RSA-based image recognizable adversarial attack method
Adversarial attack is an important part of deep learning security research.Relying on the RSA signature schemes and RSA encryption schemes in cryptography, an adversarial attack method that adversarial examples can be recognized by a specific classifier is proposed.Through the idea of one pixel atta...
Saved in:
Main Authors: | , |
---|---|
Format: | Article |
Language: | English |
Published: |
POSTS&TELECOM PRESS Co., LTD
2021-10-01
|
Series: | 网络与信息安全学报 |
Subjects: | |
Online Access: | http://www.cjnis.com.cn/thesisDetails#10.11959/j.issn.2096-109x.2021065 |
Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
_version_ | 1841529803625201664 |
---|---|
author | Yu ZHANG Hailiang LI |
author_facet | Yu ZHANG Hailiang LI |
author_sort | Yu ZHANG |
collection | DOAJ |
description | Adversarial attack is an important part of deep learning security research.Relying on the RSA signature schemes and RSA encryption schemes in cryptography, an adversarial attack method that adversarial examples can be recognized by a specific classifier is proposed.Through the idea of one pixel attack, the normal image can have the ability to make other classifier misclassify while embedding additional information.It can be used in classifier authorization management, online image anti-counterfeiting, etc.The experiment show that the adversarial examples can be recognized under the specific classifier, and the disturbance noise is difficult to detect by the human eye. |
format | Article |
id | doaj-art-873db49d389241d5b648a8bc5b4bda96 |
institution | Kabale University |
issn | 2096-109X |
language | English |
publishDate | 2021-10-01 |
publisher | POSTS&TELECOM PRESS Co., LTD |
record_format | Article |
series | 网络与信息安全学报 |
spelling | doaj-art-873db49d389241d5b648a8bc5b4bda962025-01-15T03:15:12ZengPOSTS&TELECOM PRESS Co., LTD网络与信息安全学报2096-109X2021-10-017404859568566RSA-based image recognizable adversarial attack methodYu ZHANGHailiang LIAdversarial attack is an important part of deep learning security research.Relying on the RSA signature schemes and RSA encryption schemes in cryptography, an adversarial attack method that adversarial examples can be recognized by a specific classifier is proposed.Through the idea of one pixel attack, the normal image can have the ability to make other classifier misclassify while embedding additional information.It can be used in classifier authorization management, online image anti-counterfeiting, etc.The experiment show that the adversarial examples can be recognized under the specific classifier, and the disturbance noise is difficult to detect by the human eye.http://www.cjnis.com.cn/thesisDetails#10.11959/j.issn.2096-109x.2021065adversarial attacksignature schemeencryption schemecryptographyclassifierimage recognition |
spellingShingle | Yu ZHANG Hailiang LI RSA-based image recognizable adversarial attack method 网络与信息安全学报 adversarial attack signature scheme encryption scheme cryptography classifier image recognition |
title | RSA-based image recognizable adversarial attack method |
title_full | RSA-based image recognizable adversarial attack method |
title_fullStr | RSA-based image recognizable adversarial attack method |
title_full_unstemmed | RSA-based image recognizable adversarial attack method |
title_short | RSA-based image recognizable adversarial attack method |
title_sort | rsa based image recognizable adversarial attack method |
topic | adversarial attack signature scheme encryption scheme cryptography classifier image recognition |
url | http://www.cjnis.com.cn/thesisDetails#10.11959/j.issn.2096-109x.2021065 |
work_keys_str_mv | AT yuzhang rsabasedimagerecognizableadversarialattackmethod AT hailiangli rsabasedimagerecognizableadversarialattackmethod |