对抗制
计算机科学
人工智能
生成对抗网络
计算机视觉
生成语法
图像处理
图像(数学)
作者
Xiong Shen,Yiqin Lu,Zhe Cheng,Zhongshu Mao,Yang Zhang,Jiancheng Qin
标识
DOI:10.1117/1.jei.33.3.033029
摘要
Deep learning is widely used in the field of computer vision, but the emergence of adversarial examples threatens its application. How to effectively detect adversarial examples and correct their labels has become a problem to be solved in this application field. Generative adversarial networks (GANs) can effectively learn the features from images. Based on GAN, this work proposes a defense method called "Reconstructing images with GAN" (RIG). The adversarial examples are generated by attack algorithms reconstructed by the trained generator of RIG to eliminate the perturbations of the adversarial examples, which disturb the models for classification, so that the models can restore their labels when classifying the reconstructed images. In addition, to improve the defensive performance of RIG, the attention mechanism (AM) is introduced to enhance the defense effect of RIG, which is called reconstructing images with attention GAN (RIAG). Experiments show that RIG and RIAG can effectively eliminate the perturbations of the adversarial examples. The results also show that RIAG has a better defensive performance than RIG in eliminating the perturbations of adversarial examples, which indicates that the introduction of AM can effectively improve the defense effect of RIG.
科研通智能强力驱动
Strongly Powered by AbleSci AI