Toward Intelligent Detection Modelling for Adversarial Samples in Convolutional Neural Networks

被引:0
|
作者
Qiao, Zhuobiao [1 ]
Dong, Mianxiong [2 ]
Ota, Kaoru [2 ]
Wu, Jun [1 ]
机构
[1] Shanghai Jiao Tong Univ, Sch Elect Informat & Elect Engn, Shanghai, Peoples R China
[2] Muroran Inst Technol, Dept Informat & Elect Engn, Muroran, Hokkaido, Japan
基金
中国国家自然科学基金;
关键词
Adversarial samples; CNN attacks and detection; Large Margin Cosine Estimate;
D O I
暂无
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Deep Neural Networks (DNNs) are hierarchical nonlinear architectures that have been widely used in artificial intelligence applications. However, these models are vulnerable to adversarial perturbations which add changes slightly and are crafted explicitly to fool the model. Such attacks will cause the neural network to completely change its classification of data. Although various defense strategies have been proposed, existing defense methods have two limitations. First, the discovery success rate is not very high. Second, existing methods depend on the output of a particular layer in a specific learning structure. In this paper, we propose a powerful method for adversarial samples using Large Margin Cosine Estimate(LMCE). By iteratively calculating the large-margin cosine uncertainty estimates between the model predictions, the results can be regarded as a novel measurement of model uncertainty estimation and is available to detect adversarial samples by training using a simple machine learning algorithm. Comparing it with the way in which adversarial samples are generated, it is confirmed that this measurement can better distinguish hostile disturbances. We modeled deep neural network attacks and established defense mechanisms against various types of adversarial attacks. Classifier gets better performance than the baseline model. The approach is validated on a series of standard datasets including MNIST and CIFAR-10, outperforming previous ensemble method with strong statistical significance. Experiments indicate that our approach generalizes better across different architectures and attacks.
引用
收藏
页码:74 / 79
页数:6
相关论文
共 50 条
  • [1] Characterizing Adversarial Samples of Convolutional Neural Networks
    Jiang, Cheng
    Zhao, Qiyang
    Liu, Yuzhong
    2018 11TH INTERNATIONAL CONGRESS ON IMAGE AND SIGNAL PROCESSING, BIOMEDICAL ENGINEERING AND INFORMATICS (CISP-BMEI 2018), 2018,
  • [2] On a Detection Method of Adversarial Samples for Deep Neural Networks
    Govaers, Felix
    Baggenstoss, Paul
    2021 IEEE 24TH INTERNATIONAL CONFERENCE ON INFORMATION FUSION (FUSION), 2021, : 423 - 427
  • [3] Generating Adversarial Samples with Convolutional Neural Network
    Qiu, Zhongxi
    He, Xiaofeng
    Chen, Lingna
    Liu, Hualing
    Zuo, LianPeng
    PROCEEDINGS OF 2019 INTERNATIONAL CONFERENCE ON PATTERN RECOGNITION AND ARTIFICIAL INTELLIGENCE (PRAI 2019), 2019, : 41 - 45
  • [4] Intelligent Fault Detection via Dilated Convolutional Neural Networks
    Khan, Mohammad Azam
    Kim, Yong-Hwa
    Choo, Jaegul
    2018 IEEE INTERNATIONAL CONFERENCE ON BIG DATA AND SMART COMPUTING (BIGCOMP), 2018, : 729 - 731
  • [5] Toward Mobile Malware Detection Through Convolutional Neural Networks
    Lachtar, Nada
    Ibdah, Duha
    Bacha, Anys
    IEEE EMBEDDED SYSTEMS LETTERS, 2021, 13 (03) : 134 - 137
  • [6] Convolutional and generative adversarial neural networks in manufacturing
    Kusiak, Andrew
    INTERNATIONAL JOURNAL OF PRODUCTION RESEARCH, 2020, 58 (05) : 1594 - 1604
  • [7] Salient Object Detection Using Cascaded Convolutional Neural Networks and Adversarial Learning
    Tang, Youbao
    Wu, Xiangqian
    IEEE TRANSACTIONS ON MULTIMEDIA, 2019, 21 (09) : 2237 - 2247
  • [8] Vulnerable point detection and repair against adversarial attacks for convolutional neural networks
    Jie Gao
    Zhaoqiang Xia
    Jing Dai
    Chen Dang
    Xiaoyue Jiang
    Xiaoyi Feng
    International Journal of Machine Learning and Cybernetics, 2023, 14 : 4163 - 4192
  • [9] Vulnerable point detection and repair against adversarial attacks for convolutional neural networks
    Gao, Jie
    Xia, Zhaoqiang
    Dai, Jing
    Dang, Chen
    Jiang, Xiaoyue
    Feng, Xiaoyi
    INTERNATIONAL JOURNAL OF MACHINE LEARNING AND CYBERNETICS, 2023, 14 (12) : 4163 - 4192
  • [10] Intelligent Diagnosis for GIS with Small Samples Using a Novel Adversarial Transfer Learning in Convolutional Neural Network
    Wang Y.
    Yan J.
    Wang J.
    Geng Y.
    Liu Z.
    Diangong Jishu Xuebao/Transactions of China Electrotechnical Society, 2022, 37 (09): : 2150 - 2160