Disruption of Object Recognition Systems

被引:0
作者
Das, Utsav [1 ]
Gupta, Aman [1 ]
Bagga, Onkar Singh [1 ]
Sabnis, Manoj [1 ]
机构
[1] Vivekanand Educ Soc, Dept Informat Technol, Inst Technol, Mumbai, Maharashtra, India
来源
INTELLIGENT COMPUTING, INFORMATION AND CONTROL SYSTEMS, ICICCS 2019 | 2020年 / 1039卷
关键词
Object recognition; Deep learning; Adversarial attacks;
D O I
10.1007/978-3-030-30465-2_56
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
In recent times, deep neural networks are being used in a wide variety of applications such as autonomous vehicles, medical imaging and surveillance. While they are becoming increasingly powerful, it is possible to disrupt their task by crafting adversarial inputs. These inputs are essentially perturbations added to the original inputs so that the application using the network, such as an object recognizer, is unable to classify the object in the image. Crafting such inputs to disrupt such a recognition task is termed an adversarial attack. Here, we implement two disruption strategies, Fast Gradient Sign Method (FGSM) and generating perturbations using a generator network. While FGSM requires access to the gradient calculated by the classifier with respect to the input image, the generator trains simultaneously with the classifier network to learn how to craft perturbations. Once the generator network is trained with a particular classifier (say, VGG16), it can disrupt other classifier networks in a black-box fashion as well. Using the same dataset, in this case CIFAR-10, it is possible to adversarially train the classifier to make it more robust to perturbed images. This involves training the classifier on the CIFAR-10 images with both the original images and the ones perturbed by the generator. In experiments, the attack using the generator achieves higher disruption accuracies than FGSM on very deep networks.
引用
收藏
页码:506 / 513
页数:8
相关论文
共 50 条
  • [1] Reconstruction-Free Object Recognition Scheme in Lensless Imaging Systems
    Chen Kaiyu
    Li Ying
    Li Zhengdai
    Guo Youming
    LASER & OPTOELECTRONICS PROGRESS, 2024, 61 (08)
  • [2] Enhancing image categorization with the quantized object recognition model in surveillance systems
    Wang, Jinming
    Hu, Fengjun
    Abbas, Ghulam
    Albekairi, Mohammed
    Rashid, Nasr
    EXPERT SYSTEMS WITH APPLICATIONS, 2024, 238
  • [3] Visual object recognition for mobile tourist information systems
    Paletta, L
    Fritz, G
    Seifert, C
    Luley, P
    Almer, A
    MULTIMEDIA ON MOBILE DEVICES, 2005, 5684 : 190 - 197
  • [4] DeepRecog: Threefold underwater image deblurring and object recognition framework for AUV vision systems
    M. V. Pranav
    A. V. Shreyas Madhav
    Janaki Meena
    Multimedia Systems, 2022, 28 : 583 - 593
  • [5] DeepRecog: Threefold underwater image deblurring and object recognition framework for AUV vision systems
    Pranav, M. V.
    Shreyas Madhav, A. V.
    Meena, Janaki
    MULTIMEDIA SYSTEMS, 2022, 28 (02) : 583 - 593
  • [6] Real-time textured object recognition on distributed systems
    You, J
    Zhu, WP
    Cohen, HA
    Pissaloux, E
    IMAGE ANALYSIS APPLICATIONS AND COMPUTER GRAPHICS, 1995, 1024 : 99 - 106
  • [7] Privacy-Preserving Object Recognition with Explainability in Smart Systems
    Abbasi, Wisam
    Mori, Paolo
    Saracino, Andrea
    COMPUTER SECURITY. ESORICS 2023 INTERNATIONAL WORKSHOPS, CPS4CIP, PT II, 2024, 14399 : 519 - 534
  • [8] YOLO-ORE: A Deep Learning-Aided Object Recognition Approach for Radar Systems
    Huang, Tai-Yuan
    Lee, Ming-Chun
    Yang, Chia-Hsing
    Lee, Ta-Sung
    IEEE TRANSACTIONS ON VEHICULAR TECHNOLOGY, 2023, 72 (05) : 5715 - 5731
  • [9] Comparison of Stock "Trading" Decision Support Systems Based on Object Recognition Algorithms on Candlestick Charts
    Temur, Gunay
    Birogul, Serdar
    Kose, Utku
    IEEE ACCESS, 2024, 12 : 83551 - 83562
  • [10] Augmented Reality Aspects of Object Recognition in Driver Support Systems
    Paroczi, Zsombor
    Nagy, Istvan
    Gaspar-Papanek, Csaba
    Kardkovacs, Zsolt T.
    Varga, Endre
    Siegler, Adam
    Lucz, Peter
    JOURNAL OF ADVANCED COMPUTATIONAL INTELLIGENCE AND INTELLIGENT INFORMATICS, 2012, 16 (02) : 284 - 296