Mitigating adversarial evasion attacks by deep active learning for medical image classification

被引:0
|
作者
Usman Ahmed
Jerry Chun-Wei Lin
Gautam Srivastava
机构
[1] Western Norway University of Applied Sciences,Department of Computer Science, Electrical Engineering and Mathematical Sciences
[2] Brandon University,Department of Mathematics & Computer Science
[3] China Medical University,Research Centre for Interneural Computing
来源
关键词
Adversarial attack; IoMT; Medical image analysis; Deep learning;
D O I
暂无
中图分类号
学科分类号
摘要
In the Internet of Medical Things (IoMT), collaboration among institutes can help complex medical and clinical analysis of disease. Deep neural networks (DNN) require training models on large, diverse patients to achieve expert clinician-level performance. Clinical studies do not contain diverse patient populations for analysis due to limited availability and scale. DNN models trained on limited datasets are thereby constraining their clinical performance upon deployment at a new hospital. Therefore, there is significant value in increasing the availability of diverse training data. This research proposes institutional data collaboration alongside an adversarial evasion method to keep the data secure. The model uses a federated learning approach to share model weights and gradients. The local model first studies the unlabeled samples classifying them as adversarial or normal. The method then uses a centroid-based clustering technique to cluster the sample images. After that, the model predicts the output of the selected images, and active learning methods are implemented to choose the sub-sample of the human annotation task. The expert within the domain takes the input and confidence score and validates the samples for the model’s training. The model re-trains on the new samples and sends the updated weights across the network for collaboration purposes. We use the InceptionV3 and VGG16 model under fabricated inputs for simulating Fast Gradient Signed Method (FGSM) attacks. The model was able to evade attacks and achieve a high accuracy rating of 95%.
引用
收藏
页码:41899 / 41910
页数:11
相关论文
共 50 条
  • [41] Adversarial Attacks on Deep Learning-Based Methods for Network Traffic Classification
    Li, Meimei
    Xu, Yiyan
    Li, Nan
    Jin, Zhongfeng
    [J]. 2022 IEEE INTERNATIONAL CONFERENCE ON TRUST, SECURITY AND PRIVACY IN COMPUTING AND COMMUNICATIONS, TRUSTCOM, 2022, : 1123 - 1128
  • [42] Fooling AI with AI: An Accelerator for Adversarial Attacks on Deep Learning Visual Classification
    Guo, Haoqiang
    Peng, Lu
    Zhang, Jian
    Qi, Fang
    Duan, Lide
    [J]. 2019 IEEE 30TH INTERNATIONAL CONFERENCE ON APPLICATION-SPECIFIC SYSTEMS, ARCHITECTURES AND PROCESSORS (ASAP 2019), 2019, : 136 - 136
  • [43] Minimum Power Adversarial Attacks in Communication Signal Modulation Classification with Deep Learning
    Da Ke
    Xiang Wang
    Kaizhu Huang
    Haoyuan Wang
    Zhitao Huang
    [J]. Cognitive Computation, 2023, 15 : 580 - 589
  • [44] Minimum Power Adversarial Attacks in Communication Signal Modulation Classification with Deep Learning
    Ke, Da
    Wang, Xiang
    Huang, Kaizhu
    Wang, Haoyuan
    Huang, Zhitao
    [J]. COGNITIVE COMPUTATION, 2023, 15 (02) : 580 - 589
  • [45] Evaluating Resilience of Encrypted Traffic Classification against Adversarial Evasion Attacks
    Maarouf, Ramy
    Sattar, Danish
    Matrawy, Ashraf
    [J]. 26TH IEEE SYMPOSIUM ON COMPUTERS AND COMMUNICATIONS (IEEE ISCC 2021), 2021,
  • [46] A Deep Ensemble-Based Wireless Receiver Architecture for Mitigating Adversarial Attacks in Automatic Modulation Classification
    Sahay, Rajeev
    Brinton, Christopher G.
    Love, David J.
    [J]. IEEE TRANSACTIONS ON COGNITIVE COMMUNICATIONS AND NETWORKING, 2022, 8 (01) : 71 - 85
  • [47] Malicious Adversarial Attacks on Medical Image Analysis
    Winter, Thomas C.
    [J]. AMERICAN JOURNAL OF ROENTGENOLOGY, 2020, 215 (05) : W55 - W55
  • [48] Adversarial attacks on deep-learning-based SAR image target recognition
    Huang, Teng
    Zhang, Qixiang
    Liu, Jiabao
    Hou, Ruitao
    Wang, Xianmin
    Li, Ya
    [J]. JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2020, 162
  • [49] Recent Advancements and Future Prospects in Active Deep Learning for Medical Image Segmentation and Classification
    Mahmood, Tariq
    Rehman, Amjad
    Saba, Tanzila
    Nadeem, Lubna
    Bahaj, Saeed Ali Omer
    [J]. IEEE ACCESS, 2023, 11 : 113623 - 113652
  • [50] Mitigating Adversarial Attacks in Federated Learning with Trusted Execution Environments
    Queyrut, Simon
    Schiavoni, Valerio
    Felber, Pascal
    [J]. 2023 IEEE 43RD INTERNATIONAL CONFERENCE ON DISTRIBUTED COMPUTING SYSTEMS, ICDCS, 2023, : 626 - 637