Digital Watermarking as an Adversarial Attack on Medical Image Analysis with Deep Learning

被引:10
|
作者
Apostolidis, Kyriakos D. [1 ]
Papakostas, George A. [1 ]
机构
[1] Int Hellen Univ, Dept Comp Sci, MLV Res Grp, Kavala 65404, Greece
关键词
medical image analysis; deep learning; computer vision; adversarial attack; watermarking; robustness; VISION;
D O I
10.3390/jimaging8060155
中图分类号
TB8 [摄影技术];
学科分类号
0804 ;
摘要
In the past years, Deep Neural Networks (DNNs) have become popular in many disciplines such as Computer Vision (CV), and the evolution of hardware has helped researchers to develop many powerful Deep Learning (DL) models to deal with several problems. One of the most important challenges in the CV area is Medical Image Analysis. However, adversarial attacks have proven to be an important threat to vision systems by significantly reducing the performance of the models. This paper brings to light a different side of digital watermarking, as a potential black-box adversarial attack. In this context, apart from proposing a new category of adversarial attacks named watermarking attacks, we highlighted a significant problem, as the massive use of watermarks, for security reasons, seems to pose significant risks to vision systems. For this purpose, a moment-based local image watermarking method is implemented on three modalities, Magnetic Resonance Images (MRI), Computed Tomography (CT-scans), and X-ray images. The introduced methodology was tested on three state-of-the art CV models, DenseNet 201, DenseNet169, and MobileNetV2. The results revealed that the proposed attack achieved over 50% degradation of the model's performance in terms of accuracy. Additionally, MobileNetV2 was the most vulnerable model and the modality with the biggest reduction was CT-scans.
引用
收藏
页数:19
相关论文
共 50 条
  • [1] Using Deep learning for image watermarking attack
    Hatoum, Makram W.
    Couchot, Jean-Francois
    Couturier, Raphael
    Darazi, Rony
    [J]. SIGNAL PROCESSING-IMAGE COMMUNICATION, 2021, 90
  • [2] A Comprehensive Review and Analysis of Deep Learning-Based Medical Image Adversarial Attack and Defense
    Muoka, Gladys W.
    Yi, Ding
    Ukwuoma, Chiagoziem C.
    Mutale, Albert
    Ejiyi, Chukwuebuka J.
    Mzee, Asha Khamis
    Gyarteng, Emmanuel S. A.
    Alqahtani, Ali
    Al-antari, Mugahed A.
    [J]. MATHEMATICS, 2023, 11 (20)
  • [3] Digital image watermarking using deep learning
    Himanshu Kumar Singh
    Amit Kumar Singh
    [J]. Multimedia Tools and Applications, 2024, 83 : 2979 - 2994
  • [4] A Survey on Adversarial Deep Learning Robustness in Medical Image Analysis
    Apostolidis, Kyriakos D.
    Papakostas, George A.
    [J]. ELECTRONICS, 2021, 10 (17)
  • [5] Digital image watermarking using deep learning
    Singh, Himanshu Kumar
    Singh, Amit Kumar
    [J]. MULTIMEDIA TOOLS AND APPLICATIONS, 2023, 83 (1) : 2979 - 2994
  • [6] ADVERSARIAL WATERMARKING TO ATTACK DEEP NEURAL NETWORKS
    Wang, Gengxing
    Chen, Xinyuan
    Xu, Chang
    [J]. 2019 IEEE INTERNATIONAL CONFERENCE ON ACOUSTICS, SPEECH AND SIGNAL PROCESSING (ICASSP), 2019, : 1962 - 1966
  • [7] Performance analysis for geometrical attack on digital image watermarking
    Jayanthi, V. E.
    Rajamani, V.
    Karthikayen, P.
    [J]. INTERNATIONAL JOURNAL OF ELECTRONICS, 2011, 98 (11) : 1565 - 1580
  • [8] Digital Image Watermarking Processor Based on Deep Learning
    Lee, Jae-Eun
    Kang, Ji-Won
    Kim, Woo-Suk
    Kim, Jin-Kyum
    Seo, Young-Ho
    Kim, Dong-Wook
    [J]. ELECTRONICS, 2021, 10 (10)
  • [9] Digital image watermarking using deep learning: A survey
    Hosny, Khalid M.
    Magdi, Amal
    ElKomy, Osama
    Hamza, Hanaa M.
    [J]. COMPUTER SCIENCE REVIEW, 2024, 53
  • [10] Similarity attack: An adversarial attack game for image classification based on deep learning
    Tian, Xuejun
    Tian, Xinyuan
    Pan, Bingqin
    [J]. JOURNAL OF COMPUTATIONAL METHODS IN SCIENCES AND ENGINEERING, 2023, 23 (03) : 1467 - 1478