DeepIris: An ensemble approach to defending Iris recognition classifiers against Adversarial Attacks

被引:4
|
作者
Tamizhiniyan, S. R. [1 ]
Ojha, Aman [1 ]
Meenakshi, K. [2 ]
Maragatham, G. [2 ]
机构
[1] SRM Inst Sci & Technol, Dept Comp Sci & Engn, Kattankulathur, India
[2] SRM Inst Sci & Technol, Dept Informat Technol, Kattankulathur, India
来源
2021 INTERNATIONAL CONFERENCE ON COMPUTER COMMUNICATION AND INFORMATICS (ICCCI) | 2021年
关键词
biometrics; Deep convolutional Neural Networks; adversarial attack; Defense method; encoder; security; iris classification;
D O I
10.1109/ICCCI50826.2021.9402404
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Despite being known for their robust performance in the biometrics domain, Deep Convolutional Neural Networks always face a high risk of being fooled by precisely engineered input samples. These samples are called adversarial examples and such attacks are called adversarial attacks. These attacks pose great threat to any biometric security system. In this paper, to guard against adversarial iris images, we propose defensive schemes. The first strategy we propose relies on our adversarial denoising encoder architecture. The second strategy relies on wavelet transformation to divide them into wavelet sub-bands following an U-net architecture wavelet domain denoising on processing each sub-band to remove the adversarial noise. We measure the efficiency against numerous attack scenarios of the suggested adversarial defence mechanism and equate the findings with state-of-the-art defence strategies.
引用
收藏
页数:8
相关论文
共 46 条
  • [21] Defending against adversarial attacks using spherical sampling-based variational auto-encoder
    Yin, Sheng-lin
    Zhang, Xing-lan
    Zuo, Li-yu
    NEUROCOMPUTING, 2022, 478 : 1 - 10
  • [22] Increasing Robustness against Adversarial Attacks through Ensemble of Approximate Multipliers
    Atoofian, Ehsan
    2022 IEEE INTERNATIONAL CONFERENCE ON NETWORKING, ARCHITECTURE AND STORAGE (NAS), 2022, : 148 - 155
  • [23] Defending AI Models Against Adversarial Attacks in Smart Grids Using Deep Learning
    Sampedro, Gabriel Avelino
    Ojo, Stephen
    Krichen, Moez
    Alamro, Meznah A.
    Mihoub, Alaeddine
    Karovic, Vincent
    IEEE ACCESS, 2024, 12 : 157408 - 157417
  • [24] Defending Adversarial Attacks against DNN Image Classification Models by a Noise-Fusion Method
    Shi, Lin
    Liao, Teyi
    He, Jianfeng
    ELECTRONICS, 2022, 11 (12)
  • [25] A Reinforcement Learning Approach for Defending Against Multiscenario Load Redistribution Attacks
    Lei, Jieyu
    Gao, Shibin
    Shi, Jian
    Wei, Xiaoguang
    Dong, Ming
    Wang, Wenshuang
    Han, Zhu
    IEEE TRANSACTIONS ON SMART GRID, 2022, 13 (05) : 3711 - 3722
  • [26] Defense against Adversarial Attacks on Image Recognition Systems Using an Autoencoder
    V. V. Platonov
    N. M. Grigorjeva
    Automatic Control and Computer Sciences, 2023, 57 : 989 - 995
  • [27] Defense against Adversarial Attacks on Image Recognition Systems Using an Autoencoder
    Platonov, V. V.
    Grigorjeva, N. M.
    AUTOMATIC CONTROL AND COMPUTER SCIENCES, 2023, 57 (08) : 989 - 995
  • [28] A Robust Approach for Securing Audio Classification Against Adversarial Attacks
    Esmaeilpour, Mohammad
    Cardinal, Patrick
    Koerich, Alessandro
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2020, 15 : 2147 - 2159
  • [29] Defending Against Link Flooding Attacks in Internet of Things: A Bayesian Game Approach
    Chen, Xu
    Feng, Wei
    Luo, Yantian
    Shen, Meng
    Ge, Ning
    Wang, Xianbin
    IEEE INTERNET OF THINGS JOURNAL, 2022, 9 (01): : 117 - 128
  • [30] Adversarial attacks by attaching noise markers on the face against deep face recognition
    Ryu, Gwonsang
    Park, Hosung
    Choi, Daeseon
    JOURNAL OF INFORMATION SECURITY AND APPLICATIONS, 2021, 60