Targeted Attack of Deep Hashing Via Prototype-Supervised Adversarial Networks

被引:11
|
作者
Zhang, Zheng [1 ,2 ]
Wang, Xunguang [3 ]
Lu, Guangming [3 ]
Shen, Fumin [4 ,5 ]
Zhu, Lei [6 ]
机构
[1] Harbin Inst Technol, Shenzhen Key Lab Visual Object Detect & Recognit, Shenzhen 518055, Peoples R China
[2] Peng Cheng Lab, Shenzhen 518055, Peoples R China
[3] Harbin Inst Technol, Sch Comp Sci & Technol, Shenzhen 518055, Peoples R China
[4] Univ Elect Sci & Technol China, Ctr Future Media, Chengdu 610054, Peoples R China
[5] Univ Elect Sci & Technol China, Sch Comp Sci & Engn, Chengdu 610054, Peoples R China
[6] Shandong Normal Univ, Sch Informat Sci & Engn, Jinan 47856, Shandong, Peoples R China
基金
中国国家自然科学基金;
关键词
Semantics; Prototypes; Generators; Optimization; Cats; Binary codes; Task analysis; Adversarial example; targeted attack; deep hashing; similarity retrieval; generative adversarial network; IMAGE RETRIEVAL;
D O I
10.1109/TMM.2021.3097506
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Due to its powerful capability of representation learning and efficient computation, deep hashing has made significant progress in large-scale image retrieval. It has been recognized that deep neural networks are vulnerable to adversarial examples, which is a practical secure problem but seldom studied in deep hashing-based retrieval field. In this paper, we propose a novel prototype-supervised adversarial network (ProS-GAN), which formulates a flexible generative architecture for efficient and effective targeted hashing attack. To the best of our knowledge, this is one of the first generation-based methods to attack deep hashing networks. Generally, our proposed framework consists of three parts, i.e., a PrototypeNet, a Generator and a Discriminator. Specifically, the designed PrototypeNet embeds the target label into the semantic representation and learns the prototype code as the category-level representative of the target label. Moreover, the semantic representation and the original image are jointly fed into the generator for flexible targeted attack. Particularly, the prototype code is adopted to supervise the generator to construct the targeted adversarial example by minimizing the Hamming distance between the hash code of the adversarial example and the prototype code. Furthermore, the generator fools the discriminator to simultaneously encourage the adversarial examples visually realistic and the semantic representation informative. Extensive experiments demonstrate that the proposed framework can efficiently produce adversarial examples with better targeted attack performance and transferability over state-of-the-art targeted attack methods of deep hashing. The source code is available at https://github.com/xunguangwang/ProS-GAN_Trans.
引用
收藏
页码:3392 / 3404
页数:13
相关论文
共 50 条
  • [11] Deep Discriminative Supervised Hashing via Siamese Network
    Li, Yang
    Miao, Zhuang
    Wang, Jiabao
    Zhang, Yafei
    Li, Hang
    IEICE TRANSACTIONS ON INFORMATION AND SYSTEMS, 2017, E100D (12) : 3036 - 3040
  • [12] Supervised deep convolutional generative adversarial networks
    Ocal, Abdurrahman
    Ozbakir, Lale
    NEUROCOMPUTING, 2021, 449 : 389 - 398
  • [13] DeHiB: Deep Hidden Backdoor Attack on Semi-supervised Learning via Adversarial Perturbation
    Yan, Zhicong
    Li, Gaolei
    Tian, Yuan
    Wu, Jun
    Li, Shenghong
    Chen, Mingzhe
    Poor, H. Vincent
    THIRTY-FIFTH AAAI CONFERENCE ON ARTIFICIAL INTELLIGENCE, THIRTY-THIRD CONFERENCE ON INNOVATIVE APPLICATIONS OF ARTIFICIAL INTELLIGENCE AND THE ELEVENTH SYMPOSIUM ON EDUCATIONAL ADVANCES IN ARTIFICIAL INTELLIGENCE, 2021, 35 : 10585 - 10593
  • [14] ADVERSARIAL WATERMARKING TO ATTACK DEEP NEURAL NETWORKS
    Wang, Gengxing
    Chen, Xinyuan
    Xu, Chang
    2019 IEEE INTERNATIONAL CONFERENCE ON ACOUSTICS, SPEECH AND SIGNAL PROCESSING (ICASSP), 2019, : 1962 - 1966
  • [15] WeGAN: Deep Image Hashing With Weighted Generative Adversarial Networks
    Wang, Yuebin
    Zhang, Liqiang
    Nie, Feiping
    Li, Xingang
    Chen, Zhijun
    Wang, Faqiang
    IEEE TRANSACTIONS ON MULTIMEDIA, 2020, 22 (06) : 1458 - 1469
  • [16] Self-Supervised Adversarial Hashing Networks for Cross-Modal Retrieval
    Li, Chao
    Deng, Cheng
    Li, Ning
    Liu, Wei
    Gao, Xinbo
    Tao, Dacheng
    2018 IEEE/CVF CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION (CVPR), 2018, : 4242 - 4251
  • [17] Efficient Training of Very Deep Neural Networks for Supervised Hashing
    Zhang, Ziming
    Chen, Yuting
    Saligrama, Venkatesh
    2016 IEEE CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION (CVPR), 2016, : 1487 - 1495
  • [18] Deep kernel supervised hashing for node classification in structural networks
    Guo, Jia-Nan
    Mao, Xian-Ling
    Lin, Shu-Yang
    Wei, Wei
    Huang, Heyan
    INFORMATION SCIENCES, 2021, 569 : 1 - 12
  • [19] Diversity Adversarial Training against Adversarial Attack on Deep Neural Networks
    Kwon, Hyun
    Lee, Jun
    SYMMETRY-BASEL, 2021, 13 (03):
  • [20] Pulmonary Nodules Image Retrieval via Supervised Deep Hashing
    Qi, Yongjun
    Gu, Junhua
    Geng, Juanping
    Tian, Zepei
    Su, Yingru
    Zhang, Yajuan
    THIRD INTERNATIONAL SYMPOSIUM ON IMAGE COMPUTING AND DIGITAL MEDICINE (ISICDM 2019), 2019, : 152 - 156