Deep Poisoning Functions: Towards Robust Privacy-safe Image Data Sharing

12/14/2019
by   Hao Guo, et al.
11

As deep networks are applied to an ever-expanding set of computer vision tasks, protecting general privacy in image data has become a critically important goal. This paper presents a new framework for privacy-preserving data sharing that is robust to adversarial attacks and overcomes the known issues existing in previous approaches. We introduce the concept of a Deep Poisoning Function (DPF), which is a module inserted into a pre-trained deep network designed to perform a specific vision task. The DPF is optimized to deliberately poison image data to prevent known adversarial attacks, while ensuring that the altered image data is functionally equivalent to the non-poisoned data for the original task. Given this equivalence, both poisoned and non-poisoned data can be used for further retraining or fine-tuning. Experimental results on image classification and face recognition tasks prove the efficacy of the proposed method.

READ FULL TEXT

page 5

page 6

page 7

page 8

research
07/05/2023

Adversarial Attacks on Image Classification Models: FGSM and Patch Attacks and their Impact

This chapter introduces the concept of adversarial attacks on image clas...
research
04/28/2020

Private Dataset Generation Using Privacy Preserving Collaborative Learning

With increasing usage of deep learning algorithms in many application, n...
research
07/14/2020

Multitask Learning Strengthens Adversarial Robustness

Although deep networks achieve strong accuracy on a range of computer vi...
research
06/26/2019

Defending Adversarial Attacks by Correcting logits

Generating and eliminating adversarial examples has been an intriguing t...
research
12/07/2018

Privacy Partitioning: Protecting User Data During the Deep Learning Inference Phase

We present a practical method for protecting data during the inference p...
research
10/08/2021

Inferring Offensiveness In Images From Natural Language Supervision

Probing or fine-tuning (large-scale) pre-trained models results in state...
research
06/07/2019

Extracting Visual Knowledge from the Internet: Making Sense of Image Data

Recent successes in visual recognition can be primarily attributed to fe...

Please sign up or login with your details

Forgot password? Click here to reset