Improving robustness with image filtering

被引:0
|
作者
Terzi, Matteo [2 ]
Carletti, Mattia [1 ,2 ]
Susto, Gian Antonio [1 ,2 ]
机构
[1] Univ Padua, Human Inspired Technol Res Ctr, Padua, Italy
[2] Univ Padua, Dept Informat Engn, Padua, Italy
关键词
Robustness; Adversarial attacks and defenses; Adversarial training; Deep Neural Networks;
D O I
10.1016/j.neucom.2024.127927
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Adversarial robustness is one of the most challenging problems in Deep Learning and Computer Vision research. State-of-the-art techniques to enforce robustness are based on Adversarial Training, a computationally costly optimization procedure. For this reason, many alternative solutions have been proposed, but none proved effective under stronger or adaptive attacks. This paper presents Image-Graph Extractor (IGE), a new image filtering scheme that extracts the fundamental nodes of an image and their connections through a graph structure. By utilizing the IGE representation, we have developed a new defense technique, Filtering as a Defense, which prevents attackers from creating malicious patterns that can deceive image classifiers. Moreover, we show that data augmentation with filtered images effectively improves the model's robustness to data corruptions. We validate our techniques on Convolutional Neural Networks on CIFAR-10, CIFAR-100, and ImageNet.
引用
收藏
页数:11
相关论文
共 50 条
  • [1] Low-Pass Image Filtering to Achieve Adversarial Robustness
    Ziyadinov, Vadim
    Tereshonok, Maxim
    SENSORS, 2023, 23 (22)
  • [2] Between-Class Adversarial Training for Improving Adversarial Robustness of Image Classification
    Wang, Desheng
    Jin, Weidong
    Wu, Yunpu
    SENSORS, 2023, 23 (06)
  • [3] A Universal Framework for Improving the Robustness of Coverless Image Steganography Based on Image Restoration
    Meng, Laijin
    Li, Fan
    Jiang, Xinghao
    Xu, Qiang
    IEEE TRANSACTIONS ON CIRCUITS AND SYSTEMS FOR VIDEO TECHNOLOGY, 2025, 35 (01) : 922 - 937
  • [4] Improving Robustness of Passive Source Localization via Convex Optimization Based Mode Filtering
    Huang, Lu
    Fan, Shuangshuang
    Xu, Wen
    Yang, T. C.
    OCEANS 2016 - SHANGHAI, 2016,
  • [5] Research on Improving Image Recognition Robustness by Combining Multiple Features with Associative Memory
    Guo, Dongwei
    Wang, Zhe
    6TH INTERNATIONAL CONFERENCE ON COMPUTER-AIDED DESIGN, MANUFACTURING, MODELING AND SIMULATION (CDMMS 2018), 2018, 1967
  • [6] Improving the robustness of DCT-based image watermarking against JPEG compression
    Lin, Shinfeng D.
    Shie, Shih-Chieh
    Guo, J. Y.
    COMPUTER STANDARDS & INTERFACES, 2010, 32 (1-2) : 54 - 60
  • [7] IMPROVING ROBUSTNESS OF DEEP NETWORKS USING CLUSTER-BASED ADVERSARIAL TRAINING
    Rasheed, Bader
    Khan, Adil
    RUSSIAN LAW JOURNAL, 2023, 11 (09) : 412 - 420
  • [8] Improving the Robustness of JPEG Steganography With Robustness Cost
    Zhang, Jimin
    Zhao, Xianfeng
    He, Xiaolei
    Zhang, Hong
    IEEE SIGNAL PROCESSING LETTERS, 2022, 29 : 164 - 168
  • [9] On Connections Between Regularizations for Improving DNN Robustness
    Guo, Yiwen
    Chen, Long
    Chen, Yurong
    Zhang, Changshui
    IEEE TRANSACTIONS ON PATTERN ANALYSIS AND MACHINE INTELLIGENCE, 2021, 43 (12) : 4469 - 4476
  • [10] Improving Accuracy and Robustness in HF-RFID-Based Indoor Positioning With Kalman Filtering and Tukey Smoothing
    Shirehjini, Ali Asghar Nazari
    Shirmohammadi, Shervin
    IEEE TRANSACTIONS ON INSTRUMENTATION AND MEASUREMENT, 2020, 69 (11) : 9190 - 9202