a given surrogate model. Despite their simplicity, the proposed methods can generate transferable adversarial examples that deceive most of the state-of-the-art deep neural networks in both scene classification and semantic segmentation tasks with high success rates. We further provide the generated universal adversarial examples in the dataset named UAE-RS, which is the first dataset that provides black-box adversarial samples in the remote sensing field. We hope UAE-RS may serve as a benchmark that helps researchers design deep neural networks with strong resistance toward adversarial attacks in the remote sensing field. Codes and the UAE-RS dataset are available online (https://github.com/YonghaoXu/UAE-RS).
引用
收藏
页数:15
相关论文
共 50 条
  • [31] BENCHMARKING ADVERSARIAL ATTACKS AND DEFENSES IN REMOTE SENSING IMAGES
    Zhang, Hanmeng
    Jiang, Xue
    IGARSS 2023 - 2023 IEEE INTERNATIONAL GEOSCIENCE AND REMOTE SENSING SYMPOSIUM, 2023, : 899 - 902
  • [32] Adversarial Complementary Learning for Multisource Remote Sensing Classification
    Gao, Yunhao
    Zhang, Mengmeng
    Li, Wei
    Song, Xiukai
    Jiang, Xiangyang
    Ma, Yuanqing
    IEEE TRANSACTIONS ON GEOSCIENCE AND REMOTE SENSING, 2023, 61
  • [33] Deepfaking it: experiments in generative, adversarial multispectral remote sensing
    Ren, Christopher X.
    Ziemann, Amanda
    Theiler, James
    Moore, Juston
    ALGORITHMS, TECHNOLOGIES, AND APPLICATIONS FOR MULTISPECTRAL AND HYPERSPECTRAL IMAGING XXVII, 2021, 11727
  • [34] Remote Sensing Data Augmentation Through Adversarial Training
    Lv, Ning
    Ma, Hongxiang
    Chen, Chen
    Pei, Qingqi
    Zhou, Yang
    Xiao, Fenglin
    Li, Ji
    IEEE JOURNAL OF SELECTED TOPICS IN APPLIED EARTH OBSERVATIONS AND REMOTE SENSING, 2021, 14 : 9318 - 9333
  • [35] SYNTHESIZING REMOTE SENSING IMAGES BY CONDITIONAL ADVERSARIAL NETWORKS
    Lin, Dao-Yu
    Wang, Yang
    Xu, Guang-Luan
    Fu, Kun
    2017 IEEE INTERNATIONAL GEOSCIENCE AND REMOTE SENSING SYMPOSIUM (IGARSS), 2017, : 48 - 50
  • [36] Novel universal demodulator for remote sensing satellites
    Pan, CY
    Zhang, XB
    Yang, ZX
    RADAR SENSOR TECHNOLOGY IV, 1999, 3704 : 189 - 195
  • [37] A Universal Parallel Framework For Remote Sensing Process
    Cai, Xingwen
    Hu, Jian
    Li, Ziyang
    Zhu, Bo
    MEASUREMENT TECHNOLOGY AND ITS APPLICATION, PTS 1 AND 2, 2013, 239-240 : 599 - 602
  • [38] Inversion of models: Some examples from remote sensing
    Baret, F
    Tchamitchian, M
    Sohbi, Y
    INRA BIOCLIMATOLOGY DEPARTMENT RESEARCH COURSE, VOL 2: FROM PLANT CANOPY TO THE REGION, 1996, : 305 - 318
  • [39] PARTNERSHIPS IN REMOTE-SENSING - A THEME WITH SOME EXAMPLES
    BISHOP, WP
    SPACE POLICY, 1986, 2 (04) : 322 - 341
  • [40] Remote Sensing in Structural Geology - Two Examples.
    Brosse, Jean Michel
    Bulletin du Bureau de Recherches Geologiques et Minieres. Serie 2, Section 2. Geologie Appliquee - chronique des Mines, 1975, (06): : 473 - 476