paper-with-me

홈 › Papers

A Hierarchical Feature Constraint to Camouflage Medical Adversarial Attacks

2020-12-17 · Qingsong Yao, Zecheng He, Yi Lin, Kai Ma, Yefeng Zheng, S. Kevin Zhou

Deep neural networks (DNNs) for medical images are extremely vulnerable to adversarial examples (AEs), which poses security concerns on clinical decision making. Luckily, medical AEs are also easy to detect in hierarchical feature space per our study herein. To better understand this phenomenon, we thoroughly investigate the intrinsic characteristic of medical AEs in feature space, providing both empirical evidence and theoretical explanations for the question: why are medical adversarial attacks easy to detect? We first perform a stress test to reveal the vulnerability of deep representations of medical images, in contrast to natural images. We then theoretically prove that typical adversarial attacks to binary disease diagnosis network manipulate the prediction by continuously optimizing the vulnerable representations in a fixed direction, resulting in outlier features that make medical AEs easy to detect. However, this vulnerability can also be exploited to hide the AEs in the feature space. We propose a novel hierarchical feature constraint (HFC) as an add-on to existing adversarial attacks, which encourages the hiding of the adversarial representation within the normal feature distribution. We evaluate the proposed method on two public medical image datasets, namely {Fundoscopy} and {Chest X-Ray}. Experimental results demonstrate the superiority of our adversarial attack method as it bypasses an array of state-of-the-art adversarial detectors more easily than competing attack methods, supporting that the great vulnerability of medical features allows an attacker more room to manipulate the adversarial representations.

📄 PDF Abstract BibTeX arXiv:2012.09501

Code (1)

ICT-MIRACLE-lab/Hierarchical_Feature_Constraint 공식 구현 pytorch

Tasks

Adversarial AttackDecision Making

Similar Papers 제목 키워드 기반

Flexible Physical Camouflage Generation Based on a Differential Approach

2024-02-21 · Yang Li, Wenyi Tan, Tingrui Wang, Xinkai Liang 외

This study introduces a novel approach to neural rendering, specifically tailored for adversarial camouflage, within an extensive 3D rendering framework. Our method, named FPA, goes beyond traditional techniques by faith…

Neural Rendering

Hierarchical Consistency Learning for Test-time Adaptation in Camouflage Perception

2026-05-25 · Mingfeng Zha, Tianyu Li, Guoqing Wang, Yunqiang Pei 외 arxiv

Camouflaged object detection (COD) aims to localize targets that exhibit minimal perceptual differences from backgrounds through physical attributes. Existing methods, constrained by the static train-then-freeze paradigm…

Test-time AdaptationObject Detection

Hierarchical Graph Interaction Transformer with Dynamic Token Clustering for Camouflaged Object Detection

2024-08-27 · Siyuan Yao, Hao Sun, Tian-Zhu Xiang, Xiao Wang 외

Camouflaged object detection (COD) aims to identify the objects that seamlessly blend into the surrounding backgrounds. Due to the intrinsic similarity between the camouflaged objects and the background region, it is ext…

Decoderobject-detectionObject Detection

Adversarial Medical Image with Hierarchical Feature Hiding

2023-12-04 · Qingsong Yao, Zecheng He, Yuexiang Li, Yi Lin 외

Deep learning based methods for medical images can be easily compromised by adversarial examples (AEs), posing a great security flaw in clinical decision-making. It has been discovered that conventional adversarial attac…

Decision Making

Conditional Polarization Guidance for Camouflaged Object Detection

2026-03-31 · QIfan Zhang, Hao Wang, Xiangrong Qin, Ruijie Li arxiv

Camouflaged object detection (COD) aims to identify targets that are highly blended with their backgrounds. Recent works have shown that the optical characteristics of polarization cues play a significant role in improvi…

Representation LearningObject Detection