跳到主要导航 跳到搜索 跳到主要内容

DBA: An Efficient Approach to Boost Transfer-Based Adversarial Attack Performance Through Information Deletion

  • Northwestern Polytechnical University Xian
  • Guangzhou University

科研成果: 书/报告/会议事项章节会议稿件同行评审

1 引用 (Scopus)

摘要

In practice, deep learning models are easy to be fooled by input images with subtle perturbations, and those images are called adversarial examples. Regarding one model, the crafted adversarial examples can successfully fool other models with varying architectures but the same task, which is referred to as adversarial transferability. Nevertheless, in practice, it is hard to get information about the model to be attacked, transfer-based adversarial attacks have developed rapidly. Later, different techniques are proposed to promote adversarial transferability. Different from existing input transformation attacks based on spatial transformation, our approach is a novel one on the basis of information deletion. By deleting squares of the input images by channels, we mitigate overfitting on the surrogate model of the adversarial examples and further enhance adversarial transferability. The corresponding performance of our method is superior to the existing input transformation attacks on different models (here, we consider unsecured models and defense ones), as demonstrated by extensive evaluations on ImageNet.

源语言英语
主期刊名Knowledge Science, Engineering and Management - 16th International Conference, KSEM 2023, Proceedings
编辑Zhi Jin, Yuncheng Jiang, Wenjun Ma, Robert Andrei Buchmann, Ana-Maria Ghiran, Yaxin Bi
出版商Springer Science and Business Media Deutschland GmbH
276-288
页数13
ISBN(印刷版)9783031402852
DOI
出版状态已出版 - 2023
活动Knowledge Science, Engineering and Management - 16th International Conference, KSEM 2023, Proceedings - Guangzhou, 中国
期限: 16 8月 202318 8月 2023

出版系列

姓名Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics)
14118 LNAI
ISSN(印刷版)0302-9743
ISSN(电子版)1611-3349

会议

会议Knowledge Science, Engineering and Management - 16th International Conference, KSEM 2023, Proceedings
国家/地区中国
Guangzhou
时期16/08/2318/08/23

指纹

探究 'DBA: An Efficient Approach to Boost Transfer-Based Adversarial Attack Performance Through Information Deletion' 的科研主题。它们共同构成独一无二的指纹。

引用此