Mitigating adversarial evasion attacks by deep active learning for medical image classification

被引:0
|
作者
Usman Ahmed
Jerry Chun-Wei Lin
Gautam Srivastava
机构
[1] Western Norway University of Applied Sciences,Department of Computer Science, Electrical Engineering and Mathematical Sciences
[2] Brandon University,Department of Mathematics & Computer Science
[3] China Medical University,Research Centre for Interneural Computing
来源
关键词
Adversarial attack; IoMT; Medical image analysis; Deep learning;
D O I
暂无
中图分类号
学科分类号
摘要
In the Internet of Medical Things (IoMT), collaboration among institutes can help complex medical and clinical analysis of disease. Deep neural networks (DNN) require training models on large, diverse patients to achieve expert clinician-level performance. Clinical studies do not contain diverse patient populations for analysis due to limited availability and scale. DNN models trained on limited datasets are thereby constraining their clinical performance upon deployment at a new hospital. Therefore, there is significant value in increasing the availability of diverse training data. This research proposes institutional data collaboration alongside an adversarial evasion method to keep the data secure. The model uses a federated learning approach to share model weights and gradients. The local model first studies the unlabeled samples classifying them as adversarial or normal. The method then uses a centroid-based clustering technique to cluster the sample images. After that, the model predicts the output of the selected images, and active learning methods are implemented to choose the sub-sample of the human annotation task. The expert within the domain takes the input and confidence score and validates the samples for the model’s training. The model re-trains on the new samples and sends the updated weights across the network for collaboration purposes. We use the InceptionV3 and VGG16 model under fabricated inputs for simulating Fast Gradient Signed Method (FGSM) attacks. The model was able to evade attacks and achieve a high accuracy rating of 95%.
引用
收藏
页码:41899 / 41910
页数:11
相关论文
共 50 条
  • [31] Adversarial Attacks on Deep-Learning Based Radio Signal Classification
    Sadeghi, Meysam
    Larsson, Erik G.
    [J]. IEEE WIRELESS COMMUNICATIONS LETTERS, 2019, 8 (01) : 213 - 216
  • [32] Adversarial Deep Ensemble: Evasion Attacks and Defenses for Malware Detection
    Li, Deqiang
    Li, Qianmu
    [J]. IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2020, 15 : 3886 - 3900
  • [33] Adversarial Evasion Attacks to Deep Neural Networks in ECR Models
    Nemoto, Shota
    Rajapaksha, Subhash
    Perouli, Despoina
    [J]. HEALTHINF: PROCEEDINGS OF THE 15TH INTERNATIONAL JOINT CONFERENCE ON BIOMEDICAL ENGINEERING SYSTEMS AND TECHNOLOGIES - VOL 5: HEALTHINF, 2021, : 135 - 141
  • [34] Adversarial Attacks and Defenses in Deep Learning
    Ren, Kui
    Zheng, Tianhang
    Qin, Zhan
    Liu, Xue
    [J]. ENGINEERING, 2020, 6 (03) : 346 - 360
  • [35] Adversarial attacks on deep learning models for fatty liver disease classification by modification of ultrasound image reconstruction method
    Byra, Michal
    Styczynski, Grzegorz
    Szmigielski, Cezary
    Kalinowski, Piotr
    Michalowski, Lukasz
    Paluszkiewicz, Rafal
    Ziarkiewicz-Wroblewska, Bogna
    Zieniewicz, Krzysztof
    Nowicki, Andrzej
    [J]. PROCEEDINGS OF THE 2020 IEEE INTERNATIONAL ULTRASONICS SYMPOSIUM (IUS), 2020,
  • [36] Adversarial attacks on medical machine learning
    Finlayson, Samuel G.
    Bowers, John D.
    Ito, Joichi
    Zittrain, Jonathan L.
    Beam, Andrew L.
    Kohane, Isaac S.
    [J]. SCIENCE, 2019, 363 (6433) : 1287 - 1289
  • [37] Probabilistic medical image imputation via deep adversarial learning
    Raad, Ragheb
    Patel, Dhruv
    Hsu, Chiao-Chih
    Kothapalli, Vijay
    Ray, Deep
    Varghese, Bino
    Hwang, Darryl
    Gill, Inderbir
    Duddalwar, Vinay
    Oberai, Assad A.
    [J]. ENGINEERING WITH COMPUTERS, 2022, 38 (05) : 3975 - 3986
  • [38] A Survey on Adversarial Deep Learning Robustness in Medical Image Analysis
    Apostolidis, Kyriakos D.
    Papakostas, George A.
    [J]. ELECTRONICS, 2021, 10 (17)
  • [39] Probabilistic medical image imputation via deep adversarial learning
    Ragheb Raad
    Dhruv Patel
    Chiao-Chih Hsu
    Vijay Kothapalli
    Deep Ray
    Bino Varghese
    Darryl Hwang
    Inderbir Gill
    Vinay Duddalwar
    Assad A. Oberai
    [J]. Engineering with Computers, 2022, 38 : 3975 - 3986
  • [40] Adversarial Attacks on Deep Learning-Based Methods for Network Traffic Classification
    Li, Meimei
    Xu, Yiyan
    Li, Nan
    Jin, Zhongfeng
    [J]. 2022 IEEE INTERNATIONAL CONFERENCE ON TRUST, SECURITY AND PRIVACY IN COMPUTING AND COMMUNICATIONS, TRUSTCOM, 2022, : 1123 - 1128