Characterizing Adversarial Samples of Convolutional Neural Networks

被引:0
|
作者
Jiang, Cheng [1 ]
Zhao, Qiyang [1 ]
Liu, Yuzhong [2 ]
机构
[1] Beihang Univ, NLSDE, Beijing, Peoples R China
[2] Tech Infrastruct Grp JD, Beijing, Peoples R China
关键词
D O I
暂无
中图分类号
R318 [生物医学工程];
学科分类号
0831 ;
摘要
Adversarial samples aim to make deep convolutional neural networks predict incorrectly under small perturbations. This paper investigates non-targeted adversarial samples of convolutional neural networks and makes a primitive attempt to characterize adversarial samples. Two observations are made: first, adversarial perturbations are mainly in the high-frequency domain; second, adversarial categories usually have strong semantic relevance to the original categories. Our two observations provide a solid basis to understand the behavior of convolutional neural networks and thus to improve their robustness against adversarial samples.
引用
收藏
页数:6
相关论文
共 50 条
  • [1] Toward Intelligent Detection Modelling for Adversarial Samples in Convolutional Neural Networks
    Qiao, Zhuobiao
    Dong, Mianxiong
    Ota, Kaoru
    Wu, Jun
    2018 IEEE 23RD INTERNATIONAL WORKSHOP ON COMPUTER AIDED MODELING AND DESIGN OF COMMUNICATION LINKS AND NETWORKS (CAMAD), 2018, : 74 - 79
  • [2] Generating Adversarial Samples with Convolutional Neural Network
    Qiu, Zhongxi
    He, Xiaofeng
    Chen, Lingna
    Liu, Hualing
    Zuo, LianPeng
    PROCEEDINGS OF 2019 INTERNATIONAL CONFERENCE ON PATTERN RECOGNITION AND ARTIFICIAL INTELLIGENCE (PRAI 2019), 2019, : 41 - 45
  • [3] Convolutional and generative adversarial neural networks in manufacturing
    Kusiak, Andrew
    INTERNATIONAL JOURNAL OF PRODUCTION RESEARCH, 2020, 58 (05) : 1594 - 1604
  • [4] Characterizing RNA Pseudouridylation by Convolutional Neural Networks
    He, Xuan
    Zhang, Sai
    Zhang, Yanqing
    Lei, Zhixin
    Jiang, Tao
    Zeng, Jianyang
    GENOMICS PROTEOMICS & BIOINFORMATICS, 2021, 19 (05) : 815 - 833
  • [5] InsideNet: A tool for characterizing convolutional neural networks
    Munoz-Martinez, Francisco
    Abellan, Jose L.
    Acacio, Manuel E.
    FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2019, 100 : 298 - 315
  • [6] Characterizing RNA Pseudouridylation by Convolutional Neural Networks
    Xuan He
    Sai Zhang
    Yanqing Zhang
    Zhixin Lei
    Tao Jiang
    Jianyang Zeng
    Genomics,Proteomics & Bioinformatics, 2021, 19 (05) : 815 - 833
  • [7] Characterizing RNA Pseudouridylation by Convolutional Neural Networks
    Xuan He
    Sai Zhang
    Yanqing Zhang
    Zhixin Lei
    Tao Jiang
    Jianyang Zeng
    Genomics,Proteomics & Bioinformatics, 2021, (05) : 815 - 833
  • [8] Characterizing and Taming Resolution in Convolutional Neural Networks
    Yan, Eddie
    Luo, Liang
    Ceze, Luis
    2021 IEEE INTERNATIONAL SYMPOSIUM ON WORKLOAD CHARACTERIZATION (IISWC 2021), 2021, : 189 - 200
  • [9] Adversarial Attacks in Modulation Recognition With Convolutional Neural Networks
    Lin, Yun
    Zhao, Haojun
    Ma, Xuefei
    Tu, Ya
    Wang, Meiyu
    IEEE TRANSACTIONS ON RELIABILITY, 2021, 70 (01) : 389 - 401
  • [10] Exploring adversarial examples and adversarial robustness of convolutional neural networks by mutual information
    Zhang J.
    Qian W.
    Cao J.
    Xu D.
    Neural Computing and Applications, 2024, 36 (23) : 14379 - 14394