• Home
  • Search
  • Probabilistic Analysis of Targeted Attacks Using Transform-Domain Adversarial Examples
  • Cite Icon21
  • https://doi.org/10.1109/access.2020.2974525Copy DOI Icon

Probabilistic Analysis of Targeted Attacks Using Transform-Domain Adversarial Examples

Show More
  • Abstract
  • Highlights & Summary
  • PDF
  • Literature Map
  • References
  • Citations
  • Similar Papers
Abstract

In the past decade, Deep Neural Networks (DNNs) have achieved breakthrough collaborations in developing smart intelligent systems within the field of computer vision, natural language processing, autonomous systems, etc. Recent research has revealed that stability of such smart systems is at greater risk when they come across to adversarial perturbations. Although, these perturbations may not be perceivable in nature when seen from naked eye, yet, they are capable enough to fool state-of-the-art DNN classifiers. Till now, much of the previous work related to fool such classifiers focuses on generating adversaries that directly change pixel values of an image in spatial-domain. In this paper, we propose a novel transform-domain imperceptible attack methodology “TDIAM” to generate adversaries based on image steganography-approach using a “single carefully selected targeted watermark”. We use three different frequency-domain approaches, i.e., Discrete Wavelet Transform (DWT), Discrete Cosine Transform (DCT) and Fast Fourier Transform (FFT) to craft perturbations in selective frequency component which makes it robust and it requires less computational time as it is a non-gradient approach. We present our case study on MNIST handwritten digits dataset. Our results demonstrate that the generated perturbation vector successfully fool simple Convolutional Neural Network (CNN), LeNet-5 and AlexNet architectures by increasing probability of adversarial examples for the targeted class (to which the targeted watermark belongs) in both “black-box” and “white-box” adversarial attacks. The results have shown that among these three perturbation approaches, DWT based perturbation shown promising results by effectively fooling DNNs while ensuring the high imperceptibility as well.

Loading PDF

Similar Papers
  • Conference Article

Evaluation of Adversarial Attacks Based on DL in Communication Networks

  • Nov 01, 2020
  • Zhida Bao +1
  • Research Article
  • Citations15

Feature-filter: Detecting adversarial examples by filtering out recessive features

  • May 20, 2022
  • Applied Soft Computing
  • Hui Liu +5
  • Conference Article
  • Citations6

Integrating single-shot Fast Gradient Sign Method (FGSM) with classical image processing techniques for generating adversarial attacks on deep learning classifiers

  • Mar 05, 2022
  • Muhammad Hassan +3
  • PDF
  • Research Article
  • Citations34

Adversarial Attack for SAR Target Recognition Based on UNet-Generative Adversarial Network

  • Oct 29, 2021
  • Remote Sensing
  • Chuan Du +1
  • Research Article
  • Citations86

An Empirical Study of Adversarial Examples on Remote Sensing Image Scene Classification

  • Sep 01, 2021
  • IEEE Transactions on Geoscience and Remote Sensing
  • Li Chen +5
  • Components

Supplemental Information 4: FMNIST code

  • Dec 24, 2021
  • Conference Article
  • Citations221

Mitigating Evasion Attacks to Deep Neural Networks via Region-based Classification

  • Dec 04, 2017
  • Xiaoyu Cao +1
  • Research Article
  • Citations23

FAWA: Fast Adversarial Watermark Attack

  • Mar 12, 2021
  • IEEE Transactions on Computers
  • Hao Jiang +6
  • Conference Article

Classification of Bisyllabic Lexical Stress Patterns Using Deep Neural Networks

  • Jan 01, 2016
  • Mostafa Shahin +1
  • Conference Article
  • Citations342

ComDefend: An Efficient Image Compression Model to Defend Adversarial Examples

  • Jun 01, 2019
  • Xiaojun Jia +3
  • Research Article
  • Citations14

Adversarial attacks by attaching noise markers on the face against deep face recognition

  • May 21, 2021
  • Journal of Information Security and Applications
  • Gwonsang Ryu +2
  • PDF
  • Research Article
  • Citations17

Diversity Adversarial Training against Adversarial Attack on Deep Neural Networks

  • Mar 06, 2021
  • Symmetry
  • Hyun Kwon +1
  • Supplementary Content

Detect and Defense Against Adversarial Examples in Deep Learning

  • Nov 03, 2022
  • Wassim Hamidouche
  • PDF
  • Research Article
  • Citations15

Detection of adversarial attacks based on differences in image entropy

  • Aug 17, 2023
  • International Journal of Information Security
  • Gwonsang Ryu +1
  • Research Article
  • Citations8

Adversarial Robustness of Deep Convolutional Neural Network-based Image Recognition Models: A Review

  • Aug 28, 2021
  • 雷达学报
  • Hao Sun +4
Cactus Communications logo

Copyright 2026 Cactus Communications. All rights reserved.