Spear and Shield: Attack and Detection for CNN-Based High Spatial Resolution Remote Sensing Images Identification

被引:8
|
作者
Li, Wenmei [1 ,2 ,3 ]
Li, Zhuangzhuang [2 ]
Sun, Jinlong [2 ]
Wang, Yu [2 ]
Liu, Haiyan [2 ]
Yang, Jie [2 ]
Gui, Guan [2 ]
机构
[1] Nanjing Univ Posts & Telecommun, Sch Geog & Biol Informat, Nanjing 210023, Jiangsu, Peoples R China
[2] Nanjing Univ Posts & Telecommun, Coll Telecommun & Informat Engn, Nanjing 210003, Jiangsu, Peoples R China
[3] Smart Hlth Big Data Anal & Locat Serv Engn Lab Ji, Nanjing 210023, Jiangsu, Peoples R China
来源
IEEE ACCESS | 2019年 / 7卷
基金
芬兰科学院; 中国国家自然科学基金;
关键词
Convolutional neural network; attack detection; white-box attack; fast gradient sign method (FGSM); large Broyden-Fletcher-Goldfarb-Shanno (L-BFGS); DEEP; ROBUSTNESS;
D O I
10.1109/ACCESS.2019.2927376
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
High spatial resolution remote sensing (HSRRS) images classification and identification is an important technology to acquire land surface information for land resource management, geographical situation monitoring, and global climate change. As the hottest deep learning method, convolutional neural network (CNN) has been successfully applied in HSRRS image classification and identification due to its powerful information extraction capability. However, adversarial perturbations caused by radiation transfer process or artificial or other unpredictable disturbances often deteriorate the stability of CNN. Under this background, we propose a robust architecture for adversarial attack and detection to classify and identify HSRRS images. First of all, two white-box attacks [i.e., large Broyden-Fletcher-Goldfarb-Shanno (L-BFGS) and fast gradient sign method (FGSM)] are adopted respectively to generate adversarial images to confuse the model, and to assess the robustness of the HSRRS image classifier. Second, adversarial detection models based on support vector machine (SVM) with single or fused two level features are proposed to improve the detection accuracy. The features extracted from the testing CNN full connected layers contain adversarial perturbations and real information, from which SVM classifier and discriminate the real and the adversarial images. The adversarial attack model is evaluated in terms of overall accuracy (OA) and kappa coefficient (kc). The simulation results show that the OA decreases from 96.4% to 44.4% and 33.3% for L-BFGS and FGSM attacked classifier model, respectively. The adversarial detection is evaluated via OA, detection probability P-D, false alarm probability P-FA, and miss probability P-M. The simulation results indicate that the fused model with two different level features based on SVM can obtain the best OA (94.5%), P-D (0.933), P-FA (0.040), and P-M (0.067) among the detectors if the classifier is attacked by the FGSM. Meanwhile, when facing the L-BFGS attack, the fused model presents similar performance if the best single level features are utilized.
引用
收藏
页码:94583 / 94592
页数:10
相关论文
共 50 条
  • [1] CNN-based Pansharpening of Multi-Resolution Remote-Sensing Images
    Masi, Giuseppe
    Cozzolino, Davide
    Verdoliva, Luisa
    Scarpa, Giuseppe
    [J]. 2017 JOINT URBAN REMOTE SENSING EVENT (JURSE), 2017,
  • [2] A CNN-Based High-Accuracy Registration for Remote Sensing Images
    Lee, Wooju
    Sim, Donggyu
    Oh, Seoung-Jun
    [J]. REMOTE SENSING, 2021, 13 (08)
  • [3] Chimney Detection Based on Faster R-CNN and Spatial Analysis Methods in High Resolution Remote Sensing Images
    Han, Chunming
    Li, Guangfu
    Ding, Yixing
    Yan, Fuli
    Bai, Linyan
    [J]. SENSORS, 2020, 20 (16)
  • [4] A modular CNN-based building detector for remote sensing images
    Konstantinidis, Dimitrios
    Argyriou, Vasileios
    Stathaki, Tania
    Grammalidis, Nikolaos
    [J]. COMPUTER NETWORKS, 2020, 168
  • [5] CDnet: CNN-Based Cloud Detection for Remote Sensing Imagery
    Yang, Jingyu
    Guo, Jianhua
    Yue, Huanjing
    Liu, Zhiheng
    Hu, Haofeng
    Li, Kun
    [J]. IEEE TRANSACTIONS ON GEOSCIENCE AND REMOTE SENSING, 2019, 57 (08): : 6195 - 6211
  • [6] A CNN-based Edge Detection Algorithm for Remote Sensing Image
    Xu, Guo-bao
    Zhao, Gui-yan
    Yin, Lu
    Yin, Yi-xin
    Shen, Yu-li
    [J]. 2008 CHINESE CONTROL AND DECISION CONFERENCE, VOLS 1-11, 2008, : 2558 - 2561
  • [7] CNN-Based Dense Image Matching for Aerial Remote Sensing Images
    Ji, Shunping
    Liu, Jin
    Lu, Meng
    [J]. PHOTOGRAMMETRIC ENGINEERING AND REMOTE SENSING, 2019, 85 (06): : 415 - 424
  • [8] S-CNN-BASED SHIP DETECTION FROM HIGH-RESOLUTION REMOTE SENSING IMAGES
    Zhang, Ruiqian
    Yao, Jian
    Zhang, Kao
    Feng, Chen
    Zhang, Jiadong
    [J]. XXIII ISPRS CONGRESS, COMMISSION VII, 2016, 41 (B7): : 423 - 430
  • [9] Change detection based on Faster R-CNN for high-resolution remote sensing images
    Wang, Qing
    Zhang, Xiaodong
    Chen, Guanzhou
    Dai, Fan
    Gong, Yuanfu
    Zhu, Kun
    [J]. REMOTE SENSING LETTERS, 2018, 9 (10) : 923 - 932
  • [10] FPGA Implementation for CNN-Based Optical Remote Sensing Object Detection
    Zhang, Ning
    Wei, Xin
    Chen, He
    Liu, Wenchao
    [J]. ELECTRONICS, 2021, 10 (03) : 1 - 24