On the adversarial robustness of DNNs based on error correcting output codes

03/26/2020
by   Bowen Zhang, et al.
0

Adversarial examples represent a great security threat for deep learning systems, pushing researchers to develop suitable defense mechanisms. The use of networks adopting error-correcting output codes (ECOC) has recently been proposed to deal with white-box attacks. In this paper, we carry out an in-depth investigation of the security achieved by the ECOC approach. In contrast to previous findings, our analysis reveals that, when the attack in the white-box framework is carried out properly, the ECOC scheme can be attacked by introducing a rather small perturbation. We do so by considering both the popular adversarial attack proposed by Carlini and Wagner (C W) and a new variant of C W attack specifically designed for multi-label classification architectures, like the ECOC-based structure. Experimental results regarding different classification tasks demonstrate that ECOC networks can be successfully attacked by both the original C W attack and the new attack.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
04/12/2019

Cycle-Consistent Adversarial GAN: the integration of adversarial attack and defense

In image classification of deep learning, adversarial examples where inp...
research
11/02/2020

The Vulnerability of the Neural Networks Against Adversarial Examples in Deep Learning Algorithms

With further development in the fields of computer vision, network secur...
research
02/04/2021

PredCoin: Defense against Query-based Hard-label Attack

Many adversarial attacks and defenses have recently been proposed for De...
research
09/19/2023

Transferable Adversarial Attack on Image Tampering Localization

It is significant to evaluate the security of existing digital image tam...
research
02/19/2021

Effective and Efficient Vote Attack on Capsule Networks

Standard Convolutional Neural Networks (CNNs) can be easily fooled by im...
research
03/05/2020

Search Space of Adversarial Perturbations against Image Filters

The superiority of deep learning performance is threatened by safety iss...
research
10/30/2020

Integer Programming-based Error-Correcting Output Code Design for Robust Classification

Error-Correcting Output Codes (ECOCs) offer a principled approach for co...

Please sign up or login with your details

Forgot password? Click here to reset