• Home
  • Search
  • DOME-T: adversarial computer vision attack on deep learning models based on Tchebichef image moments
  • Cite Icon3
  • https://doi.org/10.1117/12.2587268Copy DOI Icon

DOME-T: adversarial computer vision attack on deep learning models based on Tchebichef image moments

  • Jan 4, 2021
  • Theodore Maliamanis +1 more
Show More
  • Abstract
  • Literature Map
  • Citations
  • Similar Papers
Abstract

In this paper, a novel black box adversarial computer vision attack is proposed. The introduced attack is based on removing from images some components described by their Tchebichef discrete orthogonal moments, rather than to perturb them. The contribution of this work is focused on the addition of one more clue, supporting the critical hypothesis that computer vision systems fail because they support their decisions not only in robust features but also in others non-robust ones. In this, context non-robust image features described in terms of Tchebichef moments are excluded from the original images and the approximated reconstructed versions of them are used as adversarial examples in order to attack some popular deep learning models. The experiments justify the effectiveness of the proposed adversarial attack in terms of imperceptibility and recognition error rate of the deep learning classifiers. It is worth noting that the top-1 accuracy of the attacked models was degraded by a factor between 9.48%-70.89% for adversarial images of 65dB to 57dB PSNR values. The corresponding degradation of the top-5 models’ accuracy was between 6.9% and 55.14% for the same quality images. Moreover, the proposed attack seems to have more strength than the Fast Gradient Sign Method (FGSM) attacking method traditionally applying in most cases. These results reveal that the proposed attack is able to exploit the vulnerability of the deep learning models’ towards degrading their generalization abilities. In this paper, a novel black box adversarial computer vision attack is proposed. The introduced attack is based on removing from images some components described by their Tchebichef discrete orthogonal moments, rather than to perturb them. The contribution of this work is focused on the addition of one more clue, supporting the critical hypothesis that computer vision systems fail because they support their decisions not only in robust features but also in others non-robust ones. In this, context non-robust image features described in terms of Tchebichef moments are excluded from the original images and the approximated reconstructed versions of them are used as adversarial examples in order to attack some popular deep learning models. The experiments justify the effectiveness of the proposed adversarial attack in terms of imperceptibility and recognition error rate of the deep learning classifiers. It is worth noting that the top-1 accuracy of the attacked models was degraded by a factor between 9.48%-70.89% for adversarial images of 65dB to 57dB PSNR values. The corresponding degradation of the top-5 models’ accuracy was between 6.9% and 55.14% for the same quality images. Moreover, the proposed attack seems to have more strength than the Fast Gradient Sign Method (FGSM) attacking method traditionally applying in most cases. These results reveal that the proposed attack is able to exploit the vulnerability of the deep learning models’ towards degrading their generalization abilities.

Similar Papers
  • Research Article

Detecting and Defending Adversarial Attacks on Deep Learning Models Using Convolutional Autoencoders and Block-Switching ResNet

  • Apr 30, 2026
  • International Journal for Research in Applied Science and Engineering Technology
  • Adwaith R
  • Research Article
  • Citations63

Untargeted white-box adversarial attack with heuristic defence methods in real-time deep learning based network intrusion detection system

  • Oct 11, 2023
  • Computer Communications
  • Khushnaseeb Roshan +2
  • Research Article
  • Citations6

Evaluating Impact of Image Transformations on Adversarial Examples

  • Jan 01, 2024
  • IEEE Access
  • Pu Tian +5
  • Conference Article
  • Citations6

Integrating single-shot Fast Gradient Sign Method (FGSM) with classical image processing techniques for generating adversarial attacks on deep learning classifiers

  • Mar 05, 2022
  • Muhammad Hassan +3
  • Book Chapter
  • Citations18

Adversarial Attacks on Image Classification Models: FGSM and Patch Attacks and Their Impact

  • Sep 27, 2023
  • Jaydip Sen +1
  • Research Article
  • Citations19

FE-DaST: Fast and effective data-free substitute training for black-box adversarial attacks

  • Nov 20, 2021
  • Computers & Security
  • Mengran Yu +1
  • Research Article
  • Citations5

A multi-layered defense against adversarial attacks in brain tumor classification using ensemble adversarial training and feature squeezing

  • May 14, 2025
  • Scientific Reports
  • Ahmeed Yinusa +1
  • Research Article
  • Citations3

Security Enhancement of mmWave MIMO Wireless Communication System Using Adversarial Training

  • Feb 21, 2024
  • IEEJ Transactions on Electrical and Electronic Engineering
  • Mehak Saini +1
  • PDF
  • Research Article
  • Citations15

Detection of adversarial attacks based on differences in image entropy

  • Aug 17, 2023
  • International Journal of Information Security
  • Gwonsang Ryu +1
  • Conference Article

The Effects of Autoencoders on the Robustness of Deep Learning Models

  • May 15, 2022
  • Elif Degirmenci +2
  • Conference Article
  • Citations1

ADVRET: An Adversarial Robustness Evaluating and Testing Platform for Deep Learning Models

  • Dec 01, 2021
  • Fei Ren +4
  • Research Article
  • Citations20

Downlink Power Allocation in Massive MIMO via Deep Learning: Adversarial Attacks and Training

  • Jun 01, 2022
  • IEEE Transactions on Cognitive Communications and Networking
  • B R Manoj +2
  • Research Article
  • Citations7

An adversarial attack detection method in deep neural networks based on re-attacking approach

  • Jan 03, 2021
  • Multimedia Tools and Applications
  • Morteza Ali Ahmadi +2
  • Conference Article
  • Citations12

Mixture GAN For Modulation Classification Resiliency Against Adversarial Attacks

  • Dec 04, 2022
  • Eyad Shtaiwi +5
  • Research Article
  • Citations134

Self-Attention Context Network: Addressing the Threat of Adversarial Attacks for Hyperspectral Image Classification.

  • Jan 01, 2021
  • IEEE Transactions on Image Processing
  • Yonghao Xu +2
Cactus Communications logo

Copyright 2026 Cactus Communications. All rights reserved.