Attacking convolutional neural network using differential evolution

被引:20
|
作者
Su J. [1 ]
Vargas D.V. [2 ]
Sakurai K. [2 ]
机构
[1] Graduate School of Information Science and Electrical Engineering, Kyushu University, Fukuoka
[2] Faculty of Information Science and Electrical Engineering, Kyushu University, Fukuoka
来源
IPSJ Transactions on Computer Vision and Applications | 2019年 / 11卷 / 01期
基金
日本科学技术振兴机构;
关键词
Adversarial machine learning; Artificial intelligence; Image processing;
D O I
10.1186/s41074-019-0053-3
中图分类号
学科分类号
摘要
The output of convolutional neural networks (CNNs) has been shown to be discontinuous which can make the CNN image classifier vulnerable to small well-tuned artificial perturbation. That is, images modified by conducting such alteration (i.e., adversarial perturbation) that make little difference to the human eyes can completely change the CNN classification results. In this paper, we propose a practical attack using differential evolution (DE) for generating effective adversarial perturbations. We comprehensively evaluate the effectiveness of different types of DEs for conducting the attack on different network structures. The proposed method only modifies five pixels (i.e., few-pixel attack), and it is a black-box attack which only requires the miracle feedback of the target CNN systems. The results show that under strict constraints which simultaneously control the number of pixels changed and overall perturbation strength, attacking can achieve 72.29%, 72.30%, and 61.28% non-targeted attack success rates, with 88.68%, 83.63%, and 73.07% confidence on average, on three common types of CNNs. The attack only requires modifying five pixels with 20.44, 14.28, and 22.98 pixel value distortion. Thus, we show that current deep neural networks are also vulnerable to such simpler black-box attacks even under very limited attack conditions. © 2019, The Author(s).
引用
收藏
相关论文
共 50 条
  • [21] Maize Leaf Disease Detection Using Convolutional Neural Network
    Sentamilselvan, K.
    Rithanya, M. Hari
    Dharshini, T., V
    Kumar, S. M. Akash Nithish
    Aarthi, R.
    PROCEEDINGS OF THIRD DOCTORAL SYMPOSIUM ON COMPUTATIONAL INTELLIGENCE, DOSCI 2022, 2023, 479 : 247 - 260
  • [22] Butterfly Species Identification Using Convolutional Neural Network (CNN)
    Arzar, Nur Nabila Kamaron
    Sabri, Nurbaity
    Johari, Nur Farahin Mohd
    Shari, Anis Amilah
    Noordin, Mohd Rahmat Mohd
    Ibrahim, Shafaf
    2019 IEEE INTERNATIONAL CONFERENCE ON AUTOMATIC CONTROL AND INTELLIGENT SYSTEMS (I2CACIS), 2019, : 221 - 224
  • [23] Automated Classification of the Tympanic Membrane Using a Convolutional Neural Network
    Lee, Je Yeon
    Choi, Seung-Ho
    Chung, Jong Woo
    APPLIED SCIENCES-BASEL, 2019, 9 (09):
  • [24] Detection of Corona Virus Infection using Convolutional Neural Network
    Sameera, Al
    Gaidhane, Vilas H.
    2022 IEEE INTERNATIONAL IOT, ELECTRONICS AND MECHATRONICS CONFERENCE (IEMTRONICS), 2022, : 18 - 23
  • [25] Measurement of EDMed surfaces roughness using convolutional neural network
    Kumar, Amit
    Pradhan, Mohan Kumar
    Das, Raja
    PROCEEDINGS OF THE INSTITUTION OF MECHANICAL ENGINEERS PART E-JOURNAL OF PROCESS MECHANICAL ENGINEERING, 2023, : 877 - 887
  • [26] Measuring Brinell hardness indentation by using a convolutional neural network
    Tanaka, Yukimi
    Seino, Yutaka
    Hattori, Koichiro
    MEASUREMENT SCIENCE AND TECHNOLOGY, 2019, 30 (06)
  • [27] Face and Face Mask Detection Using Convolutional Neural Network
    Zainal, Muhammad Mustaqim
    Ambar, Radzi
    Abd Wahab, Mohd Helmy
    Poad, Hazwaj Mhd
    Abd Jamil, Muhammad Mahadi
    Choon, Chew Chang
    INTELLIGENT HUMAN COMPUTER INTERACTION, IHCI 2021, 2022, 13184 : 597 - 609
  • [28] Abnormality classification using convolutional neural network for echocardiographic images
    Ayesha Heena
    Nagashettappa Biradar
    Najmuddin Maroof
    Multimedia Tools and Applications, 2024, 83 : 42817 - 42835
  • [29] Abnormality classification using convolutional neural network for echocardiographic images
    Heena, Ayesha
    Biradar, Nagashettappa
    Maroof, Najmuddin
    MULTIMEDIA TOOLS AND APPLICATIONS, 2023, 83 (14) : 42817 - 42835
  • [30] A Color Adjustment Convolutional Neural Network for Image SuperResolution
    Kim, Jong Hyeong
    Jang, Jae Won
    Jang, Kyung Jae
    2018 INTERNATIONAL CONFERENCE ON ELECTRONICS, INFORMATION, AND COMMUNICATION (ICEIC), 2018, : 571 - 572