• Home
  • Search
  • Evaluating Impact of Image Transformations on Adversarial Examples
  • Cite Icon6
  • https://doi.org/10.1109/access.2024.3487479Copy DOI Icon

Evaluating Impact of Image Transformations on Adversarial Examples

Show More
  • Abstract
  • Literature Map
  • References
  • Citations
  • Similar Papers
Abstract

Deep learning has revolutionized image recognition. One significant obstacle still remains, the vulnerability of these models to adversarial attacks. These attacks manipulate images with subtle changes that cause CNN misclassification. While methods, such as adversarial training, have been proposed to defend against adversarial attacks, they incur additional training costs, either extra input samples or auxiliary models. In this work, we propose an efficient approach to deploying robust models that utilize image transformations to remove adversarial noises. We investigate the performance of simple transformations and report several effective ones, including Affine blur, Gaussian blur, Median blur, and Bilateral blur against various adversarial attack methods, such as Fast Gradient Sign Method (FGSM), Randomized + FGSM (RFGSM), and Projected Gradient Descent (PGD). We apply these image transformation techniques to the widely used ImageNet dataset, and experimental results demonstrate the potential of image transformation methods as a strong defense against adversarial attacks in deep learning-based image classification systems, especially when combined with cutting-edge neural network architectures such as ResNet50 and DenseNet121. Our comprehensive results show that these transformations can significantly improve the robustness of CNN models against adversarial attacks on ImageNet, achieving a recovery rate of up to 85% to 90% without incurring extra resource costs.

Similar Papers
  • PDF
  • Research Article
  • Citations1

Improving Model Robustness through Hybrid Adversarial Training: Integrating FGSM and PGD Methods

  • Nov 26, 2024
  • Applied and Computational Engineering
  • Zeshan Zhong
  • Research Article
  • Citations5

A multi-layered defense against adversarial attacks in brain tumor classification using ensemble adversarial training and feature squeezing

  • May 14, 2025
  • Scientific Reports
  • Ahmeed Yinusa +1
  • Research Article
  • Citations63

Untargeted white-box adversarial attack with heuristic defence methods in real-time deep learning based network intrusion detection system

  • Oct 11, 2023
  • Computer Communications
  • Khushnaseeb Roshan +2
  • Research Article
  • Citations23

Adversarial security mitigations of mmWave beamforming prediction models using defensive distillation and adversarial retraining

  • Nov 29, 2022
  • International Journal of Information Security
  • Murat Kuzlu +4
  • PDF
  • Research Article
  • Citations8

Federated Adversarial Training Strategies for Achieving Privacy and Security in Sustainable Smart City Applications

  • Nov 20, 2023
  • Future Internet
  • Sapdo Utomo +3
  • Research Article

Detecting and Defending Adversarial Attacks on Deep Learning Models Using Convolutional Autoencoders and Block-Switching ResNet

  • Apr 30, 2026
  • International Journal for Research in Applied Science and Engineering Technology
  • Adwaith R
  • Research Article
  • Citations20

Downlink Power Allocation in Massive MIMO via Deep Learning: Adversarial Attacks and Training

  • Jun 01, 2022
  • IEEE Transactions on Cognitive Communications and Networking
  • B R Manoj +2
  • Research Article
  • Citations5

ZeroGrad: Costless conscious remedies for catastrophic overfitting in the FGSM adversarial training

  • Jul 18, 2023
  • Intelligent Systems with Applications
  • Zeinab Golgooni +3
  • Research Article
  • Citations112

Adversarial examples: A survey of attacks and defenses in deep learning-enabled cybersecurity systems

  • Oct 20, 2023
  • Expert Systems with Applications
  • Mayra Macas +2
  • Conference Article
  • Citations3

DOME-T: adversarial computer vision attack on deep learning models based on Tchebichef image moments

  • Jan 04, 2021
  • Theodore Maliamanis +1
  • Book Chapter
  • Citations18

Adversarial Attacks on Image Classification Models: FGSM and Patch Attacks and Their Impact

  • Sep 27, 2023
  • Jaydip Sen +1
  • PDF
  • Research Article
  • Citations15

Detection of adversarial attacks based on differences in image entropy

  • Aug 17, 2023
  • International Journal of Information Security
  • Gwonsang Ryu +1
  • Research Article
  • Citations74

Understanding Catastrophic Overfitting in Single-step Adversarial Training

  • May 18, 2021
  • Proceedings of the AAAI Conference on Artificial Intelligence
  • Hoki Kim +2
  • Conference Article

The Effects of Autoencoders on the Robustness of Deep Learning Models

  • May 15, 2022
  • Elif Degirmenci +2
  • Research Article
  • Citations3

Adversarial attack method against image classification based on haze perturbation

  • Feb 01, 2023
  • SCIENTIA SINICA Informationis
  • 伟 冯 +3
Cactus Communications logo

Copyright 2026 Cactus Communications. All rights reserved.