Log In Sign Up

Pasadena: Perceptually Aware and Stealthy Adversarial Denoise Attack

by   Yupeng Cheng, et al.

Image denoising techniques have been widely employed in multimedia devices as an image post-processing operation that can remove sensor noise and produce visually clean images for further AI tasks, e.g., image classification. In this paper, we investigate a new task, adversarial denoise attack, that stealthily embeds attacks inside the image denoising module. Thus it can simultaneously denoise input images while fooling the state-of-the-art deep models. We formulate this new task as a kernel prediction problem and propose the adversarial-denoising kernel prediction that can produce adversarial-noiseless kernels for effective denoising and adversarial attacking simultaneously. Furthermore, we implement an adaptive perceptual region localization to identify semantic-related vulnerability regions with which the attack can be more effective while not doing too much harm to the denoising. Thus, our proposed method is termed as Pasadena (Perceptually Aware and Stealthy Adversarial DENoise Attack). We validate our method on the NeurIPS'17 adversarial competition dataset and demonstrate that our method not only realizes denoising but has advantages of high success rate and transferability over the state-of-the-art attacks.


page 2

page 3

page 4

page 5

page 8

page 9

page 10

page 11


ABBA: Saliency-Regularized Motion-Based Adversarial Blur Attack

Deep neural networks are vulnerable to noise-based adversarial examples,...

Multi-Kernel Prediction Networks for Denoising of Burst Images

In low light or short-exposure photography the image is often corrupted ...

Context-Aware Image Denoising with Auto-Threshold Canny Edge Detection to Suppress Adversarial Perturbation

This paper presents a novel context-aware image denoising algorithm that...

On the Relation between Color Image Denoising and Classification

Large amount of image denoising literature focuses on single channel ima...

Attention Mechanism Enhanced Kernel Prediction Networks for Denoising of Burst Images

Deep learning based image denoising methods have been extensively invest...

Deep Class Aware Denoising

The increasing demand for high image quality in mobile devices brings fo...

Poisson Image Denoising Using Best Linear Prediction: A Post-processing Framework

In this paper, we address the problem of denoising images degraded by Po...