RSA-based image recognizable adversarial attack method

Adversarial attack is an important part of deep learning security research.Relying on the RSA signature schemes and RSA encryption schemes in cryptography, an adversarial attack method that adversarial examples can be recognized by a specific classifier is proposed.Through the idea of one pixel atta...

Full description

Saved in:
Bibliographic Details
Main Authors: Yu ZHANG, Hailiang LI
Format: Article
Language:English
Published: POSTS&TELECOM PRESS Co., LTD 2021-10-01
Series:网络与信息安全学报
Subjects:
Online Access:http://www.cjnis.com.cn/thesisDetails#10.11959/j.issn.2096-109x.2021065
Tags: Add Tag
No Tags, Be the first to tag this record!
_version_ 1841529803625201664
author Yu ZHANG
Hailiang LI
author_facet Yu ZHANG
Hailiang LI
author_sort Yu ZHANG
collection DOAJ
description Adversarial attack is an important part of deep learning security research.Relying on the RSA signature schemes and RSA encryption schemes in cryptography, an adversarial attack method that adversarial examples can be recognized by a specific classifier is proposed.Through the idea of one pixel attack, the normal image can have the ability to make other classifier misclassify while embedding additional information.It can be used in classifier authorization management, online image anti-counterfeiting, etc.The experiment show that the adversarial examples can be recognized under the specific classifier, and the disturbance noise is difficult to detect by the human eye.
format Article
id doaj-art-873db49d389241d5b648a8bc5b4bda96
institution Kabale University
issn 2096-109X
language English
publishDate 2021-10-01
publisher POSTS&TELECOM PRESS Co., LTD
record_format Article
series 网络与信息安全学报
spelling doaj-art-873db49d389241d5b648a8bc5b4bda962025-01-15T03:15:12ZengPOSTS&TELECOM PRESS Co., LTD网络与信息安全学报2096-109X2021-10-017404859568566RSA-based image recognizable adversarial attack methodYu ZHANGHailiang LIAdversarial attack is an important part of deep learning security research.Relying on the RSA signature schemes and RSA encryption schemes in cryptography, an adversarial attack method that adversarial examples can be recognized by a specific classifier is proposed.Through the idea of one pixel attack, the normal image can have the ability to make other classifier misclassify while embedding additional information.It can be used in classifier authorization management, online image anti-counterfeiting, etc.The experiment show that the adversarial examples can be recognized under the specific classifier, and the disturbance noise is difficult to detect by the human eye.http://www.cjnis.com.cn/thesisDetails#10.11959/j.issn.2096-109x.2021065adversarial attacksignature schemeencryption schemecryptographyclassifierimage recognition
spellingShingle Yu ZHANG
Hailiang LI
RSA-based image recognizable adversarial attack method
网络与信息安全学报
adversarial attack
signature scheme
encryption scheme
cryptography
classifier
image recognition
title RSA-based image recognizable adversarial attack method
title_full RSA-based image recognizable adversarial attack method
title_fullStr RSA-based image recognizable adversarial attack method
title_full_unstemmed RSA-based image recognizable adversarial attack method
title_short RSA-based image recognizable adversarial attack method
title_sort rsa based image recognizable adversarial attack method
topic adversarial attack
signature scheme
encryption scheme
cryptography
classifier
image recognition
url http://www.cjnis.com.cn/thesisDetails#10.11959/j.issn.2096-109x.2021065
work_keys_str_mv AT yuzhang rsabasedimagerecognizableadversarialattackmethod
AT hailiangli rsabasedimagerecognizableadversarialattackmethod