Attacking convolutional neural network using differential evolution

被引:20
|
作者
Su J. [1 ]
Vargas D.V. [2 ]
Sakurai K. [2 ]
机构
[1] Graduate School of Information Science and Electrical Engineering, Kyushu University, Fukuoka
[2] Faculty of Information Science and Electrical Engineering, Kyushu University, Fukuoka
来源
IPSJ Transactions on Computer Vision and Applications | 2019年 / 11卷 / 01期
基金
日本科学技术振兴机构;
关键词
Adversarial machine learning; Artificial intelligence; Image processing;
D O I
10.1186/s41074-019-0053-3
中图分类号
学科分类号
摘要
The output of convolutional neural networks (CNNs) has been shown to be discontinuous which can make the CNN image classifier vulnerable to small well-tuned artificial perturbation. That is, images modified by conducting such alteration (i.e., adversarial perturbation) that make little difference to the human eyes can completely change the CNN classification results. In this paper, we propose a practical attack using differential evolution (DE) for generating effective adversarial perturbations. We comprehensively evaluate the effectiveness of different types of DEs for conducting the attack on different network structures. The proposed method only modifies five pixels (i.e., few-pixel attack), and it is a black-box attack which only requires the miracle feedback of the target CNN systems. The results show that under strict constraints which simultaneously control the number of pixels changed and overall perturbation strength, attacking can achieve 72.29%, 72.30%, and 61.28% non-targeted attack success rates, with 88.68%, 83.63%, and 73.07% confidence on average, on three common types of CNNs. The attack only requires modifying five pixels with 20.44, 14.28, and 22.98 pixel value distortion. Thus, we show that current deep neural networks are also vulnerable to such simpler black-box attacks even under very limited attack conditions. © 2019, The Author(s).
引用
收藏
相关论文
共 50 条
  • [1] Efficient Vehicle Recognition and Classification using Convolutional Neural Network
    San, Wei Jian
    Lim, Marcus Guozong
    Chuah, Joon Huang
    2018 IEEE INTERNATIONAL CONFERENCE ON AUTOMATIC CONTROL AND INTELLIGENT SYSTEMS (I2CACIS), 2018, : 117 - 122
  • [2] Autonomous motor vehicle categorisation using a convolutional neural network
    Cassar, Christian Paul
    Gatt, Thomas
    Briffa, Ivan
    2020 IEEE 16TH INTERNATIONAL CONFERENCE ON INTELLIGENT COMPUTER COMMUNICATION AND PROCESSING (ICCP 2020), 2020, : 337 - 342
  • [3] Image Synthesis using Convolutional Neural Network
    Bhat, Ganesh
    Dharwadkar, Shrikant
    Reddy, N. V. Subba
    Shivaprasad, G.
    2017 2ND IEEE INTERNATIONAL CONFERENCE ON RECENT TRENDS IN ELECTRONICS, INFORMATION & COMMUNICATION TECHNOLOGY (RTEICT), 2017, : 689 - 691
  • [4] Water Classification Using Convolutional Neural Network
    Asghar, Saira
    Gilanie, Ghulam
    Saddique, Mubbashar
    Ullah, Hafeez
    Mohamed, Heba G.
    Abbasi, Irshad Ahmed
    Abbas, Mohamed
    IEEE ACCESS, 2023, 11 : 78601 - 78612
  • [5] Emotion Recognition Using a Convolutional Neural Network
    Zatarain-Cabada, Ramon
    Lucia Barron-Estrada, Maria
    Gonzalez-Hernandez, Francisco
    Rodriguez-Rangel, Hector
    ADVANCES IN COMPUTATIONAL INTELLIGENCE, MICAI 2017, PT II, 2018, 10633 : 208 - 219
  • [6] Edge Detection Using Convolutional Neural Network
    Wang, Ruohui
    ADVANCES IN NEURAL NETWORKS - ISNN 2016, 2016, 9719 : 12 - 20
  • [7] Wheat Diseases Detection and Classification using Convolutional Neural Network (CNN)
    Hossen, Md Helal
    Mohibullah, Md
    Muzammel, Chowdhury Shahriar
    Ahmed, Tasniya
    Acharjee, Shuvra
    Panna, Momotaz Begum
    INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2022, 13 (11) : 719 - 726
  • [8] Automated Fingerlings Counting Using Convolutional Neural Network
    Lainez, Sheryl May D.
    Gonzales, Dennis B.
    2019 IEEE 4TH INTERNATIONAL CONFERENCE ON COMPUTER AND COMMUNICATION SYSTEMS (ICCCS 2019), 2019, : 67 - 72
  • [9] On Luminance Noise Removal Using Convolutional Neural Network
    Tsikalovsky, Dmitry
    Firsov, Georgii
    PROCEEDINGS OF THE 2021 IEEE CONFERENCE OF RUSSIAN YOUNG RESEARCHERS IN ELECTRICAL AND ELECTRONIC ENGINEERING (ELCONRUS), 2021, : 710 - 713
  • [10] Quality Assessment of Mangoes using Convolutional Neural Network
    Puno, John Carlo, V
    Billones, Robert Kerwin D.
    Bandala, Argel A.
    Dadios, Elmer P.
    Calilung, Edwin J.
    Joaquin, Arlene C.
    PROCEEDINGS OF THE IEEE 2019 9TH INTERNATIONAL CONFERENCE ON CYBERNETICS AND INTELLIGENT SYSTEMS (CIS) ROBOTICS, AUTOMATION AND MECHATRONICS (RAM) (CIS & RAM 2019), 2019, : 491 - 495