LD-GAN: Learning perturbations for adversarial defense based on GAN structure

被引:4
|
作者
Liang, Qi [1 ]
Li, Qiang [1 ]
Nie, Weizhi [2 ]
机构
[1] Tianjin Univ, Sch microelectron, Tianjin 300072, Peoples R China
[2] Tianjin Univ, Sch Elect & informat Engn, Tianjin 300072, Peoples R China
基金
中国国家自然科学基金;
关键词
Adversarial attacks; Adversarial defense; Adversarial robustness; Image classification; ROBUSTNESS;
D O I
10.1016/j.image.2022.116659
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
Deep neural networks achieve outstanding performance in many tasks, so they have been widely used in many applications. However, the vulnerability of deep neural networks will produce many security threats, which drives us to provide sufficient attention to adversarial robustness. Many researchers have paid attention to addressing this problem based on the perturbation injection method, which may fail to consider the content of images that correspond to the perturbed feature while only focusing on their classification scores. In general, the existing methods often improve the robustness of the model at the expense of accuracy. In this paper, we propose LD-GAN, a novel framework to improve the adversarial robustness by learning perturbations and guaranteeing classification accuracy. The classic GAN structure is employed in this work. First, we utilize a generative model to reconstruct a training image from the corresponding perturbed feature. Then, the discriminative model is utilized to control the category. The purpose is to control the magnitude of noise addition and ensure that the noise addition does not fundamentally change the feature distribution of the original category. More specifically, we utilize the soft-attention model in the perturbation-injection module, which generates noise according to different layer concerns and improves the flexibility of the noise parameters. Extensive white-box and black-box attack experiments on CIFAR-10 and CIF-100 with state-of-the-art defense methods show the effectiveness of our method.
引用
收藏
页数:10
相关论文
共 50 条
  • [41] Robust Learning with Adversarial Perturbations and Label Noise: A Two-Pronged Defense Approach
    Zhang, Peng-Fei
    Huang, Zi
    Luo, Xin
    Zhao, Pengfei
    [J]. PROCEEDINGS OF THE 4TH ACM INTERNATIONAL CONFERENCE ON MULTIMEDIA IN ASIA, MMASIA 2022, 2022,
  • [42] IP-GAN: Learning Identity and Pose Disentanglement in Generative Adversarial Networks
    Zeno, Bassel
    Kalinovskiy, Ilya
    Matveev, Yuri
    [J]. ARTIFICIAL NEURAL NETWORKS AND MACHINE LEARNING - ICANN 2019: WORKSHOP AND SPECIAL SESSIONS, 2019, 11731 : 535 - 547
  • [43] GAN-TL: Generative Adversarial Networks with Transfer Learning for MRI Reconstruction
    Yaqub, Muhammad
    Feng Jinchao
    Ahmed, Shahzad
    Arshid, Kaleem
    Bilal, Muhammad Atif
    Akhter, Muhammad Pervez
    Zia, Muhammad Sultan
    [J]. APPLIED SCIENCES-BASEL, 2022, 12 (17):
  • [44] PD-GAN: Adversarial Learning for Personalized Diversity-Promoting Recommendation
    Wu, Qiong
    Liu, Yong
    Miao, Chunyan
    Zhao, Binqiang
    Zhao, Yin
    Guan, Lu
    [J]. PROCEEDINGS OF THE TWENTY-EIGHTH INTERNATIONAL JOINT CONFERENCE ON ARTIFICIAL INTELLIGENCE, 2019, : 3870 - 3876
  • [45] voxel-GAN: Adversarial Framework for Learning Imbalanced Brain Tumor Segmentation
    Rezaei, Mina
    Yang, Haojin
    Meinel, Christoph
    [J]. BRAINLESION: GLIOMA, MULTIPLE SCLEROSIS, STROKE AND TRAUMATIC BRAIN INJURIES, BRAINLES 2018, PT II, 2019, 11384 : 321 - 333
  • [46] Flow-GAN: Combining Maximum Likelihood and Adversarial Learning in Generative Models
    Grover, Aditya
    Dhar, Manik
    Ermon, Stefano
    [J]. THIRTY-SECOND AAAI CONFERENCE ON ARTIFICIAL INTELLIGENCE / THIRTIETH INNOVATIVE APPLICATIONS OF ARTIFICIAL INTELLIGENCE CONFERENCE / EIGHTH AAAI SYMPOSIUM ON EDUCATIONAL ADVANCES IN ARTIFICIAL INTELLIGENCE, 2018, : 3069 - 3076
  • [47] ESR-GAN: Environmental Signal Reconstruction Learning With Generative Adversarial Network
    Kang, Xu
    Liu, Liang
    Ma, Huadong
    [J]. IEEE INTERNET OF THINGS JOURNAL, 2021, 8 (01) : 636 - 646
  • [48] RPD-GAN: Learning to Draw Realistic Paintings With Generative Adversarial Network
    Gao, Xiang
    Tian, Yingjie
    Qi, Zhiquan
    [J]. IEEE TRANSACTIONS ON IMAGE PROCESSING, 2020, 29 : 8706 - 8720
  • [49] MSR-GAN: MULTI-SEGMENT RECONSTRUCTION VIA ADVERSARIAL LEARNING
    Zehni, Mona
    Zhao, Zhizhen
    [J]. 2021 IEEE INTERNATIONAL CONFERENCE ON ACOUSTICS, SPEECH AND SIGNAL PROCESSING (ICASSP 2021), 2021, : 5115 - 5119
  • [50] GAN-CL: Generative Adversarial Networks for Learning From Complementary Labels
    Liu, Jiabin
    Hang, Hanyuan
    Wang, Bo
    Li, Biao
    Wang, Huadong
    Tian, Yingjie
    Shi, Yong
    [J]. IEEE TRANSACTIONS ON CYBERNETICS, 2023, 53 (01) : 236 - 247