Enhancing Adversarial Transferability With Intermediate Layer Feature Attack on Synthetic Aperture Radar Images

被引:0
作者
Wan, Xuanshen [1 ]
Liu, Wei [1 ]
Niu, Chaoyang [1 ]
Lu, Wanjie [1 ]
Li, Yuanli [1 ]
机构
[1] Informat Engn Univ, Zhengzhou 450001, Peoples R China
基金
中国国家自然科学基金;
关键词
Perturbation methods; Closed box; Synthetic aperture radar; Generators; Data models; Radar polarimetry; Target recognition; Training data; Artificial neural networks; Training; Adversarial example; automatic target recognition (ATR); deep neural network (DNN); synthetic aperture radar (SAR); transferability; CONVOLUTIONAL NEURAL-NETWORK;
D O I
10.1109/JSTARS.2024.3507374
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
Synthetic aperture radar (SAR) automatic target recognition (ATR) systems based on deep neural network models are vulnerable to adversarial examples. Existing SAR adversarial attack algorithms require access to the network structure, parameters, and training data, which are often inaccessible in real-world scenarios. To address this problem, this study proposes an intermediate layer feature attack algorithm that does not rely on training data for the adversary model. Electromagnetic simulation is used to obtain the simulated SAR local data domain during the training stage. A lightweight generator, TinyResNet, is introduced to quickly construct adversarial examples through a one-step mapping process. In addition, the transferability of these examples across different models is improved by eliminating the intermediate layer features of the model. Finally, a domain-agnostic feature attention module is utilized to reduce discrepancies between different data domains from a model perspective, further improving the transferability of adversarial examples across domains. Experimental results on five SAR datasets of ground vehicles, ships, and scene types demonstrate that the proposed algorithm outperforms 13 mainstream adversarial attack algorithms in terms of cross-model and cross-data domain transferability. In particular, the proposed method improves the cross-domain attack success rate by 43.74%-48.88% on the MSTAR dataset.
引用
收藏
页码:1638 / 1655
页数:18
相关论文
共 62 条
  • [1] Carlini N, 2017, Arxiv, DOI arXiv:1608.04644
  • [2] HopSkipJumpAttack: A Query-Efficient Decision-Based Attack
    Chen, Jianbo
    Jordan, Michael, I
    Wainwright, Martin J.
    [J]. 2020 IEEE SYMPOSIUM ON SECURITY AND PRIVACY (SP 2020), 2020, : 1277 - 1294
  • [3] Chen PY, 2017, PROCEEDINGS OF THE 10TH ACM WORKSHOP ON ARTIFICIAL INTELLIGENCE AND SECURITY, AISEC 2017, P15, DOI 10.1145/3128572.3140448
  • [4] Target Classification Using the Deep Convolutional Networks for SAR Images
    Chen, Sizhe
    Wang, Haipeng
    Xu, Feng
    Jin, Ya-Qiu
    [J]. IEEE TRANSACTIONS ON GEOSCIENCE AND REMOTE SENSING, 2016, 54 (08): : 4806 - 4817
  • [5] Convolutional Neural Network With Data Augmentation for SAR Target Recognition
    Ding, Jun
    Chen, Bo
    Liu, Hongwei
    Huang, Mengyuan
    [J]. IEEE GEOSCIENCE AND REMOTE SENSING LETTERS, 2016, 13 (03) : 364 - 368
  • [6] Boosting Adversarial Attacks with Momentum
    Dong, Yinpeng
    Liao, Fangzhou
    Pang, Tianyu
    Su, Hang
    Zhu, Jun
    Hu, Xiaolin
    Li, Jianguo
    [J]. 2018 IEEE/CVF CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION (CVPR), 2018, : 9185 - 9193
  • [7] Fast C&W: A Fast Adversarial Attack Algorithm to Fool SAR Target Recognition With Deep Convolutional Neural Networks
    Du, Chuan
    Huo, Chaoying
    Zhang, Lei
    Chen, Bo
    Yuan, Yijun
    [J]. IEEE GEOSCIENCE AND REMOTE SENSING LETTERS, 2022, 19
  • [8] TAN: A Transferable Adversarial Network for DNN-Based UAV SAR Automatic Target Recognition Models
    Du, Meng
    Sun, Yuxin
    Sun, Bing
    Wu, Zilong
    Luo, Lan
    Bi, Daping
    Du, Mingyang
    [J]. DRONES, 2023, 7 (03)
  • [9] Local Aggregative Attack on SAR Image Classification Models
    Du, Meng
    Bi, Da -Ping
    [J]. 2022 IEEE 6TH ADVANCED INFORMATION TECHNOLOGY, ELECTRONIC AND AUTOMATION CONTROL CONFERENCE (IAEAC), 2022, : 1519 - 1524
  • [10] Adaptive Hierarchical Multinomial Latent Model With Hybrid Kernel Function for SAR Image Semantic Segmentation
    Duan, Yiping
    Liu, Fang
    Jiao, Licheng
    Tao, Xiaoming
    Wu, Jie
    Shi, Cheng
    Wimmers, Martin Onno
    [J]. IEEE TRANSACTIONS ON GEOSCIENCE AND REMOTE SENSING, 2018, 56 (10): : 5997 - 6015