paper-with-me

Papers

Evaluating a Simple Retraining Strategy as a Defense Against Adversarial Attacks

2020-07-20 · Nupur Thakur, Yuzhen Ding, Baoxin Li

Though deep neural networks (DNNs) have shown superiority over other techniques in major fields like computer vision, natural language processing, robotics, recently, it has been proven that they are vulnerable to adversarial attacks. The addition of a simple, small and almost invisible perturbation to the original input image can be used to fool DNNs into making wrong decisions. With more attack algorithms being designed, a need for defending the neural networks from such attacks arises. Retraining the network with adversarial images is one of the simplest techniques. In this paper, we evaluate the effectiveness of such a retraining strategy in defending against adversarial attacks. We also show how simple algorithms like KNN can be used to determine the labels of the adversarial images needed for retraining. We present the results on two standard datasets namely, CIFAR-10 and TinyImageNet.

📄 PDF Abstract BibTeX arXiv:2007.09916

Code (0)

등록된 구현이 없습니다.

Similar Papers 제목 키워드 기반

Machine vs Machine: Minimax-Optimal Defense Against Adversarial Examples

2017-11-12 · ICLR 2018 1 · Jihun Hamm, Akshay Mehra

Recently, researchers have discovered that the state-of-the-art object classifiers can be fooled easily by small perturbations in the input unnoticeable to human eyes. It is also known that an attacker can generate stron…

GraCIAS: Grassmannian of Corrupted Images for Adversarial Security

2020-05-06 · Ankita Shukla, Pavan Turaga, Saket Anand

Input transformation based defense strategies fall short in defending against strong adversarial attacks. Some successful defenses adopt approaches that either increase the randomness within the applied transformations, …

Defense-VAE: A Fast and Accurate Defense against Adversarial Attacks

2018-12-17 · Xiang Li, Shihao Ji

Deep neural networks (DNNs) have been enormously successful across a variety of prediction tasks. However, recent research shows that DNNs are particularly vulnerable to adversarial attacks, which poses a serious threat …

A Random-patch based Defense Strategy Against Physical Attacks for Face Recognition Systems

2023-04-16 · Jiahao Xie, Ye Luo, Jianwei Lu

The physical attack has been regarded as a kind of threat against real-world computer vision systems. Still, many existing defense methods are only useful for small perturbations attacks and can't detect physical attacks…

Face Recognition

DODEM: DOuble DEfense Mechanism Against Adversarial Attacks Towards Secure Industrial Internet of Things Analytics

2023-01-23 · Onat Gungor, Tajana Rosing, Baris Aksanli

Industrial Internet of Things (I-IoT) is a collaboration of devices, sensors, and networking equipment to monitor and collect data from industrial operations. Machine learning (ML) methods use this data to make high-leve…

Adversarial AttackNovelty Detection